Come Join the Discussion

Add your comments to any of these postings or comments

Friday, May 27, 2011

ISSA International 2011 Elections

Hi,

I'm Richard Greenberg, CISSP, and I'm running for the ISSA International Board of Directors. I'm currently the Information Security Officer for the Los Angeles County Department of Public Health. Prior to this appointment, I was the first to hold the same position for the County's Department of Health Services.

I bring over 25 years of management experience and have been a strategic and thought leader in IT and Information Security for both the private and public sectors. My Project Management, Security Operations, and Policy and Compliance experience have helped shape my broad perspective on creating and implementing Information Security Programs in organizations.

I am actively involved in the Information Security community, serving on the Boards of the Los Angeles Chapters of both ISSA and OWASP. I also have been a member of the ISSA CISO Executive Program, where I have collaborated with other Information Security Officers from around the country.

I was recently was awarded Senior Member standing in ISSA by the Fellow Selection Committee. I also served on the ISSA International Conference - Attendee Development Committee and the CISO Forum - Planning Committee.

I currently serve on the OWASP Global Conference Committee, and co-chaired the highly successful OWASP Global AppSec USA 2010 Conference. I am a member of the IANS Pacific Security Forum Steering Committee and the CISO Executive Summit Governing Body in Southern California.

I have been a published author in the ISSA Journal, and have spoken on Information Security, most recently at the OWASP Global AppSec USA 2010 Conference. Besides my CISSP, I have achieved CNA and ITIL Foundation certifications.

The GOALS that I would like to accomplish as a Director on the International Board include:
1. Bring a collaborative approach to the Board
1.1. Leverage my involvement with Global OWASP Committees to encourage engagements with other information security organizations
1.2. Engage ISSA Chapters to share their successes, strategies, and templates to help build strong chapters worldwide
2. Work with other information security organizations to bring more benefits to ISSA membership, such as discounts at InfoSec events around the globe
3. Engage the best and brightest security professionals to be a part of ISSA
4. Ensure the knowledge transfer of threats, technologies, strategies and current regulatory policies to help our members successfully implement strategies at their companies and organizations
5. Support enterprise objectives by educating members on the relationship between IT and the business, business processes and business risks.
6. Advocate for ISSA to have a lead role in helping to build partnerships between private industry and the public sector, to protect critical infrastructure and networks
7. Reach out to achieve more participation from membership
8. Help grow the Cyber Secure Community by reaching out to business leaders
9. Become a better security practitioner from my association with fellow Board members
10. Share my knowledge and experience with fellow Board members

Friday, March 25, 2011

ISSA Web Conference Series - Consumerization of the Workplace

The ISSA Web Conference Series is featuring Consumerization of the Workplace on March 29. Don't miss this free event and opportunity to earn your CPEs.
https://www2.gotomeeting.com/register/558755915

Tuesday, March 01, 2011

ISSA and OWASP Los Angeles Joint Dinner Meeting

Come join us March 16 at 6PM:
Taix French Country Cuisine
1911 W. Sunset Boulevard
Los Angeles, CA 90026
(213) 484-1265

Hear expert talk on Stuxnet

Net Neutrality on Hit list of new republican majority

They are putting a very weird spin on their stance; pure fiction. Back to saying a lie enough times to make it a truth...for some.

Wednesday, January 12, 2011

Application Documentation

Keep operational, system, user, and programmer documentation up to date. For applications developed by contractors the system, user, and programmer documentation should be required deliverables. Current system and programmer documentation are critical to implementing changes accurately and quickly. They should be stored in a secure place. Updated users manuals provide good reference for new users and can provide training support. All of this material is also invaluable during an audit.

Why can't the FCC Defend Equal Distribution of Content?

I want to be able to choose my provider for TV content based on quality, features, reliability, support, and price, not on who can deliver what programs or stations. It's called collusion, and it stinks!