photog.social is one of the many independent Mastodon servers you can use to participate in the fediverse.
🌈 An inclusive place for your photos, silliness, and convos! 🌈

Administered by:

Server stats:

243
active users

#auditing

0 posts0 participants0 posts today

TGIF, for real.

This week has been a mess of stress with a customer coming in to audit at the day job (and I'm the primary contact person) and the spouse preparing for a work trip to LA (and no, he's not looking forward to it at all).

Next week will be Significantly Worse in that we're ISO 9001 certified and we have our Certification audit Tues-Fri and, once again, I am the main contact. While the parent company visits.

There will be Very Little Accomplished. 😭
#ugh #work #auditing

*splat*

The auditing class is over. My students all passed. I have one last assignment to review and give feedback on (they wrote up a summary report for me).

I can barely effing focus my eyes. My entire body hurts, especially my hands and arms. And neck. I just wanna collapse.

So exhausting.

But at least it's done and they passed. My schedule stands. *weak pompom wave*

*flops* Just finished teaching day 3 of 4 of the Internal Quality Auditor class. They're doing well, asking questions and not even visibly falling asleep on me! Much. Need a couple more exercises to break things up in the middle of the day.

But now I'm wiped and I just wanna go home and sleep. One hour, eight minutes to clock out.

*weak yay*
#teaching #auditing #ugh

Replied in thread

@mike @Gargron @aenea I'd also love to read the reasoning why the "non-profit" Status for #Mastodon was canceled and what steps - if any - followed to appeal that decision.
infosec.space/@kkarhan/1123470

  • After all the financial authorities in Germany don't just nilly-willy instate or revoke such legal classification, since they may be liable for wrongful denial or revocations...

Furthermore I wounder why it wasn't incorporated as a registered #cooperative [eG] or registered #nonprofit #foundation [eV] instead?

  • Maybe it's because a cooperative would've required external #auditing and like the nonprofit foundation would've required both more stakeholders, transparency and democratic structures and bylaws?

  • I mean, that's #NotLegalAdvice and #NotTaxAdvice as well as #NotFinancialAdvice but it still does beg the questions of "how?" and espechally "why?" and it rubs me personally on that wrong part labeled "#sus"...

Infosec.SpaceKevin Karhan :verified: (@kkarhan@infosec.space)@NaMi@mstdn.social natürlich ist dem nicht so. @Gargron@mastodon.social hätte hier durchaus die Entscheidung veröffentlichen und Rechtsmittel einlegen können... Ich glaub' eher dass es ganz pragmatische Gründe gibt, *warum* entsprechende #Transparenz nicht erfolgte... https://mstdn.social/@NaMi/112344588848974021

One of the weirdest aspect of #EndStageCapitalism is the collapse of #auditing, the lynchpin of investing. Auditors - independent professionals who sign off on a company's finances - are the only way that investors can be sure they're not handing their money over to failing businesses run by crooks.

--

If you'd like an essay-formatted version of this thread to read or share, here's a link to it on pluralistic.net, my surveillance-free, ad-free, tracker-free blog:

pluralistic.net/2024/01/26/noc

1/

Conservatives may deride the #RealityBasedCommunity as a drag on progress and commercial expansion, but even the most noxious pump-and-dump capitalism is supposed to remain tethered to reality by two unbreakable fetters: #auditing and #insurance:

en.wikipedia.org/wiki/Reality-

--

If you'd like an essay-formatted version of this thread to read or share, here's a link to it on pluralistic.net, my surveillance-free, ad-free, tracker-free blog:

pluralistic.net/2023/11/28/re-

1/

In the 6 years since the #Carillion collapse, while there has been some improvement in regulatory activity around #auditing by the Financial Reporting Authority, its legislative position remains weak, as do its available sanctions against bad practice.

But as Helen Thomas (FT) reminds us the 2018 report into the Carillion which recommend changes & improvement to the regulatory regime, was from a committee chaired by #RachelReeves;

She might actually be in a position to do something, soon?

well as through the Hubbard #Dianetic Research Foundation that he established in 1950. The foundation went #bankrupt, and #Hubbard lost the rights to his book Dianetics in 1952. He then recharacterized the subject as a #religion and renamed it #Scientology, retaining the terminology, doctrines, and the practice of "#auditing".[7][16][17] By 1954 he had regained the rights to Dianetics and retained both subjects under the umbrella of the Church of Scientology
en.wikipedia.org/wiki/Scientol

en.wikipedia.orgScientology - Wikipedia
Replied in thread

Next was a fantastic talk by Cynthia Rudin on the challenges of using #MachineLearning for scoring systems at #AlanTuringInstitute. I always love a talk that takes a hatchet to the #Compass system, and this excellent talk does that and more, succinctly discussing when and how one should consider using machine learning, how problems in #data can significantly throw off scores, and the importance of #auditing systems even if you design it yourself. Highly recommend youtube.com/watch?v=sOCUP79m5l (3/7)

So, an #introduction, eh?

I'm a recovering #engineer, former CTO, security researcher, and ex-regulator for #ICSsecurity. I'm now the Director of Cyber Risk at Dragos and I teach (and write) for #SANS.

I've had a lucky career-- I've testified before the US Congress and several federal agencies (as well as a few other countries abroad) and have helped hundreds of industrial organizations improve their #OT security. I've helped write a handful of international standards and I have some strong opinions on what "good" looks like for ICS/OT.

I'll usually write/present on:
#cyberrisk #metrics #technical #standards #engineering #safety #auditing #industrial #ICS #IIoT #governance
...and whatever strikes my fancy. My focus over the past 5-10 years has been more board-level, but I spent a large part of my career in a hard hat trying to fix (and break) industrial systems.

That said, if anyone asks me "what do you do for a living?" I usually avoid talking about myself and instead deviate to more important things... like living a healthy, happy life and helping others where I can.

Oh, and memes. I shitpost memes about how absurd our small community can be some times.

Oof. 9,718 characters left. Uhh. Check out my bio here if you want more info: sans.org/profiles/jason-d-chri