Bruber CloudSecOps 

114 Followers
59 Following
565 Posts

20 years of slinging code. Moved to Application Security. Now leading a kick-ass Cloud Security team. The animal I channel is the octopus since it will occasionally punch passing fish for no reason. Proud member of the Jewish Space Laser Corps, Mishuggah Division. Proudly owned by my wife, two sons, and two cats.

Supports LGBTQ+, environment, BIPoC, women's rights, actually, all human rights.

Verificationhttps://tinfoilhat.brubernator.com/mastodon
Pronounshe/him
Githubhttps://github.com/bp4151
LinkedInhttps://www.linkedin.com/in/bruceparr-6ja33w9v
If you ever filed with the US Dept of Ed

nextdoor.com
the CDC now recommends getting an aquarium and growing your own leeches

It's been a minute since I've posted anything relevant.

Back in August, we made a recommendation to our leadership to realign our teams so we could better support our internal customers. As a result, on Jan 1st I picked up two more engineers on my team and took over our Cloud Security operations. We're still doing a lot of traditional AppSec work from an advisory and/or training perspective, but now we get to play in the Cloud space.

Its been a wild ride, gutting and building out a whole new program. Hopefully by end of the fiscal year, we'll have a solid new program built to scale with all processes at least partially automated.

#appsec #cloudsec

@btanderson

Data classification to understand what data a company actually has, and why

Maximising data minimization so there's less data to secure

Purging unneeded data so there's less data to get hacked

Understanding present and future data handling responsibilities to avoid massive fines

There's a good reason why I don't do #offsec. I don't have enough self control to keep myself from hacking the self-checkout machines to yell "it puts the lotion in the basket!" when a customer scans skin lotion.

So I am not a financial person, but I was thinking of what could happen if the Federal government could
1. establish a list of the top 10 most critical medications from a health and cost perspective under patent,
2. buy out the remaining patent using the present value of the sum of profit to the company patent holder.

This could potentially
1. allow immediate generic production
2. reduce the cost of medication to individuals, insurers, and Medicare/Medicaid
3. transfer money spent on medication directly or copays back to the economy in the form of discretionary spend. Meds aren't subject to sales tax, but other purchases are so States with sales tax would benefit.
4. give drug manufacturers a larger amount of money up front.

I'd think the shift in money would offset the government buyout over time through additional taxes paid from the extra money in the economy instead of being paid to purchase meds.

I'd love to see this investigated and beta tested on one medication to see if it's a viable idea.

Three loops of Climb Practice Route #5 today

20.9mi 1,729ft 1hr47min

Fun short climb ride for Labor Day. I normally ride 30-70mi for endurance training, so this was my first dedicated climbing ride. It was fun and challenging. There will be more.

#BicyclePittsburgh #BikePittsburgh #Bicycling412

https://ridewithgps.com/trips/217555836?privacy_code=NIakQv4OQJFL6OylPyq3WIdU0HIT0BNb

09/02/24

20.9 mi, +1728 ft. Bike ride in Pittsburgh, PA

If you're over 45, get a colonoscopy.

I know someone in her 60s who recently had her first colonoscopy. They found a tumor, requiring surgery to remove a section of her colon. She had no symptoms before, and is an otherwise healthy and active person.

The pathology report showed that the tumor had just penetrated the outer wall of her colon. If she'd waited longer, it would have metastasized. An earlier colonoscopy could have nipped it as a polyp.

Just do it. It could save your life.

Kamala Harris acknowledges the rape of Israeli women on October 7th during her #DNC2024 speech 👏👏👏👏🇺🇲🇮🇱
Excited that my first time voting in the USA would be for her.