<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Consciere</title>
	<atom:link href="http://www.consciere.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.consciere.com</link>
	<description>Act With Knowledge</description>
	<lastBuildDate>Tue, 20 Apr 2010 17:41:03 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0</generator>
		<item>
		<title>Consciere Joins the Microsoft Security Development Lifecycle (SDL) Pro Network</title>
		<link>http://www.consciere.com/2010/04/consciere-joins-the-microsoft-security-development-lifecycle-sdl-pro-network/</link>
		<comments>http://www.consciere.com/2010/04/consciere-joins-the-microsoft-security-development-lifecycle-sdl-pro-network/#comments</comments>
		<pubDate>Tue, 20 Apr 2010 17:41:03 +0000</pubDate>
		<dc:creator>Joel Scambray</dc:creator>
				<category><![CDATA[News]]></category>

		<guid isPermaLink="false">http://www.consciere.com/?p=534</guid>
		<description><![CDATA[Consciere is proud to announce our membership in Microsoft&#8217;s SDL Pro Network. For more information, see our SDL Pro page.]]></description>
			<content:encoded><![CDATA[<p>Consciere is proud to announce our membership in Microsoft&#8217;s SDL Pro Network. For more information, see our <a href="http://www.consciere.com/consciere-microsoft-sdl" target="_self">SDL Pro page</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.consciere.com/2010/04/consciere-joins-the-microsoft-security-development-lifecycle-sdl-pro-network/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>The Greatest InfoSec Threat of 2010: Restructuring</title>
		<link>http://www.consciere.com/2010/03/greatest-threat-of-2010-reorgs/</link>
		<comments>http://www.consciere.com/2010/03/greatest-threat-of-2010-reorgs/#comments</comments>
		<pubDate>Thu, 25 Mar 2010 18:08:07 +0000</pubDate>
		<dc:creator>Joel Scambray</dc:creator>
				<category><![CDATA[Blog]]></category>

		<guid isPermaLink="false">http://www.consciere.com/?p=503</guid>
		<description><![CDATA[The industry is again abuzz, this time about the advanced persistent threat (APT) and other “new” sophisticated boogeymen lurking out there on the big bad Internet. Ironically, the greatest threat to the success and continuity of enterprise information security programs that I see strikes much closer to home, and isn’t nearly a sexy: re-orgs. I [...]]]></description>
			<content:encoded><![CDATA[<p>The industry is again abuzz, this time about the advanced persistent threat (APT) and other “new” sophisticated boogeymen lurking out there on the big bad Internet. Ironically, the greatest threat to the success and continuity of enterprise information security programs that I see strikes much closer to home, and isn’t nearly a sexy: re-orgs.</p>
<p>I can’t count the number of security leaders that I talk to who either are planning, implementing, or just coming out of a re-org, whether self-inflicted or due to upheaval in the ranks above or to the sides. And let’s not even mention the ongoing game of CISO musical chairs that decapitates entire programs and leaves them listless for months on end. I see far more damage to the infosec capability at these businesses from this ongoing restructuring than I ever do from malware outbreaks: management loses confidence and hard-won political capital vanishes, operations and key initiatives get whipsawed by shifting attention, budgets are unpredictable, infrastructure investments wither from lack of care and feeding, morale and cross-group perception ranges from cynical to downright bleak, and a sense of helplessness pervades a practice that is supposed to be enhancing visibility and control over IT.</p>
<p>Certainly, change is inevitable, and some restructuring can of course be good if done thoughtfully to improve clarity of mission, roles and responsibilities, or other fundamentals. But my sense is that we’re changing too much, too often, and it’s disrupting our focus, damaging our credibility and ability to get things accomplished in the long view.</p>
<p>It’s time to adopt a more cross-generational perspective, align around a few fundamental practices that must be sustained for posterity, and keep the eggs incubating in the nest for a little bit longer. Because whatever your opinion about APT, I think most would agree on the “persistent” aspect. What’s your infosec succession plan?</p>
]]></content:encoded>
			<wfw:commentRss>http://www.consciere.com/2010/03/greatest-threat-of-2010-reorgs/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>IANS Mid-Atlantic Forum 2010</title>
		<link>http://www.consciere.com/2010/03/ians-mid-atlantic-forum-2010/</link>
		<comments>http://www.consciere.com/2010/03/ians-mid-atlantic-forum-2010/#comments</comments>
		<pubDate>Wed, 17 Mar 2010 23:18:04 +0000</pubDate>
		<dc:creator>Joel Scambray</dc:creator>
				<category><![CDATA[News]]></category>

