logo
Wrong email address or username
Wrong email address or username
Incorrect verification code
back to top
Search tags: Layers
Load new posts () and activity
Like Reblog Comment
show activity (+)
review 2019-09-08 20:55
mixed feelings
Layers of Light (46. Ascending #4) - Sherrie Cronin,S.R. Cronin

Thirteen year old Zane Zeitman fumbled with the cork of the bottle of an exotic liquor he took  from his parents liquor cabinet days before. Zane’s best friend was Bhadra who was an only child and suspicious of siblings. Bhadra sat alone in her family’s upstairs game room. She’d only been able to sneak one unopened can of beer. She and Zane needed to get this party going, Bhadra and Zane toasted and Bhadra closed her eyes and made herself swallow. As did Zane. the second and third gulps weren’t so bad. This whole party by phone thing was clever. He had to stay home with his sister, and Bhadara had to stay alone on New Year's Eve. Za huddled with her four year old twins where the borders of China, India, and burma all met. Tomorrow they were leaving with her family to a more protected valley holding her first born boy and girl close to her body. Then she heard the harsh war cry and knew they’d been discovered. Four year old teddie Zeitman was in a light sleep with an overactive imagination. Ariel was her wise eleven year old sister and her big brother was Zane. Then she heard Zane throwing up. She didn’t stand up because she didn’t have to. She floated up without thinking about it, then floated through her door and down the hall. She came to Zane’s door and floated through the wood. It tickled and made her giggle. Then it hit her she was floating in Zane’s room while her body was back in bed. Then she saw a thin green sparkly cord running from her floating self back down the hall. She headed for the pretty cord and felt herself snap back in her body, no floating required. They killed the adults but took the twins with them. The older brother said now they are ours. Teddie’s parents treated her like an adult when  she was thirteen. Teddie was to get her homework done and than make dinner also. Teddie was to stay at Shawn’s while her parents went on a canoeing trip for the weekend. Shawna had once been a friend but there are a dozen good reasons Teddie no longer wanted anything to do with her. She thought Shawna’s creepy dad was one of the reasons they grew apart. Amy Levitt liked to wear froeign looking clothes and she had a passion for wanting to help her sisters who’d suffered violence. Her fever was fueled by some internal sense of justice that was outraged from monsters she personally hadn’t encountered. Amy had a Masters degree in Social Work. At twenty six she worked for NGO dedicated to stopping human trafficking. She was being sent overseas to run an office of six people- three were volunteers. She was going to Darjeeling, india. Jampa was a young monk in training and he knew meditation was important. He slowed his breathing and slipped into a deep trance. He had been doing it as long as long as he could remember. Jumpa had little memory of living with the traveling caravan that dumped him at the monastery door. He thanked them every day for their mercy He was told he was purchased at the age of six or seven at the time. He had been purchased by the caravan to fetch water and do shores. The caravan said he was useless because he’d go into deep trances. They offered him to the monastery as a gift. The monks accepted him and made him one of their own, named him , making him a Buddist, and a citizen Of Bhutan before he was eight. For five years now, he had hidden his real secret behind his meditative abilities from the monks. Vanida curled up on her sleeping palette and hoped she'd get to see her friend tonight. She’d known him since before Pim and Noi had become her mothers and owners. Pim and Noi were strict but they fed her everyday and gave her a soft place to sleep and that was more than the man did her sold her to them. They had hurt her between her leg. Than she had to start practicing with the other girls there. They got very good at it , because those who didn’t do the exercises well didn’t get fed. She persuaded Pim and Noi to let her practice writing with her hand and practice reading to. Than she got the women to let her learn three languages- english, japanese , and French and learn them she did with a with a speed that surprised her owners. By the time she was thirteen she could read and write in Thai, English, Japanese, and French. Shawna got her  parents to agree to a sleepover at the lake camo. Shawna invited every girl in her eight grade class who drank, smoked weed, or otherwise partied , they were going to be there. The girl always joined Jumpa when he entered his trance.They never spoke, but they played together as long as he could remember. Than he arrived once naked. He snapped back to his body. The last couple of times he entered a trance she wasn’t there. Than his special body traveled to a clearing in the woods. He saw her naked and shivering, he was dressed in a light weight black robe. He saw she was crying. She’d never been crying or anything ever than happy before. He had a black robe on his hands and put the robe around her shoulders. She accepted it and pulled it tight. She knew she was of him, somehow like him . He knew he must call her sister. Amy’s organization focused on aiding former victims of human trafficking. Obvious preventing human trafficking was part of their mission. Amy got the reputation of the crazy American who charged in to save girls. Asha’s teacher encouraged her to apply for the scholarship to the English boarding school last year and her mother had her do it. Than she worked harder than she ever worked to get into the school. Usha uncle goes looking for her at school but she leaves and goes into hiding. Teddie. Michelle and haley look into Usha’s disappearance. They ask Amy to help. 

I had mixed feelings about this book. I loved how the author showed the horror of human trafficking and the mental and physical toll on the females that are forced into this. How the girls are sometimes gotten, kidnapped, how some are trained to be sold.I advise everyone to read the series in order for a smoother read. But this can be read as a standalone. I loved Amy and how she wanted to help these female victims of human trafficking.How cruel people can be is shown like Usha’s uncle after her father died. The monsters and evil people there are in this world. I also liked the paranormal aspect of this book. But this drag for me at times. And I also got confused at times and I didn’t enjoy that. It's sad how real this problem is. Education needs to be given to parents and girls especially in the target countries . But I still had mixed feelings.

Like Reblog Comment
show activity (+)
text 2019-06-25 12:50
REVIEW TOUR, EXCERPT & #GIVEAWAY - Layers of Light (46. Ascending #4) by Sherrie R. Cronin
Layers of Light (46. Ascending #4) - Sherrie Cronin,S.R. Cronin

@GoddessFish, @hotchoc84 (Charlotte), @cinnabar01, #Science_Fiction, #Fantasy, 5 out of 5 (exceptional)

 

A Texan teenager develops an unusual ability when she becomes an exchange student in India. Once human trafficking touches her world, her mysterious talent shows hope for locating her friends. If she only knew what the talent was and how to use it. A stranger makes her an unexpected offer. He will train her to find her missing friends, but she will need trust in ideas she barely believes and more courage than has ever been expected of her. Also, she’ll never be normal again. She accepts his offer, intending to show those guilty of unspeakable crimes just how powerful a young woman can be.

Source: archaeolibrarian.wixsite.com/website/single-post/2019/06/25/Layers-of-Light-46-Ascending-4-by-Sherrie-R-Cronin
Like Reblog Comment
text 2018-10-19 08:27
Importance of SOC (Security Operations Center) for Small and Medium-Sized Businesses

With an increasing number of threats in the world, small and mid-sized businesses are facing numerous issues. They are keen to find security services which fit their budgets and yet provide proper security services. An important problem that SMBs (small and mid-sized businesses) face is lack of personnel to build and function their own SOC (Security Operation Center). Due to this, the Security Information and Event Management (SIEM) process is out of reach. Eventually, many such organizations are turning towards the way of outsourcing SOC as a Service which can suit their organization's needs and improve the security posture. Several small to mid-sized companies face the "trio of the cyber security troubles" as follows:

  • Recent ransomware like Petya and WannaCry caught the world in their evil grip but in a more modern way.

  • With the increasing number of cyber threats, there is an increase in the security expertise scarcity creating over 3.5 million cyber security openings by 2021.

  • As per the Verizon’s DBIR report, hackers are targeting on small and mid-sized businesses and creating a havoc in them as they lack proper SOC (Security Operations Center) services.

As a consequence, small and medium-sized businesses (SMBs) are finding ways on how they can deal with so many upcoming challenges. Therefore, they are going to the reputed security service providers who can implement SOC as a Service. Although, this is a right decision, yet exploring and choosing the correct SOC service provider is not that easy. If your vendor lacks proper and mandatory amenities for the effective SOC with a plain focus on managed detection, then this can turn to a bigger loophole in your security posture.

 

If you too are stuck on how to choose a smart security provider, then you can follow the below checklist. It guides you to search for a comprehensive SOC service. The checklist includes:

 

Complexity level

 

A recent Gartner study identified that MDR (managed detection and response) is a fast-growing market. The detection is obviously used to recognize the threats, but the SOC should also provide prevention and IR (incident response) in case of a disaster.

