<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/'><id>tag:blogger.com,1999:blog-4482521283458453577.post4240651944583081783..comments</id><updated>2009-02-02T10:16:47.717-08:00</updated><category term='SCCM'/><category term='AES'/><category term='the force'/><category term='jedi'/><category term='risk management'/><category term='passwords'/><category term='nbnsspoof'/><category term='youngling'/><category term='diversion'/><category term='updates'/><category term='externality'/><category term='bullshit'/><category term='help'/><category term='Outlook Web Access'/><category term='OS X'/><category term='gnome'/><category term='quality assurance'/><category term='encryption'/><category term='backtrack'/><category term='risk modeling'/><category term='auditing'/><category term='nbnspoof'/><category term='sith'/><category term='metrics'/><category term='python'/><category term='rails'/><category term='contact'/><category term='pointsec'/><category term='DMCA'/><category term='script'/><category term='dark side'/><category term='data loss prevention'/><category term='lockpicking'/><category term='fde'/><category term='NPV'/><category term='Application Layer Firewall'/><category term='New School'/><category term='lightsaber'/><category term='Form 0'/><category term='snort'/><category term='black fist'/><category term='monte carlo'/><category term='linux'/><category term='Book Review'/><category term='change management'/><category term='incident response'/><category term='openbsd'/><category term='PCI'/><category term='VMWare'/><category term='form III'/><category term='relayd'/><category term='security'/><category term='information'/><category term='novell'/><category term='awkward'/><category term='padawan'/><category term='policies'/><category term='video tutorial'/><category term='jar jar binks'/><category term='forensics'/><category term='TrustedSource'/><category term='mind trick'/><category term='form II'/><category term='phishing'/><category term='copyright'/><category term='economics'/><category term='antivirus'/><category term='blogger'/><category term='unix'/><category term='mac'/><category term='R72'/><category term='event logs'/><category term='Deadly Whisper'/><category term='Sidewinder'/><category term='Ubuntu'/><category term='project management'/><category term='statistics'/><category term='google'/><title type='text'>Comments on Black Fist Security: Applying Unknowns to Annualized Loss Expectancy</title><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://www.blackfistsecurity.com/feeds/4240651944583081783/comments/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4482521283458453577/4240651944583081783/comments/default'/><link rel='alternate' type='text/html' href='http://www.blackfistsecurity.com/2009/01/applying-unknowns-to-annualized-loss.html'/><author><name>kevin thompson</name><uri>https://profiles.google.com/107682921975811187169</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='//lh5.googleusercontent.com/-njbZ3e90-4I/AAAAAAAAAAI/AAAAAAAAAP8/tYdzjKjLpUg/s512-c/photo.jpg'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>4</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>25</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-4482521283458453577.post-6850856769305094867</id><published>2009-02-02T10:16:00.000-08:00</published><updated>2009-02-02T10:16:00.000-08:00</updated><title type='text'>You need to include your ARO (annualized rate of o...</title><content type='html'>You need to include your ARO (annualized rate of occurrence) to get a better number. If SLE is $5,000, but you lose on average two laptops per year, your ALE is $10,000, so a software package with a total lifetime cost estimated at $50,000 is your break-even.&lt;BR/&gt;&lt;BR/&gt;I'd also suggest that 2 hours to confirm a compromise is on the low side, unless you meant 2 hours per record lost, then I'd say it might be high. I also usually round up to $50 or $75 as staff cost due to overhead of task-switching, expense to other work not completed in that time, etc. Either number is reasonable IMO.&lt;BR/&gt;&lt;BR/&gt;Lastly, I would be suspicious of a salesforce that didn't have more data on their laptops, since that's often requisite for them to do their job. But I'm also paranoid.