
Kibitz and Bitz
By Wolf and (((Dave)))

Kibitz and BitzAug 28, 2020

Blood - Abstain from Blood to Save Your Life
Welcome to Kibitz and Bitz!
Where we argue information security and draw lessons from the weekly Torah portion. For the week of August 9nd, 2020, Deuteronomy 11:26 - 12:28 parashat Re'eh. The Torah tells the story of Moses reminding the Hebrews to remember to give thanks to the Lord, once again, before crossing the river Jordan into Canaan. His instructions included to not consume the life blood of meat with the flesh. Wolf and Dave argue the importance of monitoring the life blood of an entity, their data. Listen to their arguments and leave a message for Kibitz-and-Bitz with your opinion on these lessons learned from this weeks Torah parashat.

Eikev - Rob From The Rich And Give To The Rich
Welcome to Kibitz and Bitz!
Where we argue information security and draw lessons from the weekly Torah portion. For the week of August 2nd, 2020, Deuteronomy 7:12 - 9:3 parashat Eikev. The Torah tells the story of Moses lecturing the Hebrews before crossing the river Jordan into Canaan. He remind them of their mistakes and after 40 years of walking, their feet did not swell. Wolf and Dave argue the importance of cloud server resiliency and whether that should fall on ITOps/NetOps or SecOps. Listen to their arguments and leave a message for Kibitz-and-Bitz with your opinion on these lessons learned from this weeks Torah parashat.

Reflections - The Ten Commandments and Audits
Welcome to Kibitz and Bitz!
Where we argue information security and draw lessons from the weekly Torah portion. For the week of July 26th, 2020, Deuteronomy 3:23 - 5:18 parashat Va’etchanan. The Torah reminds us of when the early Israelites made mistakes and when the Lord gave them the Ten Commandments. Wolf and Dave argue the importance of reflecting on implemented security controls and validating their effectiveness. Listen to their arguments and leave a message for Kibitz-and-Bitz with your opinion on these lessons learned from this weeks Torah parashat.

Words - Security Theatre vs Security Signaling
Welcome to Kibitz and Bitz!
Where we argue information security and draw lessons from the weekly Torah portion. For the week of July 19th, 2020, Deuteronomy 1:1 - 2:1 parashat Devarim. The Torah reminds us of when the early Israelites left Egypt and were terrified about entering Canaan because it was occupied by giants. Wolf and Dave argue the importance of security theatre versus security signaling. Listen to their arguments and leave a message for Kibitz-and-Bitz with your opinion on these lessons learned from this weeks Torah parashat.

Vows - Accountability Through Licensure
Welcome to Kibitz and Bitz!
Where we argue information security and draw lessons from the weekly Torah portion. For the week of July 12th, 2020, Numbers 30:2 - 31:54 parashat Matot-Masei. The Torah reminds us of the importance of making vows and keeping vows. Wolf and Dave argue the importance of ethics and vows and if as an industry, should we enforce accountability through licensing. Listen to their arguments and leave a message for Kibitz-and-Bitz with your opinion on these lessons learned from this weeks Torah parashat.

Pinchas - Hackers, Swallowed Up By The Earth
Welcome to Kibitz and Bitz!
Where we argue information security and draw lessons from the weekly Torah portion. For the week of July 5th, 2020, Numbers 25:10 - 26:51 parashat Pinchas. The Torah reminds us of the story of Korach and he and his followers getting swallowed up by the earth. Wolf and Dave argue past hacker culture of ir/responsible disclosure and corporate responses. Listen to their arguments and leave a message for Kibitz-and-Bitz with your opinion on these lessons learned from this weeks Torah parashat.

Caduceus - Bitten By Seraph Snakes? Go Visit Security Staff
Welcome to Kibitz and Bitz!
Where we argue information security and draw lessons from the weekly Torah portion. For the week of June 28th, 2020, Numbers 19:1 - 21:20 parashat Chukat-Balak. The Torah tells the story of seraph snakes biting apostate Hebrews while still in the desert. Wolf and Dave argue whether to improve threat protection by bolstering up your arsenal with security technologies or improve security awareness training. Listen to their arguments and leave a message for Kibitz-and-Bitz with your opinion on these lessons learned from this weeks Torah parashat.

