santiagomoralrubio.com
Scientific Papers
http://www.santiagomoralrubio.com/index.php/scientific-papers
Here I will post various papers I have written or co-written throughout my career. Let me know what you think! Applicability of Security Patterns. A New Pattern Template to Support the Design of Security Architectures. Security Pattern Mining: Systematic Review and Proposal. A New Pattern Template to Support the Design of Security Architectures: A Case Study. A New Enterprise Security Pattern: Secure Software as a Service (SaaS). A Systematic Security Analysis of Information Systems.
santiagomoralrubio.com
Game Theory
http://www.santiagomoralrubio.com/index.php/12-ideas/28-ideas2
This week I'll tell you about our first experiments with cause-effect and game theory applied to IT risk management. It was 2003 when we began working on identifying the differences, from a management perspective, between accidental and intentional risk. As regards yield, we handle it as any other industry: that investment is interesting because of the benefit it will provide. What we have observed is that every attack that turns up repeatedly (phishing, trojans, etc.) follows this principle: inv...
santiagomoralrubio.com
Posts
http://www.santiagomoralrubio.com/index.php/posts
Coevolution: From Darwin to IT Risk Management.
santiagomoralrubio.com
Video
http://www.santiagomoralrubio.com/index.php/video
Coevolution: From Darwin to IT Risk Management. Here I'll make available some videos of my talks and conferences. My thoughts on the relationship between Darwin and IT risk modeling! Coevolution: From Darwin to IT Risk Management.
santiagomoralrubio.com
A cause-effect relationship
http://www.santiagomoralrubio.com/index.php/12-ideas/30-a-cause-effect-relationship
At its core, risk management is the handling of cause-effect relations. A certain event produces certain effect. If we want to prevent or reduce the chances of the event happening we need to know the causes, and contain either the effect’s causes or its impact. Every risk management process needs a step for adequately identifying the causes that have led us to an event. This is the core of my research and my main concern, and this is what I'll be mostly talking about in this blog. More on this next week!
santiagomoralrubio.com
Intentional Risk
http://www.santiagomoralrubio.com/index.php/12-ideas/29-ideas3
Today we continue our subject from last week. I want to ask myself, what happens when the rules of a cause-effect relationship apply to what we know as intentional risk? In every cause-effect relationship, if we want to prevent the effect, we have to reduce either the chances of it. Happening or its impact. Coevolution: From Darwin to IT Risk Management.
santiagomoralrubio.com
A cause-effect relationship
http://www.santiagomoralrubio.com/index.php/posts/12-ideas/30-a-cause-effect-relationship
At its core, risk management is the handling of cause-effect relations. A certain event produces certain effect. If we want to prevent or reduce the chances of the event happening we need to know the causes, and contain either the effect’s causes or its impact. Every risk management process needs a step for adequately identifying the causes that have led us to an event. This is the core of my research and my main concern, and this is what I'll be mostly talking about in this blog. More on this next week!
santiagomoralrubio.com
Biography
http://www.santiagomoralrubio.com/index.php/biography
Santiago Moral Rubio has worked in Information Security for more than two decades. He has spent more than 10 years as Head of Information Security for one of the world’s foremost financial institutions. He is a frequent speaker in Spanish and Latin American conferences about information security and fraud prevention for the financial sector. This blog intends to showcase Santiago’s several ideas and innovations. We believe this content shall prove interesting for entrepreneurs, IT engineers, financia...
santiagomoralrubio.com
Santiago Moral Rubio
http://santiagomoralrubio.com/index.php/component/rsform/form/1-get-in-touch-with-us
Get in touch with us. Coevolution: From Darwin to IT Risk Management.
santiagomoralrubio.com
Coevolution: From Darwin to IT Risk Management
http://www.santiagomoralrubio.com/index.php/video/55-video7
Coevolution: From Darwin to IT Risk Management. Here I'll make available some videos of my talks and conferences. My thoughts on the relationship between Darwin and IT risk modeling! Coevolution: From Darwin to IT Risk Management.
SOCIAL ENGAGEMENT