Tag: ciso
-
Quantum-Safe Cryptography Isn’t Just a CISO Headache
Bank of Ireland’s Francis Gorman Shares Strategies for Successful Quantum Migration. Most organizations give the migration to quantum-safe cryptography to the CISO. But that puts a cross-business change in the wrong hands. Accountability belongs with senior leaders who can influence the whole enterprise, says Francis Gorman, head of Bank of Ireland’s security center of excellence.…
-
What CISA’s new remediation directive means for CISOs
CISA’s updated directive for federal agencies compresses mandatory patching timelines to just three days for high-risk flaws, urging practitioners to ‘patch smarter, not harder.’ First seen on techtarget.com Jump to article: www.techtarget.com/searchsecurity/news/366644336/What-CISAs-new-remediation-directive-means-for-CISOs
-
Cyber Resilience Summit Dallas Prioritizes Risk Management
CISOs Discussed Governance, Security Operations and Cyber Risk. From boardroom persuasion to AI-powered SOCs, ISMG’s Cyber Resilience Summit Dallas gave senior security and risk leaders a playbook for the age of inevitable disruption, with sessions spanning zero trust, human risk reduction, threat preemption and governance as a foundation of resilience. First seen on govinfosecurity.com Jump…
-
Developer laptops are the credential store attackers are picking through in 2026, GitGuardian announces Endpoint Protection
New York, New York, June 16th, 2026, CyberNewswire GitGuardian is introducing Developer Endpoint Protection, extending its secrets and non-human identity (NHI) security platform coverage to developer workstations. After 12 months of supply-chain campaigns harvesting credentials from developer machines, CISOs and IT leaders are reopening a question many considered settled: what does endpoint protection have to…
-
SANS SOC-Survey 2026 zeigt mangelnde Transparenz im Security Operation Center
Für CISOs, SOC-Leiter und Security-Teams bedeutet das: Wer Sicherheitsoperationen verbessern will, muss Alarmflut, Tool-Silos, Personallücken und Budgetentscheidungen betrachten. First seen on infopoint-security.de Jump to article: www.infopoint-security.de/sans-soc-survey-2026-zeigt-mangelnde-transparenz-im-security-operation-center/a45503/
-
Most CISOs Report Pressure to Bury Bad Security News
Executive leaders may not be saying it aloud, but business objectives and priorities don’t always promote timely disclosures. First seen on darkreading.com Jump to article: www.darkreading.com/cyber-risk/most-cisos-report-pressure-to-bury-bad-security-news
-
Vibe coders are gonna vibe code: How CISOs are tackling code sprawl
Employees are increasingly building automations, agents, and apps with AI tools outside traditional security oversight. Tines explores how CISOs are handling AI-driven code sprawl, shadow tooling, and governance challenges. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/vibe-coders-are-gonna-vibe-code-how-cisos-are-tackling-code-sprawl/
-
Autonome KI-Agenten erhöhen die Angriffsfläche in Unternehmen
Die entscheidende Frage für CISOs lautet nicht mehr, ob KI-Agenten im Unternehmen genutzt werden. Die Frage ist, ob sie bereits sicher genug eingebunden sind. First seen on infopoint-security.de Jump to article: www.infopoint-security.de/autonome-ki-agenten-erhoehen-die-angriffsflaeche-in-unternehmen/a45498/
-
Onspring CISO on where automated GRC systems fall short
In this interview with Help Net Security, Nichole Windholz, CISO at Onspring, talks about the limits of automated GRC systems and continuous control monitoring. She explains … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/06/15/nichole-windholz-onspring-automated-grc-systems/
-
CISO role changes as cyber-risk appetites in the C-suite grow
As cybersecurity fears in the C-suite wane, the cyber-risk appetites of executives and boards are changing. Find out what it means for cybersecurity spending and the CISO role. First seen on techtarget.com Jump to article: www.techtarget.com/searchsecurity/news/366644003/CISO-role-changes-as-cyber-risk-appetites-in-the-C-suite-grow
-
CISO role changes as cyber-risk appetites in the C-suite grow
As cybersecurity fears in the C-suite wane, the cyber-risk appetites of executives and boards are changing. Find out what it means for cybersecurity spending and the CISO role. First seen on techtarget.com Jump to article: www.techtarget.com/searchsecurity/news/366644003/CISO-role-changes-as-cyber-risk-appetites-in-the-C-suite-grow
-
AI Broke Vulnerability Management. That’s Why CISOs Are Moving Budget to BAS.
