When the Center for Internet Security (CIS) Controls were be…

When the Center for Internet Security (CIS) Controls were being revised into the current version (i.e., version 8) there were a series of design principles used to help guide the revision process.  One of those principles states that the CIS Controls should help defenders identify the most critical things to do to stop the most important attacks and to avoid the temptation of trying to solve every security problem (that is, avoid ‘good things to do’ or ‘things you could do’).  Which CIS design principle are those statements related to?

Patricia is a salesperson for a security services company ca…

Patricia is a salesperson for a security services company called Star Security and has just submitted a bid to the Texas Department of Licensing to provide security for the boxing re-match of Jake Paul vs Mike Tyson.  Patricia learns that the security contract might be awarded to Star Security or one other security firm.  Patricia contacts the purchasing agent at the Texas Department of Licensing and states that if Star Security is awarded the contract, Patricia will provide the purchasing agent with an all-expense-paid vacation package to some place sick like Tulsa or Little Rock (a Pitch Perfect 2 reference).   What type of fraud is Patricia performing in this situation?