Cybersecurity Leadership
21.0K views | +1 today
Follow
Cybersecurity Leadership
A reference resource for the CIO and the CISO on cyber security, looking beyond the technology horizon into leadership, management, culture, governance, resilience and the real dynamics of security transformation
Curated by JC Gaillard
Your new post is loading...
Your new post is loading...
Scooped by JC Gaillard
Scoop.it!

MIT report details new cybersecurity risks

MIT report details new cybersecurity risks | Cybersecurity Leadership | Scoop.it
Cloud misconfigurations, more sophisticated ransomware, and exploitation of vendors are contributing to rising cyberattacks.
No comment yet.
Scooped by JC Gaillard
Scoop.it!

Building cyber-resilient supply chains

Building cyber-resilient supply chains | Cybersecurity Leadership | Scoop.it

Unlike the majority of supply chain disruptions, cyber-based threats like ransomware can cause sudden and systemic impacts to organisations or the wider ecosystem. They can be prolonged – beyond what is contemplated in most business continuity plans. These characteristics set them apart from traditional disruptions such as labour and raw material shortages, or power outages.

No comment yet.
Scooped by JC Gaillard
Scoop.it!

Three Questions To Ask Third-Party Vendors About Cybersecurity Risk

Three Questions To Ask Third-Party Vendors About Cybersecurity Risk | Cybersecurity Leadership | Scoop.it
How can companies apply rigor when evaluating the security of their software vendors and managed service providers? 
No comment yet.
Scooped by JC Gaillard
Scoop.it!

Why open-source software supply chain attacks have tripled in a year

Why open-source software supply chain attacks have tripled in a year | Cybersecurity Leadership | Scoop.it
Uneven maintenance practices and developers' willingness to download risky code have made open-source repositories a favored initial access tactic for attackers.
No comment yet.
Scooped by JC Gaillard
Scoop.it!

A CISO's Guide to Paying Down Software Supply Chain Security Debt

A CISO's Guide to Paying Down Software Supply Chain Security Debt | Cybersecurity Leadership | Scoop.it
When you just keep filing it away to handle "someday," security debt typically rears its head when you are most vulnerable and can least afford to pay it.
No comment yet.
Scooped by JC Gaillard
Scoop.it!

3 Steps to Automate Your Third-Party Risk Management Program

3 Steps to Automate Your Third-Party Risk Management Program | Cybersecurity Leadership | Scoop.it

With more organizations sharing data with more third-party vendors, it shouldn't be surprising that more than 50% of security incidents in the past two years have stemmed from a third-party with access privileges, according to a CyberRisk Alliance report.

No comment yet.
Scooped by JC Gaillard
Scoop.it!

Why Cybersecurity Has Never Been More Important for the Supply Chain Sector

Why Cybersecurity Has Never Been More Important for the Supply Chain Sector | Cybersecurity Leadership | Scoop.it

Employee negligence and error are among the most significant cybersecurity liabilities for companies in the supply chain sector. Here are some pointers on how companies can empower employees to defend supply chains.

No comment yet.
Scooped by JC Gaillard
Scoop.it!

Company executives not sufficiently prioritising cybersecurity threats within digital ecosystems

Company executives not sufficiently prioritising cybersecurity threats within digital ecosystems | Cybersecurity Leadership | Scoop.it

A study from IT major TCS shows only 16% of the CROs and CISOs ranked digital ecosystems as a concern.

No comment yet.
Scooped by JC Gaillard
Scoop.it!

Making sense of conflicting third-party security assessments

Making sense of conflicting third-party security assessments | Cybersecurity Leadership | Scoop.it
Third-party security assessments can be confusing, especially when they produce different conclusions. Find out how to make sense of conflicting results.
No comment yet.
Scooped by JC Gaillard
Scoop.it!

Three Ways To Enhance Supply Chain Cybersecurity

Three Ways To Enhance Supply Chain Cybersecurity | Cybersecurity Leadership | Scoop.it
Between pressure to maintain business continuity and exceed profits amid inflation and global supply chain issues, organizations across industries have a lot to contend with. This focus elsewhere can lead to threat actors slipping under the radar more easily while also making a big splash.
No comment yet.
Scooped by JC Gaillard
Scoop.it!

It's time to give the IT supply chain the security it deserves

It's time to give the IT supply chain the security it deserves | Cybersecurity Leadership | Scoop.it

In the shadow of ransomware, supply chain attacks are currently underrepresented in the national dialogue, but they have quietly become the next big wave of insidious attacks against American businesses.

No comment yet.
Scooped by JC Gaillard
Scoop.it!

5 Cloud Security Trends in 2022

5 Cloud Security Trends in 2022 | Cybersecurity Leadership | Scoop.it
In 2022, supply chain cyberattacks will continue to increase, and Zero Trust will gain adoption, among other security trends.
No comment yet.
Scooped by JC Gaillard
Scoop.it!

3 Ways To Improve Board-Level Focus on Third-Party Risk Management

3 Ways To Improve Board-Level Focus on Third-Party Risk Management | Cybersecurity Leadership | Scoop.it

Corporate boards are increasingly concentrating on cybersecurity issues. Here’s how to ensure they focus on third-party risk, too.

No comment yet.
Scooped by JC Gaillard
Scoop.it!

Supply Chain Cybersecurity – The Importance of Everyone

Supply Chain Cybersecurity – The Importance of Everyone | Cybersecurity Leadership | Scoop.it
Security isn't just for your organisation, you also need to get closer to your suppliers, especially those providing critical services.
No comment yet.
Scooped by JC Gaillard
Scoop.it!

It's Time to Rethink Third-Party Risk Assessment

It's Time to Rethink Third-Party Risk Assessment | Cybersecurity Leadership | Scoop.it
Continuously evaluating and updating your third-party risk assessment can improve your security posture and ensure your company doesn't have the next headline-making incident.
No comment yet.
Scooped by JC Gaillard
Scoop.it!

CISOs vs. developers: A battle over security priorities

CISOs vs. developers: A battle over security priorities | Cybersecurity Leadership | Scoop.it
Frameworks for software supply chain security have matured and given security teams methods for how they approach policies and oversight.
No comment yet.
Scooped by JC Gaillard
Scoop.it!

Revisiting the SolarWinds Incident With the Final SEC Cybersecurity Disclosure Rules

Revisiting the SolarWinds Incident With the Final SEC Cybersecurity Disclosure Rules | Cybersecurity Leadership | Scoop.it

The SEC has been clear that proper risk management and timely cyber incident disclosures protect investors and other stakeholders. The regulators may make an example out of SolarWinds and its leadership at the time of the Orion incident to set the tone for the importance of software supply chain security.

No comment yet.
Scooped by JC Gaillard
Scoop.it!

Looking Back at the Mega Breaches Trends of 2022

Looking Back at the Mega Breaches Trends of 2022 | Cybersecurity Leadership | Scoop.it

Looking back at 2022, it is interesting to reflect on the trends that characterized the threat landscape and think about what we might expect in the coming year and where organizations should focus their protective efforts.

No comment yet.
Scooped by JC Gaillard
Scoop.it!

How Development Teams Can Approach A Security Reset Amid Deglobalization

How Development Teams Can Approach A Security Reset Amid Deglobalization | Cybersecurity Leadership | Scoop.it
Deglobalization warrants a hard look by development organizations, particularly when it comes to questions like insider threats and supply chain risks. 
No comment yet.
Scooped by JC Gaillard
Scoop.it!

Mitigating The Risk Of Supply Chain Attacks In The Age Of Cloud Computing

Mitigating The Risk Of Supply Chain Attacks In The Age Of Cloud Computing | Cybersecurity Leadership | Scoop.it
So, if we’re not able to prevent a breach within cloud providers themselves, what can organizations do to protect themselves?
No comment yet.
Scooped by JC Gaillard
Scoop.it!

When It Comes To Cyber Risk, You're Only As Safe As Your Vendors

When It Comes To Cyber Risk, You're Only As Safe As Your Vendors | Cybersecurity Leadership | Scoop.it

If anyone up or down the supply chain has access to your networks, data or internet connectivity, threat vectors may exist that comingle your vulnerabilities.

No comment yet.
Scooped by JC Gaillard
Scoop.it!

As ecosystems get distributed, cybersecurity leadership will need to transform

As ecosystems get distributed, cybersecurity leadership will need to transform | Cybersecurity Leadership | Scoop.it
Far from only being an IT concern anymore, risk-altering cybersecurity decisions are now being made by people all over a company. Staying safe means security leadership positions need to change. 
Katchakid's comment, March 3, 2022 6:17 AM
good
Scooped by JC Gaillard
Scoop.it!

How To Play The Long Game In Cybersecurity

How To Play The Long Game In Cybersecurity | Cybersecurity Leadership | Scoop.it

Cybersecurity across the globe is in a constant state of conflict — a perpetual battle in which neither side gets the upper hand for long.

No comment yet.
Scooped by JC Gaillard
Scoop.it!

Why the energy sector's latest cyberattack in Europe matters

Why the energy sector's latest cyberattack in Europe matters | Cybersecurity Leadership | Scoop.it
A cyberattack on Amsterdam-Rotterdam-Antwerp (ARA) will have cascading effects across Europe and shows collaboration is needed to challenge future attacks.
No comment yet.
Scooped by JC Gaillard
Scoop.it!

Software Supply Chains Are Under Attack. Here’s What CEOs Need To Do

Software Supply Chains Are Under Attack. Here’s What CEOs Need To Do | Cybersecurity Leadership | Scoop.it

Software supply chain attacks will continue to be successful as long as the chasm between software development teams and info security teams persists.

Jay Holstine's curator insight, January 2, 2022 12:02 PM
Supply chain is a top CEO concern for 2020.