Warning signs of infosec disaster.
"8 characters is fine."
"No one wants to hack us."
"We are compliant."
"No one will find that API."
"Insurance will cover us."
"If it ain't broke, don't fix it."
Yours?
Join me next week for a condensed preview of the CSA CGC training in the workshop "Cloud Risk and Governance: Hands-on" cdmcd.co/8p66Z#ISC2Congress#cloudsa
Thanks for the 50 attendees... The line was out the door! I hope you found it informative. The slide deck may be found on the GH site: ghllc.co/isc2-congress/#cloudsa
Wild @knash99@wsj story: Fraudsters used #AI to mimic a CEO’s voice. The CEO of a UK firm thought he was speaking w/ his boss, at firm’s German parent company. Made urgent requests to send funds to a Hungarian supplier. Lost nearly $250k in this scam.
wsj.com/articles/fraudsters-…
Need a GRC tool that’s cloud specific? The Cloud Controls Matrix has got you covered. Get trained in how to use this tool at SecTor 2018 ow.ly/qcvW50igpWQ#CCM#cloud
Thanks for allowing me to keynote the GRCIT Conference last Friday @isacasfl. The space was great - lots of innovation @fautechrunway. I hope I communicated the importance of process to effective cloud utilization. isacasfl.org/events/
"In no area [other than cybersecurity] are private organizations expected to do battle with the likes of ... Global Nation States." - Mark Weatherford #CERIAS20