Complimentary Webinar: Countdown to #GDPR – Compliance for Non-EU Companies

Countdown to GDPR Compliance is a complimentary webinar that I will be moderating on Thursday, December 7, 2017, at 12:00 PM Central.  This is the second webinar in a three-part series sponsored by Mackrell International and will focus on Compliance for Non-EU Companies. You don’t want to miss it! Moderator: Shawn Tuma Presenter: Marta Stephanian, …

Tips for Staying #CyberSecure While Shopping Online for #BlackFriday and #CyberMonday Deals

Cybercriminals need shopping money for the Holidays and one of their favorite times to get yours is when you are shopping on #BlackFriday and #CyberMonday. https://youtu.be/ZPIEiQVQZ2I?t=31s Use these tips to help stay #cybersecure while shopping online for #BlackFriday and #CyberMonday and at any other time: Credit or debit? Use credit cards, not debit cards, for your …

Facebook Requesting Your Nudies to Combat Revenge Porn – My Comments on TV

Recently, news broke that in an effort to combat online revenge porn, Facebook is requesting that you send them your nudie pics! Here are some comments I shared with the Morning Dose television program: https://youtu.be/NdsHydFm9zI

Lost Unencrypted USB of Heathrow Airport Security Files Exemplifies Poor Cyber Hygiene

Basic cyber hygiene has been a hot topic in cybersecurity, and for good reason. Most of the incidents that impact companies start with failures of basic cyber hygiene, not the super-sophisticated stuff of the movies. See Start with Cybersecurity Basics: Confirmed by Verizon’s 2016 Data Breach Report. One of the most fundamental rules of cyber hygiene is …

3 Legal Points for InfoSec Teams to Consider Before an Incident

As a teaser to my presentation at SecureWorld – Dallas last week, I did a brief interview with SecureWorld and talked about three of the points I would make in my lunch keynote, The Legal Case for Cybersecurity. If you’re going to SecureWorld – Denver next week, join me for the lunch keynote on Thursday (11/2) …

#CyberAvengers: A National Cybersecurity Action Plan is a Serious Priority

Read the #CyberAvengers’ recent article, Ransomware Spreading Like Crazy Worms, on NextGov.com, Levick.com, or The #CyberAvengers website. _____________________________ The #CyberAvengers (Paul Ferrillo, Chuck Brooks, Kenneth Holley, George Platsis, George Thomas, Shawn Tuma, Christophe Veltsos) are a group of salty and experienced professionals who have decided to work together to help our country by defeating cybercrime and slowing down nefarious actors operating in cyberspace seeking […]

The #CyberAvengers Playbook (free download)

Read the #CyberAvengers’ recent article, Ransomware Spreading Like Crazy Worms, on NextGov.com, Levick.com, or The #CyberAvengers website. _____________________________ The #CyberAvengers (Paul Ferrillo, Chuck Brooks, Kenneth Holley, George Platsis, George Thomas, Shawn Tuma, Christophe Veltsos) are a group of salty and experienced professionals who have decided to work together to help our country by defeating cybercrime and slowing down nefarious actors operating in cyberspace seeking […]

What do we in the United States really want from our cyber laws?

In my newsfeed are articles in prominent publications discussing the problems with the federal Computer Fraud and Abuse Act from very different perspectives. In the “the CFAA is dangerous for security researchers” corner we have White Hat Hackers and the Internet of Bodies, in Law360, discussing how precarious the CFAA (and presumably, the state hacking laws …

Checklist for Good Cyber Hygiene

October is National Cyber Security Awareness Month in the United States and you can check out lots of great content by going to #CyberAware on Twitter or to my team’s #CyberAvengers content. As my firm’s contribution to #CyberAware, I hope you find the following checklist to be helpful and all I ask of you in return …

Hacked F-35 Fighter Info from Australian Contractor Exemplifies Third-Party Risk in Cybersecurity

See: China hacked a Navy contractor and secured a trove of highly sensitive data on submarine warfare Third-party risk (or nth-party risk) is a hot topic in cybersecurity. While it can mean many things, at its core third-party risk describes a situation in which an organization that does a good job of protecting its own …