The top information-technology officers in an organization often clash, hampering efforts to bolster cyber resilience. Here’s how to make sure your CIO, CISO and CTO are on the same page.
In this latest Enterprise Security Weekly episode, we explored some significant cybersecurity developments, starting with Veracode’s acquisition of Phylum, a company specializing in detecting malicious code in open-source libraries. The acquisition sparked speculation that it might be more about Veracode staying relevant in a rapidly evolving marke...
The communications industry logged the highest increase in CyHy enrollment between 2022 and 2024, followed by the emergency services, critical manufacturing, and water and wastewater sectors, the CISA report revealed.
Since D3FEND was founded to fill a gap created by the MITRE ATT&CK Matrix, it has come a long way. We discuss the details of the 1.0 release of D3FEND with Peter in this episode, along with some of the new tools they've built to go along with this milestone. To use MITRE's own words to describe the gap this project fills: "it is necessary that prac...
However, while the security industry focuses on scrutinizing infrastructure-level toxic combinations, a whole new set of threats is brewing in the shadows of the Software Development Lifecycle (SDLC).
The security standards of your vendors, contractors and service providers should match your own, and your remote workers need to be verified. Here's how to achieve both.
The offerings are AI cybersecurity assistant BIX, Cyber Risk Assessments, a one-time AI-powered vulnerability evaluation, and a continuous threat and exposure management platform called D3.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.