<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	>

<channel>
	<title>Sensage Blogs</title>
	<atom:link href="http://blog.sensage.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.sensage.com</link>
	<description>Security Intelligence: essential decision support for security, risk management and compliance operations</description>
	<pubDate>Wed, 15 Feb 2012 00:04:54 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.7.1</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>&#8220;Convince with Credibility&#8221; rather than &#8220;Frighten with FUD&#8221;</title>
		<link>http://blog.sensage.com/2012/02/14/convince-with-credibility-rather-than-frighten-with-fud/</link>
		<comments>http://blog.sensage.com/2012/02/14/convince-with-credibility-rather-than-frighten-with-fud/#comments</comments>
		<pubDate>Wed, 15 Feb 2012 00:04:54 +0000</pubDate>
		<dc:creator>jgottlieb</dc:creator>
		
		<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://blog.sensage.com/?p=364</guid>
		<description><![CDATA[I just noticed an interesting article in Forbes written by Richard Stiennon&#8230;the article, entitled &#8220;In Cyber, Losers Ignore, Survivors React, and Winners Predict,&#8221; has a classic quote that underscores the need for objective data analysis when motivating executives to invest in security:
&#8220;Judging by the number of large enterprises that bring me in to speak to [...]]]></description>
		<wfw:commentRss>http://blog.sensage.com/2012/02/14/convince-with-credibility-rather-than-frighten-with-fud/feed/</wfw:commentRss>
		</item>
		<item>
		<title>The Growing Trouble with Trust</title>
		<link>http://blog.sensage.com/2011/11/04/the-growing-trouble-with-trust/</link>
		<comments>http://blog.sensage.com/2011/11/04/the-growing-trouble-with-trust/#comments</comments>
		<pubDate>Fri, 04 Nov 2011 13:25:13 +0000</pubDate>
		<dc:creator>jgottlieb</dc:creator>
		
		<category><![CDATA[Corporate Blog]]></category>

		<category><![CDATA[General]]></category>

		<category><![CDATA[Joe Gottlieb - Security Intelligence Solutions Blog]]></category>

		<category><![CDATA[Arcsight]]></category>

		<category><![CDATA[big data]]></category>

		<category><![CDATA[compliance]]></category>

		<category><![CDATA[event management]]></category>

		<category><![CDATA[GRC]]></category>

		<category><![CDATA[hacktivists]]></category>

		<category><![CDATA[InfoSec]]></category>

		<category><![CDATA[log management]]></category>

		<category><![CDATA[security]]></category>

		<category><![CDATA[security information management]]></category>

		<category><![CDATA[security intelligence]]></category>

		<category><![CDATA[SIEM]]></category>

		<category><![CDATA[SIM]]></category>

		<category><![CDATA[socialbot]]></category>

		<guid isPermaLink="false">http://blog.sensage.com/?p=359</guid>
		<description><![CDATA[Socialbots are taking advantage of the trust levels people exhibit in online communities.]]></description>
		<wfw:commentRss>http://blog.sensage.com/2011/11/04/the-growing-trouble-with-trust/feed/</wfw:commentRss>
		</item>
		<item>
		<title>SEC Order to Report Potential Data Breaches</title>
		<link>http://blog.sensage.com/2011/10/14/sec-order-to-report-potential-data-breaches/</link>
		<comments>http://blog.sensage.com/2011/10/14/sec-order-to-report-potential-data-breaches/#comments</comments>
		<pubDate>Fri, 14 Oct 2011 19:23:06 +0000</pubDate>
		<dc:creator>jgottlieb</dc:creator>
		
		<category><![CDATA[Corporate Blog]]></category>

		<category><![CDATA[General]]></category>

		<category><![CDATA[Joe Gottlieb - Security Intelligence Solutions Blog]]></category>

