Five Accelerating Digital Trends That Will Impact Risk Management in 2021

Digital risks escalated in 2020 under the onset of the novel coronavirus and shaped the cybersecurity policy landscape. Over the coming year, we can surmise five accelerating digital trends that will continue to exert their impact on security and human behavior. The post Five Accelerating Digital Trends That Will Impact ... Read More

Time to prepare for increased U.S.-China tensions in cyberspace 

| | Blog
Last week, the U.S. government’s Cybersecurity and Infrastructure Security Agency (CISA) issued an alert to critical infrastructure owners and operators across the United States to be vigilant for potential Chinese cyberspace operations given heightened tensions between the two countries. What does the CISA alert recommend, and why is it important ... Read More

This election year, the health of the Union depends on how we safeguard our information 

Cybersecurity does not exist in a vacuum and current socio-economic pressures make the United States more vulnerable to cyberattacks of all kinds. With the U.S. presidential election underway, Americans need to take practical steps to defend our democratic processes, online and off. This essay outlines some of the issues facing ... Read More
Best Practices in Threat Informed Defense: Lessons from the Defense Department

“Think Bad. Do Good” Podcast Episode 3: Best Practices in Threat-Informed Defense

| | Blog
AttackIQ’s Ben Opel and Jonathan Reiber discuss threat-informed defense lessons-learned from their time serving in the U.S. Department of Defense in the U.S. Marine Corps and the Office of the U.S. Secretary of Defense. In this podcast, listeners will learn about how to implement a threat-informed defense strategy in the public and private sectors, ... Read More
AttackIQ Includes MITRE ATT&CK’s New Sub-Techniques for Customers

AttackIQ Includes MITRE ATT&CK’s New Sub-Techniques for Customers

| | Blog
By Jonathan Reiber, Senior Director for Cybersecurity Strategy and Policy; Chris Kennedy, CISO and VP for Customer Success; and Vinod Peris, VP of Engineering. Over the past year, the MITRE ATT&CK team has been beta testing ATT&CK sub-techniques, a major restructuring of the ATT&CK framework that provides a more granular organization ... Read More
How to achieve cybersecurity effectiveness

“Think Bad, Do Good” Ep 2: How to Achieve Cybersecurity Effectiveness

| | Blog
“How to Achieve Cybersecurity Effectiveness,” a conversation with the Chertoff Group’s Adam Isles and Kurt Alaybeyoglu, hosted by Jonathan Reiber, Senior Director for Cybersecurity Strategy and Policy at AttackIQ. Cybersecurity spending has increased dramatically over the last decade, yet Chief Information Security Officers struggle to prove to senior management and the board of directors ... Read More
How to achieve cybersecurity effectiveness

COVID-19 Is Forcing Hard Cybersecurity Choices

| | Blog
By the time the U.S. Cybersecurity Solarium Commission released its long-awaited report this past March, the times were already changing, and quickly. The Commission has since released an addendum (“Cybersecurity Lessons from the Pandemic”) but it is clear that in these financially constrained times the country needs to ruthlessly prioritize the original report’s 84 recommendations ... Read More

Before the Election, States Need to Test their Cybersecurity Continuously

| | Blog
We are now just a few short months away from the 2020 U.S. presidential election, and we know that the Russian government will try again to interfere in the election through disinformation campaigns and by manipulating electoral outcomes through cyberspace. Election systems in all 50 states were likely targeted in the 2016 election ... Read More