A comprehensive security package like decisive and effective IR, protection from DDoS attack, ransomware, data breach, and disaster recovery is all you need when you consider a SOC. If the vendor doesn't provide 24/7 SOC and IR services, then it should not be termed as SOC

.

Real-Time Threat Analysis

 

Monitoring the threats in real-time with the use of detection services and forensics is a crucial task for SOC. It should be for all the security incidents on the basis of 24/7. The scanty staff in the security team can't handle the noisy and complex SIEM (Security Information and Event Management) tools. They can't strain out the false alarms and hence the performance level doesn't stay up to the mark for vital security matters.

You have to make sure that the SOC provider has the abilities of smart detection of the threats round the clock so that you can sleep peacefully.

 

Armed Threat Hunting

 

With the burgeoning techniques of hacking and hackers getting smart, it is very tedious to detect every single type of attack. Staying armed means, the network has to stay prepared in advance and search for the threats proactively. This would result in auto-adjustment of the network as per the latest cyber-attacks which could be just a few hours ago. This is a huge responsibility of the security specialists. It calls for learning the different and unique requirements of the client's network and hunt down the threats which can still pass on through the detection process. For this method to work, we need relevant and efficient threat-intelligent sources, machine learning techniques, and choosing everything which can help in one or the other way to find valid security incidents impacting the consumers.

 

Compliance Control

 

Compliances are a vital factor while implementing the SOC. Every SOC should compulsorily have some compliances like PCI DSS, HITECH, HIPAA, GLBA, FFIEC, and some other standards that high-quality industries must bind to. The compliance organizations must provide templates for recommended security checks and vulnerability assessments and see whether the businesses are abiding by the given regulatory measures.

 

Not just hackers can cost you big bucks, but not having required compliances can lead you to pay penalties as well! You must make sure that all these things are handled by your SOC service provider.

 

Strategic Advising

 

After monitoring the network and hunting for the upcoming threats, the security engineers will get an in-depth understanding of your company's network. This knowledge of network topology, places of the vital assets will help them to protect those with a proper defense strategy. You should demand this from the outsourced SOC provider as this contributes to designing and improving the security posture.

Instead of having a just scalable cloud-based technology, an outlined IR (Incident Response) process and a team of well-trained security specialists shall persuade the clients to get insights into their organization's security posture. Further, this helps in improving and running the business processes more effectively.

 

Defined Pricing

 

Pricing is the issue which everyone faces. Make sure that your prices don't fluctuate every single time because this would deteriorate the trust of your consumers. The SOC service provider should make fixed pricing plans. The rates shall vary on the number of sensors and users instead of log data's volume and servers monitored. Such predictable and defined pricing models are essential for small and mid-sized businesses (SMBs). These organizations struggle with the fluctuating costs and can't afford highly expensive managed services. Therefore, the SOC providers should not have unpredictable costs.

 

To summarize

 

All these factors are important to consider while choosing the SOC provider. This checklist will guide you to know which things you should not compromise when you want to outsource the SOC provider. You can further read why SOC is important here.

Like Reblog Comment
text 2018-09-21 06:38
Know About SOC (Security Operations Center) and the Rise of SIS (Security Insight Services)

What is SOC?

SOC i.e., Security Operations Center is that army which protects you from the terrorists named as cyber-attacks and online threats. Having said that, it resembles the 24/7 hardworking forces dedicated to preventing, detecting, assessing, and responding to the cyber threats and vulnerabilities. The team is highly skilled and organized with the mission of continuously monitoring and improving the security posture of an organization.

 

The Strategy of SOC

 

The SOC strategy has to be business-specific and clearly outlined. It strictly depends upon the support and sponsorship of executive levels otherwise it’s not possible for SOC to work properly. The SOC must be an asset to the rest of the organization. The aim of SOC should be catering to the company’s needs and a strong sponsorship from the executives is mandatory to make it successful.

 

The Infrastructure

 

Careful planning is the key to make any model successful. Same is the case with the SOC environment design. The aspects like physical security, layout, and electrical arrangements for the equipment, lighting, and acoustics must be considered properly. The SOC needs to have specific areas like a war room, an operational room, and the offices for supervisors. There must be proper visibility, comfort, control, and efficiency in every single area and therefore the design should be in consideration with these aspects.

