Full Content Data in Network Security Monitoring
Jun 7, 2026 / · 3 min read · network security monitoring full content data intrusion detection incident response packet capture information security ·Full Content Data in Network Security Monitoring Security is the method of keeping an acceptable level of risk. The security process revolves around four steps: assessment, protection, detection, and response as described by Bejtlich (2004). The step of the process, assessment, is a groundwork needed for the other …
Read MoreSecurity Risk Assessment: Planning and Key Metrics
Jun 6, 2026 / · 4 min read · security risk assessment security metrics risk analysis information assurance project planning information security ·Security Risk Assessment: Planning and Key Metrics The security assessment considerations as described by Landoll (2016), at a high level, includes six phases. The phases are the project definition, the project preparation, gathering the data, analyzing the risk, mitigation of risks and the recommendations or …
Read MoreSecurity Awareness Training and ISA Capability Maturity
Jun 5, 2026 / · 3 min read · security awareness information assurance security training isa-cmm security policy information security ·Security Awareness Training and ISA Capability Maturity Technology is constantly changing. Security technology is getting better and making jobs easier as described by Peltier (2013). Bad actors continue to cause issues no matter what new security is introduced. It is a constant cycle. Security awareness includes many …
Read MoreAlert Data and NSM Tools for Intrusion Detection
Jun 4, 2026 / · 3 min read · alert data network security monitoring intrusion detection nsm tools ids information security ·Alert Data and NSM Tools for Intrusion Detection Network Security Monitoring (NSM) data that has been previously discussed are full content data (FCD), session data and statistical data. The result of an NSM specific data is to identify decisions based on views of network traffic. The NSM tool assists the analyst(s) …
Read MoreHow Network Defenders Classify Suspicious Traffic
May 26, 2026 / · 4 min read · network security monitoring intrusion detection incident handling network traffic information security ·How Network Defenders Classify Suspicious Traffic Computer networking traffic can be classified into three categories of normal, suspicious and malicious network as described by Bejtlich (2004). Each category effects the security posture. Network security analysis as described by Bejtlich (2013) is the process of …
Read MoreRisk Analysis: The Core of Security Risk Assessment
May 25, 2026 / · 11 min read · risk analysis risk assessment information assurance information security critical thinking ·Risk Analysis: The Core of Security Risk Assessment While performing information security management many things need to be in place before information security management can start as Raggad (2010) points out. The organization has to be in agreement with an accepted business mission, strategic plan and a standardized …
Read MoreTrust, CIA Triad, and Safeguards in Information Security
Mar 14, 2026 / · 5 min read · information security information assurance organizational security ISO27001 cryptography access control physical security trust ·Trust and Safeguards in Information Security: An Organizational Perspective The word "Trust" is defined as related to information security. Based on ones understanding of securing your environment, what are some of the common safeguards is recommend to ensure trust is viable in an organization? Defining Trust in …
Read MoreUnderstanding the Various Branches of Information Security
Nov 3, 2025 / · 5 min read · information security cybersecurity security layers defense in depth information assurance network security physical security security management ·Understanding the Various Branches of Information Security Introduction The purpose of information security is to protect a companies or organization's valuable assets as Peltier (2013) points out. Information security includes securing computer hardware and software and information or data. The information security …
Read MoreInformation Security for Protecting Organizational Assets
Nov 2, 2025 / · 4 min read · information security cybersecurity risk management security frameworks security domains ISC2 certification security policies active shooter training ·Information Security: Protecting Organizational Assets and Enabling Business Operations Purpose of Information Security The reason that information security exists is to protect a company's or organization's valuable assets. Information security includes information or data, computer hardware, and software. The …
Read MoreIncident Response Best Practices and AWS Forensic Procedures
Oct 28, 2025 / · 4 min read · incident-response cybersecurity AWS forensics information-security disaster-recovery EC2 security-management ·Incident Response Process Best Practices and AWS Forensic Procedures Topic or Question There are so many methods and best practices for handling incidents. Outline what an incident response process based on what is in the text. What is the process order, what may be missing, and how could the process be improved? …
Read More