Blog Content
Articles on knowledge, tools, and strategies needed to protect you and your stakeholders against evolving cyber threats.
Read moreTechnology is like fish. The longer it stays on the shelf, the less desirable it becomes.

Just Returned From ISC2 Security Congress 2015
I just returned from the 5th annual Security Congress by ISC2. This was my 1st Security Congress, my 1st industry convention, and my 1st time spending meaningful time in California. I didn’t see the article 10 Ways to Get the Most Out of Security Congress until after…
Read moreIf you think technology can solve your security problems, then you don’t understand the problems and you don’t understand the technology.
Read moreWhether you’re traveling with a laptop, netbook, smartphone, iPad, or all of the above, the risks and defenses against them are basically the same.

Just Passed CompTIA Security+ SY0-401 With Flying Colors
I just passed the CompTIA Security+ exam on the first attempt after less than a month of study. You can do the same if you set an appropriate time to learn the material. I used Darril Gibson’s book, CompTIA Security+: Get Certified Get Ahead: SY0-401 Study Guide….

Cloud Computing Service Descriptions
As test day for the Security+ SY0-401 approaches, I thought it would be good to include a few cloud computing service terms for review. PaaS – Platform as a Service This service is for users who want some control over their hosting or development. Reduces the need for…
Read moreA business will have good security if its corporate culture is correct. That depends on one thing: tone at the top. There will be no grassroots effort to overwhelm corporate neglect.
Read moreI think the insistence on credentials at companies is such a huge mistake. I believe you should hire people based on who they are and what they’ve done, not because of something like what college they went to–or even whether they went to college. It turns out, the rigor that college requires often screens out the most creative people anyway.

Local Agency Security Officer (LASO) and CJIS Security Policy (CSP) Survival Guide
Welcome to the LASO and CSP Survival Guide. I created this as a resource to myself when I accepted LASO duties to keep our agency CJIS compliant. There’s a lot of material to keep track of, but hopefully, this collection of information is helpful to you and your…

Proposed Knowledgebase Article Struture
As IT progresses more into service management, it’s good to raise a little above the operation piece of IT and get into the organization piece. Historically IT professionals balked at “time wasting” stuff like this but I’m happy to improve knowledgebase article…

IPv4 CIDR Notation
Learning IPv4 CIDR notation will allow you to simplify network configurations and network information management in IPv4 networks. CIDR (Classless Inter-Domain Routing) notation is a more concise representation of network addresses. It allows network administrators to…
Windows 101
This post is a bit dated and has been flagged for review. Most of these Windows time-tested tips go back several versions of Windows, so they’re definitely worth using. Famous Shortcuts Menu – Win + X Explorer – Win + E Useful cmds ping tracert ipconfig > (output…
Need Additional Guidance?
Get recommended materials and more on the Resources Page.