Cybersecurity Lessons from the Pandemic: Protection

To paraphrase an old saying: “One person’s prevention is another person’s protection.” This may well apply to the wearing of masks during the pandemic, the efficacy of which is still being hotly debated by some. Having gone through various iterations, … Continue reading Cybersecurity Lessons from the Pandemic: Protection

Cybersecurity Lessons from the Pandemic: Prevention

Prevention lies somewhere between avoidance and protection, and preventative methods can belong to either. For example, what is stopping outsiders from entering your country or state or town in order to limit the spread of the novel coronavirus? Some m… Continue reading Cybersecurity Lessons from the Pandemic: Prevention

Cybersecurity Lessons from the Pandemic: Perception of Risk

The more “mature” among us may recall when decision-making under uncertainty was based on the concept of “rational economic man.” We estimated or calculated the probability and amount of a loss (or gain) of various courses of action, multiplied the num… Continue reading Cybersecurity Lessons from the Pandemic: Perception of Risk

The Massive Shift to Cyber Crime

There is a cartoon in The New Yorker of March 30, 2020 showing four mobsters, one with a gun, sitting around a table. The caption reads: “For health and safety reasons, we’ll be transitioning to cyber crime.” You can see the cartoon at https://www.newy… Continue reading The Massive Shift to Cyber Crime

Cybersecurity Lessons from the Pandemic: Models and Predictions

There are a number of different types of models—and the output from each must be viewed and used differently depending on the form of the model. First, you have relationships derived from correlations—they show how one variable changes in concert with … Continue reading Cybersecurity Lessons from the Pandemic: Models and Predictions

The Demise of the Internal Datacenter and Consequential Risks

Recently, I happened upon a short article about the demise of internal data centers in favor of cloud services. The article, by John Delaney, appeared on page 28 of the May 2020 edition of the Communications of the ACM, and has the title “The Shu… Continue reading The Demise of the Internal Datacenter and Consequential Risks

Cybersecurity Lessons from the Pandemic: Metrics and Decision-Making

We have discussed previously, such as in my May 18, 2020 BlogInfoSec column, some of the more challenging characteristics of data, such as those relating to value and uncertainty, which are generally not given adequate consideration. This is because th… Continue reading Cybersecurity Lessons from the Pandemic: Metrics and Decision-Making

Cybersecurity Lessons from the Pandemic: Data – Part 2

Having discussed issues relating to the collection and reporting of COVID-19 data in Part 1, we now turn to cyberspace, even though the jury is still out regarding much of the pandemic data. Equivalent situations to those described with respect to the … Continue reading Cybersecurity Lessons from the Pandemic: Data – Part 2

Outsourcing, Supply Chains and (National) Security

For all intents and purposes, the terms “outsourcing” and “supply chain” are used interchangeably and refer to when you are dependent on a third party for providing products and services. However, there are many examples of inte… Continue reading Outsourcing, Supply Chains and (National) Security

Value and Uncertainty in Pandemic Metrics

New York Governor Andrew Cuomo’s daily briefings have become a mainstay of support for many during the COVID-19 pandemic, especially with New York being the initial epicenter of the disease in the U.S. It is clear that Cuomo’s polished slid… Continue reading Value and Uncertainty in Pandemic Metrics