SecurityRatty :: tag: rationale
Featured Articles :: Experts Scoff at Satellite Shoot-Down Rationale :: Keeping up with global regulations :: RBAC Standard Rationale: Comments on "A Critique of the ANSI Standard on Role-Based Access Control" :: Security Incident Strikes and You are on the Hot Seat.. :: Ping Identity acquires Sxip Identity :: Vulnerability Events :: Some Comments on the EPTS Member Agreement :: Critical thinking :: Communicating about risk - part 2 :: Internet Protocol Version 6
The Pentagon says it has to shoot down a malfunctioning spy satellite because of the threat of a toxic gas cloud. Space security experts are calling the rationale "comedic gold
...rationale for the US to accept some level of bribery for the sake of broader national interests
The interesting issue here is not the level of enforcement, but the inability of companies to keep track of legislation applying to them. This article quotes a KPMG spokesperson referring to a study that found that nearly half of respondent...
As the authors of the original proposal for the role-based access control (RBAC) standard and developers of the models from which it derives, the authors respond here to Ninghui Li, Ji-Won Byun, and Elisa Bertino's critique, which also appears in this issue. This is an opportune time in the revision cycle to introduce proposals for changes to...
...rationale of why this was accepted in the first place. This highlights the importance of documentation such as business risk acceptance form; this will help to cover your rear during security incidents. Make sure to get a business risk acceptance form signed by the business owner. An example is a business owner signs a business risk...
...rationale of the acquisition is to allow Ping Identity's products to meet enterprise-wide, typically SSO challenges. This is important to be able to further extend Ping's market share with software-as-a-service providers. Is it a breakthrough? Hardly. Questions still remain as to how major enterprises can integrate Ping Identity's new...
...rationale behind this answer is based on the fact that weakness (a.k.a. vulnerability) is a relative term. Logically, a relative term requires at least two components one relative to another. Oh, its true that the flawed condition within the operating system existed all along, but in order for that condition to actually BE vulnerable, the...
...rationale for this is that the EPTS Steering Committee is not a governing body like the US Congress where changes in public sentiment can impact national security. It is much better to have the entire Steering Committee up for relection every two years
I have quite a few other concerns the with EPTS Member Agreement. Basically, the agreement...
...rationale within a complex open-ended environment. Sometimes a specific best practice or standard will be the most cost-effective solution for a given circumstance; sometimes it wont. The important thing is being able to recognize the difference. Thats where critical thinking comes in, and thats where we provide real value as professionals
An...
...rationale is that lines and colors tend to bias interpretation of the results. In other words, if someone sees a risk point plotted in a red background or in the High section of the chart, they equate those results as unacceptable. The fact is, the acceptability of a risk condition is often dependent on the value proposition of the situation,...