<?xml version="1.0" encoding="utf-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: 25 Questions to Ask During an Information Security Interview</title>
	<atom:link href="http://danielmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview/feed" rel="self" type="application/rss+xml" />
	<link>http://danielmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview</link>
	<description>grep understanding</description>
	<lastBuildDate>Tue, 15 May 2012 12:09:13 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.2</generator>
	<item>
		<title>By: Daniel Miessler</title>
		<link>http://danielmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview/comment-page-1#comment-257958</link>
		<dc:creator>Daniel Miessler</dc:creator>
		<pubDate>Mon, 29 Aug 2011 21:07:00 +0000</pubDate>
		<guid isPermaLink="false">http://dmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview#comment-257958</guid>
		<description>&lt;p&gt;Wow, that&#039;s scary.&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>Wow, that&#8217;s scary.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Security Monkey</title>
		<link>http://danielmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview/comment-page-1#comment-257957</link>
		<dc:creator>Security Monkey</dc:creator>
		<pubDate>Mon, 29 Aug 2011 17:58:00 +0000</pubDate>
		<guid isPermaLink="false">http://dmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview#comment-257957</guid>
		<description>&lt;p&gt;I am witness to many interviews of infosec professionals.  I&#039;ve seen these exact questions (literally printed from your website) and asked VERY BADLY.  It&#039;s an important point that the interviewer fully understand and be able to answer these questions.  Otherwise, using them is a waste.  I witnessed a developer using these questions to interview an INFOSEC management candidate.  He asked the candidate the ping/port questions and the candidate answered correctly immediately - ICMP.  The interviewer said &quot;no, you have to give me a tcp or udp port number&quot;.  The interviewee was clearly frustrated and rolling his eyes and trying to be polite.  I eventually stepped in and told the interviewer to take a break and I&#039;d finish the interview.  Unreal!!!&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>I am witness to many interviews of infosec professionals.  I&#8217;ve seen these exact questions (literally printed from your website) and asked VERY BADLY.  It&#8217;s an important point that the interviewer fully understand and be able to answer these questions.  Otherwise, using them is a waste.  I witnessed a developer using these questions to interview an INFOSEC management candidate.  He asked the candidate the ping/port questions and the candidate answered correctly immediately &#8211; ICMP.  The interviewer said &#8220;no, you have to give me a tcp or udp port number&#8221;.  The interviewee was clearly frustrated and rolling his eyes and trying to be polite.  I eventually stepped in and told the interviewer to take a break and I&#8217;d finish the interview.  Unreal!!!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Security Monkey</title>
		<link>http://danielmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview/comment-page-1#comment-257956</link>
		<dc:creator>Security Monkey</dc:creator>
		<pubDate>Mon, 29 Aug 2011 17:58:00 +0000</pubDate>
		<guid isPermaLink="false">http://dmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview#comment-257956</guid>
		<description>&lt;p&gt;I am witness to many interviews of infosec professionals.  I&#039;ve seen these exact questions (literally printed from your website) and asked VERY BADLY.  It&#039;s an important point that the interviewer fully understand and be able to answer these questions.  Otherwise, using them is a waste.  I witnessed a developer using these questions to interview an INFOSEC management candidate.  He asked the candidate the ping/port questions and the candidate answered correctly immediately - ICMP.  The interviewer said &quot;no, you have to give me a tcp or udp port number&quot;.  The interviewee was clearly frustrated and rolling his eyes and trying to be polite.  I eventually stepped in and told the interviewer to take a break and I&#039;d finish the interview.  Unreal!!!&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>I am witness to many interviews of infosec professionals.  I&#8217;ve seen these exact questions (literally printed from your website) and asked VERY BADLY.  It&#8217;s an important point that the interviewer fully understand and be able to answer these questions.  Otherwise, using them is a waste.  I witnessed a developer using these questions to interview an INFOSEC management candidate.  He asked the candidate the ping/port questions and the candidate answered correctly immediately &#8211; ICMP.  The interviewer said &#8220;no, you have to give me a tcp or udp port number&#8221;.  The interviewee was clearly frustrated and rolling his eyes and trying to be polite.  I eventually stepped in and told the interviewer to take a break and I&#8217;d finish the interview.  Unreal!!!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: IT Secure Site &#187; Monday Catchup – 23/05/2011</title>
		<link>http://danielmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview/comment-page-1#comment-257339</link>
		<dc:creator>IT Secure Site &#187; Monday Catchup – 23/05/2011</dc:creator>
		<pubDate>Sat, 18 Jun 2011 10:42:30 +0000</pubDate>
		<guid isPermaLink="false">http://dmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview#comment-257339</guid>
		<description>&lt;p&gt;[...] Miessler posted “25 Questions to ask during an info-sec interview” here. we enjoyed this post. And no, we didn’t have all a [...]&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>[...] Miessler posted “25 Questions to ask during an info-sec interview” here. we enjoyed this post. And no, we didn’t have all a [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Anonymous</title>
		<link>http://danielmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview/comment-page-1#comment-257330</link>
		<dc:creator>Anonymous</dc:creator>
		<pubDate>Thu, 16 Jun 2011 11:28:00 +0000</pubDate>
		<guid isPermaLink="false">http://dmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview#comment-257330</guid>
		<description>&lt;p&gt;I test them in the SANS 504 class&quot; (or at a hackers conventiuon, or I set up a disposable network at home&lt;/p&gt;

