November 26, 2015

Google Kubernetes Is an Open-Source Software Hit

Kubernetes is technically a cluster manager that’s able to take containers and automatically add or delete resources. A container encloses a program (or a piece of one) in a layer of software that connects seamlessly to the operating system and other computing resources. One advantage is that it can be moved easily from one computer or server to another. If traffic to a certain application spikes, Kubernetes is able to automatically replicate containers and expand capacity without manual intervention. The software can schedule containers, allocate them and make sure the computing environment has enough memory, disk space and storage, David Linthicum, senior vice president of Cloud Technology Partners told CIO Journal.


Building a big data technology framework? Focus on business differentiation

"When you're telling a decision maker -- in this case, a farmer -- that they should apply this much fertilizer to this piece of land on this day, it is very helpful to answer the question, 'why,' when it's asked," he said. The key to explanatory analytics may be models. He pointed to two techniques that can help with this: Structural modeling, which he said is "used to illustrate statistical connections between the environment and crop outcomes," and mechanistic modeling, which he said is "used to capture physical phenomenon when the underlying physics are well understood or can be captured directly." ... "We need multiple techniques because there is no 'free lunch' and, typically, one technique will not work for every problem," he said after the event via email.


What are the best qualifications for a career in cyber security?

Most senior careers (with higher salaries) involve becoming a manager or advising others about management. The role may be managing a technical team of specialists or managing all of the people, processes and technology associated with ensuring effective information security. The latter requires a thorough knowledge of asset and risk management and the controls required to mitigate the risks to an organisation. This is where the knowledge and skills associated with ISO 27001 qualifications such as ISO27001 Foundation and ISO27001 Lead Implementer have the greatest influence. For the first cyber security management qualification I always recommend people in the UK to consider obtaining the Certificate in Information Security Management Principles (CISMP).


Cyberwar Part 2: Government Hacks Threaten Private Sector

"Contrary to a popular belief, fingerprints are not unique, and out of 5.6 million fingerprints compromised, there can be quite a few people who have fingerprints similar enough to be accepted by the biometric authentication system," said Igor Baikalov, chief scientist for security-intelligence company Securonix. "Now, if there is someone with access to top-secret information, and his fingerprint data can be matched to someone else with a known gambling problem -- known from the background checks also leaked by OPM -- the attacker has a way to potentially circumvent biometric authentication. Far-fetched? Probably. But not impossible," he added. As a result, IT and InfoSec professionals are going to have to come up with additional user authentications to mitigate these risks, and perhaps create a few new ones.


Neo4j 2.3 Graph Database Features and openCypher Initiative

As of now, Neo has an official Docker repository that we officially support for our customers. As far as best practices: perhaps the most important tuning parameter is memory. The underlying hardware must provide sufficient memory for the containers running on it; the Neo4j image allows memory usage to be configured as appropriate. And the Enterprise Edition of Neo4j, which in contrast to the Community Edition is primarily commercial, has quite a few operational features that aren’t in the Community Edition, including clustering. Docker containers are essentially ephemeral, but Neo4j needs durable storage for its data. The underlying hardware must include a disk which is mounted into the container for this purpose. Docker containers are isolated from one another by default.


Analytics team structure can work without data scientists

There's no shortage of promise when it comes to streaming analytics and unstructured data analysis, but the issue Cunningham raises is how that ties into the business. "In reality, there has been little effective integration of good data modeling against complicated data at the business level," he said. As a result, Cunningham is more focused on structuring his analytics team to derive tangible value from specific data analysis projects. Currently, he said, the team is working to build better analytical models to predict which medical benefits claims should be paid by insurers and which shouldn't. The goal is to shorten the time it takes to get an answer on coverage when a healthcare provider submits a claim on behalf of a patient.


