risk management, business management security, security awareness
You are not logged in. Access is limited. Login or see membership information. • Streetwise Security Zone Community
Site Search:
GO!

Start getting your FREE
Security Tips
Newsletter now!

What value do you get? 
Click HERE.

Concerned about privacy?
Click HERE

Name:
E-mail:

JOIN NOW and get a free membership to coaching content and product discounts.

Help for...   »

»   Non-Technical Staff
»   Executives and Managers
»   IT and R&D Staff

Featured Blogs / Podcasts / Articles

MORE INFO...  about The Streetwise Security Zone

if you would like to publish a security article, please send a note. We are always looking for contributors.

You can contact Scott Wright
by Phone:
1-613-693-0997
or Email:
scott@streetwise-security-zone.com

 

 

Site Meter



Created by
Scott Wright, CISA

              Sponsored by

 

Security Awareness Tools

Trivia Quiz Video

Streetwise Non-Trivial Security Quiz Video Loop - Just like in the movie theaters, this tool is a great way to engage people before a presentation, or while they pass by a booth or kiosk. Now $79 for non-members (less for members).

Click HERE to preview a low resolution sample of the video.

Trivia Quiz Video

Streetwise Customizable Non-Trival Security Quiz PowerPoint Deck - As the basis for the video loop above, this PowerPoint Deck lets you change, add or delete questions. You can create your own PowerPoint loop or video for open houses, kiosks and trade show booths. With some PowerPoint know-how, you can change the background graphics and logos. Now $179 for non-members (less for members).

Streetwise Security Awareness Training
by Scott Wright

 Education and Awareness

Concerned about whether or not your team knows how to work securely? Click HERE for information on our range of off-the-shelf and customized programs available, in whatever medium fits your organization's needs - live webinars or packaged content for your intranet.

Here's what our clients are saying about the Streetwise Security Awareness training programs...

"Your presentation sheds light on subjects that related to everyone who touches a computer - I love that it is in "English" and easy to understand."

Click HERE to see more testimontials for Scott's services and events.


Featured Multimedia

contains video content How a data breach occurred from employee use of Facebook (ScottWright)
posted Mon February 7th @ 7:55 AM

This video animation (accessible to all registered members of the Streetwise Security Zone community) explains how any employee using social media like Facebook at home can unintentionally trigger a breach of their employer's network. Note that, as a member of the Streetwise Security Zone, you can share this video animation with non-members, so you can spread the word about the importance of thinking about security, both in the office and at home. More »

Featured Blogs / Podcasts / Articles

What's wrong with No Harm, No Foul when lost devices are recovered? (ScottWright)
posted Mon May 13th 2013 @ 9:17 PM

I am always interested in hearing the opinions of the public, as well as those affected by security and privacy incidents.  Recently, a USB drive that was lost by the Montfort Hospital in Ottawa was recovered. The hospital had already issued a breach notification to the 25,000 patients whose records were affected. One of the affected patients, Judith Lishman, wrote a letter to the editor of the Ottawa Citizen newspaper, explaining why she doesn't support a class action law suit that's being launched as a result of the breach. However, I think there's probably a good case for this law suit. Read More »

Is it fair to place Honey Sticks on employees' desks to see if they plug them in? (ScottWright)
posted Tue May 7th 2013 @ 4:44 PM

In a recent discussion with an associate who ran his own Honey Stick Project (HSP) with USB drives in his organization, I learned that he chose to plant some of the intentionally lost devices literally on peoples' desks. This is a question I had considered years ago, when I dropped my first Honey Sticks. I even thought about dropping them in peoples' purses or bags. At first, I had thought that might be a little unfair to the employees. Perhaps they might not realize the device wasn't their own. After all, I can imagine many of us could have several devices, or maybe they were expecting to receive a device from somebody. Read More »

What's the difference between SMARTPHONE and USB Honey Stick Projects? (ScottWright)
posted Thu April 25th 2013 @ 6:37 AM

While the approach may look similar, there is a subtle difference between conducting a Smartphone Honey Stick Project (HSP) and a USB HSP. Aside from the cost - a Smartphone project is obviously more expensive due to the cost of the devices - the main difference in how I've conducted these tests has to do with the difference between Threats and Vulnerabilities. Read More »

Top 10 reasons NOT to do security awareness training (ScottWright)
posted Sun February 3rd 2013 @ 1:18 PM

In anticipation of the Government of Canada’s upcoming Security Awareness Week (Feb. 11-15, 2013), here are some possible reasons why organizations haven’t put a security awareness program in place.

1- We’re not a target
– Many organizations don’t feel they are a target for today’s attackers, often because the feel they aren’t big enough to be noticed. There’s growing evidence that attackers no longer care how big you are. There are many reasons attackers might target your organization that you might not have considered. Check out the infographic produced by Brian Krebs and SANS. People need to be aware of how they might be targeted.
Read More »

Meet Scott Wright and other security folk at COUNTERMEASURE 2012 Ottawa – October 25 and 26 (ScottWright)
posted Sat September 29th 2012 @ 7:40 AM

This will be a well-rounded and fun two-day security conference in Ottawa on October 25 and 26. The program is full of interesting and respected thought leaders and practitioners. I will be presenting on “Security Awareness for Social Media in Business” at 9:30am on October 26. If you’re going to be in the area at that time, let me know and we can get together.

