<?xml version="1.0" encoding="utf-8"?><bwFrame xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:xsd="http://www.w3.org/2001/XMLSchema" default_layout="npxnsnfns11111001110" textdirection="ltr" device="false" kbshortcuts="true" outputtype="ap"><layouts><layout name="npxnsnfns11111001110" font="Articulate" controllayout="npxnsnfns11111001110" colorscheme="npxnsnfns11111001110" string_table="npxnsnfns11111001110" /><layout name="pxnsnfns11111001110" font="Articulate" controllayout="pxnsnfns11111001110" colorscheme="npxnsnfns11111001110" string_table="npxnsnfns11111001110" /><layout name="pnxnsnfns11111001110" font="Articulate" controllayout="pnxnsnfns11111001110" colorscheme="npxnsnfns11111001110" string_table="npxnsnfns11111001110" /></layouts><control_options><optiongroups><optiongroup name="sidebaroptions"><options><option name="title_enabled" value="true"><options><option name="title_text" value="Introduction" /></options></option><option name="logo_enabled" value="true"><options><option name="logo_url" value="presentation_content/logo.swf"><properties><property name="width" value="171" /><property name="height" value="103" /></properties></option><option name="html5_logo_url" value="mobile/5jjy1LDd5fF.jpg" /></options></option><option name="sidebar_enabled" value="true"><options><option name="sidebarpos" value="left" /></options></option><optionlist name="tabs"><listitems><listitem name="resources" value="false" group="linkright" /><listitem name="outline" value="true" group="sidebar" /><listitem name="glossary" value="false" group="sidebar" /><listitem name="transcript" value="true" group="sidebar" /></listitems></optionlist><option name="time_enabled" value="false"><options><option name="time_format" value="totalelapsed" /></options></option><option name="info_enabled" value="false"><options><option name="default" value="default" /></options></option><option name="video_enabled" value="false"><options><option name="height" value="135" /></options></option></options></optiongroup><optiongroup name="menuoptions"><options><option name="flow" value="free" /><option name="wraplistitems" value="false" /><option name="tooltips" value="true" /><option name="autocollapse" value="true" /><option name="autonumber" value="false" /><option name="levelbehavior" value="reached" /><option name="levelrestriction" value="unrestricted" /><option name="enableresultsicons" value="false" /></options></optiongroup><optiongroup name="controls"><options><option name="volume" value="true" /><option name="seekbar" value="true"><options><option name="readonly" value="false" /></options></option><option name="search" value="true" /><option name="replay" value="true" /><option name="pauseplay" value="true" /><option name="enableKeyboardShortcuts" value="true" /><option name="elapsedandtotaltime" value="true" /><option name="use_fixed_output_size" value="true" /><option name="output_size_scale_percent" value="100" /></options></optiongroup><optiongroup name="bottombaroptions"><options><option name="bottombar_enabled" value="true" /></options></optiongroup></optiongroups></control_options><control_layouts><control_layout name="npxnsnfns11111001110"><control name="volume" enabled="true" /><control name="seekbar" enabled="true" /><control name="replay" enabled="true" /><control name="pauseplay" enabled="true" /><control name="logo" enabled="true" /><control name="previous" enabled="false" /><control name="next" enabled="true" /><control name="submit" enabled="false" /><control name="finish" enabled="false" /><control name="submitall" enabled="false" /><control name="resources" enabled="false" /><control name="glossary" enabled="false" /><control name="transcript" enabled="true" /><control name="outline" enabled="true"><controls><control name="search" enabled="true" /></controls></control><control name="close_btn" enabled="false" /></control_layout><control_layout name="pxnsnfns11111001110"><control name="volume" enabled="true" /><control name="seekbar" enabled="true" /><control name="replay" enabled="true" /><control name="pauseplay" enabled="true" /><control name="logo" enabled="true" /><control name="previous" enabled="true" /><control name="next" enabled="true" /><control name="submit" enabled="false" /><control name="finish" enabled="false" /><control name="submitall" enabled="false" /><control name="resources" enabled="false" /><control name="glossary" enabled="false" /><control name="transcript" enabled="true" /><control name="outline" enabled="true"><controls><control name="search" enabled="true" /></controls></control><control name="close_btn" enabled="false" /></control_layout><control_layout name="pnxnsnfns11111001110"><control name="volume" enabled="true" /><control name="seekbar" enabled="true" /><control name="replay" enabled="true" /><control name="pauseplay" enabled="true" /><control name="logo" enabled="true" /><control name="previous" enabled="true" /><control name="next" enabled="false" /><control name="submit" enabled="false" /><control name="finish" enabled="false" /><control name="submitall" enabled="false" /><control name="resources" enabled="false" /><control name="glossary" enabled="false" /><control name="transcript" enabled="true" /><control name="outline" enabled="true"><controls><control name="search" enabled="true" /></controls></control><control name="close_btn" enabled="false" /></control_layout></control_layouts><colorschemes><colorscheme name="npxnsnfns11111001110"><color_group name="infopanel"><group_colors><color name="link_text"><fill type="linear" rotation="90"><colors><color rgb="0x7C2280" alpha="100" stop="0" /></colors></fill></color><color name="link_hover"><fill type="linear" rotation="90"><colors><color rgb="0x0000EE" alpha="100" stop="0" /></colors></fill></color><color name="bg"><fill type="linear" rotation="90"><colors><color rgb="0xFFFFFF" alpha="100" stop="0" /></colors></fill></color><color name="shadow"><fill type="linear" rotation="90"><colors><color rgb="0xB8B8B8" alpha="100" stop="0" /></colors></fill></color><color name="name_text"><fill type="linear" rotation="90"><colors><color rgb="0x444444" alpha="100" stop="0" /></colors></fill></color><color name="title_text"><fill type="linear" rotation="90"><colors><color rgb="0x999999" alpha="100" stop="0" /></colors></fill></color></group_colors></color_group><color_group name="infopanelpopup"><group_colors><color name="link_text"><fill type="linear" rotation="90"><colors><color rgb="0x7C2280" alpha="100" stop="0" /></colors></fill></color><color name="link_hover"><fill type="linear" rotation="90"><colors><color rgb="0x0000EE" alpha="100" stop="0" /></colors></fill></color><color name="bg"><fill type="linear" rotation="90"><colors><color rgb="0xE9E9E9" alpha="100" stop="0" /><color rgb="0xCFCFCF" alpha="100" stop="255" /></colors></fill></color><color name="shadow"><fill type="linear" rotation="90"><colors><color rgb="0xB8B8B8" alpha="100" stop="0" /></colors></fill></color><color name="name_text"><fill type="linear" rotation="90"><colors><color rgb="0x444444" alpha="100" stop="0" /></colors></fill></color><color name="bio_text"><fill type="linear" rotation="90"><colors><color rgb="0x999999" alpha="100" stop="0" /></colors></fill></color></group_colors></color_group><color_group name="timer"><group_colors><color name="duration"><fill type="linear" rotation="90"><colors><color rgb="0x00D7FF" alpha="100" stop="0" /><color rgb="0x00ABFF" alpha="100" stop="255" /></colors></fill></color><color name="elapsed"><fill type="linear" rotation="90"><colors><color rgb="0xFEE347" alpha="100" stop="0" /><color rgb="0xFCCC2A" alpha="100" stop="255" /></colors></fill></color><color name="stroke"><fill type="linear" rotation="90"><colors><color rgb="0xC7C7C7" alpha="100" stop="0" /></colors></fill></color><color name="inner"><fill type="linear" rotation="90"><colors><color rgb="0xFFFFFF" alpha="100" stop="0" /></colors></fill></color><color name="text"><fill type="linear" rotation="90"><colors><color rgb="0x555555" alpha="100" stop="0" /></colors></fill></color></group_colors></color_group><color_group name="window"><group_colors><color name="text"><fill type="linear" rotation="90"><colors><color rgb="0x555555" alpha="100" stop="0" /></colors></fill></color><color name="inner"><fill type="linear" rotation="90"><colors><color rgb="0xEAEAEA" alpha="100" stop="0" /><color rgb="0xCFCFCF" alpha="100" stop="255" /></colors></fill></color><color name="bg"><fill type="linear" rotation="90"><colors><color rgb="0xF3F3F3" alpha="100" stop="0" /></colors></fill></color><color name="diva"><fill type="linear" rotation="90"><colors><color rgb="0xF7F7F7" alpha="100" stop="0" /></colors></fill></color><color name="divb"><fill type="linear" rotation="90"><colors><color rgb="0xD3D3D3" alpha="100" stop="0" /></colors></fill></color><color name="shadow"><fill type="linear" rotation="90"><colors><color rgb="0x000000" alpha="20" stop="0" /></colors></fill></color></group_colors></color_group><color_group name="editor"><group_colors><color name="slide_text"><fill type="linear" rotation="90"><colors><color rgb="0x555555" alpha="100" stop="0" /></colors></fill></color><color name="html_text"><fill type="linear" rotation="90"><colors><color rgb="0x444444" alpha="100" stop="0" /></colors></fill></color><color name="btn_bg"><fill type="linear" rotation="90"><colors><color rgb="0xF5F5F5" alpha="100" stop="0" /><color rgb="0xC7C7C7" alpha="100" stop="255" /></colors></fill></color><color name="btn_hover"><fill type="linear" rotation="90"><colors><color rgb="0xF2F2F2" alpha="100" stop="0" /><color rgb="0xAFAFAF" alpha="100" stop="255" /></colors></fill></color><color name="btn_down"><fill type="linear" rotation="90"><colors><color rgb="0xC7C7C7" alpha="100" stop="0" /><color rgb="0xF4F4F4" alpha="100" stop="255" /></colors></fill></color><color name="btn_border"><fill