{"id":11,"date":"2024-04-20T21:43:31","date_gmt":"2024-04-20T21:43:31","guid":{"rendered":"https:\/\/halimer.com\/?p=11"},"modified":"2024-04-20T21:43:31","modified_gmt":"2024-04-20T21:43:31","slug":"security-v-compliance","status":"publish","type":"post","link":"https:\/\/halimer.com\/?p=11","title":{"rendered":"Security v. Compliance"},"content":{"rendered":"\n<p>Throughout my career I have seen compliance lumped in with security and it makes me cringe. Security and compliance can compliment one another but compliance does not make you secure and security doesn&#8217;t make you compliant.  Let&#8217;s explain the difference with an example.<\/p>\n\n\n\n<p>If you travel on an airplane in the United States and want to put a lock on your luggage it has to be TSA (Travel Security Administration) approved.  This approval ensures that the lock can be opened by a universal &#8220;master&#8221; key thus allowing TSA agents to open and re-lock the lock. So your probably thinking that is not too bad it is only TSA agents.  However, a while ago pictures of the &#8220;master&#8221; keys was leaked and shortly after people with 3D printers can also open your luggage.  Here is a GitHub repo which has those images: <a href=\"https:\/\/github.com\/Xyl2k\/TSA-Travel-Sentry-master-keys\"> https:\/\/github.com\/Xyl2k\/TSA-Travel-Sentry-master-keys<\/a>.<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"873\" height=\"521\" src=\"https:\/\/halimer.com\/wp-content\/uploads\/2024\/04\/eaa8f8a0-5703-11e5-9c47-d89b8d40b115.jpg\" alt=\"\" class=\"wp-image-12\" srcset=\"https:\/\/halimer.com\/wp-content\/uploads\/2024\/04\/eaa8f8a0-5703-11e5-9c47-d89b8d40b115.jpg 873w, https:\/\/halimer.com\/wp-content\/uploads\/2024\/04\/eaa8f8a0-5703-11e5-9c47-d89b8d40b115-300x179.jpg 300w, https:\/\/halimer.com\/wp-content\/uploads\/2024\/04\/eaa8f8a0-5703-11e5-9c47-d89b8d40b115-768x458.jpg 768w\" sizes=\"auto, (max-width: 873px) 100vw, 873px\" \/><\/figure>\n\n\n\n<p>So, a compliant TSA lock doesn&#8217;t really keep your luggage secure.  So compliance doesn&#8217;t necessarily make you secure. <\/p>\n\n\n\n<p><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Throughout my career I have seen compliance lumped in with security and it makes me cringe. Security and compliance can compliment one another but compliance does not make you secure and security doesn&#8217;t make you compliant. Let&#8217;s explain the difference with an example. If you travel on an airplane in the United States and want [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[5,4],"class_list":["post-11","post","type-post","status-publish","format-standard","hentry","category-uncategorized","tag-compliance","tag-security"],"_links":{"self":[{"href":"https:\/\/halimer.com\/index.php?rest_route=\/wp\/v2\/posts\/11","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/halimer.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/halimer.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/halimer.com\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/halimer.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=11"}],"version-history":[{"count":1,"href":"https:\/\/halimer.com\/index.php?rest_route=\/wp\/v2\/posts\/11\/revisions"}],"predecessor-version":[{"id":13,"href":"https:\/\/halimer.com\/index.php?rest_route=\/wp\/v2\/posts\/11\/revisions\/13"}],"wp:attachment":[{"href":"https:\/\/halimer.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=11"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/halimer.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=11"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/halimer.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=11"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}