Strategy: Page 3


  • Merck sign
    Image attribution tooltip
    Marko Georgiev / Stringer via Getty Images
    Image attribution tooltip

    Merck reaches settlement in closely watched NotPetya insurance case

    The pharmaceutical giant previously won a New Jersey court decision involving $700 million of a $1.4 billion dispute over war-exclusions language related to the attack.

    By Jan. 8, 2024
  • A photo illustration of LastPass logos on a hard drive disk held in someone's hand.
    Image attribution tooltip
    Leon Neal via Getty Images
    Image attribution tooltip

    LastPass enforces 12-character master password lengths

    The password manager made its years-old guidance on master password complexity a requirement nearly a year and a half after it was hit by a major cyberattack.

    By Jan. 4, 2024
  • A close up of a cursor arrow hovering over an X on a screen, pixelated with red, blue and green colors. Explore the Trendline
    Image attribution tooltip
    ar-chi via Getty Images
    Image attribution tooltip
    Trendline

    Risk Management

    Now, public companies have to detail their cybersecurity risk management in annual filings, raising awareness on what many cyber experts already knew — security issues are business issues. 

    By Cybersecurity Dive staff
  • An image of a digital lock is shown
    Image attribution tooltip
    Just_Super via Getty Images
    Image attribution tooltip

    Mimecast acquires human risk management specialist Elevate Security

    The acquisition is the latest in a series of deals in recent weeks, following a turbulent year of industry layoffs, spending cuts and a weaker investment climate in the sector.

    By Jan. 4, 2024
  • A female attorney working at her computer at home
    Image attribution tooltip
    demaerre via Getty Images
    Image attribution tooltip

    SonicWall acquires Banyan Security to boost cloud security portfolio for remote work

    The company recently acquired a firm specializing in managed detection and response technology for managed service providers.

    By Jan. 3, 2024
  • A bicyclist rides by a sign that is posted in front of the Cisco Systems headquarters on August 10, 2011 in San Jose, California.
    Image attribution tooltip
    Justin Sullivan via Getty Images
    Image attribution tooltip

    Cisco to buy open source multicloud security vendor Isovalent

    The deal for the company behind eBPF and Cilium follows Cisco’s blockbuster $28 billion agreement to acquire Splunk.

    By Dec. 21, 2023
  • Silhouette of several business people at a conference room table.
    Image attribution tooltip
    FangXiaNuo via Getty Images
    Image attribution tooltip

    Cyber risk strategies in hot seat as SEC rules go live

    A new climate of regulatory scrutiny is pushing companies to reassess how they manage cyber governance and mitigation at the highest levels.

    By Dec. 20, 2023
  • Brightly colored digital lock with central computer processor and futuristic circuit board.
    Image attribution tooltip
    da-kuk via Getty Images
    Image attribution tooltip

    2 years on, Log4j still haunts the security community

    Research from Veracode shows nearly 2 in 5 applications are still running vulnerable versions. 

    By Dec. 8, 2023
  • An image of a digital lock is shown
    Image attribution tooltip
    Just_Super via Getty Images
    Image attribution tooltip

    Fidelity National Financial still assessing cyberattack impact, but is insured

    The company acknowledged real estate closings were briefly impacted, however committed to protect customer data and prioritize cybersecurity investments.

    By Dec. 7, 2023
  • Coin stacks and blue bar and line graphs on black background.
    Image attribution tooltip
    MicroStockHub via Getty Images
    Image attribution tooltip

    Challenging the ‘good enough’ cybersecurity mindset

    While the volume of cyber threats keeps growing, security experts struggle to navigate the perception that existing resources are enough to defend their organization.

    By Jen A. Miller • Dec. 6, 2023
  • two technologists looking at a laptop inside a server room
    Image attribution tooltip
    Jacob Wackerhausen via Getty Images
    Image attribution tooltip

    Businesses can turn to MSPs to navigate SEC cyber disclosure requirements

    With a line of sight on security operations, managed service providers hold keys to materiality determinations and annual 10-K reports.

    By Suman Bhattacharyya • Dec. 5, 2023
  • A wastewater treatment plant powered by wind turbines and solar panels near Atlantic City in New Jersey, USA. Aerial elevated view at the sunset.
    Image attribution tooltip
    Alex Potemkin via Getty Images
    Image attribution tooltip

    Authorities raise alarm on threats against water, other critical sectors

    An ongoing cyber campaign against Unitronics PLC devices has impacted multiple U.S. water facilities, but authorities are also monitoring energy, healthcare, and food and beverage manufacturing.

    By Dec. 4, 2023
  • Staples store in Studio City, Ca.
    Image attribution tooltip
    GDMatt66 via Getty Images
    Image attribution tooltip

    Staples hit by cyberattack during critical Cyber Week sales push

    The office supply retailer expects to fully catch up on back orders after online processing and deliveries were briefly disrupted.

    By Dec. 1, 2023
  • Okta office
    Image attribution tooltip
    Courtesy of Okta
    Image attribution tooltip

    Okta again promises it is taking security seriously

    CEO Todd McKinnon used the company's earnings call to once again pledge improvements and address a culture of lax security.

    By Nov. 30, 2023
  • A close up of the Department of Treasury seal on the front of the headquarters with "the Department of Treasury" and "1789" on an outer circle and a shield with the scales of justice up top and a key.
    Image attribution tooltip
    Chip Somodevilla via Getty Images
    Image attribution tooltip

    For financial services firms, a pattern of malicious cyber activity is emerging

    The suspected ransomware attack against Fidelity National Financial marks the latest in a series of incidents, leading regulators to take additional enforcement actions.

    By Nov. 29, 2023
  • An open atrium filled with plants with stars crossing open floors.
    Image attribution tooltip
    Naomi Eide/Cybersecurity Dive
    Image attribution tooltip

    Amazon CSO likens security to psychological chess matches

    Security professionals should focus on ambiguous, dynamic problems that can’t be solved by software, Stephen Schmidt says.

    By Nov. 28, 2023
  • Attendees arrive during AWS re:Invent 2021, a conference hosted by Amazon Web Services, at The Venetian Las Vegas on November 30, 2021 in Las Vegas, Nevada.
    Image attribution tooltip
    Noah Berger / Stringer via Getty Images
    Image attribution tooltip

    Cloud security myths can leave SMBs exposed

    AWS identified three cyber misconceptions that hinder small- and medium-sized businesses as they migrate workloads.

    By Matt Ashare • Nov. 22, 2023
  • Black Friday weekend 25% off discount banner in a boutique.
    Image attribution tooltip
    Shaun Taylor via Getty Images
    Image attribution tooltip

    Retailers brace for cyberthreat feast ahead of Thanksgiving shopping weekend

    A rise in social engineering and generative AI pose increased risks as phishing attacks and ransomware gain speed and grow more sophisticated.

    By Nov. 21, 2023
  • A series of hexagonal blocks with locks on them, one of which is broken, with a red background.
    Image attribution tooltip
    Andrii Yalanskyi via Getty Images
    Image attribution tooltip

    Companies are getting smarter about cyber incidents

    Although incidents are up and risks are expanding, businesses are better prepared to send threat actors away empty-handed, a specialist says.

    By Robert Freedman • Nov. 21, 2023
  • A bicyclist rides by a sign that is posted in front of the Cisco Systems headquarters on August 10, 2011 in San Jose, California.
    Image attribution tooltip
    Justin Sullivan via Getty Images
    Image attribution tooltip

    Cisco looks to Splunk for security business growth

    Security remains a small part of Cisco’s business, but Splunk could bolster the company’s ability to grow and improve other offerings.

    By Nov. 16, 2023
  • Palo Alto Networks
    Image attribution tooltip
    Matt Kapko/Cybersecurity Dive
    Image attribution tooltip

    Palo Alto Networks’ largest customers get no-cost incident response

    Available through January, the response program comes at a time of heightened demand for rapid forensic services, particularly in light of the coming SEC incident response enforcement. 

    By Nov. 15, 2023
  • Workers at a security operations center at Rackspace.
    Image attribution tooltip
    Courtesy of Rackspace Technology
    Image attribution tooltip

    Rackspace records $5M in expenses related to 2022 ransomware attack

    The cloud services company expects insurance to cover its incident costs, however multiple lawsuits are still pending.

    By Nov. 14, 2023
  • Exterior of MGM Grand Hotel & Casino in Las Vegas
    Image attribution tooltip
    Ethan Miller via Getty Images
    Image attribution tooltip

    MGM Resorts anticipates no further disruptions from September cyberattack

    The company expects insurance to cover more than $100 million in losses stemming from lost bookings and disruptions at its Las Vegas properties.

    By Nov. 9, 2023
  • A facade of the White House in Washington, D.C.
    Image attribution tooltip
    Nick van Bree via Getty Images
    Image attribution tooltip

    Countries pledge to not pay ransoms, but experts question impact

    There is no mandate to ban governments or businesses from paying ransom demands, but the pledge could be a step toward that outcome.

    By Nov. 6, 2023
  • Female technician using laptop in server room.
    Image attribution tooltip

    stock.adobe.com/Tetra Images

    Image attribution tooltip
    Sponsored by QBE Insurance

    Top ways businesses can manage the risk implications of the SEC cybersecurity disclosure rule

    The SEC final rule requires public companies to disclose any material cybersecurity incidents within four business days of determination.

    Nov. 6, 2023
  • Microsoft's visitor center at its Redmond campus.
    Image attribution tooltip
    Stephen Brashear via Getty Images
    Image attribution tooltip

    Microsoft overhauls cyber strategy to finally embrace security by default

    The plan follows major backlash Microsoft experienced earlier this year for charging customers for additional security features. 

    By Nov. 3, 2023