type="linear" rotation="90"><colors><color rgb="0xB1B1B1" alpha="100" stop="0" /></colors></fill></color><color name="btn_text"><fill type="linear" rotation="90"><colors><color rgb="0x353535" alpha="100" stop="0" /></colors></fill></color><color name="btn_text_shadow"><fill type="linear" rotation="90"><colors><color rgb="0xF0F0F0" alpha="100" stop="0" /></colors></fill></color></group_colors></color_group><color_group name="listitem"><group_colors><color name="selected_text"><fill type="linear" rotation="90"><colors><color rgb="0x353535" alpha="100" stop="0" /></colors></fill></color><color name="lines"><fill type="linear" rotation="90"><colors><color rgb="0xDFDFDF" alpha="100" stop="0" /></colors></fill></color><color name="hover"><fill type="linear" rotation="90"><colors><color rgb="0xE6E6E6" alpha="100" stop="0" /></colors></fill></color><color name="viewed"><fill type="linear" rotation="90"><colors><color rgb="0x909090" alpha="100" stop="0" /></colors></fill></color><color name="text"><fill type="linear" rotation="90"><colors><color rgb="0x353535" alpha="100" stop="0" /></colors></fill></color><color name="selected"><fill type="linear" rotation="90"><colors><color rgb="0xC0E2F1" alpha="100" stop="0" /></colors></fill></color><color name="shadow"><fill type="linear" rotation="90"><colors><color rgb="0xFFFFFF" alpha="100" stop="0" /></colors></fill></color></group_colors></color_group><color_group name="base"><group_colors><color name="text"><fill type="linear" rotation="90"><colors><color rgb="0x555555" alpha="100" stop="0" /></colors></fill></color><color name="diva"><fill type="linear" rotation="90"><colors><color rgb="0xD3D3D3" alpha="100" stop="0" /></colors></fill></color><color name="divb"><fill type="linear" rotation="90"><colors><color rgb="0xF7F7F7" alpha="100" stop="0" /></colors></fill></color><color name="bg"><fill type="linear" rotation="90"><colors><color rgb="0xE9E9E9" alpha="100" stop="0" /><color rgb="0xCFCFCF" alpha="100" stop="255" /></colors></fill></color><color name="border"><fill type="linear" rotation="90"><colors><color rgb="0xE9E9E9" alpha="100" stop="0" /><color rgb="0xF3F3F3" alpha="100" stop="255" /></colors></fill></color><color name="menu_shade"><fill type="linear" rotation="90"><colors><color rgb="0xDBDBDB" alpha="100" stop="0" /><color rgb="0xC3C3C3" alpha="100" stop="255" /></colors></fill></color><color name="slide_bg"><fill type="linear" rotation="90"><colors><color rgb="0xE9E9E9" alpha="100" stop="0" /><color rgb="0xCFCFCF" alpha="100" stop="255" /></colors></fill></color></group_colors></color_group><color_group name="button"><group_colors><color name="btn_bg"><fill type="linear" rotation="90"><colors><color rgb="0xF5F5F5" alpha="100" stop="0" /><color rgb="0xC7C7C7" alpha="100" stop="255" /></colors></fill></color><color name="btn_hover"><fill type="linear" rotation="90"><colors><color rgb="0xF2F2F2" alpha="100" stop="0" /><color rgb="0xAFAFAF" alpha="100" stop="255" /></colors></fill></color><color name="btn_down"><fill type="linear" rotation="90"><colors><color rgb="0xC7C7C7" alpha="100" stop="0" /><color rgb="0xF4F4F4" alpha="100" stop="255" /></colors></fill></color><color name="btn_border"><fill type="linear" rotation="90"><colors><color rgb="0xB1B1B1" alpha="100" stop="0" /></colors></fill></color><color name="btn_text"><fill type="linear" rotation="90"><colors><color rgb="0x353535" alpha="100" stop="0" /></colors></fill></color><color name="btn_text_shadow"><fill type="linear" rotation="90"><colors><color rgb="0xF0F0F0" alpha="100" stop="0" /></colors></fill></color><color name="btn_icon_color"><fill type="linear" rotation="90"><colors><color rgb="0x353535" alpha="100" stop="0" /></colors></fill></color><color name="btn_glow"><fill type="linear" rotation="90"><colors><color rgb="0xCFCFCF" alpha="100" stop="0" /></colors></fill></color></group_colors></color_group><color_group name="checkbox"><group_colors><color name="border"><fill type="linear" rotation="90"><colors><color rgb="0xB8B8B8" alpha="100" stop="0" /></colors></fill></color><color name="bg"><fill type="linear" rotation="90"><colors><color rgb="0xFFFFFF" alpha="100" stop="0" /></colors></fill></color><color name="check"><fill type="linear" rotation="90"><colors><color rgb="0x33CC00" alpha="100" stop="0" /></colors></fill></color><color name="text"><fill type="linear" rotation="90"><colors><color rgb="0x444444" alpha="100" stop="0" /></colors></fill></color><color name="hover"><fill type="linear" rotation="90"><colors><color rgb="0x6BF8FF" alpha="100" stop="0" /></colors></fill></color></group_colors></color_group><color_group name="logo"><group_colors><color name="bg"><fill type="linear" rotation="90"><colors><color rgb="0xFFFFFF" alpha="100" stop="0" /></colors></fill></color><color name="shadow"><fill type="linear" rotation="90"><colors><color rgb="0xB8B8B8" alpha="100" stop="0" /></colors></fill></color></group_colors></color_group><color_group name="menu"><group_colors><color name="bg"><fill type="linear" rotation="90"><colors><color rgb="0xF3F3F3" alpha="100" stop="0" /></colors></fill></color><color name="shadow"><fill type="linear" rotation="90"><colors><color rgb="0xB8B8B8" alpha="100" stop="0" /></colors></fill></color></group_colors></color_group><color_group name="scrollarea"><group_colors><color name="bg"><fill type="linear" rotation="0"><colors><color rgb="0xDEDEDE" alpha="100" stop="0" /><color rgb="0xE8E8E8" alpha="100" stop="128" /></colors></fill></color><color name="border"><fill type="linear" rotation="90"><colors><color rgb="0xF6F6F6" alpha="100" stop="0" /><color rgb="0xF3F3F3" alpha="100" stop="255" /></colors></fill></color><color name="button_bg"><fill type="linear" rotation="90"><colors><color rgb="0xC4C4C4" alpha="100" stop="0" /><color rgb="0xB2B2B2" alpha="100" stop="255" /></colors></fill></color><color name="button_inner"><fill type="linear" rotation="90"><colors><color rgb="0xCBCBCB" alpha="100" stop="0" /><color rgb="0xBABABA" alpha="100" stop="255" /></colors></fill></color><color name="button_border"><fill type="linear" rotation="90"><colors><color rgb="0xB8B8B8" alpha="100" stop="0" /></colors></fill></color><color name="icons"><fill type="linear" rotation="90"><colors><color rgb="0x555555" alpha="100" stop="0" /></colors></fill></color><color name="shadow"><fill type="linear" rotation="90"><colors><color rgb="0xD9D9D9" alpha="100" stop="0" /></colors></fill></color><color name="detaila"><fill type="linear" rotation="90"><colors><color rgb="0xA7A7A7" alpha="100" stop="0" /></colors></fill></color><color name="detailb"><fill type="linear" rotation="90"><colors><color rgb="0xCFCFCF" alpha="100" stop="0" /></colors></fill></color></group_colors></color_group><color_group name="searchinput"><group_colors><color name="bg"><fill type="linear" rotation="90"><colors><color rgb="0xDFDFDF" alpha="100" stop="0" /></colors></fill></color><color name="border"><fill type="linear" rotation="90"><colors><color rgb="0xADADAD" alpha="100" stop="0" /><color rgb="0xFAFAFA" alpha="100" stop="255" /></colors></fill></color><color name="icon"><fill type="linear" rotation="90"><colors><color rgb="0x8A8A8A" alpha="100" stop="0" /></colors></fill></color><color name="button_hover"><fill type="linear" rotation="90"><colors><color rgb="0xF5F5F5" alpha="100" stop="0" /><color rgb="0xC7C7C7" alpha="100" stop="255" /></colors></fill></color><color name="hover_glow"><fill type="linear" rotation="90"><colors><color rgb="0x6BF8FF" alpha="100" stop="0" /></colors></fill></color><color name="search_text"><fill type="linear" rotation="90"><colors><color rgb="0x8A8A8A" alpha="100" stop="0" /></colors></fill></color><color name="bg_active"><fill type="linear" rotation="90"><colors><color rgb="0xFAFAFA" alpha="100" stop="0" /></colors></fill></color><color name="text_active"><fill type="linear" rotation="90"><colors><color rgb="0x333333" alpha="100" stop="0" /></colors></fill></color></group_colors></color_group><color_group name="seekcontrol"><group_colors><color name="bg"><fill type="linear" rotation="90"><colors><color rgb="0xF5F5F5" alpha="100" stop="0" /><color rgb="0xC7C7C7" alpha="100" stop="255" /></colors></fill></color><color name="border"><fill type="linear" rotation="90"><colors><color rgb="0xB1B1B1" alpha="100" stop="0" /></colors></fill></color><color name="seek_border"><fill type="linear" rotation="90"><colors><color rgb="0xB8B8B8" alpha="100" stop="0" /><color rgb="0xEEEEEE" alpha="100" stop="255" /></colors></fill></color><color name="seek_bg"><fill type="linear" rotation="90"><colors><color rgb="0xE7E7E7" alpha="100" stop="0" /></colors></fill></color><color name="seek_position"><fill type="linear" rotation="90"><colors><color rgb="0xFFFFFF" alpha="100" stop="0" /></colors></fill></color><color name="btn_icon_color"><fill type="linear" rotation="90"><colors><color rgb="0x2D2D2D" alpha="100" stop="0" /></colors></fill></color><color name="btn_icon_hover"><fill type="linear" rotation="90"><colors><color rgb="0x555555" alpha="100" stop="0" /></colors></fill></color><color name="btn_icon_shadow"><fill type="linear" rotation="90"><colors><color rgb="0xF0F0F0" alpha="100" stop="0" /></colors></fill></color></group_colors></color_group><color_group name="tabs"><group_colors><color name="bg"><fill type="linear" rotation="90"><colors><color rgb="0xF3F3F3" alpha="100" stop="0" /></colors></fill></color><color name="text"><fill type="linear" rotation="90"><colors><color rgb="0x555555" alpha="100" stop="0" /></colors></fill></color><color name="selected"><fill type="linear" rotation="90"><colors><color rgb="0x333333" alpha="100" stop="0" /></colors></fill></color><color name="hover"><fill type="linear" rotation="90"><colors><color rgb="0x333333" alpha="100" stop="0" /></colors></fill></color><color name="shadow"><fill type="linear" rotation="90"><colors><color