<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>
<channel>
	<title>Comments on: CIA Triad</title>
	<atom:link href="http://itsecpackets.com/blog/2008/01/26/cia-triad/feed/" rel="self" type="application/rss+xml" />
	<link>http://itsecpackets.com/blog/2008/01/26/cia-triad/</link>
	<description>A Progammer explores the IT Security field; offering packets of useful information he picks up along the way.</description>
	<pubDate>Wed, 20 Aug 2008 10:11:28 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.5.1</generator>
		<item>
		<title>By: Ben Rothke</title>
		<link>http://itsecpackets.com/blog/2008/01/26/cia-triad/#comment-14</link>
		<dc:creator>Ben Rothke</dc:creator>
		<pubDate>Thu, 28 Feb 2008 17:23:12 +0000</pubDate>
		<guid isPermaLink="false">http://www.itsecpackets.com/blog/?p=23#comment-14</guid>
		<description>Ron,

Good point when you write:  However, each organization needs to understand their business and may stress more importance on one of the principles over another.

A problem I see is that far too many organizations want a cookie cutter ‘best practices’ approach, rather than really understanding what their specific security needs are.

Ben</description>
		<content:encoded><![CDATA[<p>Ron,</p>
<p>Good point when you write:  However, each organization needs to understand their business and may stress more importance on one of the principles over another.</p>
<p>A problem I see is that far too many organizations want a cookie cutter ‘best practices’ approach, rather than really understanding what their specific security needs are.</p>
<p>Ben</p>
]]></content:encoded>
	</item>
</channel>
</rss>
