Strategy: Page 2


  • Amtrak Coast Starlight Train
    Image attribution tooltip
    Laser1987 via Getty Images
    Image attribution tooltip

    CISA issues notice for long-awaited critical infrastructure reporting requirements

    CIRCIA will require covered entities to promptly disclose major cyber incidents and ransomware payments.

    By March 27, 2024
  • Computer keyboard with key marked "insurance."
    Image attribution tooltip
    sodafish via Getty Images
    Image attribution tooltip

    Marsh launches group captive insurance firm for cyber

    The company wants to provide larger, financially stable companies with alternatives for managing risk, after years of volatility in pricing and coverage.

    By March 25, 2024
  • A close up of a cursor arrow hovering over an X on a screen, pixelated with red, blue and green colors. Explore the Trendline
    Image attribution tooltip
    ar-chi via Getty Images
    Image attribution tooltip
    Trendline

    Risk Management

    Now, public companies have to detail their cybersecurity risk management in annual filings, raising awareness on what many cyber experts already knew — security issues are business issues. 

    By Cybersecurity Dive staff
  • Photo illustration of a VF Corp. SEC filing.
    Image attribution tooltip

    Photo illustration: Industry Dive; US Securities and Exchange Commission

    Image attribution tooltip

    How companies describe cyber incidents in SEC filings

    The words businesses use in cybersecurity disclosures matter. They can channel confidence in the recovery process, potential impacts and legal liabilities.

    By March 19, 2024
  • Sponsored by Palo Alto Networks

    Security consultation is a non-negotiable for M&A activity

    Over 20% of external cloud services change monthly. Without visibility, it is easy to lose track of changes and prevent risks. Get the report to learn more.

    By Matt Kraning, CTO, Cortex, Palo Alto Networks • March 18, 2024
  • Header image for "56% of Business Leaders Are Incorporating AI Into Cybersecurity: Weekly Stat"
    Image attribution tooltip
    Andrew Brookes
    Image attribution tooltip

    Audit committees rank cybersecurity as top priority amid SEC crackdown

    Cyberattacks are just one of several rapidly changing threats confronting audit committees, according to the Center for Audit Quality and Deloitte.

    By Jim Tyson • March 14, 2024
  • Google corporate logo outside Google Germany offices in Berlin, Germany.
    Image attribution tooltip
    Sean Gallup / Getty Images News via Getty Images
    Image attribution tooltip

    Google Cloud CISO spots asymmetric advantage for AI in defense

    Organizations have the upper hand in using generative AI for security because it’s trained on data they own and context they tune against it, Phil Venables says.

    By March 13, 2024
  • A facade of the White House in Washington, D.C.
    Image attribution tooltip
    Nick van Bree via Getty Images
    Image attribution tooltip

    Ransomware festers as a top security challenge, US intel leaders say

    U.S. intelligence leaders warn ransomware activity is growing, despite high profile efforts to seize threat actors’ infrastructure.

    By March 12, 2024
  • A digital blue fingerprint lifted being lifted off a mirrored surface against a black background. Binary code makes up the fingerprint.
    Image attribution tooltip
    Just_Super via Getty Images
    Image attribution tooltip

    What’s behind the demand for MDR and IAM systems

    It's not just the front door businesses need to protect. Organizations also have to recognize the damage threat actors can do once they’re inside.

    By Sue Poremba • March 7, 2024
  • CrowdStrike booth at Black Hat USA 2023 in Las Vegas.
    Image attribution tooltip
    Matt Kapko/Cybersecurity Dive
    Image attribution tooltip

    CrowdStrike dodges pricing war with Palo Alto Networks

    CEO George Kurtz called out CrowdStrike's largest competitor, dismissing Palo Alto Network's strategy of free incentives. "Free is never free," he said.

    By March 6, 2024
  • An open atrium filled with plants with stars crossing open floors.
    Image attribution tooltip
    Naomi Eide/Cybersecurity Dive
    Image attribution tooltip

    AWS CISO: Generative AI is just a tool, ‘not a magic wand’

    Attackers and defenders have access to the same capabilities in generative AI. Clear advantages for either side have yet to materialize.

    By March 5, 2024
  • Okta office
    Image attribution tooltip
    Courtesy of Okta
    Image attribution tooltip

    Why Okta is overhauling its priorities, culture around security

    CSO David Bradbury acknowledges the company’s brand is tarnished. “We need a track record of zero breaches. That’s what builds trust.”

    By March 1, 2024
  • Image attribution tooltip
    Win McNamee via Getty Images
    Image attribution tooltip

    NIST makes it official: governance is a critical part of cybersecurity

    A collection of resources accompany CSF 2.0 to make the guidance easier for businesses to use and put into practice across their operations.

