ISO20000 - Supplier Matrix

As part of ISO20000 there's a requirement for a suppliers matrix to analyse vendors and suppliers. The following spreadsheet averages out the scores of each section, and then averages out the sections to provide an overall rating. Each score is

Security Posture

All organisations have a security posture whether it is defined or not. Security posture is defined in numerous places, my personal favourite is as follows: The security status of … networks, information, and systems based on IA resources (e.g., people,

Implied Trust and the Lenovo Fiasco

In the past week Lenovo has been in the firing line from multiple angles; adware factory installed on their consumer systems, the injection of third party content into browsers, hidden root certificates installed on the systems, followed by the most

