home.social

#iso27001 — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #iso27001, aggregated by home.social.

  1. Auditing basic SOC 2 Security is just the minimum. 🛡️

    Expanding to Privacy, Confidentiality & Availability proves to enterprise buyers you're ready for high-stakes deals.

    Are you auditing the right trust criteria?

    #ODIT #InfoSec #ISMS #ISO27001 #Privacy #GDPR #DORA #SOC

  2. Auditing basic SOC 2 Security is just the minimum. 🛡️

    Expanding to Privacy, Confidentiality & Availability proves to enterprise buyers you're ready for high-stakes deals.

    Are you auditing the right trust criteria?

    #ODIT #InfoSec #ISMS #ISO27001 #Privacy #GDPR #DORA #SOC

  3. Auditing basic SOC 2 Security is just the minimum. 🛡️

    Expanding to Privacy, Confidentiality & Availability proves to enterprise buyers you're ready for high-stakes deals.

    Are you auditing the right trust criteria?

    #ODIT #InfoSec #ISMS #ISO27001 #Privacy #GDPR #DORA #SOC

  4. Auditing basic SOC 2 Security is just the minimum. 🛡️

    Expanding to Privacy, Confidentiality & Availability proves to enterprise buyers you're ready for high-stakes deals.

    Are you auditing the right trust criteria?

    #ODIT #InfoSec #ISMS #ISO27001 #Privacy #GDPR #DORA #SOC

  5. Auditing basic SOC 2 Security is just the minimum. 🛡️

    Expanding to Privacy, Confidentiality & Availability proves to enterprise buyers you're ready for high-stakes deals.

    Are you auditing the right trust criteria?

    #ODIT #InfoSec #ISMS #ISO27001 #Privacy #GDPR #DORA #SOC

  6. Cuando hablamos de un roadmap de ciberseguridad, casi siempre la conversación empieza igual:

    Zero Trust.
    ISO 27001.
    NIST.
    EDR.
    SIEM.

    Pero... ¿y si estuviéramos empezando por el lugar equivocado?

    Hace más de cincuenta años, James P. Anderson propuso algo sorprendentemente actual: antes de pensar en controles o tecnologías, primero hay que entender qué estamos protegiendo, de quién y bajo qué supuestos.

    El problema no siempre es elegir un framework incorrecto. Muchas veces el problema es intentar aplicar cualquier framework sin haber comprendido primero el entorno.

    Quizás por eso seguimos resolviendo problemas modernos con herramientas cada vez mejores... mientras repetimos errores que ya habían sido identificados décadas atrás.

    En este artículo
    medium.com/@jack.of.all.trades

    analizo por qué un roadmap de ciberseguridad debería comenzar mucho antes de hablar de Zero Trust, ISO 27001 o NIST.

    #CyberSecurity #InfoSec #ZeroTrust #ISO27001 #NIST #Architecture #RiskManagement #JamesAnderson

  7. Currently going home from a 2 day internal #auditor #training from #DNV I followed with my entire team, with focus on #ISO27001. Despite the fact we've been doing them since forever, there still where some interesting points for all of us that we can use. There is always room for improvement!

    Lunches where good too 🥪😏.

    #today #audit #auditing #ISMS #datasecurity