</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4482521283458453577/4240651944583081783/comments/default/6850856769305094867'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4482521283458453577/4240651944583081783/comments/default/6850856769305094867'/><link rel='alternate' type='text/html' href='http://www.blackfistsecurity.com/2009/01/applying-unknowns-to-annualized-loss.html?showComment=1233598560000#c6850856769305094867' title=''/><author><name>jth</name><uri>http://www.blogger.com/profile/10483661198345556707</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='21' height='32' src='http://bp2.blogger.com/_1IfbILIh32E/SEcIC6rOgdI/AAAAAAAAAhc/E9fyWJKmB3g/S220/headshot.jpg'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.blackfistsecurity.com/2009/01/applying-unknowns-to-annualized-loss.html' ref='tag:blogger.com,1999:blog-4482521283458453577.post-4240651944583081783' source='http://www.blogger.com/feeds/4482521283458453577/posts/default/4240651944583081783' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-1142748669'/></entry><entry><id>tag:blogger.com,1999:blog-4482521283458453577.post-3208812651047818274</id><published>2009-01-23T16:01:00.000-08:00</published><updated>2009-01-23T16:01:00.000-08:00</updated><title type='text'>I calls'em as I sees'em</title><content type='html'>I calls'em as I sees'em</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4482521283458453577/4240651944583081783/comments/default/3208812651047818274'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4482521283458453577/4240651944583081783/comments/default/3208812651047818274'/><link rel='alternate' type='text/html' href='http://www.blackfistsecurity.com/2009/01/applying-unknowns-to-annualized-loss.html?showComment=1232755260000#c3208812651047818274' title=''/><author><name>Anonymous</name><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img1.blogblog.com/img/blank.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.blackfistsecurity.com/2009/01/applying-unknowns-to-annualized-loss.html' ref='tag:blogger.com,1999:blog-4482521283458453577.post-4240651944583081783' source='http://www.blogger.com/feeds/4482521283458453577/posts/default/4240651944583081783' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-1105905154'/></entry><entry><id>tag:blogger.com,1999:blog-4482521283458453577.post-6264317231234641228</id><published>2009-01-22T18:50:00.000-08:00</published><updated>2009-01-22T18:50:00.000-08:00</updated><title type='text'>@Anonymous:&lt;br&gt;You sir, are a twat!</title><content type='html'>@Anonymous:&lt;BR/&gt;You sir, are a twat!</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4482521283458453577/4240651944583081783/comments/default/6264317231234641228'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4482521283458453577/4240651944583081783/comments/default/6264317231234641228'/><link rel='alternate' type='text/html' href='http://www.blackfistsecurity.com/2009/01/applying-unknowns-to-annualized-loss.html?showComment=1232679000000#c6264317231234641228' title=''/><author><name>Black Fist</name><uri>http://www.blogger.com/profile/10140419541264972382</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='22' height='32' src='http://bp2.blogger.com/_7Avz7RosatI/SFmrhFIH8EI/AAAAAAAAAAM/QDWc8PwCBpQ/S220/337px-Fist.svg.png'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.blackfistsecurity.com/2009/01/applying-unknowns-to-annualized-loss.html' ref='tag:blogger.com,1999:blog-4482521283458453577.post-4240651944583081783' source='http://www.blogger.com/feeds/4482521283458453577/posts/default/4240651944583081783' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-1890104126'/></entry><entry><id>tag:blogger.com,1999:blog-4482521283458453577.post-7363140594197774287</id><published>2009-01-22T17:51:00.000-08:00</published><updated>2009-01-22T17:51:00.000-08:00</updated><title type='text'>What a Douche Bag! IT this IT that! Go back to the...</title><content type='html'>What a Douche Bag! IT this IT that! Go back to the Connie. IT2 Thompsac</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4482521283458453577/4240651944583081783/comments/default/7363140594197774287'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4482521283458453577/4240651944583081783/comments/default/7363140594197774287'/><link rel='alternate' type='text/html' href='http://www.blackfistsecurity.com/2009/01/applying-unknowns-to-annualized-loss.html?showComment=1232675460000#c7363140594197774287' title=''/><author><name>Anonymous</name><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img1.blogblog.com/img/blank.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.blackfistsecurity.com/2009/01/applying-unknowns-to-annualized-loss.html' ref='tag:blogger.com,1999:blog-4482521283458453577.post-4240651944583081783' source='http://www.blogger.com/feeds/4482521283458453577/posts/default/4240651944583081783' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-2017214478'/></entry></feed>
