Eskenzi PR ad banner Eskenzi PR ad banner
  • About Us
Wednesday, 3 June, 2026
IT Security Guru
Eskenzi PR banner
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
IT Security Guru
No Result
View All Result

My Time at Infosec Europe 2017

by The Gurus
July 13, 2017
in This Week's Gurus
cybersecurity
Share on FacebookShare on Twitter

If you attended Infosec in London last month, you may have seen the panel discussion that I was part of.  It took place on the exhibition floor and was also streamed throughout the show.  The topic was social engineering and I was sharing the stage with a number of experts on the subject. One of them was Jenny Radcliffe, who is pretty much the best social engineer I know.  Her talks are a great listen, as is her Human Factors podcast.
 
Jenny’s always full of wonderful horror stories about social engineering and just how easy it can be.  So when I found out that I was to share a stage with her it was clear that I needed one of my own.  I headed straight to ebay and ordered a high-vis jacket with the word “Security” on the back, which cost me less than £10.  I’ve often read that such an item of clothing is all it takes to get into just about anywhere unnoticed or unquestioned. Someone had even used one to get into music gigs.  It was time to put this to the test.
 
As it happened, Infosec took place a couple of weeks after the terror attacks at London Bridge and Borough Market.  Security at the show was consequently tight, and everyone was advised to allow extra time for their bags to be searched.  This seemed like a good time to test out my invisibility cloak.  So as I approached Olympia I took the hi-vis out of the sports bag I was carrying and put it on.  I strolled straight to the front of the queue and walked in.  No one said a thing.  No one asked to look in my bag. No one asked why I was walking around the show without a visitor badge.
 
I’ve been saying this for 20 years, and it’s as true now as it’s always been.  Security is not just about technology.  It’s about people.   If you blow your security budget on firewalls and IDS, anti-ransomware suites and data breach insurance, you’re missing out on a huge area of risk.
So here’s your homework for next week.  Head to ebay and buy yourself a hi-vis security vest.  Add a lanyard with SECURITY printed on it too, if you wish, and knock up a quick photo ID card on the colour printer.
Then give it all to a friend of yours whose face isn’t known in your company, and see just how far they manage to get.   Just don’t promise them a prize for every protected area they manage to penetrate, or it’ll end up costing you a fortune.  I guarantee it.

Tags: CyberinfosecsecurityTechnology
ShareTweet
Previous Post

Cyber security training must reflect real risks

Next Post

The UK's 13 most promising cybersecurity startups

Recent News

Nagomi Control Brings CTEM Into Action

IT Security Guru picks for Infosecurity Europe 2026

June 1, 2026
Nine in Ten Security Leaders Concerned About AI-Generated Code Risks as Salt Security Launches New Governance Tool

Nine in Ten Security Leaders Concerned About AI-Generated Code Risks as Salt Security Launches New Governance Tool

June 1, 2026
Acumen Cyber and AttackIQ Partner to Strengthen Cyber Defense Validation

Acumen Cyber and AttackIQ Partner to Strengthen Cyber Defense Validation

May 29, 2026
Check Point Launches AI Agents That Think Like Attackers as Autonomous Exploitation Reaches Critical Threat Level

Check Point Launches AI Agents That Think Like Attackers as Autonomous Exploitation Reaches Critical Threat Level

May 28, 2026

The IT Security Guru offers a daily news digest of all the best breaking IT security news stories first thing in the morning! Rather than you having to trawl through all the news feeds to find out what’s cooking, you can quickly get everything you need from this site!

Our Address: 10 London Mews, London, W2 1HY

Follow Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol

  • About Us
Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol