<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:wfw="http://wellformedweb.org/CommentAPI/" version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dcterms="http://purl.org/dc/terms/">
  <channel>
    <title>eiqcast's Podcast</title>
    <link>http://eiqcast.podOmatic.com</link>
    <description>Give it a listen!</description>
    <language>en-us</language>
    <generator>podOmatic RSS Generator</generator>
    <pubDate>Thu, 05 Nov 2009 11:47:33 GMT</pubDate>
    <itunes:subtitle>Give it a listen!</itunes:subtitle>
    <itunes:explicit>no</itunes:explicit>
    <itunes:block>no</itunes:block>
    <itunes:image href="http://eiqcast.podOmatic.com/images/pcast240.jpg"/>
    <itunes:author>Mike Rothman</itunes:author>
    <itunes:summary></itunes:summary>
    <itunes:category text="Technology"/>
    <atom:link href="http://eiqcast.podOmatic.com/rss2.xml" type="application/rss+xml" rel="self"/>
    <item>
      <title>eIQcast Episode 7: FAA and Incident Response</title>
      <description>&lt;img src="http://eiqcast.podOmatic.com/mymedia/thumb/1173665/0x0_1583264.gif" alt="itunes pic" /&gt;&lt;br /&gt;In this episode of the eIQcast, Ross Levanto interviews Link (that's eIQ Product Evangelist John Linkous for newbies) about the recent FAA breach. Clearly the FAA had a strong incident response process in place since they disclosed the breach within a week. As with everything, there are always areas to improve, so John discusses some of the advantages of broad monitoring as well in detecting issues (and possible incidents) earlier in the process.

Running time: 11:35
</description>
      <guid isPermaLink="true">http://eiqcast.podOmatic.com/entry/2009-02-12T06_33_03-08_00</guid>
      <comments>http://eiqcast.podOmatic.com/entry/2009-02-12T06_33_03-08_00</comments>
      <pubDate>Thu, 12 Feb 2009 14:28:06 GMT</pubDate>
      <dcterms:modified>2009-02-12</dcterms:modified>
      <dcterms:created>2009-02-12</dcterms:created>
      <link>http://eiqcast.podOmatic.com</link>
      <dc:creator>Mike Rothman</dc:creator>
      <itunes:keywords>breach,eiqcast,faa,ir,monitoring</itunes:keywords>
      <enclosure type="audio/mpeg" url="http://eiqcast.podOmatic.com/enclosure/2009-02-12T06_33_03-08_00.mp3" length="8344555"/>
      <itunes:image href="http://eiqcast.podOmatic.com/mymedia/thumb/1173665/0x0_1583264.gif"/>
      <itunes:duration>695</itunes:duration>
      <itunes:explicit>clean</itunes:explicit>
      <itunes:summary>In this episode of the eIQcast, Ross Levanto interviews Link (that's eIQ Product Evangelist John Linkous for newbies) about the recent FAA breach. Clearly the FAA had a strong incident response process in place since they disclosed the breach within a week. As with everything, there are always areas to improve, so John discusses some of the advantages of broad monitoring as well in detecting issues (and possible incidents) earlier in the process.

Running time: 11:35
</itunes:summary>
    </item>
    <item>
      <title>eIQcast Episode 6 - Configuration Audit</title>
      <description>&lt;img src="http://eiqcast.podOmatic.com/mymedia/thumb/1173665/0x0_1404512.jpg" alt="itunes pic" /&gt;&lt;br /&gt;This week, John and Mike tackle the concept of configuration audit and why it's important to ensure devices are configured correctly. We also discuss some of the configuration "standards" out there, like Center for Internet Security and some suggestions from the US Federal Government.