rgb="0xF0F0F0" alpha="100" stop="0" /></colors></fill></color></group_colors></color_group><color_group name="transcript"><group_colors><color name="div"><fill type="linear" rotation="90"><colors><color rgb="0xE1E1E1" alpha="100" stop="0" /></colors></fill></color><color name="heading_text"><fill type="linear" rotation="90"><colors><color rgb="0x444444" alpha="100" stop="0" /></colors></fill></color></group_colors></color_group><color_group name="outline"><group_colors><color name="diva"><fill type="linear" rotation="90"><colors><color rgb="0xC6C6C6" alpha="100" stop="0" /></colors></fill></color><color name="divb"><fill type="linear" rotation="90"><colors><color rgb="0xF9F9F9" alpha="100" stop="0" /></colors></fill></color><color name="divc"><fill type="linear" rotation="90"><colors><color rgb="0xE1E1E1" alpha="100" stop="0" /></colors></fill></color><color name="search_text"><fill type="linear" rotation="90"><colors><color rgb="0x444444" alpha="100" stop="0" /></colors></fill></color><color name="search_hover"><fill type="linear" rotation="90"><colors><color rgb="0x0000EE" alpha="100" stop="0" /></colors></fill></color></group_colors></color_group><color_group name="resource"><group_colors><color name="separator"><fill type="linear" rotation="90"><colors><color rgb="0xE0E0E0" alpha="100" stop="0" /></colors></fill></color></group_colors></color_group><color_group name="glossary"><group_colors><color name="selected_text"><fill type="linear" rotation="90"><colors><color rgb="0x353535" alpha="100" stop="0" /></colors></fill></color><color name="selected"><fill type="linear" rotation="90"><colors><color rgb="0xC0E2F1" alpha="100" stop="0" /></colors></fill></color><color name="text"><fill type="linear" rotation="90"><colors><color rgb="0x353535" alpha="100" stop="0" /></colors></fill></color><color name="hover"><fill type="linear" rotation="90"><colors><color rgb="0xE6E6E6" alpha="100" stop="0" /></colors></fill></color><color name="diva"><fill type="linear" rotation="90"><colors><color rgb="0xE2E2E2" alpha="100" stop="0" /></colors></fill></color><color name="divb"><fill type="linear" rotation="90"><colors><color rgb="0xE2E2E2" alpha="100" stop="0" /></colors></fill></color><color name="divc"><fill type="linear" rotation="90"><colors><color rgb="0xFAFAFA" alpha="100" stop="0" /></colors></fill></color><color name="bg"><fill type="linear" rotation="90"><colors><color rgb="0xE7E7E7" alpha="100" stop="0" /></colors></fill></color><color name="heading_text"><fill type="linear" rotation="90"><colors><color rgb="0x444444" alpha="100" stop="0" /></colors></fill></color></group_colors></color_group><color_group name="volume"><group_colors><color name="thumb_border"><fill type="linear" rotation="90"><colors><color rgb="0xA5A5A5" alpha="100" stop="0" /></colors></fill></color><color name="thumb_inner"><fill type="linear" rotation="90"><colors><color rgb="0xD4D4D4" alpha="100" stop="0" /></colors></fill></color><color name="thumb_bg"><fill type="linear" rotation="90"><colors><color rgb="0xC8C8C8" alpha="100" stop="0" /></colors></fill></color><color name="slider_border"><fill type="linear" rotation="90"><colors><color rgb="0xF2F2F2" alpha="100" stop="0" /></colors></fill></color><color name="slider_bg"><fill type="linear" rotation="90"><colors><color rgb="0xBCBCBC" alpha="100" stop="0" /><color rgb="0xBCBCBC" alpha="100" stop="128" /><color rgb="0xC3C3C3" alpha="100" stop="255" /></colors></fill></color></group_colors></color_group></colorscheme></colorschemes><string_tables><string_table name="npxnsnfns11111001110"><string id="prev">PREV</string><string id="next">NEXT</string><string id="submit">SUBMIT</string><string id="outline">Table of Contents</string><string id="resources">Resources</string><string id="glossary">Glossary</string><string id="transcript">Transcript</string><string id="clear">Clear and return to Menu</string><string id="search_results">Search Results</string><string id="filter">Filter</string><string id="slide_text_chk">Slide Text</string><string id="transcript_chk">Notes</string><string id="search_in">Search in:</string><string id="check_include">Check to include</string><string id="search">Search...</string><string id="terms">Terms</string><string id="definition">Definition</string><string id="finish">FINISH</string><string id="acc_finish">finish</string><string id="acc_definition">definition</string><string id="acc_resources">resources</string><string id="acc_search_input">search</string><string id="acc_pause">pause</string><string id="acc_play">play</string><string id="acc_replay">replay</string><string id="acc_submit">submit</string><string id="acc_next">next</string><string id="acc_previous">previous</string><string id="acc_volume">volume</string><string id="submitall">SUBMIT ALL</string><string id="acc_submitall">submit all</string><string id="question_list">Question List</string><string id="more_info">More info</string><string id="send_an_email">Send an email</string><string id="close">Close</string><string id="bio">Bio</string><string id="exit">Exit</string></string_table></string_tables><sounds enabled="false" /><nav_data><outline><links><slidelink slideid="4js0r3U2df9.5wjCWGS4cau" displaytext="Overview" expand="false" type="slide" /><slidelink slideid="4js0r3U2df9.5aGYcDkVmQX" displaytext="Relevance" expand="false" type="slide"><links><slidelink slideid="4js0r3U2df9.63zNrrSgQLS" displaytext="BLS Metrics" expand="false" type="slide" /><slidelink slideid="4js0r3U2df9.5rNUNaII4ig" displaytext="IISSCC Metrics" expand="false" type="slide" /><slidelink slideid="4js0r3U2df9.6EghD1YUNI3" displaytext="Demand Drivers" expand="false" type="slide"><links><slidelink slideid="4js0r3U2df9.5sH7wZMXdsS" displaytext="Critical Information" expand="false" type="slide" /><slidelink slideid="4js0r3U2df9.6gztywC0dQJ" displaytext="Complexities" expand="false" type="slide" /></links></slidelink><slidelink slideid="4js0r3U2df9.60PVZjb04VD" displaytext="Security Professionals" expand="false" type="slide"><links><slidelink slideid="4js0r3U2df9.6i770oZDxTK" displaytext="Time Spent" expand="false" type="slide" /></links></slidelink><slidelink slideid="4js0r3U2df9.61EDtrYjmF9" displaytext="Competencies" expand="false" type="slide" /></links></slidelink><slidelink slideid="4js0r3U2df9.5Z2PIulUqBO" displaytext="Brief History" expand="false" type="slide"><links><slidelink slideid="4js0r3U2df9.6MFJCnP3xb7" displaytext="Early 80s" expand="false" type="slide" /><slidelink slideid="4js0r3U2df9.5zzqubMYiC5" displaytext="1982-1983" expand="false" type="slide" /><slidelink slideid="4js0r3U2df9.6bPmyCGYaaI" displaytext="1988" expand="false" type="slide" /><slidelink slideid="4js0r3U2df9.5rW9bLvA9Et" displaytext="1995" expand="false" type="slide" /><slidelink slideid="4js0r3U2df9.6aHIUfBe2mV" displaytext="1996" expand="false" type="slide" /><slidelink slideid="4js0r3U2df9.6CrkAksBq47" displaytext="2000" expand="false" type="slide" /><slidelink slideid="4js0r3U2df9.5rQSJnZ3eeT" displaytext="2002" expand="false" type="slide" /><slidelink slideid="4js0r3U2df9.62O6Wrz42N8" displaytext="2005-2007" expand="false" type="slide" /><slidelink slideid="4js0r3U2df9.5eennEnnnYA" displaytext="2008" expand="false" type="slide" /><slidelink slideid="4js0r3U2df9.5cq0SGelQga" displaytext="2009" expand="false" type="slide" /><slidelink slideid="4js0r3U2df9.5W3EB7AqtC1" displaytext="2010" expand="false" type="slide" /><slidelink slideid="4js0r3U2df9.63TuXzRlhvw" displaytext="2011" expand="false" type="slide" /><slidelink slideid="4js0r3U2df9.6dkj11Ey946" displaytext="2013" expand="false" type="slide" /></links></slidelink><slidelink slideid="4js0r3U2df9.5g4I9yAloD5" displaytext="Information Security" expand="false" type="slide"><links><slidelink slideid="4js0r3U2df9.5zkLF6CXu7V" displaytext="Confidentiality" expand="false" type="slide" /><slidelink slideid="4js0r3U2df9.5wEqIq9aTto" displaytext="Integrity" expand="false" type="slide" /><slidelink slideid="4js0r3U2df9.6rF6OCKjRku" displaytext="Availability" expand="false" type="slide" /></links></slidelink><slidelink slideid="4js0r3U2df9.6rafa60onhw" displaytext="Personal Information Security" expand="false" type="slide" /><slidelink slideid="4js0r3U2df9.6a0BRfr7G6X" displaytext="WikiLeaks: Case Example" expand="false" type="slide" /><slidelink slideid="4js0r3U2df9.6ZB3BPRRteO" displaytext="Summary" expand="false" type="slide" /></links></outline><search><slidetext slideid="4js0r3U2df9.6P1s80zAuEb" slidebank="false" type="slide">   introduction  </slidetext><slidetext slideid="4js0r3U2df9.5wjCWGS4cau" slidebank="false" type="slide">     relevancebackgroundterms general procedures     overview</slidetext><slidetext slideid="4js0r3U2df9.5aGYcDkVmQX" slidebank="false" type="slide">     why study information security?demandbureau of labor studies (bls) estimates classified as 15-1122 relevance</slidetext><slidetext slideid="4js0r3U2df9.63zNrrSgQLS" slidebank="false" type="slide">       80,000 information security analysts3,390 in the state of florida   $50,000 $138,000 $90,000mean wage  $90,000mean wage click here &#xB;to learn more. click here &#xB;to learn more.  bls metrics </slidetext><slidetext slideid="4js0r3U2df9.5rNUNaII4ig" slidebank="false" type="slide">    international information systems security certification consortium – iisscc, (isc)2   13%  900,000 $78,000   2.28 million industry estimates: iisscc metrics</slidetext><slidetext slideid="4js0r3U2df9.6EghD1YUNI3" slidebank="false" type="slide">    why is the industry paying so many people so much money to maintain information security? what is driving the profession? demand drivers</slidetext><slidetext slideid="4js0r3U2df9.6DNbz8Az8Nu" slidebank="false" type="slide">          increasing criticality of information  increasing criticality of information increasing quantity of information  increasing quantity of information increasing computerization of information  increasing computerization