June 9

Webinar takeaway: New Wave of Ransomware Attacks: How did this happen?

0  comments

My key takeaways

  • compliance documents are not written by technical people
  • compliance is not about security
  • people tend to meet the minimum, not more
  • GDPR is an accountability framework not a compliance framework
  • "Security is a cost center" a management statement calling for trouble
  • the goal of a VC backed vendor is the best possible IPO, not to build the best product possible
  • examples of greed won over security at first
    • kids in coalmines
    • airbags
    • seat belts
  • what to make yourself more approachable as a security person
    • brown bags
    • newsletters
    • get out and be the touchstone
  • the universal answer is education
    • user awareness training is a must
  • don’t blame the victims, stand by the security people in these companies
  • the best pentesters in the world are auditors tired of repeating themself

Env

additional links


Tags

ransomware


You may also like

Webinar takeaway – Nuclear Ransomware 3.0: We Thought It Was Bad and Then It Got Even Worse

Webinar takeaway – Nuclear Ransomware 3.0: We Thought It Was Bad and Then It Got Even Worse

Event takeaway: Deutscher IT-Security Kongress

Event takeaway: Deutscher IT-Security Kongress
Leave a Reply

Deine E-Mail-Adresse wird nicht veröffentlicht. Erforderliche Felder sind mit markiert.

{"email":"Email address invalid","url":"Website address invalid","required":"Required field missing"}