Peter L. Bernstein: Against the Gods: The Remarkable Story of Risk
Bruce Schneier: Beyond Fear: Thinking Sensibly About Security in an Uncertain World.
George Westerman: IT Risk: Turning Business Threats into Competitive Advantage
David Apgar: Risk Intelligence: Learning to Manage What We Don't Know
Bruce Schneier: Secrets and Lies: Digital Security in a Networked World
Andrew Jaquith: Security Metrics: Replacing Fear, Uncertainty, and Doubt
Nassim Nicholas Taleb: The Black Swan: The Impact of the Highly Improbable
Douglas W. Hubbard: The Failure of Risk Management: Why It's Broken and How to Fix It
Clayton M. Christensen: The Innovator's Prescription: A Disruptive Solution for Health Care
Benoit Mandelbrot: The Misbehavior of Markets: A Fractal View of Financial Turbulence
I help enterprises reduce information security risks.
I have over 20 years experience in the information technology industry, the last 10 in information security. I’ve been in several startups including a Security Information and Event Management software company where I was Vice President of Product Management and Vice President of Sales, although not at the same time.
I can sum up the most important information technology lesson I have learned over the years this way, “In theory, there is no difference between theory and practice. But in practice, there is.” Jan L. A. van de Snepscheut or Yogi Berra