Lessons Learned from the CrowdStrike-Microsoft Misconfiguration Error

The CrowdStrike-Microsoft outages on July 19, 2024, were primarily caused by a faulty update to CrowdStrike’s Falcon sensor for Windows. This update inadvertently triggered widespread “blue screen of death” errors on Windows systems, leading to significant disruptions across various sectors, including airlines, banking, media, emergency services, etc.  Microsoft’s Azure cloud platform was also impacted due … Read more

What is ISO/IEC 42001: Navigating AI Management Standards

Artificial Intelligence (AI) is vital in today’s technology-driven world. It is revolutionizing various industries, from healthcare to finance, by making processes more efficient and accurate. However, with this potential comes significant challenges, particularly around ensuring the safety and reliability of AI systems.   To address these challenges, the International Organization for Standardization and the International Electrotechnical … Read more

A Practical Guide to Understanding the Proposed CMMC Rule

The U.S. Department of Defense (DoD) has introduced a proposed rule for the Cybersecurity Maturity Model Certification (CMMC) Program. This initiative aims to verify that defense contractors and subcontractors meet specified security standards across three CMMC levels throughout their contract duration. The proposed rule outlines security controls, assessment procedures, and prioritized programs, aligning with the … Read more

New Initiative: Simplifying Government Cloud Service Compliance

Image of digitized lightbulb for Federal Cloud Service Compliance topic

HITRUST, a leading organization specializing in information security and risk management, and StateRAMP (State Risk and Authorization Management Program) have announced a new pilot program that intends to create a path for StateRAMP certification. This initiative paves the way for organizations to meet high standards of security compliance with greater ease and efficiency, and HITRUST … Read more

What Are Some Modern Cyber Threats?

360 Advanced - What Are Some Modern Cyber Threats

As we begin the final quarter of 2023, the landscape of cybersecurity presents us with a dynamic terrain marked by constant change and innovation. The downside is that cyber threats, too, are innovating—and getting more costly. The average cost of a data breach has increased 15.3% from 2020 to 2023, according to IBM. “Cybercriminals are … Read more

Cyber Criminals and AI: You Can Outsmart Them

Cyber Criminals and AI: You Can Outsmart Them

In the ever-evolving landscape of cybersecurity, the battle between defenders and attackers is relentless; as technology advances, so do the tactics of cybercriminals. At the FBI Atlanta Cyber Threat Summit in July, Director Christopher Wray warned that cybercriminals are weaponizing Artificial Intelligence (AI), and it is due to get worse as machine-learning models grow more … Read more

Unlocking ISO’s Power: Debunking Myths

Unlocking ISO’s Power: Debunking Myths

Several misconceptions exist surrounding ISO (International Organization for Standardization) and its standards. ISO is a longstanding international organization that develops and publishes standards, and some of its benefits include enhanced quality and efficiencies, stakeholder trust, and a market advantage. Yet, some ISO myths persist, and we are here to debunk them. The Top 5 most … Read more

You Need This to Do Business with the Department of Defense

You Need This to Do Business with the Department of Defense

In 2015, a phishing attack on the Joint Chiefs of Staff unclassified email servers caused an 11-day shutdown, affecting the work of 4,000 personnel. In 2019, the Defense Information Systems Agency network was breached, compromising countless employees’ Social Security numbers. The count of data breaches continues to increase, according to Forbes, up 128 million in … Read more