Bill Brown:Thoughts and Reference Material Online
open-menu closeme
Home
About
Contact Us
Privacy Statement
rss linkedin
  • Intrusion Detection Systems: Evolution and Detection Methods

    calendar Sep 13, 2026 / Sep 13, 2026 · 16 min read · intrusion detection network security ids  ·
    Share on: twitter facebook linkedin copy

    Intrusion Detection Systems: Evolution and Detection Methods Introduction The Transmission Control Protocol over Internet Protocol (TCP/IP), over the years, became one of the most successful networking protocol stacks and is now universally used as described by Vacca (2013). A computer network is a series of computers …


    Read More
  • Selecting Security Safeguards After a Customer PII Breach

    calendar Sep 12, 2026 / Sep 13, 2026 · 5 min read · security risk mitigation incident response pii  ·
    Share on: twitter facebook linkedin copy

    Selecting Security Safeguards After a Customer PII Breach Safeguards and Controls as Landoll (2016) points out are selected based on how effective they are in addressing the indicated security risk or as the author points out controls and safeguards are put in place to reduce the security risk. There are many …


    Read More
  • Quantitative vs Qualitative Risk Analysis: Metrics and OCTAVE

    calendar Sep 11, 2026 / Sep 13, 2026 · 2 min read · risk analysis security metrics octave  ·
    Share on: twitter facebook linkedin copy

    Quantitative vs Qualitative Risk Analysis: Metrics and OCTAVE Quantitative Risk Analysis Quantitative risk analysis, as described by Kim & Solomon (2014), attempts to describe risk in financial terms and put a dollar value on all the elements of risk. The quantitative risk is numerically based data and has a financial …


    Read More
  • How Raw Data Becomes Usable Information in Research Projects

    calendar Sep 10, 2026 / Sep 13, 2026 · 5 min read · research methods data research instruments  ·
    Share on: twitter facebook linkedin copy

    How Raw Data Becomes Usable Information in Research Projects From Raw Data to a Research Question Data can become useable in many area's of life, business, education and research. To answer the question 'How does data become usable information' the answer will be directed to a business question that needs to be …


    Read More
  • Applying ISA-CMM Process Areas to Capability Appraisals

    calendar Aug 8, 2026 / Aug 8, 2026 · 4 min read · isa-cmm capability maturity model information assurance security appraisal cmm process areas information security assurance security assessment capability maturity appraisals risk assessment security governance  ·
    Share on: twitter facebook linkedin copy

    Applying ISA-CMM Process Areas to Capability Appraisals A maturity model only produces a usable result if the appraisal method built around it is disciplined. ISSC662 coursework on the Information Security Assurance Capability Maturity Model (ISA-CMM) treats the appraisal itself as the object worth studying, not just …


    Read More
  • Software Security Maturity Models: A Source Review

    calendar Jun 20, 2026 / Jun 20, 2026 · 6 min read · software security bsimm owasp samm isa-cmm secure development information assurance  ·
    Share on: twitter facebook linkedin copy

    Software Security Maturity Models: A Source Review Building Security in Maturity Model (BSIMM) The Building Security in Maturity Model (BSIMM), is a guideline that outlines 113 activities organized into 12 different sections which assist in the software security framework. The document is broken into two parts. The …


    Read More
  • Comparing BSIMM and SAMM Software Security Models

    calendar Jun 19, 2026 / Jun 20, 2026 · 31 min read · software security bsimm owasp samm capability maturity model information assurance secure development  ·
    Share on: twitter facebook linkedin copy

    Comparing BSIMM and SAMM Software Security Models The role of the information assurance security program as described by Sadiku, Alam, & Musa (2017) is the practice of protecting and defending information systems by ensuring their availability, confidentiality, integrity, authentication, and non-repudiation. …


    Read More
  • Applying the ISA-CMM: A Cloud E-Store Case Study

    calendar Jun 18, 2026 / Jun 20, 2026 · 4 min read · isa-cmm information assurance cloud security aws security assessment capability maturity model  ·
    Share on: twitter facebook linkedin copy

    Applying the ISA-CMM: A Cloud E-Store Case Study Company A (CA) is a major supplier of satellite imagery to commercial, federal and defense vertical markets. The organization launched an e-commerce website on the Internet or an estore enabling customers to navigate, review and purchase satellite imagery. This applied …


