<?xml version="1.0" encoding="iso-8859-1"?><!-- generator="b2evolution/3.3.3" -->
<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:admin="http://webns.net/mvcb/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:atom="http://www.w3.org/2005/Atom">
	<channel>
		<title>BMAR Security Research</title>
		<link>http://robson.ph/blog//index.php/bensblog/</link>
		<atom:link rel="self" type="application/rss+xml" href="http://robson.ph/blog//index.php/bensblog/?tempskin=_rss2" />
		<description>Information Security Blog by Ben Robson discussing current events and issues facing the information security world</description>
		<language>en-AU</language>
		<docs>http://blogs.law.harvard.edu/tech/rss</docs>
		<admin:generatorAgent rdf:resource="http://b2evolution.net/?v=3.3.3"/>
		<ttl>60</ttl>
				<item>
			<title>The Failure of Tactical Security</title>
			<link>http://robson.ph/blog//index.php/bensblog/the-failure-of-tactical-secuirty</link>
			<pubDate>Wed, 28 Sep 2011 11:07:09 +0000</pubDate>			<dc:creator>Benjamin</dc:creator>
			<category domain="main">Commentary</category>			<guid isPermaLink="false">48@http://robson.ph/blog//</guid>
						<description>Information security within organisations has to date, largely been driven by reactions to immediate, impending threats; breaches and other incidents. Other drivers can come from managers or executives beginning to understand the importance of information security but often only reacting tactically to perceived and / or &amp;#8220;marketed&amp;#8221; threats.  The problem with these is the net negative operational impact they have on the organisation&amp;#8217;s information asset environment. Individual issues get targeted rather than broad-spectrum mitigations with a better return on investment.&lt;div class=&quot;item_footer&quot;&gt;&lt;p&gt;&lt;small&gt;&lt;a href=&quot;http://robson.ph/blog//index.php/bensblog/the-failure-of-tactical-secuirty&quot;&gt;Original post&lt;/a&gt; blogged on &lt;a href=&quot;http://b2evolution.net/&quot;&gt;b2evolution&lt;/a&gt;.&lt;/small&gt;&lt;/p&gt;&lt;/div&gt;</description>
			<content:encoded><![CDATA[Information security within organisations has to date, largely been driven by reactions to immediate, impending threats; breaches and other incidents. Other drivers can come from managers or executives beginning to understand the importance of information security but often only reacting tactically to perceived and / or &#8220;marketed&#8221; threats.  The problem with these is the net negative operational impact they have on the organisation&#8217;s information asset environment. Individual issues get targeted rather than broad-spectrum mitigations with a better return on investment.<div class="item_footer"><p><small><a href="http://robson.ph/blog//index.php/bensblog/the-failure-of-tactical-secuirty">Original post</a> blogged on <a href="http://b2evolution.net/">b2evolution</a>.</small></p></div>]]></content:encoded>
								<comments>http://robson.ph/blog//index.php/bensblog/the-failure-of-tactical-secuirty#comments</comments>
			<wfw:commentRss>http://robson.ph/blog//index.php/bensblog/?tempskin=_rss2&#38;disp=comments&#38;p=48</wfw:commentRss>
		</item>
				<item>
			<title>Senator Conroy increases insecurity</title>
			<link>http://robson.ph/blog//index.php/bensblog/senator-conroy-increases-insecurity</link>
			<pubDate>Sun, 11 Apr 2010 12:36:57 +0000</pubDate>			<dc:creator>Benjamin</dc:creator>
			<category domain="main">Commentary</category>			<guid isPermaLink="false">47@http://robson.ph/blog//</guid>
						<description>I would like to congratulate Senator Stephen Conroy, Minister for Broadband, Communications and the Digital Economy within the Australian Government, for greatly assisting Australian businesses to become less secure.

Yes, you're reading that correctly&amp;hellip;&lt;div class=&quot;item_footer&quot;&gt;&lt;p&gt;&lt;small&gt;&lt;a href=&quot;http://robson.ph/blog//index.php/bensblog/senator-conroy-increases-insecurity&quot;&gt;Original post&lt;/a&gt; blogged on &lt;a href=&quot;http://b2evolution.net/&quot;&gt;b2evolution&lt;/a&gt;.&lt;/small&gt;&lt;/p&gt;&lt;/div&gt;</description>
			<content:encoded><![CDATA[I would like to congratulate Senator Stephen Conroy, Minister for Broadband, Communications and the Digital Economy within the Australian Government, for greatly assisting Australian businesses to become less secure.

