<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:creativeCommons="http://backend.userland.com/creativeCommonsRssModule"	>
<channel>
	<title>Comments on: Root Cause and Following Actions</title>
	<atom:link href="http://www.cutawaysecurity.com/blog/archives/427/feed" rel="self" type="application/rss+xml" />
	<link>http://www.cutawaysecurity.com/blog/archives/427</link>
	<description>Cutaway's Observations, Opinions, Rants, Raves, Tantrums, and Tirades</description>
	<lastBuildDate>Wed, 02 Jun 2010 22:30:56 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: Security Ripcord &#187; Blog Archive &#187; Canary in the Spam Mine</title>
		<link>http://www.cutawaysecurity.com/blog/archives/427/comment-page-1#comment-31085</link>
		<dc:creator>Security Ripcord &#187; Blog Archive &#187; Canary in the Spam Mine</dc:creator>
		<pubDate>Wed, 11 Feb 2009 05:55:15 +0000</pubDate>
		<guid isPermaLink="false">http://www.cutawaysecurity.com/blog/?p=427#comment-31085</guid>
		<description>[...] Recent Comments Sandro Süffert on Leasons from GSP vs. BJ UFC FightDanny on Canceling Monster.comSecurity Ripcord &#187; Blog Archive &#187; Canceling Monster.com on Education and CertificationsSecurity Ripcord &#187; Blog Archive &#187; Canceling Monster.com on Cutaway Security LinkedInPCI-DSS Is Not About “Security by Obscurity” &#171; Risktical Ramblings on Root Cause and Following Actions [...]</description>
		<content:encoded><![CDATA[<p>[...] Recent Comments Sandro Süffert on Leasons from GSP vs. BJ UFC FightDanny on Canceling Monster.comSecurity Ripcord &raquo; Blog Archive &raquo; Canceling Monster.com on Education and CertificationsSecurity Ripcord &raquo; Blog Archive &raquo; Canceling Monster.com on Cutaway Security LinkedInPCI-DSS Is Not About “Security by Obscurity” &laquo; Risktical Ramblings on Root Cause and Following Actions [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: PCI-DSS Is Not About “Security by Obscurity” &#171; Risktical Ramblings</title>
		<link>http://www.cutawaysecurity.com/blog/archives/427/comment-page-1#comment-31078</link>
		<dc:creator>PCI-DSS Is Not About “Security by Obscurity” &#171; Risktical Ramblings</dc:creator>
		<pubDate>Sat, 24 Jan 2009 16:27:43 +0000</pubDate>
		<guid isPermaLink="false">http://www.cutawaysecurity.com/blog/?p=427#comment-31078</guid>
		<description>[...] cause analysis” (RCA) in cases of payment card related events and or incidents (read blog post by Don C. Weber – “get [...]</description>
		<content:encoded><![CDATA[<p>[...] cause analysis” (RCA) in cases of payment card related events and or incidents (read blog post by Don C. Weber – “get [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Chris Hayes</title>
		<link>http://www.cutawaysecurity.com/blog/archives/427/comment-page-1#comment-31076</link>
		<dc:creator>Chris Hayes</dc:creator>
		<pubDate>Sat, 24 Jan 2009 13:50:09 +0000</pubDate>
		<guid isPermaLink="false">http://www.cutawaysecurity.com/blog/?p=427#comment-31076</guid>
		<description>I hope this does not distract from the spirit of your post, but your thoughts are applicable when it comes to some of the PCI requirements. Of course, there is the aspect of validating that the detect and response controls are effective - but the spirit of the &quot;detect and respond&quot;-related PCI requirement security controls are to facilitate RCA and hopefully minimize exposure.</description>
		<content:encoded><![CDATA[<p>I hope this does not distract from the spirit of your post, but your thoughts are applicable when it comes to some of the PCI requirements. Of course, there is the aspect of validating that the detect and response controls are effective &#8211; but the spirit of the &#8220;detect and respond&#8221;-related PCI requirement security controls are to facilitate RCA and hopefully minimize exposure.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