 

The Technological Environment

 

After the mission and scope of the SOC, designing the underlying infrastructure is important. As several components are mandatory to build a comprehensive technological environment like firewalls, breach detection solutions, IPSs/IDSs, probes, and SIEM of course, to name a few. Efficient and effective data collection is primarily essential for a perfect SOC. Packet captures, telemetry, data flows, Syslog, and many such events are vital to collect, correlate, and analyze from the perspective of security. It is also essential to monitor the information and data about the vulnerabilities which can affect the complete ecosystem.

The Team and Processes

 

Although, technical aspects are highly important, still the huge and high-tech control room would be worthless if it doesn’t have people and proper functions/processes.

 

Just like a fully equipped car is useless without a driver, an organization is empty without human resources and policies. Technology, processes, and people are the pillars of SOC.

As we know, SOC is a Team and every winning team shall follow some rules. Apart from engineers, analysts, and dev-ops people, there will be leaders and the leadership skills are necessary for everyone. There will be several tiers assigned to different team members. The analysis based on the real event monitoring, security incident/data breach detection,

response to the incidents, and finally the remediation of those happenings. The paramount of the organization is coordination, collaboration, efficiency, and timing. Every member has to be aware of the strategy and mission of the SOC and hence, leadership plays a key role in this scenario. The SOC manager must be the one who inspires and motivates other team members so that they can contribute to the organization’s vision and mission. After all, providing 24/7 service while handling the stress isn’t easy at all.

 

Selecting such team members who can add value, is really a challenging task as the required skill-set is quite big and the enthusiasm should also be there. Again the exact amount of the workers must be hired, neither less nor more.

 

Considering this scenario, adopting a hybrid vision model could prove viable as it envisions the cooperation between the internal teams and managed service providers which are outsourced.

 

The Types of SOC models

 

Are you aware that there are several kinds of SOC models? Yes, check out below-

 

Virtual SOC

 

• It has no dedicated solution/facility

• Members are part-time

• The team is active only when critical incidents occur

 

Dedicated SOC

 

• Facility is dedicated

• The team is also dedicated

• Totally in-house team

 

Co-managed / Distributed SOC

 

• Both semi-dedicated and dedicated teams

• Usually, 5 X 8 operations are handled

• It becomes co-managed when paired with MSSP (Managed Security Service Provider)

 

Command SOC

 

• Coordination with other SOCs

• Offers situational awareness, threat intelligence, and additional expertise

• Not always directly involved in day-to-day operations but rarely

 

NOC (Network Operations Center) / Multifunction SOC

 

• Dedicated facility and team

• Performs all critical IT and security operations 24/7 with common facilities

• Helps in reducing the costs of the organization

Fusion SOC

 

One SOC facility consists of new and traditional SOC functions like CIRT (Computer Incident Response Team), threat intelligence, and OT (Operational Technology) functions which are combined.

 

Fully Outsourced SOC

 

Apart from the above six models, the service provider of ‘fully outsourced model’ operates and builds the SOC with minimum but supervisory involvement from the customer’s enterprise.

 

The Intelligence and Approach

 

To enhance the organization’s security posture, the SOC has to be both –active and proactive as it needs to carry out the process of Vulnerability Management. The priority for SOC is a robust approach to handling vulnerability and risk assessment skill. Other than that the OWASP model approach can be taken into the consideration too. Also, a threat intelligence approach (context aware) shall be implemented to become more effective in diagnosing/preventing the threats and adding more value.

 

The Essentials

 

Creating and Operating a SOC demands high quality, infrastructure, enthusiasm, teamwork, and skills. It should have best practices, compliances, and frameworks like COBIT, ITIL, and other are vital to abide by the PCI DSS and ISO/IEC 27001: 2013 standards.

ITIL is a potentially unmatched source of guidance in case of service design and strategy, service level management, and coordinating between the SOC related purposes and incident management processes.

 

Also, COBIT and especially its Maturity Model, COBIT- MM shall be considered as a premium guideline for checking how mature is SOC?

 

The performance of the SOC has to be measured correctly and appropriately in all aspects. Therefore, the KPIs must be well-defined to check the application of ITIL, i.e., continual improvement of service. These steps will help in generating the best results from the SOC and add value to the organization.

 

So, these were the things you need to know about SOC.

 

Now, let’s understand what are Managed Security Services or Security Insight Services.

