<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>Data Risk Governance</title>
	<atom:link href="http://datariskgovernance.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://datariskgovernance.com</link>
	<description>Exploring the intersection between information security, privacy, technology and the law.</description>
	<lastBuildDate>Sat, 19 Nov 2011 13:42:33 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='datariskgovernance.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://s2.wp.com/i/buttonw-com.png</url>
		<title>Data Risk Governance</title>
		<link>http://datariskgovernance.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://datariskgovernance.com/osd.xml" title="Data Risk Governance" />
	<atom:link rel='hub' href='http://datariskgovernance.com/?pushpress=hub'/>
		<item>
		<title>Advanced E-Discovery Institute 2011</title>
		<link>http://datariskgovernance.com/2011/11/17/advanced-e-discovery-institute-2011/</link>
		<comments>http://datariskgovernance.com/2011/11/17/advanced-e-discovery-institute-2011/#comments</comments>
		<pubDate>Thu, 17 Nov 2011 13:47:01 +0000</pubDate>
		<dc:creator>Matt</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://datariskgovernance.com/?p=947</guid>
		<description><![CDATA[&#160; Notes taken during presentations made at the 2011 Advanced E-Discovery Institute, held at the Ritz Carlton hotel, Washington D.C., November 17-18 2011. &#160;<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=datariskgovernance.com&amp;blog=7143300&amp;post=947&amp;subd=datariskgovernance&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>&nbsp;</p>
<p><a href="http://wp.me/PtYiw-fj">Notes taken</a> during presentations made at the 2011 Advanced E-Discovery Institute, held at the Ritz Carlton hotel, Washington D.C., November 17-18 2011.</p>
<p>&nbsp;</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/datariskgovernance.wordpress.com/947/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/datariskgovernance.wordpress.com/947/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/datariskgovernance.wordpress.com/947/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/datariskgovernance.wordpress.com/947/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/datariskgovernance.wordpress.com/947/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/datariskgovernance.wordpress.com/947/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/datariskgovernance.wordpress.com/947/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/datariskgovernance.wordpress.com/947/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/datariskgovernance.wordpress.com/947/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/datariskgovernance.wordpress.com/947/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/datariskgovernance.wordpress.com/947/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/datariskgovernance.wordpress.com/947/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/datariskgovernance.wordpress.com/947/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/datariskgovernance.wordpress.com/947/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=datariskgovernance.com&amp;blog=7143300&amp;post=947&amp;subd=datariskgovernance&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://datariskgovernance.com/2011/11/17/advanced-e-discovery-institute-2011/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/c5f357fe09ba9d2fc0ed4a34c652d3f8?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">msorenz</media:title>
		</media:content>
	</item>
		<item>
		<title>Information Security Policy</title>
		<link>http://datariskgovernance.com/2010/12/17/information-security-policy/</link>
		<comments>http://datariskgovernance.com/2010/12/17/information-security-policy/#comments</comments>
		<pubDate>Fri, 17 Dec 2010 21:32:58 +0000</pubDate>
		<dc:creator>Matt</dc:creator>
				<category><![CDATA[Information Security]]></category>

		<guid isPermaLink="false">http://datariskgovernance.com/?p=939</guid>
		<description><![CDATA[New Policy content added to the Resources section.<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=datariskgovernance.com&amp;blog=7143300&amp;post=939&amp;subd=datariskgovernance&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>New <a title="Policy" href="http://datariskgovernance.com/resources/policy/">Policy </a>content added to the <a title="Resources" href="http://datariskgovernance.com/resources/">Resources </a>section.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/datariskgovernance.wordpress.com/939/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/datariskgovernance.wordpress.com/939/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/datariskgovernance.wordpress.com/939/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/datariskgovernance.wordpress.com/939/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/datariskgovernance.wordpress.com/939/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/datariskgovernance.wordpress.com/939/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/datariskgovernance.wordpress.com/939/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/datariskgovernance.wordpress.com/939/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/datariskgovernance.wordpress.com/939/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/datariskgovernance.wordpress.com/939/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/datariskgovernance.wordpress.com/939/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/datariskgovernance.wordpress.com/939/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/datariskgovernance.wordpress.com/939/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/datariskgovernance.wordpress.com/939/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=datariskgovernance.com&amp;blog=7143300&amp;post=939&amp;subd=datariskgovernance&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://datariskgovernance.com/2010/12/17/information-security-policy/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/c5f357fe09ba9d2fc0ed4a34c652d3f8?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">msorenz</media:title>
