Year: 2019

security incident

Security Incident Avoidance – Hackers know we’re away for Christmas…

It’s that time of year where many of us will be ensuring our organisations can still deal with a security incident whilst most of the workforce are at home watching Christmas movies like Die Hard – yes, it’s definitely a Christmas Movie. Hackers know businesses are running on skeleton staff during the holiday period so…
Read more

security strategy

Strategy – Can a CISO learn from the 2019 General Election?

Security Strategy – What lessons can CISOs learn from the UK Gerneral Election 2019 when devising and delivering a security strategy? Here are three…

security awareness

Security Awareness Training Dies. My 2020 Prediction

My prediction is that 2020 will be the year security awareness training dies…and not before time…

Cybersecurity Strategy – Organise to Operate

Cybersecurity strategy is being “organised to operate”. A principle that is fundamental to developing an effective cybersecurity programme. Here’s why…

DSAR

DSAR – Help I can’t cope!!! Our Subject Access Request volumes have gone through the roof!!!!

I had an online interaction with a vendor who sells Data Subject Access Request (DSAR) automation software recently. During the ‘pitch’ they highlighted that organisations across London, UK have seen a staggering increase in DSARs since GDPR went live. An article in the Yorkshire Evening Post confirms this is not just a London-centric issue. “In…
Read more

Security Audit - Low Hanging Fruit

Security Audit – Are you a ‘Quiddler’?

Are you a Quiddler? No, this is not some fanboi reference to Harry Potter (I’ll be honest I haven’t read one of the series, I’m a proper muggle!). Quiddling, however, is a very real problem in the world of Security Audit. If you want to know more, keep on reading. You could be one of…
Read more

GDPR Data Retention

Data Retention – A €14.5million fine awaits for Real Estate Data Archive non-compliant with GDPR?

Data retention is always a challenge for organisations. Organisation just love retaining data and well, storage is pretty cheap these days. Whilst the costs of getting retention wrong (e.g. not being able to recover from a ransomware attack) are always high; a recent GDPR fine decision in Germany highlights the data retention problem could get…
Read more

business continuity

Business Continuity & 22301:2019 – Do I need to get new BC Software?

Here are some changes in the 2019 version of 22301 that could mean your current Business Continuity software solution may no longer be fit-for-purpose.

Public Information & GDPR – I can do what I like with it…wrong!

There seems to be this idea floating around that if the data is collected from publicly available sites then it is fair game for marketers. If someone has created a profile on LinkedIn for example and their email address can be harvested (say by a recruiter or data miner connecting with you) then this public…
Read more

data breach

Data Breach: 10% of affected businesses closed down in 2019…or did they…?

I know there is a rush to get things out the door and I am very grateful for those who report on data breach stats but this article from Dark Reading piqued my interest: 10% of Small Businesses Breached Shut Down in 2019. Whenever I see a statistic like this I am always a little…
Read more