Corporate acquirers want to know whether they are buying firms with cyber problems. Red Flags letters identify trouble spots, question marks, and investment areas.
To effect change, risk professionals need to write succinctly, directly, and powerfully. But few technical professionals have been trained to write well. Let’s fix that.
Senior managers talk about risks, and not about threats or controls. To have better conversations with senior leaders, focus where the risks are coming from, and why. This post offers a vocabulary for talking about cyber- and technology-related risks and their causes.
Enterprise network perimeters have been disappearing: at first slowly, and then suddenly, all at once and at knifepoint. If this were a game of Clue, I’d accuse the Ransomware Actor, on the Edge Device, with the Zero-Day.