		</media:content>
	</item>
		<item>
		<title>SANS Legal 523: Law of Data Security and Investigations</title>
		<link>http://datariskgovernance.com/2010/12/16/sans-legal-523-law-of-data-security-and-investigations/</link>
		<comments>http://datariskgovernance.com/2010/12/16/sans-legal-523-law-of-data-security-and-investigations/#comments</comments>
		<pubDate>Fri, 17 Dec 2010 04:26:07 +0000</pubDate>
		<dc:creator>Matt</dc:creator>
				<category><![CDATA[Information Security]]></category>

		<guid isPermaLink="false">http://datariskgovernance.com/?p=903</guid>
		<description><![CDATA[This past week I&#8217;ve had the privilege of attending the one of the nation&#8217;s best training events dealing with information security and legal issues. See my review here.<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=datariskgovernance.com&amp;blog=7143300&amp;post=903&amp;subd=datariskgovernance&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>This past week I&#8217;ve had the privilege of attending the one of the nation&#8217;s best training events dealing with information security and legal issues. See my review <a title="SANS Legal 523: Law of Data Security and Investigations" href="http://datariskgovernance.com/conferences/review-sans-legal-523-law-of-data-security-investigations/">here</a>.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/datariskgovernance.wordpress.com/903/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/datariskgovernance.wordpress.com/903/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/datariskgovernance.wordpress.com/903/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/datariskgovernance.wordpress.com/903/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/datariskgovernance.wordpress.com/903/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/datariskgovernance.wordpress.com/903/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/datariskgovernance.wordpress.com/903/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/datariskgovernance.wordpress.com/903/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/datariskgovernance.wordpress.com/903/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/datariskgovernance.wordpress.com/903/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/datariskgovernance.wordpress.com/903/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/datariskgovernance.wordpress.com/903/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/datariskgovernance.wordpress.com/903/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/datariskgovernance.wordpress.com/903/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=datariskgovernance.com&amp;blog=7143300&amp;post=903&amp;subd=datariskgovernance&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://datariskgovernance.com/2010/12/16/sans-legal-523-law-of-data-security-and-investigations/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/c5f357fe09ba9d2fc0ed4a34c652d3f8?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">msorenz</media:title>
		</media:content>
	</item>
		<item>
		<title>Infected by Malware: Throw the Computer Away?</title>
		<link>http://datariskgovernance.com/2010/12/16/infected-by-malware-throw-the-computer-away/</link>
		<comments>http://datariskgovernance.com/2010/12/16/infected-by-malware-throw-the-computer-away/#comments</comments>
		<pubDate>Fri, 17 Dec 2010 02:03:27 +0000</pubDate>
		<dc:creator>Matt</dc:creator>
				<category><![CDATA[Information Security]]></category>

		<guid isPermaLink="false">http://datariskgovernance.com/?p=883</guid>
		<description><![CDATA[There are some forms of malware circulating that infect the persistent memory on graphics processing cards (GPU), network interface cards and any other hardware component that contains its own memory distinct from the computers RAM. This means that you cannot remove the malware simply by reinstalling your operating system after formatting your hard drive, because [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=datariskgovernance.com&amp;blog=7143300&amp;post=883&amp;subd=datariskgovernance&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>There are some forms of malware circulating that infect the persistent memory on graphics processing cards (GPU), network interface cards and any other hardware component that contains its own memory distinct from the computers RAM. This means that you cannot remove the malware simply by reinstalling your operating system after formatting your hard drive, because the malware is located in the memory of one of your hardware components. The difficulty in removing the malware from these locations may just mean you&#8217;re better off throwing the computer out and buying a new one! This has been the case for some organizations that have been infected by these types of malware. So much for not hurting the hardware.</p>