Running time: 12:23

</description>
      <guid isPermaLink="true">http://eiqcast.podOmatic.com/entry/2009-02-04T07_15_13-08_00</guid>
      <comments>http://eiqcast.podOmatic.com/entry/2009-02-04T07_15_13-08_00</comments>
      <pubDate>Wed, 04 Feb 2009 14:56:52 GMT</pubDate>
      <dcterms:modified>2009-02-04</dcterms:modified>
      <dcterms:created>2009-02-04</dcterms:created>
      <link>http://eiqcast.podOmatic.com</link>
      <dc:creator>Mike Rothman</dc:creator>
      <itunes:keywords>audit,configuration,eiq,eiqcast</itunes:keywords>
      <enclosure type="audio/mpeg" url="http://eiqcast.podOmatic.com/enclosure/2009-02-04T07_15_13-08_00.mp3" length="8914755"/>
      <itunes:image href="http://eiqcast.podOmatic.com/mymedia/thumb/1173665/0x0_1404512.jpg"/>
      <itunes:duration>742</itunes:duration>
      <itunes:explicit>clean</itunes:explicit>
      <itunes:summary>This week, John and Mike tackle the concept of configuration audit and why it's important to ensure devices are configured correctly. We also discuss some of the configuration "standards" out there, like Center for Internet Security and some suggestions from the US Federal Government.

Running time: 12:23

</itunes:summary>
    </item>
    <item>
      <title>eIQcast Episode 5: Heartland and PCI</title>
      <description>&lt;img src="http://eiqcast.podOmatic.com/mymedia/thumb/1173665/0x0_1531450.jpg" alt="itunes pic" /&gt;&lt;br /&gt;This week's episode is focused on the Heartland data breach and it's eventual impact on PCI. Mike Rothman, eIQ's SVP of Strategy, is interviewed by Ross Levanto and discusses some of the specifics behind the breach and reinforces the message that log data alone is not going to catch these new attacks. More importantly, Mike talks about some of the changes that are needed with the PCI standard, given that two "PCI compliant" organizations have had high profile data breaches.

Running time: 10:57

</description>
      <guid isPermaLink="true">http://eiqcast.podOmatic.com/entry/2009-01-23T05_35_33-08_00</guid>
      <comments>http://eiqcast.podOmatic.com/entry/2009-01-23T05_35_33-08_00</comments>
      <pubDate>Fri, 23 Jan 2009 13:20:09 GMT</pubDate>
      <dcterms:modified>2009-01-23</dcterms:modified>
      <dcterms:created>2009-01-23</dcterms:created>
      <link>http://eiqcast.podOmatic.com</link>
      <dc:creator>Mike Rothman</dc:creator>
      <itunes:keywords>breach,heartland,pci</itunes:keywords>
      <enclosure type="audio/mpeg" url="http://eiqcast.podOmatic.com/enclosure/2009-01-23T05_35_33-08_00.mp3" length="7898801"/>
      <itunes:image href="http://eiqcast.podOmatic.com/mymedia/thumb/1173665/0x0_1531450.jpg"/>
      <itunes:duration>657</itunes:duration>
      <itunes:explicit>clean</itunes:explicit>
      <itunes:summary>This week's episode is focused on the Heartland data breach and it's eventual impact on PCI. Mike Rothman, eIQ's SVP of Strategy, is interviewed by Ross Levanto and discusses some of the specifics behind the breach and reinforces the message that log data alone is not going to catch these new attacks. More importantly, Mike talks about some of the changes that are needed with the PCI standard, given that two "PCI compliant" organizations have had high profile data breaches.

Running time: 10:57

</itunes:summary>
    </item>
    <item>
      <title>eIQcast Episode 4 - Drilldown on COSO/COBIT</title>
      <description>&lt;img src="http://eiqcast.podOmatic.com/mymedia/thumb/1173665/0x0_1506154.jpg" alt="itunes pic" /&gt;&lt;br /&gt;In this episode, John Linkous and Mike Rothman drill deep into the COSO/COBIT framework. Why do you care? Well a good part of the acceptable practices of little regulations like Sarbanes-Oxley and FISMA are directly related to COBIT. Thus, if you have to worry about those regulations, you should be familiar with COBIT. Check it out.

