#SecurityManagement

secsolutionsecsolution
2025-02-12

Security manager e Vigilanza Privata insieme a Milano per una giornata di studi: Il risk awareness, come si chiama in inglese, eโ€™ la base del processo di analisi, conoscenza e comprensione profonda degli scenari, degli eventi, delle variabili umane,...
dlvr.it/THwrZW

2025-02-10

Our February meetup is sponsored by Wellington Management
We have John Kordis talk about #vulnerabilitymanagement. We also have David Hunt talk about #securitymanagement for small companies. Make sure to RSVP by Feb 18th at meetup.com/the-boston-security . We have limited spots available!

2025-02-06

Our February meetup sponsored by Wellington Management has two great talks! First we have John Kordis talk about #vulnerabilitymanagement and next we have David Hunt talk about #securitymanagement for small companies. Make sure to RSVP by Feb 18th at meetup.com/the-boston-security . We have limited spots available!

Comelit South East AsiaComelitSEA
2025-01-03

๐Ÿ”ข Overwhelmed by the increasing complexity of systems? Donโ€™t worryโ€”letโ€™s break it down in 5 key points!

Adopting integrated security systems allows for coordinated and intelligent management of , , and , simplifying operations for both end users and installers. Hereโ€™s what you need to know ๐Ÿ‘‡
Link

2024-10-20

๐Ÿšจ Did you know 37% of organizations struggle to detect threats hidden in encrypted traffic? ๐Ÿšจ In todayโ€™s multi-cloud world, having the right Firewall Security Manager is essential for staying secure and compliant.

๐Ÿ’ก A centralized firewall management tool can streamline security policies, automate compliance checks, and improve visibility across your cloud infrastructure.

๐ŸŒ How do you manage your network's security policies? Share your thoughts and tips!

Check out our full guide here: guardiansofcyber.com/solutions

#Cybersecurity #FirewallSecurity #GuardiansOfCyber #DataProtection #CloudSecurity #ThreatDetection #Compliance #MultiCloud #SecurityManagement

2024-10-18

Another, much less bad piece than the previous one, on infosec burnout (albeit 2 years old): "Burnout And Staffing Shortages: Looming Cybersecurity Crises That Need More Attention" (forbes.com/councils/forbestech .) Sadly, the prescribed solutions are then usually pie in the sky. IME good corporate infosec people have experience working as at least two of (developer, support, network engineering.) It's really, really hard to substitute that with "training" or a three-year degree course. A good start would be for coalitions of enteprise-scale orgs to start cross-training people in those fields with an interest in security (and an eye to avoiding the relatively lower non-mgmt pay ceilings.) Accept that many of them will start job-hopping (which is why it needs lots of orgs to participate.) Provide copious, good quality training, plus regular rotations out of the trenches to go learn new tools, skills, etc. This in particular will be very expensive, especially when ppl take free training for a few years before pissing off to another employer for a fat pay rise; accept thst as a cost of doing infosec business. (They can save big bucks by stopping buying ludicrously expensive "solutions" as a expensive cargo cult substitute for investing in their ppl.) Give them work experience with the teams they'll need to work with, or at least stick them at desks among them - not just tech functions, but especially back office support (HR, payroll, risk, finance, legal.) It's amazing what a few months with open ears can pick up, not only in terms of Intel, but some appreciation for what the civilians do all day, what their problems are, what they grumble about (and of course how infosec intersects with all that.)

And so on and so forth. I could write a book, but I doubt anyone would pay any attention. Perhaps spend a few years first on a precursor blog... Meh, what's the point? So much easier for orgs to carry on running the few sec people they have, hot, and the bemoaning it when they end up sitting on the hard shoulder in a cloud of dirty smoke with terminally seized engines. And that's why I will shortly be turning my bedside light out and enjoying sleeping away half the morning, rather than flogging myself to get up and go back to corporate infosec hell :)

#infosec #securityManagement #fail #enterprise #burnout

Neuronus Computingneuronus_computing
2024-08-27

๐Ÿ”’ Discover the Benefits of Access Control for Your Business ๐Ÿ”’ and take control of your assets by preventing data breaches and cyber attacks. A complete understanding of Access Control as well as comparison of:
๐Ÿ” DAC
๐Ÿ”’ MAC
๐Ÿ›ก๏ธ RBAC
๐Ÿ” ABAC
Learn here how Access Control can help! ๐Ÿ‘‡

๐Ÿ‘‰ neuronus.net/impact-of-ai-on-t

Zeroday Podcast (stefan)zeroday@podcasts.social
2024-03-15

#episode #0d113 des #zeroday #podcast ist eben #online gegangen.
Sven erklรคrt diesmal was es mit #asm (attack surface Management) als weiteres Tool im #security #management auf sich hat.
Zu hรถren wie immer in eurem #podcatcher eurer Wahl oder direkt auf der Seite:
0x0d.de/2024/03/0d113-kennt-ih

#podcast #zeroday #asm #0d113 #episode #attacksurfacemanagement #securitymanagement

Shared Security Podcast :verified:sharedsecurity@infosec.exchange
2023-11-27

๐Ÿ‘€ We asked AI to generate a picture of a "Lonely and Sad Security Awareness Manager in a Dog Pound". Here's the fascinating results... ๐Ÿ˜

Plus, debunking AI powered scams and details on Apple's support of RCS all on this week's episode of the Shared Security Podcast!

