Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

Buying an AI SOC Isn't Like Anything You've Bought Before

John White is the Field CISO for EMEA at Torq. A respected security executive with more than 20 years of leadership experience, John previously served as CISO at Virgin Atlantic, where he led a multi-year transformation deploying the Torq AI SOC Platform to modernize cyber operations. Prior to Virgin Atlantic, he built and transformed security functions for global organizations, including ASOS, Liberty Global, AEG Europe, and KPMG.

Security Posture Monitoring and Board Reporting Tools

Every quarter, your board asks the same question, just phrased differently: Are we more secure than we were last time? A point-in-time assessment can't answer it, because it shows where you stood on the day someone ran it, not which way things are moving. Security posture monitoring is the correct response to give to the board. This guide answers the three questions behind every board pack: what goes in front of the board, where the number comes from, and how you show it moved.
Featured Post

What happens when a patch can't wait until next Tuesday?

Most organisations patch on a schedule. For the majority of vulnerabilities, that makes sense. Updates need testing, maintenance windows need planning and nobody wants to cause an outage while trying to fix a security problem. But what happens when something can't wait? That's the bit I think organisations need to be looking at more closely, particularly as AI starts to change how quickly vulnerabilities can be found and analysed.

Managing Third-Party Cyber Risks in Complex Supply Chains

Big breaches often start somewhere boring. A refrigeration contractor with remote access to the network (Target, 2013). A file-transfer tool nobody on the security team had thought about in years (MOVEit, 2023). A compression library buried four layers deep in a Linux distro. Meanwhile most vendor reviews still run on an Excel questionnaire that gets filled in once, filed and forgotten, and attackers know that perfectly well.

Key Security Considerations When Choosing a Learning Experience Platform

Most learning platform purchases run on the same timeline. Somebody in L&D builds a shortlist, the demos go well, a budget gets signed off, and then four days before contract somebody from security asks who exactly can see the course completion data. That question should have been asked in week one, because the answer sometimes changes the shortlist.

7 Tools to Download Instagram Videos: Privacy and Security Features Compared

Downloading an Instagram video does not always require installing an app or signing into another service. For public content, you can also use an online Instagram downloader that is completely free and does not require a software install by copying and processing the Instagram link.

Falcon Data Security for SaaS - Secure Sensitive Data in Microsoft 365

See CrowdStrike Falcon Data Security for SaaS in action and learn how to discover, classify, and protect sensitive data across Microsoft 365. See how security teams can identify sensitive data in SharePoint and OneDrive, prioritize exposure, automatically apply Microsoft Sensitivity Labels, reduce unintended Microsoft Copilot exposure, and extend protection with just-in-time access.

Calibrating a Cyber Loss Model to One Environment

A model built on industry data produces an industry answer. The obvious next step is to calibrate it to the specific environment, and the obvious place to start is the threat picture, because every organization believes its own is distinctive. ‍ It is the wrong parameter to start with. Some inputs should stay general, some must be local, and the ones that must be local are the harder ones to observe, which is why they get left at a default. ‍