of information individuals: photographs, school workorganizations: payroll, intellectual property, business processes, etc.  customer details, purchase history, clickstream etc. no more paper ledgers demand drivers</slidetext><slidetext slideid="4js0r3U2df9.5sH7wZMXdsS" slidebank="false" type="slide">                critical information</slidetext><slidetext slideid="4js0r3U2df9.6gztywC0dQJ" slidebank="false" type="slide">      more copies of information available     laptops (can be stolen) smartphones (can be broken)    complexities</slidetext><slidetext slideid="4js0r3U2df9.6gcJHE3mHVY" slidebank="false" type="slide">               more diverse population of users  more diverse population of users   more committed attackers  more committed attackers   motivated by profit  motivated by profit less aware  less aware not necessarily computer-savvy  not necessarily computer-savvy demand drivers</slidetext><slidetext slideid="4js0r3U2df9.60PVZjb04VD" slidebank="false" type="slide">                      security professionals</slidetext><slidetext slideid="4js0r3U2df9.6i770oZDxTK" slidebank="false" type="slide">       researching new technologiesinternal/political issuesmeeting regulatory compliancedeveloping internal security                49% 46% 45% 39%  </slidetext><slidetext slideid="4js0r3U2df9.61EDtrYjmF9" slidebank="false" type="slide">         risk managementsecure sdlcforensicsend-user awarenesssecurity architectureaccess controlsecurityplanning         competencies</slidetext><slidetext slideid="4js0r3U2df9.5Z2PIulUqBO" slidebank="false" type="slide">      many current security procedures are the result of well-known past incidentspart of industry folkloreprofessional vocabularymore comprehensive list available from many sourcesonline (e.g. wikipedia)industry publications (e.g. informationweek, computer world)      brief history</slidetext><slidetext slideid="4js0r3U2df9.6MFJCnP3xb7" slidebank="false" type="slide">        1981 tcp/ip finalized  tcp/ip finalized no mention of security  no mention of security  internet community generally considered benign   internet community generally considered benign    brief history</slidetext><slidetext slideid="4js0r3U2df9.5zzqubMYiC5" slidebank="false" type="slide">      “hacker”  “hacker” 19821983   gang of 414’s  gang of 414’s computer fraud and abuse act 1986  computer fraud and abuse act 1986        brief history</slidetext><slidetext slideid="4js0r3U2df9.6bPmyCGYaaI" slidebank="false" type="slide">        1988      first conviction under 1986 act  first conviction under 1986 act morris worm  morris worm  10% of internet crashed  10% of internet crashed  99-line program   99-line program november 2nd   november 2nd cert/cc established at cmu  cert/cc established at cmu  brief history</slidetext><slidetext slideid="4js0r3U2df9.5rW9bLvA9Et" slidebank="false" type="slide">        1995 windows 95august 24, 1995  windows 95august 24, 1995 almost &#xB;no security  almost &#xB;no security  windows 95&#xB; + tcp/ip  windows 95&#xB; + tcp/ip    windows 98june 25, 1998  windows 98june 25, 1998 fertile ground for security problems  fertile ground for security problems  no improvement in security  no improvement in security  brief history</slidetext><slidetext slideid="4js0r3U2df9.6aHIUfBe2mV" slidebank="false" type="slide">        1996 health insurance portability and accountability act  health insurance portability and accountability act electronic health records  electronic health records    brief history</slidetext><slidetext slideid="4js0r3U2df9.6CrkAksBq47" slidebank="false" type="slide">           2000 “i love you” virusmay 5, 2000  “i love you” virusmay 5, 2000 deleted images on computers  deleted images on computers  $8 billion in damages  $8 billion in damages  college students in the philippines  college students in the philippines  traced immediately  traced immediately  no charges filed; not an offense  no charges filed; not an offense  brief history</slidetext><slidetext slideid="4js0r3U2df9.5rQSJnZ3eeT" slidebank="false" type="slide">          2002 sarbanes-oxley act  sarbanes-oxley act financial statements produced by it systems   financial statements produced by it systems corporate fraud  corporate fraud   brief history</slidetext><slidetext slideid="4js0r3U2df9.62O6Wrz42N8" slidebank="false" type="slide">        20052007 millions of credit cards stolen  millions of credit cards stolen  retail industry  retail industry exploited it insecurities  exploited it insecurities    unencrypted wireless networks   unencrypted wireless networks albert gonzalez   albert gonzalez      brief history</slidetext><slidetext slideid="4js0r3U2df9.5eennEnnnYA" slidebank="false" type="slide">          2008 massive denial &#xB;of service attacks&#xB; in georgia  massive denial &#xB;of service attacks&#xB; in georgia  government websites defaced  government websites defaced  war between russia and georgia   war between russia and georgia  russian involvement  russian involvement  first &#xB;state-sponsored cyber warfare  first &#xB;state-sponsored cyber warfare  brief history</slidetext><slidetext slideid="4js0r3U2df9.5cq0SGelQga" slidebank="false" type="slide">       2009 us electricity grid  us electricity grid  numerous incidents   numerous incidents  defend us military computer networks  defend us military computer networks   establish &#xB;us cyber command  establish &#xB;us cyber command      brief history</slidetext><slidetext slideid="4js0r3U2df9.5W3EB7AqtC1" slidebank="false" type="slide">       2010 traced to two educational institutions  traced to two educational institutions   operation aurora   operation aurora  congress announced to investigate  congress announced to investigate   google reports cyber-attacks from china  google reports cyber-attacks from china      brief history</slidetext><slidetext slideid="4js0r3U2df9.63TuXzRlhvw" slidebank="false" type="slide">       2011 70 million subscribers  70 million subscribers  network &#xB;down for the summer   network &#xB;down for the summer  difficult time  difficult time       credit card information stolen   credit card information stolen sony playstationnetwork compromised  sony playstationnetwork compromised brief history</slidetext><slidetext slideid="4js0r3U2df9.6dkj11Ey946" slidebank="false" type="slide">       2013 february   february chinese army source of most cyber attacks  chinese army source of most cyber attacks   mandiant report released   mandiant report released   brief history</slidetext><slidetext slideid="4js0r3U2df9.5g4I9yAloD5" slidebank="false" type="slide">    information securityprotecting information and information systems from unauthorized access, use, disclosure, disruption, modification, or destruction in order to provide integrity, confidentiality and availability.  definition</slidetext><slidetext slideid="4js0r3U2df9.627tQ4h8kPw" slidebank="false" type="slide">      cia triad confidentiality integrity availability       information security</slidetext><slidetext slideid="4js0r3U2df9.5zkLF6CXu7V" slidebank="false" type="slide">    confidentialitypreserving authorized restrictions on access and disclosure, including means for protecting personal privacy and proprietary information. definition</slidetext><slidetext slideid="4js0r3U2df9.5tYqLeeDUou" slidebank="false" type="slide">     confidentiality is the mechanism by which custodians of information maintain privacy of individual information.most common interpretation of information securitysocial expectations keep changing  confidentiality</slidetext><slidetext slideid="4js0r3U2df9.5wEqIq9aTto" slidebank="false" type="slide">    integrityguarding against improper information modification or destruction, and includes ensuring information non-repudiation and authenticity. definition</slidetext><slidetext slideid="4js0r3U2df9.6rF6OCKjRku" slidebank="false" type="slide">    availability ensuring timely and reliable access to and use of information. definition</slidetext><slidetext slideid="4js0r3U2df9.6rafa60onhw" slidebank="false" type="slide">                        top three recommendations:antivirus softwareautomatic software updatesat least two passwords personal information security</slidetext><slidetext slideid="4js0r3U2df9.6a0BRfr7G6X" slidebank="false" type="slide">      february 2010wikileaks released classified memos from u.s. state department archives; which were published in leading newspapers of the world, such as the new york times.embarrassing to u.s. government and violated the trust of foreign leaders in u.s. government’s ability to keep secrets.pfc bradley manning was the source, who was one of 3 million u.s. personnel with access to the cables.part of u.s. government effort to leverage information to stop terrorist attacks.       wikileaks: example</slidetext><slidetext slideid="4js0r3U2df9.6ZB3BPRRteO" slidebank="false" type="slide">     overview of information securityprofessional relevancebrief historydefinition of information security summary</slidetext><slidetext slideid="4js0r3U2df9.5xC3Xjpuc2x" slidebank="false" type="slide">   you have reached the end of this presentation.