From my Gartner Blog – Developing and Maintaining Security Monitoring Use Cases

My favorite Gartner paper has just been updated to its 3rd version! “How to Develop and Maintain Security Monitoring Use Cases” was originally published in 2016 as a guidance framework for organizations trying to identify what their securit… Continue reading From my Gartner Blog – Developing and Maintaining Security Monitoring Use Cases

From my Gartner Blog – New Research on Threat Intelligence and SOAR

Since my blogging whip was gone I haven’t been posting as frequently as I’d like, but I realized we had recently published new versions of some of our coolest research and I completely missed announcing them here! So let me talk a bit about… Continue reading From my Gartner Blog – New Research on Threat Intelligence and SOAR

From my Gartner Blog – Updated Paper on Penetration Testing and Red Teams

I finally managed to publish the update to my paper on pentesting, “Using Penetration Testing and Red Teams to Assess and Improve Security”. It has some small tweaks from the previous version, including some additional guidance around Breac… Continue reading From my Gartner Blog – Updated Paper on Penetration Testing and Red Teams

From my Gartner Blog – The New Vulnerability Management Guidance Framework

After a huge delay I can finally announce that the new version of our Vulnerability Management Guidance Framework is out! Although it is a refresh of a document that has gone through many updates (even before my Gartner time), this one has some very ni… Continue reading From my Gartner Blog – The New Vulnerability Management Guidance Framework

From my Gartner Blog – Presenting at the Gartner Security and Risk Management Summit DC 2019

This is literally a last minute blog post about my sessions at this year’s Gartner Security and Risk Management Summit. This time I have three sessions:
Tuesday 18, 2:30PM – Debate: Changing Societal Perception of Cybersecurity: This i… Continue reading From my Gartner Blog – Presenting at the Gartner Security and Risk Management Summit DC 2019

From my Gartner Blog – Considering Remediation Approaches For Vulnerability Prioritization

As Anton said, we are starting our work on vulnerability management this year. One of the points I’ve started to look at more carefully is how much the different patching approaches can affect how we prioritize vulnerabilities for remediation.
Ex… Continue reading From my Gartner Blog – Considering Remediation Approaches For Vulnerability Prioritization

From my Gartner Blog – More on “AI for cybersecurity”

There is a very important point to understand about the vendors using ML for threat detection.
Usually ML is used to identify known behavior, but with variable parameters. What does that mean? It means that many times we know what bad looks like, but n… Continue reading From my Gartner Blog – More on “AI for cybersecurity”