Hi everyone,
I wanted to write a quick blog post today to let you all know why the blog has been a bit quiet of late!
It has been a very busy couple of months so far in 2012 both in and out of the office which is certainly not something I’m going to complain about as I like being busy. If you follow me on Twitter you might have seen the great news about my employers Realex Payments which has seen us sign a landmark deal with HSBC Merchant Services, hire 50 people and very soon we will be in a shiny new city centre office. I’ve been at Realex nearly six years now and it’s been an exciting period of growth ever since I came here and it shows no signs of slowing down!
I did plan on working on a new version of Agnitio in the first part of 2012 but my spare time is currently being taken up by writing content for the Practical Software Security book. Again I’m not going to complain about this as it’s an exciting project to be involved in. I specifically call it a project because it’s going to be so much more than a book. The book will really launch the Seconaut community and for an O’Reilly book to be open sourced from day one is pretty amazing. If you haven’t signed up to the Seconaut email updates you should do it today!
Once I’ve finished writing my content for the book I will hopefully be working on a presentation for SecurityBSides London. I’m not going to tell you the name of my talk as I’m interested in seeing how the anonymous voting system plays out this year. Will the experienced speakers get selected because they know how to write good abstracts or will new speakers get selected because no one is voting for the speakers name? I will be in London for a few days around SecurityBSides so if you want to meet up get in touch!
The final thing I wanted to tell you about is something I plan to work on with ISC2. They want to provide more technical application security content for CISSP and potentially CSSLP students but most importantly to me they want to focus on the “how to produce secure software” approach and not the vulnerability focused approach. I can’t say too much more yet because we haven’t agreed the final details but I plan to put my money where my mouth is so to speak. We often criticise certifications and certification bodies in our industry but rarely get the opportunity to make a difference so I’m grabbing this chance with both hands!
I think all of these things will keep me busy until the middle of this year and then I can get back to developing a new version of Agnitio! Stay tuned to the blog and of course Twitter for updates and progress over the next few months.
SN

