GQ aka Gyan Quotient

Site owners

  • Sachin Mehta

Home

Most personal sites are a medium to express creative opinions or judgment. This site on the contrary is maintained with one core value of knowledge sharing. The content here is culmination of my reading of various subjects and people. Enjoy and feel free to augment, comment or improvise the thought process by emailing me your suggestions.

Why Information Security?

Because, Information security has been a hobby turned profession. What intrigues me most is the subject’s ability to evolve itself at such a pace that it keeps us professionals on our toes every minute of our association. 

Enjoy reading the perspectives; I look forward to your insights, critiques’ and feedback. In case the reader feels that I have not given due credit or missed due credit, he or she may let me know through email and I will resolve it appropriately.


I look forward to comments and critiques - please Sign in with your Google account  to add comments.

 

Infosec Thoughts

  • Interesting infosec news and thoughts... 
  • Residual Risk Residual Risk: Understanding, identification and measurement:Understanding:Residual risk refers to risk exposure of an organization after considering the existing controlsResidual risk is measured with the help of the following components:Total process risk score represents the absolute risk associated with the process before conducting the auditProcess Risk Exposure represents the risk exposure at the time of completing audit reviewRemaining process risk shows the periodic shift based on the level of implementation of audit recommendationsAudit risk exposure minus the mitigated risk score represents residual risk for the processInherent Risk MeasurementInherent Risk (IR) is total risk linked to the process being audited and Control Risk (CR) refers to the risk that established controls will fail ...
    Posted Mar 23, 2013, 9:40 AM by Sachin Mehta
Showing posts 1 - 1 of 1. View more »


Topic 4

  • Interesting Quote #4
  • MYBlog To be updated...
    Posted Mar 17, 2013, 1:25 AM by Sachin Mehta
Showing posts 1 - 1 of 1. View more »

what's cookin!

  • what's cookin!
  • CAPTCHA - So what? I noticed an interesting method in use by cybercriminals for harvesting CAPTCHA information across different banking, B2C or customer focused website and thought of sharing these details with you.The excerpts from link:Another method cited by Danchev is the “Harvest publicly obtainable data by outsourcing the CAPTCHA-solving process”, the expert already provided evidences that humans are recruited for solving security challenge-response test, an army of low-waged solvers  earning a mere $2 for solving a thousand CAPTCHA’s. “Keeping this in mind, it shouldn’t be surprising that money mule recruiters actively harvest data from job/career web sites; and other cybercriminals are doing exactly the same while targeting legitimate Web properties that exclusively rely on CAPTCHA ...
    Posted Mar 16, 2013, 5:55 AM by Sachin Mehta
Showing posts 1 - 1 of 1. View more »


SocialCircles

  • Social Circles
  • Planning Gokyo lake – Cho-La Pass – Lobuche – Evest Base camp – Island Peak climb I was initially planning Gokyo Ri - Island Peak climb in May 2013 but had to postpone it to October 2013 for unavoidable reasons.  Please have a look at below itinerary and let me know at info@sachinmehta.net if you have any views or inputs on the coverage. For those who are interested, we can jointly workout the costs with Pike Expeditions - a company based out of Nepal.     Itinerary for Gokyo lake – Cho-La Pass – Lobuche – Evest Base camp – Island Peak climb Day 1 Arrive in Kathmandu, transfer to the hotelDay 2 Flight from Kathmandu to Lukla (2804m), then trail begins with an easy walk to Phakding (2610m.).Day 3 Trek to Namche Bazar (3440m.).Day 4  Day for ...
    Posted Apr 21, 2013, 5:58 AM by Sachin Mehta
Showing posts 1 - 1 of 1. View more »


IT Audit

  • IT Audit
  • Auditing Output Validations Significance – Every application has an output, which is either forwarded to the user in form of a report, or it becomes an input to some other application. Hence, it is ...
    Posted Mar 16, 2013, 5:38 AM by Sachin Mehta
  • Auditing Application Interfaces Significance – All applications share data with some or the other applications. The data transfer is either offline (through flat files) or online through logical interfaces (web services for example) with ...
    Posted Mar 16, 2013, 5:19 AM by Sachin Mehta
Showing posts 1 - 2 of 3. View more »


Topic 6

  • Interesting Quote #6
  • SAP - Security Audit Content to be updated...
    Posted Mar 16, 2013, 6:59 AM by Sachin Mehta
Showing posts 1 - 1 of 1. View more »