&lt;p&gt;&lt;a href=&quot;http://www.autobidmaster.com/howtobuy-copart-auto-auctions/&quot; rel=&quot;nofollow&quot;&gt;Car Auctions&lt;/a&gt;&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>I test them in the SANS 504 class&#8221; (or at a hackers conventiuon, or I set up a disposable network at home</p>

<p><a href="http://www.autobidmaster.com/howtobuy-copart-auto-auctions/" rel="nofollow">Car Auctions</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Undead Security &#187; Blog Archive &#187; Monday Catchup &#8211; 23/05/2011</title>
		<link>http://danielmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview/comment-page-1#comment-257133</link>
		<dc:creator>Undead Security &#187; Blog Archive &#187; Monday Catchup &#8211; 23/05/2011</dc:creator>
		<pubDate>Thu, 26 May 2011 15:29:27 +0000</pubDate>
		<guid isPermaLink="false">http://dmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview#comment-257133</guid>
		<description>&lt;p&gt;[...] Miessler posted &#8220;25 Questions to ask during an info-sec interview&#8221; here. I enjoyed this post. And no, I didn&#8217;t have all the [...]&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>[...] Miessler posted &#8220;25 Questions to ask during an info-sec interview&#8221; here. I enjoyed this post. And no, I didn&#8217;t have all the [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: I. Ionescu</title>
		<link>http://danielmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview/comment-page-1#comment-255879</link>
		<dc:creator>I. Ionescu</dc:creator>
		<pubDate>Wed, 18 May 2011 11:36:24 +0000</pubDate>
		<guid isPermaLink="false">http://dmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview#comment-255879</guid>
		<description>&lt;p&gt;Good list.&lt;/p&gt;

&lt;p&gt;Some of them I guess should be asked at every technical interview (like the ICMP one), some of them quite security specific.
Thanks for putting this out for the community.&lt;/p&gt;

&lt;p&gt;I guess the thing we&#039;d all expect from a candidate is &quot;security judgement&quot; skills.&lt;/p&gt;

&lt;p&gt;Regards&lt;/p&gt;

&lt;p&gt;Ionut&lt;/p&gt;

&lt;p&gt;PS: can you guys believe somebody actually thought it&#039;s a good idea to spam us about Timerland boots .. on a security topic/ site? ....&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>Good list.</p>

<p>Some of them I guess should be asked at every technical interview (like the ICMP one), some of them quite security specific.
Thanks for putting this out for the community.</p>

<p>I guess the thing we&#8217;d all expect from a candidate is &#8220;security judgement&#8221; skills.</p>

