<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>Audit Advice &#38; Checklists</title>
	<atom:link href="http://auditexperts.wordpress.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://auditexperts.wordpress.com</link>
	<description>IT and Security Auditing Resources from the SANS Institute</description>
	<lastBuildDate>Wed, 03 Jun 2009 21:52:41 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='auditexperts.wordpress.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://s2.wp.com/i/buttonw-com.png</url>
		<title>Audit Advice &#38; Checklists</title>
		<link>http://auditexperts.wordpress.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://auditexperts.wordpress.com/osd.xml" title="Audit Advice &#38; Checklists" />
	<atom:link rel='hub' href='http://auditexperts.wordpress.com/?pushpress=hub'/>
		<item>
		<title>The Modest Auditor</title>
		<link>http://auditexperts.wordpress.com/2009/05/28/the-modest-auditor/</link>
		<comments>http://auditexperts.wordpress.com/2009/05/28/the-modest-auditor/#comments</comments>
		<pubDate>Thu, 28 May 2009 00:49:01 +0000</pubDate>
		<dc:creator>chriscronin</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Audit]]></category>
		<category><![CDATA[Audit Guidelines]]></category>

		<guid isPermaLink="false">http://auditexperts.wordpress.com/?p=89</guid>
		<description><![CDATA[I frighten people. I don&#8217;t mean to, but I do. It usually happens when I tell them what I do for a living. I hack corporate networks, and then show them how to keep me from succeeding next time. It&#8217;s a more glamorous and descriptive way of saying “information security auditor.”   But while it&#8217;s [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=auditexperts.wordpress.com&amp;blog=6023604&amp;post=89&amp;subd=auditexperts&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://auditexperts.wordpress.com/2009/05/28/the-modest-auditor/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/f7a7e5ed1841eaa0641cd800a0762915?s=96&#38;d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=PG" medium="image">
			<media:title type="html">chriscronin</media:title>
		</media:content>
	</item>
		<item>
		<title>How Do You Audit Security Awareness?</title>
		<link>http://auditexperts.wordpress.com/2009/05/26/how-do-you-audit-security-awareness/</link>
		<comments>http://auditexperts.wordpress.com/2009/05/26/how-do-you-audit-security-awareness/#comments</comments>
		<pubDate>Tue, 26 May 2009 00:47:07 +0000</pubDate>
		<dc:creator>chriscronin</dc:creator>
				<category><![CDATA[How To]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Audit]]></category>
		<category><![CDATA[Audit Guidelines]]></category>
		<category><![CDATA[Controlled Events Framework]]></category>
		<category><![CDATA[Security Awareness]]></category>

		<guid isPermaLink="false">http://auditexperts.wordpress.com/?p=86</guid>
		<description><![CDATA[OK auditors! We&#8217;ve heard it said as many times as we&#8217;ve said it ourselves, so let&#8217;s all say it together now: One, Two Three, “People are the weakest link in security.”   Right? Right. All agreed.   So now that we agree, how do you audit for security awareness? I tend to think about security [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=auditexperts.wordpress.com&amp;blog=6023604&amp;post=86&amp;subd=auditexperts&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://auditexperts.wordpress.com/2009/05/26/how-do-you-audit-security-awareness/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/f7a7e5ed1841eaa0641cd800a0762915?s=96&#38;d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=PG" medium="image">
			<media:title type="html">chriscronin</media:title>
		</media:content>
	</item>
		<item>
		<title>Auditing People</title>
		<link>http://auditexperts.wordpress.com/2009/05/24/auditing-people/</link>
		<comments>http://auditexperts.wordpress.com/2009/05/24/auditing-people/#comments</comments>
		<pubDate>Sat, 23 May 2009 23:38:19 +0000</pubDate>
		<dc:creator>chriscronin</dc:creator>
				<category><![CDATA[Compliance]]></category>
		<category><![CDATA[How To]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Audit]]></category>
		<category><![CDATA[Audit Guidelines]]></category>
		<category><![CDATA[Auditing]]></category>