How to Safely Manage Personal Health Information

Partners and business associates of healthcare that sign HIPAA or PHI related agreements will need to ensure the protection of PHI data, as they are legally bound to handle the patient data as per the rules and regulations. The rules were [originally] limited to paper records but with the advent of technological advancement this rule is extended to the various forms of electronic media, [and] any information that the companies would want to solicit will require approvals from the patients. Organisations will also be subject to audits to ensure processes have been followed with regards the PHI. Despite the regulations and stringent processes, there have been data breaches that have been plaguing the healthcare industry, and “potential cost of breaches for the healthcare industry could be as much as $5.6 billion annually,” one study noted.


Feeding Forward: Using tech to help feed the hungry

Advancements in technology will make it better for everybody involved. Ahmad gave me the example of a time when she was still a student at Berkeley. The dining hall manager called her about 500 sandwiches left over from an event. Dealing with perishable food was extra challenging in Feeding Forward's early days before the cloud, mobile apps, and real-time technologies. "I called the entire list of recipients for all the non-profits in Berkeley and Oakland and even as far as Richmond, California," Ahmad said. "A third of them don't answer the phone, a third of them are like 'No, we are good for today' and the last third are like 'No, we can take up to about 15 sandwiches, or 10 sandwiches. I think, 'Awesome, now I have 485 sandwiches, I have five hours of reading and I'm on the side of the road.'"


Dell security flaws reignite debate on pre-installed software

"The news that some Dell laptops are shipping with at least one, and now likely two, rogue root certificates represents a potential security breakdown in the process of laying down the factory operating system image on new laptops for consumer use,” said Tod Beardsley, security engineering manager at security firm Rapid7. He urged users to contact their support representatives for instructions on how to remove these rogue certificates. “Users rely on factory images of operating systems to be reasonably secure by default; the act of re-installing an operating system from original sources is often beyond the technical capabilities of the average end user,” said Beardsley.


Disruption and Emergence: What does it mean for Enterprise Architecture?

The domain of the enterprise architect is changing, as more and more “enterprise” architecture components are sourced externally. Social and environmental architectures are as important to an enterprise architecture as the components that remain within the enterprise boundary and under the direct control of the EA team. Emerging technologies and digital disruption will transform the enterprise, but they will also transform the ways in which we architect. What will this mean for enterprise architecture in general, or for the role of the enterprise architect? How will EA help enterprises to collaborate with one another? What will these changes mean for the nature of the enterprise and its architecture?



Quote for the day


"Great leaders know they can never communicate enough. Greedy leaders use information as a tool to gain more power." -- @JamesSaliba


November 25, 2015

Russian financial cybercrime: how it works

With online financial transactions becoming more common, the organizations supporting such operations are becoming more attractive to cybercriminals. Over the last few years, cybercriminals have been increasingly attacking not just the customers of banks and online stores, but the enabling banks and payments systems directly. The story of the Carbanak cybergroup which specializes in attacking banks and was exposed earlier this year by Kaspersky Lab is a clear confirmation of this trend. ... Information on the number of attacks may indicate the extent of the problem but does not reveal anything about who creates them and how. We hope that our review will help to shed light on this aspect of financial cybercrime


The State of Millennials Worldwide

As the survey’s authors noted, aspiring to the freedom brought by self-employment while still living with or being supported by family is an age-old contradiction. They found that in Asia or Latin America, these align with cultural norms, but the spread to North American cities where this historically hasn’t been the case are a strong indicator for municipal leaders to find ways to support this growing segment of their constituents. "Young people may respond positively to policies or programs that foster a mind-set of measured risk for personal or global growth, while laying the groundwork for long-term stability," the authors found.


