February 09, 2014

Quantum Internet: First Teleportation to a Solid-State Quantum Memory
One of the building blocks of the quantum Internet will be quantum routers that can receive quantum information from location and route it on to another without destroying it. So the race is on to demonstrate this kind of technology, which has the potential to revolutionize communications. Today, Felix Bussières at the University of Geneva in Switzerland and a few pals say they’ve taken an important step towards this. But crucially they’ve done it for the first time over the kind of ordinary optical fiber that telecommunications that are in use all over the world.


Managing product binaries in virtual application pattern workloads
When you develop your virtual application pattern workload to be installed on IBM PureApplication System, IBM SmartCloud Orchestrator, or IBM Workload Deployer, you will encounter situations where your plug-in needs to manage product binaries. The product binaries may be yours or from a third party vendor such as IBM, SAP®, or Oracle®. In this article, you will see different strategies that you can follow to manage the product binaries and how your plug-in can access and install the binaries. You will also understand the relative advantages and disadvantages of these different strategies.


Interview: Ubuntu Takes on Hyperscale Using Open Source Technology
Ubuntu makes it easy to deploy and use the widest range of applications possible: from nginx to memached. We focus on making Ubuntu the best quality we can – everything should work beautifully. Not only do we deliver the widest range of applications, but we deliver them like clockwork every six months. This means that anybody who needs the most recent version of an application can get it easily. Another quality that users like is that Ubuntu is available everywhere – both on the desktop and on the server – making it an ideal OS for developers.


Why Wearable Computing is Waiting for A.I.
You could be eating in a restaurant, and Google Glass could, for example, tell you that it's the spot where your father proposed to your mother. Or that your friend will be late because of traffic, the salmon got bad reviews online, your parking meter will expire in 20 minutes, or the bathroom is through the bar and up the stairs to the right. Imagine that such knowledge could simply appear into your field of vision at the exact moment when you want to know it. That's where wearable computing is going. That's why the wearable revolution is mostly an artificial intelligence revolution.


How LinkedIn Uses Apache Samza
The most basic element of Samza is a stream. The stream definition for Samza is much more rigid and heavyweight than you would expect from other stream processing systems. Other processing systems, such as Storm, tend to have very lightweight stream definitions to reduce latency, everything from, say, UDP to a straight-up TCP connection. Samza goes the other direction. It wants its streams to be, for starters, partitions. It wants them to be ordered. If you read Message 3 and then Message 4, you are never going to get those inverted within a single partition. It also wants them to replayable, which means you should be able to go back to reread a message at a later date.


3 Ways To Be An Effective Self-Leader
As a self-leader, this is where you take the initiative to get the direction and support you need to do an activity or achieve a goal. Depending on the amount of competence and commitment you have in any one area, you need varying degrees of support and direction from others. On my fitness journey, I realized that there were some areas of fitness where I needed close supervision and direction because I was an enthusiastic beginner with very little competence.


Heat System Called Door to Target for Hackers
Over the last two years, Mr. Rios and Terry McCorkle, also of Qualys, said that they found 55,000 HVAC systems connected to the Internet. In most cases, they said, the systems contained basic security flaws that would allow hackers a way into companies’ corporate networks, or the companies installing and monitoring these systems reused the same remote access passwords across multiple clients.


Cloud computing defined: Characteristics & service levels
“Cloud computing is a model for enabling ubiquitous, convenient, on-demand network access to a shared pool of configurable computing resources (e.g., networks, servers, storage, applications, and services) that can be rapidly provisioned and released with minimal management effort or service provider interaction.” Although this widely-adopted description of what makes a cloud computing solution is very valuable, it is not very tangible or easy to understand. So let’s dive a little deeper into cloud computing and why it’s different than just visualization alone, which is commonly mistaken to be cloud computing as well.


Bitcoin’s Political Problem
Money is always political. This is obvious enough when we argue about Federal Reserve policy in the United States, or who should next chair the interest rate-setting body. But for over 1,000 years, we have argued about the nature of our monetary systems and shifted between different ways of making payments. Seen in this historical context, Bitcoin and other cryptocurrencies are just the latest in a long line of challenges to prevailing technology—and to current political arrangements.


Anonymous targets Singapore govt with second tweetstorm
Anonymous has stepped up efforts to raise awareness over ongoing criminal procedings in alleged hackers in Singapore linked to the hacktivist group. ... The arrests included those of James Raj Arokiasamy, alleged to be the hacker under the moniker "Messiah", linked to the defacement of at least one government Web site; what it dubbed the "Singapore 5", comprising 5 men accused of civil disobedience involving pro-Anonymous graffiti on a wall; and also "the plight of all the anons involved".



Quote for the day:

"Those who know how to win are much more numerous than those who know how to make proper use of their victories" -- Polybius

February 08, 2014

7 ways Big Data can help your BI solution
Big Data continues to be the buzzword du jour. And as with most popular concepts espoused by everyone from marketers and consultants to purveyors of software and infrastructure, the phrase can mean different things to different people. For us at Sullexis, we think of Big Data as a set of technologies that enable our clients to consume and process high volumes and/or diverse types of information. But our clients need ROI. Neither access to a large amount of diverse data nor possession of the most sophisticated Hadoop stack of Big Data technologies will generate ROI without the right application.


MobileFirst, API's, and PaaS - Field Perspective
Enterprise back ends have grown more complex. The larger the enterprise, the better the possibility that you have to fetch data from a shared back end. This leads developers to develop an application Domain Model that represents the business view of the application. When an application will have to access multiple back ends then a Domain Model typically referred to as a Canonical Data Model, which represents the data model for an enterprise and maintains relationships to different back end systems.