		<guid isPermaLink="false">http://auditexperts.wordpress.com/?p=80</guid>
		<description><![CDATA[In the 1953 movie “Houdini,” Bess Houdini cryptically explains how her husband was able to escape from a locked safe. Safes are made to keep people out, she explained, not to keep people in. That would not have been enough information to coax me to walk into a safe and shut the door behind me, [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=auditexperts.wordpress.com&amp;blog=6023604&amp;post=80&amp;subd=auditexperts&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://auditexperts.wordpress.com/2009/05/24/auditing-people/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/f7a7e5ed1841eaa0641cd800a0762915?s=96&#38;d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=PG" medium="image">
			<media:title type="html">chriscronin</media:title>
		</media:content>
	</item>
		<item>
		<title>Twitter!</title>
		<link>http://auditexperts.wordpress.com/2009/05/16/twitter/</link>
		<comments>http://auditexperts.wordpress.com/2009/05/16/twitter/#comments</comments>
		<pubDate>Sat, 16 May 2009 14:55:56 +0000</pubDate>
		<dc:creator>dhoelzer</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://auditexperts.wordpress.com/?p=78</guid>
		<description><![CDATA[AuditExperts enters the Twitter age<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=auditexperts.wordpress.com&amp;blog=6023604&amp;post=78&amp;subd=auditexperts&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://auditexperts.wordpress.com/2009/05/16/twitter/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/e98f32db77fde25415752e21f78a41ee?s=96&#38;d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=PG" medium="image">
			<media:title type="html">dhoelzer</media:title>
		</media:content>
	</item>
		<item>
		<title>WebScarab Search Plugin &amp; Auditing</title>
		<link>http://auditexperts.wordpress.com/2009/05/13/webscarab-search-plugin-auditing/</link>
		<comments>http://auditexperts.wordpress.com/2009/05/13/webscarab-search-plugin-auditing/#comments</comments>
		<pubDate>Wed, 13 May 2009 03:55:15 +0000</pubDate>
		<dc:creator>dhoelzer</dc:creator>
				<category><![CDATA[How To]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Auditing]]></category>
		<category><![CDATA[Web Application Auditing]]></category>
		<category><![CDATA[Web Application Security]]></category>
		<category><![CDATA[Web Application Testing]]></category>
		<category><![CDATA[Webscarab]]></category>

		<guid isPermaLink="false">http://auditexperts.wordpress.com/?p=76</guid>
		<description><![CDATA[Looking for a way to leverage the power of WebScarab but having difficulty finding interesting results using the fuzzer?  Look no further!<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=auditexperts.wordpress.com&amp;blog=6023604&amp;post=76&amp;subd=auditexperts&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://auditexperts.wordpress.com/2009/05/13/webscarab-search-plugin-auditing/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/e98f32db77fde25415752e21f78a41ee?s=96&#38;d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=PG" medium="image">
			<media:title type="html">dhoelzer</media:title>
		</media:content>
	</item>
		<item>
		<title>PCI/DSS Self Assessment Tools Update!</title>
		<link>http://auditexperts.wordpress.com/2009/05/08/pcidss-self-assessment-tools-update/</link>
		<comments>http://auditexperts.wordpress.com/2009/05/08/pcidss-self-assessment-tools-update/#comments</comments>
		<pubDate>Thu, 07 May 2009 19:11:22 +0000</pubDate>
		<dc:creator>dhoelzer</dc:creator>
				<category><![CDATA[Checklists]]></category>
		<category><![CDATA[Compliance]]></category>
		<category><![CDATA[How To]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[audit checklists]]></category>
		<category><![CDATA[Auditing]]></category>
		<category><![CDATA[PCI/DSS]]></category>
		<category><![CDATA[Standards Compliance]]></category>

		<guid isPermaLink="false">http://auditexperts.wordpress.com/?p=72</guid>
		<description><![CDATA[Cyber-Defense and Enclave Forensics have released an updated free toolkit for performing self-assessments of PCI/DSS technical controls!<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=auditexperts.wordpress.com&amp;blog=6023604&amp;post=72&amp;subd=auditexperts&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://auditexperts.wordpress.com/2009/05/08/pcidss-self-assessment-tools-update/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/e98f32db77fde25415752e21f78a41ee?s=96&#38;d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=PG" medium="image">
			<media:title type="html">dhoelzer</media:title>
		</media:content>
	</item>
		<item>
		<title>Auditing Web Applications 3: Validating Session Controls</title>
		<link>http://auditexperts.wordpress.com/2009/04/11/auditing-web-applications-3-validating-session-controls/</link>
		<comments>http://auditexperts.wordpress.com/2009/04/11/auditing-web-applications-3-validating-session-controls/#comments</comments>
		<pubDate>Fri, 10 Apr 2009 16:47:40 +0000</pubDate>
		<dc:creator>dhoelzer</dc:creator>
				<category><![CDATA[Checklists]]></category>
		<category><![CDATA[How To]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Session ID]]></category>
		<category><![CDATA[session management]]></category>
		<category><![CDATA[web application]]></category>