    By Feb. 29, 2024
  • Okta booth at RSA Conference on April 27, 2023 in San Francisco.
    Image attribution tooltip
    Matt Kapko/Cybersecurity Dive
    Image attribution tooltip

    Okta reports ‘minimal’ financial impact following support portal attack

    The identity and access management firm is promising to make security a top priority, even though Okta’s CFO said the attack fallout is “not quantifiable.”

    By Feb. 29, 2024
  • Okta office
    Image attribution tooltip
    Courtesy of Okta
    Image attribution tooltip

    Okta, with a bruised reputation, rethinks security from the top down

    CSO David Bradbury detailed to Cybersecurity Dive what the identity and access management company got wrong and the security pledges it's making to customers.

    By Feb. 27, 2024
  • The front of the agency headquarters, reading "United States Security and Exchange Commission" and the number 450 as a man walks in a glass door at the bottom left of the frame.
    Image attribution tooltip
    Mark Wilson/Newsmakers via Getty Images
    Image attribution tooltip

    CFOs take backseat to CISOs on SEC cyber rules

    Less than half of finance chiefs are involved in the SEC's cybersecurity breach disclosure process, AuditBoard found.

    By Alexei Alexis • Feb. 27, 2024
  • Worker ant pushing heavy boulder up hill.
    Image attribution tooltip
    iStock / Getty Images Plus via Getty Images
    Image attribution tooltip

    LockBit group revives operations after takedown

    The comeback is no surprise to experts — and some think LockBit as a brand is dead — but the reemergence underscores persistent challenges for authorities.

    By Feb. 26, 2024
  • Palo Alto Networks
    Image attribution tooltip
    Matt Kapko/Cybersecurity Dive
    Image attribution tooltip

    Palo Alto Networks’ free incentives offer sparks investor anxiety

    The firm is giving away services and offering deferred billing to corral new customers into its consolidated cybersecurity platforms.

    By Feb. 21, 2024
  • Creative image depicting a ransomware attack.
    Image attribution tooltip
    iStock / Getty Images Plus via Getty Images
    Image attribution tooltip

    State Department puts $10M bounty on AlphV ransomware group

    The prolific ransomware group and its affiliates are behind some of the most high-profile attacks in the last year.

    By Feb. 15, 2024
  • cybersecurity
    Image attribution tooltip
    2d illustrations and photos via Getty Images
    Image attribution tooltip

    Contractual obligations driving data privacy, cybersecurity upgrades

    To secure work from business partners, more companies are getting serious about having the right technical and legal safeguards, a specialist says.

    By Robert Freedman • Feb. 13, 2024
  • Sphere venue in Las Vegas.
    Image attribution tooltip
    Greg Doherty via Getty Images
    Image attribution tooltip

    CISA blitzes Super Bowl with cyber campaign as businesses fumble security

    CISA brought its Secure Our World initiative to Las Vegas, for the biggest annual event in sports. Will anyone heed the advice?

    By Feb. 9, 2024
  • National Cyber Director Harry Coker speaks in Washington.
    Image attribution tooltip
    Permission granted by Information Technology Industry Council
    Image attribution tooltip

    National cyber director urges private sector collaboration to counter nation-state cyber threat

    Harry Coker said the Biden administration is exploring plans to hold manufacturers accountable for poor security, while also working to harmonize regulations.

    By Feb. 9, 2024
  • Coin stack on international banknotes with house model on table.
    Image attribution tooltip
    Zephyr18 via Getty Images
    Image attribution tooltip

    Mortgage industry attack spree punctuates common errors

    Attacks against Mr. Cooper Group, Fidelity National Financial, First American Financial and loanDepot impacted operations and put customers in a bind.

    By Feb. 6, 2024
  • Close up of Gary Gensler speaking during a senate hearing
    Image attribution tooltip
    Kevin Dietsch/Getty Images via Getty Images
    Image attribution tooltip

    Business, technology groups back SolarWinds motion to dismiss SEC charges

    Former U.S. cybersecurity officials and a group of current and former CISOs warned the fraud suit against SolarWinds could chill intel sharing from the private sector.

    By Feb. 5, 2024
  • A digital funnel with objects flowing through and pouring out as liquid through two ends
    Image attribution tooltip
    Permission granted by Tines
    Image attribution tooltip
    Sponsored by Tines

    4 ways the role of the CISO will change in 2024

    2024 marks a new era for CISOs. Faced with increasing responsibility in the wake of SolarWinds, they’ll demand better budgets, head counts, and tooling - or go elsewhere.

    By Thomas Kinsella, CCO and co-founder, Tines • Feb. 5, 2024
  • Okta booth at RSA Conference on April 27, 2023 in San Francisco.
    Image attribution tooltip
    Matt Kapko/Cybersecurity Dive
    Image attribution tooltip

    Okta to cut 7% of workforce as push to revamp security is underway

    The layoffs come during the company's 90-day overhaul to address lax security following a string of cyberattacks targeting Okta and its customers.

    By Feb. 1, 2024