Disinformation Visualization: How to lie with datavis
When working with raw data we’re often encouraged to present it differently, to give it a form, to map it or visualize it. But all maps lie. In fact, maps have to lie, otherwise they wouldn't be useful. Some are transparent and obvious lies, such as a tree icon on a map often represents more than one tree. Others are white lies - rounding numbers and prioritising details to create a more legible representation. And then there’s the third type of lie, those lies that convey a bias, be it deliberately or subconsciously. A bias that misrepresents the data and skews it towards a certain reading.


Phones, Browsers, and Search Engines Get a Privacy Overhaul
Blackphone, a smartphone to launch next month, is perhaps the most ambitious of these projects. The Android handset will function like a regular smartphone but has a series of modifications to protect the privacy and security of its owner. Blackphone is a joint venture between Spanish smartphone manufacturer Geeksphone and Silent Circle, a company that Phil Zimmerman, inventor of the PGP encryption software (see “An App Keeps Spies Away from Your Phone”), founded to make apps that encrypt voice calls and text messages.


This iPhone-Sized Device Can Hack A Car, Researchers Plan To Demonstrate
The Spanish researchers’ work adds to a growing focus in the security industry on the vulnerability of networked automobiles to hackers’ attacks. Before the Defcon hacker conference last July, researchers Charlie Miller and Chris Valasek put me behind the wheel of a Ford Explorer and a Toyota Prius and then showed that they could plug their laptops into a dashboard port of vehicles to perform nasty tricks like slamming on the Prius’ brakes, jerking its steering wheel and even disabling the brakes of the Explorer at low speeds.


Personal History May Thrust New Microsoft CEO Into Visa Debate
Nadella earned a master's degree in computer science at the University of Wisconsin in Milwaukee, and an MBA from the University of Chicago. Neil Ruiz, a senior policy analyst at the Brookings Institution, doesn't believe that Microsoft is trying to make any policy points with the Nadella appointment. But by nature of his background, "he can add a more human touch to the Microsoft message" in the immigration debate.


How to Avoid Irrelevance, Guaranteed!
You might be an innovator, developer, organizer, maximzer, or activator. But, irrelevance looms large if you can’t apply your strengths – in relevant ways – to the people you serve. Peter Drucker said, “The purpose of a business is to create a customer.” A.G. Lafley, CEO of Procter & Gamble, was mentored by Drucker. Lafley listened to his mentor. The first core strength of P&G is a deep understanding of the customer. (Game-Changer by Lafley and Charan)


NoSQL Vs. RDBMS for Interactive Analytics: Leveraging the Right and Left Brain of Data
Limiting the structured versus unstructured debate to just operational use cases ignores three key factors for downstream analytics: the tools, domain expertise and SQL compatibility gaps in the current NoSQL ecosystem, the challenges of exporting and warehousing volumes of this changing, semi-structured data and hidden costs of leveraging operational databases for complex, ad hoc analysis. Here is what organizations must additionally consider for their analytics needs as they evaluate NoSQL and RDBMS.


Are Analytics Shifting Power from Executives to Employees?
Executives can no longer hoard decisions at the C-suite level. Savvy executives are realizing they must now delegate and distribute decision rights deeper into their organization to empower their managers and employees. This is because of the exponentially growing mountain of data, both structured (numbers) and unstructured (text) data including social media, and a sped-up and volatile world. In my imagined pyramid, the executives are at the top, just like in an organization chart. Their decision types are strategic ones.


Why effective Web app firewalls are worth the investment
Many organizations look at Web app firewalls as protection technologies that are deployed to detect and stop attacks before they can result in some sort of loss or compromise. This is certainly desirable, but, as previously discussed, actually achieving these results can be challenging and involve hidden or unplanned costs. An alternate way to look at a WAF deployment is to consider it a way to gain intelligence about the application's usage and attack patterns.



Quote for the day:

"The harder you work, the harder it is to surrender." -- Vince Lombardi

February 07, 2014

An innovation management approach where ideas don't go to die
Intuit Inc. knew it had to change up its approach to innovation management when employees started complaining that its collaboration tools were the graveyard where good ideas went to die -- that's not good for a company that had reinvented accounting practices with its financial software. The upshot was Brainstorm, explained Roy Rosin, vice president of product management and innovation at the Mountain View, Calif.-based company. In this podcast excerpt, Rosin outlines the steps to building a culture of innovation and why serial disruption is a necessary part of the idea creation process.


Starbucks hits $1B in mobile payment revenues in 2013, analysis says
"In general, we're really encouraged that customers have embraced [the program]... and are keeping track of loyalty points," Jantzen said. "We very much value our customers and their loyalty." Starbucks for years has tracked alternative payment technologies to barcode scanning, such as near field communications on smartphones, but the coffee seller decided to go with what was available and proven when it launched mobile payments in early 2011.


Are Purchasing Practices Killing Your Software Projects?
Heads-I-win, tales-you-lose pricing. I go on endlessly about the perils of fixed-price projects; namely, how they can poison the agile methodology that's the core of lowering project costs. Asking a consultant to absorb the risk of fixed price can mean doubling the bid. Some clients take it a step further with "hourly rates, with not-to-exceed" clauses. This makes perfect sense to every purchasing manager in the world, but it contaminates your project with sloppy thinking, gamesmanship and an adversarial relationship. Agile requires trust. If you aren't willing to start there, go back to waterfall.


You won't believe what happened when Microsoft made Bill Gates its "Technology Advisor"
As a business, one option is to grow into that new space. The other, my preferred option if I'm being honest, is that they don't. So what's the deal? Does the Nadella+Gates combo mean that Microsoft is going to focus on enterprise IT, work on just that core business, and keep it safe? That for me works fine. But if the idea of this is that Gates is the person who can lead Microsoft out into a greater universe where enterprise IT plays a tiny role? I can't see that working so well.


Outside the Box: NoSQL Document Databases
What JSON allows is for an application developer to manage the information that they store about a particular object - customer, product, region, etc. - without having to go through the process of checking the database, asking for a change request, etc. The processes of the "modern" IT department have become too ordered (and some might say immovable) to make a nimble adjustment as business and technical requirements arise.


Virtual PM – It’s Virtually Everywhere
Soooo … is project management virtually everywhere? Well, a lot of people pursue and attain their objectives in less-than-smart ways, but, sure, PM is everywhere, even if it’s not recognized as such. Think about the two main information streams that support smart project management decision-making: earned value, and critical path methodologies. Sound daunting, don’t they? Well, they’re not. Follow me on this little mental exercise for proof.


Enterprise innovation management strategy guide
CIOs and other top IT executives play a vital role in creating enterprise innovation programs that deliver both short- and long-term benefits. Over time, as innovation becomes “business as usual," it's necessary to refresh and revitalize the innovation process, and be prepared to deal with the organizational obstacles that accompany it. This guide is part of SearchCIO.com’s CIO Briefings series, which is designed to give IT leaders strategic management and decision-making advice on timely topics.


US to push for mandatory car-to-car wireless communications
V2V communications use a variation of the 802.11 wireless network standard used by laptops and mobile phones, but instead link cars, which can share position and speed information with each other 10 times per second. That can let one car reliably detect when another in front is braking hard, for example. V2V technology initially will assist drivers, but NHTSA is considering linking it to "active safety technologies that rely on on-board sensors." That could let a car brake or steer to avoid a collision without driver involvement.


Get Ready for Big Data Heists
Already there has been the massive plastic card data theft in South Korea, affecting about 60 million cards; the Target Corp. credit card disaster involving up to 40 million customers; the hacking of 16 million German e-mail accounts; data security breaches at Nieman Marcus Inc. and Easton-Bell Sports Inc.; and a group of Russian hackers who compromised the computer systems of Western energy and defense companies, governments, and academic institutions. We're still in January. These security breaches were all different but had a common cause: negligence


The Future of PaaS in Cloud Computing
There has been a raging debate about Platform-as-a-Service and whether it is still a valuable part of a cloud portfolio, so InfoQ reached out to four leaders in the cloud domain for their opinions on the future of PaaS. In this interview, cloud advocate Krishnan Subramanian, cloud developer Dan Turkenkopf, cloud executive JP Morgenthal, and cloud expert James Urquhart discuss misperceptions about PaaS, and its role in the future of cloud computing.



Quote for the day:

“Lead from the back - and let others believe they are in front.” -- Nelson Mandela

February 06, 2014

The Performance of the T-SQL Window Functions
Microsoft introduced the first of the class of window functions in two flavors: Ranking and Aggregates, and released further functions in subsequent releases. ... Although there is no doubt that the window functions add richness to the SQL language, greatly simplifying the syntax and queries they appear in, we’re still left with the nagging doubt as to whether they are as fast as the older methods. They’re more easily maintained, but are they faster? This is what we want to find out.


NASA CIO unable to implement effective IT governance
"NASA's current IT governance model weakens accountability and does not ensure that IT assets across the Agency are cost effective and secure," writes the OIG. NASA's governance model is composed of three governance boards that report to the mission support council; there are also sub-boards and working groups. "We found that the complexity of the board structure and a lack of documentation and training to explain the interrelationship of the boards has led to confusion among agency IT personnel about the roles and responsibilities of the boards and diminished their value to the governance process," write report authors.


Integrated Independent Testing – Alternative Approach To Software Quality Assurance
... in this paper an alternative approach – Independent Integrated Testing that helps in reaping the majority of the independent testing benefits in addition to optimizing the test cost is proposed. This approach utilizes the services of the specialized testers and at the same time tries to optimize the effort by eliminating a longer bug life-cycle process. The details of the approach are elaborated in the subsequent sections. To bring out the differences between the two methods clearly, at first the independent testing approach is explained and then the new approach.


Microsoft's Cloud Chief on Windows Azure, Tools and More
Known as "ScottGu," Guthrie is notorious for the red polo shirts he sports at events where he is a big draw in coding demos. Guthrie has spent his time at Microsoft in the company's developer and cloud groups. He worked his way up to the role of corporate vice president of the .Net platform in company's Developer Division and later became the corporate vice president of Windows Azure, which he left for his new position


Big Data, the Internet of Things and the Death of Capitalism?
Rodney Brooks, former Panasonic Professor of Robotics at MIT and founder of Rethink Robotics, says "We're at the point with production robots where we were with mobile robots in the late 1980s... The advances are accelerating dramatically." The Rethink Robotics videos show some agonizingly slow-motion action, but it doesn't need Clayton Christensen to recognize a potential disruptive innovation here. The process about to be disrupted is the manual labor involved in a whole variety of repetitive but loosely bounded activities on assembly, packaging and similar production lines.


New ITSSM Tool, or Nah?
There is no shortage of information available to help you make a decision, and the authors surmise that we tend to trust “the averages” over our instincts — but not as much as we should. We lock ourselves in an “inside view,” which is our evaluation of our specific situation. This plays out on my inquiry calls with clients, who conclude that their IT organization is a mess and that a new technology solution will be the catalyst for positive change.


The Cost of Risk Avoidance
What they are missing is that certainty comes at a cost. Certainty robs us of a just reward, the very incentive that motivates us to pursue opportunity in the first place. The fallacy that risk avoidance somehow is without cost and therefore an acceptable strategy fails to consider opportunity cost. Too often opportunity cost is disregarded because we base our decisions on superficial criteria or the immediacy of a potential negative effect.


Study Finds Companies’ Mobile Computing and Business Intelligence Preferences Changing
Organizations looking to deploy mobile BI solutions need to recognize that their existing infrastructure will certainly become inadequate over the course this this year. The folks that I’ve spoken with that have deployed mobile BI had to really bolster their data infrastructure because the existing data warehouse or whatever solution they used couldn’t handle the mobile load. People use mobile devices more frequently to query BI data. Multiply that times hundreds or thousands of users, and it will exhaust the resources most organizations have.


SATA Express marries PCI-e, SATA for faster direct-attached storage
The SATA Express specification now recognizes PCI-e as a suitable storage interface for fast storage devices. Conventional drives will continue to use the server's standard SAS and SATA interface operated through the motherboard's South Bridge chip, while new, fast disk drives like SSD use SATA Express through the PCI-e interface. While this new option helps meet the performance and capacity demands of varied workloads, servers will need SATA Express capabilities and SFF-8639 multifunctional connectors to take advantage.


Red Hat brings SOA to the cloud
JBoss Fuse Service Works provides additional tools to help administrators manage complex workflow environments that run on JBoss Fuse. It includes SwitchYard, which provides an service orchestration interface for building workflows and defining business logic. It provides tools for establishing and enforcing organizational policies, and exposing services so they can be found elsewhere in the organization.



Quote for the day:

"A culture of discipline is not a principle of business; it is a principle of greatness." -- Jim Collins

February 05, 2014

Software [in]security and scaling automated code review
As the tools have matured to cover a broad range of vulnerabilities, they have in general evolved for integration into a build process on a big build server. That means in some cases they may not be feasible for use at the developer desktop. Simply put, the industrial-strength tech eats a workstation alive. ...  If a developer has to tie up her development workstation for two to three hours to run a scan on a single build component, the result is that her productivity diminishes as she waits around for results.


Interview: The Need for Big Data Governance
There are three main ways bad data gets into systems, and they’re all essentially technology-agnostic. The first is during data migration. Before you go live on a new system, you will normally bulk load some information. If your initial data load contains poor quality data, it can be really expensive to fix. If you’re talking about an ERP system, it can break essential business processes like being able to bill customers. A big data project could lose credibility with the users if they see a lot of data issues. It’s simpler and cheaper to prevent bad data getting in in the first place.


British intelligence used DDoS tactics against Anonymous, Snowden documents show
The British spy agency GCHQ secretly waged war against the hacker collective Anonymous a few years ago, according to documents taken from the NSA by Edward Snowden and revealed late Tuesday by NBC. At the time, certain members of Anonymous were themselves waging war against British government institutions and various companies.


Audit committees increasingly uncomfortable about cyber threats
“Given the rapidly growing public, political and media profile of the cyber threat, it is very worrying that audit committee members feel more concerned now about the issue than they did a year ago,” said Stephen Bonner, partner at KPMG. “It shows that either companies are losing the battle against cyber criminals, or they are still not yet fully engaging with the threat. It is a difficult issue that takes many executives and non-executives out of their comfort zone. However, it is simply too big and fast-growing a risk for companies to tackle half-heartedly.”


Those many faces of fraud
The past few years have seen several headline-grabbing incidents of corporate fraud in India. These have not just tested the Indian ‘trust-based’ business framework, but also sent ripples across the business community and stock markets. In many ways, India woke up to the reality of fraud in the past few years. It realised that it was not a Western phenomenon, but a universal one. Greed is, after all, a human failing. Predicting a fraud before it occurs is, at least for now, the subject of science fiction.


Strategies and Code for Creating Fluent APIs
There are numerous ways to implement a fluent API, depending on the degree of control you want to maintain over the API, how many classes you want to be able to use it with, and how you want to extend your API. Here are your options. In an earlier column, "Implementing a Fluent Interface," I showed how to create a fluent API for a single class. However, there are other strategies that offer more flexible solutions.


When No One Is Just a Face in the Crowd
“Just load existing photos of your known shoplifters, members of organized retail crime syndicates, persons of interest and your best customers into FaceFirst,” a marketing pitch on the company’s site explains. “Instantly, when a person in your FaceFirst database steps into one of your stores, you are sent an email, text or SMS alert that includes their picture and all biographical information of the known individual so you can take immediate and appropriate action.”


Senate cybersecurity report finds agencies often fail to take basic preventive measures
“Almost every agency faces a cybersecurity challenge,” said Michael Daniel, special assistant to the president on cybersecurity policy. “Some are farther along than others in driving awareness of it. It often depends on whether they’ve been in the crosshairs of a major cyber incident.” ... The report concluded that the department had failed even to update essential software — “the basic security measure just about any American with a computer has performed.”


SHA-1 to SHA-2: The future of SSL and enterprise application security
Organizations should push ahead with the upgrade to SHA-2 now and not hope for a last-minute reprieve despite the fact that no SHA-1 collisions have yet been found. The areas that will require the most work are legacy systems that make SSL connections, and software and hardware such as game consoles, phones and embedded devices that rely on hard-coded certificates. These certificates will all need to be replaced and have the software updated if they are unable to currently support SHA-2 encryption.


12 predictions for the future of programming
To help you prepare for -- or at least start contemplating -- a future that's screaming across the sky faster than we can see, we've compiled a dozen predictions about how the next five years of programming will shake out. Our crystal ball is very subjective, and some of the following conjectures might not prove universal. Some won't be fully realized in five years. Others are already true, but the extent of their truth is not as well-established or widely known as it will be fairly soon.



Quote for the day:

"Concentration comes out of a combination of confidence and hunger."-- Arnold Palmer

February 04, 2014

A Cost Analysis of Media Consumption using System Dynamics Modeling
Compare the heavily discounted cost of $3/GB for disk to the average price of 10¢ to 13¢ per GB for tape. Or in the case of our simulation and model, $102.9M for a disk architecture and $3.4M for a tape architecture. With a difference of more than 30x the cost for disk than tape, one needs to step back and consider if they really want to jump into the world of disk based backup without considering ways to lower the total cost of ownership. The fundamental cost in the average enterprise is the retention of data that is backed up. With altering the retention level of data backed up, we can effect an impact on the TCO.


Satya Nadella's to-do list: Here are the first 10 battles Microsoft's new CEO will have to fight
And now finally Microsoft has finally ended the wait by confirming that Satya Nadella is to be its new CEO. Nadella needs to get moving as soon as possible; after months of Microsoft's staff effectively treading water while waiting for a new chief to be appointed, he'll have an overflowing inbox and many decisions to make about the future direction of the company and its products. Here are some of the knotty interrelated issues Microsoft's new chief executive will have to struggle with sooner rather than later.


Top 10 Ways to Improve Your Cloud Career and IT Skill Set
New data center demands are creating a wide array of new types of specialists. Engineers become architects, programmers become cloud designers, and database administrators become data scientists! There are a lot of new and interesting options out there to help you push your career to the next level. To be successful in the IT and cloud arena you’ll have to optimizeyour existing skill set. With that, let’s take a look at 10 great ways you can accomplish this.


Predictive Analytics: Finding the Future in Big Data
Using PA to properly assess risks based on actuarial data and proven hypotheses can mean the difference between new product ROIs and catastrophic liability. Weather models forecasting everything from hurricanes to sea-ice melt allow scientists to measure the effects of climate change and illustrate future scenarios. Crime prevention, genomics, human and knowledge performance indicators, natural resource exploration, project management, and other disciplines have stakes in PA.


The Persistent Imbalance Between Supply and Demand for Software Development Labor
We're currently in the midst of another structural increase in the demand for software development labor, this time being driven by analytics and smart devices (the alleged "internet of things", from cars to coffee pots), with the odd halo application (e.g., wearable tech) thrown in for good measure. Every indication is that for the foreseeable future, demand for software developers will continue to increase at a rate faster than the supply of software developers available to develop it. What does this mean to the business of software?


Healthcare among most opportunistic use cases for boundaryless information flow improvement
In the healthcare landscape, and in other industries, there are a lot of players coming to the table and need to interact, especially if you are talking about a complex episode of care. You may have two, three, or four different organizations in play. You have labs, the doctors, specialized centers, and such, and all that requires information flow. Coming back to the methodology, I think it’s bringing to bear an architecture methodology like provided in TOGAF.


The Enterprise IT Infrastructure Agenda for 2014
Procurement of hardware, software, and services required to operate an enterprise environment is becoming more challenging for senior infrastructure managers. Even as more procurement spending is devoted to software, many infrastructure organizations continue to use techniques developed for hardware procurement. These techniques are not entirely effective given software’s product fragmentation and relatively high switching costs.


Despite Target data breach, PCI security standard remains solid, chief says
"Any time there's a breach it sheds a spotlight on what we do," Russo said. But instead of pointing fingers at PCI, there should be more focus on working collaboratively to address security issues in the payment card industry, he said. "Everybody is looking for a silver bullet," in the wake of the recent breaches, said Russo, who is scheduled to testify before Congress pn Wednesday on the issue. "As far as I know, no silver bullet exists. It's a combination of people, process and technology."


Debug / Inspect WebSocket traffic with Fiddler
This is my first time writing code project article. Thanks for your supports. I have recently written a project using SignalR, which supports HTML 5 WebSocket. However I cannot find good tools to debug or inspect WebSocket traffic. I know that both Chrome and Fiddler support inspecting the WebSocket traffic, but they are very basic. If you have very high volume of traffic or each frame is very large, it becomes very difficult to use them for debugging. I am going to show you how to use Fiddler (and FiddlerScript) to inspect WebSocket traffic in the same way you inspect HTTP traffic.


Mobile device management vs. mobile application management
Mobile device management and mobile application management are two of the more popular technologies for enabling secure smartphone and tablet use in the enterprise. They have different use cases, but some of their features overlap, and more vendors are combining the two technologies into single products. That means mobile device management vs. mobile application management isn't necessarily the discussion you should be having in your IT department.



Quote for the day:

"If you define your company by how you differ from the competition, you're probably in trouble." -- Omar Hamoui


February 03, 2014

The risks of Agile software development: Overcoming feature creep
It is important not to confuse scope creep with intentional technical debt. In Agile projects, some teams will purposely incur debt because delivering to the market can trump the quality or completeness of the solution. Developers have to get something out there because the competition has some functionality that their product lacks. That said, developers must plan to prevent scope creep even when they incur intentional technical debt.


OpenStack creates innovation for private clouds + competition
Giving large enterprises the power of a large cloud platform isn’t in Kemp’s opinion just about technology. Technology is important in order to make things possible, but “you are dealing with a cultural transformation.” “You are dealing with a different way of thinking about building software and with a lot of existing applications that are not going to run very well in the ideal cloud architecture that we see the Amazon-style cloud companies leveraging,” said Chris Kemp.


