18 Oct 2011

I'm in Israel From October 25 - November 3. Let's Connect!

I am going to be in Israel from October 25th to November 3rd, and looking to meet with candidate clients in fabless semiconductors, security, enterprise software, cloud, green and water technologies.

Dsc_0627

I am also open to meeting with Israeli VCs who have portfolio companies.  

If you can bring your companies together in a conference room at your offices, I am open to putting on a free 45 minute session on the basics of PR, the application of the social web for communications strategy, and content development strategies.

I'll also be helping Jeff Pulver with the #140Conf Tel Aviv which takes place on November 2.  This is going to be a very special event.  Please join us by registering here.

Startups Welcomed:)

If you're a startup, and even if you don't have an immediate budget for PR, I am still open to meeting you if you we can meet at The Diaghilev Hotel in Tel Aviv which is at 56 Mazeh at Rothchild.  I might be able to give you some basic pointers on messaging, communications strategy and outreach.  

I don't charge for this.  

I just do it because I love helping startups.  

There's lots of great coffee places near my hotel, or maybe just a walk up and down Rothchild Boulevard might be something good to do.

To learn more about the companies in have worked with just click here.

Reach out to me any time, here.

19 Jan 2011

Tech PR Strategies - How Contributed Stories Help Reinforce Your Thought Leadership

One of the areas I try to focus on with technology clients is to work a company's Chief Technical Officer to help set the tone and being a credible voice for the company's thought leadership.

Dsc_5190

Take a clue from client, Dan Cornell, who is the primary author of the Denim Group's blog, is active on Twitter and authors contributed articles such as this one in Securities Technology Monitor.

Here's some helpful tips to follow:

1.  Realize your company's CTO is busy, so start with some realistic goals for contributed stories.  Depending on your market space, aiming for two per year or once per quarter might be a great place to start. 

2.  Think about vertical market media and how your technology, platform, or service  helps solve problems or disrupt markets where you are impacting.

3.  Be helpful.  Be informative.  But don't sell.  You're being given a precious piece of real estate, on a publication's site or in their physical publication.  Respect it as such, offering helpful, practical and actionable insights that demonstrate your expertise.

4.  Build extended content from your contributed article.  Have links to related work you have done.  If you are recommending an inventory of actionable items, develop a worksheet the reader can download and take action.

5.  Embed video.  You don't need high end production values.  A Kodak Zi-8 is an ideal platform, and what I use on many of my own at my YouTube channel.  Your iPhone - or any current smartphone also produces great quality videos as well. 

6.  Don't just publish.  Engage.  As your readers for feedback.  Post your article on your social profiles and make sure your sales and business development teams do likewise.

7.  When you are pitching your story idea, look into the publication's editorial calendar, giving you a road map of what the publication is going to be covering in the year to come.

8.   Provide an abstract as a baseline for the contributed article.  Generally a paragraph or two will more than suffice - outlining what the author intends to write about, why it's timely and relevant to the readership of the publication.

9.   Make it exclusive.  While implied, make sure the editor you are working with know that this is an original body of work and that it won't appear verbatim in another publication.

10.  Buy article reprint rights.  Here's an example from Ziff-Davis.  Even in this digital world, reprints make great sales tools for your business development team.  Make sure you also adhere to linking rights.  Your milage will vary from publisher to publisher to best to inquire before you start promoting your work.

Have you had success with contributed articles?  Chime in and share your story.

Photo shot with a wide angle lens somewhere in Iceland by Alan Weinkrantz - feel free to share with appropriate credits.

5 Jan 2011

What to Watch for at #CES: #SmartPhonesDumbApps - cc: @danielcornell @johnbdickson

This year's CES is going to have tons of noise and hype about smart phones and tablets.  

Tomorrow, Apple is going to launch is new MacApps store.  In your search for something shiny, something new, listen to what Dan Cornell, CTO of Denim Group (client) has to share with his insights on mobile security issues and what he calls SmartPhones / Dumb Apps.

 

 

4 Jan 2011

Client, Denim Group, Group Provides Guidance on Application Security Trends for 2011

Client, Denim Group, today announced its annual guidance on application security trends for 2011.  

Mobile Applications, Shifting to The Cloud, Malware on the iTunes / Droid Stores, The Smart Grid and More, Give Rise to New Forms of Application Security Threats in the New Year to Come

You may view the news release here on Yahoo News, or read / print the document below.

If you would like to interview Denim Group, CTO, Dan Cornell, please reach out to me - alan at weinkrantz dot com.

Click here to download:
2011Trends-_clean4.0.doc (41 KB)
(download)


 

17 Nov 2010

Security Media / Analysts / Bloggers - How to Guide for Software Security Vulnerability Remediation from Client, #DenimGroup

Client, Denim Group, has a compelling presentation on the subject of Software Security Vulnerability Remediation.  It's a handy and very practical "How to Guide" that can be adapted as source material for stories on the subject.

Denim Group does a lot of software security remediation projects, so they put together a how-to-guide based on their experiences.

How-To-Guide for Software Security Vulnerability Remediation

Most internal development teams are experts with coding and application development but lack the tools and methodology needed to efficiently remediate security flaws in web applications.

Denim Group's consultants are all practicing developers who track the latest software trends and methodology and have the expertise to fix vulnerabilities in the source code.

If you are a journalist, blogger or analyst looking for year-end security wrap up stories, or stories for 2011 trends, please reach out to me - alan at weinkrantz dot com and I will connect with Denim Group CTO - Dan Cornell.