		<guid isPermaLink="false">http://www.consciere.com/?p=492</guid>
		<description><![CDATA[Joel co-moderated the “Security Operations” roundtable track with Marcus Ranum at the IANS Mid-Atlantic Forum in Washington DC on March 16-17. The track included 3 sessions over 2 days on Proactive Threat Management, Use Cases for SIEM, and Best Practices in Response.]]></description>
			<content:encoded><![CDATA[<p>Joel co-moderated the “Security Operations” roundtable track with Marcus Ranum at the <a href="http://www.ianetsec.com/forums/splash.html?forum_id=49" target="_blank">IANS Mid-Atlantic Forum in Washington DC </a>on March 16-17. The track included 3 sessions over 2 days on Proactive Threat Management, Use Cases for SIEM, and Best Practices in Response.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.consciere.com/2010/03/ians-mid-atlantic-forum-2010/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>INTERFACE Portland Keynote Presentation</title>
		<link>http://www.consciere.com/2010/03/interface-portland-keynote-presentation/</link>
		<comments>http://www.consciere.com/2010/03/interface-portland-keynote-presentation/#comments</comments>
		<pubDate>Tue, 09 Mar 2010 20:45:45 +0000</pubDate>
		<dc:creator>Joel Scambray</dc:creator>
				<category><![CDATA[News]]></category>

		<guid isPermaLink="false">http://www.consciere.com/?p=487</guid>
		<description><![CDATA[Joel Scambray presented &#8220;Hacking Evolved: The New Cognitive Style of Information Security&#8221; at the INTERFACE conference in Portland, OR on March 9. Consciere also had a booth at the conference, and engaged many existing and new clients in the Portland area in discussions of information security trends and initiatives over 3 days surrounding the event.]]></description>
			<content:encoded><![CDATA[<p>Joel Scambray presented &#8220;<a href="http://www.f2fevents.com/index.php/portland-seminar-schedule" target="_blank">Hacking Evolved: The New Cognitive Style of Information Security</a>&#8221; at the INTERFACE conference in Portland, OR on March 9. Consciere also had a booth at the conference, and engaged many existing and new clients in the Portland area in discussions of information security trends and initiatives over 3 days surrounding the event.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.consciere.com/2010/03/interface-portland-keynote-presentation/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>&quot;Intelligent Vulnerability Management&quot; discussion with IANS</title>
		<link>http://www.consciere.com/2010/02/vuln_mgmt_ipc/</link>
		<comments>http://www.consciere.com/2010/02/vuln_mgmt_ipc/#comments</comments>
		<pubDate>Fri, 26 Feb 2010 16:46:06 +0000</pubDate>
		<dc:creator>Joel Scambray</dc:creator>
				<category><![CDATA[News]]></category>

		<guid isPermaLink="false">http://www.consciere.com/?p=480</guid>
		<description><![CDATA[Joel Scambray moderated &#8221;Intelligent Vulnerability Management: The Art of Prioritizing Remediation&#8221; with Time Warner Cable, RedSeal Systems, and a group of information security leaders via IANS&#8217; Interactive Phone Call series. More art than science, minimizing the expense of remediation requires ruthless prioritization, solid strategy, and proper tools. This recorded discussion addresses each of these factors as it applies [...]]]></description>
			<content:encoded><![CDATA[<p>Joel Scambray moderated &#8221;<a href="https://ians.webex.com/ians/lsr.php?AT=pb&amp;SP=EC&amp;rID=38450262&amp;rKey=e9dae1133b8b4de6" target="_blank">Intelligent Vulnerability Management: The Art of Prioritizing Remediation</a>&#8221; with Time Warner Cable, RedSeal Systems, and a group of information security leaders via IANS&#8217; Interactive Phone Call series. More art than science, minimizing the expense of remediation requires ruthless prioritization, solid strategy, and proper tools. This recorded discussion addresses each of these factors as it applies to vulnerability management, discussing in detail the implications of specific patch management initiatives, techniques for setting priorities, and the best tools to guide the remediation process. This virtual discussion is ideal for risk, compliance, and security managers, as well as anyone looking for new approaches to reducing excessive security efforts. (Registration required).</p>
]]></content:encoded>
			<wfw:commentRss>http://www.consciere.com/2010/02/vuln_mgmt_ipc/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Kevin Nassery presented at NANOG 48</title>
		<link>http://www.consciere.com/2010/02/kevin-nassery-presenting-at-nanog-48/</link>
		<comments>http://www.consciere.com/2010/02/kevin-nassery-presenting-at-nanog-48/#comments</comments>
		<pubDate>Tue, 23 Feb 2010 02:07:01 +0000</pubDate>
		<dc:creator>Joel Scambray</dc:creator>
				<category><![CDATA[News]]></category>

		<guid isPermaLink="false">http://www.consciere.com/?p=471</guid>
		<description><![CDATA[Kevin Nassery presented &#8221;Network Tapping Architectures&#8221; at  NANOG 48 in Austin, TX on February 22, 2010. ]]></description>
			<content:encoded><![CDATA[<p>Kevin Nassery presented &#8221;<a href="http://www.nanog.org/meetings/nanog48/abstracts.php?pt=MTUwNiZuYW5vZzQ4&amp;nm=nanog48" target="_blank">Network Tapping Architectures</a>&#8221; at <span id="_marker"> </span>NANOG 48 in Austin, TX on February 22, 2010.<span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 11pt; mso-ascii-theme-font: minor-latin; mso-fareast-font-family: Calibri; mso-fareast-theme-font: minor-latin; mso-hansi-theme-font: minor-latin; mso-bidi-font-family: 'Times New Roman'; mso-bidi-theme-font: minor-bidi; mso-ansi-language: EN-US; mso-fareast-language: EN-US; mso-bidi-language: AR-SA;"><span style="mso-spacerun: yes;">  </span></span></p>
]]></content:encoded>
			<wfw:commentRss>http://www.consciere.com/2010/02/kevin-nassery-presenting-at-nanog-48/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Kevin Nassery speaking at THOTCON 0&#215;1</title>
		<link>http://www.consciere.com/2010/01/kevin-nassery-speaking-at-thotcon-0x1/</link>
		<comments>http://www.consciere.com/2010/01/kevin-nassery-speaking-at-thotcon-0x1/#comments</comments>
		<pubDate>Sat, 16 Jan 2010 02:02:38 +0000</pubDate>
		<dc:creator>Joel Scambray</dc:creator>
				<category><![CDATA[News]]></category>

		<guid isPermaLink="false">http://www.consciere.com/?p=469</guid>
		<description><![CDATA[Kevin Nassery will be talking about next generation network monitoring architectures, covering  Data Access Network switches and Hardware Capture cards at THOTCON 0&#215;1.]]></description>
			<content:encoded><![CDATA[<p>Kevin Nassery will be talking about next generation network monitoring architectures, covering  Data Access Network switches and Hardware Capture cards at <a href="http://www.thotcon.org/speakers.html" target="_blank">THOTCON 0&#215;1</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.consciere.com/2010/01/kevin-nassery-speaking-at-thotcon-0x1/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>IANS Pacific Forum</title>
		<link>http://www.consciere.com/2009/12/ians-pacific-forum/</link>
		<comments>http://www.consciere.com/2009/12/ians-pacific-forum/#comments</comments>
		<pubDate>Tue, 08 Dec 2009 19:56:24 +0000</pubDate>
		<dc:creator>Joel Scambray</dc:creator>
				<category><![CDATA[News]]></category>