		<category><![CDATA[Add new tag]]></category>

		<category><![CDATA[Advanced Persistent Threat]]></category>

		<category><![CDATA[Anomalies]]></category>

		<category><![CDATA[APT]]></category>

		<category><![CDATA[Arcsight]]></category>

		<category><![CDATA[attack]]></category>

		<category><![CDATA[big data]]></category>

		<category><![CDATA[breach]]></category>

		<category><![CDATA[CDR]]></category>

		<category><![CDATA[compliance]]></category>

		<category><![CDATA[Correlation]]></category>

		<category><![CDATA[Data analysis]]></category>

		<category><![CDATA[Data breach notification]]></category>

		<category><![CDATA[data retention]]></category>

		<category><![CDATA[event management]]></category>

		<category><![CDATA[GRC]]></category>

		<category><![CDATA[hacktivists]]></category>

		<category><![CDATA[InfoSec]]></category>

		<category><![CDATA[Insider threat]]></category>

		<category><![CDATA[IPDR]]></category>

		<category><![CDATA[log management]]></category>

		<category><![CDATA[Malware]]></category>

		<category><![CDATA[McAfee]]></category>

		<category><![CDATA[Metrics]]></category>

		<category><![CDATA[policy violations]]></category>

		<category><![CDATA[SEC]]></category>

		<category><![CDATA[security]]></category>

		<category><![CDATA[security information]]></category>

		<category><![CDATA[security information management]]></category>

		<category><![CDATA[security intelligence]]></category>

		<category><![CDATA[SIEM]]></category>

		<category><![CDATA[SIM]]></category>

		<guid isPermaLink="false">http://blog.sensage.com/?p=355</guid>
		<description><![CDATA[A recent SEC order provides guidance around disclosing "potential" data breaches. ]]></description>
		<wfw:commentRss>http://blog.sensage.com/2011/10/14/sec-order-to-report-potential-data-breaches/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Executive Order on Insider Threats</title>
		<link>http://blog.sensage.com/2011/10/12/executive-order-on-insider-threats/</link>
		<comments>http://blog.sensage.com/2011/10/12/executive-order-on-insider-threats/#comments</comments>
		<pubDate>Wed, 12 Oct 2011 10:00:14 +0000</pubDate>
		<dc:creator>jgottlieb</dc:creator>
		
		<category><![CDATA[Corporate Blog]]></category>

		<category><![CDATA[General]]></category>

		<category><![CDATA[Joe Gottlieb - Security Intelligence Solutions Blog]]></category>

		<category><![CDATA[Advanced Persistent Threat]]></category>

		<category><![CDATA[Anomalies]]></category>

		<category><![CDATA[APT]]></category>

		<category><![CDATA[Arcsight]]></category>

		<category><![CDATA[attack]]></category>

		<category><![CDATA[big data]]></category>

		<category><![CDATA[breach]]></category>

		<category><![CDATA[CDR]]></category>

		<category><![CDATA[compliance]]></category>

		<category><![CDATA[Correlation]]></category>

		<category><![CDATA[Data analysis]]></category>

		<category><![CDATA[data retention]]></category>

		<category><![CDATA[event management]]></category>

		<category><![CDATA[GRC]]></category>

		<category><![CDATA[hacktivists]]></category>

		<category><![CDATA[InfoSec]]></category>

		<category><![CDATA[Insider threat]]></category>

		<category><![CDATA[IPDR]]></category>

		<category><![CDATA[log management]]></category>

		<category><![CDATA[Malware]]></category>

		<category><![CDATA[McAfee]]></category>

		<category><![CDATA[Metrics]]></category>

		<category><![CDATA[policy violations]]></category>

		<category><![CDATA[security]]></category>

		<category><![CDATA[security information]]></category>

		<category><![CDATA[security information management]]></category>

		<category><![CDATA[security intelligence]]></category>

		<category><![CDATA[SIEM]]></category>

		<category><![CDATA[SIM]]></category>

		<guid isPermaLink="false">http://blog.sensage.com/?p=347</guid>
		<description><![CDATA[A recent Executive Order lays out Insider Threat requirements for agencies and government bodies.]]></description>
		<wfw:commentRss>http://blog.sensage.com/2011/10/12/executive-order-on-insider-threats/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Crazy week in the SIEM world&#8230;</title>
		<link>http://blog.sensage.com/2011/10/07/crazy-week-in-the-siem-world/</link>
		<comments>http://blog.sensage.com/2011/10/07/crazy-week-in-the-siem-world/#comments</comments>
		<pubDate>Sat, 08 Oct 2011 01:21:54 +0000</pubDate>
		<dc:creator>jgottlieb</dc:creator>
		