SIS (Security Insight Services)

 

We all know the hell number of online threats and cyber-attacks going on in the world. These things happen due to lack of essential security tools, equipment, and services. Many of the businesses are so concerned about the security of their data and loss of business but they don’t get proper solutions. They are often worried about how prepared their organization is to handle the online crisis situations.

 

To these problems, ‘Security Insight Services’ is the solution. It is a one-stop-shop solution for all the current and possible online threats/attacks.

 

The offerings by SIS

 

• Project driven approach

• Security Incident & Threat Analysis

• Project Driven Approach

• Security posturing assessment

• Security Incident & Threat Analysis

• Gap Analysis

• Network Security Assessment

• Malware Threat Modeling

• Database Activity monitoring & Vulnerability Scanning

• SIEM effectiveness modeling Configuration Auditing

• Process Auditing

• Application Vulnerability Assessment Email System Assessment

• Wireless System Assessment

• DDOS Attack Preparedness Testing DLP Analysis

 

The Need for SOC and SIS

 

If you aren’t aware already then let me tell you that if an attack happens, it takes 99 days on an average for that to get identified. Now that’s a big amount of time! So, you get the need for data protection and privacy for providing security. Hence, it clearly indicates the dire need for newness in the technology of cyber-security. Many people forget that just having the correct tools and processes isn’t enough. You can be still vulnerable to threats and attacks if you don’t monitor systems, detect upcoming threats, and don’t make any changes in the systems/operations whenever an attack or threat is identified.

 

Many organizations are now getting aware and want to build their SOC as they want more control over the safety of their data, monitoring, and the response. A SOC built project creates a strategic business impact and hence it’s a critical and vital initiative for those organizations.

 

Conclusion

 

Looking at all the above key pointers, we get to know about the ideal SOC, the necessities for it in all aspects, the rise of SIS (Security Insight Services), and the vitality of SOC and SIS. To run ta SOC, the comprehensive range of cyber security aspects, high skills, and important competencies have to be considered. Building SOC is a combination of business strategies and high level of security armors as a service.

 

Teamwork, great leadership skill, and motivation are vital for every member of the team, especially for the manager. A fully functional SOC is a complex project because it has to deal with wide and endless range or problems related to the data security. As the time gets ahead, there are going to be more challenges, and therefore a SOC has to be prepared for the same.

 

There is going to be the constant need for high-end online security services, and everyone has to brace for it! SOC team has a lot of work to do and that too tirelessly.

Many businesses will have to choose one of the best online security services or the SOCs, and we are certainly going to get a number of them in the near future.



So, the whole point is that every single business should find a great SOC to cater to their needs of business security and improve the complete security structure of the organization.

Like Reblog Comment
review 2018-03-01 07:52
Layers von Ursula Pozananski
Layers - Ursula Poznanski

Worum geht es und wie war es?

 
Dorian ist seit einiger Zeit obdachlos, weil er von seinem gewalttätigen Vater geflohen ist und nun muss er sich auf der Straße durchschlagen. Das klappt für eine weile auch recht gut, aber dann begegnet er Emil und seine Probleme fangen an...
Eines nachts wacht Doran auf und Emils Leiche liegt neben ihm. Während Dorian völlig benommen ist und nicht verarbeiten kann, dass er ein Mörder sein soll, erhält er von einem Unbekannten Hilfe und Schutz. Als kleine Gegenleistung muss er nur hin und wieder Flugblätter verteilen oder Werbegeschenke verteilen. Alles ziemlich harmlos, bis eines Tages eine Übergabe schiefgeht und Dorian erneut auf der Flucht ist.
 
 
Ich mochte bisher Saeculum und Erebos am meisten von den Büchern von U. Poznanski. Aber Layers ließ sich recht gut an und ich kam schnell in die Geschichte, aber dann hatte ich irgendwann den dreh raus und habe mir das ende schon fast gedacht und auch manch andere Punkte waren - aufgrund der Häufigkeit, mit der die Autorin sie im Buch auftauchen ließ - ein wenig eintönig und führten bei mir so im letzten viertel des Buches zu Ermüdungserscheinungen beim Lesen. das war schade. Darum gebe ich nur 3 von 5 Sternen. 
More posts
Your Dashboard view:
Need help?