ESW #291 - Ryan Fried, Tim Morris

Published: Oct. 7, 2022, 9 p.m.

b'

Every year, management needs to figure out what initiatives will be prioritized for the upcoming year. This simple, free method uses a quantitative approach based on CIS controls with input from the front-line analysts and engineers. The outcome is an engaging team discussion and clear plan for what the team should prioritize.

Segment Resources:

https://www.cisecurity.org/controls

\\xa0

It\\u2019s CyberSecurity Awareness Month and this year\\u2019s theme, set by CISA, is See Yourself in Cyber. We\\u2019re going to take some liberties in the interpretation of this to talk about the lines blurring between personal and work accounts and devices. We\\u2019ll also discuss MFA risks - what types of MFA are safe to use, and which aren\\u2019t in 2022?

This segment is sponsored by Tanium. Visit https://securityweekly.com/tanium to learn more about them!

\\xa0

Finally, in the enterprise security news, Cloudflare has 1.25 billion incentives to draw customers away from AWS, NetSPI raises $410M for pen testing? Tines extends their Series B an extra $55M, Detectify and Eclypsium also raise funding, Some big funding for Web3 security startups, Adversary emulation tools for blue teamers, Breaking news: the security market isn\\u2019t out of money, it\\u2019s just fine, The art of selling to cybersecurity people, and more!

\\xa0

Visit https://www.securityweekly.com/esw for all the latest episodes!

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

\\xa0

Show Notes: https://securityweekly.com/esw291

'