Anthony Noblett
Loveland, Colorado, United States
13K followers
500+ connections
About
Experienced CISO and Cyber Security professional assisting startups with management…
Articles by Anthony
Activity
-
The Secretary of Defense sat under oath in front of Congress and dodged every real question. Two questions, asked in the right order, would end this…
The Secretary of Defense sat under oath in front of Congress and dodged every real question. Two questions, asked in the right order, would end this…
Liked by Anthony Noblett
-
Katie Phang Just Filed the Lawsuit Every American Has Been Waiting For She got tired of watching the DOJ ignore a law Congress passed, Trump signed,…
Katie Phang Just Filed the Lawsuit Every American Has Been Waiting For She got tired of watching the DOJ ignore a law Congress passed, Trump signed,…
Liked by Anthony Noblett
Experience
-
Freelance
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
Education
-
Regis University
-
-
Activities and Societies: Certified Information Systems Security Professional (CISSP) Certified Information Systems Auditor (CISA) Certified in Governance of Enterprise IT (CGEIT) Large contract negotiations • Honeywell/Price Waterhouse Managing the Media • Microlithics/Coors Proposal Development and Management • Boeing
-
-
-
-
-
-
-
-
Licenses & Certifications
Volunteer Experience
-
Fire Chief
Boulder Mountain Fire Authority
- 8 years 1 month
Disaster and Humanitarian Relief
-
Tech Volunteer
South West English Setter Rescue
- Present 1 year 9 months
Animal Welfare
-
Technical Lead
The UNION
- 2 years 6 months
Politics
Publications
-
SDL and PCI DSS/PA-DSS - Aligning the Microsoft SDL with PCI DSS/PCI PA-DSS Compliance Activity
Microsoft
See publicationThis paper demonstrates how the Microsoft Security Development Lifecycle (SDL) can help meet some of the requirements of the Payment Card Industry Data Security Standard (PCI DSS) and the Payment Application Data Security Standard (PA-DSS). PCI DSS is an industry-accepted standard authored and approved by the PCI Security Standards Council (PCI SSC). The PCI DSS includes several requirements that align closely with SDL practices. In addition, PA-DSS also mandates SDL-like controls for licensed…
This paper demonstrates how the Microsoft Security Development Lifecycle (SDL) can help meet some of the requirements of the Payment Card Industry Data Security Standard (PCI DSS) and the Payment Application Data Security Standard (PA-DSS). PCI DSS is an industry-accepted standard authored and approved by the PCI Security Standards Council (PCI SSC). The PCI DSS includes several requirements that align closely with SDL practices. In addition, PA-DSS also mandates SDL-like controls for licensed or distributed third-party applications. Two primary scenarios where software security intersects with the PCI DSS and PA-DSS requirements are addressed in this paper—the development of new payment card software and the integration of payment card software into existing systems. The goal of the paper is to show business decision makers, systems integrators, and development organizations where existing PCI DSS compliance activities and SDL practices intersect in ways that may help them realize time, resource, or process efficiencies.
-
SDL and HIPAA - Aligning Microsoft SDL Security Practices with the HIPAA Security Rule
Microsoft
See publicationThe purpose of this paper is to describe how the Microsoft Security Development Lifecycle (SDL) can help organizations comply with some requirements of the administrative simplification provision of the Health Insurance Portability and Accountability Act and its implementing regulations (HIPAA), including the Security Standards for Protecting Electronic Protected Health Information (HIPAA Security Rule) and the Standards for Privacy of Individually Identifiable Health Information (Privacy…
The purpose of this paper is to describe how the Microsoft Security Development Lifecycle (SDL) can help organizations comply with some requirements of the administrative simplification provision of the Health Insurance Portability and Accountability Act and its implementing regulations (HIPAA), including the Security Standards for Protecting Electronic Protected Health Information (HIPAA Security Rule) and the Standards for Privacy of Individually Identifiable Health Information (Privacy Rule), as well as the American Recovery and Reinvestment Act of 2009 (ARRA), particularly Title XIII of ARRA, called the Health Information Technology (HIT) for Economic and Clinical Health (HITECH) Act. This paper attempts to present how SDL practices and HIPAA requirements intersect in very practical ways by using two common scenarios in the healthcare software ecosystem: • Developing new software. • Integrating new software modules or interfaces for a medical environment. The expected audiences for this paper are business decision-makers, compliance managers, software developers, IT consultants, and systems integrators who are working within or on behalf of organizations that must meet HIPAA compliance requirements.
