Возможность получить бесплатные удостоверения повышения квалификации по ПДн и не только.
https://zlonov.ru/free-program-kii-security/
https://zlonov.ru/free-program-kii-security/
Microsoft details the most clever phishing techniques it saw in 2019 | ZDNet
https://www.zdnet.com/article/microsoft-details-the-most-clever-phishing-techniques-it-saw-in-2019/
https://www.zdnet.com/article/microsoft-details-the-most-clever-phishing-techniques-it-saw-in-2019/
ZDNet
Microsoft details the most clever phishing techniques it saw in 2019
This year's most clever phishing tricks include hijacking Google search results and abusing 404 error pages.
ИСО: Новый международный стандарт для аудиторов позволит улучшить процесс сбора данных
http://rusrim.blogspot.com/2019/12/blog-post_13.html?m=1
http://rusrim.blogspot.com/2019/12/blog-post_13.html?m=1
Blogspot
ИСО: Новый международный стандарт для аудиторов позволит улучшить процесс сбора данных
Заметка Клер Нейден (Clare Naden – на фото) была опубликована на сайте Международной организации по стандартизации (ИСО) 3 декабря 2019 ...
Forwarded from Пост Лукацкого
Выложили проект 382-П для публичного обсуждения - https://t.co/1QP5PBnlPs
— Alexey Lukatsky (@alukatsky) December 13, 2019
— Alexey Lukatsky (@alukatsky) December 13, 2019
1 & 1 Telecom fined $10.6M for GDPR violations; company fights back | Article | Compliance Week
https://www.complianceweek.com/data-privacy/1-and-1-telecom-fined-106m-for-gdpr-violations-company-fights-back/28171.article
https://www.complianceweek.com/data-privacy/1-and-1-telecom-fined-106m-for-gdpr-violations-company-fights-back/28171.article
Compliance Week
1 & 1 Telecom fined $10.6M for GDPR violations; company fights back
A German federal privacy watchdog has fined 1 & 1 Telecom €9.55 million (U.S. $10.6 million) for violations of the EU's General Data Protection Regulation, but the company says it won't accept the penalty.
опубликована финальная версия.
SP 800-189, Resilient Interdomain Traffic Exchange | CSRC
https://csrc.nist.gov/publications/detail/sp/800-189/final
SP 800-189, Resilient Interdomain Traffic Exchange | CSRC
https://csrc.nist.gov/publications/detail/sp/800-189/final
CSRC | NIST
NIST Special Publication (SP) 800-189, Resilient Interdomain Traffic Exchange: BGP Security and DDoS Mitigation
In recent years, numerous routing control plane anomalies, such as Border Gateway Protocol (BGP) prefix hijacking and route leaks, have resulted in denial-of-service (DoS), unwanted data traffic detours, and performance degradation. Large-scale distributed…
Cybersecurity Insights Blog: Year-In-Review | NIST
https://www.nist.gov/blogs/cybersecurity-insights/cybersecurity-insights-blog-year-review
https://www.nist.gov/blogs/cybersecurity-insights/cybersecurity-insights-blog-year-review
Forwarded from Vulnerability Management and more
Lol, #Rapid7 released an album with short infosec versions of Christmas songs. It's even better than last year. My favourite are:
"You better control
You better comply
You better safeguard
We're telling you why
Auditors are coming to town"
and
"Do you want to build a plugin?
C'mon, let's code away
Old apps won't cut it anymore
They're such a bore
Let's automate today"
😁 #haxmas
https://www.rapid7.com/info/haxmas
"You better control
You better comply
You better safeguard
We're telling you why
Auditors are coming to town"
and
"Do you want to build a plugin?
C'mon, let's code away
Old apps won't cut it anymore
They're such a bore
Let's automate today"
😁 #haxmas
https://www.rapid7.com/info/haxmas
Rapid7
2020 Rapid7 HaXmas: Infosec Resources with a Holiday Twist
Fa-la-lall in love with Rapid7’s "Elf on the Stealth" video, festive blog series, and cybersecurity history calendar, as part of our annual HaXmas series.
Эволюция правил для сиемов:
https://medium.com/anton-on-security/security-correlation-then-and-now-a-sad-truth-about-siem-fc5a1afb1001
https://medium.com/anton-on-security/security-correlation-then-and-now-a-sad-truth-about-siem-fc5a1afb1001
Medium
Security Correlation Then and Now: A Sad Truth About SIEM
We all know David Bianco Pyramid of Pain, a classic from 2013. The focus of this famous visual is on indicators that you “latch onto” in…
ISO/IEC AWI 23894 «Информационные технологии – Искусственный интеллект – Менеджмент риска» (Information Technology - Artificial Intelligence - Risk Management), https://www.iso.org/standard/77304.html
ISO
ISO/IEC 23894:2023
Information technology — Artificial intelligence — Guidance on risk management
Методологии и практики цифровой трансформации - Московское отделение ISACA
https://engage.isaca.org/moscow/events/eventdenoscription?CalendarEventKey=62f7582d-18d9-40bc-8072-0c717ac8ac42&CommunityKey=46fbcde3-5241-4e7b-95e7-fe7bb40748d1&Home=%2fmoscow%2fevents%2fpast-events
https://engage.isaca.org/moscow/events/eventdenoscription?CalendarEventKey=62f7582d-18d9-40bc-8072-0c717ac8ac42&CommunityKey=46fbcde3-5241-4e7b-95e7-fe7bb40748d1&Home=%2fmoscow%2fevents%2fpast-events
Московское отделение ISACA
Методологии и практики цифровой трансформации
Программа встречи:
Андрей Дроздов, «COBIT 2019 как методология I&T в цифровую эпоху. Новости
Андрей Дроздов, «COBIT 2019 как методология I&T в цифровую эпоху. Новости