I expect there will be a good mix of business managers (both Government of Canada and private sector), as well as security researchers and experts in attendance.

Here’s a list of the topics being covered over the two days of the conference: Read More »

Current events are always good news for cybercriminals (DeanTurner)
posted Sun September 9th 2012 @ 12:53 AM

Cybercriminals are crafty by nature and always looking to make a buck. So they are quick to take action when opportunity arises through current news and events. The month of July 2012 provided numerous such opportunities as the world’s focus turned to the 2012 London Olympics.

Predictably, Symantec’s most recent intelligence report found that the cyber underworld was working hard to exploit the global interest in the Summer Games. The report also found that spam and malicious websites increased slightly in July.

Symantec monitored twitter bots (that used Olympic-related trending topics to entice users), fake Olympic scandals (leading to websites that mimic YouTube – and ultimately play video’s that have nothing to do with the supposed scandal) and phishing attacks that used the rouse of a ‘free gift’ relating to London 2012 to spread malware and steal information.

Here are some examples of the Olympic-related spam: Read More »

Free paper for students to learn about risks in using the Social Internet and Social Media (ScottWright)
posted Wed August 15th 2012 @ 6:45 AM

For most adults, the Internet has been changing our lives in many ways that seem hard to keep up with. However, our children seem to be immersed in the latest trends, and most of the time they show no signs of trepidation or caution when using these new tools. Is it just that they are naturally more astute and discerning about what is safe and what is "bogus"? Or are they just oblivious to the risks that most of us have learned to view with skepticism?

Many of the adults I teach are still scared to death of using Social Media sites such as Facebook, LinkedIn and Twitter. This is a natural instinct they've learned to use that can actually help them avoid the risks associated with encountering new and untested technologies and fads. But young people may not have had the benefit of experience in spending years working to build their savings, or even the subtle social graces that we have learned to navigate over the years.

With this in mind, and with another school year about to start, I have taken some of the lessons I've learned about using Social Media and created a 10-page paper that discusses the risks that face students in high school or in college, and am making it available for you to download HERE for free.
Read More »

A Closer look at targeted attacks (DeanTurner)
posted Fri August 10th 2012 @ 4:43 PM

Last time we talked about targeted attacks, and why the number of SMBs being targeted is increasing. Now, we’ll take a deeper dive into targeted attacks, and look at one particular attack on a company in the international aerospace industry. Read More »

Much ado about... targeted attacks? (DeanTurner)
posted Sun July 22nd 2012 @ 8:48 AM

With targeted threats as Stuxnet, Duqu and Flamer dominating headlines for alleged nation-state attacks on foreign governments, it’s easy for a small Canadian business to assume that their organizations are just too small to be a target for cyber crime. In reality, that’s just not the case. Read More »

True story shows how scams on free classified sites will spoof PayPal for credibility (ScottWright)
posted Wed June 20th 2012 @ 7:52 AM

If you might ever plan to sell something privately by advertising online, you need to be aware of the sneaky scams that bad guys are running these days. As I learned from the true story related to me below by a member of the Streetwise Security Zone community, they can be very slick; and what seems like a credible offer to purchase a vehicle or other high value item can quickly turn into a nightmare of stress and lost cash. One such scam now preys on sellers of items on sites like the free classified advertising site, Kijiji.

The tricks that make the scam work


The key elements that make this kind of scam work are:


1- The prospective “buyer” offers to pay the full asking price, or more, without any negotiation. They usually have a plausible story for why they are so interested in securing the item quickly. Sellers are always interested in getting full asking price. Read More »

Streetwise Security Zone Community Calendar - Next Event
Local Time: Sun May 26 05:35:57 2013

Go To Calendar » 

Streetwise Security Zone Community Calendar - Upcoming Events
Local Time: Sun May 26 05:35:58 2013

Simplifying security for your team to
"Work Smart and Work Secure"

Follow or message Scott Wright on Twitter as @streetsec...

Digest: showing activity for the last 30 days
Customize your digest options
New Blog Posts

Social Media Security

Social Media Security Podcast 32 – The Privacy Paradox, Twitter Hacks, Facebook Home
(Thu, 02 May 2013 14:52:20 +0000)

This is the 32nd episode of the Social Media Security Podcast sponsored by SecureState.  This episode was hosted by Tom Eston and Scott Wright recorded April 25, 2013.  Below are the show notes, links to articles and news mentioned in the podcast: A Little Privacy, Please! Your Rights and Social Media...»Read the full article

The New Facebook Graph Search: How to Protect Your Privacy
(Tue, 19 Mar 2013 21:34:46 +0000)

Over the last several months, Facebook has been making significant design and UI changes. Besides the newsfeed changes announced several weeks ago, Facebook has recently begun rolling out a large change in the way you search for information through the platform. While this feature is still in “beta” status,...»Read the full article

 FREE PODCASTS

You can listen to the Streetwise Security Zone Podcast by clicking HERE or the Social Media Security Podcast by clicking HERE.


AUDIO TRAINING PROGRAMS

Teach your staff how to protect yourself while browsing the Web with our one-hour audio guide to Safe Web Surfing.



Copyright 2012. Security Perspectives Inc. All Rights Reserved.