<?xml version="1.0" encoding="UTF-8"?>
<!-- generator="wordpress/2.0.10" -->
<rss version="2.0" 
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	>

<channel>
	<title>blog.dennyroger.com.br</title>
	<link>http://blog.dennyroger.com.br</link>
	<description>Denny Roger</description>
	<pubDate>Thu, 18 Mar 2010 11:22:42 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.0.10</generator>
	<language>en</language>
			<item>
		<title>News: IDC Brazil Information Security &#038; Business Continuity Conference 2010</title>
		<link>http://blog.dennyroger.com.br/2010/03/18/news-idc-brazil-information-security-business-continuity-conference-2010/</link>
		<comments>http://blog.dennyroger.com.br/2010/03/18/news-idc-brazil-information-security-business-continuity-conference-2010/#comments</comments>
		<pubDate>Thu, 18 Mar 2010 10:08:23 +0000</pubDate>
		<dc:creator>Denny Roger</dc:creator>
		
		<category>Eventos</category>

		<guid isPermaLink="false">http://blog.dennyroger.com.br/2010/03/18/news-idc-brazil-information-security-business-continuity-conference-2010/</guid>
		<description><![CDATA[Dear Readers,
These are some news about yesterday&#8217;s conference.
In this conference, I presented the definition of Information Security Governance and the importance of the roles and responsibilities of senior management. I talked about how Information Security Governance Architecture works and provided an overview of the positioning of Information Security Governance within the context of an organization [...]]]></description>
			<content:encoded><![CDATA[<p>Dear Readers,</p>
<p>These are some news about yesterday&#8217;s conference.</p>
<p>In this conference, I presented the definition of Information Security Governance and the importance of the roles and responsibilities of senior management. I talked about how Information Security Governance Architecture works and provided an overview of the positioning of Information Security Governance within the context of an organization through its Enterprise Architecture and through its Information Security Management System, hence applied to and monitored from its daily operations. </p>
<p>In the second session, I talked how to implement both ISO/IEC 27001 and ISO/IEC 20000-1 together and the benefits of implementing a management system based upon both standards.</p>
<p>I participated of the debate about frauds and digital certificates with Fábio Leto (CIO at SmartSEC), Rony Vainzof (Opice Blum) and Denise Comerlati Menoncello (Serasa Experian). The debate was very good.</p>
<p>See some photos of the IDC Brazil Information Security &#038; Business Continuity Conference 2010:</p>
<p><div class="centralizado"><a href="http://blog.dennyroger.com.br/up/e/ep/blog.epsec.com.br/img/.resized_DSC05123.JPG" onclick="lw_image_popup('http://blog.dennyroger.com.br/up/e/ep/blog.epsec.com.br/img/DSC05123.JPG',480,640,'Denny Roger IDC Conference 2010 - Denny Roger IDC Conference 2010'); return false;"><img src="http://blog.dennyroger.com.br/up/e/ep/blog.epsec.com.br/img/.resized_DSC05123.JPG" alt="Denny Roger IDC Conference 2010 - Denny Roger IDC Conference 2010" title="Denny Roger IDC Conference 2010 - Denny Roger IDC Conference 2010" /></a></div><br />
Denny Roger</p>
<p><div class="centralizado"><a href="http://blog.dennyroger.com.br/up/e/ep/blog.epsec.com.br/img/.resized_DSC05127.JPG" onclick="lw_image_popup('http://blog.dennyroger.com.br/up/e/ep/blog.epsec.com.br/img/DSC05127.JPG',480,640,'Denny IDC Conference 2010 - Denny IDC Conference 2010'); return false;"><img src="http://blog.dennyroger.com.br/up/e/ep/blog.epsec.com.br/img/.resized_DSC05127.JPG" alt="Denny IDC Conference 2010 - Denny IDC Conference 2010" title="Denny IDC Conference 2010 - Denny IDC Conference 2010" /></a></div><br />
Denny Roger</p>
<p><div class="centralizado"><a href="http://blog.dennyroger.com.br/up/e/ep/blog.epsec.com.br/img/.resized_DSC05142.JPG" onclick="lw_image_popup('http://blog.dennyroger.com.br/up/e/ep/blog.epsec.com.br/img/DSC05142.JPG',640,480,'Denny Debate IDC Conference 2010 - Denny Debate IDC Conference 2010'); return false;"><img src="http://blog.dennyroger.com.br/up/e/ep/blog.epsec.com.br/img/.resized_DSC05142.JPG" alt="Denny Debate IDC Conference 2010 - Denny Debate IDC Conference 2010" title="Denny Debate IDC Conference 2010 - Denny Debate IDC Conference 2010" /></a></div><br />
Debate: Fábio Leto (CIO at SmartSEC), Denny Roger (EPSEC), Rony Vainzof (Opice Blum) and Denise Comerlati Menoncello (Serasa Experian).</p>
<p><div class="centralizado"><a href="http://blog.dennyroger.com.br/up/e/ep/blog.epsec.com.br/img/.resized_DSC05148.JPG" onclick="lw_image_popup('http://blog.dennyroger.com.br/up/e/ep/blog.epsec.com.br/img/DSC05148.JPG',640,480,'Denny Roger Debate IDC Conference 2010 - Denny Roger Debate IDC Conference 2010'); return false;"><img src="http://blog.dennyroger.com.br/up/e/ep/blog.epsec.com.br/img/.resized_DSC05148.JPG" alt="Denny Roger Debate IDC Conference 2010 - Denny Roger Debate IDC Conference 2010" title="Denny Roger Debate IDC Conference 2010 - Denny Roger Debate IDC Conference 2010" /></a></div><br />
Debate: Fábio Leto (CIO at SmartSEC), Denny Roger (EPSEC), Rony Vainzof (Opice Blum) and Denise Comerlati Menoncello (Serasa Experian).</p>
<p>Regards,</p>
<p>Denny Roger<br />
denny@dennyroger.com.br
</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.dennyroger.com.br/2010/03/18/news-idc-brazil-information-security-business-continuity-conference-2010/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Do you outsource your password?</title>
		<link>http://blog.dennyroger.com.br/2010/03/16/do-you-outsource-your-password/</link>
		<comments>http://blog.dennyroger.com.br/2010/03/16/do-you-outsource-your-password/#comments</comments>
		<pubDate>Tue, 16 Mar 2010 08:00:42 +0000</pubDate>
		<dc:creator>Denny Roger</dc:creator>
		
