I spoke with Bob Russo, General Manager of the PCI Security Standards Council, about the common practice of companies turning on their server logs, just because they need to for compliance, and then never actually looking at it. It’s kind of pointless at that point. It’s like turning on a security camera but never hiring someone to look at the feed or look at the tapes.
David Spark is a veteran tech journalist and founder of Spark Media Solutions, a media consulting and production company. Acting as the "media" of "social media," Spark Media Solutions helps its clients be seen as leading voices in their field through brand-quality media production and distribution through top tier media channels.
Pingback: Tripwire: “Our Biggest Competitor is Apathy”
Pingback: Summary of Tripwire’s coverage at 2010 RSA Conference
Pingback: RSA 2010: PCI 2.0? What’s Next for the PCI Security Standards and Council? | IT Security, Compliance and Best Practices