Korach - Privileged Access For The Masses
Welcome to Kibitz and Bitz!
Where we argue information security and draw lessons from the weekly Torah portion. For the week of June 21st, 2020, Numbers 16:1 - 17:15 parashat Korach. The Torah tells the story of Korach attempting to overthrow Moses as leader of the Hebrews. Wolf and Dave argue privileged access security concerns and potential solutions. Listen to their arguments and leave a message for Kibitz-and-Bitz with your opinion on these lessons learned from this weeks Torah parashat.

Send - Land of Milk and Honeypots
Welcome to Kibitz and Bitz!
Where we argue information security and draw lessons from the weekly Torah portion. For the week of June 7th, 2020, Numbers 13:1 - 14:7 parashat Sh'lach. The Torah tells the story of sending one chieftain from each tribe to investigate Canaan. Wolf and Dave argue threat intelligence and effectiveness of honeypots, honey tokens, and honeyanything. Listen to their arguments and leave a message for Kibitz-and-Bitz with your opinion on these lessons learned from this weeks Torah parashat.

Pesach Rules - One Rule For Them All
Welcome to Kibitz and Bitz!
Where we argue information security and draw lessons from the weekly Torah portion. For the week of June 7th, 2020, Numbers 8:1 - 9:14 parashat Beha'alotcha. The Torah provides instructions when dealing with strangers during Passover must abide by the Passover rules. Wolf and Dave argue about rules applied to employees and contractors, along with the psychology of the users and acceptance of security policies. Listen to their arguments and leave a message for Kibitz-and-Bitz with your opinion on these lessons learned from this weeks Torah parashat.

Nasso - Insider Threats Cause AI Insanity
Welcome to Kibitz and Bitz!
Where we argue information security and draw lessons from the weekly Torah portion. For the week of May 30th, 2020, Numbers 4:21 - 5:10 parashat Nasso. The Torah provides instruction on how to handle a spouse who practices infidelity. Wolf and Dave argue about insider threats and do we need to consider the psychology of the users or the advancement of security technology. Listen to their arguments and leave a message for Kibitz-and-Bitz with your opinion on these lessons learned from this weeks Torah parashat.

Maturity - Sojourn to Sophisticated Maturity Models
Welcome to Kibitz and Bitz!
Where we argue information security and draw lessons from the weekly Torah portion. For the week of May 23rd, 2020, Leviticus 1:1 - 1:54 parashat Bamidar. The Torah reminds us of how it takes time to mature, especially for the new generation of Hebrews who have to determine their own future. Wolf and Dave argue about the value of maturity models and that there is no destination, only a continuous journey. Listen to their arguments and leave a message for Kibitz-and-Bitz with your opinion on these lessons learned from this weeks Torah parashat.

Rest - The Great Pause::Internet of Rest
Welcome to Kibitz and Bitz!
Where we argue information security and draw lessons from the weekly Torah portion. For the week of May 16th, 2020, Leviticus 25:1 - 25:38 parashat Behar-Bechukotai. The Torah provides instructions on how to give the land a break every 7 years. Wolf and Dave argue about giving IT and InfoSec folks a cyclical break. Easing back on the fast paced nature of our industry yields great rewards in creativity. Listen to their arguments and leave a message for Kibitz-and-Bitz with your opinion on these lessons learned from this weeks Torah parashat.

Speak - Don't Go "Biblical" On End-Users
Welcome to Kibitz and Bitz!
Where we argue information security and draw lessons from the weekly Torah portion. For the week of May 9th, 2020, Leviticus 21:1 - 22:16 parasha Emor, or Speak in English. The Torah provides doctrine on transgressions and the severity of punishments. Wolf and Dave argue about natural consequences and logical consequences, along with the associated risks. As Wolf put it, let them feel the heat of the fire so they learn to pull their hand back. Listen to their arguments and leave a message for Kibitz-and-Bitz with your opinion on these lessons learned from this weeks Torah parasha.

