<?xml version="1.0" encoding="utf-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: 25 Questions to Ask During an Information Security Interview</title>
	<atom:link href="http://danielmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview/feed" rel="self" type="application/rss+xml" />
	<link>http://danielmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview</link>
	<description>grep understanding</description>
	<lastBuildDate>Fri, 19 Mar 2010 22:30:03 -0500</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: rathinapandi</title>
		<link>http://danielmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview/comment-page-1#comment-241883</link>
		<dc:creator>rathinapandi</dc:creator>
		<pubDate>Fri, 27 Feb 2009 11:38:27 +0000</pubDate>
		<guid isPermaLink="false">http://dmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview#comment-241883</guid>
		<description>&lt;p&gt;good stuff&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>good stuff</p>]]></content:encoded>
	</item>
	<item>
		<title>By: rathinapandi</title>
		<link>http://danielmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview/comment-page-1#comment-240788</link>
		<dc:creator>rathinapandi</dc:creator>
		<pubDate>Fri, 27 Feb 2009 06:38:27 +0000</pubDate>
		<guid isPermaLink="false">http://dmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview#comment-240788</guid>
		<description>&lt;p&gt;good stuff&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>good stuff</p>]]></content:encoded>
	</item>
	<item>
		<title>By: MR AKBAR</title>
		<link>http://danielmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview/comment-page-1#comment-240526</link>
		<dc:creator>MR AKBAR</dc:creator>
		<pubDate>Mon, 02 Feb 2009 00:37:20 +0000</pubDate>
		<guid isPermaLink="false">http://dmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview#comment-240526</guid>
		<description>&lt;p&gt;VERY NICE LIST EXCELENT:&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>VERY NICE LIST EXCELENT:</p>]]></content:encoded>
	</item>
	<item>
		<title>By: Daniel Miessler</title>
		<link>http://danielmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview/comment-page-1#comment-232292</link>
		<dc:creator>Daniel Miessler</dc:creator>
		<pubDate>Sun, 23 Nov 2008 22:05:59 +0000</pubDate>
		<guid isPermaLink="false">http://dmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview#comment-232292</guid>
		<description>&lt;p&gt;@Curtis Thank you for that.&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>@Curtis Thank you for that.</p>]]></content:encoded>
	</item>
	<item>
		<title>By: Arik</title>
		<link>http://danielmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview/comment-page-1#comment-232282</link>
		<dc:creator>Arik</dc:creator>
		<pubDate>Sun, 23 Nov 2008 21:30:15 +0000</pubDate>
		<guid isPermaLink="false">http://dmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview#comment-232282</guid>
		<description>&lt;p&gt;A network analysis D&amp;D? Ouch.&lt;/p&gt;

&lt;p&gt;Nice list, Daniel. I think you should float all the easy questions to the top, so that you can vet the incompetent early in the process.&lt;/p&gt;

&lt;p&gt;What I like to ask a candidate is &quot;what are you best at? what do people come to you about when they need help?&quot; and then drill down into the bits and bytes on that topic. That shows me if they take what they do seriously enough to have an in-depth understanding of it. Also, at some point in time my questions inevitably exceed their knowledge (I might ask about things I don&#039;t know about...) and then I expect them to tell me they don&#039;t know and will find out. If they try to BS me... NEXT!&lt;/p&gt;

&lt;p&gt;Also as mentioned I like to ask about the bigger picture, what does it all mean from an organizational point of view.&lt;/p&gt;

&lt;p&gt;-- Arik&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>A network analysis D&amp;D? Ouch.</p>

<p>Nice list, Daniel. I think you should float all the easy questions to the top, so that you can vet the incompetent early in the process.</p>

<p>What I like to ask a candidate is &#8220;what are you best at? what do people come to you about when they need help?&#8221; and then drill down into the bits and bytes on that topic. That shows me if they take what they do seriously enough to have an in-depth understanding of it. Also, at some point in time my questions inevitably exceed their knowledge (I might ask about things I don&#8217;t know about&#8230;) and then I expect them to tell me they don&#8217;t know and will find out. If they try to BS me&#8230; NEXT!</p>

<p>Also as mentioned I like to ask about the bigger picture, what does it all mean from an organizational point of view.</p>

