Profile_bird

Hey there! FaustoCepeda is using Twitter.

Twitter is a free service that lets you keep in touch with people through the exchange of quick, frequent answers to one simple question: What's happening? Join today to start receiving FaustoCepeda's tweets.

Already using Twitter
from your phone? Click here.

FaustoCepeda

  1. "It is plausible that we could soon be living in a world without expectation of privacy,anywhere or at any time"-Schneier.
  2. Correct answer: Reproducible. Its not important which methodology u use to evaluate risks, as long as u choose one that is repeatable.
  3. Q: In the context of 27001, what type of methodology should u use? 1.Simple 2.Detailed 3.Reproducible 4.Combined. Choose 1-4 :-)
  4. For example, how do u measure the effectiveness of PGP/TrueCrypt in order to produce comparable/reproducible results?
  5. 27001.4.2.2 Implement ISMS: D) Define how to measure the effectiveness of the controls -> how do you measure eff of a crypto control?
  6. Día 2 de curso Auditor Líder 27001: Auditoría del SOA; Planeación de la Auditoría;Listas de Verificación; Procesos Tipo Tortuga.
  7. "To simulate what an attacker can do,the security tester 1st must perform detective work to simulate the destructive scenarios".-Wysopal.
  8. According to 27001. Compliance: legal obligation (have to do). Conformity: no obligation, I decide to follow 27001.
  9. @joe_mx Gartner tiene otra propuesta de Modelo de Madurez de Seguridad. X el mnto no recuerdo otro...
  10. Regresando de mi curso de Auditor Líder 27001, día 1. Haciendo tarea (caso y BS 19011); repasando los temas vistos hoy.
  11. Nueva entrada en mi blog SeguridadDescifrada: "Seguridad en el Uso del Software Libre".- http://bit.ly/5BAhxk
  12. Online activity over.Ahora a una fiesta en Burger King.¿Saldrá más barato q en un salón d fiestas promedio? La dif entre ambos me dice q sí
  13. ¿Hay una base suficiente d usuarios en Twitter para q las empresas mexicanas aprovechen esta plataforma como en EUA? http://bit.ly/TcbOW
  14. Trend: allowing advertisers to send commercial messages to your personal contacts on Twitter (and earn $).- http://bit.ly/4XKjH5
  15. "The best way to predict the future is to invent it".- Alan Kay <-- We all have the potential to invent our own future.
  16. Capability Maturity Model Level 0: no recognition by organization of need of security -> How many companies are here? :-)
  17. "You have zero privacy anyway. Get over it".- Scott McNealy
  18. Fresh from the oven: "IE7 and IE8 0-Day Reported". I love to be one of the first to know 0-day's!; via @sans_isc
  19. RT @tonyrobbins: "There is only one way to happiness and that is to cease worrying about things which are beyond the power of our will." ...
  20. Starting the writing of my blog: Security in Open Source Software. Describing the security challenges for an enterprise & giving solutions.