In Machine Learning, What is Better: More Data or better Algorithms

“In machine learning, is more data always better than better algorithms?” No. There are times when more data helps, there are times when it doesn’t. Probably one of the most famous quotes defending the power of data is that of Google’s Research Director Peter Norvig claiming that “We don’t have better algorithms. We just have more data.”. This quote is usually linked to the article on “The Unreasonable Effectiveness of Data”, co-authored by Norvig himself (you should probably be able to find the pdf on the web although the original is behind the IEEE paywall). The last nail on the coffin of better models is when Norvig is misquoted as saying that “All models are wrong, and you don’t need them anyway”


Artificial Intelligence: 10 Things To Know

"We are trying to make a system which at first sight looks like it might be behaving in some manner that we might ascribe to intelligence," said Moore. "Everything, however, with 'artificial' in the label is actually just a really, really, really fancy calculator, all the way from chess programs to software in cars, to credit-scoring systems, to systems that are monitoring pharmaceutical sales for signs of an outbreak." ... "And people are making bad decisions, which are costing huge numbers of lives every year, by not going to physicians under some circumstances or not letting a doctor know about something important or mismanaging their medications.


Composable Infrastructure: Cutting Through the Noise

By separating the physical components of the server, those resources can then be pooled and programmatically composed into a logical server and then, subsequently decomposed, returning the elements back to the pools allowing for reuse. This breaking down of the server means that not only can the most efficient and optimal use of resources be made, but also the lifecycle management of those resources is also decoupled. So, in the case of M-Series, the next CPU generation that would drive a complete replacement of the server with a traditional rack-mounted server would only require the replacement of the CPU and possibly DIMMs to achieve an upgrade. Subsystems like the local storage, RAID controller, network adapter, power supplies, fans, and cabling are preserved until upgrades of those respective elements would yield benefit to the business.


eBook: Foundations of Data Science, by Microsoft Research

The field of algorithms has traditionally assumed that the input data to a problem is presented in random access memory, which the algorithm can repeatedly access. This is not feasible for modern problems. The streaming model and other models have been formulated to better reflect this. In this setting, sampling plays a crucial role and, indeed, we have to sample on the fly. in Chapter ?? we study how to draw good samples efficiently and how to estimate statistical, as well as linear algebra quantities, with such samples. One of the most important tools in the modern toolkit is clustering, dividing data into groups of similar objects. After describing some of the basic methods for clustering, such as the k-means algorithm, we focus on modern developments in understanding these, as well as newer algorithms.


Jai Ranganathan on architecting big data applications in the cloud

There are some fundamental design principles behind the original HDFS implementation, which don’t actually work in the cloud. For example, this notion that data locality is fundamental to this system design; it starts changing in the cloud when you’re looking at these large cloud providers — they are doing all these software-defined networking tricks and they can do bisectional bandwidth, like 40 gigs per second, across their data center … suddenly, you’re talking about moving hundreds of terabytes of data back and forth from a storage to a compute layer without any huge performance penalties. Suddenly, their performance is disadvantageous to this, but it’s not as bad as you think.


Security is the common theme in 2016 top IT projects

The heightened interest doesn't come as a surprise to experts. "Everyone's concerned with security issues due to the nature of what's been happening recently," said Turner who works for a non-profit organization in western New York that's striving to better connect Medicaid patients with health care providers. After another turbulent year of high-profile breaches, including Ashley Madison, CVS and the Office of Personnel Management, security threats are top-of-mind for board members and CEOs, alike, putting a spotlight on CIOs and senior IT leaders. For Vlasich, security and cloud computing, which ranked as a top IT project for the second year in a row, are intertwined thanks, in part, to rogue IT.


Java: The Missing Features

Java’s import syntax is quite limited. The only two options available to the developer are either the import of a single class or of an entire package. This leads to cumbersome multi line imports if we want just some but not all of a package, and necessitates IDE features such as import folding for most large Java source files. ... Java’s arrays aren’t collections, and the "bridge methods" provided in the helper class Arrays also have some major drawbacks. For example, the Arrays.asList() helper method returns an ArrayList, which seems entirely reasonable, until closer inspection reveals that it is not the usual ArrayList but rather Arrays.ArrayList.


