infobex

@infobex@infosec.exchange

Rider, Reader, Watcher of Things

Infosec Security Awareness
Enterprise Cybersecurity Awareness and Culture Lead at a BioTech

Pro Coach & Rider
Invisible Illness Advocate
Cats, Books, Cozy Nooks

This profile is from a federated server and may be incomplete. Browse more on the original instance.

infobex, to knitting

Will I finish the dress before Tuesday?

At the last round of the hips. Have thigh to knee left and sleeves. I am not hopeful πŸ˜‚

@knitting

infobex, to knitting

Almost finished the waist shaping on this top down dress. Going to have the fewest stitches now until I cast off!

@knitting

infobex, to security

Had a great time on a conference panel this morning at UKSEC Cyber Summit chatting about metrics and security.

Some great questions and lots of wonder people chatting to me after with great questions.

So nice to be able to share some of my thought on useful metrics for security, and how you use them#infosec #securityawareness #security #speaking #speaker

infobex, to baking
malwaretech, to random

I’ve never worked a job where I have to wake up at a specific time and I’ve always wondered if it’s professionally acceptable to just be honest and tell someone their 9am meeting suggestion is too early. Currently I just tell everyone my schedule is book every day until 10 am (which is technically true because I have 2am - 9am scheduled for sleeping and 9am - 10am scheduled for drinking coffee and processing being alive).

infobex,

@malwaretech @SwiftOnSecurity I havn opposite end of the day problems there πŸ˜‚ America wants meetings when I am asleep. Even though I have a shunted schedule so we overlap more. If someone wants an 8 or 9am meeting with me UK time I would be on a horse

Lockdownyourlife, to random

Well fuck.

infobex,

@Lockdownyourlife this is either very good or very bad. I shall hope the former

infobex,
Private
infobex,

@kusuriya @knitting am contemplating making a bunch for DefCon and new friends may get one πŸ˜‚

infobex,
jerry, to random

I have this cat laying with me. He doesn’t care about my problems at work. He doesn’t care about Meta and the fediverse. He doesn’t care that Fedia.io’s database is a :dumpster_fire:​

He, for some reason, just wants to lay right here. Purring softly. Twitching now and then as he dreams. Apparently feeling safe.

He’s 17. I give him insulin injections twice a day and he has a shaved spot on his back with a glucose meter glued to his skin. Yet he still trusts me.

When I adopted him 17 years ago, he was a wreck. He peed on my couches, pooped on my bed. But he grew out of that.

He and I play games, even still today. i will act scared to see him and back away, and he will start chasing me.

He knows how to ask me for what he wants. I feel like I understand him sometimes.

I’m really am super lucky he put on a show when I was looking for a rescue to adopt all those years ago. He’s been an awesome cat.

infobex,

@jerry cats are so wonderful πŸ’™

GossiTheDog, (edited ) to random
@GossiTheDog@cyberplace.social avatar

Woah - just came out in court that Microsoft acquired Bethesda after they found out Starfield was going to be a PlayStation exclusive.

They had seen the game so decided to spend 8 billion to buy the whole studio. https://www.theverge.com/2023/6/23/23771828/microsoft-betheda-acquisition-starfield-playstation-exclusive

infobex,
GossiTheDog, to random
@GossiTheDog@cyberplace.social avatar

oh god I went on Twitter and now I need to quit Twitter again

video/mp4

infobex,

@malwaretech @GossiTheDog how else will people know he has opinions if he's not loud and aggy about it!

infobex, to random

Have had quite possibly the travel journey from hell.
Finally at hotel about to get into bed after an amusing series of events that soon became less amusing.

Also AMERICA, YOU STILL SWIPE CARDS? WHAT?

infobex,

@jerry I don't think my card even swipes. It took like ten goes before it reluctantly worked. The put card in reader for chip WASN'T EVEN AN OPTION

My brain thinks it is almost 3am so it is not coping with this concept of swiping cards in 2023.

infobex, to infosec

Anyone in the UK fancy attending BSides Basingstoke there's still a few tickets left. You'll get to hear this masterpiece of a talk.

infobex, to random

Telling people not to click links is a terrible idea.

It's also telling them not to do their job.

