The document is a presentation by Marc Vael from Valuendo titled "25 tips & tricks" for an InfoSecurity 2009 conference in March. It discusses 25 common misconceptions about information security. Vael polls the audience on their level of agreement with statements and lessons related to how security is understood, budgets are determined, policies are followed, and risks are managed within organizations. The presentation aims to challenge assumptions and encourage best practices.