Intrusion Detection Systems: Evolution and Detection Methods Introduction The Transmission Control Protocol over Internet Protocol (TCP/IP), over the years, became one of the most successful networking protocol stacks and is now universally used as described by Vacca (2013). A computer network is a series of computers …
Read MoreSelecting Security Safeguards After a Customer PII Breach Safeguards and Controls as Landoll (2016) points out are selected based on how effective they are in addressing the indicated security risk or as the author points out controls and safeguards are put in place to reduce the security risk. There are many …
Read MoreQuantitative vs Qualitative Risk Analysis: Metrics and OCTAVE Quantitative Risk Analysis Quantitative risk analysis, as described by Kim & Solomon (2014), attempts to describe risk in financial terms and put a dollar value on all the elements of risk. The quantitative risk is numerically based data and has a financial …
Read MoreHow Raw Data Becomes Usable Information in Research Projects From Raw Data to a Research Question Data can become useable in many area's of life, business, education and research. To answer the question 'How does data become usable information' the answer will be directed to a business question that needs to be …
Read MoreApplying ISA-CMM Process Areas to Capability Appraisals A maturity model only produces a usable result if the appraisal method built around it is disciplined. ISSC662 coursework on the Information Security Assurance Capability Maturity Model (ISA-CMM) treats the appraisal itself as the object worth studying, not just …
Read MoreSoftware Security Maturity Models: A Source Review
Jun 20, 2026 / · 6 min read · software security bsimm owasp samm isa-cmm secure development information assurance ·Software Security Maturity Models: A Source Review Building Security in Maturity Model (BSIMM) The Building Security in Maturity Model (BSIMM), is a guideline that outlines 113 activities organized into 12 different sections which assist in the software security framework. The document is broken into two parts. The …
Read MoreComparing BSIMM and SAMM Software Security Models
Jun 19, 2026 / · 31 min read · software security bsimm owasp samm capability maturity model information assurance secure development ·Comparing BSIMM and SAMM Software Security Models The role of the information assurance security program as described by Sadiku, Alam, & Musa (2017) is the practice of protecting and defending information systems by ensuring their availability, confidentiality, integrity, authentication, and non-repudiation. …
Read MoreApplying the ISA-CMM: A Cloud E-Store Case Study
Jun 18, 2026 / · 4 min read · isa-cmm information assurance cloud security aws security assessment capability maturity model ·Applying the ISA-CMM: A Cloud E-Store Case Study Company A (CA) is a major supplier of satellite imagery to commercial, federal and defense vertical markets. The organization launched an e-commerce website on the Internet or an estore enabling customers to navigate, review and purchase satellite imagery. This applied …
Read MoreSecurity Risk Assessment: Essential Reference Sources
Jun 17, 2026 / · 5 min read · security risk assessment risk analysis fair methodology information security risk management information assurance ·Security Risk Assessment: Essential Reference Sources Measuring and Managing Information Risk: A FAIR Approach This book assists the reader in understanding how to put to use the Factor Analysis of Information Risk (FAIR) methodology. The book consists of topics on measuring and managing information risk and provides …
Read MoreSocial Engineering Tactics Behind a $24,000 Heist
Jun 16, 2026 / · 2 min read · social engineering penetration testing physical security two-factor authentication security awareness information security ·Social Engineering Tactics Behind a $24,000 Heist Reflecting on the readings and video few actions stuck with me. The first is social engineering is an critical skill to gain access to information in organizations. I have received many cold calls over the years with interest in collecting information about the …
Read More