		<guid isPermaLink="false">http://auditexperts.wordpress.com/?p=70</guid>
		<description><![CDATA[What controls should surround session IDs and sessions in general?  Tune in for part three of our "Auditing Web Applications" series!<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=auditexperts.wordpress.com&amp;blog=6023604&amp;post=70&amp;subd=auditexperts&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://auditexperts.wordpress.com/2009/04/11/auditing-web-applications-3-validating-session-controls/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/e98f32db77fde25415752e21f78a41ee?s=96&#38;d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=PG" medium="image">
			<media:title type="html">dhoelzer</media:title>
		</media:content>
	</item>
		<item>
		<title>Off Topic: Recovering a RAID</title>
		<link>http://auditexperts.wordpress.com/2009/03/31/off-topic-recovering-a-raid/</link>
		<comments>http://auditexperts.wordpress.com/2009/03/31/off-topic-recovering-a-raid/#comments</comments>
		<pubDate>Tue, 31 Mar 2009 03:59:59 +0000</pubDate>
		<dc:creator>dhoelzer</dc:creator>
				<category><![CDATA[How To]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Data Recovery]]></category>
		<category><![CDATA[Drive Recovery]]></category>
		<category><![CDATA[Forensics]]></category>
		<category><![CDATA[RAID Recovery]]></category>

		<guid isPermaLink="false">http://auditexperts.wordpress.com/?p=61</guid>
		<description><![CDATA[Need to reconstruct a RAID with a failing drive controller?  Here's a Perl script to help you out with RAID-0 reconstructions!<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=auditexperts.wordpress.com&amp;blog=6023604&amp;post=61&amp;subd=auditexperts&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://auditexperts.wordpress.com/2009/03/31/off-topic-recovering-a-raid/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/e98f32db77fde25415752e21f78a41ee?s=96&#38;d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=PG" medium="image">
			<media:title type="html">dhoelzer</media:title>
		</media:content>
	</item>
		<item>
		<title>Auditing Database Applications</title>
		<link>http://auditexperts.wordpress.com/2009/03/31/auditing-database-applications/</link>
		<comments>http://auditexperts.wordpress.com/2009/03/31/auditing-database-applications/#comments</comments>
		<pubDate>Mon, 30 Mar 2009 23:21:27 +0000</pubDate>
		<dc:creator>dhoelzer</dc:creator>
				<category><![CDATA[Compliance]]></category>
		<category><![CDATA[How To]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Auditing Databases]]></category>
		<category><![CDATA[Auditing SQL]]></category>
		<category><![CDATA[Bound Queries]]></category>
		<category><![CDATA[Database Security]]></category>
		<category><![CDATA[Parameterized Queries]]></category>
		<category><![CDATA[SQL Injection]]></category>
		<category><![CDATA[Web Application Auditing]]></category>
		<category><![CDATA[Web Application Security]]></category>
		<category><![CDATA[Web Application Testing]]></category>

		<guid isPermaLink="false">http://auditexperts.wordpress.com/2009/03/31/auditing-database-applications/</guid>
		<description><![CDATA[There are a lot of things that should be done to implement security in database driven applications.  In this article we look at just one thing that can go a long way toward protecting your application from SQL Injection vulnerabilities!<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=auditexperts.wordpress.com&amp;blog=6023604&amp;post=65&amp;subd=auditexperts&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://auditexperts.wordpress.com/2009/03/31/auditing-database-applications/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/e98f32db77fde25415752e21f78a41ee?s=96&#38;d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=PG" medium="image">
			<media:title type="html">dhoelzer</media:title>
		</media:content>
	</item>
		<item>
		<title>We&#8217;re Back!</title>
		<link>http://auditexperts.wordpress.com/2009/03/31/58/</link>
		<comments>http://auditexperts.wordpress.com/2009/03/31/58/#comments</comments>
		<pubDate>Mon, 30 Mar 2009 23:05:56 +0000</pubDate>
		<dc:creator>dhoelzer</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://auditexperts.wordpress.com/?p=58</guid>
		<description><![CDATA[A brief status report on where some projects are and where we're heading with major security and audit related projects!<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=auditexperts.wordpress.com&amp;blog=6023604&amp;post=58&amp;subd=auditexperts&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://auditexperts.wordpress.com/2009/03/31/58/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/e98f32db77fde25415752e21f78a41ee?s=96&#38;d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=PG" medium="image">
			<media:title type="html">dhoelzer</media:title>
		</media:content>
	</item>
	</channel>
</rss>