		<category>Artigos</category>

		<guid isPermaLink="false">http://blog.dennyroger.com.br/2010/03/16/do-you-outsource-your-password/</guid>
		<description><![CDATA[Spreading security service for employees saves external investments. But is it worth? 
By Denny Roger
Last month, during a lunch with two friends specialists in internal audit, discussed the fact that companies outsource their processes and applications of information technology (IT), including information security. At the end of the conversation, one of my colleagues explained that [...]]]></description>
			<content:encoded><![CDATA[<p><strong>Spreading security service for employees saves external investments. But is it worth? </strong></p>
<p><em>By Denny Roger</em></p>
<p>Last month, during a lunch with two friends specialists in internal audit, discussed the fact that companies outsource their processes and applications of information technology (IT), including information security. At the end of the conversation, one of my colleagues explained that some IT services are run by external collaborators. Thus, the &#8220;master key&#8221; is to be administered by service providers. </p>
<p>The dramatic tone of my colleague was not exceptional. Once I remembered that, in organizations, the &#8220;third party&#8221; or service providers have the administrator password of the computing environment. However, officials of the organization responsible for information security, auditing and internal controls, are kept away from the master key. </p>
<p><strong>What are the threats? </strong><br />
In April 2009, developing activities related to risk analysis in an organization, I detected that there was a confidentiality clause in contracts for services. In other words, all countries would disclose information of the organization were made available for the development of their activities, including administration passwords. </p>
<p>The problem encountered, although it is common to many organizations, was not detected by the legal department. The main question were: a) there was a confidentiality clause between the organization and the supplier who was placing the service providers. But the professionals appointed to the service were not employees of the supplier. The truth is that these professionals have opened a company to issue invoices for the services rendered. The provider allocates its service to the development of activities on the client. </p>
<p>In this case, is no longer an outsourcing to be a &#8220;outsourcing delegation&#8221;, b) the service provider has not signed the confidentiality agreement between your company and the supplier c) some organizations request that the outside person hired for the job to sign a term responsibility, which, in turn, has no legal validity. The correct is the organization creating the &#8220;Statement of Confidentiality&#8221; for all service providers. The &#8220;Disclaimer&#8221; is valid only for employees. </p>
<p><strong>Staff </strong><br />
By the time the supplier receives the approval of the proposed outsourcing of applications and IT processes, begins the process of hiring staff that will be reserved to the customer. The faster people are hired and assigned to the customer, the faster the supplier receives. But when it comes to hire professionals IT is a vast difference in the profile and knowledge of candidates. </p>
<p>The supplier does not have time to assess the skill levels of candidates and selects according to the basic profile and desired salary. Many customers are telling me that some contractors are learning to work managing the IT processes of the organization, bringing new threats to the company&#8217;s business. </p>
<p>The supplier does not offer training to professionals who will be allocated in a company. The first step, and perhaps most important, is the third to receive a copy of the information security policy and training about the guidelines and standards of the company, including the code of ethics and conduct. </p>
<p><strong>Conclusion </strong><br />