Yes, you're reading that correctly&hellip;<div class="item_footer"><p><small><a href="http://robson.ph/blog//index.php/bensblog/senator-conroy-increases-insecurity">Original post</a> blogged on <a href="http://b2evolution.net/">b2evolution</a>.</small></p></div>]]></content:encoded>
								<comments>http://robson.ph/blog//index.php/bensblog/senator-conroy-increases-insecurity#comments</comments>
			<wfw:commentRss>http://robson.ph/blog//index.php/bensblog/?tempskin=_rss2&#38;disp=comments&#38;p=47</wfw:commentRss>
		</item>
				<item>
			<title>Finding your way in the clouds</title>
			<link>http://robson.ph/blog//index.php/bensblog/finding-your-way-in-the-clouds</link>
			<pubDate>Thu, 18 Mar 2010 06:58:00 +0000</pubDate>			<dc:creator>Benjamin</dc:creator>
			<category domain="main">Commentary</category>			<guid isPermaLink="false">46@http://robson.ph/blog//</guid>
						<description>In August 2009 I wrote of my concerns regarding the drive to place core business functions in to the cloud.  I wrote that the cloud, whilst on the surface attractive due to potential management savings, presents the potential user with many traps that co&amp;hellip;&lt;div class=&quot;item_footer&quot;&gt;&lt;p&gt;&lt;small&gt;&lt;a href=&quot;http://robson.ph/blog//index.php/bensblog/finding-your-way-in-the-clouds&quot;&gt;Original post&lt;/a&gt; blogged on &lt;a href=&quot;http://b2evolution.net/&quot;&gt;b2evolution&lt;/a&gt;.&lt;/small&gt;&lt;/p&gt;&lt;/div&gt;</description>
			<content:encoded><![CDATA[In August 2009 I wrote of my concerns regarding the drive to place core business functions in to the cloud.  I wrote that the cloud, whilst on the surface attractive due to potential management savings, presents the potential user with many traps that co&hellip;<div class="item_footer"><p><small><a href="http://robson.ph/blog//index.php/bensblog/finding-your-way-in-the-clouds">Original post</a> blogged on <a href="http://b2evolution.net/">b2evolution</a>.</small></p></div>]]></content:encoded>
								<comments>http://robson.ph/blog//index.php/bensblog/finding-your-way-in-the-clouds#comments</comments>
			<wfw:commentRss>http://robson.ph/blog//index.php/bensblog/?tempskin=_rss2&#38;disp=comments&#38;p=46</wfw:commentRss>
		</item>
				<item>
			<title>IT Experts With Their Heads In The Clouds - Updated 13/08/2009</title>
			<link>http://robson.ph/blog//index.php/bensblog/it-experts-with-their-heads-in-the-cloud</link>
			<pubDate>Wed, 12 Aug 2009 07:49:10 +0000</pubDate>			<dc:creator>Benjamin</dc:creator>
			<category domain="main">Commentary</category>			<guid isPermaLink="false">44@http://robson.ph/blog//</guid>
						<description>&quot;To have one's head in the clouds&quot; is a saying that means one is prone to having fantastic or ridiculous dreams, to be thinking impractically, to be prone to day dreaming and to be disconnected from reality.  Whilst this is an old saying that has been us&amp;hellip;&lt;div class=&quot;item_footer&quot;&gt;&lt;p&gt;&lt;small&gt;&lt;a href=&quot;http://robson.ph/blog//index.php/bensblog/it-experts-with-their-heads-in-the-cloud&quot;&gt;Original post&lt;/a&gt; blogged on &lt;a href=&quot;http://b2evolution.net/&quot;&gt;b2evolution&lt;/a&gt;.&lt;/small&gt;&lt;/p&gt;&lt;/div&gt;</description>
			<content:encoded><![CDATA["To have one's head in the clouds" is a saying that means one is prone to having fantastic or ridiculous dreams, to be thinking impractically, to be prone to day dreaming and to be disconnected from reality.  Whilst this is an old saying that has been us&hellip;<div class="item_footer"><p><small><a href="http://robson.ph/blog//index.php/bensblog/it-experts-with-their-heads-in-the-cloud">Original post</a> blogged on <a href="http://b2evolution.net/">b2evolution</a>.</small></p></div>]]></content:encoded>
