“So when we in the security industry use the term ‘risk management’, we don’t want you to do it by trusting your gut.”

— Bruce Schneier

“Stop trusting vuln scanner ratings. Nessus doesn't know your network. A low for most may be a critical for you.”

— Jake Williams, SANS Instructor

“Defenders think in lists. Attackers think in graphs. As long as this is true, attackers win.”

— John Lambert, Microsoft