Organizations should establish guidelines and standards to maintain the security of information applications and IT processes managed by third parties. Risk analysis should cover the agreements with third parties to avoid &#8220;outsourcing delegation&#8221; without a confidentiality clause. </p>
<p>It is the personal department and create legal terms for employees and service providers. Organizations should request a summary of the professional curriculum that will be allocated for the provision of service. It is recommended that all employees receive training on foreign policy and security standards before it began. Keep the &#8220;master key&#8221; of your company under the responsibility of officials.</p>
<p><strong>Denny Roger</strong> (denny@dennyroger.com.br) is responsible for more than 100 projects about Information Security, including: risk management, maturity level, audits, penetration test, vulnerability management, security incident response, computer forensic investigations, information security policy and implementation of security technologies. As member of the ABNT / CB21 / CE 27, he participated in the development of ISO 27001, ISO 27002 and others ISO 27000 family standards.</p>
<p>Please visit <a href="http://idgnow.uol.com.br/seguranca/mente_hacker/idgcoluna.2009-09-30.9660851925/">http://idgnow.uol.com.br/seguranca/mente_hacker/idgcoluna.2009-09-30.9660851925/</a>
</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.dennyroger.com.br/2010/03/16/do-you-outsource-your-password/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Register now: IDC Conference 2010 and CNASI Rio de Janeiro</title>
		<link>http://blog.dennyroger.com.br/2010/03/15/register-now-idc-conference-2010-and-cnasi-rio-de-janeiro/</link>
		<comments>http://blog.dennyroger.com.br/2010/03/15/register-now-idc-conference-2010-and-cnasi-rio-de-janeiro/#comments</comments>
		<pubDate>Mon, 15 Mar 2010 15:33:32 +0000</pubDate>
		<dc:creator>Denny Roger</dc:creator>
		
		<category>Eventos</category>

		<guid isPermaLink="false">http://blog.dennyroger.com.br/2010/03/15/register-now-idc-conference-2010-and-cnasi-rio-de-janeiro/</guid>
		<description><![CDATA[As you might know, on wednesday (March 17, 2010) I will be one of the speakers at IDC Brazil Information Security &#038; Business Continuity Conference 2010 - São Paulo. Next week, I will go to Rio de Janeiro to do a lecture at CNASI. I will talk about the future of Information Security Governance. CNASI [...]]]></description>
			<content:encoded><![CDATA[<p>As you might know, on wednesday (March 17, 2010) I will be one of the speakers at IDC Brazil Information Security &#038; Business Continuity Conference 2010 - São Paulo. Next week, I will go to Rio de Janeiro to do a lecture at CNASI. I will talk about the future of Information Security Governance. CNASI is a System and Security Audit Conference of the Information which aims the update and enables all professionals involved in the areas of Security of the Information and System Audit in the corporate, approaching all the necessary topics in order to offer the participant a wide view of the problems and, mainly, of the solutions related to the subject.</p>
<p>This month I&#8217;ve attend 12 interviews (media printed, electronics and audiovisual). It&#8217;s a busy month.</p>
<p>More information about IDC Brazil Information Security &#038; Business Continuity Conference 2010:<br />
<a href="http://www.idclatin.com/email_mkt/bra/security10/emkt_bra_10_conf_isbc_2.html">http://www.idclatin.com/email_mkt/bra/security10/emkt_bra_10_conf_isbc_2.html</a></p>
<p>For more information about CNASI, please visit:<br />
<a href="http://www.cnasi.com.br/rj/">http://www.cnasi.com.br/rj/</a></p>
<p>Regards,</p>
<p>Denny Roger<br />
denny@dennyroger.com.br<br />
www.twitter.com/dennyroger
</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.dennyroger.com.br/2010/03/15/register-now-idc-conference-2010-and-cnasi-rio-de-janeiro/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Invite: IDC Conference 2010</title>
		<link>http://blog.dennyroger.com.br/2010/03/12/invite-idc-conference-2010/</link>
		<comments>http://blog.dennyroger.com.br/2010/03/12/invite-idc-conference-2010/#comments</comments>
		<pubDate>Fri, 12 Mar 2010 16:25:58 +0000</pubDate>
		<dc:creator>Denny Roger</dc:creator>
		
