Microsoft’s bug bounty turns 10. Are these kinds of rewards making code more secure?

November 22, 2023 at 06:02AM Microsoft’s bug bounty program, which pays out rewards to security researchers who discover vulnerabilities, has awarded a total of $63 million over the past decade. The program has experienced explosive growth since 2018, with Microsoft doubling the number of bounty reports, program participants, and awards. Despite this, bug bounty platforms … Read more

The Role of the CISO in Digital Transformation

November 21, 2023 at 03:59PM The role of the chief information security officer (CISO) is becoming increasingly important as organizations modernize their workflows and migrate to the cloud. The CISO must balance innovation and security, collaborate with other leaders, and ensure security is considered at all stages of the process. A strong CISO collaborates with … Read more

Biden Campaign Looking for CISO

November 16, 2023 at 11:45AM The Biden for President campaign is hiring a Chief Information Security Officer (CISO) to oversee its IT and security division. The CISO will be responsible for defining the organization’s risk appetite, leading cybersecurity initiatives, managing incident response programs, and ensuring high cybersecurity standards with third-party vendors. Based on the meeting … Read more

Threat Prevention Begins With IT & Security Team Collaboration

November 2, 2023 at 10:04AM The responsibility for cybersecurity in businesses has expanded beyond security teams. As cyber threats continue to evolve, business leaders are restructuring their leadership teams to prioritize cybersecurity. Collaboration between IT and security teams is crucial for preventing cyber threats and maintaining productivity. Communication, collaboration on security strategies, and securing remote … Read more

Cybersecurity Leaders Spooked by SEC Lawsuit Against SolarWinds CISO

October 31, 2023 at 04:10PM The US Securities and Exchange Commission (SEC) has filed a lawsuit against SolarWinds’ former Chief Information Security Officer (CISO), Timothy Brown, alleging that he failed to disclose critical information about the cyberattack on the company’s software supply chain. The lawsuit is seen as a rare instance of a regulatory body … Read more

What the Boardroom Is Missing: CISOs

October 30, 2023 at 10:04AM A study reveals that only 12% of S&P 500 companies have board directors with relevant cyber credentials, highlighting a lack of expertise in keeping organizations secure. The SEC has implemented federal compliance for cybersecurity, and boards need to engage with their company’s CISOs to bridge the knowledge gap. Introducing CISOs … Read more

Uber’s Ex-CISO Appeals Conviction Over 2016 Data Breach

October 12, 2023 at 09:59AM Former Uber CISO Joseph Sullivan’s lawyers have argued in an appeal that his conviction for charges related to a 2016 data breach should not stand as it threatens bug bounty programs. They describe the verdict as “profoundly flawed” and claim that it jeopardizes the valuable tool used by security teams … Read more