The Blog

Chris to present at COSAC 2016

Chris will be presenting two sessions at COSAC 2016 held in Ireland between the 2 – 6 October 2016.  The following provides a synopsis of his sessions, visit the COSAC website here for more information and the full conference schedule.
Read More

Who cares about unique identifiers?

Almost everyone has been on the receiving end of a request to provide photo identification (most commonly a drivers’ licence or a passport) when applying for a bank account, or purchasing a new mobile phone, or some similar account-based transaction. The person making the request typically either writes down the details of the document or photocopies it. But there is one piece of information that should not be captured unless there is a legitimate reason to – the unique identifier.
Read More


SEI Incident Handling Training

It is too late to start figuring out what to do when a cyber security incident occurs. If your organisation has not thought about how to identify a significant incident, who needs to be involved and what steps it needs to take to resolve the incident then it is likely to struggle to bring the incident to a timely resolution.
Read More

There is still only one way to eliminate risk

This is not a new post, I originally wrote and published it nearly six years ago. However, based on a number of discussions I have been party to over the last few weeks, not much has changed since it was published so I thought I would repost it as a prologue for a new series of blog posts about risk, risk assessment and risk management.

Read More


Axenic Becomes SEI Partner

4th February 2016, Wellington, New Zealand. Axenic Ltd today announced that it has been accepted as a Partner by the Carnegie Mellon University Software Engineering Institute (SEI). As an SEI Partner, Axenic is licensed to provide official SEI services in Information Security.

Read More