Open in app

Sign in

Write

Sign in

freshman
freshman

263 followers

Home

About

Government Shutdowns Create Insider Threats

We are on the precipice of another government shutdown if the United States Congress fails to act by September 30. This would be the 22nd…

Sep 23, 2023
Government Shutdowns Create Insider Threats
Government Shutdowns Create Insider Threats
Sep 23, 2023

Reflections on Digital Security Awareness: Why Availability is Not the Same Thing as Accessibility

For me, October was the acknowledgment of digital security and awareness, but honestly, it was more than that.

Nov 15, 2022
Nov 15, 2022

Stop the Insan-IT

Shadow-IT — Deployed information technology systems or services by employees or non-IT departments, to work around the shortcomings of the…

Feb 10, 2022
Stop the Insan-IT
Stop the Insan-IT
Feb 10, 2022

National Cyber Security Month is a Shared Responsibility

Looking back 5 years, the FDA marked National Cyber Security Awareness Month with a statement [1] (available on third party site) I feel is…

Oct 4, 2021
National Cyber Security Month is a Shared Responsibility
National Cyber Security Month is a Shared Responsibility
Oct 4, 2021

Triple-A Security Ratings — Another Crisis Report in the Making

There was much fanfare that Moody’s put another “triple-A stamp of approval” on Security Ratings firm BitSight to the tune of $250 million…

Sep 17, 2021
Triple-A Security Ratings — Another Crisis Report in the Making
Triple-A Security Ratings — Another Crisis Report in the Making
Sep 17, 2021

The Target: Healthcare, The Tool: Ransomware, The Impact: Your Lives. The Unsecured Truth

“Dozens of hospitals and clinics in West Virginia and Ohio are canceling surgeries and diverting ambulances following a ransomware attack…

Aug 24, 2021
1
The Target: Healthcare, The Tool: Ransomware, The Impact: Your Lives. The Unsecured Truth
The Target: Healthcare, The Tool: Ransomware, The Impact: Your Lives. The Unsecured Truth
Aug 24, 2021
1

Response — Security Ratings: Love, Loathe or Live With Them

Prologue

Jan 27, 2021
1
Response — Security Ratings: Love, Loathe or Live With Them
Response — Security Ratings: Love, Loathe or Live With Them
Jan 27, 2021
1

The [Lacking] Contextual Evidence in Security Ratings Reporting

Let’s talk about contextual evidence, or rather the lack thereof, in the Security Ratings industry:

Jul 10, 2019
The [Lacking] Contextual Evidence in Security Ratings Reporting
The [Lacking] Contextual Evidence in Security Ratings Reporting
Jul 10, 2019

Reading is Fundamental [for Security Ratings]

Dear RiskRecon (++ other Security Ratings vendors passively assessing organization’s patching posture),

May 15, 2019
Reading is Fundamental [for Security Ratings]
Reading is Fundamental [for Security Ratings]
May 15, 2019

Fair and Accurate Security Ratings: The Peculiar Case of Passive Patch Pronouncements

In a previous article, I spoke about receiving Security Rating reports with hundreds of pages findings. Many, if not all, Security Ratings…

Apr 23, 2019
Fair and Accurate Security Ratings: The Peculiar Case of Passive Patch Pronouncements
Fair and Accurate Security Ratings: The Peculiar Case of Passive Patch Pronouncements
Apr 23, 2019
freshman

freshman

263 followers
Following
  • The Medium Blog

    The Medium Blog

  • Ryan McGeehan

    Ryan McGeehan

  • Anton Chuvakin

    Anton Chuvakin

  • The Aerospace Corporation

    The Aerospace Corporation

  • Tom Jarvis

    Tom Jarvis

See all (39)

Help

Status

About

Careers

Press

Blog

Privacy

Rules

Terms

Text to speech