Incident Response

Protected: Cybersecurity Basics

Indiana Bankers Association Workshop Upon completion of the Cybersecurity Basics for Nontechnical Managers Workshop, infotex grants attendees permission to use these boilerplates and will turn over copyright of the resulting documents to your financial institution. By using ...

Protected: NSSB Incident Response Training Webinar

http://my.infotex.com/wp-content/uploads/2016/09/2016-08-25-10.02-NSSB-Incident-Response-Planning-Webinar.mp4  

Cyberslow, Cyberdown

Let’s think this through . . . .  Another one of those Dan’s New Leaf Posts, meant to inspire thought about IT Governance . . . . and this is one of those posts Dan sat on for a few weeks before he finally convinced the team . . . . yes, we can release this! At...

Getting Started on Cybersecurity

Process Flow for Institutions . . . and why Dan loves the Cybersecurity Assessment Tool! Another one of those Dan’s New Leaf Posts, meant to inspire thought about IT Governance . . . . Real quick:  What should you do to get started on understanding the new Cybersec...

Wisdom and Advice for Incident Response Testing

Testing Reduced to Two Bullet Lists! How to make sure your Incident Response Tests are “amenable” to your auditors! Another one of those Dan’s New Leaf Posts, meant to inspire thought about IT Governance . . . .   One of my favorite Clients is prep...

Tactics Behind CareFirst Hack

An article review. Taking a turn at the breach steering wheel In May 2014, CareFirst BlueCross BlueShield learned that one of their information systems had been infected with malware, so they got rid of it. Or so they thought. The malware was never fully eradicated, leadi...

Consumer Breach Resources

As of April 2015 Websites to visit if you fear you’ve been breached! Federal Trade Commission From there are links to credit bureaus, reporting sites, and fraud alert sites. Internet Crime Compliant Center (IC3) Starting point for investigating scams, frauds, a...

Survey Finds Most Firms Would Take Hours to Detect Breach

An article review. You have to detect the breach first Many companies have plans for when a breach occurs. After all, there is no such thing as 100% security. As Dan Hadaway will highlight in his upcoming “Turning Lemons into Lemonade with Incident Response” w...

Two New Statements, One Read!

Are they worth the read? Yes, but you only have to read the first one! Another one of those Dan’s New Leaf Posts, meant to inspire thought about IT Governance . . . . Note:  If you haven’t figured it out, on 03/30/15 the FFIEC posted two new “statements....

Turning Lemons into Lemonade with Incident Response

FREE Webinar with Incident Response Policy Template Combining technical and non-technical approaches to Incident Response! The new NIST CyberSecurity Framework is very big on incident response.  Why?  Because the experts have been saying for decades that there is no such ...