								<comments>http://robson.ph/blog//index.php/bensblog/it-experts-with-their-heads-in-the-cloud#comments</comments>
			<wfw:commentRss>http://robson.ph/blog//index.php/bensblog/?tempskin=_rss2&#38;disp=comments&#38;p=44</wfw:commentRss>
		</item>
				<item>
			<title>Achieving a Practical NAC Solution</title>
			<link>http://robson.ph/blog//index.php/bensblog/achieving-a-practical-nac-solution</link>
			<pubDate>Wed, 05 Aug 2009 17:28:49 +0000</pubDate>			<dc:creator>Benjamin</dc:creator>
			<category domain="main">Commentary</category>			<guid isPermaLink="false">45@http://robson.ph/blog//</guid>
						<description>NAC (Network Admission Control or Network Access Control) has existed for a few years now, yet we still haven't seen wide spread adoption of it within the corporate network environment.  Despite being pushed by the major network solution vendors, includi&amp;hellip;&lt;div class=&quot;item_footer&quot;&gt;&lt;p&gt;&lt;small&gt;&lt;a href=&quot;http://robson.ph/blog//index.php/bensblog/achieving-a-practical-nac-solution&quot;&gt;Original post&lt;/a&gt; blogged on &lt;a href=&quot;http://b2evolution.net/&quot;&gt;b2evolution&lt;/a&gt;.&lt;/small&gt;&lt;/p&gt;&lt;/div&gt;</description>
			<content:encoded><![CDATA[NAC (Network Admission Control or Network Access Control) has existed for a few years now, yet we still haven't seen wide spread adoption of it within the corporate network environment.  Despite being pushed by the major network solution vendors, includi&hellip;<div class="item_footer"><p><small><a href="http://robson.ph/blog//index.php/bensblog/achieving-a-practical-nac-solution">Original post</a> blogged on <a href="http://b2evolution.net/">b2evolution</a>.</small></p></div>]]></content:encoded>
								<comments>http://robson.ph/blog//index.php/bensblog/achieving-a-practical-nac-solution#comments</comments>
			<wfw:commentRss>http://robson.ph/blog//index.php/bensblog/?tempskin=_rss2&#38;disp=comments&#38;p=45</wfw:commentRss>
		</item>
				<item>
			<title>The forgotten component of Information Security</title>
			<link>http://robson.ph/blog//index.php/bensblog/the-forgotten-component-of-information-s</link>
			<pubDate>Tue, 04 Aug 2009 07:45:26 +0000</pubDate>			<dc:creator>Benjamin</dc:creator>
			<category domain="main">Commentary</category>			<guid isPermaLink="false">43@http://robson.ph/blog//</guid>
						<description>When security professionals gather in small, darkened rooms or in large conference halls to discuss the latest developments in information security the normal direction of the conversation is towards the newest attack to be released against computer syst&amp;hellip;&lt;div class=&quot;item_footer&quot;&gt;&lt;p&gt;&lt;small&gt;&lt;a href=&quot;http://robson.ph/blog//index.php/bensblog/the-forgotten-component-of-information-s&quot;&gt;Original post&lt;/a&gt; blogged on &lt;a href=&quot;http://b2evolution.net/&quot;&gt;b2evolution&lt;/a&gt;.&lt;/small&gt;&lt;/p&gt;&lt;/div&gt;</description>
			<content:encoded><![CDATA[When security professionals gather in small, darkened rooms or in large conference halls to discuss the latest developments in information security the normal direction of the conversation is towards the newest attack to be released against computer syst&hellip;<div class="item_footer"><p><small><a href="http://robson.ph/blog//index.php/bensblog/the-forgotten-component-of-information-s">Original post</a> blogged on <a href="http://b2evolution.net/">b2evolution</a>.</small></p></div>]]></content:encoded>
								<comments>http://robson.ph/blog//index.php/bensblog/the-forgotten-component-of-information-s#comments</comments>
