2018 Cyber Resolutions for the CEO

Posted on Posted in Governance, Risk Management and Compliance (GRC), Proactive Defense

The new year is upon us, which means that you’ve hopefully gotten your fill of family, good food, and nostalgic playlists. It also means that the inevitable resolutions are also here. Since many of you will be busy with other priorities, I’ve put a quick list together of cybersecurity resolutions for CEOs and Founders. Committing […]

I WANNACRY: When will the world start to listen to cybersecurity experts?

Posted on Posted in Governance, Risk Management and Compliance (GRC), Proactive Defense

In the early 90’s, when the consumer “World Wide Web” as it exists today was just getting started, it was apparent to many that we would soon be facing some serious security issues. The original Internet was built on trust: trust between universities and research institutes and the security-through-obscurity which came with being the only […]

Interpreting the New York State Cybersecurity Regulations

Posted on Posted in Governance, Risk Management and Compliance (GRC)

New York State has led the nation in releasing its 23 NYCRR 500 cybersecurity regulation for financial institutions. This article is aimed mostly at those institutions, to give them guidance around what can be expected of them around this regulation, but its adoption has consequences for all states as it’s likely this will be expanded nationally […]

The US is currently helpless in a Cyber War Scenario

Posted on Posted in Incident Response and Investigation (IR), Proactive Defense

Two teams take the field. On offense, huge adults who are professional athletes. An NFL team. On defense, eleven small, skinny children, barely standing above the belts of their opponents. Both sides square off as the play is set in motion and the NFL team executes its masterful offense. Very strong, athletic men use all […]