Oracle's cloud growth: Will it measure up?
What Goldmacher is trying to solve for with Oracle's cloud growth is going to be a common problem for the industry. Mixed revenue models---licensing, support and cloud subscriptions---ultimately mean less transparency by product line. While Workday, Salesforce and NetSuite are easier to understand regarding cloud growth, tech giants can talk growth with a lot of footnotes and other assumptions. Simply put, cloud washing is an epidemic.


Data classification for cloud readiness
Several types of processes exist for classifying data, including manual processes, location-based processes that classify data based on a user’s or system’s location, application-based processes such as database-specific classification, and automated processes used by various technologies, some of which are described in the ”Protecting confidential data” section later in this paper. This paper introduces two generalized terminology models that are based on well-used and industry-respected models. These terminology models, both of which provide three levels of classification sensitivity, are shown in the following table.


Big Data Goes Legal
Attorneys are fighting back against the seemingly insurmountable onslaught of big data as it relates to their litigation practice. Legal analytics, a term often made interchangeable with technology assisted review or predictive coding, attempts to help an attorney be a “copilot” in the matrix of litigation, with big data guiding the focus and prioritization of data review and categorization. Leaders and innovators in the legal technology space are now in an arms race to create the most defensible, statistically validating tools to sift through data and locate the “smoking gun” as quickly as possible.


New CIOs need at least two years to take charge, research finds
Ninety days is often quoted by management books, such as Michael Watkins’ ‘The First 90 Days: Proven Strategies for Getting Up to Speed Faster and Smarter’, as the critical amount of time an executive needs to succeed in their role. However, Peppard believes that there is a process of learning that all CIOs have to go through until they have mastered the assignment of a new role, which takes much longer.


Hackers use '.enc' trick to deliver Zeus banking malware
Gary Warner, Malcovery's chief technologist, posted on his blog an assortment of spam messages, which spoofed brands and organizations such as the payment processor ADP, the Better Business Bureau and the British tax authority HMRC. The spam messages contain a ".zip" file, which, if opened, contains a small application called UPATRE. That executable file downloads a ".enc" file, which it then decrypts. The decrypted file is GameOver Zeus, a variant of the notorious Zeus malware.


Dell offers bare-metal switches through Cumulus partnership
With the right skills in place, an IT organization can greatly reduce the cost of network operations by exploiting the programmability of these bare-metal Dell switches, he said. The capital costs will also be lower. Dell isn't disclosing how much it will charge for bare-metal switches, but Joshipura said the price will be around 20% lower than switches running Dell's proprietary software, depending on volume and type of customer.


Malicious intent can turn Chrome speech recognition into spying device
Ater first reported his findings privately to Google in September 2013. Ater said Google engineers had a fix within weeks. Then a week ago, with no evidence of Google removing the bug from Chrome, Ater decided to go public: “As of today, almost four months after learning about this issue, Google is still waiting for the standards group to agree on the best course of action, and your browser is still vulnerable.”


Data-driven policy and commerce requires algorithmic transparency
Part of the trouble is that big data has long since become a big buzzword, enabling marketers, vendors, media, academics, and politicians to project whatever they like upon it. That bubble is hard to puncture with criticism, real or otherwise. That reality has been acknowledged by close observers of the phenomenon, like Ken Cukier, The Economist's data editor, who suggests thinking about it in terms of its features:



Quote for the day:

"The key to successful leadership today is influence, not authority." -- Ken Blanchard

February 02, 2014

How ISO 31000 standardises risk management
Any organisation’s risk management should be capable of review and evaluation by any risk manager or auditor. ISO 31000 sets a framework for ‘components that provide the foundation and organisational arrangement for designing, implementing, monitoring, reviewing and continually improving risk management processes’. The framework of ISO 31000 follows the Plan, Do, Check, Act model, like other global management system standards.


Enterprise software marketing: Sell the value, not the box
The drive to perfect features before achieving a profound understanding of customer needs, pains, and business context comes from the mistaken assumption that technology, like idealized love, can overcome any obstacle. This mindset pushes many startups to believe their core mission is creating a great product. In a blog post and video, entrepreneur and Stanford professor, Steve Blank, challenges startups to rethink the fundamental nature of their challenge and goal. Instead of pushing for better product and technology alone


Holacracy 101: Could This Nontraditional Business Structure Work for You?
Holacracy is a self-governing, purpose-driven business structure that reassigns authority and responsibility based on the task at hand. The model recently made headlines for sparking the interest of Zappos CEO Tony Hsieh. His company reportedly will become a holacracy by the end of 2014. Here’s a brief explanation of how holacracy works and why it could benefit a small business.


2014 Enterprise Architecture: Increasing Business Architecture ROI
BAs need to focus on creating value to drive value realization as the outcome for our annual work plan for the organization. ... This model is comprehensive, fits with the BA role, and is well-accepted type of concept as it covers the value planning, value creation, and value realization process illustrated below. Simply put, BAs must align and drive the business strategy from the C-suite for realization of the expected business goals and mission outcomes.


4 things I learned from a career in tech startups
Umang Gupta is the former CEO of Keynote, which was recently acquired by Thoma Bravo LLC.Nothing in my childhood would have suggested that I’d grow up to be a Silicon Valley entrepreneur. In fact, the opposite was more likely. ... "With Keynote, I made sure from the beginning to recognize that my job, like any parent, was to give the company its roots and wings, and like any parent when the job was done, I would have to separate my own life from the company’s life. Today, Keynote is a solid, stable company that is a leader in its space, but still has a long way to go before it will have fulfilled its potential."