<p>http://www.vizworld.com/2010/09/gpuassisted-malware/</p>
<p>Discovered: http://www.theregister.co.uk/2009/03/24/persistent_bios_rootkits/</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/datariskgovernance.wordpress.com/883/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/datariskgovernance.wordpress.com/883/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/datariskgovernance.wordpress.com/883/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/datariskgovernance.wordpress.com/883/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/datariskgovernance.wordpress.com/883/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/datariskgovernance.wordpress.com/883/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/datariskgovernance.wordpress.com/883/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/datariskgovernance.wordpress.com/883/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/datariskgovernance.wordpress.com/883/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/datariskgovernance.wordpress.com/883/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/datariskgovernance.wordpress.com/883/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/datariskgovernance.wordpress.com/883/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/datariskgovernance.wordpress.com/883/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/datariskgovernance.wordpress.com/883/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=datariskgovernance.com&amp;blog=7143300&amp;post=883&amp;subd=datariskgovernance&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://datariskgovernance.com/2010/12/16/infected-by-malware-throw-the-computer-away/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/c5f357fe09ba9d2fc0ed4a34c652d3f8?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">msorenz</media:title>
		</media:content>
	</item>
		<item>
		<title>Live Blog From Georgetown Advanced E-Discovery Conference</title>
		<link>http://datariskgovernance.com/2010/11/18/live-blog-from-georgetown-advanced-e-discovery-conference/</link>
		<comments>http://datariskgovernance.com/2010/11/18/live-blog-from-georgetown-advanced-e-discovery-conference/#comments</comments>
		<pubDate>Thu, 18 Nov 2010 16:06:02 +0000</pubDate>
		<dc:creator>Matt</dc:creator>
				<category><![CDATA[eDiscovery]]></category>

		<guid isPermaLink="false">http://datariskgovernance.com/?p=829</guid>
		<description><![CDATA[See my notes covering the below topics, here: 2010 Georgetown Advanced E-Discovery Institute (Nov. 18-19, 2010) Case Law Update International E-Discovery RULE 502: Inadvertent Waiver Proportionality: Is It Real or a Paper Tiger?  Kevin F. Brady, Conor R. Crowley, Joseph P. Guglielmo, Hon. Andrew J. Peck, Hon. Joseph R. Slights, III. Sedona Conference published in [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=datariskgovernance.com&amp;blog=7143300&amp;post=829&amp;subd=datariskgovernance&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>See my notes covering the below topics, here: <a href="http://wp.me/PtYiw-dh">2010 Georgetown Advanced E-Discovery Institute (Nov. 18-19, 2010)</a></p>
<p style="padding-left:30px;">Case Law Update</p>
<p style="padding-left:30px;">International E-Discovery</p>
<p style="padding-left:30px;">RULE 502: Inadvertent Waiver</p>
<p style="padding-left:30px;">Proportionality: Is It Real or a Paper Tiger?  Kevin F.  Brady, Conor R. Crowley, Joseph P. Guglielmo, Hon. Andrew J. Peck, Hon.  Joseph R. Slights, III.</p>
<p style="padding-left:30px;">Sedona Conference published in October, 2010, the <a href="http://www.thesedonaconference.org/dltForm?did=Proportionality2010.pdf">Principles of Proportionality.</a></p>
<p style="padding-left:30px;">The Business of E-Discovery</p>
<p style="padding-left:60px;">Major  themes and lessons learned in the session: 1- The &#8220;problems&#8221; of  disappointing IT solutions for E-discovery is no different than the  general pitfalls of IT providing solutions for general business  problems. Good old-fashioned IT project management, requirements  gathering, and integration of business process (in this case, legal  processes) expertise in the delivery of technology.   2- Legal now has a  place at the table in the GRC and information governance. Chief  Compliance Officers are now able to have budgets dedicated to managing  the information risks of their organizations.</p>
<p style="padding-left:30px;">Not Just EU Privacy: A Global View on International E-Discovery</p>
<p style="padding-left:30px;">Early Evidence Assessment &amp; Strategies for Search, Retrieval &amp; Review (Early Case Assessment)</p>
<p style="padding-left:30px;">2010: A Sanctions Odyssey</p>
<p style="padding-left:30px;">Craig Ball, Database Discovery.</p>
