I have posted a few articles about different security standards and frameworks, such as PCI-DSS, The Essential 8, ISO27001, NIST and others – and in my experience, there are some organisations that focus on compliance instead of security. People desperately chase the dogma of maturity levels or complying with every… Continue Reading Focus on Compliance or Security?

A question that has been around my mind for a while is “does the CISO need to become the CSO”? Is the responsibility of the Chief Information Security Officer too limiting, and should they be the Chief Security Officer? The issue with a CISO is that they often are limited… Continue Reading Does the CISO need to become the CSO?

Cybersecurity is a culture, not an action – but for organisations starting in their efforts to implement a cybersecurity culture, there are some steps in getting started with cybersecurity. This article will outline the basics to get started with cybersecurity, for small to medium sized businesses, and for larger business… Continue Reading Getting started with cybersecurity

Many organisations will have had on-premises datacentres or computer rooms, or have had their own servers and infrastructure in co-lo or hosted datacentres. Whilst these systems may have served a company’s needs in the past, it is often more complex and unknown systems that are the last to be evolved… Continue Reading Replacing old Infrastructure – a step by step guide

I was at a networking event where a new contact was telling me about her challenges in selecting a cloud platform for their major expansion. The issue she was experiencing was to decide between two cloud services that were offering significant discounts and included services for the migration and implementation.… Continue Reading A cloud discount is not always a saving

With the use of Software as a Service offerings increasing, with 99% of businesses projected to use one or more SaaS solutions in an industry that is worth $165Bn a year. There are 15,529 companies providing SaaS solutions , and so it seems like a logical choice to start using… Continue Reading Risks of SaaS

I started my career on Exchange 5.0 in late 1997, and the product became my main skill area for nearly 22 years. In that time, I experienced hacking attacks and website defacement of OWA, stability battles and architecture changes when Microsoft evolved the system towards cloud capability. When my career… Continue Reading Exchange on-premises hack: who still has servers?

The Australian Cyber Security Centre (ACSC) developed prioritised mitigation strategies and published them in February 2017, to help organisations mitigate cybersecurity incidents caused by various cyber threats. The Essential 8 are to be considered a baseline of the minimum standards that any business should follow to protect themselves and their… Continue Reading What is the Essential 8

I will show you how to achieve successes through playing off the inherent nature of people to be lazy. There is a tendency for people – no matter how intelligent and engaged they are – to take the easiest option, and there are ways that you can use this to… Continue Reading Use the lazy option for success

We have all heard it before; “I am not worried about my data, I am not very interesting or important” or similar assertions that their bank account does not have much money to steal, or their Facebook / Instagram posts are not embarassing or personal. However, this common viewpoint is… Continue Reading Why be concerned with personal data security?

2020 has not started well, particularly in Australia with bushfires, floods and now Coronavirus. It is undeniable that life and culture will be changed forever by the lockdown of business and society caused by the global pandemic that has gripped the whole world. The short, medium and long term effects… Continue Reading How Covid-19 may change business and IT

It may feel like the ability to work from home makes home isolation possible to do remote working during Covid, but it is not all perfect… Recent events in 2019/2020 have shown the demand for people to self-isolate or quarantine themselves to reduce the spread of Coronavirus or COVID-19, and… Continue Reading Home isolation – is remote working the saviour?

I have been involved in the drive for Digital Transformation for many businesses over the last few years, and time and again I see the spectre of misunderstandings appearing. The truth is, Digital Transformation is about process and people, not technology. Here are some of the biggest errors; Digital Transformation… Continue Reading Digital Transformation is about process and people, not technology

Even though public cloud is mainstream, and more businesses are going “all in”. They are going for a multi-cloud, hybrid or blended cloud – yet there are still many misunderstandings in those who have not started, and many cloud myths persist. For businesses that are early on their journey to… Continue Reading Misunderstandings of Cloud

Security is a rapidly moving beast – faster than any other facet of the technology industry. We are in a constant battle with everyone from hackers to script-kiddies, from targeted data theft attacks to Denial of Service. Our security teams and network administrators are playing catch-up with the malicious operators.… Continue Reading Your security is obsolete

How much does it cost to manage your data? In an early job, I was making a projection to purchase more disk to expand capacity on our Exchange mailbox servers. At the time, disk was relatively expensive, and the capacity that I had projected for 3 years would have also… Continue Reading Save Money – by buying more disk

Through my study of AWS and Azure, I have found that one challenge is in understanding the terminology difference, particularly as my own background is in VMware technologies. So, I have created this little chart that compares the three.Obviously, there is no direct one-to-one mapping of the product offerings, but… Continue Reading Azure Vs. AWS terminology

Corporate culture can be formalised, or it can be “this is the way things are done here” lore that defines how people act, react, make decisions, and deal with problems. The impact of corporate culture on a business can be significant to the way that corporate culture in IT projects… Continue Reading The importance of understanding corporate culture