Security News

The four types of remote workers your security awareness program must address
2022-02-07 07:00

It's important that your current security awareness efforts are appropriate for how your employees work today, not how they worked two years ago. The strongest security cultures are those where each employee fully understands that they are on the front lines.

The current state of zero trust: Awareness is high, adoption is lagging
2021-12-08 04:30

One Identity released global survey findings that unpack the current state of zero trust awareness and adoption across the enterprise. As zero trust awareness continues to rise on the heels of the U.S. White House's Executive Order that was released in May, and a year plagued by one disastrous cybersecurity incident after another, new findings reveal that only 1 in 5 security stakeholders are confident in their organizations' understanding of zero trust.

Railway cyber risk management: Raising awareness on relevant threats
2021-12-02 04:30

ENISA has announced the release of its report - Railway Cybersecurity - Good Practices in Cyber Risk Management for railway organizations. European railway undertakings and infrastructure managers need to address cyber risks in a systematic way as part of their risk management processes.

API security awareness: The first step to better assessing the risk
2021-12-01 05:30

In this Help Net Security interview, Tal Steinherz, CTO at Wib, talks about the importance of API security awareness and how to tackle numerous thretas that are plaguing it. API security is widely being considered, yet breaches continue to plague many organizations.

How to Build a Security Awareness Training Program that Yields Measurable Results
2021-11-18 04:43

Cyber security professionals are continuously thinking about how to prevent cyber security breaches from happening, with employees and contractors often proving to be the most significant risk factor for causing cyber security incidents. Proactive cyber security professionals will find that an effective security awareness training program can significantly reduce their risk of getting exposed to a cyber incident.

We need a Cyber Awareness Century
2021-11-16 06:30

Cyber risk management requires employees and enterprises to meet halfway. Once all the signals are combined, enterprises can view them as an easy-to-understand breach-likelihood score per employee, representing their individual financial impact to the organization in case there is a data breach.

The antidote to brand impersonation attacks is awareness
2021-11-01 06:00

Brand impersonation attacks have seen a rise in frequency lately, perhaps because of their high success rate. From a malicious point of view, this is what makes attacks with a brand impersonation component more attractive, especially for brands with a strong reputation.

AWS makes free cybersecurity awareness training available online
2021-10-27 20:03

As you may or may not know given the frequency of data breaches during the pandemic era, but October is cybersecurity awareness month.While many organisations have advocated for smarter cybersecurity practices to be observed in our personal and professional lives, Amazon Web Services (AWS) is offering something on top of this – freely accessible cybersecurity awareness training.

Cybersecurity Awareness Month: Listen up – CYBER­SECURITY FIRST!
2021-10-25 18:39

First one, just before Christmas, was the SolarWinds attack, where criminals who had managed to compromise that software chain were able to subsequently hit people that were already using the software. In the case of the Kaseya attack, this Kaseya agent was already running on lots of these endpoints, and by compromising higher up the chain, the bad guys are able to issue their malicious commands across all of the machines that were running that particular software.

Cybersecurity Awareness Month: Building your career
2021-10-18 18:23

Not quite as catchy as "Stop. Think. Connect," we must admit, but the idea is straightforward: to show you how to find out more about cybersecurity as a career, to encourage you to dip your toes in the water, and to make sure that existing cybersecurity researchers help newcomers to learn more. A day in the life of a Managed Threat Response Sales Engineer On the side of the good guys: a day in the life of a Senior Development Manager How curiosity builds better products: a day in the life of a Senior Hardware Engineer Small details make a big impact: a day in the life of a Distinguished Engineer The project of my life: a day in the life of a Principal Hardware Engineer The importance of adaptability: a day in the life of a Distinguished Engineer.