Chris Wilken

127 posts

Chris Wilken

Chris Wilken

@whereswilken

Let's fix security!

Chicago Katılım Ekim 2012
175 Takip Edilen103 Takipçiler
Cody Garrett, CFP®️
Cody Garrett, CFP®️@MeasureTwiceMNY·
I am publicly sharing my entire financial planning process on March 1st - including how I review each financial document, discover opportunities for deeper conversations, develop planning recommendations, and present each of these summaries. Comment "Share" if you want to learn!
Cody Garrett, CFP®️ tweet media
English
347
20
254
74.4K
Merritt Baer
Merritt Baer@MerrittBaer·
is there a term for "shifting left" or "devsecops" that isn't cringe? (real question)
English
39
5
65
30.8K
Tony Bacigalupo
Tony Bacigalupo@tonybgoode·
What should the last tweet be?
English
2
0
2
0
Chris Wilken
Chris Wilken@whereswilken·
@khaxan @NerdPyle I knew better, but thought this year was different. Now I know what being a Mets fan feels like…
English
0
0
1
0
Accidental CISO
Accidental CISO@AccidentalCISO·
@securitybrew The kids don't wear diapers anymore, so now I'm an all-pro toilet plunger. 🤣😭
English
3
0
15
0
Kate Brew
Kate Brew@securitybrew·
If you're a Dad, how many diapers have you changed? Caveat: In the case of an adopted child no longer in diapers, it's ok to answer "thousands" I think, because it would be unfair otherwise.
English
29
2
13
0
SwiftOnSecurity
SwiftOnSecurity@SwiftOnSecurity·
Pleb: Assign group policies to OUs Chads: Assign all group policies to root domain and use WMI filters to select the LDAP DN of the OUs you want them to apply to
English
24
11
162
0
Scott Massari
Scott Massari@scottmassari·
Guessing it's not someone large like Cargill or we would have heard something by now ... Sounds like a vendor that plays in the grain/commodity erp/processing space via software for weigh scale, grain elevator, pricing/bid management,etc ... Messing with our corn is a bad move.
English
2
8
36
0
Chris Wilken
Chris Wilken@whereswilken·
@Frichette_n 💯but Twitter as threat intel is hard to sell to auditors…
English
0
0
0
0
Nick Frichette
Nick Frichette@Frichette_n·
This isn’t a subtweet at any vendor or anything, but I’m pretty sure Twitter beats most threat intel feeds. When your staff are a part of the infosec community and current events, they can inform you faster than a third party vendor.
English
7
16
121
0
Chris Wilken
Chris Wilken@whereswilken·
@marcoarment One approach is to say that you are aware of it and it is on the roadmap to get implemented next quarter. A majority of these are sent to so many targets that they’re just looking for payment. Another option is to give swag instead of $
English
0
0
0
0
Chris Wilken
Chris Wilken@whereswilken·
@nickgray So no to investing into a low cost S&P index fund and accumulating wealth over time?
English
1
0
0
0
Chris Wilken
Chris Wilken@whereswilken·
@poiThePoi @hacks4pancakes Find out if anyone with security exp helped them with the decisions into their design and what was the focus. Based on their response, you can then ask more questions about arch or go into asking about other aspects of security (access mgmt, sec config, sdlc, sec mon, vuln, etc)
English
1
0
1
0
Chris Wilken
Chris Wilken@whereswilken·
@poiThePoi @hacks4pancakes Then ask if everything talks with each other over the Internet restricted by IPs or if they have a firewall and network segmentation where specific resources talk only to other resources via private networks
English
1
0
2
0
Poi
Poi@poiThePoi·
I think I have a provisional job offer to be DevSecOps team lead at a medical startup in Pittsburgh. I know what questions to ask about the state of the Ops world, what questions should I be preemptively asking about their security state?
English
15
1
22
0