Articles by Ross McKerchar

About Ross McKerchar

Ross studied computer science at the University of Edinburgh, and is a cybersecurity specialist at Sophos.

Bring your own: More practical advice for handling smartphones in the workplace

Bring your own: Practical advice for handling smartphones in the workplace (part 2)

Your workforce wants anytime, anyplace access to applications, but you have a network to protect. Here are a few ideas to make life harder for the bad guys, while making you the good guy.

Practical IT: are your firewalls in the wrong place?

Practical IT: are your firewalls in the wrong place?

Firewalls have come a long way in the last 15 years. But today's standard architecture might leave something to be desired and we talk about what firewall administrators want to look at.

Practical IT: What is your company's threat response strategy?

Practical IT: What is your IT department's threat response strategy?

As someone looking after IT for your company, how do you react to reports of vulnerabilites like those seen recently in Java and Internet Explorer?

Practical IT: Passwords 101 for businesses

Practical IT: Assuring strong enterprise password security

We all know good passwords are key to protecting against attack. So here's how to do it and not lose friends and alienate people.

Practical IT: handling perimeter expansion and disintegration

wires and padlock_thumb

All it takes is a single successful drive-by-download or malicious email and an attacker has full control over a computer in your company. Your network firewall, focused on blocking attacks from the outside world, won’t offer much help.

It's time to take a strategic approach to combatting the risks, explains Ross McKerchar.

Practical IT: How your firm can better secure access to social networks

business-social-networking_thumb

Facebook’s potential to ruin (or make) your business is a common news topic. We've looked into the risks, and how businesses might provide a more secure way of accessing social networks.

Practical IT: how to manage cost-effective penetration testing

resultsoftest

Penetration testing is a valuable but tool but can quickly get expensive. Focusing on testing the right things in the right manner is key to getting the best bang for your buck.

Practical IT: how to assess a third-party provider's security (part 2)

security_thumb

In the second part of his article on how to assess the security of a third-party provider, Ross McKerchar takes a look at security functionality.

Practical IT: how to assess a third-party provider's security (part 1)

measuring_up_250

There are many security implication we as IT guys need to think about when we host applications externally. Here is a list of things to ask your provider to reduce the risk of a data or malware breach.

Bring your own: practical advice for handling smartphones in the workplace

man with smartphone

If you work in IT, you’ve probably been here already. Someone important is proudly clutching a shiny new toy and asking you that vague, difficult question: "Can I use this?".

So how do you respond?