Building Applications With Hadoop
When building applications using Hadoop, it is common to have input data from various sources coming in various formats. In his presentation, “New Tools for Building Applications on Apache Hadoop”, Eli Collins, tech lead for Cloudera’s Platform Team overviews how to build better products with Hadoop and various tools that can help, such as Apache Avro, Apache Crunch, Cloudera ML and the Cloudera Development Kit.


What Dropbox for Business has to offer admins and users
Administrators with security concerns about Dropbox (and its well-publicized security breaches of the past) can sleep a little easier knowing that Dropbox has also taken some steps to secure data. It now encrypts all stored files using 256-bit Advanced Encryption Standard protection and uses the Secure Sockets Layer protocol to provide a secure tunnel for transferring data. Administrators can take advantage of third-party tools to provide additional encryption, and Dropbox continues to support a two-step verification process beyond just passwords.


How to Hire a Data Scientist
Given the relative newness of the role, many experienced data scientists and value architects come from an experience-based rather than trained background. Because their skills will be aligned to their experience, it is important to plan for targeted training and development. Someone who is a great culture fit, analytical capabilities, and value measurement knowledge but lacks certain programming skills may need to get skilled up in-house. Being prepared to accept someone that doesn’t have every skill needed (supported by an appropriate training program) is a pragmatic approach.


An Integrated Implementation of ISO 31000
ISO 31000 has left open the problem of implementations. That is, ISO 31000 is in large normative in nature. For instances, ISO 31000 describes a generic process to manage risks, but it does not describe how to establish the organizational devices so that the process can be executed; it describes a risk management framework, but it does not explain the dynamics between the risk management process and the framework; it lists several principles reflected in effective risk management, but it does not describe how to realize the principles in implementations


How to use Workshops to Boost Creativity, Team Commitment and Motivation
To be creative, participants have to feel comfortable both with themselves and with the group. They need to know that their ideas will be accepted in the group, and that everyone's opinions count equally. They need to feel welcome in the group and comfortable with the facilitator. Experienced workshop facilitators make a conscious effort to help the participants feel safe, and set the tone that maximizes motivation and creativity in the group.



Quote for the day:

"Regardless of the changes in technology, the market for well-crafted messages will always have an audience." -- Steve Burnett

February 01, 2014

With regard to protecting your own end-user privacy agreements, the first question to ask is: "Have my developers read our privacy policy and do they even know it exists?" Legal counsel, in consultation with marketing and other business functions, typically drafts privacy agreements. The contents of the agreements are often not explicitly communicated to the teams building the systems that handle data with privacy implications.


Insights and Trends: Current Project Portfolio Management Adoption Practices
Another interesting fact that came from the survey was that 76 percent of the respondents still use homegrown spreadsheets internally to manage projects in some capacity. Since 55 percent of respondents have more than 1,000 employees, this can easily lead to PPM data integrity issues and ponderously slow feedback loops. Definitely not a path that enables firms to pivot with rapidly changing business conditions. Moreover, from our experience this manual approach significantly impacts project performance.


Getting Real Value from BI Investments
Now things are different. Database technologies, “big data” storage, in-memory analytics, and the ability to leverage multiple types of data expand the value proposition of what business intelligence has to offer. The challenge becomes understanding the options that are available and making sure that the right choices are made within organizations that not only reflect current needs, but that can also support future needs.


After NSA Backdoors, Security Experts Leave RSA for a Conference They Can Trust
The allegation of the $10 million RSA/NSA deal compounded with leaks earlier in the year about NSA’s efforts to sabotage global cryptography has lead some speakers to withdraw from the 2014 RSA Conference in San Francisco, which attracts some 25,000 attendees each year. Nine speakers have canceled their coveted slots and many have chosen to speak instead at TrustyCon, an alternative conference started this year to provide a platform for speakers who protest RSA and NSA's long-standing collaboration.


Transact-SQL Named 'Programming Language of the Year' for 2013
This "award" further emphasizes the importance of competency in SQL. I earlier wrote about how SQL gurus and other database-related programmers enjoyed excellent job security and how SQL Server developers were in high demand. That's the good news. The bad news, according to TIOBE, "It is a bit strange that Transact-SQL wins the award because its major application field, Microsoft's database engine SQL Server, is losing popularity. The general conclusion is that Transact-SQL won because actually not much happened in 2013."


2014 Developer Opportunities and Challenges, Part II: UX Skills Gap, Crowdsourcing
It's an old problem, he said, but a new opportunity. "UX is one of the big things to get your arms around in 2014," he said. "It presents a great opportunity to outpace your competitors if you do, especially if you recognize that it isn't just important for consumers using your mobile app, it's also important to the productivity and satisfaction of your internal employees." Another opportunity Knipp sees ahead for developers comes from what might for many be an unexpected place: crowdsourcing and hackathons.


How developers could have avoided HealthCare.gov technical problems
As we all know, fixing hundreds of bugs right before a release can have a crippling effect on software and is guaranteed to create additional bugs that will not be caught in the final testing phases. That is, unless you have seasoned testers who know how to expand upon the documented test cases during the final integration testing. Unfortunately, the testers for the October release involved 200-300 government and insurance employees who tested only a few days before launch.


Taking Advantage of the Kinder, Gentler Takeover
This Darwinian scenario benefits both rivals and shareholders. In contrast to the widely held argument—which has been cited frequently in opposition to the rumored Sprint–T-Mobile deal—that mergers have collusive, anti-competitive effects on an industry, most of the evidence suggests that competing firms “learn from the productive efficiency driving the merger, possibly putting some rivals in play for a later date,” the author writes.


