Incident Response

Former Anthem CIO Admits a Lack of Awareness Training

An article review. Well, duh . . . . By now we’ve all read the headlines associated with the recent Anthem Insurance data breach. After all, this incident will go down in the record books as being the third largest data breach to date, at least with regard to the number o...

SOS Indiana Advisory

And now that we are all paying attention . . . A great example of Awareness Activation! Another one of those Dan’s New Leaf Posts, meant to inspire thought about IT Governance . . . . When we finally release our annual “trend article” . . . .  and weR...

Incident Response Laws

47 States have Customer Notification Laws “Which laws do we need to comply with?” Another one of those Dan’s New Leaf Posts, meant to inspire thought about IT Governance . . . . We’re often asked a question like: “Does Indiana (or Ohio or Il...

Is this a pandemic?

20% of Business Assets Infected “We better have at least two layers of defense!” A recent study reminds us to recognize that even if anti-malware is the least of our worries, that doesn’t mean our partners or customers are controlling it.  With almost 20%...

Turn Lemons into Lemonade with Proactive Incident Responses!

A good incident response plan puts the finishing touch on an IT Governance Program. Let’s face it, there’s no such thing as 100% Security.   And any good risk assessment results in a certain level of accepted residual risk.  It is this residual risk that we resp...

Turning Lemons into Lemonade

Incident Response Planning If you’re looking for something to read over the weekend, you might want to check out this interesting article about Incident Response.  Though it is geared to bigger businesses and based on the recent retail breaches, it gives insight into ...

The Magnificent Seven 2013 (M7-2013)

M7-2013:  Trends in Bank Information Security On October 7th, 2009, the head of the FBI stopped banking online.  Robert Mueller cited the fact that he nearly fell for a phishing attempt as the reason.  The first “Magnificent Seven” that I wrote, two years earlier, establish...

Incident Response

Go here to learn more about our Incident Response Program Kit! Dan Hadaway, CISA, CISM, CRISC Managing Partner Dan speaks regularly at various conferences, workshops, and webinars. He has delivered talks for the Community Bankers Association of Illinois, the...
IT Governance documentation is both extremely important and extremely difficult to create for IT managers, Information Security Officers, and Compliance Officers alike. infotex has been maturing GLBA and HIPAA templates since before the regulations were law. Our first Accept...

Identity Theft Prevention Flyer

Identity Theft Prevention Flyer:   This re-brandable flyer template is intended to aid your customer training, but also makes an excellent flyer to deliver to customers during a disclosure incident.  It is focused more on identity theft and prevention than on-line safety.  F...