    Read More
  • Security Risk Assessment: Essential Reference Sources

    calendar Jun 17, 2026 / Jun 20, 2026 · 5 min read · security risk assessment risk analysis fair methodology information security risk management information assurance  ·
    Share on: twitter facebook linkedin copy

    Security Risk Assessment: Essential Reference Sources Measuring and Managing Information Risk: A FAIR Approach This book assists the reader in understanding how to put to use the Factor Analysis of Information Risk (FAIR) methodology. The book consists of topics on measuring and managing information risk and provides …


    Read More
  • Social Engineering Tactics Behind a $24,000 Heist

    calendar Jun 16, 2026 / Jun 20, 2026 · 2 min read · social engineering penetration testing physical security two-factor authentication security awareness information security  ·
    Share on: twitter facebook linkedin copy

    Social Engineering Tactics Behind a $24,000 Heist Reflecting on the readings and video few actions stuck with me. The first is social engineering is an critical skill to gain access to information in organizations. I have received many cold calls over the years with interest in collecting information about the …


    Read More
    • ««
    • «
    • 1
    • 2
    • 3
    • 4
    • 5
    • »
    • »»

Disclaimer

The opinions expressed on this site are my own personal opinions and do not represent my employer’s view in any way.

Recent Posts

  • Intrusion Detection Systems: Evolution and Detection Methods
  • Selecting Security Safeguards After a Customer PII Breach
  • Quantitative vs Qualitative Risk Analysis: Metrics and OCTAVE
  • How Raw Data Becomes Usable Information in Research Projects
  • Applying ISA-CMM Process Areas to Capability Appraisals
  • Software Security Maturity Models: A Source Review
  • Comparing BSIMM and SAMM Software Security Models
  • Applying the ISA-CMM: A Cloud E-Store Case Study

Categories

BILL BROWN 96 INFORMATION SECURITY MANAGEMENT 17 DATABASE SYSTEMS 13 INFORMATION ASSURANCE 11 PROJECT MANAGEMENT 9 COMPUTER NETWORKS 8 ORACLE RAC 8 INFORMATION ASSURANCE ASSESSMENT AND EVALUATION 5 INFORMATION ASSURANCE CAPABILITY MATURITY AND APPRAISALS 5 INTRUSION DETECTION AND INCIDENT HANDLING 5 MANAGEMENT INFORMATION SYSTEMS 4 JUNK MAIL 2 PERSONAL 2 RED HAT 2
All Categories
BILL BROWN96 COLDFUSION1 COMPUTER NETWORKS8 DATA ANALYTICS1 DATABASE SYSTEMS13 INFORMATION ASSURANCE11 INFORMATION ASSURANCE ASSESSMENT AND EVALUATION5 INFORMATION ASSURANCE CAPABILITY MATURITY AND APPRAISALS5 INFORMATION SECURITY MANAGEMENT17 INTRUSION DETECTION AND INCIDENT HANDLING5 JUNK MAIL2 LACROSSE1 MANAGEMENT INFORMATION SYSTEMS4 ORACLE RAC8 PERSONAL2 PROJECT MANAGEMENT9 RED HAT2 TELECOMMUNICATIONS AND NETWORK SECURITY1 VMWARE1
[A~Z][0~9]

Series

INFORMATION SECURITY MANAGEMENT 17 DATABASE SYSTEMS 13 INFORMATION ASSURANCE 11 PROJECT MANAGEMENT 9 COMPUTER NETWORKS 8 ORACLE RAC 8 INFORMATION ASSURANCE ASSESSMENT AND EVALUATION 5 INFORMATION ASSURANCE CAPABILITY MATURITY AND APPRAISALS 5 INTRUSION DETECTION AND INCIDENT HANDLING 5 MANAGEMENT INFORMATION SYSTEMS 4 JUNK MAIL 2 PERSONAL 2 RED HAT 2 COLDFUSION 1
All Series
COLDFUSION1 COMPUTER NETWORKS8 DATA ANALYTICS1 DATABASE SYSTEMS13 INFORMATION ASSURANCE11 INFORMATION ASSURANCE ASSESSMENT AND EVALUATION5 INFORMATION ASSURANCE CAPABILITY MATURITY AND APPRAISALS5 INFORMATION SECURITY MANAGEMENT17 INTRUSION DETECTION AND INCIDENT HANDLING5 JUNK MAIL2 LACROSSE1 MANAGEMENT INFORMATION SYSTEMS4 ORACLE RAC8 PERSONAL2 PROJECT MANAGEMENT9 RED HAT2 TELECOMMUNICATIONS AND NETWORK SECURITY1 VMWARE1
[A~Z][0~9]

