<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Shaheen N Abdul Jabbar &#187; Information Security</title>
	<atom:link href="http://snajsoft.com/tag/information-security/feed/" rel="self" type="application/rss+xml" />
	<link>http://snajsoft.com</link>
	<description>Software Engineer &#62; Security Officer &#62; Security Architect</description>
	<lastBuildDate>Wed, 25 Aug 2010 22:19:38 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Risk Based Authentication</title>
		<link>http://snajsoft.com/2010/08/25/risk-based-authentication/</link>
		<comments>http://snajsoft.com/2010/08/25/risk-based-authentication/#comments</comments>
		<pubDate>Wed, 25 Aug 2010 16:39:46 +0000</pubDate>
		<dc:creator>Shaheen Abdul Jabbar</dc:creator>
				<category><![CDATA[Access Control]]></category>
		<category><![CDATA[Risk Management]]></category>
		<category><![CDATA[Security Architecture]]></category>
		<category><![CDATA[Architecture]]></category>
		<category><![CDATA[Cloud Computing]]></category>
		<category><![CDATA[Fraud Prevention]]></category>
		<category><![CDATA[Identity Theft]]></category>
		<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Risk Based Authentication]]></category>

		<guid isPermaLink="false">http://snajsoft.com/?p=386</guid>
		<description><![CDATA[The technique that uses both contextual and historical user information along with data supplied during an internet transaction to assess the probability of whether a user interaction is authentic or not is called risk based authentication.
Traditional username and password along with information such as who the user is, from where the user is logging in [...]]]></description>
		<wfw:commentRss>http://snajsoft.com/2010/08/25/risk-based-authentication/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Disk Overwrite or Wipeout Best Practice</title>
		<link>http://snajsoft.com/2010/06/10/disk-overwrite-or-wipeout-best-practice/</link>
		<comments>http://snajsoft.com/2010/06/10/disk-overwrite-or-wipeout-best-practice/#comments</comments>
		<pubDate>Fri, 11 Jun 2010 03:21:27 +0000</pubDate>
		<dc:creator>Shaheen Abdul Jabbar</dc:creator>
				<category><![CDATA[Cryptography]]></category>
		<category><![CDATA[Canada RCMP]]></category>
		<category><![CDATA[Disk Overwrite]]></category>
		<category><![CDATA[Disk Wipeout]]></category>
		<category><![CDATA[Gutmann method]]></category>
		<category><![CDATA[Information Security]]></category>
		<category><![CDATA[NIST 800-88]]></category>
		<category><![CDATA[Open Source]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Software]]></category>
		<category><![CDATA[US DoD 5220.22-M]]></category>

		<guid isPermaLink="false">http://snajsoft.com/?p=357</guid>
		<description><![CDATA[An online search shows majority of tools available for wiping out data on a disk points to a practice of 7 wipes. They believe that it is a US DoD requirement. Some of them support the Gutmann method of 35 wipes.
However, I could not find any documentation on US government website that indicates seven wipes. [...]]]></description>
		<wfw:commentRss>http://snajsoft.com/2010/06/10/disk-overwrite-or-wipeout-best-practice/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Security Must Haves in a SaaS Provider</title>
		<link>http://snajsoft.com/2009/12/29/security-must-haves-in-a-saas-provider/</link>
		<comments>http://snajsoft.com/2009/12/29/security-must-haves-in-a-saas-provider/#comments</comments>
		<pubDate>Tue, 29 Dec 2009 14:11:22 +0000</pubDate>
		<dc:creator>Shaheen Abdul Jabbar</dc:creator>
				<category><![CDATA[Risk Management]]></category>
		<category><![CDATA[Cloud Computing]]></category>
		<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Outsourcing]]></category>
		<category><![CDATA[SaaS]]></category>

		<guid isPermaLink="false">http://snajsoft.com/?p=238</guid>
		<description><![CDATA[The past year was a learning curve on Cloud Computing, especially on SaaS providers. More and more ASPs are coming back rebranded as SaaS provider. As a security practitioner, it would be good to have a must have check list that we need to use to assess them.
I prepared the following must have check list [...]]]></description>
		<wfw:commentRss>http://snajsoft.com/2009/12/29/security-must-haves-in-a-saas-provider/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>India’s Unique ID Use Case</title>
		<link>http://snajsoft.com/2009/09/01/india%e2%80%99s-unique-id-use-case/</link>
		<comments>http://snajsoft.com/2009/09/01/india%e2%80%99s-unique-id-use-case/#comments</comments>
		<pubDate>Tue, 01 Sep 2009 09:10:08 +0000</pubDate>
		<dc:creator>Shaheen Abdul Jabbar</dc:creator>
				<category><![CDATA[Miscellaneous]]></category>
		<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Privacy]]></category>

		<guid isPermaLink="false">http://snajsoft.com/?p=184</guid>
		<description><![CDATA[Nandan Nilekani's.....Fully integrated ID card system for Indian citizens!!]]></description>
		<wfw:commentRss>http://snajsoft.com/2009/09/01/india%e2%80%99s-unique-id-use-case/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Password Management In An Enterprise</title>
		<link>http://snajsoft.com/2009/08/18/password-management-in-an-enterprise/</link>
		<comments>http://snajsoft.com/2009/08/18/password-management-in-an-enterprise/#comments</comments>
		<pubDate>Tue, 18 Aug 2009 22:38:29 +0000</pubDate>
		<dc:creator>Shaheen Abdul Jabbar</dc:creator>
				<category><![CDATA[Access Control]]></category>
		<category><![CDATA[Architecture]]></category>
		<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Password]]></category>

		<guid isPermaLink="false">http://snajsoft.com/?p=177</guid>
		<description><![CDATA[What is the quick fix to managing the password nightmare? Some notes.]]></description>
		<wfw:commentRss>http://snajsoft.com/2009/08/18/password-management-in-an-enterprise/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>The Open Group Security Practitioners Conference Day 2</title>
		<link>http://snajsoft.com/2009/07/23/the-open-group-security-practitioners-conference-day-2/</link>
		<comments>http://snajsoft.com/2009/07/23/the-open-group-security-practitioners-conference-day-2/#comments</comments>
		<pubDate>Thu, 23 Jul 2009 21:30:36 +0000</pubDate>
		<dc:creator>Shaheen Abdul Jabbar</dc:creator>
				<category><![CDATA[Conference]]></category>
		<category><![CDATA[Architecture]]></category>
		<category><![CDATA[Cloud Computing]]></category>
		<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Outsourcing]]></category>

		<guid isPermaLink="false">http://snajsoft.com/?p=145</guid>
		<description><![CDATA[Proceedings from the The Open Group Security Practitioners Conference at Toronto - July 23, 2009.]]></description>
		<wfw:commentRss>http://snajsoft.com/2009/07/23/the-open-group-security-practitioners-conference-day-2/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>The Open Group Security Practitioners Conference Day 1</title>
		<link>http://snajsoft.com/2009/07/22/the-open-group-security-practitioners-conference-day-1/</link>
		<comments>http://snajsoft.com/2009/07/22/the-open-group-security-practitioners-conference-day-1/#comments</comments>
		<pubDate>Wed, 22 Jul 2009 23:13:17 +0000</pubDate>
		<dc:creator>Shaheen Abdul Jabbar</dc:creator>
				<category><![CDATA[Conference]]></category>
		<category><![CDATA[Architecture]]></category>
		<category><![CDATA[Cloud Computing]]></category>
		<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Regulations]]></category>

		<guid isPermaLink="false">http://snajsoft.com/?p=143</guid>
		<description><![CDATA[Proceedings from the The Open Group Security Practitioners Conference at Toronto - July 22, 2009.]]></description>
		<wfw:commentRss>http://snajsoft.com/2009/07/22/the-open-group-security-practitioners-conference-day-1/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Security Architecture Framework</title>
		<link>http://snajsoft.com/2009/07/16/security-architecture-framework/</link>
		<comments>http://snajsoft.com/2009/07/16/security-architecture-framework/#comments</comments>
		<pubDate>Thu, 16 Jul 2009 22:28:41 +0000</pubDate>
		<dc:creator>Shaheen Abdul Jabbar</dc:creator>
				<category><![CDATA[Security Architecture]]></category>
		<category><![CDATA[Architecture]]></category>
		<category><![CDATA[Information Security]]></category>

		<guid isPermaLink="false">http://snajsoft.com/?p=140</guid>
		<description><![CDATA[Security Architecture Framework should provide comprehensive view of security in the enterprise and be the reference model for any security architecture artifacts and all design.]]></description>
		<wfw:commentRss>http://snajsoft.com/2009/07/16/security-architecture-framework/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Internet Traffic Shaping in Canada</title>
		<link>http://snajsoft.com/2009/07/15/internet-traffic-shaping-in-canada/</link>
		<comments>http://snajsoft.com/2009/07/15/internet-traffic-shaping-in-canada/#comments</comments>
		<pubDate>Wed, 15 Jul 2009 21:45:21 +0000</pubDate>
		<dc:creator>Shaheen Abdul Jabbar</dc:creator>
				<category><![CDATA[Between The Lines]]></category>
		<category><![CDATA[Canada]]></category>
		<category><![CDATA[Information Security]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Regulations]]></category>

		<guid isPermaLink="false">http://snajsoft.com/?p=136</guid>
		<description><![CDATA[ISPs wants to shape internet traffic while Canadians are still waiting to know the effects on Privacy if two bills - Investigative Powers for the 21st Century Act and the Technical Assistance for Law Enforcement in the 21st Century Act - becomes law.]]></description>
		<wfw:commentRss>http://snajsoft.com/2009/07/15/internet-traffic-shaping-in-canada/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Critical Security Controls</title>
		<link>http://snajsoft.com/2009/07/13/critical-security-controls/</link>
		<comments>http://snajsoft.com/2009/07/13/critical-security-controls/#comments</comments>
		<pubDate>Mon, 13 Jul 2009 22:23:06 +0000</pubDate>
		<dc:creator>Shaheen Abdul Jabbar</dc:creator>
				<category><![CDATA[Risk Management]]></category>
		<category><![CDATA[Architecture]]></category>
		<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Regulations]]></category>

		<guid isPermaLink="false">http://snajsoft.com/?p=126</guid>
		<description><![CDATA[What are the Critical Security Controls per US federal organizations? Important points and thoughts.]]></description>
		<wfw:commentRss>http://snajsoft.com/2009/07/13/critical-security-controls/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
