Managing Cyber-Risk Is No Different Than Managing Any Business Risk

September 24, 2024 at 10:03AM Summary: Business risks encompass various categories, all affected by cyber-risks. Market research shows strong cybersecurity correlates with higher shareholder return. Chief information security officers are adopting artificial intelligence to counter evolving cyber threats, but express mixed feelings about AI risks. Elevating cyber-risk management to essential protocol and recognizing cyber-risks as … Read more

How to manage shadow IT and reduce your attack surface

September 23, 2024 at 10:19AM Employees increasingly turn to unauthorized IT solutions, known as “shadow IT,” to improve productivity, posing security and compliance risks. This involves using unapproved devices, software, and services. To manage these risks, strategies include identifying root causes, educating employees, establishing clear policies, and leveraging technology tools. Adopting External Attack Surface Management … Read more

In Other News: Fuxnet ICS Malware, Google User Tracking, CISA Employee Scams 

June 14, 2024 at 10:27AM SecurityWeek curates a weekly roundup of cybersecurity stories, focusing on diverse developments like Chinese cyberspies hacking Fortinet devices, a White House initiative to secure rural hospitals, vulnerabilities in biometric access systems, ICS malware Fuxnet, EU’s encryption backdoor push, and more. Microsoft will evaluate employees’ cybersecurity work for compensation. US federal … Read more

DHS Proposes Critical Infrastructure Reporting Rules

March 27, 2024 at 02:58PM CISA to oversee new cyber incident and ransomware payment reporting requirements. Based on the meeting notes, it is clear that CISA will be responsible for administering the new reporting requirements for cyber incidents and ransomware payments. Full Article

Future of America’s Cyber Safety Review Board hangs in balance amid calls for rethink

January 18, 2024 at 01:32PM The US is contemplating legislation to make the Cyber Safety Review Board (CSRB) a permanent fixture in cybersecurity. Experts emphasize the need for substantial changes in its organization to ensure detailed and independent reports. Discussion also arose on granting the board subpoena powers, with mixed opinions from industry figures and … Read more

Saudi Companies Outsource Cybersecurity Amid ‘Serious’ Incidents

December 1, 2023 at 10:50AM Over 50% of Saudi companies seek to outsource cybersecurity within 18 months, driven by tool shortages and staff scarcity. Kaspersky’s study found that 42% will turn to MSPs and 10% to consultants, amid reports of serious cyber incidents affecting 74% of businesses in the region. **Key Takeaways from Meeting:** 1. … Read more