Join the Community

22,329
Expert opinions
44,417
Total members
356
New members (last 30 days)
151
New opinions (last 30 days)
28,783
Total comments

Latest expert opinions

clear
clear

4231 Results from /regulation

Steve Dance

Steve Dance Managing Partner at RiskCentric

Key themes for risk management in 2010

Every year brings it’s challenges - although I think it's fair to say that we enter 2010 with perhaps slightly more optimism than 2009. Nevertheless, economic trends, political events, responses to the banking crisis and technology devlopments are beginning to shape the risk agenda for 2010. Here’s my perspective on some of the issues that are

/security /regulation

Retired Member

Retired Member 

The race against fraud

“Subramaniam went to great trouble to hide his activity. He seems to have thought that carrying data around on memory sticks and using internet cafes would somehow protect him from scrutiny. He was wrong, says Lemon” Criminals like Subramaniam are highly-organised and run professional fraud networks, but they are not immune to the power of banks’ a...

/regulation

Robert Siciliano

Robert Siciliano Security Analyst at Safr.me

Forget Privacy, Think Security

Everywhere you go there is a privacy advocate screaming to protect your privacy. Privacy advocates, bless them, are a dying breed. They fight for whatever privacy rights there are left and do their best to remain watchdogs. If your gig is privacy, my guess is you have lost all your hair and are popping Prozac to relieve the stress of todays anti-p...

/security /regulation

Steve Dance

Steve Dance Managing Partner at RiskCentric

A journey around a risk governance systems implementation

I recently met with a former colleague of mine who recounted a story that as first seems extreme, but which I have subsequently established to be a common problem: My contact was a risk manager in a large financial institution and he was recounting to me his experiences in implementing a risk and compliance governance system. The system had entai...

/security /regulation

Retired Member

Retired Member 

No more secrets: managing risk when access control breaks

This post is a first in a series I will be exchanging with Allison Miller, one of my esteemed colleagues in Paypal's Risk organization, in her reinstated blog. “Man may be defined as the animal that can say "I," that can be aware of himself as a separate entity”. (Erich Fromm) “Identity” is a widely debated term, in various areas; Phil...

/payments /regulation Innovation in Financial Services

Robert Siciliano

Robert Siciliano Security Analyst at Safr.me

Why Am I Logged Into Someone's FriendFeed?

I have pretty tight controls over my network and access to my 510 usernames and passworded accounts. Yes he just said “510”…and counting. I have full administrative rights over every PC and nobody else has access to my home or office. So it came as a surprise to me when I went to log into my FriendFeed account to make an adjustment and I discovere...

/security /regulation

Retired Member

Retired Member 

Deconstructing Zynga: what's up in Social Gaming fraud

Talking to friends in a party I had to hold myself from becoming too smuggy-smug-smug. Yep, the lot of "I'm too good for Mafia Wars" geeks fell prey to the eggplant-growing rhythm of Farmville. Eggplants. My friends. I don’t even like eggplants, but still felt responsible in a way, though they’re only a drop in Zynga’s estimated 15M+...

/payments /regulation Innovation in Financial Services

Robert Siciliano

Robert Siciliano Security Analyst at Safr.me

Data Breaches: The Insanity Continues

The Identity Theft Resource Center Breach Report also monitors how breaches occur. This task is made more difficult by the scarcity of information provided (publicly) for approximately 1/3 of the recorded breaches. For the remainder, those events that do state how the breach occurred, malicious attacks (Hacking + Insider Theft) have taken t...

/security /regulation

Retired Member

Retired Member 

Another GSM Algorithm Cracked

The A5/1 encryption cypher fell last week and now the A5/3 has been cracked. Not a good week for mobile phone carriers and alarm bells should be ringing if you are planning involving the GSM association in any secure applications and perhaps you need to revisit the risk equation. For those in the know a new type of attack was used to construct a si...

/security /regulation Whatever...

Retired Member

Retired Member 

Is fraud in the UK getting better or worse?

Is fraud in the UK getting better or worse? As we enter 2010, the picture of fraud across the UK is somewhat mixed. On one hand we have figures from The UK Cards Association showing card fraud decreasing 23 per cent to £232.8m in the first half of 2009. The reduction in fraud is largely due to the reduction in Card-Not-Present (CNP) fraud (fraud o...

/security /regulation Online Banking

Now Hiring