McKinsey predicts identity and access management, messaging security, and network security will be top priorities for #enterprise cybersecurity spending in 2021.
Check out more #cybersecurity predictions for 2021: https://t.co/CYjr38QSXf
@viv_yells I got “the wheels on the bus”, “who let the dogs out” and many other hits my kids tell Alexa to play. My recommendations are absolute trash. I’ll take thunderstorms.
To the person who figured out my honeypot is a honeypot could you please stop putting the picture of Pooh bear with a jar of honey on it?
Its like this person's life mission, I've blocked him on:
- Client
- IPs (now on Tor ffs)
- The image (he just edits 1 pixel every time...)
@sawaba@anton_chuvakin Yeah. There is way more value in building a few high quality alerts than trying to make sense from a firehose. Sure, you’ll still miss stuff but you’ll add that alert and never miss it again. Focus on one new alert a week. Cover all the low hanging fruit. Repeat.
@matthew_d_green It’s just a difficult policy to enforce personal and biz iCloud accounts. Our phones are primarily personal. On termination, no way to revoke access. No way to jump between iCloud accounts.
No org should allow biz info in iCloud. It’s not made for it.
@0x26d@ac1dgoddess Technical program managers. Compliance roles deal with customers. Management. Engineers spend a lot of time mentoring non isec engineers. But, incident response has the most face time with some skill building mixed in.
@sawaba I guess no one can quickly patch a whole org’s entire fleet of OSes and every app. AV let’s you focus on patching AV first to buy time to patch the rest. OK. I’m convinced. AV has a place, and in layered defense, protects us when we put off the OS update.
@sawaba My limited understanding is malware exploits well known software vulnerabilities. I think orgs hope AV can clean / stop the spread of malware. And maybe sometimes the AV can be more quick to update signatures than a vendor can deliver a patch....
@sawaba Agree, not a practitioners best time spent doing that kind of hard work. Would be great if there were data. Maybe from a university, not a vendor.
@Teck923@StephandSec You all don’t like 20-somethings dragging you out to a bar for free booze when you know damn well you are home with family and work the next day? Yeah, they don’t get the market.
@sawaba I am curious if it’s “yes” because nobody gets fired for it or “yes” because data shows it’s necessary.
Secondly, curious if a utility to patch all the local apps is a more important deterrent to malware.