dcsimg

PCI DSS: The importance of penetration testing

Often, organisations rely on vulnerability scans to identify their weaknesses. They are told that vulnerability scanning is as good as penetration testing and that it will be enough to meet the compliance requirements of the PCI DSS (Payment Card Industry Data Security Standard).  However, scanning and testing perform two different jobs, and the PCI DSS mandates that you conduct both on a regular … [Read more...]

A week in security (July 2 – July 8)

Last week, we tracked back a large mining operation from their Coinhive shortlink, we took a look at online project management tools, we described a new macro-less technique to distribute malware, and talked about a Mac malware that targets crypto-mining users. Other news: Huawei enterprise comms kit has a TLS crypto bug. (Source: The Register) The Pentagon is building a dream team of tech-savvy … [Read more...]

The future for CISOs following the introduction of the GDPR and NIS Directive

The responsibilities of the CISO (chief information security officer) have remained consistent over the years, but big changes in the cyber security landscape in 2018 could spark an evolution of the role.  Largely led by the introduction of the EU GDPR (General Data Protection Regulation) and the NIS Directive (Directive on security of network and information systems), organisations are shifting … [Read more...]

The challenges facing companies in the lead up to GDPR – A consultant’s perspective

Sharon O’Reilly, GRC/GDPR consultant at IT Governance Europe, was interviewed by The Sunday Business Post before her appearance today at the GDPR Summit. She discussed the challenges facing organisations in the lead up to the General Data Protection Regulation (GDPR).  According to Sharon, these challenges include:  Finding/sourcing the right people to drive compliance programmes;  Determining … [Read more...]

12 questions to ask your CISO

With the rise in cyber attacks and increased risk of a data breach, organisation boards are under increased pressure than ever to improve data governance and security. To help organisations ensure that all areas of cyber security are covered, IT Governance’s team of cyber security experts have examined the top 12 questions that you need to ask your CISO. Download this free brochure to … [Read more...]