		<category>Eventos</category>

		<guid isPermaLink="false">http://blog.dennyroger.com.br/2010/03/12/invite-idc-conference-2010/</guid>
		<description><![CDATA[Next week, I will be one of the speakers at IDC Brazil Information Security &#038; Business Continuity Conference 2010. I will talk about the future of Information Security Governance and the benefits of implementing a management system based upon both ISO/IEC 20000-1 and ISO/IEC 27001.
Event details
The practice of information security in every organization, small and [...]]]></description>
			<content:encoded><![CDATA[<p>Next week, I will be one of the speakers at IDC Brazil Information Security &#038; Business Continuity Conference 2010. I will talk about the future of Information Security Governance and the benefits of implementing a management system based upon both ISO/IEC 20000-1 and ISO/IEC 27001.</p>
<p><strong>Event details</strong></p>
<p>The practice of information security in every organization, small and large, requires integrated management of all of the hardware and software solutions, security policies, regulations, personnel training, and other features that are unique to each organization. Thus, management of information security should be agile when making decisions and taking actions so that business decisions are not stifled, providing support in selecting solutions for all of the areas of the organizations so as to support and integrate all and any technologies into its management plan, including challenges to mobile technology.</p>
<p>Security is inserted and directly related to the continuity of business, in order to guarantee the continuity of critical processes, whether or not any occurrences are mapped. To do this, the development of proactive management has been proposed: minimizing threats, monitoring security services and understanding and attacking the consequences of downtime in critical systems. IDC believes that at its conferences it can gather suppliers with diverse solutions and market professionals, in order to provide assistance to companies to monitor and control information security and create an integral management model that ensures the continuity of the business, that meets regulations, and that produces a competitive advantage, without affecting the day-to-day experience of the end user.</p>
<p><strong>Who Should Attend:</strong> &#8220;C&#8221; Level Businessmen and IT, Infrastructure and Security Directors, Managers a Analyst.</p>
<p>March 17, 2010<br />
São Paulo, SP Brazil</p>
<p>Register now: <a href="http://www.idclatin.com/email_mkt/bra/security10/emkt_bra_10_conf_isbc_2.html">http://www.idclatin.com/email_mkt/bra/security10/emkt_bra_10_conf_isbc_2.html</a></p>
<p>Regards,</p>
<p>Denny Roger<br />
denny@dennyroger.com.br<br />
<a href="http://www.twitter.com/dennyroger">www.twitter.com/dennyroger</a>
</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.dennyroger.com.br/2010/03/12/invite-idc-conference-2010/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Photos from the VOL DAY Conference</title>
		<link>http://blog.dennyroger.com.br/2010/03/11/photos-from-the-vol-day-conference/</link>
		<comments>http://blog.dennyroger.com.br/2010/03/11/photos-from-the-vol-day-conference/#comments</comments>
		<pubDate>Thu, 11 Mar 2010 09:55:47 +0000</pubDate>
		<dc:creator>Denny Roger</dc:creator>
		