Goat-daemon - InfoSec Blame Deflection
Welcome to Kibitz and Bitz!
Where we argue information security and draw lessons from the weekly Torah portion. For the week of May 2nd, 2020, Leviticus 16:1 - 17:7 parashot Ach(a)rei Mot-Kedoshim. The Torah provides instructions on how to handle transgressions. Wolf and Dave argue about handling our goat-demons in information security with suggestions on manage those goat-demons. Listen to their arguments and leave a message for Kibitz-and-Bitz with your opinion on these lessons learned from this weeks Torah parshat.

Infections - Incident Response Plays
Welcome to Kibitz and Bitz!
Where we argue information security and draw lessons from the weekly Torah portion. For the week of April 25th, 2020, Leviticus 12:1 - 13:39 parashot Tazria-Metzora. The Torah provides instructions on how handle communal infections to keep the population safe. Wolf and Dave argue about incident response procedures along with the use of AI/ML to control outbreaks. Listen to their arguments and leave a message for Kibitz-and-Bitz with your opinion on these lessons learned from this weeks Torah parshat.

Alien Fire - Securing Change Control
Welcome to Kibitz and Bitz!
Where we argue information security and draw lessons from the weekly Torah portion. For the week of April 18th, 2020, Leviticus 9:1 - 10:11 parashat Shmini. Wolf and Dave argue about bringing n alien fire to work and consequences. Visible Ops Security could be a method of addressing change control without over analyzing the changes. Listen to their arguments and leave a message for Kibitz-and-Bitz with your opinion on these lessons learned from this weeks Torah parshat.

Tzav - The Map Is Not the Terrain
Welcome to Kibitz and Bitz!
Where we argue information security and draw lessons from the weekly Torah portion. For the week of March 30th, 2020, Leviticus 6:1 - 7:10. Leviticus continues with more details on "how to" perform sacrifices, or more specifically commands. Wolf and Dave argue that we make sacrifices in InfoSec individually and as a team. The reference architecture for a project or process excludes the details which may result in sacrifices during execution of said architecture. Listen to their arguments and leave a message for Kibitz-and-Bitz with your opinion on these lessons learned from this weeks Torah parshat.

Sacrifice - Doing more with Minimum Viable Security
Welcome to Kibitz and Bitz!
Where we argue information security and draw lessons from the weekly Torah portion. For the week of March 23rd, 2020, Leviticus 1:1 - 2:16. We completed the stories of Exodus and now move into Leviticus. Leviticus opens with instructions on what to do for sacrifices. Wolf and Dave argue that making these sacrifices are burdensome on the Hebrews, much like adding more responsibilities to the security admins is becoming too daunting, but it's their job. Listen to their arguments and leave a message for Kibitz-and-Bitz with your opinion on these lessons learned from this weeks Torah parshat.

Ark - Passwordless Security; or be put to death
Welcome to Kibitz and Bitz!
Where we argue information security and draw lessons from the weekly Torah portion. For the week of March 15th, 2020, Exodus 35:1 - 37:16. We continue the stories of Exodus along with instructions of how to build the Ark to store the Ten Commandments. Wolf and Dave argue that the Ark is much like a password vault, but are passwords still necessary. Listen to their arguments and leave a message for Kibitz-and-Bitz with your opinion on these lessons learned from this weeks Torah parshat.

Golden Calf - Security Leaders Walked Away
Welcome to Kibitz and Bitz!
Where we argue information security and draw lessons from the weekly Torah portion. For the week of March 8th, 2020, Exodus 30:11 - 31:17. We continue the stories of Moses with up on the mountain, the Israelites lose their patience and have Aaron build them a golden calf. Wolf and Dave argue that security leaders have walked away from DevOps missing them chance to include security in the development process. Listen to their arguments and leave a message for Kibitz-and-Bitz with your opinion on these lessons learned from this weeks Torah parshat.

