Financial services institutions are beholden to a wide array of regulatory rules.But in recent months, with an unprecedented number of customers embracing digital access in the face of closed limited-access branches, there are new threats and risks to consider.
It is no panacea, but everyone SC Media spoke with for this story agrees that software bills of material would have dramatically increased the efficiency of patching for the Log4j vulnerability for those prepared to take advantage.
Speaking at the second day of the SC Finance eConference, Betty Elliott, chief information security officer for Freddie Mac, and Sean Cronin, CEO of ProcessUnity, offered their view on how FSIs can best protect themselves, their data and their customers through the careful oversight of third-party suppliers.
SC Media discussed the Log4j vulnerability with the chief technology officer of HackerOne, who expects his armies to find the bug plenty of times in the future.
The Ireland HSE spent five months recovering from a Conti ransomware attack, caused by a lack of recovery plans. An analysis of the incident can help U.S. providers prevent a similar fate.
As the reality sets in over implications of the Log4j vulnerability, security staff have hunkered down to quickly remediate the problem. Experts who spoke to SC Media called the effort a marathon, not a sprint, with one calling the impact "a permanent part of the landscape."
Despite the HHS info blocking and interoperability rules’ go-live in April, many healthcare entities are still struggling with the needed implementation and fully understanding the requirements.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.