Notes from the Consultant's Jungle

Data Center and IS Security Information, Trends, Advice

Notes from the Consultant's Jungle header image 4

Entries Tagged as 'IS Security'

Back to Shadow IT

September 30th, 2011 · 1 Comment · Business, Cloud Computing, Enterprise Architecture, IS Security, IT Governance

Through some of the work that I do for my Clients, I’ve helped to identify and reduce Shadow IT as a part of better aligning IT delivery with strategic business goals.  It has been sort of a mantra, that Shadow IT is a bad thing and must be eliminated.  Over the past couple of years [...]

Share

[Read more →]

Tags:

No Thanks to DR Planning Software (so far)

June 9th, 2011 · No Comments · Business Continuity Planning, Disaster Recovery Planning, IS Security, IT Governance

I was having a drink with an old friend of mine, who is a very prominent and globally sought after risk management professional, and we got around to talking about Disaster Recovery Planning Software.  I asked him, “have you ever found one of those that you like?”  His response was not positive. Quite often, I [...]

Share

[Read more →]

Tags:

IT Certifications: Is there a Role for the State?

November 19th, 2010 · No Comments · Business, Business Continuity Planning, Compliance, Data Center Best Practices, Enterprise Architecture, IS Security, IT Governance, Technology, Technology Certification

This morning I was reading a short piece by Gary Beach, Publisher Emeritus of CIO Magazine in which he asks if he’s “certifiably nuts” for encouraging broad-based, state-administered technology certification programs.  The short answer from me- no, not really.   I would though, like to support the spirit of Gary’s call with my own encouragement.

Share

[Read more →]

Tags:

McAfee Inside?

August 27th, 2010 · 2 Comments · Business, IS Security, Mergers and Acquisitions

Undoubtedly you’ve heard by now that Intel has a bid on the table to buy McAfee (for $7.7B). ¬†We’ve written before about the collaboration that’s been going on between the two companies for almost two years now, which we suspect is a leveraging of features at both ends of the stack to improve security of [...]

Share

[Read more →]

Tags:···

Data Center Cage as Storage Facility

August 21st, 2010 · No Comments · Business Continuity Planning, Compliance, Data Center, Data Centers, Green Data Center, Green IT, IS Security

As someone with a strong operational ethic, one of my pet peeves is the colo site that resembles a monthly self-storage facility.¬† I’m referring here, to allowing (or tolerating) tenants storing boxes, material, and debris in their cages. A colocation facility that has cardboard and other such material in customer cages shows very poorly.¬† That [...]

Share

[Read more →]

Tags:··

Stuxnet- an Example of Malware as a Weapon

August 18th, 2010 · 3 Comments · Business, Business Continuity Planning, Compliance, IS Security

In my classes at the university, I sometimes give students a project to create a malware pet shop or malware zoo.¬† The purpose is to make the students more aware of the “biodiversity” that really exists out there in the malware world.¬† We also often talk about the increasing use of malware and other network-based [...]

Share

[Read more →]

Tags:····

Internet Content Filtering: 2010 Students’ Perspective

June 14th, 2010 · No Comments · Internet, IS Security

In my IS Security class at the university, I was recently moderating a discussion thread where my students posted their opinions on Internet content filtering. The question was a simple one, “Some schools and libraries use Internet content filters to prohibit users from accessing undesirable Web sites. These filters are designed to protect individuals, yet [...]

Share

[Read more →]

Tags:···

Cloud Cloudiness

April 21st, 2010 · 4 Comments · Business Continuity Planning, Cloud Computing, Compliance, Data Center, Data Centers, Enterprise Architecture, IS Security, IT Governance, SaaS

Confusion Persists Through several posts on this blog, we discussed the many aspects of confusion around the term, “Cloud Computing.”¬† After attending this year’s Cloud Expo in New York City and seeing the same three-layer stack (IaaS, PaaS, SaaS) slide in fifty half of the presentations, I have to conclude that confusion still exists in [...]

Share

[Read more →]

Tags:····

Data Privacy in the Cloud

April 20th, 2010 · No Comments · Business, Compliance, IS Security

We’ve just wrapped up day-one of this year’s Cloud Expo at the Javits Convention Center in New York City.¬† You know, it’s been nearly a year since I attended Cloud World in San Francisco, and over that period of time it surprises me how little new anyone is saying about cloud computing.¬† It borders on [...]

Share

[Read more →]

Tags:············

Physical Security for Cloud Data Centers

December 29th, 2009 · No Comments · Business Continuity Planning, Data Center, Data Centers, Disaster Recovery Planning, IS Security

As I’ve watched the momentum of the Cloud, it’s caused me to reflect upon earlier discussions about data center physical security.  It’s long been my opinion that physical security will soon emerge (or re-emerge) as a top issue in data center planning, since businesses and consumers alike are increasingly reliant on the data and transaction [...]

Share

[Read more →]

Tags:·····