Running time: 11:43

</description>
      <guid isPermaLink="true">http://eiqcast.podOmatic.com/entry/2009-01-13T08_32_55-08_00</guid>
      <comments>http://eiqcast.podOmatic.com/entry/2009-01-13T08_32_55-08_00</comments>
      <pubDate>Tue, 13 Jan 2009 16:23:46 GMT</pubDate>
      <dcterms:modified>2009-01-13</dcterms:modified>
      <dcterms:created>2009-01-13</dcterms:created>
      <link>http://eiqcast.podOmatic.com</link>
      <dc:creator>Mike Rothman</dc:creator>
      <itunes:keywords>cobit,compliance,eiqcast,eiqnetworks,fisma,sox</itunes:keywords>
      <enclosure type="audio/mpeg" url="http://eiqcast.podOmatic.com/enclosure/2009-01-13T08_32_55-08_00.mp3" length="8434520"/>
      <itunes:image href="http://eiqcast.podOmatic.com/mymedia/thumb/1173665/0x0_1506154.jpg"/>
      <itunes:duration>702</itunes:duration>
      <itunes:explicit>clean</itunes:explicit>
      <itunes:summary>In this episode, John Linkous and Mike Rothman drill deep into the COSO/COBIT framework. Why do you care? Well a good part of the acceptable practices of little regulations like Sarbanes-Oxley and FISMA are directly related to COBIT. Thus, if you have to worry about those regulations, you should be familiar with COBIT. Check it out.