</slidetext></search></nav_data><resource_data description="" /><transcript_data><slidetranscripts><slidetranscript slideid="4js0r3U2df9.6P1s80zAuEb" slidebank="false" type="slide" noteswf="presentation_content/notes/6P1s80zAuEb.swf">&lt;html&gt;&lt;p align='left'&gt;&lt;textformat leading='1' tabstops='[48, 96]' leftmargin='0' indent='0'&gt;&lt;font face='Microsoft Sans Serif' size='10.9933pt' color='#000000'&gt;Hello and welcome to the class on Information Security and IT Risk Management. My name is Manish Agrawal and I will be the instructor for this class. &lt;/font&gt;&lt;font face='Microsoft Sans Serif' size='10.9933pt' color='#000000'&gt;&lt;/font&gt;&lt;/textformat&gt;&lt;/p&gt;&lt;/html&gt;</slidetranscript><slidetranscript slideid="4js0r3U2df9.5wjCWGS4cau" slidebank="false" type="slide" noteswf="presentation_content/notes/5wjCWGS4cau.swf">&lt;html&gt;&lt;p align='left'&gt;&lt;textformat leading='1' tabstops='[48, 96]' leftmargin='0' indent='0'&gt;&lt;font face='Microsoft Sans Serif' size='10.9933pt' color='#000000'&gt;Okay so in this chapter we will essentially introduce information security as a topic of study in order to motivate you to get interested in studying information security. We will start with a look at the professional relevance of information security, including the professional demand, salaries, typical activities performed by information security professionals etc. &lt;br&gt;&lt;br&gt;Having established that studying information security is worth your time, we will take a quick sweep of the history of this admittedly recent topic. We will talk about how issues of information security have come to the limelight, and the key incidents that have brought information security to the mainstream. People these days have very short memories, but I believe all IT professionals should be aware of these incidents and their implications. &lt;br&gt;&lt;br&gt;After this quick history, we will define information security and the components that constitute the definition of information security. Before we wrap up the chapter, as a take-away gift for you, I have the most important recommendations for personal information security from my perspective.&lt;/font&gt;&lt;/textformat&gt;&lt;/p&gt;&lt;/html&gt;</slidetranscript><slidetranscript slideid="4js0r3U2df9.5aGYcDkVmQX" slidebank="false" type="slide" noteswf="presentation_content/notes/5aGYcDkVmQX.swf">&lt;html&gt;&lt;p align='left'&gt;&lt;textformat leading='1' tabstops='[48, 96]' leftmargin='0' indent='0'&gt;&lt;font face='Microsoft Sans Serif' size='10.9933pt' color='#000000'&gt;As a business school professor, I firmly believe that everything I do in class needs to be directly related to meeting some definite professional workforce needs. Information security falls into one of those very important professional workforce needs. &lt;br&gt;&lt;br&gt;In this picture, I have tried to indicate how the US government views information security within the overall framework of all occupations in the United States. This information is maintained by the Bureau of Labor Studies, which is the US government organization that collects employment statistics around the country using the most robust survey methods possible. This information helps policymakers and educational institutions allocate resources and determine courses to be taught. &lt;br&gt;&lt;br&gt;Information security analysts fall under the category 151122, which is a subgroup of computer and information analysts, which in turn is a part of 15, which is computer and mathematical operations. Occupations have to have broad relevance before the BLS tracks them, so you can see that information security is now a broad enough professional area of work for the Bureau of Labor statistically to formally keep track of this profession. What this means to you is that if current trends continue, and you have the right set of skills, the industry should be large enough to absorb you when you graduate from our program.&lt;/font&gt;&lt;/textformat&gt;&lt;/p&gt;&lt;/html&gt;</slidetranscript><slidetranscript slideid="4js0r3U2df9.63zNrrSgQLS" slidebank="false" type="slide" noteswf="presentation_content/notes/63zNrrSgQLS.swf">&lt;html&gt;&lt;p align='left'&gt;&lt;textformat leading='1' tabstops='[48, 96]' leftmargin='0' indent='0'&gt;&lt;font face='Microsoft Sans Serif' size='10.9933pt' color='#000000'&gt;In this slide, I have tried to collect some salient metrics from the Bureau of Labor Statistics. As of May 2013, the Bureau of Labor Studies estimates that there were about 80,000 people working as information security analysts, including 3,390 in the state of Florida. The mean wage is estimated to be slightly over $90,000 which I think would be considered a very satisfactory salary by most metrics. I would highly encourage everyone to go to this URL to get the current information and to check out some of the other details that the BLS has put out. For example the BLS has information about the breakdowns by Metro area and salary distributions by state, by industry and by metro area.&lt;/font&gt;&lt;/textformat&gt;&lt;/p&gt;&lt;/html&gt;</slidetranscript><slidetranscript slideid="4js0r3U2df9.5rNUNaII4ig" slidebank="false" type="slide" noteswf="presentation_content/notes/5rNUNaII4ig.swf">&lt;html&gt;&lt;p align='left'&gt;&lt;textformat leading='1' tabstops='[48, 96]' leftmargin='0' indent='0'&gt;&lt;font face='Microsoft Sans Serif' size='10.9933pt' color='#000000'&gt;Now apart from the government, the industry also tries to make similar estimates. These efforts are led by an organization called ISC Squared, which stands for the International Information Systems Security Certification Consortium. Incidentally, this organization is located very near us in Clearwater, Florida. According to ISC Squared, there are about 900,000 information security professionals in North and South America and over 2 million professionals working in information security worldwide. ISC Squared has estimated the median wage at about $80,000 and the growth rate at about 13%. &lt;br&gt;You might wonder about the significant divergence between the workforce estimates of the BLS and ISC-Squared. This happens because the BLS tries to be very precise in its methods, whereas ISC Squared takes a broader view of information security professionals. For example, most people working on computer networks would have an information security role and ISC Squared would include them in the information security workforce, whereas BLS would put them in another category. Either way, from my perspective these numbers indicate that information security is a fairly important profession.&lt;/font&gt;&lt;/textformat&gt;&lt;/p&gt;&lt;/html&gt;</slidetranscript><slidetranscript slideid="4js0r3U2df9.6EghD1YUNI3" slidebank="false" type="slide" noteswf="presentation_content/notes/6EghD1YUNI3.swf">&lt;html&gt;&lt;p align='left'&gt;&lt;textformat leading='1' tabstops='[48, 96]' leftmargin='0' indent='0'&gt;&lt;font face='Microsoft Sans Serif' size='10.9933pt' color='#000000'&gt;So why is the industry paying so many people so much money to maintain information security? What is driving the profession? &lt;br&gt;&lt;/font&gt;&lt;/textformat&gt;&lt;/p&gt;&lt;/html&gt;</slidetranscript><slidetranscript slideid="4js0r3U2df9.6DNbz8Az8Nu" slidebank="false" type="slide" noteswf="presentation_content/notes/6DNbz8Az8Nu.swf">&lt;html&gt;&lt;p align='left'&gt;&lt;textformat leading='1' tabstops='[48, 96]' leftmargin='0' indent='0'&gt;&lt;font face='Microsoft Sans Serif' size='10.9933pt' color='#000000'&gt;In my view it begins with the fact that more and more of our information are being computerized. Further, the information itself is becoming increasingly critical to businesses and individuals. If you don't believe me, take away a computer network or computer or Smartphone from anyone and see how uncomfortable and irritable they get within just 5 min. of being disconnected. &lt;br&gt;&lt;br&gt;So we are now personally, extremely dependent upon information. Organizationally too, we are becoming more and more computer-based and paper-less, depending upon computers to track information, automatically run business processes, communicate and so on. Information security professionals are involved in making sure that this information is available when needed, is correct when we act on it and so on. &lt;/font&gt;&lt;/textformat&gt;&lt;/p&gt;&lt;/html&gt;</slidetranscript><slidetranscript slideid="4js0r3U2df9.5sH7wZMXdsS" slidebank="false" type="slide" noteswf="presentation_content/notes/5sH7wZMXdsS.swf">&lt;html&gt;&lt;p align='left'&gt;&lt;textformat leading='1' tabstops='[48, 96]' leftmargin='0' indent='0'&gt;&lt;font face='Microsoft Sans Serif' size='10.9933pt' color='#000000'&gt;Next, not only is information becoming more critical, we are also getting more and more of this critical information as time goes by. A decade ago, we never recorded as much information about people's behavior as we do today. Almost every retailer now tracks every interaction with every customer and increasingly, to actually act on this historical information. Information security professionals make sure that the information that is used to make decisions is secure.&lt;/font&gt;&lt;/textformat&gt;&lt;/p&gt;&lt;/html&gt;</slidetranscript><slidetranscript slideid="4js0r3U2df9.6gztywC0dQJ" slidebank="false" type="slide" noteswf="presentation_content/notes/6gztywC0dQJ.swf">&lt;html&gt;&lt;p align='left'&gt;&lt;textformat leading='1' tabstops='[48, 96]' leftmargin='0' indent='0'&gt;&lt;font face='Microsoft Sans Serif' size='10.9933pt' color='#000000'&gt;We continue with our demand drivers. We have seen that we have more information, and the information that we have is more and more critical. Let's add some complexities to this environment. Since information is rather cheap to copy and store these days, we have more copies of the same information. I'm sure every single one of you has multiple copies of your work files, some on your laptop, some on your home computer and some on smart phones and other devices. This means that there are more ways that things can go wrong - laptops can be stolen the smart phones can be dropped. &lt;/font&gt;&lt;/textformat&gt;&lt;/p&gt;&lt;/html&gt;</slidetranscript><slidetranscript slideid="4js0r3U2df9.6gcJHE3mHVY" slidebank="false" type="slide" noteswf="presentation_content/notes/6gcJHE3mHVY.swf">&lt;html&gt;&lt;p align='left'&gt;&lt;textformat leading='1' tabstops='[48, 96]' leftmargin='0' indent='0'&gt;&lt;font face='Microsoft Sans Serif' size='10.9933pt' color='#000000'&gt;Further, as computers become more mainstream, we have a lot of users who just see them as a workplace tool, with no idea about the underlying complexities of the tool. So we have a lot of critical information, on a lot of devices, being used by a lot of not so knowledgeable people. So a lot of things can go wrong. And this creates a fertile environment for attackers to exploit the situation. If users have their bank account information on multiple computers, all a hacker needs to do is get access to one of these devices and use information from the device to steal some money from your bank accounts. Information security professionals try to prevent these adverse outcomes from materializing.