		<category>Eventos</category>

		<guid isPermaLink="false">http://blog.dennyroger.com.br/2010/03/11/photos-from-the-vol-day-conference/</guid>
		<description><![CDATA[Dear readers,
On March 6, 2010, I participated of the VOL Day I. I talked about Cybercrime and Career Trends in Information Security.
The VOL CON (Viva o Linux Conference) are a series of highly technical Linux conferences that bring together thought leaders from all facets of the open source world – from the corporate and government [...]]]></description>
			<content:encoded><![CDATA[<p>Dear readers,</p>
<p>On March 6, 2010, I participated of the VOL Day I. I talked about Cybercrime and Career Trends in Information Security.</p>
<p>The VOL CON (Viva o Linux Conference) are a series of highly technical Linux conferences that bring together thought leaders from all facets of the open source world – from the corporate and government sectors to academic and even researchers.</p>
<p>Viva o Linux is the biggest Linux community in Latin America.</p>
<p>Photos from the conference are now available and will be updated throughout the week. Be sure to continue checking back for the most current pictures.</p>
<p>View VOL DAY I photos here:<br />
<a href="http://volcon.org/volday1/fotos/">http://volcon.org/volday1/fotos/</a></p>
<p>Regards,</p>
<p><strong>Denny Roger</strong><br />
denny@dennyroger.com.br<br />
55 11 8136 8025</p>
<p>Follow me on Twitter: <a href="http://twitter.com/dennyroger">http://twitter.com/dennyroger</a><br />
Professional profile on LinkedIn: <a href="http://www.linkedin.com/in/dennyroger">http://www.linkedin.com/in/dennyroger</a><br />
Member of International Association of Emergency Managers (IAEM)
</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.dennyroger.com.br/2010/03/11/photos-from-the-vol-day-conference/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Denny Roger interview - Kretcheu Vídeo Blog</title>
		<link>http://blog.dennyroger.com.br/2010/03/10/denny-roger-interview-kretcheu-video-blog/</link>
		<comments>http://blog.dennyroger.com.br/2010/03/10/denny-roger-interview-kretcheu-video-blog/#comments</comments>
		<pubDate>Wed, 10 Mar 2010 11:13:28 +0000</pubDate>
		<dc:creator>Denny Roger</dc:creator>
		
		<category>Entrevistas</category>

		<guid isPermaLink="false">http://blog.dennyroger.com.br/2010/03/10/denny-roger-interview-kretcheu-video-blog/</guid>
		<description><![CDATA[Dear readers,
The Kretcheu Vídeo Blog main focus is technology and everything built/based on it. You will find news, how to&#8217;s, funny things and everything else you could think of.
In this interview, I&#8217;m talking about my presentation in VOL DAY I. The aim of my presentation was to briefly outline the experience in the work carried [...]]]></description>
			<content:encoded><![CDATA[<p>Dear readers,</p>
<p>The Kretcheu Vídeo Blog main focus is technology and everything built/based on it. You will find news, how to&#8217;s, funny things and everything else you could think of.</p>
<p>In this interview, I&#8217;m talking about my presentation in VOL DAY I. The aim of my presentation was to briefly outline the experience in the work carried (information security). Please visit <a href="http://www.myinfosecjob.com/2010/02/the-immortals-and-mortals-of-information-security/">http://www.myinfosecjob.com/2010/02/the-immortals-and-mortals-of-information-security/</a>. Part of my presentation was cover the elements of Cybercrime.</p>
<p>This is a great blog. The topics on the blog are my kind of thing and I have been watching them with great interest.</p>
<p>Please visit the interview: <a href="http://www.kretcheu.com.br/?p=182">http://www.kretcheu.com.br/?p=182</a></p>
<p>Regards,</p>
<p>Denny Roger<br />
denny@dennyroger.com.br<br />
55 11 8136 8025</p>
<p>Follow me on Twitter: <a href="http://twitter.com/dennyroger">http://twitter.com/dennyroger</a><br />
Professional profile on LinkedIn: <a href="http://www.linkedin.com/in/dennyroger ">http://www.linkedin.com/in/dennyroger </a><br />
Member of International Association of Emergency Managers (IAEM)
</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.dennyroger.com.br/2010/03/10/denny-roger-interview-kretcheu-video-blog/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Confira as fotos do VOL DAY I</title>
		<link>http://blog.dennyroger.com.br/2010/03/08/confira-as-fotos-do-vol-day-i/</link>
		<comments>http://blog.dennyroger.com.br/2010/03/08/confira-as-fotos-do-vol-day-i/#comments</comments>
		<pubDate>Tue, 09 Mar 2010 00:34:26 +0000</pubDate>
		<dc:creator>Denny Roger</dc:creator>
		
		<category>Eventos</category>

		<guid isPermaLink="false">http://blog.dennyroger.com.br/2010/03/08/confira-as-fotos-do-vol-day-i/</guid>
		<description><![CDATA[
Estou iniciando a palestra sobre &#8220;Carreira na área de Segurança da Informação e o Cybercrime&#8221;. Esta palestra foi logo após a abertura do VOL DAY I.

Após apresentar algumas técnicas de ataque, principalmente como encontrar web cameras ligadas na internet, estou explicando sobre falhas na camada de aplicação.