		<guid isPermaLink="false">http://www.consciere.com/?p=364</guid>
		<description><![CDATA[Joel Scambray co-moderated the Application and Software Security track at the IANS Pacific Information Security Forum at the JW Marriott in San Francisco December 8-9.]]></description>
			<content:encoded><![CDATA[<p>Joel Scambray co-moderated the <em>Application and Software Security</em> track at the <a href="http://www.ianetsec.com/forums/splash.html?forum_id=48" target="_blank">IANS Pacific Information Security Forum</a> at the JW Marriott in San Francisco December 8-9.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.consciere.com/2009/12/ians-pacific-forum/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Application Security Fundamentals Whitepaper</title>
		<link>http://www.consciere.com/2009/12/application-security-fundamentals-whitepaper/</link>
		<comments>http://www.consciere.com/2009/12/application-security-fundamentals-whitepaper/#comments</comments>
		<pubDate>Tue, 01 Dec 2009 19:26:42 +0000</pubDate>
		<dc:creator>Joel Scambray</dc:creator>
				<category><![CDATA[Blog]]></category>
		<category><![CDATA[News]]></category>

		<guid isPermaLink="false">http://www.consciere.com/?p=353</guid>
		<description><![CDATA[Orginally published in the online magazines Testing Experience and Security Acts, our Application Security Fundamentals whitepaper is now available here. We welcome your feedback, please send your comments and questions via our Contact Us page.]]></description>
			<content:encoded><![CDATA[<p>Orginally published in the online magazines <em>Testing Experience</em> and <em>Security Acts</em>, our <a href="http://69.167.142.2/wp-content/uploads/2009/12/Consciere_Application_Security_Fundamentals_060409.pdf" target="_self">Application Security Fundamentals</a> whitepaper is now available here. We welcome your feedback, please send your comments and questions via our <a href="http://www.consciere.com/request-contact-from-consciere/">Contact Us</a> page.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.consciere.com/2009/12/application-security-fundamentals-whitepaper/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>San Francisco Bay Area InfraGard Presentation</title>
		<link>http://www.consciere.com/2009/11/san-francisco-bay-area-infragard-presentation/</link>
		<comments>http://www.consciere.com/2009/11/san-francisco-bay-area-infragard-presentation/#comments</comments>
		<pubDate>Thu, 19 Nov 2009 19:36:55 +0000</pubDate>
		<dc:creator>Joel Scambray</dc:creator>
				<category><![CDATA[News]]></category>

		<guid isPermaLink="false">http://www.consciere.com/?p=359</guid>
		<description><![CDATA[Joel Scambray presented &#8220;Maximizing the Business Value of Vulnerability Management&#8221; at the fall quarter chapter meeting of the San Francisco Bay Area InfraGard. Through the disclosure and examination of real data and lessons learned, and in collaboration with Kip Boyle (CISO at PEMCO Insurance), Joel showed how Consciere partnered with PEMCO to build and execute on a business [...]]]></description>
			<content:encoded><![CDATA[<p>Joel Scambray presented &#8220;<a href="http://69.167.142.2/wp-content/uploads/2009/12/Maximizing-Business-Value-of-Vulnerability-Management-Consciere-v080.pdf" target="_self">Maximizing the Business Value of Vulnerability Management</a>&#8221; at the fall quarter chapter meeting of the <a href="http://www.sfbay-infragard.org/MEETINGS.htm" target="_blank">San Francisco Bay Area InfraGard</a>. Through the disclosure and examination of real data and lessons learned, and in collaboration with Kip Boyle (CISO at PEMCO Insurance), Joel showed how Consciere partnered with PEMCO to build and execute on a business case for increasing the capabilities of PEMCO Insurance&#8217;s existing vulnerability management program. The discussion covered how looking beyond scanning &amp; patching tools, focusing on metrics, and effectively managing the relationship between InfoSec and other key stakeholders are keys to maximizing business value.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.consciere.com/2009/11/san-francisco-bay-area-infragard-presentation/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