<p style="padding-left:30px;">Cloud Computing; Dan Regard, Tanya Forsheit, Hon. Francis Allegra, Theresa Beaumont</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/datariskgovernance.wordpress.com/829/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/datariskgovernance.wordpress.com/829/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/datariskgovernance.wordpress.com/829/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/datariskgovernance.wordpress.com/829/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/datariskgovernance.wordpress.com/829/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/datariskgovernance.wordpress.com/829/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/datariskgovernance.wordpress.com/829/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/datariskgovernance.wordpress.com/829/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/datariskgovernance.wordpress.com/829/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/datariskgovernance.wordpress.com/829/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/datariskgovernance.wordpress.com/829/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/datariskgovernance.wordpress.com/829/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/datariskgovernance.wordpress.com/829/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/datariskgovernance.wordpress.com/829/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=datariskgovernance.com&amp;blog=7143300&amp;post=829&amp;subd=datariskgovernance&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://datariskgovernance.com/2010/11/18/live-blog-from-georgetown-advanced-e-discovery-conference/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/c5f357fe09ba9d2fc0ed4a34c652d3f8?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">msorenz</media:title>
		</media:content>
	</item>
		<item>
		<title>Is Stuxnet the &#8216;best&#8217; malware ever?</title>
		<link>http://datariskgovernance.com/2010/10/04/is-stuxnet-the-best-malware-ever/</link>
		<comments>http://datariskgovernance.com/2010/10/04/is-stuxnet-the-best-malware-ever/#comments</comments>
		<pubDate>Mon, 04 Oct 2010 18:32:27 +0000</pubDate>
		<dc:creator>Matt</dc:creator>
				<category><![CDATA[Information Security]]></category>

		<guid isPermaLink="false">http://datariskgovernance.com/?p=821</guid>
		<description><![CDATA[Is Stuxnet the &#8216;best&#8217; malware ever?.<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=datariskgovernance.com&amp;blog=7143300&amp;post=821&amp;subd=datariskgovernance&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.computerworld.com/s/article/9185919/Is_Stuxnet_the_best_malware_ever_">Is Stuxnet the &#8216;best&#8217; malware ever?</a>.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/datariskgovernance.wordpress.com/821/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/datariskgovernance.wordpress.com/821/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/datariskgovernance.wordpress.com/821/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/datariskgovernance.wordpress.com/821/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/datariskgovernance.wordpress.com/821/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/datariskgovernance.wordpress.com/821/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/datariskgovernance.wordpress.com/821/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/datariskgovernance.wordpress.com/821/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/datariskgovernance.wordpress.com/821/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/datariskgovernance.wordpress.com/821/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/datariskgovernance.wordpress.com/821/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/datariskgovernance.wordpress.com/821/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/datariskgovernance.wordpress.com/821/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/datariskgovernance.wordpress.com/821/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=datariskgovernance.com&amp;blog=7143300&amp;post=821&amp;subd=datariskgovernance&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://datariskgovernance.com/2010/10/04/is-stuxnet-the-best-malware-ever/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/c5f357fe09ba9d2fc0ed4a34c652d3f8?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">msorenz</media:title>
		</media:content>
	</item>
		<item>
		<title>Failed Risk-Based Security: Notes from Donn Parker RSA 2010 Presentation</title>
		<link>http://datariskgovernance.com/2010/04/22/failed-risk-based-security-notes-from-donn-parker-rsa-2010-presentation/</link>
		<comments>http://datariskgovernance.com/2010/04/22/failed-risk-based-security-notes-from-donn-parker-rsa-2010-presentation/#comments</comments>
		<pubDate>Thu, 22 Apr 2010 17:23:08 +0000</pubDate>
		<dc:creator>Matt</dc:creator>
				<category><![CDATA[19004365]]></category>
		<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Risk Assessment]]></category>
		<category><![CDATA[Risk Management & Compliance]]></category>

		<guid isPermaLink="false">http://datariskgovernance.com/?p=753</guid>
		<description><![CDATA[Failed Risk-Based Security<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=datariskgovernance.com&amp;blog=7143300&amp;post=753&amp;subd=datariskgovernance&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><a href="http://wp.me/PtYiw-bh">Failed Risk-Based