&lt;/font&gt;&lt;/textformat&gt;&lt;/p&gt;&lt;/html&gt;</slidetranscript><slidetranscript slideid="4js0r3U2df9.60PVZjb04VD" slidebank="false" type="slide" noteswf="presentation_content/notes/60PVZjb04VD.swf">&lt;html&gt;&lt;p align='left'&gt;&lt;textformat leading='1' tabstops='[48, 96]' leftmargin='0' indent='0'&gt;&lt;font face='Microsoft Sans Serif' size='10.9933pt' color='#000000'&gt;All right, getting closer to the work of information security professionals, according to the Bureau of Labor Studies they do a lot of technical work. They ensure that appropriate security controls are in place and manage the IT infrastructure. They also do a lot of non-technical work, including researching new technologies to identify any possible information security implications. They try to anticipate political issues arising from new IT infrastructure because these often create subtle power shifts, which can affect how the technology is used. They ensure that the organization is compliant with any regulatory requirements. They also spend a lot of time formalizing these expectations as internal policies.&lt;/font&gt;&lt;/textformat&gt;&lt;/p&gt;&lt;/html&gt;</slidetranscript><slidetranscript slideid="4js0r3U2df9.6i770oZDxTK" slidebank="false" type="slide" noteswf="presentation_content/notes/6i770oZDxTK.swf">&lt;html&gt;&lt;p align='left'&gt;&lt;textformat leading='1' tabstops='[48, 96]' leftmargin='0' indent='0'&gt;&lt;font face='Microsoft Sans Serif' size='10.9933pt' color='#000000'&gt;Continuing from the previous slide, here is an estimate by ISC Squared about how information security professionals typically spend their time. As you can see, the bulk of their time is spent researching new technologies and dealing with political issues associated with the deployment of new technologies. They also spend a lot of time on regulatory compliance and developing internal policies.&lt;/font&gt;&lt;/textformat&gt;&lt;/p&gt;&lt;/html&gt;</slidetranscript><slidetranscript slideid="4js0r3U2df9.61EDtrYjmF9" slidebank="false" type="slide" noteswf="presentation_content/notes/61EDtrYjmF9.swf">&lt;html&gt;&lt;p align='left'&gt;&lt;textformat leading='1' tabstops='[48, 96]' leftmargin='0' indent='0'&gt;&lt;font face='Microsoft Sans Serif' size='10.9933pt' color='#000000'&gt;Related to the above, here are the desired competencies for information security professionals, as identified by ISC Squared. You can see that the desired competencies span the entire spectrum of IT activities. They need to identify and deal with risks. With regards to software development, information security professionals need to be aware of secure software development practices. To deal with problems, information security professionals need to be able to perform forensics to detect what happened. They need to be able to architect the IT infrastructure so that it is resilient to attacks in the first place. They need to be ready to respond to large scale events.&lt;/font&gt;&lt;/textformat&gt;&lt;/p&gt;&lt;/html&gt;</slidetranscript><slidetranscript slideid="4js0r3U2df9.5Z2PIulUqBO" slidebank="false" type="slide" noteswf="presentation_content/notes/5Z2PIulUqBO.swf">&lt;html&gt;&lt;p align='left'&gt;&lt;textformat leading='1' tabstops='[48, 96]' leftmargin='0' indent='0'&gt;&lt;font face='Microsoft Sans Serif' size='10.9933pt' color='#000000'&gt;I strongly believe that professionals should have at least a passing awareness of the background of that domain. Many current practices are in place because of the unique ways in which the industry has evolved. Here is a brief overview of some of the most important information security incidents. The list is not complete, but virtually every incident considered here has had a lasting impact on information security that we experience even today.&lt;br&gt;&lt;/font&gt;&lt;/textformat&gt;&lt;/p&gt;&lt;/html&gt;</slidetranscript><slidetranscript slideid="4js0r3U2df9.6MFJCnP3xb7" slidebank="false" type="slide" noteswf="presentation_content/notes/6MFJCnP3xb7.swf">&lt;html&gt;&lt;p align='left'&gt;&lt;textformat leading='1' tabstops='[48, 96]' leftmargin='0' indent='0'&gt;&lt;font face='Microsoft Sans Serif' size='10.9933pt' color='#000000'&gt;We start with the early 80s, when the primary networking technologies of TCP and IP was finalized. These underlying networking technologies make no mention of information security. Partly this is because the Internet community at that time was thrilled that they could even get a rudimentary Internet to work. Also, at that it was difficult to anticipate all the different ways in which things could go wrong on the Internet. And finally, many of the architects of the Internet had a very strong independent streak. They wanted to leave any security concerns to the end-user, and not let Internet service providers dictate information security terms to end users. One unfortunate result of this approach has been that the Internet remains vulnerable to information security issues. But on the other hand, this openness has led to the Internet enjoying great popularity even within totalitarian countries. Had the Internet not been so open, it is distinctly possible that many dictatorial governments would have denied Internet coverage within their countries in the name of security.&lt;/font&gt;&lt;/textformat&gt;&lt;/p&gt;&lt;/html&gt;</slidetranscript><slidetranscript slideid="4js0r3U2df9.5zzqubMYiC5" slidebank="false" type="slide" noteswf="presentation_content/notes/5zzqubMYiC5.swf">&lt;html&gt;&lt;p align='left'&gt;&lt;textformat leading='1' tabstops='[48, 96]' leftmargin='0' indent='0'&gt;&lt;font face='Microsoft Sans Serif' size='10.9933pt' color='#000000'&gt;Information security incidents began pretty much as soon as the Internet became available. In the summer of 1982-83, six teenagers in Milwaukee were getting bored in the summer. One of these teenagers had access to a computer and they figure they might try to do something interesting with this computer. So what they did was they followed instructions in magazines to hook up the computers to a phone line and they thought it would be interesting and fun to see what computers they could connect to. At that time the computers in various high-security establishments were all new and the system administrators of these computers were not very well aware of how they needed to secure their computers. So these teenagers were able to access about 60 of these very high profile computer systems, including the one at the Los Alamos National Laboratory. Now this was obviously scary to a lot of people because it showed how our infrastructure was vulnerable. These kids became famous as the gang of 414's, named after the area code around the Milwaukee area. When the incident became famous especially after a Newsweek cover story, the U.S. Congress held hearings on computer security and this led to the passing of the computer fraud and abuse act of 1986.&lt;/font&gt;&lt;/textformat&gt;&lt;/p&gt;&lt;/html&gt;</slidetranscript><slidetranscript slideid="4js0r3U2df9.6bPmyCGYaaI" slidebank="false" type="slide" noteswf="presentation_content/notes/6bPmyCGYaaI.swf">&lt;html&gt;&lt;p align='left'&gt;&lt;textformat leading='1' tabstops='[48, 96]' leftmargin='0' indent='0'&gt;&lt;font face='Microsoft Sans Serif' size='10.9933pt' color='#000000'&gt;The computer fraud and abuse act was invoked pretty soon after it was passed and this was in connection with the Morris worm. The worm is named after Prof. Robert Morris Junior, who was then a graduate student at Cornell, and is now a professor at MIT. He wanted to measure the size of the Internet at that time. So he wrote a program that was about 100 lines long, and the idea behind this program was that it would go to a machine send a ping back to the home computer, replicate itself and get itself installed on to the next neighboring computer and so on. So, it was supposed to be a research project. The problem is that there was a little bug in the program, which caused the computers on which this program was installed to crash. Now we have had a lot of computer worms since then, but the Morris worm is famous because it is estimated that about 10% of the machines on the Internet at that time were affected by the Morris worm and essentially crashed. Which means that the Morris worm succeeded in crashing about 10% of the Internet? Prof. Morris was convicted under the 1986 computer fraud and abuse act. In addition, the CERT center was established at CMU as a result of this incident because the US government wanted to be able to monitor computer security issues nationwide.