Tag: risk management

  • The Hollow Shell of Unsupported Security

    The Hollow Shell of Unsupported Security

    The Myth of the Silver Bullet Too many organizations today are under the impression that a collection of marketing buzzwords, EDR, XDR, Zero Trust, NGF, and the rest, constitutes a valid security program. They treat these acronyms as a substitute for actual strategy, delegating the entire responsibility to a team while the leadership remains detached.…

  • The Simplicity Behind Real Security

    The Industry Loves Complexity Cyber security has a strange habit. Every year, more layers. More dashboards. More integrations. More moving parts…and somehow, more insecurity. Decades of experience showed me something simple: Complex solutions either fail, or create new attack surface while pretending to reduce it. That is the irony of modern security. We secure complexity…

  • How to choose a vendor in context of infosec goods and services

    How to choose a vendor in context of infosec goods and services

    a new label doesn’t create a new capability.” know what you actually need most people start with vendors before they start with themselves. that is the first mistake. if you don’t know what problem you are solving, every vendor suddenly looks “perfect”. it’s like walking into a hardware store without knowing if you need a…

  • Can Security Make Money?

    One of the most common misconceptions I see among business leaders is the belief that security is nothing more than a necessary expense, a cost center that exists solely to consume budget, slow projects down, create additional processes, and occasionally tell people what they cannot do. In many organizations, security is viewed the same way…