Rothman on Beyond the Perimeter Podcast
June 10, 2009
My friend Amrit Williams, CTO of BigFix, invited me to speak on his “Beyond the Perimeter” podcast yesterday. Big mistake for him. Kidding aside, we had a good conversation about a number of things, including how security needs to evolve and why his podcast is called “Beyond the Perimeter.”
Amrit used to cover SIEM (he claims to have originated the term back in the day, while he was burying Jimmy Hoffa, clearly) for Gartner, so we chatted quite a bit about how the industry has evolved and where it’s going, especially relative to emerging compliance requirements.
Here is Amrit’s description:
Episode 26 – Situational Awareness Inside and Beyond the Perimeter
Amrit Williams, CTO of BigFix, Inc. speaks with Mike Rothman, founder of Security Incite and recently hired Senior Vice President of eiQ network on the need to secure information wherever it resides or travels, and a pendulum shift away from log management back to situational awareness. According to Rothman, the emphasis on log management trend stemmed from organizations taking a “check off” approach to information stewardship compliance programs. The renewed interest in situational awareness results from realization that log management alone is not enough to understand, respond, or prevent security breaches–in short, what’s really at stake in information security.
eIQcast 15: Beyond PCI to Security
June 5, 2009
Since Your Working Toward PCI Compliance, Why Not Try to Make Your Enterprise Secure, too?
Events in 2009 provide further proof that PCI compliance is not enough to secure credit card information, yet PCI compliance is a major driver of technology purchases each and every day.
If the need-to-have products for PCI compliance are not enough for security, what are the nice-to-have products that can make an enterprise far more secure?
In the latest episode of the eIQcast podcast series, Ross Levanto asks eIQnetworks Product Evangelist John Linkous for his thoughts on the question. In the process, they discuss the features and functionality that IT and security teams can investigate as part of PCI compliance projects to greatly enhance the security of their systems.
Running time: 8:59
Direct Link: http://eiqcast.podomatic.com/entry/2009-06-05T07_07_13-07_00
Don’t be like Dick and check out eIQ’s video at logdataisnotenough.com

