Incident Response consulting, military spouse, @WarStudies & @isicambridge alum. Curious about the intersection of cybersecurity and statecraft. Opinions my own
@ImposeCost F3EAD is a powerful model for thinking about incident response and defensive cyber operations. This book details it nicely, along with some other useful tools:
https://t.co/yefFjk9Y3N
the advice in here is pretty generic and imo not that useful. but i want to say something to tech people: please reach out to writers before you build AI systems around *their work.* this is deeply uncomfortable to me and it's weird how many tech people run roughshod over it
Lethal effects from cyber operations will continue at accelerating pace. Lethal response against cyber operators will become increasingly common. Both will continue to be ignored by those seeking to score cheap rhetorical points about the cyber war they insist isn’t happening, even as the graves are filled.
The dramatic distortions of the cyber threat intelligence industry created by the acquisition and centralization rush will reach a breaking point. Coverage gaps, risk aversion, and too slow dissemination in ever larger bureaucracy infested by more layers of management and lawyers, will mean opportunities for new fast moving players willing to do hard things. The percentage of intelligence value derived from smaller agile shops will be the tipping point, with disproportionate rewards accruing to first alternative perceived to have reached viable threshold as replacement source of first resort. It is unclear if this will occur within the estimative horizon of this period, or if the longevity of mediocrity will prevail. Given that shift is likely an attention economy dynamic, rather a core business to business sales problem, this may be mercurial and difficult to provide further warning in advance of preference cascade.
The thing about the tech economy swallowing everything is that it has elevated a bunch of people who are smart in narrow ways and broadly stupid otherwise. The word for such people used to be "nerd."
U.S. government: You software companies should really do these things to make your offerings more secure. For the sake of National Security.
Also U.S. gov: Adhering to good security practices is not important enough to require. Even where vendors want to sell to the U.S. gov.
🤦♂️
The biggest H-1B visa winners are largely Indian IT outsourcing firms — Cognizant, Tata, Infosys, HCL — that specialize not in innovation or new tech, but in labor arbitrage: lower paid IT workers as contractors. These firms generate billions then lobby for more lax visa rules.
@ImposeCost I wholeheartedly agree about the importance and positive impact of immigration. However, it’s also important to recognize that some parties abuse the intricacies of that system to harm workers, and we should consider ways to reduce those harms.
This can all be solved by setting the minimum H1B salary to 300k
If a company doesn’t want to pay 300k for the “amazing overseas talent” then they’re not talented
There he goes lying again….he didn’t name Tesla….it was already named that when he bought it and kicked out the founders…the company was named Tesla Motors in 2003 by Martin Eberhard and Marc Tarpenning
I very much disagree with accepting the framing of Chinese “overseas police stations”. It grants a legitimacy that is simply wrong, and mirror images a natsec problem in a way that once again allows for LE response focus rather than doing harder things that are needed. These are better understood as illegal Communist cells dedicated to kidnapping, espionage, & harassment that should be prosecuted as conspiracies to deprive Americans of civil rights only as a lesser included element of wider response, including tit for tat retaliation against technologies of social control in the mainland. Interfere in sovereign American cities, thus you forfeit the protections that have kept your authoritarian racket in power by repressing your citizenry.
Trump supporters are excited about going to war with largely decentralised groups with significant firepower and not insignificant support amongst the local population.
The Cambridge Security Initiative has launched a shorter 2 week academic program designed for professionals working in the intel and security space. We call it ISI-PRO. Apply here: https://t.co/qFTIOp9pT3 PLEASE retweet! @ISICambridge@77_msg@kclintelligence@dRichterova
The public has the impression that weapon systems and sensors are perfect or close to it. They act as if what the brochure says is reality 100% of the time or near that. This is so far from reality but it's understandable why people think this. That is the surface impression given by everyone from the Pentagon to Hollywood. It simply is not the case. Things break, A LOT. Hardware fails, software has bugs, human factors are thrown in. Much of the hardware is almost experimental in nature as it is often built in such small numbers and has so many sub configurations within that small fleet. It also degrades over time in an operational environment in many cases. This is the reality for ships at sea and airplanes in the sky and tanks on the ground. It is what it is, but it's tough because when bad things happen people wonder why it all didn't work perfectly. Just not the way it is sadly.
A very large number of conservative Christians don't believe in anything related to Christ or the Bible, and instead follow a weird pagan religion that worships Jesus the God Of Money
If you’re a baker who’s three years into your career: quit now. there is not a single job in baking anymore. it’s over. this field won’t exist in 1.5 years.
One of the few common sense takes on the F-18 incident.
The United States military maintains an insanely high operational tempo. Now it's up to us we conduct a thorough AAR, hold those in leadership positions accountable , and apply the lessons learned.
Friendly fire has happened before. It'll happen again. Given the scale of our operations around the globe, it's amazing it doesn't happen more. Regardless, the target is and always should be zero.