Roles - Colors of the Rainbow Team
Welcome to Kibitz and Bitz!
Where we argue information security and draw lessons from the weekly Torah portion. For the week of March 1st, 2020, Exodus 27:20 - 28:30. We continue the stories of Moses with the Lord's instructions on how to create clothing for religious leaders, including ornate breastplates. Wolf and Dave argue different roles in the Torah in comparison to the roles we take in InfoSec. Listen to their arguments and leave a message for Kibitz-and-Bitz with your opinion on these lessons learned from this weeks Torah parshat.

This Torah - That, Take Away
Welcome to Kibitz and Bitz!
Where we argue information security and draw lessons from the weekly Torah portion. For the week of February 23rd, 2020, Exodus 25:1 to 25:40. We continue the stories of Moses with the Lord's instructions on how to build the Ark and other religious items to specification compliance. Wolf and Dave argue the skills to drive compliance compared to specialization. Listen to their arguments and leave a message for Kibitz-and-Bitz with your opinion on these lessons learned from this weeks Torah parshat.

Mosaic Laws - Pay or Don’t Pay the Ransom
Welcome to Kibitz and Bitz!
Where we argue information security and draw lessons from the weekly Torah portion. For the week of February 16th, 2020, Exodus 21:1 to 22:3. We continue the stories of Moses with the introduction of Mosaic Laws. Wolf and Dave argue Exodus 21:30 "If ransom is laid upon him, he must pay whatever is laid upon him to redeem his life. " When hit by ransomware, is it better to pay the ransom, or hope your BCP DR strategy is reliable? Listen to their arguments and leave a message for Kibitz-and-Bitz with your opinion on these lessons learned from this weeks Torah parshat.

Delegate to Elevate - Go Far or Go Fast?
Welcome to Kibitz and Bitz!
Where we argue information security and draw lessons from the weekly Torah portion. For the week of February 9th, 2020, Exodus 18:1 to 20:23. We continue the stories of Moses with his father-in-law Yitro. Wolf and Dave argue the how to approach handle IR security issues for rapid response or delegation. Listen to their arguments and leave a message for Kibitz-and-Bitz with your opinion on these lessons learned from this weeks Torah parshat.

Pillar of Fire - Guiding Incident Response
Welcome to Kibitz and Bitz!
Where we argue information security and draw lessons from the weekly Torah portion. For the week of February 1st, 2020, Exodus 13:17 to 15:26. We continue the stories of Moses and now they are in mass exodus from Egypt. Wolf and Dave argue the lack of faith users have in their security analysts as the Israelites lacked faith in Moses and his guiding lights.. Listen to their arguments and leave a message for Kibitz-and-Bitz with your opinion on these lessons learned from this weeks Torah parshat.

Thick Darkness - Visibility of East-West Traffic
Welcome to Kibitz and Bitz!
Where we argue information security and draw lessons from the weekly Torah portion. For the week of January 26, 2020, Exodus 10:1 to 11:3. We continue the stories of Moses and now his brother Aaron speaks on his behalf to Pharaoh. Wolf and Dave argue the importance of north-south network activity analytics versus east-west analytics to stay out of thick darkness. Listen to their arguments and leave a message for Kibitz-and-Bitz with your opinion on these lessons learned from this weeks Torah parshah.

Impeded Speech - They Are Trying to Kill Us
Welcome to Kibitz and Bitz!
Where we argue information security and draw lessons from the weekly Torah portion. For the week of January 19, 2020, Exodus 6:2 to 7:7. We continue the stories of Moses and how his attempts to get the Hebrews to leave Egypt are failing. Wolf and Dave argue security analysts inability to communicate security objectives to decision makers due to a lack of effectiveness. Listen to their arguments and leave a message for Kibitz-and-Bitz with your opinion on these lessons learned from this weeks Torah parshah.

