<?xml version="1.0" encoding="UTF-8"?>
<!-- generator="wordpress.com" -->
<urlset xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xsi:schemaLocation="http://www.sitemaps.org/schemas/sitemap/0.9 http://www.sitemaps.org/schemas/sitemap/0.9/sitemap.xsd"><url><loc>http://risktical.com/2010/06/23/standing-on-the-shoulders-of-giants-sotsog-my-parents/</loc><lastmod>2010-06-23T16:39:09+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2010/05/28/risktical-blog-series-sotsog/</loc><lastmod>2010-05-28T17:05:01+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2010/05/25/impromtu-it-risk-assessment-poll/</loc><lastmod>2010-05-25T17:15:03+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2010/05/14/impromtu-pci-dss-poll/</loc><lastmod>2010-05-14T16:42:33+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2010/05/11/more-heat-map-love/</loc><lastmod>2010-05-12T10:38:25+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2010/05/06/heat-map-love/</loc><lastmod>2010-05-07T13:05:27+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2010/04/01/rainbow-risk/</loc><lastmod>2010-04-01T14:53:27+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2010/02/02/working-with-external-data-part-2-of-x/</loc><lastmod>2010-02-02T17:26:09+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2009/12/28/what%e2%80%99s-in-your-wallet/</loc><lastmod>2009-12-28T22:01:47+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2009/12/09/verizon-2009-data-breach-investigations-supplemental-report/</loc><lastmod>2009-12-14T18:50:36+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2009/11/21/working-with-external-data-part-1-of-x/</loc><lastmod>2009-11-21T23:17:55+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2009/10/26/risk-threat-vs-risk-issue/</loc><lastmod>2009-10-27T12:18:12+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2009/10/22/catching-my-breath/</loc><lastmod>2009-10-22T12:42:02+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2009/08/08/reputation-risk-some-additional-thoughts/</loc><lastmod>2009-08-08T19:12:29+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2009/08/06/reputation-risk-qa-%e2%80%93-richard-levick-2-of-2/</loc><lastmod>2009-08-14T02:24:12+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2009/08/05/reputation-risk-qa-%e2%80%93-richard-levick-1-of-2/</loc><lastmod>2009-08-05T17:18:56+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2009/05/28/qsa-vendor-selection-%e2%80%93-points-of-consideration/</loc><lastmod>2009-08-08T17:00:25+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2009/05/21/the-risk-is-right/</loc><lastmod>2009-06-10T01:58:27+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2009/04/27/2009-verizon-breach-report/</loc><lastmod>2009-04-28T02:03:43+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2009/04/02/pci-treatment/</loc><lastmod>2009-04-02T16:49:03+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2009/03/21/stuart-king-%e2%80%93-information-security-annoyances-%e2%80%93-response-2/</loc><lastmod>2009-03-21T19:02:01+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2009/03/19/stuart-king-%e2%80%93-information-security-annoyances-%e2%80%93-response-1/</loc><lastmod>2009-03-21T17:15:53+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2009/03/16/application-security-risk-assessments/</loc><lastmod>2009-10-21T10:03:34+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2009/02/17/scatterbrain-post/</loc><lastmod>2009-02-17T17:08:18+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2009/01/24/pci-dss-is-not-about-%e2%80%9csecurity-by-obscurity%e2%80%9d/</loc><lastmod>2009-01-30T16:21:27+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2009/01/21/making-pci-easier-%e2%80%93-a-reality-health-check/</loc><lastmod>2009-03-07T10:21:50+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2009/01/16/risk-scenario-%e2%80%93-hidden-field-sensitive-information-part-4-of-4/</loc><lastmod>2009-01-16T13:03:38+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2009/01/15/risk-scenario-%e2%80%93-hidden-field-sensitive-information-part-3-of-4/</loc><lastmod>2009-01-15T13:45:57+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2009/01/13/risk-scenario-%e2%80%93-hidden-field-sensitive-information-part-2-of-4/</loc><lastmod>2009-01-13T17:07:33+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2009/01/12/risk-scenario-%e2%80%93-hidden-field-sensitive-information-part-1-of-4-%e2%80%93-the-scenario/</loc><lastmod>2009-01-13T00:24:35+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/about/</loc><lastmod>2008-12-31T00:25:30+00:00</lastmod><changefreq>weekly</changefreq><priority>0.6</priority></url><url><loc>http://risktical.com/2008/12/18/pci-qsa-goodness/</loc><lastmod>2009-03-07T10:35:29+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2008/12/17/risk-and-pci-dss/</loc><lastmod>2008-12-23T12:42:43+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2008/12/12/risk-convergence-frustrations/</loc><lastmod>2008-12-26T08:49:22+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2008/11/18/sanity-check-%e2%80%93-managing-risk-to-the-%e2%80%9cunexpected-loss%e2%80%9d/</loc><lastmod>2008-11-18T03:18:28+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2008/11/17/stuart-king-risk-assessment-rebuttal/</loc><lastmod>2009-03-07T10:53:00+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2008/11/06/security-template-exception-part-2-%e2%80%93-the-assessment/</loc><lastmod>2008-11-07T02:20:00+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2008/11/06/security-template-exception-part-1-%e2%80%93-the-scenario/</loc><lastmod>2008-11-06T12:14:38+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2008/11/06/initech-inc-risk-scenario-pre-read/</loc><lastmod>2008-11-06T12:06:29+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/initech-inc/</loc><lastmod>2008-11-05T03:05:12+00:00</lastmod><changefreq>weekly</changefreq><priority>0.6</priority></url><url><loc>http://risktical.com/2008/10/21/pci-risk-management-%e2%80%9cthe-blackberry-arsenal%e2%80%9d/</loc><lastmod>2008-10-21T01:18:12+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2008/10/01/threat-event-frequency/</loc><lastmod>2008-10-01T16:42:54+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2008/09/21/initech-inc/</loc><lastmod>2008-09-21T21:27:47+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2008/09/19/risk-ostrich/</loc><lastmod>2008-09-19T16:39:44+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2008/09/04/risk-and-cvss-post-5-final/</loc><lastmod>2008-09-04T00:57:05+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2008/09/03/risk-and-cvss-post-4/</loc><lastmod>2008-09-03T17:09:01+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2008/09/03/risk-and-cvss-post-3/</loc><lastmod>2008-09-03T12:53:17+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2008/09/01/risk-and-cvss-post-2/</loc><lastmod>2008-09-09T12:14:32+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2008/08/24/risk-and-cvss-post-1/</loc><lastmod>2010-02-19T10:26:51+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/risk-vernacular/</loc><lastmod>2009-12-09T14:32:45+00:00</lastmod><changefreq>weekly</changefreq><priority>0.6</priority></url><url><loc>http://risktical.com/2008/08/16/risk-vernacular/</loc><lastmod>2008-08-16T17:46:06+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2008/08/10/is-the-infosec-risk-assessor-alone/</loc><lastmod>2008-09-23T03:56:57+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2008/08/04/what-is-risk-follow-up-comments/</loc><lastmod>2008-08-04T13:24:22+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2008/07/31/what-is-risk/</loc><lastmod>2008-12-03T12:13:21+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2008/07/26/it%e2%80%99s-all-in-a-name%e2%80%a6risktical/</loc><lastmod>2008-07-27T18:42:52+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/2008/07/24/coming-soon/</loc><lastmod>2008-07-25T18:12:24+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>http://risktical.com/</loc><changefreq>daily</changefreq><priority>1.0</priority><lastmod>2010-06-23T16:39:09+00:00</lastmod></url></urlset>