Tags

INFORMATION ASSURANCE 17 INFORMATION SECURITY 17 RISK MANAGEMENT 11 DATA-MANAGEMENT 10 PROJECT MANAGEMENT 10 SECURITY 8 CYBERSECURITY 7 ORACLE 7 PHYSICAL SECURITY 7 ACCESS CONTROL 6 INCIDENT RESPONSE 6 AGILE 5 DATABASE-PROGRAMMING 5 ISA-CMM 5
All Tags
ACCESS CONTROL6 ACTIVE SHOOTER TRAINING1 ADMINISTRATION1 AFFILIATE MARKETING2 AFFORDABLE CARE ACT1 AGILE5 AGILE-DEVELOPMENT1 ALERT DATA1 ALGORITHMS1 ASM2 AUTHENTICATION3 AUTHORIZATION1 AWARENESS1 AWS3 BACKGROUND CHECK1 BIG DATA1 BOULDER1 BOULDER COLORADO1 BSIMM2 BURN-DOWN-CHART1 BURN-UP-CHART1 BUSINESS CONTINUITY2 BUSINESS INTELLIGENCE1 BUSINESS OPERATIONS1 BUSINESS PLAN1 BUSINESS STRATEGY1 CAPABILITY MATURITY1 CAPABILITY MATURITY APPRAISALS1 CAPABILITY MATURITY MODEL3 CELL BROADCAST1 CELLULAR TECHNOLOGY1 CFLOOP1 CHRISTCHURCH1 CHRISTCHURH NEW ZEALAND1 CIA TRIAD1 CICD-PIPELINE1 CLEAN DESK1 CLOUD SECURITY2 CLUSTER1 CMM PROCESS AREAS1 COLD FUSION1 COLDFUSION1 COLORADO2 COMMUNICATION3 COMPETITIVE STRATEGY1 COMPLIANCE4 CONFIDENTIALITY1 CONNECTIVITY3 CONTROLS1 CRISIS MANAGEMENT1 CRITICAL THINKING1 CRYPTOGRAPHY1 CULTURE CHANGE1 CURRENTROW1 CURSORS1 CUSTOMER INSIGHTS1 CYBERSECURITY7 DATA1 DATA ANALYTICS2 DATA COMMUNICATION2 DATA PROTECTION1 DATA SECURITY2 DATA-MANAGEMENT10 DATA-MODELING3 DATABASE3 DATABASE MANAGEMENT1 DATABASE SERVICES1 DATABASE-DESIGN1 DATABASE-MODELING2 DATABASE-PROGRAMMING5 DATABASES3 DEFENSE IN DEPTH2 DENIAL OF SERVICE1 DESIGN3 DIGITAL TRANSFORMATION1 DIGITALGLOBE1 DIRECT MAIL1 DISABLE1 DISASTER PREPAREDNESS1 DISASTER-RECOVERY4 DOD1 DOS ATTACK1 E-COMMERCE2 EARNED VALUE MANAGEMENT1 EC21 ECONOMY1 EMERGENCY PLANNING2 EMPLOYEE TRAINING1 EMPTY1 ENCRYPTION2 ENTERPRISE ARCHITECTURE1 ENTERPRISE SYSTEMS2 ENVIRONMENT1 ENVIRONMENTAL SECURITY1 ESX1 EVM1 FACILITY PROTECTION1 FAIR METHODOLOGY1 FEDERAL AGENCIES1 FEED1 FILE-FORMATS1 FISMA1 FORENSICS1 FULL CONTENT DATA1 FUTURE1 GOOGLE1 GOVERNMENT TECHNOLOGY1 GSM1 HADOOP1 HEALTHCARE1 HEALTHCARE TECHNOLOGY1 IAM1 IDS2 INCIDENT HANDLING1 INCIDENT RESPONSE6 INFORMATION ASSURANCE17 INFORMATION SECURITY17 INFORMATION SECURITY ASSURANCE1 INFORMATION SYSTEMS1 INFORMATION TECHNOLOGY1 INFRASTRUCTURE3 INNOVATION1 INSTALLATION1 INTEGRITY MODELS1 INTERNET1 INTERNET INFRASTRUCTURE2 INTERNET OF THINGS1 INTERNET TECHNOLOGY1 INTRUSION DETECTION4 IOT3 IOT SECURITY1 IP ADDRESSING1 IPTV1 ISA-CMM5 ISC2 CERTIFICATION1 