		<category><![CDATA[Corporate Blog]]></category>

		<category><![CDATA[General]]></category>

		<category><![CDATA[acquisition]]></category>

		<category><![CDATA[Arcsight]]></category>

		<category><![CDATA[attack]]></category>

		<category><![CDATA[big data]]></category>

		<category><![CDATA[breach]]></category>

		<category><![CDATA[compliance]]></category>

		<category><![CDATA[data retention]]></category>

		<category><![CDATA[event management]]></category>

		<category><![CDATA[GRC]]></category>

		<category><![CDATA[IBM]]></category>

		<category><![CDATA[InfoSec]]></category>

		<category><![CDATA[log management]]></category>

		<category><![CDATA[McAfee]]></category>

		<category><![CDATA[Nitro]]></category>

		<category><![CDATA[Professional Services]]></category>

		<category><![CDATA[Q1Labs]]></category>

		<category><![CDATA[security]]></category>

		<category><![CDATA[security information]]></category>

		<category><![CDATA[security information management]]></category>

		<category><![CDATA[security intelligence]]></category>

		<category><![CDATA[SIEM]]></category>

		<category><![CDATA[SIM]]></category>

		<category><![CDATA[software]]></category>

		<guid isPermaLink="false">http://blog.sensage.com/?p=344</guid>
		<description><![CDATA[What does the recent SIEM acquisition news mean...to customers, to competitors and to the channel?]]></description>
		<wfw:commentRss>http://blog.sensage.com/2011/10/07/crazy-week-in-the-siem-world/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Citibank’s Breach – Textbook Damage Control</title>
		<link>http://blog.sensage.com/2011/06/09/citibank%e2%80%99s-breach-%e2%80%93-textbook-damage-control/</link>
		<comments>http://blog.sensage.com/2011/06/09/citibank%e2%80%99s-breach-%e2%80%93-textbook-damage-control/#comments</comments>
		<pubDate>Thu, 09 Jun 2011 17:54:30 +0000</pubDate>
		<dc:creator>jgottlieb</dc:creator>
		
		<category><![CDATA[Corporate Blog]]></category>

		<category><![CDATA[General]]></category>

		<category><![CDATA[Joe Gottlieb - Security Intelligence Solutions Blog]]></category>

		<category><![CDATA[Data Breach]]></category>

		<category><![CDATA[disclosure]]></category>

		<category><![CDATA[proactive monitoring]]></category>

		<guid isPermaLink="false">http://www.sensage.com/blog/?p=337</guid>
		<description><![CDATA[Full disclosure: I am still coming up to speed on this. As the news was breaking this morning I received a tweet from Dark Reading behind which was a great summary of what’s known so far. Based on what I know so far, I would say that Citibank demonstrated some great practices in dealing with [...]]]></description>
		<wfw:commentRss>http://blog.sensage.com/2011/06/09/citibank%e2%80%99s-breach-%e2%80%93-textbook-damage-control/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Balancing digital lifestyles, necessary law enforcement and personal privacy</title>
		<link>http://blog.sensage.com/2011/05/26/balancing-digital-lifestyles-necessary-law-enforcement-and-personal-privacy/</link>
		<comments>http://blog.sensage.com/2011/05/26/balancing-digital-lifestyles-necessary-law-enforcement-and-personal-privacy/#comments</comments>
		<pubDate>Fri, 27 May 2011 00:06:42 +0000</pubDate>
		<dc:creator>jgottlieb</dc:creator>
		
		<category><![CDATA[Corporate Blog]]></category>

		<category><![CDATA[General]]></category>

		<category><![CDATA[Joe Gottlieb - Security Intelligence Solutions Blog]]></category>

		<category><![CDATA[CDR]]></category>

		<category><![CDATA[compliance]]></category>

		<category><![CDATA[Congress]]></category>

		<category><![CDATA[EU Directive]]></category>

		<category><![CDATA[log management]]></category>

		<category><![CDATA[regulations]]></category>

		<category><![CDATA[SIEM]]></category>

		<guid isPermaLink="false">http://www.sensage.com/blog/?p=333</guid>
		<description><![CDATA[The value of service provider data is becoming more obvious each day. Globally, legislation is being developed to ensure that the intelligence found within call logs and Internet records can be quickly leveraged by law enforcement to uncover, or even prevent, threats of every kind. ]]></description>
		<wfw:commentRss>http://blog.sensage.com/2011/05/26/balancing-digital-lifestyles-necessary-law-enforcement-and-personal-privacy/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Attacks Faster and Discovery Slower Relative to Last Year</title>
		<link>http://blog.sensage.com/2011/05/20/attacks-faster-and-discovery-slower-relative-to-last-year/</link>
		<comments>http://blog.sensage.com/2011/05/20/attacks-faster-and-discovery-slower-relative-to-last-year/#comments</comments>
		<pubDate>Fri, 20 May 2011 14:34:42 +0000</pubDate>
		<dc:creator>jgottlieb</dc:creator>
		
