Stuck in Traffic – Nationwide Insurance and 1000-Days

Archive for the ‘Blogs’ Category

Stuck in Traffic – Verizon and the S3 Bucket

Posted by

Amazon Simple Storage Service (Amazon S3) is an easy way for apps to store data in the cloud. Too easy. And not only easy to use, but also, easy to misconfigure. Verizon learned this the hard way when a third-party’s S3 bucket was found left open, resulting in a breach of six million subscribers. (Pro-tip: use scripts like Bucket Finder to check for open S3 instances.)

Watch more videos on my YouTube channel.

Stuck in Traffic – The Long Game

Posted by

Overnight successes take decades work. Daily effort, consistently, in the face of delays and setbacks. That’s problematic in an industry where the average tenure of Chief Information Security Officers is less than two years. So stick to it, and let me know your years’ long overnight successes.

Watch more videos on my YouTube channel.

Stuck in Traffic – Fake Emails in the Whitehouse

Posted by

A fake email goes from Jared Kushner to Tom Bossert. Another fake email goes from Reince Priebus to Anthony Scaramucci. Another goes out pretending to be the Ambassador for the Russia-designate Jon Huntsman Jr. Oh, and why not email the Trump family? All this goes to show, we need email security awareness training for the top people and the highly visible people.

Watch more videos on my YouTube channel.

Microsoft Valuable Professional (MVP)

Posted by

Microsoft has recognized my work in Cloud Computing security with a 2017-2018 Microsoft Valuable Professional (MVP) award. I’ve long relied upon the guidance and advice from MVPs. It’s a fantastic program. I’m honored to now be included, specifically under Enterprise Security.