<p>&#8211; Arik</p>]]></content:encoded>
	</item>
	<item>
		<title>By: Curtis Lassam</title>
		<link>http://danielmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview/comment-page-1#comment-231604</link>
		<dc:creator>Curtis Lassam</dc:creator>
		<pubDate>Sat, 22 Nov 2008 05:26:24 +0000</pubDate>
		<guid isPermaLink="false">http://dmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview#comment-231604</guid>
		<description>&lt;blockquote&gt;
  &lt;p&gt;I sniff the external connection using tcpdump on port 80. Do I see any connections to IP 4.2.2.2?&lt;/p&gt;
&lt;/blockquote&gt;

&lt;p&gt;Roll a d20.&lt;/p&gt;

&lt;p&gt;A one? You don&#039;t see any connections to IP 4.2.2.2.&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<blockquote>
  <p>I sniff the external connection using tcpdump on port 80. Do I see any connections to IP 4.2.2.2?</p>
</blockquote>

<p>Roll a d20.</p>

<p>A one? You don&#8217;t see any connections to IP 4.2.2.2.</p>]]></content:encoded>
	</item>
	<item>
		<title>By: The Real Steve C</title>
		<link>http://danielmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview/comment-page-1#comment-231589</link>
		<dc:creator>The Real Steve C</dc:creator>
		<pubDate>Sat, 22 Nov 2008 04:50:59 +0000</pubDate>
		<guid isPermaLink="false">http://dmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview#comment-231589</guid>
		<description>&lt;p&gt;Nice list, lol&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>Nice list, lol</p>]]></content:encoded>
	</item>
	<item>
		<title>By: Mark Gamache</title>
		<link>http://danielmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview/comment-page-1#comment-231314</link>
		<dc:creator>Mark Gamache</dc:creator>
		<pubDate>Fri, 21 Nov 2008 17:10:03 +0000</pubDate>
		<guid isPermaLink="false">http://dmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview#comment-231314</guid>
		<description>&lt;p&gt;This is great stuff!  I&#039;ve had to argue with seasoned security professionals about DH being subject to MITM.  A great follow up on that, they they miss it, is have them whiteboard for you how it works and then watch to see how they react when you white board the key switch.  If you see the light bulb go on, they may still be OK.  Even professionals take the pre-established trust of a local keystore for granted.&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>This is great stuff!  I&#8217;ve had to argue with seasoned security professionals about DH being subject to MITM.  A great follow up on that, they they miss it, is have them whiteboard for you how it works and then watch to see how they react when you white board the key switch.  If you see the light bulb go on, they may still be OK.  Even professionals take the pre-established trust of a local keystore for granted.</p>]]></content:encoded>
	</item>
	<item>
		<title>By: Scott</title>
		<link>http://danielmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview/comment-page-1#comment-231268</link>
		<dc:creator>Scott</dc:creator>
		<pubDate>Fri, 21 Nov 2008 14:02:36 +0000</pubDate>
		<guid isPermaLink="false">http://dmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview#comment-231268</guid>
		<description>&lt;p&gt;My favorite question is &quot;Prove to me you can protect my network&quot;.  Poor candidates begin speaking about technology and solutions, good candidates talk about their previous experience, and great candidates take a high level view of the issue and speak about how they will help promote change, get management on board and begin to address the true scope of this open ended question.&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>My favorite question is &#8220;Prove to me you can protect my network&#8221;.  Poor candidates begin speaking about technology and solutions, good candidates talk about their previous experience, and great candidates take a high level view of the issue and speak about how they will help promote change, get management on board and begin to address the true scope of this open ended question.</p>]]></content:encoded>
	</item>
	<item>
		<title>By: randy</title>
		<link>http://danielmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview/comment-page-1#comment-231261</link>
		<dc:creator>randy</dc:creator>
		<pubDate>Fri, 21 Nov 2008 13:39:25 +0000</pubDate>
		<guid isPermaLink="false">http://dmiessler.com/blog/25-questions-to-ask-during-an-information-security-interview#comment-231261</guid>
		<description>&lt;p&gt;Nice list. I&#039;ve weeded people out before with the ping, tracert, and http vs html questions before.  Good stuff!&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>Nice list. I&#8217;ve weeded people out before with the ping, tracert, and http vs html questions before.  Good stuff!</p>]]></content:encoded>
	</item>
</channel>
</rss>