-
Microsoft Security Compliance Manager
Microsoft
See publicationThe Security Compliance Manager (SCM) is a free tool from the Microsoft Solution Accelerators team that enables you to quickly configure and manage the computers in your environment and your private cloud using Group Policy and Microsoft System Center Configuration Manager.
SCM provides ready-to-deploy policies and DCM configuration packs based on Microsoft security guide recommendations and industry best practices, allowing you to easily manage configuration drift and address compliance…The Security Compliance Manager (SCM) is a free tool from the Microsoft Solution Accelerators team that enables you to quickly configure and manage the computers in your environment and your private cloud using Group Policy and Microsoft System Center Configuration Manager.
SCM provides ready-to-deploy policies and DCM configuration packs based on Microsoft security guide recommendations and industry best practices, allowing you to easily manage configuration drift and address compliance requirements for Windows operating systems, Office applications, and other Microsoft applications.
Now you can easily configure computers running Windows Server 2012, Windows 8, Microsoft Office applications, and Windows Internet Explorer 10 with industry leading knowledge and fully supported tools. In addition to the latest software releases, you can also configure previous additions of Windows Server and Microsoft Office. -
IT Infrastructure Threat Modeling Guide
Microsoft
See publicationThe IT Infrastructure Threat Modeling Guide provides an easy-to-understand method for developing threat models that can help prioritize investments in IT infrastructure security. This guide describes and considers the extensive methodology that exists for Microsoft Security Development Lifecycle (SDL) threat modeling and uses it to establish a threat modeling process for IT infrastructure.
-
System Center Process Pack for IT GRC
Microsoft
See publicationDeeply integrated with Service Manager, the Process Pack for IT GRC translates complex regulations and standards into authoritative control objectives and control activities for your IT organization’s compliance program. The process pack is designed to help customers understand and bind complex business objectives to their Microsoft infrastructure in an operationally efficient manner.
-
Microsoft Operations Framework 4.0
Microsoft
See publicationMicrosoft Operations Framework (MOF) 4.0 delivers practical guidance for everyday IT practices and activities, helping users establish and implement reliable, cost-effective IT services. It encompasses the entire IT lifecycle by integrating:
Community-generated processes for planning, delivering, operating, and managing IT.
Governance, risk, and compliance activities.
Management reviews.
Microsoft Solutions Framework (MSF) best practices.
Languages
-
English
Native or bilingual proficiency
Organizations
-
South West English Setter Rescue
Volunteer
- Present -
SAGE part of the Innosphere
Volunteer
- PresentVolunteer for early stage companies
Recommendations received
23 people have recommended Anthony
Join now to viewMore activity by Anthony
-
Minutes Before Trump Speaks, Someone Gets Rich: The BBC Just Exposed The Insider Trading Operation The White House Wants Buried Coincidence? I doubt…
Minutes Before Trump Speaks, Someone Gets Rich: The BBC Just Exposed The Insider Trading Operation The White House Wants Buried Coincidence? I doubt…
Liked by Anthony Noblett
-
Something is clearly off with Kash Patel. There are now multiple reports raising concerns about his conduct, including alcohol abuse which is…
Something is clearly off with Kash Patel. There are now multiple reports raising concerns about his conduct, including alcohol abuse which is…
Liked by Anthony Noblett
-
If a people/society loses empathy, it faces a breakdown of social bonds that tie us together. Society begins to spiral, resulting in increased…
If a people/society loses empathy, it faces a breakdown of social bonds that tie us together. Society begins to spiral, resulting in increased…
Liked by Anthony Noblett
-
#OpenAI shots fired “We don’t think it’s practical or appropriate to centrally decide who gets to defend themselves. Instead, we aim to enable as…
#OpenAI shots fired “We don’t think it’s practical or appropriate to centrally decide who gets to defend themselves. Instead, we aim to enable as…
Liked by Anthony Noblett
-
MacKenzie Scott is an unsung hero for so many of her donations. Bravo !
MacKenzie Scott is an unsung hero for so many of her donations. Bravo !
Liked by Anthony Noblett
-
BREAKING: A $10 billion lawsuit just got thrown out. The target? The Wall Street Journal. The reason? Epstein reporting. Here is what that number…
BREAKING: A $10 billion lawsuit just got thrown out. The target? The Wall Street Journal. The reason? Epstein reporting. Here is what that number…
Liked by Anthony Noblett
Other similar profiles
Explore top content on LinkedIn
Find curated posts and insights for relevant topics all in one place.
View top content