Data Resilience and Protection in the Ransomware Age

Data is the currency of every business today, but it is under significant threat. As companies rapidly collect and store data, it is driving a need to adopt multi-cloud solutions to store and protect it. At the same time, ransomware attacks are increasing in frequency and sophistication. This is supported by Rapid7’s Ransomware Radar Report 2024 which states, […]
A Roadmap to Modern Application Security

A decade ago, Silicon Valley venture capitalist Marc Andreeson famously declared that “software is eating the world.” A bold statement at the time. But it has since become clear that Andreeson was right. Software is now ubiquitous – and it touches nearly every aspect of our lives. Today’s shift to software has had a profound […]
Final countdown to NIS2: How ISO 27001 accreditation can be a key ally in achieving compliance

In today’s fast-paced business environment, technology is central to enterprise success, often underpinning efficiency, innovation and competitiveness. From advanced data analytics to cloud-based models, modern companies are now leveraging a wide range of digital tools to boost productivity and streamline operations. That said, firms need to consider several factors to ensure that technology is a […]
Don’t Expect Cybersecurity to Work in Firms Where Nothing Does

You cannot expect the CISO on their own, bottom-up, to reverse widespread business dynamics, where short-termism prevails everywhere across the business. I have written at length about the difficulties many large organizations encounter with cybersecurity, and their endemic execution problems when it comes to protecting themselves from cyber threats. While the diagnostic is relatively clear in my view, there […]
How Organisations Can Master Incident Reporting Obligations Under NIS2

The new NIS2 directive is designed to strengthen the cyber resilience of over 160,000 companies that operate in the EU – either directly or indirectly. Coming into force by 17th October, NIS2 regulations will outline how these essential entities can combat increasingly sophisticated and frequent cyber attacks. Notwithstanding delays in the implementation of local legislation, the […]
Is your business ready for the inevitable cyberattack?

Today, it’s not a matter of if your business will be hacked, but when. The 2024 UK Government Cybersecurity Breaches Survey revealed a startling statistic: 50% of UK businesses suffered a cyberattack or security breach in the previous 12 months, up from 39% in 2022. The average cost of a data breach in 2023 was $4.45 million. For […]
Framing the Role of the Board around Cybersecurity is No Longer about Risk

Business protection from cyber threats must be rooted in the reality of the world we live in The role of the Board with regards to cybersecurity is a topic that keeps coming back and is often addressed in simplistic terms in my view. I don’t think it makes sense to look for “one-size-fits-all” answers to […]
Tracing the destructive path of ransomware’s evolution

The year is 1989. “Rain Man” wins the Academy Award for Best Picture. Motorola releases the world’s smallest and lightest phone. The Berlin Wall falls. Taylor Swift was born. It also begins the dawn of a new era of cyber extortion. The AIDS Trojan arrived innocuously, distributed via floppy disk to public health professionals. But it harbored […]
Large Enterprises Can’t Cope With More Cybersecurity Tools

It should be central to the role of the CISO to build a vision and a product strategy, and drive the decluttering of cybersecurity landscapes Every year, as we approach conference season, I can’t help but being amazed by the monumental number of cybersecurity products, services and vendors. I have written at length about this […]
Legal consequences for victims of cyberattacks are piling up

Falling victim to a cyberattack is bad enough, but there’s a chance that it also leaves companies open to lawsuits should they be found to have failed to adequately protect private data or disrupted other businesses. Several pharmacy groups and healthcare providers in the USA have filed a class action lawsuit against the payments service […]