Technical Advisory Board \ Overview

The Qualys Advisory Board is composed of world class Internet security experts whose visionary perspective helps guide the strategic direction of the QualysGuard Global Web Service Architecture.

Emir Arslanagic \ Director of Security Engineering and Infrastructure, Cable & Wireless

Emir Arslanagic, CISSP, currently serves as Director of the Security Engineering and Infrastructure department of Cable & Wireless' Network and System Group. His team is responsible for designing and implementing logical security solutions and development of security products, such as intrusion detection systems (IDSs), managed firewalls, PKI, and secure intranets. Over the course of his seven-year career at Cable & Wireless, Arslanagic also worked in voice engineering, intelligent network platforms, and data operation engineering, where he started solving Internet security issues. He worked closely with other service providers and law enforcement agencies on SPAM and network security issues, and was Cable & Wireless' Network Security Officer for the U.S. region when the company acquired iMCI network. Arslanagic holds an MS in Telecommunications from the University of Maryland, A. James Clark School of Engineering and a BS in Electrical Engineering from the University of Sarajevo.

Becky Bace \ President & CEO, Infidel, Inc.

An information security veteran specializing in system monitoring and intrusion detection, Becky Bace is currently President and CEO of Infidel, a security consulting practice. She began her security career at the National Security Agency, where she led an early intrusion detection research program. She also served the Los Alamos National Laboratory as the Deputy Security Officer for the Computing, Information, and Communications Division. Bace writes on topics in intrusion detection and network security, with credits including the book Intrusion Detection, NIST's Special Publication 800-31 on Intrusion Detection, and a chapter of the Computer Security Handbook (4th edition). Bace's second book, on expert testimony skills for information technologists, is soon to be published by Addison-Wesley.

Joshua Davis \ Director of Information Security & Compliance, Qualcomm, Inc.

Joshua Davis serves as head of Qualcomm's global information security and compliance organization, responsible for information security across all of the company's diverse business units. He participates in many key solutions for employees and partners including identity & access management, critical infrastructure, litigation support, product security, and physical security. Previously, Joshua was manager of Qualcomm's IT engineering systems group and a systems administrator at the University of Southern California. Joshua is a Certified Information Systems Security Professional (CISSP), Certified Information Systems Manager (CISM), Certified Information Systems Auditor (CISA), and has a BS in Information Systems from the University of Redlands. He was also 2005 & 2006 President of the San Diego chapter of Information Systems Security Association (ISSA) and regularly participates on industry panels and committees.

Myles Gallagher \ Senior Security Specialist, IT Security Operations, Allied Irish Bank Group

Myles Gallagher is a senior security specialist working in Allied Irish Bank Group, Ireland's leading banking and financial services organization. AIB operates principally in Ireland, Britain, Poland and the U.S. with more than 24,000 employees and 800 offices worldwide. Gallagher is responsible for new security solutions, upgrading security infrastructure, providing security consultancy services to internal customers, and liason with security vendors. Prior to joining AIB, Gallagher was a senior security specialist at Entropy, an Irish Internet connectivity and security solutions provider. Previously, Gallagher worked as a network architect for Corel Corporation Ltd. and held senior technical specialist and support positions at Allergan Pharmaceuticals Ltd., Wang Australia Ltd. and Dell. Gallagher is a board member of the Internet Systems Security Association in Ireland and has presented on IT Security topics at industry trade shows.

Dennis Kavanaugh \ CISSP, CISM, Director of Information Security and Risk Management, Palm, Inc.

Dennis Kavanaugh and his team are responsible for Information Security and Risk Management at Palm, Inc., a pioneer in the field of mobile and wireless Internet solutions and a leading provider of handheld computers. Kavanaugh has over 30 years of IT experience, the last 10 of which have been focused on protecting information resources. Prior to Palm, Dennis was the Director of Architecture and Risk Management at Solectron, a worldwide provider of electronic manufacturing services. Before Solectron, Dennis held positions at Intel and SBC where he was involved in all aspects of Information Security, Risk management and other areas in IT. A CISSP and CISM, Dennis also earned a B.S. in mathematics and computer science from the University of California at Davis.

