This page contains links to the posts I’ve published which were the most popular or that I felt were the most important for my research. I often refer people back to many of these posts for further information about things I speak at in conferences or during my classes.
Investigation Theory
The Effects of Opening Move Selection on Investigation Speed
Perception, Cognition, and the Notion of “Real Time” Detection and Analysis
Theory of Multiple Intelligences for Security Analysts – Initial Thoughts
Security Operation Center (SOC)
Differential Diagnosis of Network Security Monitoring Events