© Raymond Pompon 2016

Raymond Pompon, IT Security Risk Control Management, 10.1007/978-1-4842-2140-2_2

2. Assume Breach

Raymond Pompon

(1)Seattle, Washington, USA

When intelligence folks smell roses, they look for the funeral.

—MI5 Director-General Jonathan Evans, Address at the Lord Mayor’s Annual Defence and Security Lecture, London, UK, June 25, 2012

A security professional should expect and plan for things to go wrong, especially when hostile parties are constantly attempting to break their engineering constructs. This concept is as old as the history of warfare and defensive engineering.

The Lesson of Fort Pulaski

Near the coast of the state of Georgia sits the picturesque city of Savannah and the Savannah River. The Savannah River stretches ...

Get IT Security Risk Control Management: An Audit Preparation Plan now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.