I am speaking on May 14 at the Secure360 conference here in MN on Building a Security Architecture Blueprint, this is based on the Security Architecture Blueprint document that I published last year.
Building a Security Architecture Blueprint - A Strategic Approach to Enterprise SecurityInformation is a strategic asset, yet the practice of information security in firms is a patchwork of one off tactical solutions, that lacks a cohesive, rational framework. The purpose of the security architecture blueprint is to bring focus to the key areas of concern for the enterprise, highlighting decision criteria and context for each domain. Since security is a system property it can be difficult for Enterprise Security groups to separate the disparate concerns that exist at different system layers and to understand their role in the system as a whole. This blueprint provides a framework for understanding disparate design and process considerations; to organize architecture and actions toward improving enterprise security.
I am speaking at Ping's SSO Summit in Keystone, CO July 23-25. Topic and agenda not published yet, but you can bet that it will have something to do with federation and Web services ;-P
I will also do a public version of SOA, Web Services and XML Security training at Usenix Security conference in San Jose July 29
Comments