For thirty years, vulnerability management ran on a buffer: the months between when a vulnerability was found and when someone could figure out how to weaponize it. The solution was straightforward enough; triage by severity, schedule the fix, validate, and move on. The buffer was what made that work.Today, that buffer is gone.AI didn’t make…
-
Modern MDR, made clear: What CISOs should demand now
Tags: cisoFirst seen on scworld.com Jump to article: www.scworld.com/perspective/modern-mdr-made-clear-what-cisos-should-demand-now
-
Security Leaders Must Stop Living by the Framework
Paul Watts of Keywords Studios on Business Alignment, AI Hype and Workforce Risk. Cybersecurity leaders who still operate through the lens of frameworks and risk registers could be irrelevant in a world where business moves without them, said Paul Watts, CISO at Keywords Studios. He recommends investing in both AI and people to sustain operations…
-
75% of Firms Deploy Vulnerable Code Amid Pressure on CISOs, Report Finds
Checkmarx report warns that business pressure is among the reason security leaders let security compliance slip First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/firms-deploy-vulnerable-code/
-
Infosecurity Europe: Why JLR’s CISO Enforced In-Person Password Resets Following Cyber-Attack
Speaking at Infosecurity Europe, Ashish Shrestha, former CISO at Jaguar Land Rover revealed why he wanted over 30,000 employees to change their passwords in the immediate aftermath of the incident First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/jlr-cyberattack-ciso-inperson/
-
Treating AI agents like service accounts for federated query security
In this interview with Help Net Security, Paras Malhotra, CISO at Starburst, explains how the company handles data governance across federated query environments. Topics … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/06/09/paras-malhotra-starburst-federated-query-security/
-
AI Exploit Risks Pushing Healthcare Security Shift
MultiCare Health CISO Jason Elrod on Need for Faster Cyber Resilience. Emerging AI tools can identify and exploit software vulnerabilities within minutes, forcing healthcare organizations to rethink cyber strategies. Jason Elrod, CISO of MultiCare Health System, explains why exploitability management, microsegmentation and AI-driven resilience matter more than ever. First seen on govinfosecurity.com Jump to article:…
-
95 Prozent der CISOs stehen unter Druck, Compliance-relevante Probleme der Cybersicherheit zurückzustellen
Checkmarx hat die Ergebnisse seines diesjährigen <> vorgestellt. Demnach nutzen inzwischen 96 Prozent der Entwicklerinnen und Entwickler KI-Tools in ihrer IDE und bewerten deren Nutzen überwiegend positiv. Allerdings geben lediglich 18 Prozent an, bereits während der Entwicklung kontinuierliche Sicherheitsprüfungen durchzuführen. Gleichzeitig geben 95 Prozent der CISOs an, unter Druck zu stehen, […] First seen on…
-
Lost in translation: Cybersecurity board reporting for CISOs
Cybersecurity board reports don’t always land. At the Security and Risk Management Summit 2026, Gartner analysts suggested a novel way to communicate cyber-risk to corporate directors. First seen on techtarget.com Jump to article: www.techtarget.com/searchsecurity/news/366643884/Lost-in-translation-Cybersecurity-board-reporting-for-CISOs
-
The CISO Inbox Is Not a Sales Funnel
Inversion6 CISO Ian Thornton-Trump on What Cybersecurity Startups Get Wrong. CISOs are bombarded with more than 400 cold outreach attempts a month – ignoring nearly all of them. If vendors want to break through, they need to stop selling and start solving, said Ian Thornton-Trump, CISO at Inversion6. First seen on govinfosecurity.com Jump to article:…
-
‘Don’t panic’: AI reality checks dominate major cybersecurity conference
CISOs and their colleagues should focus on network security basics, not AI vendors’ overhyped promises, analysts said at an annual Gartner cybersecurity event. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/ai-cybersecurity-hype-reality-check-gartner/821867/
-
Zoom CISO: AI as a Security Enabler, Not Role-Replacer
As Zoom’s CISO, Sandra McLeod discusses the challenges of securing a global communication platform, the promise of AI-driven security workflows, and advice for aspiring cybersecurity leaders. First seen on darkreading.com Jump to article: www.darkreading.com/cybersecurity-operations/zoom-ciso-ai-security-enabler-role-replacer
-
What CISOs need to do about post-quantum migration in the next 24 months
In this Help Net Security video, Garfield Jones, SVP Global Strategy and Research, QuSecure, lays out what CISOs should do over the next 24 months. A recent Google paper moved … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/06/03/post-quantum-migration-timeline-video/
-
Zoom CISO: AI as Security Enabler, Not Role-Replacer
As Zoom’s CISO, Sandra McLeod, discusses the challenges of securing a global communication platform, the promise of AI-driven security workflows, and advice for aspiring cybersecurity leaders. First seen on darkreading.com Jump to article: www.darkreading.com/cybersecurity-operations/zoom-ciso-ai-security-enabler-role-replacer
-
For CISOs, dawn of OpenAI Daybreak brings good and bad news
OpenAI Daybreak shows how AI reshapes vulnerability discovery. But AI-driven security tools raise accountability questions and fuel the AI arms race between defenders and attackers. First seen on techtarget.com Jump to article: www.techtarget.com/searchsecurity/news/366643546/For-CISOs-dawn-of-OpenAI-Daybreak-brings-good-and-bad-news
-
Turning tension into collaboration: How CIOs and CISOs can lead together
If properly managed and channeled, age-old friction between IT and cybersecurity can create a more resilient organization. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/turning-tension-into-collaboration-how-cios-cisos-can-lead-together/821610/
-
Infosecurity Europe: Tabletop Exercise to Test How CISOs Respond to Major Supermarket Cyber-Attack
Semperis is set to bring ‘Enter the War Room: A Tabletop Experience’ to Infosecurity Europe to help cybersecurity leaders prepare to face real incidents First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/infosecurity-europe-semperis/
-
MegadolonKampagne erschüttert Software-Lieferkette
Tausende Github-Repositorys wurden mit Malware infiziert, die Anmeldedaten stiehlt. Die neueste Bedrohungskampagne von Megadolon erschüttert die ohnehin schon stark belastete Software-Lieferkette. Ein Kommentar von Shane Barney, CISO von Keeper Security <<Die Megalodon-Kampagne zeigt, wo das Risiko in der Software-Lieferkette tatsächlich liegt. Innerhalb von nur sechs Stunden schoben Angreifer bösartige Commits in über 5.500 Github-Repositorys ein…
-
Week in review: Infostealer dropped via FortiClient EMS flaw, exploited Trend Micro Apex One flaw
Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Coinflow CISO on crypto payments security under AI pressure Crypto payment … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/05/31/week-in-review-infostealer-dropped-via-forticlient-ems-flaw-exploited-trend-micro-apex-one-flaw/