<p>Regards</p>

<p>Ionut</p>

<p>PS: can you guys believe somebody actually thought it&#8217;s a good idea to spam us about Timerland boots .. on a security topic/ site? &#8230;.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: &#187; * Rekrutacja bezpiecznika -- Niebezpiecznik.pl --</title>
		<link>http://danielmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview/comment-page-1#comment-255390</link>
		<dc:creator>&#187; * Rekrutacja bezpiecznika -- Niebezpiecznik.pl --</dc:creator>
		<pubDate>Fri, 13 May 2011 11:16:25 +0000</pubDate>
		<guid isPermaLink="false">http://dmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview#comment-255390</guid>
		<description>&lt;p&gt;[...] ciekawych pytań, które warto (?) zadać podczas rekrutowania ludzi na stanowiska związane z bezpieczeństwem [...]&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>[...] ciekawych pytań, które warto (?) zadać podczas rekrutowania ludzi na stanowiska związane z bezpieczeństwem [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Random Nerd...</title>
		<link>http://danielmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview/comment-page-1#comment-255082</link>
		<dc:creator>Random Nerd...</dc:creator>
		<pubDate>Thu, 05 May 2011 03:35:00 +0000</pubDate>
		<guid isPermaLink="false">http://dmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview#comment-255082</guid>
		<description>&lt;p&gt;Create a sandbox environment.. :D&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>Create a sandbox environment.. :D</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Upholstery Cleaning Kendall</title>
		<link>http://danielmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview/comment-page-1#comment-254895</link>
		<dc:creator>Upholstery Cleaning Kendall</dc:creator>
		<pubDate>Wed, 16 Mar 2011 05:04:00 +0000</pubDate>
		<guid isPermaLink="false">http://dmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview#comment-254895</guid>
		<description>&lt;p&gt;This really is the very best post I understand as of these days.&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>This really is the very best post I understand as of these days.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Anonymous</title>
		<link>http://danielmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview/comment-page-1#comment-254884</link>
		<dc:creator>Anonymous</dc:creator>
		<pubDate>Tue, 15 Mar 2011 06:33:00 +0000</pubDate>
		<guid isPermaLink="false">http://dmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview#comment-254884</guid>
		<description>&lt;p&gt;Timberland is known globally for providing world class and distinct style shoes. Such shoes can be explored by people of any age, but they are more popular among teenagers. Available in an assortment of designs, colors and sizes, they can surprise any wearer. &lt;a href=&quot;http://www.linktimberland.com/&quot; rel=&quot;nofollow&quot;&gt;Timberland Shoes&lt;/A&gt; The company introduces boots for working professionals to offer relaxation, dependability and comfort on the job. Timberland shoes are not only trendy and fashionable, but are also lightweight. With a number of shoe manufacturers, Timberland obviously faces stiff competition; therefore it provides high quality products at economical rates. It is seen that Timberland shoes protect feet of individuals irrespective of their age and sex.Reasons behind popularity of Timberland shoesSuch shoes not only protect feet of individuals, but also provide maximum comfort when they go for outdoor activities such as shopping, visiting friends, camping, playing, tripping and so on. They are made by employing suede material; thus they are durable and reliant in all kinds of weather conditions. In fact, such shoes comprise of inbuilt suede materials. &lt;a href=&quot;http://www.linktimberland.com/&quot; rel=&quot;nofollow&quot;&gt;Timberland Boots&lt;/A&gt; Their feature of being durable and look stylish make them sought after by wearers located anywhere in the world. Their feature of being water resistant makes them one stop solution in the rainy season. Such shoes are durable and reliant; therefore they have been considered as perfect for a number of outdoor activities like hiking, climbing and so on. Timberland shoes are not only perfect for protecting the feet from the dust or cold, but also has become a fashion statement.Knowing about the history of Timberland shoesSince its inception in 1973, the company has been serving its a wide range of clients located anywhere in the world with casual shoes and boots. Later, it has started to manufacture designer shoes. High quality leather, soft suede and unique details are employed to prepare such &lt;a href=&quot;http://www.linktimberland.com/&quot; rel=&quot;nofollow&quot;&gt;Cheap Timberland boots&lt;/A&gt; shoes; therefore they are demanded by people from all walks of life. In addition, the great fitness and the superior quality features of such shoes attract people.Buying Timberland shoesOnline market has been considered as perfect place to buy different types of Timberland shoes at economical rates. Apart from products, their shipment facility is also economical and reliable.