The practice was formed by nationally-known and widely-respected information technology attorney John R. Christiansen after many years in large, national law and consulting firm practice, to provide service more directly, flexibly and creatively.
Legal counsel can and should play an important role in information security legal compliance and risk management. While the implementation of many security safeguards requires substantial technical knowledge, the development and selection of specific security policies, procedures and technical requirements for purposes of legal compliance and risk management requires the integration of such technical knowledge […]
One of my pet peeves (I have quite a few) is the way that we tend to use the term “risk management” as if it had a generally accepted meaning everybody understands. For infosec and most other IT professional purposes risk generally means a “hazard” associated with IT usage, in more formal terms described as […]
I’ve been wondering for some time about standards for the stability and security of applications and operating systems supporting critical systems, like electronic medical records, and especially those applications providing decision support (e.g. computerized patient order entry). I’ve tended to punt via disclaimers about not using them for critical systems, which users ignore at their […]