Key Methods for Ensuring FRCP Data Preservation Compliance

The new FRCP amendments introduce the notion of “reasonable” preservation effort to preserve data across all forms of enterprise communication. In court, organizations must prove they made reasonable efforts to prevent communications data, in any form, from being destroyed. Failure to do so will lead the court to the assumption that the information not preserved is harmful to your defense. By some estimates, eDiscovery costs U.S. organizations around $41 billion annually. Not only is this expensive, but it can also be a time-intensive exercise. So, how can organizations demonstrate “reasonable” preservation efforts? 



Quote for the day:


"Speaking about it and doing it are not the same thing." -- Gordon Tredgold


November 23, 2015

Ten great gifts for the hacker in your life

"The 21 Bitcoin Computer is ideal for buying and selling digital goods and services. You can use it to create bitcoin-payable APIs, set up your own personal digital goods store, pay people to share your content online, or host online games of skill." It's not cheap ($395) and comes with controversy, but it's a cool toy with a lot of potential, and 21 Inc. is going to be releasing an open source package for the device soon. ... In this reviewer's opinion, every hacker should have a USB Armory in their stocking this year.The Inverse Path USB Armory ($130) is a little USB stick with an entire computer onboard (800MHz ARM processor, 512MB RAM), designed to be a portable platform for personal security applications -- and lives up to its reputation as "the Swiss Army Knife of security devices."


IBM SoftLayer Performance Less Impressive Than Claimed

If nothing else, the claim reflects the nervousness of database vendors as Amazon launches competing database services on its own cloud. Amazon's Kinesis in-memory system could be construed as a competitor with VoltDB, a point that Kepes noted at the time. This year, the tests were done again, this time by Callaghan (a third party) rather than VoltDB tester Alex Rogers, who conducted the 2014 tests. Contacted by InformationWeek, a VoltDB spokesman said IBM played no role in financing the tests. Callaghan explained in a disclaimer note on his Acme site: "Someone from VoltDB contacted me in June asking if I'd be interested in performing a cloud vs. cloud benchmark, offering to compensate me for my time and to cover any cloud vendor bills." Callaghan agreed to do the benchmark.


Google unveils Android Studio 2.0 with Instant Run

The Google search team has also added some functionality to Android Studio: Developers can generate and test deep links directly right from the IDE. Just last week, Google unveiled its search index has 100 billion deep links into apps and that over 40 percent of Google searches on Android now surface app content. Android Studio is based on IntelliJ, an open source Java IDE. Android Studio 2.0 is based on IntelliJ 15, which launched just a few weeks ago, and thus has the following features: Instant preview for Find in Path, Run configurations with a state indicator, enhanced debugging for the Java programming language with Force Return (gives greater control over flow of execution), improved UI for testing, one-click run of application or tests, and adjustments for color deficiency.


6 Best Practices for Working From Home

Anyone who works from home will tell you that it has its benefits, yet also challenges. When I started my business in 1998, social media did not exist, I had no clients and most of my friends worked in a traditional office setting. After working for a large hotel for nearly six years, I had grown accustomed to being surrounded by people each day. Working from home provided peace and solitude, yet I was lonely. I had no one to interact with except my yellow Labrador. No humans were around for sharing ideas. I worked long hours, many in my pajamas. No one was there to hold me accountable for my work and I had to force myself to rise at a reasonable hour each morning and develop self-discipline.


VMware CIO: 'I've worked for a lot of evil people in my career'

"We've grown at an exponential rate and are now at a stage where we need to set up for new business models to support the next generation of growth," he said. A case in point: "We sell licenses, but a lot of our customers are now asking for subscriptions," he explained. "We're getting to the guts of our processes and making sure they're improving." There are other significant shifts taking place in VMware's market as well. The rise of container technologies such as Docker, for example, is viewed by many as a threat to virtualization, which is VMware's bread and butter. Iyer, however, isn't worried. "I have been through so many hype cycles," he said. Iyer has asked IT staff to try out container technology internally, and they've liked it, he said.