Watch the full episode on YouTube:
youtu.be/uLX3vUyUMu0

Or listen to the audio version wherever you like to get your podcasts:
sharedsecurity.net/subscribe

#podcast #AI #securityawareness #securitymanagement #cybersecurity #cybersecurityawareness

2023-11-15

Working in cyber security can wear you down. Even if you love the work.

The results of your good work rarely show as a big red, flashing sign that says "You succeeded". Sometimes you wonder if anyone even notices.

But when you can speak to others who are facing the same issues in other organizations, you realize that the work you are doing is really important.

One day, you'll likely see a news story where another organization just like yours fell victim to an attack, and you realize that what you've done makes it less likely to happen in your organization.

That's when you understand the value of what you are contributing.

Come and join the Cyber Security Awareness Forum live panel discussion today, and hear from others in the security awareness industry who have dealt with similar challenges to the ones you're facing.

us02web.zoom.us/webinar/regist

#csaf #cybersecurityawarenessforum #securityawareness #securitymanagement #riskmanagement #humanriskmanagement

2023-11-01

There are some well-known reasons why gamification is considered to be a good tool for cyber security training and awareness programs.

There are also some misconceptions about gamification that tend to lead people to dismiss the approach.

In today's live Cyber Security Awareness Forum panel discussion, we'll dig into "The pros and cons of gamification in a security awareness program"

Joing us at 1pm EDT today (Wednesday, November 1), and bring your questions or comments...

us02web.zoom.us/webinar/regist

#csaf #cybersecurityawarenessforum #gamification #securityawareness #securitymanagement #riskmanagement #securitytraining

Laura Santamarianimbinatus@hachyderm.io
2023-10-16

Hey #CloudAustin! Our monthly meetup is happening *tomorrow* at Q2 in Cedar Park. Come learn about #ai trust risk and #securitymanagement. Big thanks to this month's food sponsor, Temporal.io! Learn more and join us: meetup.com/cloudaustin/events/

2023-10-03

Here are the stories in this week's Human Cyber Security Insights newsletter:

๐ŸŽฏ Why employees avoid awareness training
๐ŸŽฏ A high profile breach at Nansen may foreshadow new phishing attacks
๐ŸŽฏ Top security myths that all employees should know about
๐ŸŽฏ What should be in an annual security awareness program?
๐ŸŽฏ The risks from impersonating internal teams without their cooperation

linkedin.com/pulse/scotts-huma

#cybersecurity #securityawareness #humanriskmanagement #riskmanagement #securitymanagement #phishing

2023-09-06

Over 225 security professionals have signed up for today's bi-weekly Cyber Security Awareness Forum.

Think of these sessions as: "The Best Part of Your Security Week"

Attendees love the casual atmosphere, the panel format and the variety of perspectives from CISOs and security awareness managers.

Why not join us today at 1pm EDT, to hear what other security professionals have to say about employee-related risks "beyond phishing links"?

us02web.zoom.us/webinar/regist

#csaf #cybersecurityawarenessforum #securityawareness #securityculture #securitymanagement #riskmanagement

2023-08-23

Learn what really takes up security awareness managers' time in their jobs.

Join us for today's Live Cyber Security Awareness Forum panel session on:

"A day in the life of a security awareness manager (tasks and challenges)"

We have live audience Q&A with an industry expert panel, to share insights and lessons learned about managing security awareness programs.

us02web.zoom.us/webinar/regist

#csaf #cybersecurityawarenessforum #securityculture #securitymanagement #riskmanagement

Geekmaster ๐Ÿ‘ฝ:system76:Geekmaster@ioc.exchange
2023-07-24

Spent a few hours updating my #IOC collection on my #GitHub repositories. Added a long list of IOCs from #DocuSign #PhishingEmails here: github.com/Geekmaster-General/

Also added a new section called "Phishing Email IOCs" which you can find here: github.com/Geekmaster-General/

This covers the infamous "Password Reset", "Microsoft Teams File", "Storage if Full", "Messages on Hold", and "SharePoint Document" phishing emails we all see from time to time.

#cyberdefense #cybersecurity #securitymanagement

2023-07-12

If your organization has stories to share about how role-based security awareness is making a difference, others want to hear about it.

Too often, organizations miss the opportunity to provide quality security training to staff who have a common risk environment.

Attackers are focusing on roles now, so they can create more compelling pretexts for social engineering.

Soon, it won't be just gift card scams. There will be attacks targeting people like software librarians that give source code access to privileged access to remote attackers.

What ignored roles do you see that can receive value from more focused security training?

Join our live Cyber Security Awareness Forum today at 1pm EDT, where you can hear from an expert panel and learn from live audience Q&A.

us02web.zoom.us/webinar/regist

#csaf #cybersecurityawarenessforum #securitytraining #securityawareness #riskmanagement #securitymanagement #instructionaldesign

Pete H :verified: CISSP/ISO27KDecypher2@infosec.exchange
2023-04-10

Take the CISSP on your coffee break! (Well, OK, a *LOT* of coffee breaks.) Or use it as a reference for particular infosec points.
fibrecookery.blogspot.com/2023
#cissp #isc2 #infosec #security #cissptraining #research #securitymanagement #informationsecurity #securitytraining

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst