Risk-based vulnerability management

Image

For much of this year I've been advocating for a risk-based vulnerability management approach, rather than the "industry standard" checkbox-based approach. I've been talking to customers, both directly and at various events (such as Red Hat Summit in Boston, Red Hat Summit Connect in Dallas, directly with customers in Singapore …

more ...

Controlling software supply chain security will require new tools, automation and vigilance

Image

Recently I had the opportunity to join a few other Red Hatters to talk about software supply chains with SiliconAngle. They did a writeup "Controlling software supply chain security will require new tools, automation and vigilance" that was great and included the full series of videos.

The interview I did …

more ...

Curated, tested and supported: How enterprise vendors mitigate open source supply chain risk

Image

Published on the Red Hat blog, noting here that Curated, tested and supported: How enterprise vendors mitigate open source supply chain risk was posted yesterday. It's an article that talks about supply chain risk and associated costs -- after all, no software is truly "free" (which is why we prefer the …

more ...

2021: A Retrospective

Image

I think, like many people, I did not expect to be writing this at the end of 2021 and still be in the COVID-19 pandemic. Simply to get it out of the way because COVID certainly wasn’t the most exciting thing this year, the entire family got COVID in …

more ...


2020: A Retrospective

Image

It's taken me some time to even get to the place where I wanted to stop and think about 2020. We're just over 2 months into 2021 and I've been thinking about writing this since December, but between being plain old tired (physically and mentally) and being busy, every time …

more ...

Upgrading FreeNAS to TrueNAS Core

Image

Given it's the holidays and that's when I tend to have time and energy to poke around the house, I decided to upgrade my FreeNAS box to the newer TrueNAS 12 release. The upgrade itself went without a hitch, simply switching from the FreeNAS 11 train to the TrueNAS 12 …

more ...

COVID-19 in Edmonton

Image

While the Alberta government has some excellent visualizations about COVID-19 statistics in Alberta, I felt there was a little too much missing. The province is quite transparent and you can export the data in CSV. Since these days most of my "technical work" is dorking around in spreadsheets, I fiddled …

more ...

Interview about CVSS

I was recently interviewed by my friend Jack Wallen (whom I've known for 20 years as he actually coerced me to start writing for TechRepublic ages ago!). It was about a topic near and dear to my heart: CVSS (or Common Vulnerability Scoring System). With the explosion of security scanning …

more ...

An Unexpected Journey

Image

Yesterday we had someone at our home to look at replacing the front and back doors. The rep for the company was exceptionally personable and we probably spent more time with him than the simple transaction of selecting and ordering new doors for our home warranted, but my wife and …

more ...