2016: The Year of The Data Center

Many IT decision makers are relying on strategically located data centers rather than relying solely on a hub. For example, instead of storing massive amounts of data in a few select data centers, application providers are moving their applications to “the edge,” (in locations where they can serve customers locally, and reach more businesses and consumers in more markets) in order to be able to serve their consumers more closely and reduce discontinuations. Another item to consider when thinking about location is costs associated to that particular area. Are there tax incentives for businesses in that region? What are the utility costs for that area? These are all location elements that IT executives need to consider when selecting a location.


Jide Remix Mini: Does the 'world's first true Android PC' deliver?

Remix also provides both a custom file manager and control panel. The control panel offers a view of system settings that looks similar to a Mac OS X control panel, with a few horizontal rows of icons. The file manager provides one-click access to documents, pictures, music, and movies, in addition to the file system. Remix adds windowing, too. Many apps run not only in full-screen mode, but also in re-sizable windows. Gmail, Google Docs, Chrome, and the Microsoft Office apps all support windowing. However, some apps, such as Google Hangouts, only work full-screen. Jide continues to update Remix OS to fix bugs and improve functionality. Multi-tasking works surprisingly well, too.


The Surprising Truth About DevOps in Banks

Banking IT is generally heavily siloed in terms of organizational structure and reporting lines, and also often suffers from the geographic distribution of teams or off-shoring. Culturally however, I believe that there are not the same barriers and lack of cross department collaboration as I see elsewhere in other industries. On the whole, banking technology organizations seem less siloed than in other industries. On my development teams, we generally had a positive relationship with testers, working together early in the development cycle in a highly collaborative way. Although offshore, our testers were highly skilled and had a high degree of understanding about the system we worked on together. We understood their world and they understood ours, and incentives, goals and KPIs were aligned across both groups - to deliver high quality software, early and often.


Enterprise networks need to address mobility trends

Data security is a complex area of enterprise mobility trends, and one that technology can only address to a point. A state-of-the-art network won't be enough to safeguard business data if employees don't follow basic security protection procedures. Furthermore, in this capacity, IT can only do so much since a lot of mobile activity occurs off the network. And since most mobile devices are used jointly for business and personal needs, the business data stored on them will be vulnerable even in the most casual sessions, such as connecting over the public Internet during personal time. Considering these mobility trends, IT will likely need to deploy mobile device management (MDM) to protect both the devices and the local area network (LAN). This plan will entail some level of encryption for all flows of mobile communication, including voice, email and browser access.


Getting started with a career in cybersecurity

So cybersecurity workers are in high demand, the jobs pay well, and they're important and critical to safeguarding our society. That sounds to many like an ideal opportunity. But what does it take to get hired and thrive in such a gig? Here are a few things to consider. Cybersecurity (and IT in general) are not the same as computer science. Traditional computer science can be helpful, but it's not the full story. If you're going to design unbreakable encryption (or crack unbreakable encryption), you're going to need deep education in computer science and math, because you're dealing with everything from stats to finite automata. But there's also all the knowledge needed about how current systems work, which computer science doesn't necessarily prepare you for. That's best handled by all the certification classes, particularly the Microsoft-sponsored ones.



Quote for the day:


"Business is all about solving people's problems -- at a profit." -- Paul Marsden


November 22, 2015

2015 State of Analytics - 20 Key Business Findings

High-performing companies are 2X more likely than underperformers to at least half of their employee base uses analytics tools. In my experience, training and empowerment of all employees is key to scale, as long as right tools and business processes are in place to be inclusive of all employees. Often organizations will limit the visibility into analytics and access to tools to only management and business analysts, and by doing so, limit the insight and full potential of the entire organizations. The importance of systems integration, data quality, data consolidation and customization and mobility are key to democratization of insights. Here's why an analytics platform is key to success.