Security</a></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/datariskgovernance.wordpress.com/753/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/datariskgovernance.wordpress.com/753/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/datariskgovernance.wordpress.com/753/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/datariskgovernance.wordpress.com/753/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/datariskgovernance.wordpress.com/753/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/datariskgovernance.wordpress.com/753/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/datariskgovernance.wordpress.com/753/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/datariskgovernance.wordpress.com/753/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/datariskgovernance.wordpress.com/753/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/datariskgovernance.wordpress.com/753/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/datariskgovernance.wordpress.com/753/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/datariskgovernance.wordpress.com/753/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/datariskgovernance.wordpress.com/753/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/datariskgovernance.wordpress.com/753/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=datariskgovernance.com&amp;blog=7143300&amp;post=753&amp;subd=datariskgovernance&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://datariskgovernance.com/2010/04/22/failed-risk-based-security-notes-from-donn-parker-rsa-2010-presentation/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/c5f357fe09ba9d2fc0ed4a34c652d3f8?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">msorenz</media:title>
		</media:content>
	</item>
		<item>
		<title>Helping Lawyers Overcome Cloud Anxiety</title>
		<link>http://datariskgovernance.com/2010/04/22/helping-lawyers-overcome-cloud-anxiety/</link>
		<comments>http://datariskgovernance.com/2010/04/22/helping-lawyers-overcome-cloud-anxiety/#comments</comments>
		<pubDate>Thu, 22 Apr 2010 17:08:26 +0000</pubDate>
		<dc:creator>Matt</dc:creator>
				<category><![CDATA[Controls]]></category>
		<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Risk Assessment]]></category>

		<guid isPermaLink="false">http://datariskgovernance.com/?p=748</guid>
		<description><![CDATA[Author and attorney Julie Tower-Pierce contributed  short little article to the April 2010 issue of Information Security magazine, that encourages IT personnel to provide insight and clarity on cloud computing to corporate counsel. Corporate counsel are rightly concerned about a variety of data protection risks  stemming from the use of third-party computing services.  Tower-Pierce writes, [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=datariskgovernance.com&amp;blog=7143300&amp;post=748&amp;subd=datariskgovernance&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Author and attorney Julie Tower-Pierce contributed  short little article to the <a href="http://media.techtarget.com/Syndication/SECURITY/0410_ISM_final.pdf">April 2010 issue of Information Security magazine,</a> that encourages IT personnel to provide insight and clarity on cloud computing to corporate counsel. Corporate counsel are rightly concerned about a variety of data protection risks  stemming from the use of third-party computing services.  Tower-Pierce writes, &#8220;By using straightforward, practical explanations and real-world analogies/examples, minus excessive technicalities when possible, you can impart a firm understanding of the mechanics of cloud computing and help lawyers gain perspective.&#8221;</p>
<p>I have no qualms about this approach whatsoever. The challenge is getting the two sides to even have the conversation. Most likely, the conversation would originate during the a company&#8217;s vendor (third-party) assessment process. This is the most frequent interaction between in-house counsel and information security or other risk assessors. The contractual relationship is often hammered out simultaneously with the IT controls assessment.</p>
<p>Another opportune time to have the conversation is during a corporate risk committee or IT governance steering committee meeting. These meetings take on a variety of shapes, names and participants, but whatever the risk management authority looks like, it should incorporate discussions on emerging topics such as cloud computing.</p>
<p>A third opportunity to have such discussions would be to invite legal to participate in the development of a cloud computing security policy,  a part of a firm&#8217;s overall information security policy framework.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/datariskgovernance.wordpress.com/748/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/datariskgovernance.wordpress.com/748/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/datariskgovernance.wordpress.com/748/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/datariskgovernance.wordpress.com/748/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/datariskgovernance.wordpress.com/748/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/datariskgovernance.wordpress.com/748/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/datariskgovernance.wordpress.com/748/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/datariskgovernance.wordpress.com/748/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/datariskgovernance.wordpress.com/748/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/datariskgovernance.wordpress.com/748/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/datariskgovernance.wordpress.com/748/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/datariskgovernance.wordpress.com/748/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/datariskgovernance.wordpress.com/748/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/datariskgovernance.wordpress.com/748/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=datariskgovernance.com&amp;blog=7143300&amp;post=748&amp;subd=datariskgovernance&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://datariskgovernance.com/2010/04/22/helping-lawyers-overcome-cloud-anxiety/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/c5f357fe09ba9d2fc0ed4a34c652d3f8?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">msorenz</media:title>
