SecurityGate.io Announces New PPT Insight For Cybersecurity
Today we would like to announce the release of the SecurityGate.io PPT (People Process Technology) Insight for immediate use in our cyber risk management platform. The PPT Insight is a fully-automated, industry-first capability for understanding, organizing, and managing controls. It takes cyber assessment data and instantly shows how an organization’s missing controls (which often translate […]
How to Pre-Plan Assessment Remediations
Make your assessments meaningful by pre-planning remediations Upon first glance, this may seem backward. Remediations come after the assessment where you discover what needs to be remediated, right? Yes, but if you’ve been involved with risk management for a few cycles of assessment and “reassessment” activities, you’re likely familiar with a common theme: Most post-assessment […]
Align Stakeholders on Your Cybersecurity Strategy
Overview We see that companies of all sizes often lack a strategy to gain buy-in from their stakeholders and thus fail to align on the purpose of assessments. Cyber risk assessments are a vital cornerstone of any risk management strategy. To make sure your organization is getting the maximum value of time and resources invested in these […]
10 Steps for a Successful Assessment Strategy
The key to successful assessment planning begins with clear communication throughout the initial planning phases. To ensure technical and non-technical leaders are aligned on the purpose of the cyber assessment, use the 10 steps below to facilitate communication prior to beginning the assessment. (Note: many of these steps can be done simultaneously.)
The first 3 things to focus on in cybersecurity risk management.
Edit: In case you missed the show, we have a video of it posted at the bottom of this blog post. Enjoy! Listen on Spotify or Apple Podcasts We’ve been working on a knowledge base of helpful content for the cybersecurity community and one of the open questions we asked was, How do […]
Review of the Critical Infrastructure Maturity Model
The success and efficiency of any cybersecurity program depend primarily on how far people can see the difference between what situation they are in and what situation they think they are in. The Critical Infrastructure Maturity Model (CIMM) touches upon this critical issue.
MD Anderson Fined $4.3 Million for Data Breach
MD Anderson was accused of violating HIPAA by the Office for Civil Rights (OCR) for failing to encrypt devices that held electronically protected health information (ePHI). The failure exposed the ePHI of over 33,500 people when a laptop and two thumb drives were lost in 2012-2013.
Recent Russian Cyber Attacks and How to Defend Your Business from Cybersecurity Threats
A Brief Explanation of the Russian Cyber Attacks On March 15, 2018, a Technical Alert (TA) was released jointly by the Department of Homeland Security (DHS) and the FBI which implicated Russian government cyber actors in the targeting of numerous US, Canadian, and European targets. The cyberattacks used a variety of infection vectors, including malicious […]