The MSSP Blues

Posted November 26th, 2007 by

All I need is a guitar, a harmonica, and a bottle neck. No, not that kind of bottle neck. =)

Well I got up early this morning
With one of those calls from the SOC
Spent five hours on con-call
Just reboot the #$%^@!ing box.

[chorus]
Oh yeah, you know I really pay my dues
What a great big PITA it is when you got those….
M-S-S-P Blues!
[/chorus]

I got outages to the left of me
Hackers and worms to the right
Thanks to all my S-L-As
I never sleep at night.

Can’t find anybody to hire,
Engineers walkin’ out the door.
All because of shift work
And wanting 5K more.

Customers are requesting changes
They got a lot of hope.
Won’t be getting any work done soon
‘Cause it’s all out of scope.

Syslog messages aren’t collectin’
It’s broke as far as you can see
We lost hours of logfiles
Because the traffic’s all U-D-P.



Similar Posts:

Posted in Outsourcing, The Guerilla CISO | No Comments »

Milestones

Posted November 13th, 2007 by

I have two things happening this week.

First thing is I got my 5-year award from my company on Monday. I got a plaque and a watch and somehow I’m an anomaly, a security guy in the DC area who’s been with the same company for longer than 2 years. But like I tell people, I cheated a little by taking a “one-year paid vacation” to “someplace sunny” in “exotic Asian locales”. =)

Second thing is that on Friday I’ll be “officially smart” by having a degree. Yes, it’s a BS in Liberal Studies with a focus in Russian but at least it clears me for the next couple of hurdles–GSA schedule and billable rates being the first one.

Think I’m incorrigible now, just wait. But hey, isn’t that how the Straw Man got smart? Anyway, in the spirit of the Straw Man, something about this movie makes me echo the one comment that it has: “wtf?” but something about it makes me chuckle and think that I have to put it here, junk or not:



Similar Posts:

Posted in Odds-n-Sods, The Guerilla CISO, Zombies | 4 Comments »

Guerilla CISO Tip–Avoid “Boilerplate”

Posted November 12th, 2007 by

Repeat after me: “This isn’t a legal contract, you don’t have to include boilerplate for CYA purposes.”

Actually, the boilerplate in  security documents does one of the following:

  • Is a bunch of lies because it never gets updated
  • Refers to common or shared controls which are written down somewhere else and you should be referring to them instead of including them verbatim
  • Is a rehash of NIST/BS7799/PCI-DSS documents or standards that we all know anyway
  • Is marketing information or “Ra-Ra” cheerleading
  • Is an attempt at “malicious compliance

None of these are what you really want to do.  So think about it next time you create a template for something.



Similar Posts:

Posted in The Guerilla CISO, What Doesn't Work | No Comments »

Security Managers with PMP

Posted October 19th, 2007 by

I’ve been toying with the idea for about 6 months, but I think I’ve decided to go for a PMP.

See, one of my little foibles is that if you act long enough like you can’t manage a project, I eventually get impatient and end up taking it over. So I figured that since I’ve led a bazillion projects, I might as well get credit for it. =)

Anyway, I’m interested in a quick straw poll on how many security folks are out there doing PM jobs.  It seems like we get pulled into PM stuff more and more because more often than not, we know how things are supposed to work.



Similar Posts:

Posted in The Guerilla CISO | 4 Comments »

Even Better Spam

Posted October 9th, 2007 by

I’m utterly shocked now. I’m used to getting vendor spam, but almost always is something like “buy our continuous compliance cr*p” or “make all your SoX problems go away at the drop of a hat and $0.5M”. A whole data center is way out of the ballpark for me.

Anyway, on to the spam:

Rybolov, I understand you are the correct person at $Foo Corporation to contact about data center requirements. If that is not the case, please let me know either by telephone or email reply as to who the correct person is so that I may contact them directly regarding this facility, or feel free to forward this email.

We’ve recently brought to market our Teaneck NJ data center, and it is available for lease at a significant discount to the replacement cost of $25+ million.

The Teaneck property is a 53,000 SF, free-standing secure facility with raised floor and office space. It was most recently occupied by the <large financial institution> as a primary data facility, and has undergone significant upgrades since its initial construction. Some features of the facility are:
– 18,047+/- SF of raised data floor
– 2.5Mw delivers 138 watts/SF and is expandable.
– Multiple fiber providers through diverse building entrances.
– Fully fenced and secured perimeter

There are few, if any, comparable properties available in the greater NYC/NJ area.

If $Foo Corporation is planning for additional data center space, then I’d be happy to talk to you in more detail about this facility or others we currently hold.
I have technical staff available for conference calls and site tours.

Regards.
<name witheld to protect the not-so-innocent>



Similar Posts:

Posted in Odds-n-Sods, The Guerilla CISO | 3 Comments »

Blog Statistics and Search Strings

Posted October 9th, 2007 by

So all 5 of my blog readers keep coming back. That’s good. =)

But every time I go through my search strings–queries people put into a search engine that take them to my blog–some good questions pop up. I like to look at it every now and then to get a feel for the zeitgeist of who’s looking and reading my stuff. Maybe just deep down inside I’m all egotistical, but really it’s fun to look at the anomalies.

Here is the long tail of my search strings:

  • c-word: 2 searches. Yes, I want this meme to stick around for a couple months more. Of course, the post is The C-Word.
  • magic ciso: 2 searches. Believe it or not, Sprinkling on the Magic FISMA Fairy Dust is the #1 search result when I checked.
  • compliance without “liance”: 1 search. Part of The C-Word.
  • A synonym for guerillas: 1 search. Oddly enough, it points to SBU Must Die.
  • do financial institutions need a ciso: 1 search. If you have to ask, the answer is “yes”. Next question, please. =) I just can’t find where this search string points to.
  • skilcraft us gov pens: 1 search. Yes, the same pens we all know and love. This one also goes to SBU Must Die.


Similar Posts:

Posted in Odds-n-Sods, The Guerilla CISO | 3 Comments »

« Previous Entries Next Entries »


Visitor Geolocationing Widget: