<?xml version="1.0" encoding="UTF-8"?><!-- generator="wordpress/2.2.1" -->
<rss version="2.0" 
	xmlns:content="http://purl.org/rss/1.0/modules/content/">
<channel>
	<title>Comments for The Revelator</title>
	<link>http://whatisopsec.com</link>
	<description>"That's Not OPSEC"</description>
	<pubDate>Thu, 11 Mar 2010 04:19:22 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.2.1</generator>

	<item>
		<title>Comment on All Shook Up by Gary Gardner</title>
		<link>http://whatisopsec.com/2009/12/17/all-shook-up/#comment-33474</link>
		<author>Gary Gardner</author>
		<pubDate>Fri, 18 Dec 2009 13:54:44 +0000</pubDate>
		<guid>http://whatisopsec.com/2009/12/17/all-shook-up/#comment-33474</guid>
		<description>Amen Brother!  Way to stand up and say what's been on everyone's mind!  To carry on the Elvis theme, we need to promote how it could a "Blue Christmas" Without OPSEC!! 
Keepin' the Faith in San Antone!</description>
		<content:encoded><![CDATA[<p>Amen Brother!  Way to stand up and say what&#8217;s been on everyone&#8217;s mind!  To carry on the Elvis theme, we need to promote how it could a &#8220;Blue Christmas&#8221; Without OPSEC!!<br />
Keepin&#8217; the Faith in San Antone!</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Shameless Promotion Alert by JD Ingalls</title>
		<link>http://whatisopsec.com/2009/10/08/shameless-promotion-alert/#comment-27143</link>
		<author>JD Ingalls</author>
		<pubDate>Thu, 08 Oct 2009 20:22:37 +0000</pubDate>
		<guid>http://whatisopsec.com/2009/10/08/shameless-promotion-alert/#comment-27143</guid>
		<description>Hey, I think the "new guy" sucks.</description>
		<content:encoded><![CDATA[<p>Hey, I think the &#8220;new guy&#8221; sucks.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Nothing Matters And What If It Did by Chris Cox</title>
		<link>http://whatisopsec.com/2009/09/25/nothing-matters-and-what-if-it-did/#comment-26279</link>
		<author>Chris Cox</author>
		<pubDate>Sun, 27 Sep 2009 00:45:40 +0000</pubDate>
		<guid>http://whatisopsec.com/2009/09/25/nothing-matters-and-what-if-it-did/#comment-26279</guid>
		<description>You're right, Rev, few (I say few because there ARE those dedicated OPSEC'ers out there, and I consider each one to be my brethren!) actually understand the intent, purpose and benefit of OPSEC. 

Really, aside from the dedicated men and women (heroes, each one) fighting tirelessly, and often thanklessly, each day to KEEP OPSEC off of the front pages of the company newsletter (in the sense that failures get far more press than successes, especially in OPSEC, where success is impossible to measure), there isn't much visibility on this life-saving method.

But, you know what? OPSEC isn't alone. There's many subjects that aren't really considered- until there's a failure, or until you need it. What's more, many things are seen as just another "expense" or "check the box", until you really evaluate what can go wrong without it!

Such as:
Life insurance
Auto insurance
Regular health checkups
Random ID checks
Security training
Safety inspections

The list goes on. OPSEC is one of those things that, if it's working properly, isn't on the radar. Of course, it's the skilled OPSEC'er that can get it on the radar as a SUCCESS.</description>
		<content:encoded><![CDATA[<p>You&#8217;re right, Rev, few (I say few because there ARE those dedicated OPSEC&#8217;ers out there, and I consider each one to be my brethren!) actually understand the intent, purpose and benefit of OPSEC. </p>
<p>Really, aside from the dedicated men and women (heroes, each one) fighting tirelessly, and often thanklessly, each day to KEEP OPSEC off of the front pages of the company newsletter (in the sense that failures get far more press than successes, especially in OPSEC, where success is impossible to measure), there isn&#8217;t much visibility on this life-saving method.</p>
<p>But, you know what? OPSEC isn&#8217;t alone. There&#8217;s many subjects that aren&#8217;t really considered- until there&#8217;s a failure, or until you need it. What&#8217;s more, many things are seen as just another &#8220;expense&#8221; or &#8220;check the box&#8221;, until you really evaluate what can go wrong without it!</p>
<p>Such as:<br />
Life insurance<br />
Auto insurance<br />
Regular health checkups<br />
Random ID checks<br />
Security training<br />
Safety inspections</p>
<p>The list goes on. OPSEC is one of those things that, if it&#8217;s working properly, isn&#8217;t on the radar. Of course, it&#8217;s the skilled OPSEC&#8217;er that can get it on the radar as a SUCCESS.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Miss You by ellenr</title>
		<link>http://whatisopsec.com/2009/07/09/86/#comment-18378</link>
		<author>ellenr</author>
		<pubDate>Thu, 09 Jul 2009 18:30:15 +0000</pubDate>
		<guid>http://whatisopsec.com/2009/07/09/86/#comment-18378</guid>
		<description>Is it just me or are social netowrking web sites the bane of the free world.</description>
		<content:encoded><![CDATA[<p>Is it just me or are social netowrking web sites the bane of the free world.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Welcome To The Jungle by Jaedeals &#124; Weblog</title>
		<link>http://whatisopsec.com/2008/05/30/welcome-to-the-jungle/#comment-16017</link>
		<author>Jaedeals &#124; Weblog</author>
		<pubDate>Sun, 14 Jun 2009 10:50:01 +0000</pubDate>
		<guid>http://whatisopsec.com/2008/05/30/welcome-to-the-jungle/#comment-16017</guid>
		<description>Absolutely spot on. It is high time organisations took social engineering more seriously and accept it as notorious form of security attack which can be very damaging.</description>
		<content:encoded><![CDATA[<p>Absolutely spot on. It is high time organisations took social engineering more seriously and accept it as notorious form of security attack which can be very damaging.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Won&#8217;t Get Fooled Again by Jeffrey W. Bennett</title>
		<link>http://whatisopsec.com/2008/10/17/wont-get-fooled-again/#comment-2082</link>
		<author>Jeffrey W. Bennett</author>
		<pubDate>Tue, 25 Nov 2008 19:53:43 +0000</pubDate>
		<guid>http://whatisopsec.com/2008/10/17/wont-get-fooled-again/#comment-2082</guid>
		<description>Excellent points.  Too often we use scare tactics to get our points or sales accross.  Successful members of this industry know how to speak to their management on the importance of OPSEC procedures and make OPSEC a team effort not a lonely business.</description>
		<content:encoded><![CDATA[<p>Excellent points.  Too often we use scare tactics to get our points or sales accross.  Successful members of this industry know how to speak to their management on the importance of OPSEC procedures and make OPSEC a team effort not a lonely business.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Me &#038; Mrs. Jones by Revelator</title>
		<link>http://whatisopsec.com/2008/10/28/me-mrs-jones/#comment-1404</link>
		<author>Revelator</author>
		<pubDate>Wed, 29 Oct 2008 21:59:19 +0000</pubDate>
		<guid>http://whatisopsec.com/2008/10/28/me-mrs-jones/#comment-1404</guid>
		<description>You're an angel Karen.  Keep spreading the Gospel of OPSEC!
Revelator.</description>
		<content:encoded><![CDATA[<p>You&#8217;re an angel Karen.  Keep spreading the Gospel of OPSEC!<br />
Revelator.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Me &#038; Mrs. Jones by Karen Brown</title>
		<link>http://whatisopsec.com/2008/10/28/me-mrs-jones/#comment-1384</link>
		<author>Karen Brown</author>
		<pubDate>Wed, 29 Oct 2008 16:29:47 +0000</pubDate>
		<guid>http://whatisopsec.com/2008/10/28/me-mrs-jones/#comment-1384</guid>
		<description>That was excellent!  I'm posting copies in our Break Rooms. It shines an entertaining light on OPSEC!</description>
		<content:encoded><![CDATA[<p>That was excellent!  I&#8217;m posting copies in our Break Rooms. It shines an entertaining light on OPSEC!</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Won&#8217;t Get Fooled Again by Revelator</title>
		<link>http://whatisopsec.com/2008/10/17/wont-get-fooled-again/#comment-816</link>
		<author>Revelator</author>
		<pubDate>Tue, 21 Oct 2008 14:20:08 +0000</pubDate>
		<guid>http://whatisopsec.com/2008/10/17/wont-get-fooled-again/#comment-816</guid>
		<description>Thanks Numlock.  Keep fighting the good fight brother!</description>
		<content:encoded><![CDATA[<p>Thanks Numlock.  Keep fighting the good fight brother!</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Won&#8217;t Get Fooled Again by Frank Koza</title>
		<link>http://whatisopsec.com/2008/10/17/wont-get-fooled-again/#comment-814</link>
		<author>Frank Koza</author>
		<pubDate>Tue, 21 Oct 2008 13:57:54 +0000</pubDate>
		<guid>http://whatisopsec.com/2008/10/17/wont-get-fooled-again/#comment-814</guid>
		<description>Yay!!!  Great post.  You finally hit the nail on the head, Rainman.  :)

I keep having folks tell me that leadership doesn't 'get it' about the importance of OPSEC and that they have no support or advocacy.  I just tell them that we do a horrible job of teaching people how to properly qualitatively and quantitatively assess risk and how to do a cost/benefit analysis on measures.  When you give your bosses crap, then expect crap back.

Now if ye can just convince them that it's more than just protecting against communications intercept, open source, and social engineering.</description>
		<content:encoded><![CDATA[<p>Yay!!!  Great post.  You finally hit the nail on the head, Rainman.  <img src='http://whatisopsec.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>I keep having folks tell me that leadership doesn&#8217;t &#8216;get it&#8217; about the importance of OPSEC and that they have no support or advocacy.  I just tell them that we do a horrible job of teaching people how to properly qualitatively and quantitatively assess risk and how to do a cost/benefit analysis on measures.  When you give your bosses crap, then expect crap back.</p>
<p>Now if ye can just convince them that it&#8217;s more than just protecting against communications intercept, open source, and social engineering.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