Tor-enabled malware stole credit card data from dozens of retailers
Most of the affected retailers are based in the U.S., but PoS infections with this malware were also detected in 10 other countries, including Russia, Canada and Australia, the RSA researchers said Thursday in a blog post. "At this time our research indicates that 119 PoS terminals within 45 unique retailers show evidence of being infected with the ChewBacca malware," said Uri Fleyder, manager of the Cybercrime Research Lab at RSA, via email. Thirty-two of the affected retailers are based in the U.S., he said.


What is the Board’s Role in Strategy and Strategy Execution? Post 1 of 3
It’s a pretty simple two-part argument: What’s the spend on Strategy Execution? What if it’s $5M or $55M? Given that failure rates on strategic initiatives range from 44-70% (see “Time to kill the 70% phantom failure rate”), there is $2.2M - $38.5M directly at risk; and Perhaps even more importantly, does realization of those strategies materially affect the future of the organization? In combination, surely these are equivalent to any of the board’s other responsibilities.



Quote for the day:

"I have been up against tough competition all my life. I wouldn't know how to get along without it." -- Walt Disney

January 31, 2014

How Geospatial Data Can Enrich Your Customer Experience and Drive Revenue
Geospatial analysis offers many possibilities for organisations. It can be used to show social media activity on a map during an environmental crisis. Mapping tweets, posts or blogs to a certain location can help relief workers know where they have to be. For example, during Hurricane Irene, which struck the American East Coast in 2011, many of such tools where used to gain a better picture of the damage that had been done by the hurricane.


The Future of Personal Entertainment, In Your Face
So what makes the Glyph special? Avegant says it’s the headset’s image projection method, which reflects light onto each retina through a series of lenses and tiny mirrors and makes for sharper, easier-to-watch images than using a screen, as many competing products like Oculus Rift do. Its ability to mimic depth certainly makes it particularly good at showing natural-looking 3-D content.


Rise of Open Source Technologies in Middle East
Open source customization is one of the trendiest technologies, these days in order to bring up the imagination and unique ideas into real action. Open source technology is one such software and IT related technology which has changed the course of business and industry over there in Middle East and the biggest nation getting influenced from this is Dubai. Open source consultants Dubai have become the one of the greatest hub around the world today to look for quality assured yet highly pocket friendly open source services.


Why Line of Business Managers Hate IT (and How ITaaS Can Change That)
To this day, in many companies, there is a rift between IT and LoB departments. It starts with physical separation. When they’re not working from home, LoB employees work in cubicles or (more recently) shared open spaces geared toward collaboration. When they’re not working at home, IT employees are likely to dwell in the basement or other windowless location, behind locked doors. Such physical separation leaves little opportunity for spontaneous cross-departmental discussion.


Winning the Talent Game: How Gamification Is Impacting Business and HR
Gamification applications are most effective when they are customized to various industries and their specific needs. For example, some firms leverage their employee base by creating recruitment “ambassadors” and lead generators by conducting gamified events across campuses. This achieves all the benefits of crowdsourcing as well as creates an effective brand for the organization. Gamified new hire programs are personalized, engaging and often convey a creativity within an organization.


What You Really Need to Know about Artificial Intelligence
For those who started their careers in AI and left in disillusionment (Andrew Ng confessed to this, yet jumped back in) or data scientists today, the consensus is often that artificial intelligence is just a new fancy marketing term for good old predictive analytics. They point to the reality of Apple’s Siri to listen and respond to requests as adequate but more often frustrating. Or, IBM Watson’s win on Jeopardy as data loading and brute force programming. Their perspective, real value is the pragmatic logic of the predictive analytics we have.


The Why, How, and Where of moving to the Cloud
Once you have answered the “Why” and “How” of your Cloud journey you will have a fair idea of where the organization is. For any successful journey, it is important to know the starting point and destination in order to develop a path that considers all factors before embarking on the journey. It also helps you in other important decisions that you will need to make along the way to ensure that you have considered all of the factors and are on track with where the organization is heading. Here are a few pointers to ensure that you are on track to taking the organization in the right direction with the transition to the Cloud.


A Virtual Bill of Rights is Needed to Guard Our Data
Chances are that all such attempts to legislate will be superseded as new forms of information gathering and analysis develop. One only has to look at the number of cameras being installed on next-generation cars, or the fears around utilities using smart grids to switch off energy without the home-owner's consent, to appreciate some of the difficulties which lie ahead. The debate becomes even more complex when metadata (data about data, such as phone call records), data aggregation and anonymising are taken into consideration.


Delegated Authority: An Agile Trust Experiment
For my part, just the act of thinking about what is important to me allows me to let go of some areas of responsibility that I might otherwise have gripped tightly. As issues come up, I am constantly thinking about this contract and my role in the decision-making process. For the team, they recognized that this is a living document. They're already thinking about ways to improve or change it. Before this experiment, we had individuals named as technical leads for our different technologies.


Federal IT Procurement Reform Proposed
Obama administration officials argue that efforts to reform federal IT management, through the administration's "Cloud First" initiative and PortfolioStat IT investment review process have already saved billions of dollars and improved the way agencies acquire and manage commodity hardware and software. They also point to efforts, such as the President's Open Data initiatives, that are making government data more transparent and accessible, and meeting with experts to capitalize on IT innovations.



Quote for the day:

"Success is the prize for those who stand true to their ideas!" -- Josh S. Hinds