FBI info security chief discusses taking risks with cloud, big data

"Accepting a risk doesn't mean it's going to happen," Hart said. "It means if the thing happens, you accepted the risk and will take the steps to mitigate that risk." As CSIO for the FBI, Hart said she is responsible for managing everything from governance to operational security in protecting the FBI's cloud infrastructure against internal and external threats. "I'm not packing heat," Hart quipped, clarifying she is not an FBI agent in the field. Hart offered a few insights into the FBI's cloud infrastructure, noting everything done by federal agencies must be compliant with the FedRamp cloud framework. "The cloud is all about big data and being able to aggregate data, which are amazing things," Hart said. "But when the sword cuts, it cuts both ways."


Qylur System Uses Big Data to Improve Levi's Stadium Security

Lisa Dolev, CEO of Qylur Intelligent Systems, explained that her company's technologies fit into the industrial Internet of things (IIoT) space, with machines that are able to learn from each other and evolve in their decision-making capabilities to help stay ahead of threats. "For the Qylatron Entry Experience Solution, what we're doing is combining the aspects of greeting a person based on the entry ticket and doing security scanning," Dolev told eWEEK. The Qylatron is a self-service machine comprising multiple pods that can be used for screening bags and other items (pictured). It has a number of different sensors that use machine learning to come to automated decisions, according to Dolev. The automated decisions are intended to stop things defined by the system's administrators as being dangerous or even just items that are prohibited by the venue.


Making Good on the Promise of Big Data in Health Care

Bates does not blame interoperability issues for the healthcare industry's slow adoption of predictive analytics. "You can do a great deal with just your own data," he says. Rather, the problem has to do with personnel. "Healthcare organizations don't have groups with the right training to understand how to use data to reduce costs and improve care," he says. "If they do, the groups are relatively small and completely consumed with meeting external requirements, such as reporting quality data. They just don't have the bandwidth." Another problem is that up-to-date analytics software and tool kits—especially those that take a more "self-serve" approach to data—have not been available until recently.


Advantages of network virtualization impress, but hurdles remain

From a logical perspective, virtual switches provide much of the same functionality as the traditional top-of-rack switches. Today, for example, it's not uncommon to see a virtual switch with several virtual LANs. A handful of VMs communicating with each other via a virtual switch is a basic example of network virtualization. Inter-VLAN traffic, meanwhile, is provided via a trunk between a virtual switch and the physical network. The traffic traverses the physical port of the host server. Essentially, the physical server port serves as an uplink port of the virtual switch. If two VMs residing on the same physical host --but on separate VLANs - needed to communicate, the traffic is routed to the physical network. At that point, a firewall could be used to filter traffic between the two hosts.


Strategies for a next-generation security architecture

Increasingly you're going to be liable for committing any vulnerability and as we've seen, if you're a senior executive, you may have to take the fall for the hack. And that puts a lot of pressure on companies to really rethink how they're doing security. So, really to sum up the answer, it's the [problems] of the perimeter-less architecture; the emergence of a professional threat economy; and the impact of getting hacked both from a personal career limiting perspective, as well as from a regulatory compliance perspective. One of the other big things that you're seeing evolve in addition to the professional threat economy is now you've got people who built all the pieces, and there's almost an inverse correlation between the mental effort that's required and the criminality of certain things.


Discovering Alpha Through Automation

Consistently discovering alpha is the holy grail of investment management, and is an arena populated by two primary schools of thought. The first consists of active managers who proactively try to uncover investment opportunities that can generate higher returns, and the other consists of passive managers who believe markets are efficient and invest in a diversified portfolio of securities mirroring the market. While there is growing acceptance even amongst die-hard efficient market finance theorists that financial markets are not efficient to the level originally hypothesized, active managers have not consistently outperformed their passive counterparts in many asset classes in recent times. However, can investment managers systematically uncover pockets of market inefficiencies using Big Data analytics?


The open-data revolution has not lived up to expectations

The thorniest problem for open data now is privacy. Governments rushing to release individual-level data such as tax, medical or education records are “walking into a massive minefield”, warns Martin Tisne of the Omidyar Network, a philanthropic outfit. Such data are among the most valuable: they can boost, for example, precision medicine, which tailors each patient’s treatment. But a privacy scandal can cause a backlash against all open data. A public outcry recently forced Britain’s National Health Service to rethink plans for making anonymised patient-level data available for reuse. Open-data activists have joined forces with bureaucrats and entrepreneurs to sort out all these problems. Their solutions are starting to work, and growing amounts of data are being put to good use.