&lt;/font&gt;&lt;/textformat&gt;&lt;/p&gt;&lt;/html&gt;</slidetranscript><slidetranscript slideid="4js0r3U2df9.5rW9bLvA9Et" slidebank="false" type="slide" noteswf="presentation_content/notes/5rW9bLvA9Et.swf">&lt;html&gt;&lt;p align='left'&gt;&lt;textformat leading='1' tabstops='[48, 96]' leftmargin='0' indent='0'&gt;&lt;font face='Microsoft Sans Serif' size='10.9933pt' color='#000000'&gt;In 1995. Microsoft released Windows 95, accompanied by an extensive marketing campaign. Many people bought Windows 95 computers as some sort of toys for grown-ups. This hugely expanded access to computers nationwide with people buying computers without even figuring out what they would do with it. When Windows 95 was designed, the Internet wasn't especially popular nationwide, so Windows 95 had no information security protections such as user accounts, access control, etc. But as soon as people bought Windows 95 computers, the next thing they wanted to do was to use it to send out e-mails to friends and family. This meant that they wanted to connect these computers to the Internet. So we had an environment where computers running an insecure Windows 95 operating system were connected to each other over an Internet running insecure TCP/IP. This environment had a huge role to play in making information security a household problem.&lt;/font&gt;&lt;/textformat&gt;&lt;/p&gt;&lt;/html&gt;</slidetranscript><slidetranscript slideid="4js0r3U2df9.6aHIUfBe2mV" slidebank="false" type="slide" noteswf="presentation_content/notes/6aHIUfBe2mV.swf">&lt;html&gt;&lt;p align='left'&gt;&lt;textformat leading='1' tabstops='[48, 96]' leftmargin='0' indent='0'&gt;&lt;font face='Microsoft Sans Serif' size='10.9933pt' color='#000000'&gt;In 1996, Congress passed the HIPAA act, the health insurance portability and accountability act. A big part of this act was about people being able to take their health insurance information from one physician office to another. But another part of the act was about electronic health records and a requirement for healthcare professionals to ensure the confidentiality of patient information. There is a big push to make electronic health records mandatory for a physician's office to be able to accept Medicare patients, and this is driving up demand for information security professionals nationwide.&lt;/font&gt;&lt;/textformat&gt;&lt;/p&gt;&lt;/html&gt;</slidetranscript><slidetranscript slideid="4js0r3U2df9.6CrkAksBq47" slidebank="false" type="slide" noteswf="presentation_content/notes/6CrkAksBq47.swf">&lt;html&gt;&lt;p align='left'&gt;&lt;textformat leading='1' tabstops='[48, 96]' leftmargin='0' indent='0'&gt;&lt;font face='Microsoft Sans Serif' size='10.9933pt' color='#000000'&gt;The insecure Windows 95 over insecure TCP/IP environment resulted in one of the most famous computer viruses in May 2000. This virus was called the "I love you" virus because of the subject line of e-mails received from people affected by this virus. Basically if your computer was infected, this virus would read through your contact list and send itself as an email attachment to all the friends in your contact list. If any one of your friends opens the e-mail, they would themselves get infected and the virus would then proceed to send itself to all his friends. The "I love you" virus caused extensive damage worldwide. The estimated cost of cleaning up the virus worldwide was about $8 billion. The interesting thing about the "I love you" virus is how it exposed international differences in information security laws. It turned out that the virus was created by two college students in the Philippines. It did not take long for the FBI to figure out the source of the virus. However, in 2000 there was no law in the Philippines that made writing a virus a criminal offense. And so the end result was that the creators of the "I love you" virus went scot-free even though the United States did everything in its capacity to get the creators of the virus convicted. You'll find that legal differences over information security issues continue to exist today and in all likelihood will continue to exist in the future.&lt;/font&gt;&lt;/textformat&gt;&lt;/p&gt;&lt;/html&gt;</slidetranscript><slidetranscript slideid="4js0r3U2df9.5rQSJnZ3eeT" slidebank="false" type="slide" noteswf="presentation_content/notes/5rQSJnZ3eeT.swf">&lt;html&gt;&lt;p align='left'&gt;&lt;textformat leading='1' tabstops='[48, 96]' leftmargin='0' indent='0'&gt;&lt;font face='Microsoft Sans Serif' size='10.9933pt' color='#000000'&gt;Most of the developments in information security that we have seen so far have affected individuals and personal computers. But in 2002, Information security went corporate. What happened was that in the late 1990s, when the stock market was booming, a lot of corporate executives were able to exploit weaknesses in their computer systems to record fraudulent transactions. They did this because they wanted to manipulate the stock prices of their companies and since stock prices depend upon sales numbers and profit numbers, these executives would just go in and manipulate and record fraudulent sales to boost the profits. When this came to light, Congress passed the Sarbanes-Oxley act, which made it a crime for CEOs and CFOs to report incorrect financial statements, no matter how the incorrectness happened. The result was that all publicly traded companies are now required to follow specified information security procedures to ensure that the financial statements reported by these companies are correct. In fact, it may not be an exaggeration to say that classes such as this would not have been created were it not for the Sarbanes-Oxley act which required a whole swath of companies to follow certain specific information security procedures. The Sarbanes-Oxley act in many ways created a large-scale information security industry in the United States.&lt;/font&gt;&lt;/textformat&gt;&lt;/p&gt;&lt;/html&gt;</slidetranscript><slidetranscript slideid="4js0r3U2df9.62O6Wrz42N8" slidebank="false" type="slide" noteswf="presentation_content/notes/62O6Wrz42N8.swf">&lt;html&gt;&lt;p align='left'&gt;&lt;textformat leading='1' tabstops='[48, 96]' leftmargin='0' indent='0'&gt;&lt;font face='Microsoft Sans Serif' size='10.9933pt' color='#000000'&gt;If the Sarbanes-Oxley act of 2002 took information security into the corporate boardrooms of publicly traded companies, an interesting incident at T.J. Maxx took information security into every business, small or large. What happened at T.J. Maxx is really a textbook example of all the ways in which a company can do its information security wrong. T.J. Maxx did not use wireless encryption at its stores. So, Albert Gonzalez, an information security expert, figured out that he could just stand outside the stores early in the morning when the stores opened and could skim off passwords floating in the air over the wireless network when store employees logged into the systems. What is even more interesting is that the same passwords and usernames gave Albert access into the IT systems at corporate headquarters of T.J. Maxx. Using this information Albert and his associates stole about 45 million credit cards from T.J. Maxx. These cards were then sold off to buyers. The T.J. Maxx incident made every company in the United States take wireless security seriously and motivated credit card companies to impose security requirements on wireless networks.&lt;/font&gt;&lt;/textformat&gt;&lt;/p&gt;&lt;/html&gt;</slidetranscript><slidetranscript slideid="4js0r3U2df9.5eennEnnnYA" slidebank="false" type="slide" noteswf="presentation_content/notes/5eennEnnnYA.swf">&lt;html&gt;&lt;p align='left'&gt;&lt;textformat leading='1' tabstops='[48, 96]' leftmargin='0' indent='0'&gt;&lt;font face='Microsoft Sans Serif' size='10.9933pt' color='#000000'&gt;In 2008 Russia attacked Georgia. Wars have occurred throughout history, so there was nothing special about the war as such. However, what's interesting about this war from our perspective is that it is considered the first incident of state-sponsored cyber warfare. As the war was going on, many government websites in Georgia were defaced and many bank networks were disabled. It is strongly suspected that the state apparatus of Russia was involved in these cyber attacks. Since this time, countries have become aware of the distinct possibility of militaries using computer networks as a mechanism of war.&lt;/font&gt;&lt;/textformat&gt;&lt;/p&gt;&lt;/html&gt;</slidetranscript><slidetranscript slideid="4js0r3U2df9.5cq0SGelQga" slidebank="false" type="slide" noteswf="presentation_content/notes/5cq0SGelQga.swf">&lt;html&gt;&lt;p align='left'&gt;&lt;textformat leading='1' tabstops='[48, 96]' leftmargin='0' indent='0'&gt;&lt;font face='Microsoft Sans Serif' size='10.9933pt' color='#000000'&gt;In 2009, the United States established its cyber command. The role of the US cyber command was to defend all US military computer networks, as well as to do what was necessary to protect America's interests on the Internet. The establishment of the cyber command was motivated by a number of incidents, including theft of data from one of the largest projects undertaken by the US military. It was also suspected that the US electricity grid had been compromised and enemy countries could cause outage at will. The US cyber command is charged with preventing the occurrence of such incidents in the future.&lt;/font&gt;&lt;/textformat&gt;&lt;/p&gt;&lt;/html&gt;</slidetranscript><slidetranscript slideid="4js0r3U2df9.5W3EB7AqtC1" slidebank="false" type="slide" noteswf="presentation_content/notes/5W3EB7AqtC1.swf">&lt;html&gt;&lt;p align='left'&gt;&lt;textformat leading='1' tabstops='[48, 96]' leftmargin='0' indent='0'&gt;&lt;font face='Microsoft Sans Serif' size='10.9933pt' color='#000000'&gt;In 2010, Google reported cyber-attacks designed to steal its intellectual property originating from China. Google also traced the attacks to two educational institutions in China. This attack attracted a fair amount of publicity because it showed that state actors could now potentially target companies. Until now, companies were concerned about intellectual property theft from competitors. A Cyber attack from state actors is a bigger challenge because state actors typically have larger budgets than corporate actors. So the Google China incident reveals that matters related to cyber security has now escalated and skill requirements to successfully defend against attacks have notched up. Incidents such as this have promoted interest in courses and degree programs in cyber security.