Bejtlich on Security Justice Podcast

November 7th, 2009 admin

After I spoke at the Information Security Summit in Ohio last month, the guys at the Security Justice podcast interviewed me and Tyler Hudak . You can listen to the archive here . It was fairly loud in the room but you’d never know it listening to the audio. Great work guys. We discuss open source software, vulnerability research and disclosure, product security incident response teams (PSIRTs), input vs output metrics, insourcing vs outsourcing, and building an incident response team. Copyright 2003-2009 Richard Bejtlich and TaoSecurity (taosecurity.blogspot.com


Originally posted on TAOSecurity

 
  Related Posts
Audio of Bejtlich Presentation on Network Security Monitoring
Audio of Bejtlich Presentation on Network Security Monitoring
One of the presentations I delivered at the Information Security Summit last month discussed Network Security Monitoring. The Security Justice guys recorded audio of the presentation and posted it here as Network Security Monitoring and Incident Response. The audio file is InfoSec2009_RichardBejtlich.mp3. Copyright 2003-2009 Richard Bejtlich and... 
Bejtlich to Speak at FIRST 2010
Bejtlich to Speak at FIRST 2010
I’m happy to report that I will present Building a Fortune 5 CIRT Under Fire at FIRST 2010 on 16 Jun 10 in Miami, FL. I plan to attend the majority of the conference, since it is one of the few focused on incident detection and response. I hope to see you there! Copyright 2003-2009 Richard Bejtlich and TaoSecurity (taosecurity.blogspot.com... 
Bejtlich Returns to PaulDotCom Podcast
Bejtlich Returns to PaulDotCom Podcast
The guys at PaulDotCom posted the podcast .mp3 (39 MB) they conducted last week . It was another debate between myself and Ron Gula. We contrast control-centric and threat-centric defensive strategies, as well as discuss advanced persistent threat. Thanks for having us. I had forgotten that I was on their second show in January 2006! Copyright... 
SANS WhatWorks Summit in Forensics and Incident Response
SANS WhatWorks Summit in Forensics and Incident Response
I wanted to remind everyone about the SANS WhatWorks Summit in Forensics and Incident Response in DC, 8-9 July 2010. The Agenda looks great. I will offer the “Expert Briefing: CIRT-level Response to Advanced Persistent Threat” and participate on the “APT Panel Discussion.” This IR event is a great precursor to my next SANS... 
DojoCon Videos Online
DojoCon Videos Online
Props to Marcus Carey for live streaming talks from DojoCon . I appeared in my keynote , plus panels on incident response and cloud security . I thought the conference was excellent and many people posted their thoughts to #dojocon on Twitter. Copyright 2003-2009 Richard Bejtlich and TaoSecurity (taosecurity.blogspot.com and www.taosecurity.com)... 
Bejtlich Keynote at VizSec 2010
Bejtlich Keynote at VizSec 2010
I am pleased to report that I’ve been invited to deliver the keynote at VizSec 2010 on 14 Sep in Ottawa, Ontario. I am on the Program Committee for a third year and will be evaluating papers soon. Please visit my post on calls for papers for DFRWS, VizSec, and RAID. Thank you. Copyright 2003-2009 Richard Bejtlich and TaoSecurity (taosecurity.blogspot.com... 
Submit Questions for OWASP Podcast
Submit Questions for OWASP Podcast
Jim Manico invited me to speak on the OWASP Podcast . If you’d like me to try answering specific questions, please email them to podcast at owasp.org. When the show is posted I will let everyone know here. Thank you. Copyright 2003-2009 Richard Bejtlich and TaoSecurity (taosecurity.blogspot.com and www.taosecurity.com)  Read More →
Bejtlich and Bradley on SANS Webcast Monday 2 Nov
Bejtlich and Bradley on SANS Webcast Monday 2 Nov
Ken Bradley and I will conduct a Webcast for SANS on Monday 2 Nov at 1 pm EST. Check out the sign-up page. I’ve reproduced the introduction here. Every day, intruders find ways to compromise enterprise assets around the world. To counter these attackers, professional incident detectors apply a variety of host, network, and other mechanisms... 
Traffic Talk 8 Posted
Traffic Talk 8 Posted
I just noticed that my 8th edition of Traffic Talk , titled How to use user-agent strings as a network monitoring tool , was posted this week. It’s a simple concept that plenty of NSM practitioners implement, and I highly recommend it. Copyright 2003-2009 Richard Bejtlich and TaoSecurity (taosecurity.blogspot.com and www.taosecurity.com)... 
Still Looking for Infrastructure Administrator for GE-CIRT
Still Looking for Infrastructure Administrator for GE-CIRT
Two months ago I posted Information Security Jobs in GE-CIRT and Other GE Teams . I’ve almost filled all of the roles, or have candidates for all roles in play, with the exception of one — Information Security Infrastructure Engineer (1147859) . We’re looking for someone to design, build, and run infrastructure to support GE-CIRT... 
  Related Tweets from Twitter
mp_mccabe (Michael McCabe)  : RT @MHComputing: Review of IT #Security Metrics: A Practical Framework for Measuring Security & Protecting #Data http://ow.ly/2zaUU..
Updated : 2010-09-03T21:27:16Z   |  Reply  |  View Tweet
ddpbsd (dan)  : #FF @xme @gattaca @hevnsnt @indi303 @jack_daniel @lizborden @taosecurity all smart and entertaining...
Updated : 2010-09-03T21:05:24Z   |  Reply  |  View Tweet
4v4t4r (4v4t4r)  : #InfoSec #FF 5 @exploitdb @PenTesterScript @crackinglandia @kfs @CoreSecurity @taosecurity @thomas_wilhelm @ethicalhacker @_Laz3r_..
Updated : 2010-09-03T20:04:05Z   |  Reply  |  View Tweet
aircrackng (Thomas d'Otreppe)  : RT @joswr1ght: TaoSecurity: Review of Hacking Exposed: Wireless, 2nd Ed Posted http://t.co/aicbN1F via @taosecurity (Awesome!)..
Updated : 2010-09-03T19:44:59Z   |  Reply  |  View Tweet
karlarss (Karla Rosas)  : RT @barucomx: RT @taosecurity: 10 easy ways to fail a Ph.D. http://bit.ly/aQOHCr I like the focus on research, (cont) http://tl.gd/3feb98..
Updated : 2010-09-03T18:13:22Z   |  Reply  |  View Tweet
  Related News from Digg
No comments yet.
You must be logged in to post a comment.
TOP