If clicking a link destroys your company that's a security architecture problem, not an end user problem.

Clicking links isn't a risky behaviour, it's what people need to do to do their job.

Teaching people how phishing actually works and what to do to protect themselves is much better than just telling them not to click stuff they have to click all the time.

Reward them for their good work! Make them feel like a valued member of the team instead of a terrified child in an abusive household who gets yelled at for getting the wrong plate out.

hacks4pancakes, to random

So... I feel like a total dick for saying this, but 5 out of 7 of my last mentorship sessions have no-showed or cancelled within 10 minutes of their appointments in the past week. Only one person out of those has provided any reasonable reason. I'm really sorry - if this keeps up much longer I am not going to be able to continue the service.

If you aren't respectful of my time, please, please be respectful of the time of others who help you along your career journey. I miss every single Sunday afternoon I could spend with my family for nothing but occasional tips. Some folks wait months for these appointments.

infobex,

@hacks4pancakes might be a very terrible suggestion but a few years ago when I was freelance coaching I had a year where lots of people were cancelling lessons super late notice (I got paid after lesson) so I instigated a cancellation fee for whole cost of lesson of cancelled within 24 hours without a legitimate reason (doctor/vet note). It reduced the cancellations and people paid if they still cancelled.

I love what you do for the community and it hurts that people aren't valuing your time. I wonder whether with the reminder email about the session there could be a cancellation policy so at least you get reimbursement for the wasted time? I know you don't charge everyone, but that wouldn't stop a cancellation fee applying?

I hope people stop no showing, because for those who don't your help and support will be invaluable.

hacks4pancakes, to random

I’m starting a half sleeve tomorrow.

infobex,

@hacks4pancakes took me a second to realise you didn't mean knitting 🀣 sounds like you'll be getting forced sitting down and resting for a few hours (if getting a half sleeve can count as resting!) have fun!

infobex,

@hacks4pancakes hmmmm I reckon probably better? Until elbow. Then maybe worse πŸ˜…

infobex, to random

Would love some tips/help from those who sit on CFP boards for security conferences - I have a bunch of talks that I'd love to give (and people ask me if I have!) that I send in to conferences regularly.

Quite frustratingly the majority get rejected with zero comments beyond 'we had lots of great talks subbed this year'. But they do get accepted at big data conferences, or epic conferences like @pancakescon (which is my fave con ever - go check it out if you haven't been!) and the talks get fabulous reviews.

I am pretty sure it's because my talks are in the security awareness/human risk space, rather than there being anything bad about the CPF application, and I know they are hitting the 'innovative', 'new', 'different ways of doing things', and they all have solid takeaways (and I know I am a good public speaker internal panic at saying that out loud).

So, I am reaching out to you lovely 🦣 people for some help. How should I be framing these talks to get over the 'ewwwww awareness' that seems to be happening? Because some awareness adjacent talks get in with famous people and I'm dying a little bit inside as I can't seem to get accepted at a security con! @tinker @alyssam_infosec @racheltobac

Please find this Smaug picture as a thank you for reading this whole thing!

GossiTheDog, to random
@GossiTheDog@cyberplace.social avatar

From experience: if you create culture inside an org where you acknowledge security breaches happen, and place protecting customers and society at the heart of discussions, you will by proxy protect org from reputation damage, and employees, as everybody wants to do best thing.

There are always trade offs - but if you nail the culture, lead by CEO, intentions start from a good place.

Cybersecurity effectiveness isn’t just playing with technical toys. If you get culture wrong, outcomes are bad.

infobex,

@GossiTheDog this is what I do for my job! Hard work but super rewarding

  • All
  • Subscribed
  • Moderated
  • Favorites
  • β€’
  • megavids
  • cubers
  • magazineikmin
  • GTA5RPClips
  • khanakhh
  • InstantRegret
  • Youngstown
  • mdbf
  • slotface
  • thenastyranch
  • everett
  • osvaldo12
  • kavyap
  • rosin
  • anitta
  • DreamBathrooms
  • Durango
  • modclub
  • ngwrru68w68
  • vwfavf
  • ethstaker
  • tester
  • cisconetworking
  • tacticalgear
  • Leos
  • provamag3
  • normalnudes
  • JUstTest
  • All magazines