Bob Covello (@BobCovello) is a 20-year technology veteran and InfoSec analyst with a passion for security topics. He is also a volunteer for various organizations focused on advocating for and advising others about staying safe and secure online.

January 26, 2018 | Bob Covello

NY State Department of Financial Services New Cybersecurity Regulation – CISO Attestation Due Feb 15

The first New York State (NYS) Department of Financial Services (DFS) CISO Attestation is due on February 15th.Last year, the NYS DFS enacted a new cybersecurity regulation that affects all financial companies that conduct business in the State of New York.The regulation is targeted towards financial companies that conduct business in New York State.  A "Covered Entity"…

December 19, 2017 | Bob Covello

My Password Pal

“Sorry pal, my password is Spring2017. Deal with it.”Someone said those words to me the other day.  As an InfoSec professional, I’ve have grown accustomed to this type of indignant proclamation.  My jaw no longer drops to the table anymore when I hear folks speaking this way, but I still have trouble…

November 20, 2017 | Bob Covello

Adjusting Your Baseline

I went to the doctor the other day and she noted that my numbers were a little higher than last year.  I asked, “Hey Doc, should I be concerned?”  “Not really”, she said.  She then went on to explain that as humans age, the numbers will shift to reflect the differences in our…

September 20, 2017 | Bob Covello

Blockchain Technology as a Replacement for Our Stolen Identities

Just when we thought, “it couldn’t get worse”. Just when we boldly exclaimed, “I never applied for a government job, so I don’t have to worry about what happened at the Office of Personnel Management”.Just when we confidently boasted, “Well, I was never an Ashley Madison subscriber”.Equifax happened. …

August 23, 2017 | Bob Covello

Your All-Access Pass to Incident Response

Are you new in InfoSec? Perhaps you are not a newcomer, yet you find yourself wanting to have a greater role in the organization’s security functions. Too often, security operations are based on a need-to-know model, which shuts out many people who would love to know more so they can grow as security professionals.The path to the…

July 17, 2017 | Bob Covello

Your E-Signature Matters

How often do you receive a message from your friends or family that indicates the type of phone they are using at the end of the message? Message tags such as: “Sent using the Galaxy Note 8”, or “Sent from my iPhone” can tell a person a few things about you. Or, how about the messages that …

May 8, 2017 | Bob Covello

Misperceptions, Experience, and Mentoring in InfoSec

I went to a restaurant the other day with the family and saw something that made me think about misperceptions, the benefits of experience, and the importance of mentoring in Information security.As we were walking out of the restaurant, I saw a young teenager sitting with his family. He was wearing Bright Orange hi-top sneakers and he had short,…

April 24, 2017 | Bob Covello

Another Way to Get Your Lost Phone Returned

When was the last time you misplaced your phone?It has happened to all of us at one time or another. For InfoSec pros, it is a terrifying feeling – as we understand the possible consequences from the loss of the vast amount of data on a smart phone. In addition, those things are getting darned expensive!If you misplace…

April 3, 2017 | Bob Covello

What Is Your InfoSec Song?

Think of one of your favorite empowerment songs. A song that inspires; a song that matters.Sing along with the sound in your head. Sing until it affects you the same way it does when you hear it coming out of your speakers or blasting in your headphones.Now, stop and think for a moment: What is it about that…

March 6, 2017 | Bob Covello

New Law in New York State Could Shape Cyber Security Across the US

The New York State Department of Financial Services has adopted a new cyber security regulation for all banking, insurance, and financial institutions that conduct business in New York State.The new law is in effect as of 01 March, 2017. Firms that have more than 10 employees or that meet the specific gross revenue requirements detailed in the regulation over the course of…

January 10, 2017 | Bob Covello

Have We Failed As InfoSec Evangelists?

I recently had the unfortunate experience of consoling a person who had a smartphone mishap that rendered the phone completely unrecoverable. It is truly sad to watch a person’s reaction as they come to the realization that all of their data is gone.I have seen more than one person go through the same Five Stages of Grief…

November 14, 2016 | Bob Covello

Positive Password Psychology

There was an interesting study conducted some years ago. In that study, young participants were asked a series of questions. The ostensible purpose of the study was to find out the answers to the questions. As with most of those cheeky study authors, the real purpose was to measure the effect of “behavioral priming”.The questions in the…

