One company I worked at had a sad data center failure, and I’m not talking a power outage or a fire or theft.
When I arrived at this company, it had no security department. Few security processes. Little security.
And the company also made two interesting mistakes when it hired me.
Continue reading →
Like this:
Like Loading...
Filed under Audit, Case Files, Security, Security Scout
Tagged as check printer, data center, door, failure, GOOJ, mainframe, mistake, Security, SSN
Okay, so you’re not up to a wastebasket audit? Too demeaning, too sneaky, too many sticky candy wrappers? How about a simple server share audit?
Many companies have shared drives, and then they have “over-shared” drives, those locations where anyone who needs a space to store files that they share with a couple departments. Or perhaps your company just doesn’t lock their shares according to the least privilege principle.
Continue reading →
Like this:
Like Loading...
Filed under Audit, How to...
Tagged as appraisal, Audit, confidential, demotion, easy, encryption, intellectual property, lawsuit, least privilege, medical history, naked, nude, password, PII, porn, salary, search, server, sex, share, social security, SSN, theft, trade secret, wastebasket audit, xxx
No, I’m not suggesting that you don’t answer your phone. Just be careful what you do or say when you are called or contacted.
What am I talking about? A principle I refer to as the CONTACT principle, which will keep your private information private:
Continue reading →
Like this:
Like Loading...
Filed under Security, Security Scope
Tagged as bank account, children, confidential, contact list, contact principle, easy, email, help desk, helpful, initiate, internet, malware, password, reset, scam, secret, Security, Security Scope, share, social engineering, SSN, trained, trust, verify
Is it really true that one person’s trash is another person’s cash or treasure? It depends. When was the last time a trash can near you contained anything like this?
Continue reading →
Like this:
Like Loading...
Filed under Security, Security Scope, Written by Skyyler
Tagged as cash, cicrular file, confidential, dumpster diving, fun, laid off, layoff, post-it notes, Security, Security Scope, sensitive, shredder, social security, SSN, trash can, treasure, vulnerability, waste basket