#iso27001 — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #iso27001, aggregated by home.social.
-
Auditing basic SOC 2 Security is just the minimum. 🛡️
Expanding to Privacy, Confidentiality & Availability proves to enterprise buyers you're ready for high-stakes deals.
Are you auditing the right trust criteria?
-
Auditing basic SOC 2 Security is just the minimum. 🛡️
Expanding to Privacy, Confidentiality & Availability proves to enterprise buyers you're ready for high-stakes deals.
Are you auditing the right trust criteria?
-
Auditing basic SOC 2 Security is just the minimum. 🛡️
Expanding to Privacy, Confidentiality & Availability proves to enterprise buyers you're ready for high-stakes deals.
Are you auditing the right trust criteria?
-
Auditing basic SOC 2 Security is just the minimum. 🛡️
Expanding to Privacy, Confidentiality & Availability proves to enterprise buyers you're ready for high-stakes deals.
Are you auditing the right trust criteria?
-
Auditing basic SOC 2 Security is just the minimum. 🛡️
Expanding to Privacy, Confidentiality & Availability proves to enterprise buyers you're ready for high-stakes deals.
Are you auditing the right trust criteria?
-
2-week committee sign-offs kill release speed. 🐌
Modern SOC 2 controls live inside your CI/CD pipeline-automating security gates so you ship code fast and stay compliant.
Have you automated your deployment controls?
-
ISO 27001's List of Controls (Annex A) is Not a Checklist!
#ODIT #cybergovernance #legalcompliance #cybersecurity #digitaltransformation #informationsecurity #ISMS #ISO27001 #privacy #GDPR #DORA #businessgrowth #productivity #takingaction
-
Policies Don't Stop Breaches
#ODIT #cybergovernance #legalcompliance #cybersecurity #digitaltransformation #informationsecurity #ISMS #ISO27001 #privacy #GDPR #DORA #businessgrowth #productivity #takingaction
-
Cuando hablamos de un roadmap de ciberseguridad, casi siempre la conversación empieza igual:
Zero Trust.
ISO 27001.
NIST.
EDR.
SIEM.Pero... ¿y si estuviéramos empezando por el lugar equivocado?
Hace más de cincuenta años, James P. Anderson propuso algo sorprendentemente actual: antes de pensar en controles o tecnologías, primero hay que entender qué estamos protegiendo, de quién y bajo qué supuestos.
El problema no siempre es elegir un framework incorrecto. Muchas veces el problema es intentar aplicar cualquier framework sin haber comprendido primero el entorno.
Quizás por eso seguimos resolviendo problemas modernos con herramientas cada vez mejores... mientras repetimos errores que ya habían sido identificados décadas atrás.
En este artículo
https://medium.com/@jack.of.all.trades/primer-roadmap-de-ciberseguridad-86f23567ac20analizo por qué un roadmap de ciberseguridad debería comenzar mucho antes de hablar de Zero Trust, ISO 27001 o NIST.
#CyberSecurity #InfoSec #ZeroTrust #ISO27001 #NIST #Architecture #RiskManagement #JamesAnderson
-
Die erste Hälfte vom internen ISO 27001 Audit ist geschafft.
Mir raucht der Kopf und vor allem die Ohren.
🤯