Nesta foto estou sendo entrevistado para o Vídeo Blog [...]]]></description>
			<content:encoded><![CDATA[<p><div class="centralizado"><a href="http://blog.dennyroger.com.br/up/e/ep/blog.epsec.com.br/img/.resized_DSC05013.JPG" onclick="lw_image_popup('http://blog.dennyroger.com.br/up/e/ep/blog.epsec.com.br/img/DSC05013.JPG',640,480,'Denny Roger VOL DAY I - Denny Roger VOL DAY I'); return false;"><img src="http://blog.dennyroger.com.br/up/e/ep/blog.epsec.com.br/img/.resized_DSC05013.JPG" alt="Denny Roger VOL DAY I - Denny Roger VOL DAY I" title="Denny Roger VOL DAY I - Denny Roger VOL DAY I" /></a></div><br />
Estou iniciando a palestra sobre &#8220;Carreira na área de Segurança da Informação e o Cybercrime&#8221;. Esta palestra foi logo após a abertura do VOL DAY I.</p>
<p><div class="centralizado"><a href="http://blog.dennyroger.com.br/up/e/ep/blog.epsec.com.br/img/.resized_DSC05014.JPG" onclick="lw_image_popup('http://blog.dennyroger.com.br/up/e/ep/blog.epsec.com.br/img/DSC05014.JPG',640,480,'Denny Vol DAY I - Denny Vol DAY I'); return false;"><img src="http://blog.dennyroger.com.br/up/e/ep/blog.epsec.com.br/img/.resized_DSC05014.JPG" alt="Denny Vol DAY I - Denny Vol DAY I" title="Denny Vol DAY I - Denny Vol DAY I" /></a></div><br />
Após apresentar algumas técnicas de ataque, principalmente como encontrar web cameras ligadas na internet, estou explicando sobre falhas na camada de aplicação.</p>
<p><div class="centralizado"><a href="http://blog.dennyroger.com.br/up/e/ep/blog.epsec.com.br/img/.resized_DSC05024.JPG" onclick="lw_image_popup('http://blog.dennyroger.com.br/up/e/ep/blog.epsec.com.br/img/DSC05024.JPG',640,480,'Denny Kretcheu VOL DAY I - Denny Kretcheu VOL DAY I'); return false;"><img src="http://blog.dennyroger.com.br/up/e/ep/blog.epsec.com.br/img/.resized_DSC05024.JPG" alt="Denny Kretcheu VOL DAY I - Denny Kretcheu VOL DAY I" title="Denny Kretcheu VOL DAY I - Denny Kretcheu VOL DAY I" /></a></div><br />
Nesta foto estou sendo entrevistado para o Vídeo Blog do Kretcheu. Participei de diversas entrevistas durante o evento, porém, esta foi a mais descontraída. Vale a pena a visita no blog do Kretcheu, acesse <a href="http://www.kretcheu.com.br/">http://www.kretcheu.com.br/</a>.</p>
<p>Depois do evento fiquei &#8220;preso&#8221; dentro do avião por causa da chuva. Consegui embarcar mas o avião não conseguiu decolar. Fiquei com alguns artistas da Globo no avião. Logo mais disponibilizo uma foto do que aconteceu no avião antes de decolar. Aguardem! <img src='http://blog.dennyroger.com.br/wp-includes/images/smilies/icon_wink.gif' alt=';-)' class='wp-smiley' /> </p>
<p>Abraços,</p>
<p>Denny Roger<br />
denny@dennyroger.com.br
</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.dennyroger.com.br/2010/03/08/confira-as-fotos-do-vol-day-i/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Aguarde: fotos e comentários sobre VOL DAY I</title>
		<link>http://blog.dennyroger.com.br/2010/03/07/aguarde-fotos-e-comentarios-sobre-vol-day-i/</link>
		<comments>http://blog.dennyroger.com.br/2010/03/07/aguarde-fotos-e-comentarios-sobre-vol-day-i/#comments</comments>
		<pubDate>Mon, 08 Mar 2010 00:27:07 +0000</pubDate>
		<dc:creator>Denny Roger</dc:creator>
		
		<category>Sem Categoria</category>

		<guid isPermaLink="false">http://blog.dennyroger.com.br/2010/03/07/aguarde-fotos-e-comentarios-sobre-vol-day-i/</guid>
		<description><![CDATA[Olá,
neste último sábado (06/03) estive ministrando uma palestra no VOL DAY I - Rio de Janeiro - organizado pela comunidade do Viva o Linux.
Em breve vou estar publicando as fotos do evento e comentários sobre a palestra e a reação do público presente. Aguardem!  
Denny Roger
denny@dennyroger.com.br

]]></description>
			<content:encoded><![CDATA[<p>Olá,</p>
<p>neste último sábado (06/03) estive ministrando uma palestra no VOL DAY I - Rio de Janeiro - organizado pela comunidade do Viva o Linux.</p>
<p>Em breve vou estar publicando as fotos do evento e comentários sobre a palestra e a reação do público presente. Aguardem! <img src='http://blog.dennyroger.com.br/wp-includes/images/smilies/icon_wink.gif' alt=';-)' class='wp-smiley' /> </p>
<p>Denny Roger<br />
denny@dennyroger.com.br
</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.dennyroger.com.br/2010/03/07/aguarde-fotos-e-comentarios-sobre-vol-day-i/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Vídeo: MTV Debate sobre a liberdade na internet</title>
		<link>http://blog.dennyroger.com.br/2010/03/04/video-mtv-debate-sobre-a-liberdade-na-internet/</link>
		<comments>http://blog.dennyroger.com.br/2010/03/04/video-mtv-debate-sobre-a-liberdade-na-internet/#comments</comments>
		<pubDate>Thu, 04 Mar 2010 16:25:05 +0000</pubDate>
		<dc:creator>Denny Roger</dc:creator>
		
		<category>Eventos</category>

		<guid isPermaLink="false">http://blog.dennyroger.com.br/2010/03/04/video-mtv-debate-sobre-a-liberdade-na-internet/</guid>
		<description><![CDATA[A equipe da MTV disponibilizou hoje (04/02) os vídeos do MTV Debate que participei no último dia 02.
Confira o que rolou neste debate quente sobre a liberdade na internet. Acesse:
http://mtv.uol.com.br/debate/naintegra/0203-internet-liberar-ou-controlar
Abraços,
Denny Roger
denny@dennyroger.com.br
55 11 8136 8025
Follow me on Twitter: http://twitter.com/dennyroger
Professional profile on LinkedIn: http://www.linkedin.com/in/dennyroger
Member of International Association of Emergency Managers (IAEM)

]]></description>
			<content:encoded><![CDATA[<p>A equipe da MTV disponibilizou hoje (04/02) os vídeos do MTV Debate que participei no último dia 02.</p>
<p>Confira o que rolou neste debate quente sobre a liberdade na internet. Acesse:<br />
<a href="http://mtv.uol.com.br/debate/naintegra/0203-internet-liberar-ou-controlar">http://mtv.uol.com.br/debate/naintegra/0203-internet-liberar-ou-controlar</a></p>
<p>Abraços,</p>
<p><strong>Denny Roger</strong><br />
denny@dennyroger.com.br<br />
55 11 8136 8025</p>
<p>Follow me on Twitter: <a href="http://twitter.com/dennyroger">http://twitter.com/dennyroger</a><br />
Professional profile on LinkedIn: <a href="http://www.linkedin.com/in/dennyroger">http://www.linkedin.com/in/dennyroger</a><br />
Member of International Association of Emergency Managers (IAEM)
</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.dennyroger.com.br/2010/03/04/video-mtv-debate-sobre-a-liberdade-na-internet/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Debate sobre leis que permitem o controle da internet</title>
		<link>http://blog.dennyroger.com.br/2010/03/03/debate-sobre-leis-que-permitem-o-controle-da-internet/</link>
		<comments>http://blog.dennyroger.com.br/2010/03/03/debate-sobre-leis-que-permitem-o-controle-da-internet/#comments</comments>
		<pubDate>Wed, 03 Mar 2010 14:53:16 +0000</pubDate>
		<dc:creator>Denny Roger</dc:creator>
		