ISMS1 ISO 270021 ISO-270011 ISO270011 IT FAILURES1 IT INFRASTRUCTURE3 IT MANAGEMENT1 IT SECURITY1 JUNK MAIL2 LACROSSE1 LACROSSETV.COM1 LEFTHAND NETWORKS SAN1 LEGISLATION1 LOW POWER NETWORKS1 M2M COMMUNICATION1 MANAGEMENT1 MANAGEMENT INFORMATION SYSTEMS1 METHODOLOGY1 MICROSOFT VIRTUAL SERVER1 MILITARY1 MITIGATION1 MOBILE NETWORKS2 MODELING1 MONITORING TOOLS1 NESTED CFLOOP1 NETDUMP1 NETWORK SECURITY5 NETWORK SECURITY MONITORING3 NETWORK TRAFFIC1 NETWORKING2 NETWORKS2 NEW YEAR1 NEW ZEALAND1 NLL1 NORMALIZATION2 NSM TOOLS1 OBJECT ORIENTED1 OBJECT-THEORY1 OCTAVE1 OPERATIONAL RESILIENCE1 OPT-OUT2 ORACLE7 ORACLE HOME2 ORACLE RAC2 ORGANIZATIONAL CHANGE1 ORGANIZATIONAL SECURITY1 OSI MODEL1 OWASP SAMM2 PACKET CAPTURE1 PENETRATION TESTING1 PERFORMANCE ASSESSMENT1 PERSONNEL SECURITY1 PHYSICAL SECURITY7 PII1 POLICY IMPLEMENTATION1 POSTAL SERVICE1 PRIVACY3 PROJECT LIFECYCLE1 PROJECT MANAGEMENT10 PROJECT PLANNING1 RAC5 RE-COMPILE1 RE-INSTALL1 RECYCLE BIN2 RED HAT3 REDHAT2 RELATIONAL-DATABASES4 RELATIONAL-THEORY4 RELINK1 REMOVE ORACLE RAC RE-INSTALL2 REQUIREMENTS-ENGINEERING1 RESEARCH3 RESEARCH INSTRUMENTS1 RESEARCH METHODS1 RISK ANALYSIS4 RISK ASSESSMENT4 RISK MANAGEMENT11 RISK MITIGATION3 ROUTING1 RSS1 SEARCH ENGINE1 SECURE DESIGN PRINCIPLES1 SECURE DEVELOPMENT2 SECURITY8 SECURITY APPRAISAL1 SECURITY ARCHITECTURE1 SECURITY ASSESSMENT2 SECURITY AWARENESS3 SECURITY CONTROLS1 SECURITY DESIGN1 SECURITY DOMAINS1 SECURITY ENGINEERING1 SECURITY FRAMEWORKS1 SECURITY GOVERNANCE1 SECURITY LAYERS2 SECURITY MANAGEMENT4 SECURITY METRICS2 SECURITY MODELS1 SECURITY POLICIES2 SECURITY POLICY3 SECURITY RISK ASSESSMENT2 SECURITY RISK MITIGATION1 SECURITY TRAINING1 SERVER1 SIMILAR PROCESS1 SMART HOME1 SMART LIVING1 SMS1 SOCIAL ENGINEERING1 SOFTWARE DEVELOPMENT1 SOFTWARE-SECURITY3 SQL2 SQL-TUTORIAL4 STAKEHOLDER ENGAGEMENT1 STOPTHEJUNKMAIL.COM2 SURVEY1 SYSRQ1 SYSTEM REDUNDANCY1 SYSTEMS ENGINEERING3 TEAM COMMUNICATION1 TECHNOLOGY4 TECHNOLOGY ADOPTION1 TECHNOLOGY-COMPARISON1 TELECOMMUNICATION1 TELECOMMUNICATIONS1 THREATS AND VULNERABILITIES1 TRAINING1 TRIPLE CONSTRAINT2 TROUBLESHOOTING1 TRUST1 TWO-FACTOR AUTHENTICATION1 VIRTUAL1 VMWARE1 VSAM1 VULNERABILITY1 VULNERABILITY STUDY2 WEB DEVELOPMENT1
[A~Z][0~9]

Links

Oracle Scripts
Boulder CO,80304
Harman Research
BillBrown.info

Copyright 2005-  BILLBROWN.INFO. All Rights Reserved

to-top