security

Tag: security

Cloud Spoils Everything

As the leading public cloud platforms, Microsoft Azure and Amazon Web Services (AWS) offer a variety of services. Unfortunately, a handful of “cloud myths” remain as blockers to adoption. In…

Cloudy With a Chance of Governance: RBAC, Policy, and Improving Cloud Confidence

For many organizations, the decision of moving workloads to the cloud is all over but the shouting. The problem is that the shouting is pretty loud, and often centers around…

Maintaining a Secure Environment: Monitoring Beyond the Log File

This blog series has been all about taking a big step back and reviewing your ecosystem. What do you need to achieve? What are the organization’s goals and mandates? What…

Maintaining a Secure Environment: Understanding Its Components

In the previous blog, we discussed how defining use cases mapped to important security and business- related objectives are the first step in building and maintaining a secure environment. We’ve…

Why Investing in Software Security Is Worth It

Building IT software isn’t always the most secure process. The reason for this is simple economics. Companies can’t always afford to build in the security features software needs to be…

Giving SIEM Tools a Role in Your IT Security Operations

While there is no one single solution to guard agencies against all cyberthreats, there are tools that can certainly go a long way toward managing and understanding the cyberthreat landscape.…

Tips for Building a Battle-Hardened Network

The U.S. Army is leading the charge on the military’s multidomain battle concept—but will federal IT networks enable this initiative or inhibit it? The network is critical to the Army’s…

The Weakest (Security) Link Might Be You

In the second post in this information security in a hybrid IT world series, let’s cover the best-designed security controls and measures, which are no match for the human element.…

When “Trust but Verify” Isn’t Enough: Life in a Zero Trust World

Welcome to the first in a five-part series focusing on information security in a hybrid IT world. Because I’ve spent the vast majority of my IT career as a contractor…

Neglect These Cybersecurity Fundamentals at Your Peril

“Shiny object syndrome” exists within both the IT and cybersecurity fields. The press loves to focus on the sleekest new security toys or the latest threat-hunting technique. After all, red-team/blue-team…