-
Mike Chapple, Ph. D., CISA, CISSP, is an IT security manager with the University of Notre Dame. He previously served as an information security researcher with the National Security Agency and the U.S. Air Force. Chapple is a frequent contributor to SearchSecurity.com, and serves as its resident expert on enterprise compliance, frameworks and standards for its Ask the Experts panel. He previously served as site expert on network security, is a technical editor for Information Security magazine and the author of several information security titles, including the CISSP Prep Guide and Information Security Illuminated.
See below for Mike's archive of advice on both compliance and network security. To submit a question for Mike, click on the "Ask a Question" tab above.
-
Do you have a question for our experts?
Contributions from Mike Chapple, Enterprise Compliance
- How do I transition to a career in IT security?
- The case against UTM: Is there a better alternative?
- How to estimate log generation rates
- What is most misunderstood about EV SSL certificates?
- What are the best network security books?
- Should the government reduce its external Internet connections?
- How can mobile device data be lost on a peer-to-peer (P2P) network?
- What are the security risks of opening port 110 and port 25?
- Securing services that allow end users to retrieve forgotten passwords
- When should a database application be placed in a DMZ?
- What is the cause of an 'intrusion attempt' message?
- Can an attacker gain mobile device data through a peer-to-peer (P2P) network?
- Comparing FTP vs. TFTP
- Front-end/back-end firewalls vs. chassis-based firewalls
- How to configure a firewall to communicate with an upstream router
- Should static analysis be a part of the software development process?
- What firewall controls should be placed on the VPN?
- Should software be used to monitor networks for blogging activity?
- What OSI Layer 4 protocol does FTP use to guarantee data delivery?
- How to obtain a digital certificate for a server
Security Management Strategies for the CIO