How are you preparing for Bird Flu?

A colleague and I where having a discussion today concerning the business implications of Bird Flu (http://www.cdc.gov/flu/avian/). At the present rate Bird Flu could reach the US as early as this fall and nearly 50% of the human infections thus far have resulted in death (need to check that stat – 2nd hand). Considering the potential threat, if the disease mutates and changes into a form that is highly infectious for humans, his company is preparing for bird flu by deploying a VPN solution that will allow telecommuting for all necessary job functions. While VPN is already implemented in the organization it currently has some limitations:
• Concurrent users on the current platform is not sufficient
• No VoIP support
• No access to development systems
• No access to management of DMZ devices from outside
• No Network Access Control (NAC) for systems before accessing the LAN
• No 2 factor authentication
• Applications are in use on the local LAN with high bandwidth requirements that may not work over cable and DSL networks.
• Reliability of cable and DSL networks

How are your organizations preparing for a pandemic like Bird Flu?

Has Anyone Used certmagic For Cissp?, CISSP

Has anyone used certmagic.com for CISSP Certified Information Systems
Security Professional to study for the CISSP exam?

SEC100 / CISSP Prep Guide

I took SEC100 at Interface Technical Training (Full Disclosure Note: InterfaceTT generously host the meetings of the AZSPF)* and used the CISSP Prep Guide from Wiley (one of several texts that were used in the class). I found that the class was very beneficial in that it illustrated many of the concepts with lab exercises and discussion. It also helped me focus on the areas that I needed to study most. I was pretty methodical with the book. I read 40-50 pages a day and then reviewed anything that I felt I didn't understand or scored poorly on in a practice test. I'd say that my review lasted for the better part of a month.

Of course, I have harbored an interest in security and crypto for years and spent many years on the operations side of network security prior to taking the class or the CISSP exam. An ex-NSA friend taught me the basics of asymmetric crypto years ago. I probably learned far more about security than just asym-crypto from my NSA friend. Maybe I had a relative head-start in that respect. Also, I know that Dale at Interface is constanlty updating and improving the curriculum, so today's SEC100 may be quite different from when I took it (probably better).

*Dale (blog) and I dreamed up the AZSPF while I was taking SEC100 because we saw a niche in the security users' group area that was not being served. A couple other close friends Alan and Ken have been big supporters of the group. Props to all!

Network World on Bird Flu

Network World on Bird Flu:

"...planning is essential, according to Gartner, which has published a report titled 'Prepare Now for a Coming Avian Influenza Pandemic.'"

Enjoy!

Geoff

[edited 03/20/06 to make link hyper and added quote - tintagel]