Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

%term

Weekly Cyber Security News 24/05/2019

A selection of this week’s more interesting vulnerability disclosures and cyber security news. An article that prompts many questions regarding use of PII in a passive way, misses one obvious question: Why was Wi-Fi enabled on 5.9 million devices while in transit? When you next get a moment, just check what, and why you need Wi-Fi and other communications features enabled all the time.

Developing an Effective Change Management Program

Detection of change is easy… There, I said it. Anyone can do it. One thousand monkeys with keyboards can pound out scripts to detect change. What is not so easy, what the monkeys can’t do, is reconcile change. Even worse, it’s usually the monkeys who make the changes that bring everything crashing down around your knees. It’s the reconciliation of change that most organizations have the most trouble with. What was the change? When was it made? Who made it? Was it authorized?

5 Advantages of Deploying a Data Governance Solution

The explosion of unstructured content is undeniable, and this growth is being fueled by businesses. The files that keep the wheels of business turning — documents, spreadsheets, images, PDFs — double in volume every 1-2 years. As unstructured content becomes more integral to business gets done, its value grows too. As it goes with anything of value, it becomes highly coveted, even to the point that others try to steal it. So what is a business to do?

How Emotional Intelligence Boosts Leadership Effectiveness

The concept of emotional intelligence was first introduced by psychologist Dr. Daniel Goleman in 1995. Dr. Goleman found that while intelligence (IQ) is an important factor in leadership, a high level of emotional intelligence (EI) marks those who emerge as highly effective leaders. Emotional intelligence involves soft skills such as discipline, motivation and empathy.

If you confuse them, you lose them.

I was watching a wonderful webcast by Marie Forleo. It was part of her “Copy Cure” course, and if you are unfamiliar with Marie and her work, take the time to explore some of her wisdom. Her webcasts are gems, particularly if you work in the consulting space. During the webcast she mentioned a phrase that should be at the top of mind for every InfoSec professional: If you confuse them, you lose them.

Logsentinel PAM Demo: Privileged Access Management and Event Logging

LogSentinel #PAM Protects From Log Tampering There's a significant risk for a privileged Linux user to tamper with company data and try to avoid being detected by clearing logs. Such log tampering may potentially threaten one’s business continuity. That’s why we developed LogSentinel PAM, which can be implemented in just a few steps.

Forseti intelligent agents: an open-source anomaly detection module

Among security professionals, one way to identify a breach or spurious entity is to detect anomalies and abnormalities in customer’ usage trend. At Google, we use Forseti, a community-driven collection of open-source tools to improve the security of Google Cloud Platform (GCP) environments. Recently, we launched the “Forseti Intelligent Agents” initiative to identify anomalies, enable systems to take advantage of common user usage patterns, and identify other outlier data points.