Things I’ve heard that made me uncomfortable:
“That system isn’t in scope.”
#RiskManagement #CyberSecurity #ThingsIHeard
Things I’ve heard that made me uncomfortable:
“We gave them admin access… just for now.”
#IdentityManagement #LeastPrivilege #ThingsIHeard
Things I’ve heard that made me uncomfortable:
“The vendor said security is handled in the next release.”
#ThirdPartyRisk #AppSec #ThingsIHeard
Things I’ve heard that made me uncomfortable:
“We’ll document the process after the audit.”
#Compliance #CyberSecurity #ThingsIHeard
Things I’ve heard that made me uncomfortable:
“That server has been running so long no one knows what it does.”
#LegacySystems #ITLife #ThingsIHeard
Things I’ve heard that made me uncomfortable:
“We disabled the alert because it kept going off.”
#SecurityOperations #SOC #ThingsIHeard
Things I’ve heard that made me uncomfortable:
“We don’t really patch that system… it’s too important to reboot.”
#CyberSecurity #PatchManagement #ThingsIHeard