&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>Timberland is known globally for providing world class and distinct style shoes. Such shoes can be explored by people of any age, but they are more popular among teenagers. Available in an assortment of designs, colors and sizes, they can surprise any wearer. <a href="http://www.linktimberland.com/" rel="nofollow">Timberland Shoes</a> The company introduces boots for working professionals to offer relaxation, dependability and comfort on the job. Timberland shoes are not only trendy and fashionable, but are also lightweight. With a number of shoe manufacturers, Timberland obviously faces stiff competition; therefore it provides high quality products at economical rates. It is seen that Timberland shoes protect feet of individuals irrespective of their age and sex.Reasons behind popularity of Timberland shoesSuch shoes not only protect feet of individuals, but also provide maximum comfort when they go for outdoor activities such as shopping, visiting friends, camping, playing, tripping and so on. They are made by employing suede material; thus they are durable and reliant in all kinds of weather conditions. In fact, such shoes comprise of inbuilt suede materials. <a href="http://www.linktimberland.com/" rel="nofollow">Timberland Boots</a> Their feature of being durable and look stylish make them sought after by wearers located anywhere in the world. Their feature of being water resistant makes them one stop solution in the rainy season. Such shoes are durable and reliant; therefore they have been considered as perfect for a number of outdoor activities like hiking, climbing and so on. Timberland shoes are not only perfect for protecting the feet from the dust or cold, but also has become a fashion statement.Knowing about the history of Timberland shoesSince its inception in 1973, the company has been serving its a wide range of clients located anywhere in the world with casual shoes and boots. Later, it has started to manufacture designer shoes. High quality leather, soft suede and unique details are employed to prepare such <a href="http://www.linktimberland.com/" rel="nofollow">Cheap Timberland boots</a> shoes; therefore they are demanded by people from all walks of life. In addition, the great fitness and the superior quality features of such shoes attract people.Buying Timberland shoesOnline market has been considered as perfect place to buy different types of Timberland shoes at economical rates. Apart from products, their shipment facility is also economical and reliable.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: 25 Questions to Ask During an Information Security Interview &#124; danielmiessler.com : Popular Links : eConsultant</title>
		<link>http://danielmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview/comment-page-1#comment-254154</link>
		<dc:creator>25 Questions to Ask During an Information Security Interview &#124; danielmiessler.com : Popular Links : eConsultant</dc:creator>
		<pubDate>Sun, 21 Nov 2010 06:47:35 +0000</pubDate>
		<guid isPermaLink="false">http://dmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview#comment-254154</guid>
		<description>&lt;p&gt;[...] more from the original source: 25 Questions to Ask During an Information Security Interview &#124; danielmiessler.com   20 June 2009  &#124; Uncategorized &#124; Trackback &#124; del.icio.us &#124; Stumble it! &#124; View Count : 0  Next Post [...]&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>[...] more from the original source: 25 Questions to Ask During an Information Security Interview | danielmiessler.com   20 June 2009  | Uncategorized | Trackback | del.icio.us | Stumble it! | View Count : 0  Next Post [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: 25 Questions to Ask During an Information Security Interview &#124; danielmiessler.com &#171; Netcrema &#8211; creme de la social news via digg + delicious + stumpleupon + reddit</title>
		<link>http://danielmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview/comment-page-1#comment-254151</link>