		</media:content>
	</item>
		<item>
		<title>ISO 31000</title>
		<link>http://datariskgovernance.com/2010/04/12/iso-31000/</link>
		<comments>http://datariskgovernance.com/2010/04/12/iso-31000/#comments</comments>
		<pubDate>Mon, 12 Apr 2010 19:50:34 +0000</pubDate>
		<dc:creator>Matt</dc:creator>
				<category><![CDATA[Risk Management & Compliance]]></category>
		<category><![CDATA[Standards & Frameworks]]></category>

		<guid isPermaLink="false">http://datariskgovernance.com/?p=737</guid>
		<description><![CDATA[Here&#8217;s a link to a short article describing the new ISO 31000:2009 standard, purportedly a generic risk management process guide that is industry agnostic.<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=datariskgovernance.com&amp;blog=7143300&amp;post=737&amp;subd=datariskgovernance&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Here&#8217;s a <a href="http://tinyurl.com/yb7lu27">link to a short article</a> describing the new ISO 31000:2009 standard, purportedly a generic risk management process guide that is industry agnostic.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/datariskgovernance.wordpress.com/737/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/datariskgovernance.wordpress.com/737/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/datariskgovernance.wordpress.com/737/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/datariskgovernance.wordpress.com/737/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/datariskgovernance.wordpress.com/737/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/datariskgovernance.wordpress.com/737/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/datariskgovernance.wordpress.com/737/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/datariskgovernance.wordpress.com/737/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/datariskgovernance.wordpress.com/737/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/datariskgovernance.wordpress.com/737/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/datariskgovernance.wordpress.com/737/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/datariskgovernance.wordpress.com/737/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/datariskgovernance.wordpress.com/737/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/datariskgovernance.wordpress.com/737/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=datariskgovernance.com&amp;blog=7143300&amp;post=737&amp;subd=datariskgovernance&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://datariskgovernance.com/2010/04/12/iso-31000/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/c5f357fe09ba9d2fc0ed4a34c652d3f8?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">msorenz</media:title>
		</media:content>
	</item>
		<item>
		<title>Albert Gonzalez Gets 20 Years</title>
		<link>http://datariskgovernance.com/2010/03/28/albert-gonzalez-gets-20-years/</link>
		<comments>http://datariskgovernance.com/2010/03/28/albert-gonzalez-gets-20-years/#comments</comments>
		<pubDate>Sun, 28 Mar 2010 21:26:50 +0000</pubDate>
		<dc:creator>Matt</dc:creator>
				<category><![CDATA[Information Security]]></category>

		<guid isPermaLink="false">http://datariskgovernance.com/?p=735</guid>
		<description><![CDATA[See WSJ article here.<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=datariskgovernance.com&amp;blog=7143300&amp;post=735&amp;subd=datariskgovernance&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><a href="http://online.wsj.com/article/SB10001424052748703416204575146152576681126.html">See WSJ article here. </a></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/datariskgovernance.wordpress.com/735/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/datariskgovernance.wordpress.com/735/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/datariskgovernance.wordpress.com/735/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/datariskgovernance.wordpress.com/735/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/datariskgovernance.wordpress.com/735/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/datariskgovernance.wordpress.com/735/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/datariskgovernance.wordpress.com/735/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/datariskgovernance.wordpress.com/735/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/datariskgovernance.wordpress.com/735/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/datariskgovernance.wordpress.com/735/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/datariskgovernance.wordpress.com/735/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/datariskgovernance.wordpress.com/735/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/datariskgovernance.wordpress.com/735/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/datariskgovernance.wordpress.com/735/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=datariskgovernance.com&amp;blog=7143300&amp;post=735&amp;subd=datariskgovernance&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://datariskgovernance.com/2010/03/28/albert-gonzalez-gets-20-years/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/c5f357fe09ba9d2fc0ed4a34c652d3f8?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">msorenz</media:title>
		</media:content>
	</item>
	</channel>
</rss>
