The Attributer’s Blog – Shellshocked

This time we shall look at an undesirable SABSA Attribute, the name of which is, of course, a piece of irony, a way to draw attention to an extensive systemic problem by looking at a recently discovered example of a software bug, nicknamed ‘Shellshock’. For those who might have missed the news on this, the nickname applies to a vulnerability […]

The Attributer’s blog – Smart Secured

It is always the goal of this column to keep up with the times and the changes that follow, applying SABSA thinking to new situations and evolving new Business Attributes. In this issue we shall examine a recent concept that is about to be launched into reality – the Internet of Things (IoT). These ‘things’ are of course ‘smart things’ […]

The Attributer’s Blog – BYOD Enabled

In this issue we shall look at BYOD with a view to identifying the major risk factors affecting the design of a technical architecture supporting BYOD as a way of working, suing as always the SABSA way of thinking. The most important thing to consider is the business risk – from both sides of the employer/employee relationship, and from both […]

The Attributer’s Blog – Patched

In the previous issue of this article we looked at the SABSA Business Attribute ‘Risk Managed’, taking the very highest level ‘helicopter view’. In this issue we shall examine a detailed technical example – looking from the bottom up, rather than from the top down. Software patching is a standard security measure for maintaining the integrity of IT systems, and […]

The Attributer’s Blog – Risk Managed

Ever since the very first version of the SABSA Business Attributes taxonomy developed in early 2000, one of those attributes has been ‘risk managed’. Fourteen years later one might ask the question: “What does that mean? Surely SABSA is all about risk management. One might as well say SABSAised.” Yes, that would be a fair comment, because the evolution of […]