governance
4 Tips for Optimizing Your GRC Strategy
Why GRC strategies are often not as effective as they could be, and specific practices businesses can adopt to improve GRC operations ...
Security Boulevard
Toil Not: Automate DevOps Governance
Deb Radcliff | | attestation, CrowdStrike, DEVOPS, DevSecOps, governance, safety, SAST, SBOM, security, SolarWinds, TalkSecure Blog
By Deb Radcliff, DevSecOps analyst and editor of CodeSecure’s TalkSecure educational content (syndicated at Security Boulevard & YouTube) In this show, Deb interviews two innovative technologists driving the DevOps Automated Governance movement ...
Securing Artifacts: Keyless Signing with Sigstore and CI/MON
Alex Ilgayev | | Blog, code tampering, governance, Hardening SDLC, research, software supply chain security
Artifact integrity is crucial in maintaining software security and trustworthiness. High-profile breaches like SolarWinds, CodeCov, 3CX, and JumpCloud have shown how altering artifact contents can lead to significant security vulnerabilities, enabling attackers ...
Risks of GenAI Rising as Employees Remain Divided About its Use in the Workplace
Sonya Duffin | | ai ethics, Artificial Intelligence, Data Privacy, data resilience, GenAI, governance, training
One in three office workers who use GenAI admit to sharing customer info, employee details and financial data with the platforms. Are you worried yet? ...
Security Boulevard
Critical Start Launches Cyber Risk Register
Nathan Eddy | | Compliance, critical risk, Cyber risk register, governance, recordkeeping, risk management, tracking system, workflow
The centralized system helps organizations identify, track, and reduce risks, addressing the challenges of incomplete risk visibility and manual processes ...
Security Boulevard
An Introduction to FinOps Governance: How to Get Started
FinOps, a portmanteau of Finance and DevOps, is a strategic framework created to help companies understand and manage their cloud costs, enabling greater efficiency in cloud service usage. Created by the FinOps ...
Cybersecurity a Top Priority for Audit Committees
Audit committees consider cybersecurity their primary oversight focus as the SEC enforces tougher cyberattack disclosure regulations ...
Security Boulevard
Identity Governance Has a Permission Problem
Identity's role as the new security perimeter in the cloud is driving a new set of governance requirements and making permissions tricky ...
Security Boulevard
Salt Security Adds Governance Engine to API Security Platform
Michael Vizard | | api, API security, Application Security, Compliance, governance, risk, Salt Security
Salt Security added a posture governance engine to its API security platform that defines and enforces implementation standards ...
Security Boulevard
DEF CON 31 – Secretary of US Homeland Security Alejandro Mayorkas
Marc Handelman | | Cybersecurity, DEF Con 31, DEFCONConference, governance, Information Security, national security, Security Conferences, USCG, USDHS
Many thanks to DEF CON 31 for publishing their terrific DefCon Conference 31 presenters content. Originating from the conference events at Caesars Forum, Flamingo, Harrah’s and Linq in Las Vegas, Nevada; via ...