ISACA To Update IS Audit And Assurance Standards

ISACA, who offer the well-known Certified Information Systems Auditor (CISA), Certified Information Security Manager (CISM), Certified in the Governance of Enterprise IT (CGEIT) and Certified in Risk and Information Systems Control (CRISC) certifications, have announced the introduction of revised Information Systems (IS) Audit and Assurance Standards. The new standards have been restructured in order to yield […]

Ponemon Study Shows Security Metrics May Not Be Understood By Management

A new joint study between the Ponemon Institute and Tripwire suggests that risk-based security metrics may be too complicated for many senior members of the management team to understand. A survey of 1,321 security professionals from the UK and US discovered that 75% thought that metrics were important to a risk-based security program. Far more […]

Cyber Crime and Ireland

As many of you know I am passionate about how we as a country secure the systems, networks and the critical elements of our national infrastructure that we all depend on. I was recently interviewed by the Irish Examiner for an article Cyber Crime: The New Battleground, they ran on the threat posed to Ireland by criminals […]

Source Conference Coming To Dublin

This week will prove to be very exciting for all of us involved in the information security scene. The excellent Source Conference is coming to Dublin. Source already hosts conferences in Boston, Seattle, Barcelona and now Dublin. Having spoken at the Source Conference in Barcelona I can attest that it is one of the better […]

Analyst Update at Infosecurity Europe 2013

I recently attended the Infosecurity Europe 2013 show in London. As part of that trip I took part in an analyst panel hosted by Infosecurity Magazine on what we thought about the current and future landscape regarding information security. The panel discussion was recorded and is available below; Please accept preferences, statistics, marketing cookies to […]

Brian Honan – SC Magazine Information Security Person of the Year 2013

The SC Magazine Awards are held each year during the Infosec conference in London. It is one of the most prestigious events in the information security field and the awards are one of the most coveted. Having been selected as one of the finalists for the award last year, I was honoured when I first […]

Winner of Best Educational Blog !!

Last week was the annual trek to London for Infosec to which I’ve gone for more years than I care to remember. This year saw the second European Security Bloggers meetup which was organised by both Jack Daniel and myself. It was also the first year for the EU Security Blogger Awards. Alan Shimel has been running […]

A Call to Arms for Infosec Pros

My latest article for Help Net Security magazine is now online. In this piece I highlight how the lack fo leadership in the information security industry will cause us a lot of problems and ask that we all do what we can to address this problem. You can read the piece here.

Hacking Senior Management – Video Interview with Tripwire

Earlier this year I attended the RSA Conference in San Francisco. While there I met up with my friends from Tripwire, including David Sparks. David and I started talking about the challenges security professionals have in securing the business environments they work in. He was intrigued when I said the problems I see are not […]