CISO Liability

Who is at risk? Are you covered? Another one of those Dan’s New Leaf Posts, meant to inspire thought about IT Governance . . . . Assuming we can believe SolarWinds now, in June of 2020 they suffered a breach that we didn’t learn about until December, thanks to FireEye.  Their CISO finally filed a […]

A Tale of Concentration Risk (part 2)

Part Two Banana Splits Another one of those Dan’s New Leaf Posts, meant to inspire thought about IT Governance . . . . This is part two of “A Tale of Concentration Risk”, which started with Dan‘s phone not working the way he wanted it to.  Part Two is not a rant. It is a […]

A Tale of Concentration Risk

Part One The Banana Ecosystem Another one of those Dan’s New Leaf Posts, meant to inspire thought about IT Governance . . . . It took me three times to voice-type the title of this blog post.  I suffer from what they call Concentration Risk, in vendor management systems. Love at First Bite I’ve been […]

The Dawn of Threat Intelligence

Bleeding Snort Another History Lesson Another one of those Dan’s New Leaf Posts, meant to inspire thought about IT Governance . . . . Threat intelligence is a huge industry in 2024, but it wasn’t always like that.  Given that I’m nearing the end of my one-year blitz of weekly Dan’s New Leafs, and I’m […]

Mutiny in KC

The dawn of the Basic SIEM An early SIEM value delivery Another one of those Dan’s New Leaf Posts, meant to inspire thought about IT Governance . . . . Recently, a friend of mine marveled at how the SIEM, even a basic SIEM, can deliver surprising value outside the realm of cybersecurity.   Because we […]

Easy As DMZ

The speed bumps of Network Segmentation Another one of those Dan’s New Leaf Posts, meant to inspire thought about IT Governance . . . . This post is just a quick “holy cow” on the lack of network segmentation we are discovering as a result of a recent incident. Fortunately, not our Clients, but as […]

The Voice Clone Debate

voice wave with two speech bubbles, one is blue and shows a picture of a high ranking executive, the other identically sized but is red and has a hacker on it

Likelihood of AI in pretexting? The critical impact of artificial intelligence. Another one of those Dan’s New Leaf Posts, meant to inspire thought about IT Governance . . . . Our social engineering team just concluded a healthy debate. As we enjoy the benefits of artificial intelligence that can be found in our endpoint detection […]

Year Gone By

Three New Stars Upon the Path Another one of those Dan’s New Leaf Posts, meant to inspire thought about IT Governance . . . . Anybody who’s interviewed for infotex since before the pandemic knows that we talk a lot about the “compliance path” before you even get through the first 30 minutes of meeting […]

CybGPT

As an example Will help, not replace. . . Another one of those Dan’s New Leaf Posts, meant to inspire thought about IT Governance . . . . Well, as if the coders read my post last week and update to the GPT store has just fully challenged the notion of whether AI will replace […]