The PCI Security Standards Council requires all payment processors and merchants to move to TLS 1.2 and above. Organizations that don’t follow this standard do not meet PCI DSS.
Join me in a candid conversation about the critical need for a robust and evolving cybersecurity framework. In this video, I discuss the challenges faced by well-intentioned individuals who advocate for the creation of a collective and effective group of infosec professionals from diverse backgrounds. Government initiatives often fall short, with the reluctance to invest in a dynamic and continuously improving standard.
Embark on a journey into the fast-paced world of ever-changing landscapes. In the realm of technology and cybersecurity, staying up-to-date is an ongoing challenge. How do we keep pace with the relentless speed of change? Join me in this video as we explore the necessity of forums and communal discussions to stay informed about legislative updates, changes in the cyber threat landscape, and the evolving tactics of adversaries.
Cyber risk regulations like NIS2 and DORA in the EU, or PS21/3 in the UK, signal a seismic shift toward strengthening cyber resilience and enforcing accountability. Championing regulations is not just a matter of checking compliance boxes: it’s an opportunity to become a business leader. To enable growth and protect revenue.
Over the last few weeks I have been catching up with a number of my cybersecurity contacts, primarily engaging with them for new content on our increasingly popular Razorwire podcast. During these conversations, as tends to happen during at this time of year, one of the things I have discussed with these professionals is what are (in their view) some key cybersecurity trends for 2024?
Today we’re excited to share several milestones as we continue on our mission to secure the internet and protect consumer data. And we’re just getting started. As we continue to reimagine GRC tools for the future of trust, we’ve built enterprise-ready features and rolled out additional Vanta AI capabilities along with support for the NIST AI Risk Management Framework.
Conducting regular user access reviews is an effective way to make sure your organization is securing access to critical systems and third-party vendors. Frameworks like SOC 2 and ISO 27001 even require proof of regular access reviews to demonstrate compliance. Without automation, access reviews are tedious and time-consuming, requiring IT and security teams to manually record user access information in a spreadsheet and take countless screenshots of access permissions screens.
The pace and complexity of AI technologies is increasing every day. In this rapidly changing environment, it’s critical for companies to adopt a rigorous approach to safely and responsibly incorporating AI into their products and processes. That’s why we’re excited to announce that the NIST AI Risk Management Framework (RMF) is now available in beta.
Join us for a monthly insightful session where each month we will: Walkthrough our CRQ platform Unveil exciting new product features (when applicable) Conduct Interactive Q&A Session.