Baby Moses River Ride - When does Security make us Less Secure?
Welcome to Kibitz and Bitz!
Where we argue information security and draw lessons from the weekly Torah portion. For the week of January 12, 2020, Exodus 1:1 to 2:25. We begin the stories of Moses and the exodus from Egypt. Baby Moses takes a river ride down the Nile, as a result of a pharaoh security control. Wolf and Dave argue controls with no compromise versus some flexibility. Listen to their arguments and leave a message for Kibitz-and-Bitz with your opinion on these lessons learned from this weeks Torah parshah.

Crossing Over - Left Handed Fighting
Welcome to Kibitz and Bitz!
Where we argue information security and draw lessons from the weekly Torah portion. For the week of January 5, 2020, Genesis 47:28 to 48:22. Jacob crosses over his arms when giving his grandson's their birthright blessings. Wolf and Dave argue changing up your information security game to throw off the cyber-criminals. Listen to their arguments and leave a message for Kibitz-and-Bitz with your opinion on these lessons learned from this weeks Torah parshah.

Dreamer 3.0 - Is My Father Still Well?
Welcome to Kibitz and Bitz!
Where we argue information security and draw lessons from the weekly Torah portion. For the week of December 29, 2019, Genesis 44:18 to 45:27. After many years, Joseph encounters his brothers where he gives them a hard time and eventually reconciles with them. Wolf and Dave argue reconciling the security group with the business units to verify everyone is not busy shaving a yak or over sharpening their saw. Listen to their arguments and leave a message for Kibitz-and-Bitz with your opinion on these lessons learned from this weeks Torah parshah.

Dreamer 2.0 - Consultants vs Employees
Welcome to Kibitz and Bitz!
Where we argue information security and draw lessons from the weekly Torah portion. For the week of December 22, 2019, Genesis 41:1 to 41:52. Jacob interprets dreams for Pharaoh because his wise men and magicians struggled. Wolf and Dave argue the value of consultants versus employees when it comes to getting problems solved. Listen to their arguments and leave a message for Kibitz-and-Bitz with your opinion on these lessons learned from this weeks Torah parshah.

Dreamer - New Year Predications
Welcome to Kibitz and Bitz!
Where we argue information security and draw lessons from the weekly Torah portion. For the week of December 15, 2019, Genesis 37:1 to 37:36. Jacob gave his favorite son, Joseph, an ornamented tunic, which results in his brothers to hate Joseph. When the opportunity presents itself, the brothers conspire to kill Joseph, only to throw him into a pit. Wolf and Dave argue on new year security predictions. New year predictions have become a mainstay with December content producers. Much of the content reproduces the predictions from prior years. Unlike Joseph who takes dream content and make predictions. Listen to their arguments and leave a message for Kibitz-and-Bitz with your opinion on these lessons learned from this weeks Torah parshah.

Jacob and Esau - Threat Intel & Defense in Depth
Welcome to Kibitz and Bitz!
Where we argue information security and draw lessons from the weekly Torah portion. For the week of December 8, 2019, Genesis 32:4 - 33:20. Jacob sent a messenger to his brother to tell him that he’s staying with their uncle Laban, but finds out in excerpt at 32:7 that Esau is on his way with 400 men. Wolf and Dave argue on Threat Intelligence and Defense in Depth. Jacobs defenses were adequate to survive his brother's attack, but what can we learn from Jacob to protect against unknown threats in modern computing. Listen to the arguments and leave a message for Kibitz-and-Bitz with your opinion on these lessons learned from this weeks Torah parshah.

Badeken - Lifting the veil
Where we argue information security and draw lessons from the weekly Torah portion. For the week of December 1, 2019, Genesis 28:10 to 30:13. We discuss Genesis 29:18 specifically where after 7 years of service Jacob expects to marry Rachel, but his uncle Laban switches out his daughters. Wolf and Dave argue on security as a process and how much process is required to have adequate security. While lifting the veil is adequate process for Jacob to verify the integrity of his bride, there isn't an equivalent simple process for verifying vendor security. Listen to the arguments and leave a message for Kibitz-and-Bitz with your opinion on these lessons learned from this weeks Torah parshah.