View more documents from Denim Group.

 

7 Jun 2010

Media / Bloggers / Analysts Covering #ApplicationSecurity - Now Available from Client #DenimGroup: The Permanent Campaign: Driving a Secure Software Initiative in the Enterprise

If you're a member of the media, blogger or industry analyst covering #ApplicationSecurity, client, John Dickson, CISSP from Denim Group is available for insights and interviews on the concept of The Permanent Campaign.

Reach out: alan at weinkrantz dot com for interview information.

25 Jan 2010

Texas Lyceum's “Our Growing Lives Online: Safe or Not?” - San Antonio Feb 5 / 6 - The Great Debate

The Texas Lyceum convenes its first quarterly meeting of 2010 in San Antonio to tackle the sensitive topic of risks associated with our connected lives.

The weekend will explore the risks we incur by having much of our information available and potentially vulnerable on the Internet. Be it social media, online banking or buying something on E-bay, hackers are increasingly able to piece together information from disparate sources to put our reputation, finances, and identities at risk.

The centerpiece for the weekend will be the first public debate of the Lyceum’s 2010 “Great Debate” series. The debate, to be televised statewide via public television, will tackle the thorny issue of whether existing laws and technologies adequately protect our data and identities in an online world.

Panelists will represent opposing viewpoints in this debate – hackers and privacy advocates who will argue these protections are inadequate, and security leaders and government leaders who will argue that laws and technologies are closing the gap.

The weekend will include interactive and team activities to help Lyceum Directors better understand how these privacy and security risks affect their day-to-day lives. An intended goal of the weekend will be to raise the level of awareness for Lyceum Directors regarding public policy involving online security and privacy.

The backdrop of the conference will be San Antonio and its growing cyber security industry. Acknowledging that San Antonio is becoming an emerging center of computer security activity, the United States Air Force is currently locating its 24th Air Force Cyber Command at the city’s Lackland AFB.

Click here for the weekend agenda.

Members of the media, industry analysts and bloggers covering security and privacy issues, please contact me - alan at weinkrantz dot com for more information.

15 Jan 2010

Client, Denim Group, Previews Release of its Vulnerability Manger - Java/Spring/Hibernate-based web application allowing organizations to automate and centrally manage administration of many of the functions of an application security program

Client, Denim Group just made the “technology preview” release of their Vulnerability Manager application available.  This is an internal Denim Group project they’ve been working on for a number of months.  It has been through a number of private and semi-public demonstrations, so they are really excited to make it available to a broader audience.

If you're an industry analyst, journalist, or blogger covering application security, reach out to me at: alan at weinkrantz dot com for a briefing.

Here's a quick overview....

Vulnerability Manager is a Java/Spring/Hibernate-based web application allowing organizations to automate and centrally manage administration of many of the functions of an application security program:

· Create and maintain a portfolio of applications

· Import and merge vulnerability results from a variety of free and commercial static and dynamic scanning tools

· Automatically generate WAF and IDS/IPS rules for identified vulnerabilities (virtual patching)

· Track attack statistics for vulnerabilities based on WAF and IDS/IPS logs

· Bundle vulnerabilities and send them to defect tracking systems

· Track team maturity practices according to standards such as OpenSAMM

There is an online screencast demo here:

Vulnerability Manager sprung from a number of conversations and engagements we had with clients discussing the problems they faced getting application security programs working in their organizations.  At Denim Group we have been fortunate to have the opportunity to work with folks across the spectrum of application security maturity and we think we have assembled some capabilities that will be compelling to many organizations.

Please remember, this is a “technology preview” release of the application.  What this means is:

· In short – it still needs serious work before I would put it in production.  Please be kind and constructive in your feedback

· It works well for our example files under controlled conditions.  Outside of those circumstances…  good luck (please let us know about any issues)

· The application has not been through a proper security review and has, in fact, been built in an ad hoc manner that we are aggressively working to correct (please do as we say, not as we’ve done thusfar)

· A number of must-have features surrounding configuration and workflow have not yet been completed.  Those are in progress

· Vulnerability Manager” is a terrible name for an application and we promise to come up with something cooler

If you explore the Vulnerability Manager site you can see a demonstration video showing how this works as well as some screenshots.  You can also download a running Tomcat-hosted version of the code.  We welcome feedback – especially constructive feedback.  Please submit feedback here.

 

6 Jan 2010

Client, Denim Group, Provides Guidance on Application Security Trends for 2010

Client, Denim Group, an IT consultancy and strong contributor to the larger application security community, has just announced that it foresees shifts in the application security landscape this year. As a trusted advisor to many Fortune 500 and large public sector organizations, the firm has just announced its guidance on the top application security trends for 2010.

eWeek broke the story earlier.  You may view the release on Yahoo Finance here.
27 Oct 2009

Journalists, Industry Analysts, Bloggers....need topical experts for Application Security? Follow client, @danielcornell and @johnbdickson / Denim Group

Members of the media, industry analysts, and bloggers - if you need topical expertise on Application Security, Software Security and issues critical to assessing and mitigating risks with their existing software  please reach out to me at alan at weinkrantz dot com.  I'll connect you with client, Denim Group.  

Follow Denim Group Principals - @danielcornell and @johnbdickson on twitter.

Screen_shot_2009-10-25_at_4

graphic done using Wordle.net
mode: space; -webkit-line-break: after-white-space; ">



Contributors

Alan Weinkrantz