Posts

Showing posts from 2016

Azure Compliance papers - 8 month sprint to publish 8 papers

Image
It's been a while since I posted a blog. And to my readers I apologize. However in the past six months I've been madly working to publish 8 white papers on security and compliance for Microsoft Azure... It's a bit crazy to think anyone can get more than a paper published a month, especially when it requires as many reviewers as I've had to place my writing through. Normally, I place my ideas on the screen and bam... it's published!.. At my 'day' job it takes a bit more rigor to get a paper published. Including colleagues that are area experts providing feedback plus getting lawyers to validate that everything stated is in line with good corporate guidance. That normally means two months of reviews for everything I create. This is the first time I've tried to execute the writing, editing, reviewing and publication of 8 consecutive streams of content. It's true that the work is supper similar, and that's because it relates to compliance... And

Enabling Azure security controls to help your ISO 27001 compliance effort

Implementing effective network security measure requires several monumental alignments. This includes things such as:  Budget - If security looks like an overhead to a company, it is. And with no budget security programs flounder… in fact I remember a time when security implementation was installing a 'firewall'. Management buy in and active participation- Security only works if participation is mandatory by all. Just because you have a corner office does not make you exempt from following the security rules. Turns out executives are usually the easiest target in an organization, because they don't see security measure apply to them, and they think they should have access to all corporate assets. Effective and easy to use security people, processes, and technical security controls. In other words if the security is difficult to implement, or use it will be avoided and bypassed. Compliance - The big C in secu