Key Lessons Learned from Transition to NoSQL at an Online Gaming Website

Erlang concurrency is designed around the actor model and encourages an elegant style of programming where problems are modelled by many isolated processes (actors) that communicate through immutable message passing.  Each process has its own heap and by default is very lightweight (512 bytes) making it practical to spin up many hundreds of thousands of processes on commodity type servers. These individual processes are scheduled by a virtual machine over all available processor cores in a soft real time manner making sure that each process gets a fair share of processing time.  The fact that each Erlang process has its own heap means that it can crash independently without corrupting shared memory.


Containers Will Penetrate Large Cloud Platforms

Amazon, Microsoft, Google and other leading cloud providers are already adopting container technologies. We are also seeing the same approach among OS, hardware and application developers. For example, Intel too is supporting containerization with its Cloud Integrity Technology 3.0. It is therefore quite obvious that support for containers will continue to grow in the coming years and we are likely to see more deployment in this ecosystem. An increasing number of micro-service applications will be built on containers. In fact, experts predict that most cloud platforms will either switch to a new container stack or at least start supporting containers by 2017.



Quote for the day:


"Technology is just a tool. In terms of getting the kids working together and motivating them, the teacher is most important." -- Bill Gates


November 21, 2015

How to tackle change management in an era of automation

“Automation will advance us away from managing, monitoring and building to brokering,” Oehrlich says. However, CIOs must help manage the transition customers, employees, vendors, and partners to new automation technologies. This requires experts who know how to apply automation and technology to achieve business outcomes. “That is the biggest challenge with the workforce the CIO has today, as many folks in their jobs don't have these skills.” Such work is challenging as technology becomes increasingly integral to the business strategy. A CIO working for a major retailer has traditionally worried about aligning point-of-sale and transactional systems, and improving store operations, but not about “serving the customer when they come in the front door,” Chui says.


You Can’t Engage Employees by Copying How Other Companies Do It

High commitment companies work hard to sustain their culture—they realize that protecting it is as much of a challenge as building it in the first place. Several types of practices help to keep a company and its many leaders on the journey. Employee engagement surveys can help assess alignment of leaders’ multiple business or geographic units with company purpose and values. As CEO of Campbell Soup between 2000 and 2010, Doug Conant employed quarterly engagement surveys to assess and develop high commitment in the company’s multiple business and operating units. Hewlett Packard’s senior management employed skip-level meetings to hear the truth from lower levels.


How Hybrid Cloud Strategy Can Prevent Cloud Chaos

In most cases, organizations and employees fail to realize what they are getting into. In fact, many overlook the fact that as SaaS providers offer more applications and integrations, it increases the likelihood they are merging the organization's internal data with data from one or more of those applications. Most issues develop at this stage but usually come into light too late, after the application has been deployed. We have heard many horror stories caused by data merging, violating the organizations’ security and governance policies, and making them vulnerable to hacking and security threats. It is therefore essential to have a proper strategy to manage your hybrid or multi-cloud environment.


The Machine-Vision Algorithm for Analyzing Children’s Drawings

The results show both the power and the limitations of this kind of science. The most impressive result is a clear demonstration that the complexity of a drawing changes as children get older. “We observe that children tend to draw more complex scenes as they grow older,” say Konyushkova and co. “However, after some age (approximately 13 years old), they start drawing simple and abstract scenes again.” This is consistent with the consensus among child psychologists. But the analysis of the role of religion is more problematic. One idea among researchers is that children tend to draw pictures of gods above the midline of piece of paper. They say this is because children think gods are somehow unworldly.


Businesses struggling to transition to digital era

“Startups and established corporations can leverage individual strengths and explore acceleration opportunities through collaboration. In the past, IT has been an enabler of business, but in the future IT will be part of business” said Kilger. Ernst & Young predicts that all businesses will soon need chief digital officers to explain what it means to become a truly digital enterprise. “IT will have to manage the whole technology stack, including software, connectivity layer, cloud, apps in the cloud and technologies enabling the internet of things [IoT],” said Kilger. This, in turn, will create the need for companies to have access to data scientists to enable them to understand and benefit from all the data they are generating and collecting.


A Framework in C# for Fingerprint Verification

We implemented the fingerprint verification algorithms proposed by Tico and Kuosmanen, Jiang and Yau, Medina-Pérez et al. , and Qi et al. It is important to highlight that, despite the algorithm of Qi et al. is a combination of a minutiae matching algorithm with an orientation based algorithm, we implemented only the minutiae matching algorithm. We also implemented the feature extraction algorithms proposed by Ratha et al. and the orientation image extractor proposed by Sherlock et al. This framework allows you to include new fingerprint matching algorithms as well as new feature extraction algorithms with minimum effort and without recompiling the framework. One of the goals that we kept in mind while developing this framework was to achieve class interfaces as simple as possible. This way, adding new algorithms is pretty straightforward.


Startup Humanyze's 'people analytics' wants to transform your workplace

"It's like a Fitbit for your career," he explained. "When you set up your dashboard, you tell us what you want to achieve." Someone who wants to be the company's best salesperson, for example, can use the technology to benchmark their own performance against that of the current top performers without ever knowing who those people are. Alternatively, someone who wants to become a manager can set up a dashboard that uncovers what he or she needs to do in terms of behaviors to achieve that goal. No matter which department is using Humanyze's Sociometric Badge at any given time, IT plays a central role, Waber said. "As companies become able to culturally assimilate this kind of approach, IT can go beyond just supporting it and help to supercharge it," Waber said.


vArmour Unveils Industry-Wide Pathway to a New Security Architecture

The pathway to Multi-Cloud Security Architecture will help IT and security leaders develop their short and long-term strategy to secure their entire cloud infrastructure. Organizations have invested heavily in traditional perimeter security, but this is only the start — now, organizations will need to move controls closer to assets, creating an intelligent system over time that is dynamic, efficient and autonomic. “There is a pressing need for this type of multi-cloud security architecture, as security and IT teams are in the process of learning what to do or how to do it,” said Jon Oltsik, principal analyst at ESG. “vArmour has a vision and growing experience that can help organizations think differently about security architecture in this new heterogeneous cloud world, and a provide a pathway to get there.”


Cloud security requires shared responsibility model

To create a successful shared responsibility model, enterprises need visibility into their cloud provider's security controls, Patel said. And IT organizations can gain that visibility in a number of ways. For example, they can review independent assessments of their cloud provider's security model, such as attestations from the CSA's Security, Trust and Assurance Registry (STAR). They may also want to check that their provider holds certain cloud security certifications, such as ISO 27001. But because they only reflect the state of a provider's security environment during a given period of time, certifications shouldn't be the only way an enterprise assesses a potential provider, according to Patel.


A day in the life of a cloud architect

There is always an inertia to change in enterprises. One of the pitfalls in enterprises is that trying to treat OpenStack as traditional Mode 1 virtualization platform. It is always good to have a discovery of requirements and use cases and identify the use cases for OpenStack. More often than not, I have seen that enterprises want to adopt OpenStack because it's the shiny new thing in the industry. Every platform has its place and you cannot do away with legacy. In this day and age of bi-modal IT, it is important to understand the requirements for Mode 2 IT. OpenStack is a great platform for innovative Mode 2 environments, where the ask for enterprises is to rapidly deliver products and solutions adopting the principles of DevOps, which require infrastructure to be treated as code.



Quote for the day:


"Being powerful is like being a lady. If you have to tell people you are, you aren't." -- Margaret Thatcher