Outsourcing
Assessing Third-Party InfoSec Risk Management
Companies across multiple industries are outsourcing many of their operations to reduce costs, increase scalability and streamline operations. Information security (InfoSec) risk management with third parties, including outsourcing, requires persistence and consistency ...
Patreon Fires its Security Team — and the Internet Freaks Out
Patreon, the notorious membership monetization platform, laid off its entire security team yesterday. Just like that ...
3 Pillars of a Successful Managed Security Services Deployment
As much as they’d like to be able to, not many enterprises can afford a dedicated, in-house SWAT team of security experts, ready to pounce on and deflect the latest threats to ...
Don’t be an over-sharer: safety precautions to take when outsourcing to a developer
The post Don’t be an over-sharer: safety precautions to take when outsourcing to a developer appeared first on CCSI ...
Outsourcing, Supply Chains and (National) Security
For all intents and purposes, the terms “outsourcing” and “supply chain” are used interchangeably and refer to when you are dependent on a third party for providing products and services. However, there ...
Keeping Systems Safe From Third Parties
Vendors. Supply chain partners. Third parties. Contractors. All are different names for entities that might need access to your corporate networks and systems. But they have one important thing in common: They ...
Vendor Risk Management: The Secret Ingredient
A people-centric approach to vendor risk management can remove some of the headaches in assessing third-party risk Just a few years ago, companies ran their own payroll, benefits, recruiting, marketing and mainframe ...
The Danger in Outsourcing Cybersecurity to Foreign-Based Firms
Sending cybersecurity work offshore isn’t just a bad idea for individual organizations; it can be a security issue. Facing a severe shortage of qualified cybersecurity workers—the InfoSec unemployment rate is expected to ...
Mind the (Cybersecurity Skills) Gap
There’s been talk for years of a skills gap in cybersecurity—the idea that there are plenty of jobs available, but the available pool of candidates simply lack the knowledge and experience to ...
Offshoring and education gap
I missed the RSA Conference this week for various reasons but I did get to spend the better part of two days out of the office hanging with a group of CTO’s. ...