		<dc:creator>25 Questions to Ask During an Information Security Interview &#124; danielmiessler.com &#171; Netcrema &#8211; creme de la social news via digg + delicious + stumpleupon + reddit</dc:creator>
		<pubDate>Sat, 20 Nov 2010 20:12:51 +0000</pubDate>
		<guid isPermaLink="false">http://dmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview#comment-254151</guid>
		<description>&lt;p&gt;[...] 25 Questions to Ask During an Information Security Interview &#124; danielmiessler.comdanielmiessler.com [...]&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>[...] 25 Questions to Ask During an Information Security Interview | danielmiessler.comdanielmiessler.com [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Jim</title>
		<link>http://danielmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview/comment-page-1#comment-254149</link>
		<dc:creator>Jim</dc:creator>
		<pubDate>Sat, 20 Nov 2010 16:45:00 +0000</pubDate>
		<guid isPermaLink="false">http://dmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview#comment-254149</guid>
		<description>&lt;p&gt;Umm, I&#039;m not a security expert (just a random unix admin), but I could answer all of those questions.&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>Umm, I&#8217;m not a security expert (just a random unix admin), but I could answer all of those questions.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Ilango Al</title>
		<link>http://danielmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview/comment-page-1#comment-253870</link>
		<dc:creator>Ilango Al</dc:creator>
		<pubDate>Sun, 03 Oct 2010 14:12:00 +0000</pubDate>
		<guid isPermaLink="false">http://dmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview#comment-253870</guid>
		<description>&lt;p&gt;amazing list of questions!!!&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>amazing list of questions!!!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: dryanhawley</title>
		<link>http://danielmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview/comment-page-1#comment-244402</link>
		<dc:creator>dryanhawley</dc:creator>
		<pubDate>Fri, 14 May 2010 01:02:55 +0000</pubDate>
		<guid isPermaLink="false">http://dmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview#comment-244402</guid>
		<description>&lt;p&gt;Here is another question.  &quot;How do you keep up on hacker tools, and how do you test them?&quot;.&lt;br&gt;&lt;br&gt;The lower skill level answer would be, &quot;I don&#039;t!  I swore I wouldn&#039;t associate with Hackers or use their tools when I got my CISSP!&quot;  The &quot;better&quot; IMO &lt;br&gt;answer would be, &quot;I use a sacrificial lamb computer to get them off The Net&quot;&lt;br&gt;(because a lot of hacker sites will, in fact, hack you while you get the tool).&lt;br&gt;As for testing them, the best answer(s) might be &quot;I test them in the SANS 504 class&quot; (or at a hackers conventiuon, or I set up a disposable network at home (or in a detached lab) so as to not be the cause of bringing down production or personal computers.  Bonus points for things like, &quot;afterwards I do a 6 pass destructive format on my HD, including boot sectors, and reflash my BIOS from a LINUX booted OS disk, stuff like that.&lt;br&gt;&lt;br&gt;Reading about them on a security site shows less enthusiasm. &lt;br&gt;&lt;br&gt;&quot;Know thy enemy&quot;&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>Here is another question.  &#8220;How do you keep up on hacker tools, and how do you test them?&#8221;.<br /><br />The lower skill level answer would be, &#8220;I don&#39;t!  I swore I wouldn&#39;t associate with Hackers or use their tools when I got my CISSP!&#8221;  The &#8220;better&#8221; IMO <br />answer would be, &#8220;I use a sacrificial lamb computer to get them off The Net&#8221;<br />(because a lot of hacker sites will, in fact, hack you while you get the tool).<br />As for testing them, the best answer(s) might be &#8220;I test them in the SANS 504 class&#8221; (or at a hackers conventiuon, or I set up a disposable network at home (or in a detached lab) so as to not be the cause of bringing down production or personal computers.  Bonus points for things like, &#8220;afterwards I do a 6 pass destructive format on my HD, including boot sectors, and reflash my BIOS from a LINUX booted OS disk, stuff like that.<br /><br />Reading about them on a security site shows less enthusiasm. <br /><br />&#8220;Know thy enemy&#8221;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: dryanhawley</title>
		<link>http://danielmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview/comment-page-1#comment-244201</link>
