Secure Coding mailing list archives

[article] When risk management goes bad


From: Gary McGraw <gem () cigital com>
Date: Fri, 20 Feb 2015 19:13:11 +0000

hi sc-l,

I wrote my latest SearchSecurity article based on conversations I have been having with a number of CSOs and security 
execs.  It’s about what happens when risk management goes bad.  The biggest failure condition seems to be “ignoring the 
lows” entirely.

Anyway, have a read and pass it on: http://bit.ly/risk-gn-bad

As always, your feedback is welcome.

gem

company www.cigital.com
podcast www.cigital.com/silverbullet
blog www.cigital.com/justiceleague
book www.swsec.com
twitter @cigitalgem

_______________________________________________
Secure Coding mailing list (SC-L) SC-L () securecoding org
List information, subscriptions, etc - http://krvw.com/mailman/listinfo/sc-l
List charter available at - http://www.securecoding.org/list/charter.php
SC-L is hosted and moderated by KRvW Associates, LLC (http://www.KRvW.com)
as a free, non-commercial service to the software security community.
Follow KRvW Associates on Twitter at: http://twitter.com/KRvW_Associates
_______________________________________________

Current thread: