Logo
Login
Sign Up
Oliver Buchannon
Andries Bredenkamp

Hi! I am Andries - I am a Information Security Governance Manager.

ISO 27001

The Big Fight With The Auditor

Apr 24, 2026

•

4 min read

The Big Fight With The Auditor

Andries Bredenkamp
Andries Bredenkamp
I Thought My Security Reports Were Kinda Good. I Was Wrong :\

Apr 17, 2026

•

6 min read

I Thought My Security Reports Were Kinda Good. I Was Wrong :\

What the viewing stats revealed, and how the CARE model fixed it

Andries Bredenkamp
Andries Bredenkamp

Risk Management

+1

The Million Dollar Sticky Note

Apr 10, 2026

•

6 min read

The Million Dollar Sticky Note

Complex P@$$w0rds are a liability - not a control

Andries Bredenkamp
Andries Bredenkamp

Risk Management

The Accountability Gap

Mar 27, 2026

•

6 min read

The Accountability Gap

You cannot own a risk that you do not understand

Andries Bredenkamp
Andries Bredenkamp

Risk Management

+1

How I Became The Shadow IT Problem!

Mar 20, 2026

•

9 min read

How I Became The Shadow IT Problem!

How process automation became the governance risk nobody is looking for

Andries Bredenkamp
Andries Bredenkamp
The Most Important Question in InfoSec

Mar 9, 2026

•

4 min read

The Most Important Question in InfoSec

You should be able to answer this question for everything you do and every decision you take.

Andries Bredenkamp
Andries Bredenkamp

Risk Management

The Model That Fixes the Blame Game

Mar 3, 2026

•

5 min read

The Model That Fixes the Blame Game

Understanding the 3 Lines of Defence model, and how InfoSec fits into it

Andries Bredenkamp
Andries Bredenkamp

PII

+1

My "Credit Cards in The Trash" Story

Mar 1, 2026

•

4 min read

My "Credit Cards in The Trash" Story

The biggest data breach I found didn’t involve hacking. It involved a filing cabinet.

Andries Bredenkamp
Andries Bredenkamp

ISO 27001

My Vendor Lied To Me

Feb 28, 2026

•

4 min read

My Vendor Lied To Me

How I knew their ISO 27001 certificate was fake

Andries Bredenkamp
Andries Bredenkamp

The InfoSec Nerd

Practical InfoSec lessons from a working security manager.

© 2026 The InfoSec Nerd.
Report abusePrivacy policyTerms of use
beehiivPowered by beehiiv