		<category><![CDATA[General]]></category>

		<category><![CDATA[Joe Gottlieb - Security Intelligence Solutions Blog]]></category>

		<category><![CDATA[Attacks]]></category>

		<category><![CDATA[Data Breach]]></category>

		<category><![CDATA[DBIR]]></category>

		<category><![CDATA[security intelligence]]></category>

		<category><![CDATA[Security risk]]></category>

		<category><![CDATA[SIEM]]></category>

		<category><![CDATA[Threats]]></category>

		<category><![CDATA[Verizon]]></category>

		<guid isPermaLink="false">http://www.sensage.com/blog/?p=312</guid>
		<description><![CDATA[Data from the Verizon Business 2011 DBIR compares 2010 and 2011 speed of attacks versus speed of discovery. This evidence continues to suggest that proactive efforts in the area of security intelligence is needed.]]></description>
		<wfw:commentRss>http://blog.sensage.com/2011/05/20/attacks-faster-and-discovery-slower-relative-to-last-year/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Data Breach Report Continues to Highlight Weak Log Management Technologies and Practices</title>
		<link>http://blog.sensage.com/2011/05/03/data-breach-report-continues-to-highlight-weak-log-management-technologies-and-practices/</link>
		<comments>http://blog.sensage.com/2011/05/03/data-breach-report-continues-to-highlight-weak-log-management-technologies-and-practices/#comments</comments>
		<pubDate>Tue, 03 May 2011 21:32:28 +0000</pubDate>
		<dc:creator>jgottlieb</dc:creator>
		
		<category><![CDATA[Corporate Blog]]></category>

		<category><![CDATA[General]]></category>

		<category><![CDATA[Joe Gottlieb - Security Intelligence Solutions Blog]]></category>

		<category><![CDATA[compensating control]]></category>

		<category><![CDATA[data breach investigations report]]></category>

		<category><![CDATA[log management]]></category>

		<category><![CDATA[verizon business]]></category>

		<guid isPermaLink="false">http://www.sensage.com/blog/?p=306</guid>
		<description><![CDATA[Verizon Business recently published its 2011 Data Breach Investigations Report (DBIR) and I am once again stunned by the apparent correlation between getting breached and myopic log management:

69% of the breaches had log evidence available for forensics
&#60;1% of the breaches were discovered by internal log analysis and/or review

The report makes a halfhearted attempt to look [...]]]></description>
		<wfw:commentRss>http://blog.sensage.com/2011/05/03/data-breach-report-continues-to-highlight-weak-log-management-technologies-and-practices/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Survey: Most Security Organizations Can’t Access the Data They Need</title>
		<link>http://blog.sensage.com/2011/04/07/survey-most-security-organizations-can%e2%80%99t-access-the-data-they-need/</link>
		<comments>http://blog.sensage.com/2011/04/07/survey-most-security-organizations-can%e2%80%99t-access-the-data-they-need/#comments</comments>
		<pubDate>Fri, 08 Apr 2011 05:48:55 +0000</pubDate>
		<dc:creator>jgottlieb</dc:creator>
		
		<category><![CDATA[Corporate Blog]]></category>

		<category><![CDATA[Joe Gottlieb - Security Intelligence Solutions Blog]]></category>

		<category><![CDATA[access]]></category>

		<category><![CDATA[analysis]]></category>

		<category><![CDATA[coordination]]></category>

		<category><![CDATA[data]]></category>

		<category><![CDATA[effectiveness]]></category>

		<category><![CDATA[improvement]]></category>

		<category><![CDATA[Log]]></category>

		<category><![CDATA[Management]]></category>

		<category><![CDATA[measurement]]></category>

		<category><![CDATA[SIEM]]></category>

		<guid isPermaLink="false">http://www.sensage.com/blog/?p=303</guid>
		<description><![CDATA[SenSage recently conducted a survey of 383 information security professionals and found that two out of three had encountered obstacles to security data access and analysis while performing their security duties. This clearly validates the need for open data analysis architectures in the SIEM and Log Management market. According to the same survey, the tasks [...]]]></description>
		<wfw:commentRss>http://blog.sensage.com/2011/04/07/survey-most-security-organizations-can%e2%80%99t-access-the-data-they-need/feed/</wfw:commentRss>
		</item>
	</channel>
</rss>

