InfoSec, programs, cyber agile, risk management, third-party

Assessing Third-Party InfoSec Risk Management

Companies across multiple industries are outsourcing many of their operations to reduce costs, increase scalability and streamline operations. Information security (InfoSec) risk management with third parties, including outsourcing, requires persistence and consistency ...
Security Boulevard
Patreon Fires its Security Team — and the Internet Freaks Out

Patreon Fires its Security Team — and the Internet Freaks Out

Patreon, the notorious membership monetization platform, laid off its entire security team yesterday. Just like that ...
Security Boulevard
3 Pillars of a Successful Managed Security Services Deployment

3 Pillars of a Successful Managed Security Services Deployment

As much as they’d like to be able to, not many enterprises can afford a dedicated, in-house SWAT team of security experts, ready to pounce on and deflect the latest threats to ...
Security Boulevard
Sudo User

Don’t be an over-sharer: safety precautions to take when outsourcing to a developer

The post Don’t be an over-sharer: safety precautions to take when outsourcing to a developer appeared first on CCSI ...

Outsourcing, Supply Chains and (National) Security

For all intents and purposes, the terms “outsourcing” and “supply chain” are used interchangeably and refer to when you are dependent on a third party for providing products and services. However, there ...
customer, experience, security

Keeping Systems Safe From Third Parties

Vendors. Supply chain partners. Third parties. Contractors. All are different names for entities that might need access to your corporate networks and systems. But they have one important thing in common: They ...
Security Boulevard
OWASP cybersecurity Vendor Risk Management: The Secret Ingredient

Vendor Risk Management: The Secret Ingredient

A people-centric approach to vendor risk management can remove some of the headaches in assessing third-party risk Just a few years ago, companies ran their own payroll, benefits, recruiting, marketing and mainframe ...
Security Boulevard
Outsourcing Cybersecurity to Foreign-Based Firms

The Danger in Outsourcing Cybersecurity to Foreign-Based Firms

Sending cybersecurity work offshore isn’t just a bad idea for individual organizations; it can be a security issue. Facing a severe shortage of qualified cybersecurity workers—the InfoSec unemployment rate is expected to ...
Security Boulevard
Mind the (Cybersecurity Skills) Gap

Mind the (Cybersecurity Skills) Gap

There’s been talk for years of a skills gap in cybersecurity—the idea that there are plenty of jobs available, but the available pool of candidates simply lack the knowledge and experience to ...

Offshoring and education gap

I missed the RSA Conference this week for various reasons but I did get to spend the better part of two days out of the office hanging with a group of CTO’s.  ...