&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;IMG SOURCE: http://its.ucsc.edu/google/images/google-securityicon.png&lt;/font&gt;&lt;/textformat&gt;&lt;/p&gt;&lt;/html&gt;</slidetranscript><slidetranscript slideid="4js0r3U2df9.63TuXzRlhvw" slidebank="false" type="slide" noteswf="presentation_content/notes/63TuXzRlhvw.swf">&lt;html&gt;&lt;p align='left'&gt;&lt;textformat leading='1' tabstops='[48, 96]' leftmargin='0' indent='0'&gt;&lt;font face='Microsoft Sans Serif' size='10.9933pt' color='#000000'&gt;An incident that was personally important to me was the Sony PlayStation network compromise of 2011. It happened right at the start of summer and disabled the PlayStation network virtually that entire summer. Unfortunately, the PlayStation network was at the center of my son's plans for that summer. After a hard year's work, he had been looking forward to spend a month or two that summer on the PS3. But the very last minute, he had to scramble up new summer plans because of this compromise.&lt;/font&gt;&lt;/textformat&gt;&lt;/p&gt;&lt;/html&gt;</slidetranscript><slidetranscript slideid="4js0r3U2df9.6dkj11Ey946" slidebank="false" type="slide" noteswf="presentation_content/notes/6dkj11Ey946.swf">&lt;html&gt;&lt;p align='left'&gt;&lt;textformat leading='1' tabstops='[48, 96]' leftmargin='0' indent='0'&gt;&lt;font face='Microsoft Sans Serif' size='10.9933pt' color='#000000'&gt;In 2013, the company Mandiant, released a report which identified a specific unit of the Chinese army as the source of most cyber attacks on US entities in recent years. The depth of detail in the report makes it very interesting to read. The report removed any doubts that state-sponsored industrial espionage was now a central part of the information security problem globally.&lt;/font&gt;&lt;/textformat&gt;&lt;/p&gt;&lt;/html&gt;</slidetranscript><slidetranscript slideid="4js0r3U2df9.5g4I9yAloD5" slidebank="false" type="slide" noteswf="presentation_content/notes/5g4I9yAloD5.swf">&lt;html&gt;&lt;p align='left'&gt;&lt;textformat leading='1' tabstops='[48, 96]' leftmargin='0' indent='0'&gt;&lt;font face='Microsoft Sans Serif' size='10.9933pt' color='#000000'&gt;To prepare for the rest of the class, we will now define information security. The examples we saw so far give us a general sense of the information security problem. But formally, information security is defined as maintaining the integrity, confidentiality and availability of information. The more formal definition is on the slide and it comes from the United States code section 3542. What I like about this definition of information security is that it is consistent across the industry. For example, if you look at RFC 2196, which is released by the Internet Engineering Task Force (IETF), it too defines information security as providing integrity, confidentiality and availability of information. As long as you are involved with the information security profession, you are going to be concerned with protecting the integrity, confidentiality and availability of information.&lt;/font&gt;&lt;/textformat&gt;&lt;/p&gt;&lt;/html&gt;</slidetranscript><slidetranscript slideid="4js0r3U2df9.627tQ4h8kPw" slidebank="false" type="slide" noteswf="presentation_content/notes/627tQ4h8kPw.swf">&lt;html&gt;&lt;p align='left'&gt;&lt;textformat leading='1' tabstops='[48, 96]' leftmargin='0' indent='0'&gt;&lt;font face='Microsoft Sans Serif' size='10.9933pt' color='#000000'&gt;As a pneumonic tool, people like to rearrange the order of the components of information security, and write it as confidentiality, integrity and availability. When written this way, information security is known as the CIA triad, making it easier to remember.&lt;br&gt;&lt;/font&gt;&lt;/textformat&gt;&lt;/p&gt;&lt;/html&gt;</slidetranscript><slidetranscript slideid="4js0r3U2df9.5zkLF6CXu7V" slidebank="false" type="slide" noteswf="presentation_content/notes/5zkLF6CXu7V.swf">&lt;html&gt;&lt;p align='left'&gt;&lt;textformat leading='1' tabstops='[48, 96]' leftmargin='0' indent='0'&gt;&lt;font face='Microsoft Sans Serif' size='10.9933pt' color='#000000'&gt;Let's start with confidentiality. Confidentiality is the responsibility of an organization to maintain the privacy of information in its custody. This means that individuals should be allowed to read protected information only if they are authorized to read it. The responsibility of confidentiality comes about because we recognize the individual right to privacy. &lt;/font&gt;&lt;/textformat&gt;&lt;/p&gt;&lt;/html&gt;</slidetranscript><slidetranscript slideid="4js0r3U2df9.5tYqLeeDUou" slidebank="false" type="slide" noteswf="presentation_content/notes/5tYqLeeDUou.swf">&lt;html&gt;&lt;p align='left'&gt;&lt;textformat leading='1' tabstops='[48, 96]' leftmargin='0' indent='0'&gt;&lt;font face='Microsoft Sans Serif' size='10.9933pt' color='#000000'&gt;Confidentiality is what lay people typically understand as information security. People understand intuitively that when they share their credit card information with a restaurant or online retailer, that information should be should not be leaked. But, confidentiality is a very challenging aspect of information security. Of all the three components of information security, confidentiality requirements are the most difficult to define. Society evolves and with it, social expectations of privacy change. As an information security professional, you need to be aware of this dynamic.&lt;br&gt;&lt;/font&gt;&lt;/textformat&gt;&lt;/p&gt;&lt;/html&gt;</slidetranscript><slidetranscript slideid="4js0r3U2df9.5wEqIq9aTto" slidebank="false" type="slide" noteswf="presentation_content/notes/5wEqIq9aTto.swf">&lt;html&gt;&lt;p align='left'&gt;&lt;textformat leading='1' tabstops='[48, 96]' leftmargin='0' indent='0'&gt;&lt;font face='Microsoft Sans Serif' size='10.9933pt' color='#000000'&gt;Integrity refers to the correctness of information. It means that organizations must make sure that information cannot be improperly changed. For example, once a grade has been assigned to you in a class, it should not be possible for an instructor or other administrator on campus to be able to change your grade. Alternately, when an employer receives your transcript, they need an assurance that the transcript accurately refers to the grades you have earned, and that the grades shown on a transcript are not unauthorizedly inflated. &lt;/font&gt;&lt;/textformat&gt;&lt;/p&gt;&lt;/html&gt;</slidetranscript><slidetranscript slideid="4js0r3U2df9.6rF6OCKjRku" slidebank="false" type="slide" noteswf="presentation_content/notes/6rF6OCKjRku.swf">&lt;html&gt;&lt;p align='left'&gt;&lt;textformat leading='1' tabstops='[48, 96]' leftmargin='0' indent='0'&gt;&lt;font face='Microsoft Sans Serif' size='10.9933pt' color='#000000'&gt;Availability refers to the idea that information must be available when it is needed. It is the idea that if you try to access a website, it will be in a position to take your orders and will not be crushed by an onslaught of unexpected orders.&lt;/font&gt;&lt;/textformat&gt;&lt;/p&gt;&lt;/html&gt;</slidetranscript><slidetranscript slideid="4js0r3U2df9.6rafa60onhw" slidebank="false" type="slide" noteswf="presentation_content/notes/6rafa60onhw.swf">&lt;html&gt;&lt;p align='left'&gt;&lt;textformat leading='1' tabstops='[48, 96]' leftmargin='0' indent='0'&gt;&lt;font face='Microsoft Sans Serif' size='10.9933pt' color='#000000'&gt;That completes our formal introduction to information security in this chapter. Before we wrap up, here is a little gift in the form of my recommendations about the top three things you can do to maintain your own personal information security. The first and foremost thing you can do is to install antivirus software. In this book we refer to this software as end-point protection software because modern antivirus software does a lot more than just check for viruses. Endpoint protection also looks for malware, unauthorized logins, etc. The second you can do is to enable automatic software updates. We will have more to say about updates later in the class. But for all personal machines, it is a good idea to allow vendors to automatically update software. This helps remove vulnerabilities as they are patched. Finally the third thing you can do is to distinguish between financial and nonfinancial accounts when it comes to passwords. In a perfect world, you would have a separate password for every website. In the practical world, if you wish to economize on passwords, please at the very least; do not use passwords that you use on financial institutions elsewhere. The idea is that you may assume that banks have the incentives to take extra precautions to protect your passwords, but other sites may be lacking such incentives to protect passwords. Therefore, you should assume that passwords from non-financial institutions will be stolen and should plan your affairs such that your financial accounts are safe even in these conditions.&lt;/font&gt;&lt;/textformat&gt;&lt;/p&gt;&lt;/html&gt;</slidetranscript><slidetranscript slideid="4js0r3U2df9.6a0BRfr7G6X" slidebank="false" type="slide" noteswf="presentation_content/notes/6a0BRfr7G6X.swf">&lt;html&gt;&lt;p align='left'&gt;&lt;textformat leading='1' tabstops='[48, 96]' leftmargin='0' indent='0'&gt;&lt;font face='Microsoft Sans Serif' size='10.9933pt' color='#000000'&gt;One of the things we have tried to do in our textbook is to introduce one example from industry that relates to the issues covered in the chapter and ask you to do some Internet research related to this issue. For this chapter that example is Wikileaks.&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;/font&gt;&lt;/textformat&gt;&lt;/p&gt;&lt;/html&gt;</slidetranscript></slidetranscripts></transcript_data><glossary_data /></bwFrame>