Strategy: Page 24
-
Cyber insurance premiums soar for energy companies
Global politics and ransomware are driving insurance cost increases, more than doubling rates for some independent power producers.
By Robert Walton • Feb. 18, 2022 -
Cybersecurity outlook for 2022
Nation-state cyberthreats and Log4j have the security community on high alert; organizations need to master response and remediation.
By Naomi Eide • Feb. 14, 2022 -
Trendline
Risk Management
Now, public companies have to detail their cybersecurity risk management in annual filings, raising awareness on what many cyber experts already knew — security issues are business issues.
By Cybersecurity Dive staff -
Mandiant stock jumps on takeover report as incident responder swings to Q4 profit
After divesting FireEye Products, Mandiant has a streamlined portfolio, but expansion will be expensive.
By Naomi Eide • Feb. 9, 2022 -
Security strategies evolve while spending flatlines
Organizations want more bang for their buck, which can mean eschewing single-use products.
By Brian Eastwood • Feb. 8, 2022 -
Sponsored by Keeper Security
Smart cybersecurity budgeting in the age of ransomware
Cut through the noise and learn how organizations can optimize their cybersecurity spend.
Feb. 7, 2022 -
Cybersecurity tool trends to watch in 2022
For enterprises, the security priority remains doing more with less and finding tools that offer greater areas of coverage and integration.
By Sue Poremba • Jan. 27, 2022 -
Biden gives defense, intel agencies 180 days to apply MFA, encryption
The White House's memorandum builds on past requirements to bolster U.S. cyber standards. This time, the administration is targeting agencies that handle classified intelligence.
By Samantha Schwartz • Jan. 20, 2022 -
Extracting portions of open source in software development threatens app security
While companies employ safeguards to detect flaws in applications, the likelihood of organizations running a complete database of all the places a vulnerability lives is slim.
By Samantha Schwartz • Jan. 19, 2022 -
Can SOAR technology help SOCs regain the advantage in threat detection?
Google's acquisition of Siemplify has placed a focus on whether automation can help restore balance in the fight against sophisticated attackers.
By David Jones • Jan. 7, 2022 -
Congressional cyber commission expires but work to continue with 'Solarium 2.0'
Despite the commission's success, unfinished business includes setting up a joint collaborative environment, institutionalizing the Cyber Diplomacy Act, creating a bureau of cyber statistics, and codifying critical infrastructure.
By Samantha Schwartz • Dec. 23, 2021 -
Security teams prepare for the yearslong threat Log4j poses
Industry is still investigating the full extent of the vulnerability, which limits the actions security teams can immediately take.
By Samantha Schwartz • Dec. 16, 2021 -
Long-expected cyber incident reporting rule loses ground once again
The House's recently passed National Defense Authorization Act is set to advance to the Senate. But it omitted a key cyber rule: mandatory incident reporting.
By Samantha Schwartz • Dec. 10, 2021 -
What incident reporting could look like
Legislation could remove some of the complexity of overlapping standards when CISA's roles and authorities become more robust.
By Samantha Schwartz • Dec. 10, 2021 -
TSA rolls out rail cyber requirements, targeting prevention and rapid response
The directives, with immediate implementation expected, are primarily for higher-risk freight railroads, passenger rail, and rail transit, DHS said.
By Samantha Schwartz • Dec. 3, 2021 -
Crypto becoming the preferred currency of cybercriminals and rogue governments
Authorities are turning the tables on cybercriminals by tracing the steps of illicit transactions and making it more difficult for ransomware operators to evade detection.
By David Jones • Nov. 24, 2021 -
What to consider when connecting cyber, business strategy
The common issue security and business leaders run into is miscommunication, Gartner's Jeffrey Wheatman said.
By Samantha Schwartz • Nov. 17, 2021 -
Banks outpace other industries in cyber investments, defense strategies: report
The banking industry is actively investing in cyber defense and employing sound corporate governance practices to combat threats, Moody's found.
By David Jones • Nov. 15, 2021 -
Trust is becoming a CISO priority, boosts customer stickiness
Customers are more likely to forgive a particular brand for putting data at risk if they trust the company, Forrester research shows.
By David Jones • Nov. 10, 2021 -
ICS security investments blocked by management confusion
Until cyber risks in operational technology are better understood — and IT and OT can overcome cultural differences — companies can stall additional investments.
By Samantha Schwartz • Nov. 10, 2021 -
CISA wants to identify the most vulnerable critical infrastructure
The agency is basing its analysis on economic and network centrality, as well as "logical dominance in the national critical functions," Director Jen Easterly said.
By Samantha Schwartz • Nov. 1, 2021 -
Corporate boards, C-suite finally prioritize cyber after years of business risk
Following a surge of supply chain attacks and ransomware over the past year, enterprise leaders are finally giving cybersecurity the attention it deserves.
By David Jones • Oct. 27, 2021 -
Q&A
A conversation with SolarWindsā CISO
"Our CEO got a call in the morning from Kevin Mandia. And then he called me, and then the CTO for FireEye called me. That's our nightmare moment," Tim Brown told Cybersecurity Dive.
By Samantha Schwartz • Oct. 26, 2021 -
Sponsored by Cybersource
How businesses are tackling fraud in a digital-first reality
With digital transactions and eCommerce continuing to grow in volume, successfully taking on fraud will require businesses to explore and rely on new tools and technologies.
Oct. 25, 2021 -
2022 could bring OT weaponization, ransomware laws, Gartner says
In the last decade companies underwent digital transformation, with cloud taking over legacy solutions. But the same practices cannot be deployed year after year.
By Samantha Schwartz • Oct. 21, 2021 -
Avoid paying ransoms, Gartner says. Instead, focus on situational awareness
In the event of a ransomware attack, CISOs need to pause amid chaos and gain a better understand around steps to recovery.
By Samantha Schwartz • Oct. 20, 2021