Convercent wants to make it easier for companies to measure ethical behavior

It’s not always easy to do the right thing or to make ethical decisions in a complex business environment. People get lost inside large organizations and group think can overwhelm even normally ethical individuals. Convercent has created a platform to help, and today it announced a new benchmarking dashboard to allow companies to measure just […] Continue reading Convercent wants to make it easier for companies to measure ethical behavior

Are All Social Engineers Bad?

When you think about what a social engineer does, and how influence and manipulation are used by good and bad SEs, it is easy think that to be an SE you need to have an evil personality or even have sociopathic tendencies. Is that true, are all social … Continue reading Are All Social Engineers Bad?

It Is Important To Have Ethics In Social Engineering

Over the years of being a professional social engineer (SE), I have been asked questions like, “Are you really testing your clients if you don’t use EVERY method possible?” Or, “You are acting like the bad guys, why do you need … Continue reading It Is Important To Have Ethics In Social Engineering

As a security compliance professional, what should I do if I find that my employer has a PCI AOC but is not compliant?

I have an ethical dilemma. A couple of weeks ago, I accepted a security compliance role. For the past five years I have been working as a PCI QSA before accepting this role.

In the short time that I have been with the compa… Continue reading As a security compliance professional, what should I do if I find that my employer has a PCI AOC but is not compliant?

Is an exploit that exposes the balance of any account in the bank a high risk exploit?

I have found an exploit to get account balance information for any account in my bank website.

What is the level of this exploit (risk, medium, low)?

and is it ethical to ask for a prize or money before telling them what i… Continue reading Is an exploit that exposes the balance of any account in the bank a high risk exploit?