David Mortman \ Senior Manager of Global Security, Siebel Systems, Inc.

As Senior Manager of Global Security, David Mortman and his team are responsible for Siebel Systems' worldwide IT security infrastructure, both internal and external. He also works closely with Siebel's product groups and the company's physical security team. Previously, Mortman was Manager of IT Security at Network Associates, where, in addition to managing data security, he deployed and tested all of NAI's security products before they were released to customers. Before that, Mortman was a Security Engineer for Swiss Bank. A CISSP, member of USENIX/SAGE, and speaker at RSA's 2002 security conference, Mortman earned a BS in Chemistry from the University of Chicago.

Matthew Pemble \ Security Manager, International Finance Corporation

Eur Ing (an engineering professional licensed in FEANI countries) and CISSP Matthew Pemble has significant experience in the design and testing of secure architectures and systems. Upon completion of his military service, he managed the Security Consultancy branch for two independent software testing houses. Now Pemble leads the Security Compliance team for the fourth largest banking group worldwide. He is responsible for penetration testing and vulnerability analysis, incident management, and computer forensics. Pemble holds a Bachelor of Engineering degree from Heriot-Watt University in Edinburgh, and is a European Engineer, a Chartered Engineer, and a member of the IEE (Institute of Electrical Engineers), BCS (British Computer Society) and ICAF (Institute of Communications Arbitration and Forensics).

Arn Schaeffer \ Former Executive VP of Engineering and Production Systems, VeriSign

Most recently Executive Vice President of Engineering and Production Systems, and before that Vice President of Engineering, for VeriSign Arn Schaeffer has also been Vice President of Engineering for Taligent's Common Point Products. Prior to working at Taligent, Schaeffer held software engineering or engineering management positions at Apple Computer, IntelliCorp, and Hewlett-Packard. Schaeffer has a BS degree in Information and Computer Science from the Georgia Institute of Technology and an MBA from the University of California at Berkeley.

Mike D. Schiffman \ Director of Security Architecture, @stake

Mike Schiffman, CISSP, is Director of Security Architecture with @stake, the world's leading digital security consultancy. @stake applies industry expertise and pioneering research to design and build secure business solutions. Previous to @stake, Schiffman was the Director of Research and Development at Guardent, Inc., where he was responsible for the integration of R&D into other business units inside the company, including delivery, forensics, and managed security services. Before that Schiffman held senior positions at Internet Security Systems and Cambridge Technology Partners. He is the original co-author of well-known network security tool firewalk, as well as author to the ubiquitously used low-level packet shaping library libnet. A sought after speaker, he has presented to industry professionals and government agencies, such as the NSA, CIA, DOD, FBI, NASA, AFWIC, SAIC, and Army intelligence. He has authored or co-authored several books on computer security, including Building Open Source Network Security Tools, Hacker's Challenge series, Hacking Exposed, and Hack Proofing Your Network: Internet Tradecraft.

Ira Winkler \ President, Internet Security Advisors Group

Ira Winkler, CISSP is President of the Internet Security Advisors Group. He is considered one of the world’s most influential security professionals, and has been named a “Modern Day James Bond” by the media. Winkler began his career as an analyst at the National Security Agency and later supported other US and overseas government military and intelligence agencies. After leaving government service, he served as president of the Internet Security Advisors Group and director of technology of the National Computer Security Association. He was also on the faculties of the Johns Hopkins University and the University of Maryland. A noted author, Winkler has written Corporate Espionage, Through the Eyes of the Enemy, and Spies Among Us. He has also written more than 100 professional and trade articles. He has been featured and frequently appears on TV on every continent. He has also been featured in magazines and newspapers including Forbes, USA Today, The Wall Street Journal, San Francisco Chronicle, Washington Post, Planet Internet, Business 2.0 and is a regular contributor to ComputerWorld.com.