The water is ours - Attack Back?
Welcome to Kibitz and Bitz!
Where we argue information security and draw lessons from the weekly Torah portion. For the week of November 24, 2019, Genesis 25:19 to 26:22. We discuss Genesis 26:20 specifically where Isaac dug a well and the Philistines declared "The water is ours." Wolf and Dave argue on how to respond when our resources have been attacked. The argument morphs into whether or not it's okay to attack back or come up with an alternative response. Alternatively, would it have been better for Iaasc to get it right the first time, but what if he doesn't? Listen to the arguments and leave a message for Kibitz-and-Bitz with your opinion on these lessons learned from this weeks Torah parshah.

Burnt Out Husk? - Advanced Years and Blessed All the Things
Welcome to Kibitz and Bitz!
Where we argue information security and draw lessons from the weekly Torah portion. For the week of November 17, 2019, Genesis 23:1 - 24:9. We discuss Genesis 24:1 specifically in regards to how Abraham is now "advanced in years, and the LORD had blessed Abraham in all the things". Wolf and Dave argue if we have cyber-security historians and is there enough age diversity in InfoSec. The argument evolves into the importance of having a talent or cultural pipeline based upon Jewish observations. Listen to the arguments and leave a message for Kibitz-and-Bitz with your opinion on these lessons learned from this weeks Torah parshah.

Calf - Delegate or DIY
Welcome to Kibitz and Bitz!
Where we argue information security and draw lessons from the weekly Torah portion. For the week of November 10, 2019, Genesis 18:1 - 18:33. We discuss the LORD's visit to Abraham when he was 99 years old. To serve the LORD, Abraham instructs Sarah to make fine baked goods and a youth to prepare a calf. Why did Abraham ask a youth to prepare the calf rather than his most skilled butcher? We debate the risks of whether it's better to delegate tasks for mentorship or to do it yourself. Both Wolf and Dave are mentors so with this Torah parshah it is difficult for them both to disagree but they do. Their individual mentorship styles make for an educational podcast.

Abram and Lot - You go North, I’ll go South
Where we argue information security and draw lessons from the weekly Torah portion. For the week of November 4, 2019, Genesis 13:5 - 13:18. We discuss Abraham (Abram), Sarah (Sarai) and Lot where they settle in Canaan then how Abraham and Lot experience conflict with each other and how they decide to resolve the conflict. Their conflict is not much unlike DevOps and Blue Teams where the need for InfoSec generalists and specialists are required for survival. Wolf and Dave disagree on which role is more valuable to an organization and agree to disagree. Much like the biblical characters who decide one will go North, and the other will go South.
Note that in the recording we decided in advance to use Abram’s and Sarai’s names given by God rather than their birth names.

Noah - Flood Your Data
Welcome to Kibitz and Bits!
Where we argue information security and draw lessons from the weekly Torah portion. For the week of October 27, 2019, Genesis 6:9 - 6:22. We discuss BCP DR, and CIA where Wolfgang and Dave each take a strong stand for what they believe to be more important when is comes to Confidentiality, Integrity, and Availability.
Music is taken from the Album: The Klezmer – Clarinet & Violin Best Jewish Music. Klezmer ensemble www.youtube.com/watch?v=5f5GniIYCm4 by Shmuel Achiezer

Creation - Take a Break
Welcome to Kibitz and Bits! Where we argue information security and draw lessons from the weekly Torah portion. This is the first episode for the week October 20, 2019, Genesis 1:1 - 2:3. We discuss creation, light and dark sides of InfoSec, and reasons making the seventh day holy for your personal mental health. Music is taken from the Album: The Klezmer – Clarinet & Violin Best Jewish Music. Klezmer ensemble www.youtube.com/watch?v=5f5GniIYCm4 by Shmuel Achiezer