Security trends public sector leaders are watching

Government and industry leaders share their thoughts on AI, supply chain security, open-source technology, and the greatest security risks to look out for.

The post Security trends public sector leaders are watching appeared first on CyberScoop.

Continue reading Security trends public sector leaders are watching

Keeping a competitive edge in the cybersecurity ‘game’

Instead of thinking of cybersecurity as a problem, IT leaders should look at it through the lens of a game — and threat intelligence gives your team the competitive edge.

The post Keeping a competitive edge in the cybersecurity ‘game’ appeared first on CyberScoop.

Continue reading Keeping a competitive edge in the cybersecurity ‘game’

Ensuring compliance without compromising on IT modernization initiatives

Cloud providers can play a key role in modernizing how government agencies ensure compliance across their workloads, says security leader Jeanette Manfra.

The post Ensuring compliance without compromising on IT modernization initiatives appeared first on CyberScoop.

Continue reading Ensuring compliance without compromising on IT modernization initiatives

Navigating the path to passwordless authentication

Not all paths to passwordless authentication are equal, but adopting an integrated approach can better prepare enterprises for a passwordless future.

The post Navigating the path to passwordless authentication appeared first on CyberScoop.

Continue reading Navigating the path to passwordless authentication

White House joins industry leaders to double down on commitment to zero trust

U.S. National Cyber Director and top leaders from Google and Citibank promote public-private partnerships to increase critical cyber defenses at the recent Google Cloud Security Summit.

The post White House joins industry leaders to double down on commitment to zero trust appeared first on CyberScoop.

Continue reading White House joins industry leaders to double down on commitment to zero trust

New research analyzes industrial cybersecurity maturity

As the frequency and severity of cyberattacks on industrial organizations increase, defenders struggle to keep ahead of threats. Security leaders know that a unified IT and operational technology (OT) approach is key to protecting the safety and availability of operations but are faced with cultural and technical differences between IT best practices and OT. A new report, “The 2021 State of Industrial Cybersecurity,” produced by the Ponemon Institute — sponsored by Dragos — reveals key challenges industrial organizations face today and provides actionable solutions on how they can mature their cybersecurity strategies. The report covers: Cybersecurity maturity level for industrial control systems (ICS) and OT How organizations secure their ICS/OT OT cybersecurity investment, priorities and accountability The cause and consequences of an ICS/OT ransomware and cybersecurity incident Learn more on building a unified strategy that secures both IT and OT environments.  This article was produced by CyberScoop for, and sponsored by, […]

The post New research analyzes industrial cybersecurity maturity appeared first on CyberScoop.

Continue reading New research analyzes industrial cybersecurity maturity

Why combining FIDO2 and PKI provides broader enterprise-wide security

This past year’s seismic shift in how and where people access corporate resources has heightened the urgent need for organizations to upgrade the identity and authentication systems they rely on. That urgency isn’t likely to diminish anytime soon, according to a 2021 Gartner CIO survey. The survey found that 64% of employees at CIOs’ organizations are now able to work from home, and two-fifths are actually doing so, suggesting the landscape for authenticating users has clearly taken on new and more dynamic contours. But it’s not just people accessing enterprise resources. The transition to cloud-based services and the underlying automation supporting digital workloads have led to dramatic increases in the volume of non-human entities — virtual machines, mobile devices, applications, containers, and IoT/OT devices — all seeking their own access to enterprise resources independent of the end user’s identity. As a result, managing machine identities has also become part of […]

The post Why combining FIDO2 and PKI provides broader enterprise-wide security appeared first on CyberScoop.

Continue reading Why combining FIDO2 and PKI provides broader enterprise-wide security

Aiming for the right defense strategy against ransomware threats

Steve Caimi is a security specialist Cisco with nearly 25 years’ experience in cybersecurity.  Ransomware had a banner year in 2020, taking advantage of pandemic-related shifts in network access for remote work, distance learning and telehealth. For critical infrastructure sectors, the threat of seeing data locked up or having systems knocked offline is a risk that these organizations simply can’t afford. While cyber defenders are improving their cyber defenses, hackers are upping their game too. They’re getting better at getting inside, they’re affecting more systems and they’re doing more with the data they steal. That is why organizations need a security strategy that can adapt to the changing threat environment. For ransomware, financial gain is the endgame. We are seeing a growing trend in “big game hunting” — or targeting big-revenue organizations — because attackers know these organizations can, and will, pay up. Two of the top attack vectors should […]

The post Aiming for the right defense strategy against ransomware threats appeared first on CyberScoop.

Continue reading Aiming for the right defense strategy against ransomware threats

Symantec shakeup creates fresh opening to shift security strategies

Steve McNamara is Regional Vice President Sales for VMware Carbon Black and a former vice president at Symantec. Information technology is always changing and so is the industry behind it. But recent developments surrounding the fate of one of the world’s most widely relied-upon suppliers of enterprise security products have created a significant “disturbance in the force.” In an odd twist on the perils of vendor lock-in, enterprise CIOs who rely on Symantec enterprise security products have found themselves in lock-out, following the decision late last year by Symantec’s new owner, Broadcom, to abandon support for all but 2,000 of Symantec’s most profitable enterprise security customers. Some reports since then suggest that number is closer to 700 accounts. When Broadcom completed its $10.7 billion acquisition of Symantec Enterprise Security in November of last year, it came with all the fanfare of one tech giant acquiring another in the name of […]

The post Symantec shakeup creates fresh opening to shift security strategies appeared first on CyberScoop.

Continue reading Symantec shakeup creates fresh opening to shift security strategies