How to Perform a Cloud Risk Assessment

How to Perform a Cloud Risk Assessment

Reading Time: 6 minutes A cloud security risk assessment is an analysis of an organization’s cloud infrastructure to determine its security posture. This is a critical process for any organization operating out ...
Financial Services Compliance: How To Meet Data Regulations

Financial Services Compliance: How To Meet Data Regulations

| | audit compliance
Reading Time: 9 minutes Financial Services Compliance Any business in the financial services industry faces stringent compliance standards and regulations. Financial services includes investment banks, insurance companies, brokerage firms, CPA firms, wealth ...
compliance

Mastering Cloud Security Audits: Checklist & Steps

| | audit compliance
Reading Time: 7 minutes Mastering Cloud Security Audits: Your Ultimate Checklist & Steps A cloud security audit is an assessment of whether a cloud environment’s security is sufficient. It is conducted typically ...
cloud compliance

Sonrai’s Cloud Access Intelligence Helps You Pass an Audit

Reading Time: 7 minutes Cloud Compliance & Passing Audits Knowing (1) what and who’s in your cloud, (2) what they can access and (3) what they can do, is the underpinnings of ...
NYDFS cybersecurity

ICYMI: Significant Changes to NYDFS Cybersecurity Regulations

Reading Time: 7 minutes In March 2017, the first iteration of The New York Department of Financial Services (NYDFS) Cybersecurity Requirements for Financial Services Companies (23 NYCRR 500) came into effect.These requirements ...
data sprawl

Tackling Data Sprawl in the Cloud

Reading Time: 6 minutes The unstoppable forces of cloud and agile development are driving momentous changes in how enterprises build, deploy, and run applications. All in all, the cloud has led to ...
Capital One Data Breach Update: Former Amazon Engineer Convicted

Capital One Data Breach Update: Former Amazon Engineer Convicted

Reading Time: 4 minutes The Office of the Comptroller of the Currency (OCC) issued a Consent Order against Capital One Bank including a civil money penalty for $80,000,000 from a data breach ...
supply chain software

Simplifying Compliance for Cloud-Native Organizations

Chris Ford, Threat Stack‘s VP of product, talks with Alan Shimel about how to simplify compliance framework requirements and accelerate audits for cloud-native organizations. The video is below followed by a transcript ...
Security Boulevard
Managing Log4j 2 Risk: Continuous Monitoring is the First Step

Managing Log4j 2 Risk: Continuous Monitoring is the First Step

Over a week ago servers from around the world were suddenly exposed due to a simple vulnerability on a popular […] The post Managing Log4j 2 Risk: Continuous Monitoring is the First ...
Key differences between manual, periodic audits and continuous audit and why Sonrai Dig enables organizations to achieve continuous monitoring for audit. azure cloud security monitoring

Microsoft Azure Cloud Security Monitoring: Manual vs. Continuous Audits

To meet multi-cloud security challenges, continuous audit is becoming the best process over manual security audit. The post Microsoft Azure Cloud Security Monitoring: Manual vs. Continuous Audits appeared first on Sonrai Security ...