		<dc:creator>dryanhawley</dc:creator>
		<pubDate>Thu, 13 May 2010 20:02:55 +0000</pubDate>
		<guid isPermaLink="false">http://dmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview#comment-244201</guid>
		<description>&lt;p&gt;Here is another question.  &quot;How do you keep up on hacker tools, and how do you test them?&quot;.&lt;br&gt;&lt;br&gt;The lower skill level answer would be, &quot;I don&#039;t!  I swore I wouldn&#039;t associate with Hackers or use their tools when I got my CISSP!&quot;  The &quot;better&quot; IMO &lt;br&gt;answer would be, &quot;I use a sacrificial lamb computer to get them off The Net&quot;&lt;br&gt;(because a lot of hacker sites will, in fact, hack you while you get the tool).&lt;br&gt;As for testing them, the best answer(s) might be &quot;I test them in the SANS 504 class&quot; (or at a hackers conventiuon, or I set up a disposable network at home (or in a detached lab) so as to not be the cause of bringing down production or personal computers.  Bonus points for things like, &quot;afterwards I do a 6 pass destructive format on my HD, including boot sectors, and reflash my BIOS from a LINUX booted OS disk, stuff like that.&lt;br&gt;&lt;br&gt;Reading about them on a security site shows less enthusiasm. &lt;br&gt;&lt;br&gt;&quot;Know thy enemy&quot;&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>Here is another question.  &#8220;How do you keep up on hacker tools, and how do you test them?&#8221;.<br /><br />The lower skill level answer would be, &#8220;I don&#39;t!  I swore I wouldn&#39;t associate with Hackers or use their tools when I got my CISSP!&#8221;  The &#8220;better&#8221; IMO <br />answer would be, &#8220;I use a sacrificial lamb computer to get them off The Net&#8221;<br />(because a lot of hacker sites will, in fact, hack you while you get the tool).<br />As for testing them, the best answer(s) might be &#8220;I test them in the SANS 504 class&#8221; (or at a hackers conventiuon, or I set up a disposable network at home (or in a detached lab) so as to not be the cause of bringing down production or personal computers.  Bonus points for things like, &#8220;afterwards I do a 6 pass destructive format on my HD, including boot sectors, and reflash my BIOS from a LINUX booted OS disk, stuff like that.<br /><br />Reading about them on a security site shows less enthusiasm. <br /><br />&#8220;Know thy enemy&#8221;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: 10 Questions To Ask During An Information Security Interview &#124; danielmiessler.com</title>
		<link>http://danielmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview/comment-page-1#comment-244197</link>
		<dc:creator>10 Questions To Ask During An Information Security Interview &#124; danielmiessler.com</dc:creator>
		<pubDate>Thu, 13 May 2010 08:49:59 +0000</pubDate>
		<guid isPermaLink="false">http://dmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview#comment-244197</guid>
		<description>&lt;p&gt;[...] InterviewBy Daniel Miessler on January 7th, 2007: Tagged as Career &#124; Jobs &#124; SecurityPost updated here.Related PostsUpdated PGP InformationInternet Security LoveInformation Security: The End of the Wild [...]&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>[...] InterviewBy Daniel Miessler on January 7th, 2007: Tagged as Career | Jobs | SecurityPost updated here.Related PostsUpdated PGP InformationInternet Security LoveInformation Security: The End of the Wild [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Hasib</title>
		<link>http://danielmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview/comment-page-1#comment-244140</link>
		<dc:creator>Hasib</dc:creator>
		<pubDate>Sat, 24 Apr 2010 19:34:12 +0000</pubDate>
		<guid isPermaLink="false">http://dmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview#comment-244140</guid>
		<description>&lt;p&gt;Diffie-Hellman is a Key-agreement scheme, it is not a Key-exchange scheme.&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>Diffie-Hellman is a Key-agreement scheme, it is not a Key-exchange scheme.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: rathinapandi</title>
		<link>http://danielmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview/comment-page-1#comment-241883</link>
		<dc:creator>rathinapandi</dc:creator>
		<pubDate>Fri, 27 Feb 2009 11:38:27 +0000</pubDate>
		<guid isPermaLink="false">http://dmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview#comment-241883</guid>
		<description>&lt;p&gt;good stuff&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>good stuff</p>
]]></content:encoded>
	</item>
</channel>
</rss>

