Avatar

John Stuppi

Technical Leader

Cisco Security Research & Operations

John Stuppi, CCIE No. 11154, is a technical leader in the Security Intelligence Operations (SIO) organization at Cisco where he helps customers leverage their Cisco infrastructure to overcome emerging security challenges. In this role, John is responsible for creating, testing, and communicating effective techniques using Cisco product capabilities to provide identification and mitigation solutions for Cisco customers facing current or expected security threats.  Current projects include helping customers leverage DNS and NetFlow data to identify and subsequently mitigate network-based threats.  Additionally John contributes to the Cisco SIO Portal through the publication of white papers, Security Blog posts, and Cyber Risk Report articles and has presented several times on various network security topics at Cisco Live.  John is also a CISSP (#25525) and holds an Information Systems Security (INFOSEC) Professional Certification. In addition, John has a BSEE from Lehigh University and an MBA from Rutgers University.   John lives in Ocean Township, New Jersey (aka the “Jersey Shore”) with his wife, two kids and his dog.

Articles

January 22, 2016

SECURITY

Overcoming the DNS “Blind Spot”

[ed. note – this post was authored jointly by John Stuppi and Dan Hubbard] The Domain Name Service (DNS) provides the IP addresses of intended domain names in response to queries from requesting end hosts. Because many threat actors today are leveraging DNS to compromise end hosts monitoring D…

January 8, 2015

SECURITY

CVSS Version 3 Available For Public Comments

The Common Vulnerability Scoring System (CVSS) Special Interest Group (SIG), in which Cisco is an active participant, acting on behalf of FIRST.org, has published a preview of the upcoming CVSS v3.0 scoring standard.  The CVSS v3.0 preview represents a near final version and includes metric and vect…

November 13, 2013

SECURITY

Cybersecurity: Where are the Biggest Threats?

Rarely a week goes by that we don’t hear of a database compromise that results in confidential data—many times consisting of personally identifiable information (PII)—falling into the hands of those who should not have access to the data. Protection of our PII is becoming increasingly critical as m…

October 21, 2013

SECURITY

Security Is Pervasive in the Cisco Blog Community

As we pass the halfway point of National Cyber Security Awareness Month (NCSAM), I wanted to call attention to some of our colleagues over on the Cisco Government Blog. Patrick Finn and Peter Romness have been busy this month espousing the need for security and we thought it would be beneficial to e…

October 3, 2013

SECURITY

Ten Simple Ways to Enhance Cyber Security for You and Others

Hi there and welcome to today’s U.S. National Cyber Security Awareness Month tip, courtesy of those of us involved in administering and/or contributing to Cisco Security Intelligence Operations!! For all of you savvy technologists and those well versed in the security realm many of these tips…

July 8, 2013

SECURITY

Cisco Live USA 2013: Recap from a Network Security Engineer

Having just returned home to New Jersey from Cisco Live US in Orlando, Florida, I thought I’d share my experiences as a Network Security Engineer both attending and presenting at this year’s conference. There were approximately 20,000 attendees at this year’s conference, which I believe set a new Ci…

April 15, 2013

SECURITY

Cisco Security Disclosure: Help Us Help You!

Wow! We just published our tenth bundle of Cisco IOS Software Security Advisories and what a ride it’s been!! Way back when in the fall of 2008 when we produced our first Cisco IOS Software Security Advisory bundle, we had no idea of the impact that this delivery format would have on us intern…

January 3, 2013

SECURITY

Protecting Our Networks: It’s a Team Game Now!

I have been coaching youth sports for the past seven plus years now and one of my common mantras when speaking to the girls and boys each season is that “we will win as a team and lose as a team.”  In other words, I will never tolerate one player acting selfishly enough to think he or she is above e…