Following the Wh1t3 Rabbit - Practical Enterprise Security

Enterprise Security organizations often find themselves caught between the ever-changing needs of the agile business, and the ever-present, ever-evolving threats to that business. At the same time – all too often we security professionals get caught up in “shiny object syndrome” which leads us to spend poorly, allocate resources unwisely, and generally de-couple from the organization we’re chartered to defend. Knowing how to defend begins with knowing what you’ll be defending, why it is worth defending, and who you’ll be defending from… and therein lies the trick. This blog takes the issue of enterprise security head-on, challenging outdated thinking and bringing a pragmatic, business-aligned, beyond the tools perspective … so follow the Wh1t3 Rabbit and remember that tools alone don’t solve problems, strategic thinkers are the key.

Rafal (Principal, Strategic Security Services)

DtR Episode 26 - Guest: Brad Arkin of Adobe - Software Security Under Pressure

DtR Podcast Episode 26 is with the man many of you love to hate on - but he's doing a phenomenal job ... hear his story as Adobe's Brad Arkin tells you about "Software Security Under Pressure"...

Down the Rabbithole Podcast - [Episode 24] - DarthNull & InfoJanitor

All things InfoSec and relevant is the topic for this episode, DtR Episode 24, of the podcast.  Check out the ~30 minute discussion of Information Security relevant issues from a rational and insider perspective.

Down the Rabbithole Podcast - [Episode 21] - Guests: Wickett, Galbreath, Saudan

Episode 21 of Down the Rabbithole is now live!

 

Road Ahead.jpgThis time I got the pleasure of sitting down and continuing a Twitter conversation with Nick Galbreath, James Wickett, and Olivier Saudan - to talk about what it means to 'deploy faster' in a fast-paced world of technology.

 

We're talking DevOps, continuous deployment strategies, Application Security and a sane way to do it all while getting the 'big risk picture' that doesn't only include security and hackers...

 

Each of these guests has a background in Information Security, each bringing their own tint of enterprise development, deployment, operations and security ... and it sparked a fantastic conversation that I think everyone can learn from.  I invite you to give this episode a try, and shoot back some feedback!

 

Direct link: Listen to the Down the Rabbithole podcast, Episode 21 NOW

Down the Rabbithole Podcast - [Episode 20] - Gene Kim on DevOps

Check out Episode 20 of the Down the Rabbithole Podcast this time we were live from HP Discover Las Vegas 2012 with Mr. Gene Kim ...and talking DevOps... don't miss this episode!

Labels: DevOps| podcast

Down the Rabbithole Podcast - [Episode 19] Bob Arno - the world's foremost legal pick-pocket

Episode 19 of "Down the Rabbithole" is now live with one of the most interesting guests you'll ever have the pleasure of listening to.  Keep one hand on your valuables, and listen as we dive into his world...

Labels: podcast| security

Catch "Down the Rabbithole" Live from HP Discover Las Vegas 2012 - The schedule

Don't miss this opportunity to listen in live from the comforts of your own desktop as we bring the best of HP Discover Las Vegas 2012 straight to your eardrums!  Check out the latest schedule of guests and topics right here...

Labels: HP Discover| podcast

Down the Rabbithole Podcast Has Been Officially "Reviewed"

Alright, this is just cool.

 

As some of you know my podcast has recently experimented with broadcasting LIVE from events I'm attending in case some of you want to listen to the shows as I record them, with live guests and more importantly Twitter interaction via Q&A ...

 

The Spreaker.com broadcast page is here: http://www.spreaker.com/page#!/show/down_the_rabbithole ...so any time you want to listen to a show I Tweet that I'm going to broadcast LIVE it'll be off that page.

 

Now ...here's the part I'm happy about.  Nick Schott reviews shows on Spreaker just recently did a review of the my brand new podcast on this distribution/broadcast site and ... well, I'll let you listen for yourself.  Is it weird that I'm excited that someone actually took the time to listen to, and review my "tech web show" as he puts it?

 

Thanks to Nick for taking the time, and hopefully this encourages more people to listen and learn something ...I do this so you all enjoy it and learn something along with me!  If you'd be so kind ...return the love to Nick and leave him a nice comment or two, for supporting my podcast.

 

 

Check it out the review of "Down the Rabbithole" Nick did, here: http://api.spreaker.com/download/episode/533526.mp3

Labels: podcast

Podcast Launch - "Down the Rabbithole"

If you enjoy this blog and topics I discuss, I would love to have you as a listener on the bi-weekly 30-minute "Down the Rabbithole" podcast (http://podcast.wh1t3rabbit.net/webpage)!


Read on...

Labels: podcast

Welcome to the Jungle

As many of you have become aware, Mike Bailey (@mckt_) pulled me into giving a talk at Defcon 18 a week or so ago. The talk was (re)titled "The WebAppSec Fail Fireside Chat", and apparently a lot of people wandered in and had a blast with us!
Search
About the Author(s)


HP Blog

HP Software Solutions Blog

Community Announcements
Follow Us
Labels