		<category>Sem Categoria</category>

		<guid isPermaLink="false">http://blog.dennyroger.com.br/2010/03/03/debate-sobre-leis-que-permitem-o-controle-da-internet/</guid>
		<description><![CDATA[Por Denny Roger
Ontem (02/03) tive a oportunidade de estar debatendo sobre a liberdade na internet, conjunto de normas, leis, métodos e procedimentos utilizados para combater o crime na internet.
Entre os participantes deste debate, ao vivo na MTV, estavam: Deputado Julio Semeghini, Deputado Paulo Teixeira, Sérgio Amadeu, Camilla do Vale, Delegado Carlos Sobral e eu.
Na minha [...]]]></description>
			<content:encoded><![CDATA[<p><em>Por Denny Roger</em></p>
<p>Ontem (02/03) tive a oportunidade de estar debatendo sobre a liberdade na internet, conjunto de normas, leis, métodos e procedimentos utilizados para combater o crime na internet.</p>
<p>Entre os participantes deste debate, ao vivo na MTV, estavam: Deputado Julio Semeghini, Deputado Paulo Teixeira, Sérgio Amadeu, Camilla do Vale, Delegado Carlos Sobral e eu.</p>
<p>Na minha opinião, apesar da forte participação do Sérgio Amadeu, todos falamos sobre Governança na internet. Ou seja, debatemos sobre o exercício de autoridade e controle que o governo pode ter sobre a internet. Fato semelhante ao que está acontecendo na França – inclusive estive na França em outubro de 2009 – em relação a uma lei chamada LOPPSI II (Lei de Orientação e Programação para a Segurança Interior, em tradução livre). Uma das propostas da lei francesa é a possibilidade do governo instalar trojans (programas espiões) em computadores para monitorar pessoas suspeitas. Acredito que irão utilizar alguma tecnologia deste tipo, acesse <a href="http://www.accessdata.com/ediscovery.html">www.accessdata.com/ediscovery.html</a>. No caso da França estão rotulando como um Trojan mas pela minha experiência o governo irá utilizar ferramentas forense para monitorar algumas pessoas.</p>
<p>No Brasil a coisa é um pouco diferente. Algumas pessoas estão preocupadas com invasão de privacidade no caso dos provedores forem obrigados a armazenarem os logs. Ou seja, será possível identificar em quais sites (pornôs ou não&#8230; estou brincando.. rs rs rs) você anda navegando, com quais pessoas você está conversando por e-mail, quantas vezes por dia você acessa seu internet banking, entre outras coisas. Tecnicamente falando é muito simples os provedores conseguirem essas informações sobre seus usuários. Inclusive é muito fácil monitorar todo o conteúdo dos e-mails. Agora a questão é quanto vai custar ($$$) para os provedores armazenarem todos esses logs e como será a gestão disso tudo.</p>
<p>O Delegado Sobral fez um excelente comentário: &#8220;Não há liberdade sem segurança&#8221;. Eu tenho uma outra frase que sempre uso no meio corporativo: “Tudo que a empresa não pode monitorar deve ser bloqueado”. Eu sempre falo isso porque as empresas possuem sistemas de segurança que monitoram todo o ambiente computacional. Eu não posso “desligar” os logs do firewall quando um funcionário está utilizando o recurso da empresa para fins pessoais (por exemplo, acessando o internet banking). Eu não posso desabilitar o filtro de conteúdo da empresa para que um funcionário envie seus e-mails particulares. E caso a empresa esteja monitorando o programa de mensagem instantânea pessoal do seu funcionário ou até mesmo o e-mail particular, pode sofrer uma ação judicial relacionada a invasão de privacidade. Por isso eu sempre falo que tudo que a empresa não pode monitorar deve ser bloqueado.</p>
<p>Bom, este não foi primeiro e nem será o último debate sobre o assunto. Tudo isso tem sido discutido há anos e está evoluindo aos poucos. Um fato positivo é a interação entre os especialistas em segurança da informação, polícia e governo.</p>
<p>Sobre o programa, acontece uma reprise hoje à 01h30 e quinta (04/03) às 15h00 na MTV.</p>
<p>Voce também pode acompanhar os comentários no Mural da MTV. Acesse:<br />
http://mtv.uol.com.br/debate/mural.</p>
<p>Abraços, </p>
<p><strong>Denny Roger</strong><br />
denny@dennyroger.com.br<br />
55 11 8136 8025 </p>
<p>Siga me no Twitter: <a href="http://twitter.com/dennyroger">http://twitter.com/dennyroger</a><br />
Professional profile on LinkedIn: <a href="http://www.linkedin.com/in/dennyroger">http://www.linkedin.com/in/dennyroger</a><br />
Membro do International Association of Emergency Managers (IAEM)</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.dennyroger.com.br/2010/03/03/debate-sobre-leis-que-permitem-o-controle-da-internet/feed/</wfw:commentRss>
		</item>
	</channel>
</rss>