			<wfw:commentRss>http://robson.ph/blog//index.php/bensblog/?tempskin=_rss2&#38;disp=comments&#38;p=43</wfw:commentRss>
		</item>
				<item>
			<title>CISO - The Gerbil in Lions Clothing</title>
			<link>http://robson.ph/blog//index.php/bensblog/ciso-the-gerbil-in-lions-clothing</link>
			<pubDate>Tue, 04 Aug 2009 07:44:08 +0000</pubDate>			<dc:creator>Benjamin</dc:creator>
			<category domain="main">Commentary</category>			<guid isPermaLink="false">42@http://robson.ph/blog//</guid>
						<description>(This entry was originally posted on 26/08/08)

A recent entry in to the ranks of corporate &quot;Chiefs&quot; is the CISO (Chief Information Security Officer). Ostensibly the general definition of the role of CISO within an organisation is to be responsible for&amp;hellip;&lt;div class=&quot;item_footer&quot;&gt;&lt;p&gt;&lt;small&gt;&lt;a href=&quot;http://robson.ph/blog//index.php/bensblog/ciso-the-gerbil-in-lions-clothing&quot;&gt;Original post&lt;/a&gt; blogged on &lt;a href=&quot;http://b2evolution.net/&quot;&gt;b2evolution&lt;/a&gt;.&lt;/small&gt;&lt;/p&gt;&lt;/div&gt;</description>
			<content:encoded><![CDATA[(This entry was originally posted on 26/08/08)

A recent entry in to the ranks of corporate "Chiefs" is the CISO (Chief Information Security Officer). Ostensibly the general definition of the role of CISO within an organisation is to be responsible for&hellip;<div class="item_footer"><p><small><a href="http://robson.ph/blog//index.php/bensblog/ciso-the-gerbil-in-lions-clothing">Original post</a> blogged on <a href="http://b2evolution.net/">b2evolution</a>.</small></p></div>]]></content:encoded>
								<comments>http://robson.ph/blog//index.php/bensblog/ciso-the-gerbil-in-lions-clothing#comments</comments>
			<wfw:commentRss>http://robson.ph/blog//index.php/bensblog/?tempskin=_rss2&#38;disp=comments&#38;p=42</wfw:commentRss>
		</item>
				<item>
			<title>Abrogation of responsibilities through privatisation.</title>
			<link>http://robson.ph/blog//index.php/bensblog/abrogation-of-responsibilities-through-p</link>
			<pubDate>Tue, 04 Aug 2009 07:43:12 +0000</pubDate>			<dc:creator>Benjamin</dc:creator>
			<category domain="main">Commentary</category>			<guid isPermaLink="false">41@http://robson.ph/blog//</guid>
						<description>(This entry was originally posted on 14/04/08)

Deputy Prime Minister Julia Gillard has just announced the Australian Federal Government's plan to provide legislation to allow employers to monitor and read employee emails on the grounds of national sec&amp;hellip;&lt;div class=&quot;item_footer&quot;&gt;&lt;p&gt;&lt;small&gt;&lt;a href=&quot;http://robson.ph/blog//index.php/bensblog/abrogation-of-responsibilities-through-p&quot;&gt;Original post&lt;/a&gt; blogged on &lt;a href=&quot;http://b2evolution.net/&quot;&gt;b2evolution&lt;/a&gt;.&lt;/small&gt;&lt;/p&gt;&lt;/div&gt;</description>
			<content:encoded><![CDATA[(This entry was originally posted on 14/04/08)

Deputy Prime Minister Julia Gillard has just announced the Australian Federal Government's plan to provide legislation to allow employers to monitor and read employee emails on the grounds of national sec&hellip;<div class="item_footer"><p><small><a href="http://robson.ph/blog//index.php/bensblog/abrogation-of-responsibilities-through-p">Original post</a> blogged on <a href="http://b2evolution.net/">b2evolution</a>.</small></p></div>]]></content:encoded>
								<comments>http://robson.ph/blog//index.php/bensblog/abrogation-of-responsibilities-through-p#comments</comments>
			<wfw:commentRss>http://robson.ph/blog//index.php/bensblog/?tempskin=_rss2&#38;disp=comments&#38;p=41</wfw:commentRss>
		</item>
			</channel>
</rss>