Running time: 11:43

</itunes:summary>
    </item>
    <item>
      <title>eIQcast Episode 3: Compliance Automation</title>
      <description>&lt;img src="http://eiqcast.podOmatic.com/mymedia/thumb/1173665/0x0_1461053.jpg" alt="itunes pic" /&gt;&lt;br /&gt;In the third episode of the eIQcast, John and Mike tackle the concept of compliance automation. What exactly are you automating? And how do you delve into some of the specific compliance regulations and frameworks to figure out how to do more with less. Given the economic backdrop heading into 2009, we believe that all customers will need to figure out how to make their operations much more effective and more importantly, efficient. Automation is one way to do that.</description>
      <guid isPermaLink="true">http://eiqcast.podOmatic.com/entry/2008-12-24T09_50_13-08_00</guid>
      <comments>http://eiqcast.podOmatic.com/entry/2008-12-24T09_50_13-08_00</comments>
      <pubDate>Wed, 24 Dec 2008 17:45:32 GMT</pubDate>
      <dcterms:modified>2008-12-24</dcterms:modified>
      <dcterms:created>2008-12-24</dcterms:created>
      <link>http://eiqcast.podOmatic.com</link>
      <dc:creator>Mike Rothman</dc:creator>
      <itunes:keywords>automation,compliance,eiqnetworks,fisma,pci</itunes:keywords>
      <enclosure type="audio/mpeg" url="http://eiqcast.podOmatic.com/enclosure/2008-12-24T09_50_13-08_00.mp3" length="9142021"/>
      <itunes:image href="http://eiqcast.podOmatic.com/mymedia/thumb/1173665/0x0_1461053.jpg"/>
      <itunes:duration>761</itunes:duration>
      <itunes:explicit>clean</itunes:explicit>
      <itunes:summary>In the third episode of the eIQcast, John and Mike tackle the concept of compliance automation. What exactly are you automating? And how do you delve into some of the specific compliance regulations and frameworks to figure out how to do more with less. Given the economic backdrop heading into 2009, we believe that all customers will need to figure out how to make their operations much more effective and more importantly, efficient. Automation is one way to do that.</itunes:summary>
    </item>
    <item>
      <title>eIQcast Episode 2: Security Automation</title>
      <description>&lt;img src="http://eiqcast.podOmatic.com/mymedia/thumb/1173665/0x0_1404512.jpg" alt="itunes pic" /&gt;&lt;br /&gt;In the second eIQcast, John and Mike discuss the need to automate security operations and some of the issues therein. The reality is that attacks have not stopped, but in this kind of macro-economic environment the opportunity to add resources to defend against attacks is limited. Thus we all need to work more effectively and more efficiently, which is what security automation is all about.</description>
      <guid isPermaLink="true">http://eiqcast.podOmatic.com/entry/2008-12-10T07_52_11-08_00</guid>
      <comments>http://eiqcast.podOmatic.com/entry/2008-12-10T07_52_11-08_00</comments>
      <pubDate>Wed, 10 Dec 2008 15:45:47 GMT</pubDate>
      <dcterms:modified>2008-12-10</dcterms:modified>
      <dcterms:created>2008-12-10</dcterms:created>
      <link>http://eiqcast.podOmatic.com</link>
      <dc:creator>Mike Rothman</dc:creator>
      <itunes:keywords>automation,compliance,eiqcast,eiqnetworks,management,security</itunes:keywords>
      <enclosure type="audio/mpeg" url="http://eiqcast.podOmatic.com/enclosure/2008-12-10T07_52_11-08_00.mp3" length="9379631"/>
      <itunes:image href="http://eiqcast.podOmatic.com/mymedia/thumb/1173665/0x0_1404512.jpg"/>
      <itunes:duration>781</itunes:duration>
      <itunes:explicit>clean</itunes:explicit>
      <itunes:summary>In the second eIQcast, John and Mike discuss the need to automate security operations and some of the issues therein. The reality is that attacks have not stopped, but in this kind of macro-economic environment the opportunity to add resources to defend against attacks is limited. Thus we all need to work more effectively and more efficiently, which is what security automation is all about.</itunes:summary>
    </item>
    <item>
      <title>eIQcast Episode 1 - Low and Slow Attacks</title>
      <description>&lt;img src="http://eiqcast.podOmatic.com/mymedia/thumb/1173665/0x0_1404512.jpg" alt="itunes pic" /&gt;&lt;br /&gt;In this inaugural episode of the eIQcast, Mike Rothman and John Linkous decompose a particularly nasty attack called the "low and slow" attack, which is designed to make existing defenses obsolete. Listeners will understand how the low and slow attack works and also how to defend against it using security management technology (like eIQ's SecureVue).

Running time: 13:10</description>
      <guid isPermaLink="true">http://eiqcast.podOmatic.com/entry/2008-12-01T07_23_13-08_00</guid>
      <comments>http://eiqcast.podOmatic.com/entry/2008-12-01T07_23_13-08_00</comments>
      <pubDate>Mon, 01 Dec 2008 15:16:38 GMT</pubDate>
      <dcterms:modified>2008-12-01</dcterms:modified>
      <dcterms:created>2008-12-01</dcterms:created>
      <link>http://eiqcast.podOmatic.com</link>
      <dc:creator>Mike Rothman</dc:creator>
      <itunes:keywords>eiq,eiqcast,low-slow-attack,securevue</itunes:keywords>
      <enclosure type="audio/mpeg" url="http://eiqcast.podOmatic.com/enclosure/2008-12-01T07_23_13-08_00.mp3" length="9492793"/>
      <itunes:image href="http://eiqcast.podOmatic.com/mymedia/thumb/1173665/0x0_1404512.jpg"/>
      <itunes:duration>790</itunes:duration>
      <itunes:explicit>clean</itunes:explicit>
      <itunes:summary>In this inaugural episode of the eIQcast, Mike Rothman and John Linkous decompose a particularly nasty attack called the "low and slow" attack, which is designed to make existing defenses obsolete. Listeners will understand how the low and slow attack works and also how to defend against it using security management technology (like eIQ's SecureVue).

Running time: 13:10</itunes:summary>
    </item>
  </channel>
</rss>
