Darkreading.com reported that “Being proactive allows organizations to better react with a deeper understanding of the threat actor’s intentions and how the organization’s defenses relate to potential threats. That’s why threat awareness is one of the core metrics used to assess an organization’s maturity and capabilities for IR success…” 

Continue Reading You Better Create (and Test) an Incident Response (IR) Plan Before Your Next Cyber Intrusion!

Darkreading.com reported that most businesses do not realize that when using the Cloud that “the enterprise remains responsible for application, account, and data security.” The July 11, 2019 article entitled “There’s a Security Incident in the Cloud: Who’s Responsible?” included these comments from

Ali Golshan (CTO and co-founder

Continue Reading Cloud providers put data security burden on the customer, just like the Click Agreement & Terms of Service spell out!

MIT Sloan Management Review reported that the dark web hosts various “…CAaaS marketplaces and forums that cater to a criminal ilk of technologists and businesspeople….[on]  the dark web to develop and sell the components needed to launch an attack as well as offer expertise and other services needed to

Continue Reading Cyberattack-as-a-service (CAaaS) on the Dark Web, are you surprised?

RiskIQ reported that it “tapped proprietary global intelligence and third-party research to analyze the volume of malicious activity on the internet, revealing that cybercriminals cost the global economy $2.9 million every minute last year, a total of $1.5 trillion.”  The July 24, 2019 report entitled “In Just One

Continue Reading WOW! $2.9 Million lost to Cybercrime every minute last year (think $1.5 Trillion for the year)!

McKinsey & Company reported that “fundamental tensions arise between the business’s need to digitize and the cybersecurity team’s responsibility to protect the organization, its employees, and its customers within existing cyber operating models and practices.” The July 2019 report entitled “Cybersecurity: Linchpin of the digital enterprise” included these

Continue Reading Cybersecurity is fundamental to successful digital enterprises!

HelpNetSecurity.com reported “Unauthorized access through misuse of employee credentials and improper access controls (42 percent) takes the number one spot in this year’s survey as the single biggest perceived vulnerability to cloud security, tied with insecure interfaces and APIs (42 percent). This is followed by cloud misconfigurations (40 percent).”  The

Continue Reading Biggest cloud security vulnerability is misuse of employee credentials and improper access controls!