@techspence 11 years here and I see the results. Took a ton of work early on, and not just me, my teams, board, leadership, regulators, 3rd party audit/testers all played their role.
But your point is spot on, it takes time.
@techspence And it’s a team sport! (Generally) You need peers, 3rd party help, executive/board support, ability to communicate, and a lot of humility. But at some point, you go….
Hawt damn. Look at what we’ve done. 💪
@lpha3ch0@techspence I don’t disagree, but the issue in that case are the things getting in the way.
Im CIO for a decent sized bank, I remove the things that get in the way. We are not perfect, but we stay *very* clean.
@techspence Vuln Management is easy. Install the patch if available. Uninstall if not needed. Compensating control if you have to, last resort accept it.