Governance, Risk & Compliance - Security Boulevard https://securityboulevard.com/category/blogs/governance-risk-compliance/ The Home of the Security Bloggers Network Fri, 17 Jan 2025 18:55:33 +0000 en-US hourly 1 https://wordpress.org/?v=6.7.1 https://securityboulevard.com/wp-content/uploads/2021/10/android-chrome-256x256-1-32x32.png Governance, Risk & Compliance - Security Boulevard https://securityboulevard.com/category/blogs/governance-risk-compliance/ 32 32 133346385 The Good, the Bad, and the Politics of Biden’s Cybersecurity Order https://securityboulevard.com/2025/01/the-good-the-bad-and-the-politics-of-bidens-cybersecurity-order/ Fri, 17 Jan 2025 18:55:33 +0000 https://securityboulevard.com/?p=2043359 Biden data brokers

President Biden in the last few days of his administration issued an expansive cybersecurity EO that touched on issues like software supply chain, AI, and foreign adversaries. Many approved of the effort, though there were concerns that the incoming administration will simply shelve it.

The post The Good, the Bad, and the Politics of Biden’s Cybersecurity Order appeared first on Security Boulevard.

]]>
2043359
This is HUGE: Biden’s Cybersecurity Exec. Order — Big Parting Gift to Trump https://securityboulevard.com/2025/01/biden-cybersecurity-executive-order-richixbw/ Fri, 17 Jan 2025 18:23:39 +0000 https://securityboulevard.com/?p=2043340 Outgoing U.S. President, Joseph Robinette Biden Jr.

Wow. Just Wow: Joseph Robinette Biden Jr. hits the emergency “do something” button.

The post This is HUGE: Biden’s Cybersecurity Exec. Order — Big Parting Gift to Trump appeared first on Security Boulevard.

]]>
2043340
Advanced Persistent Threat (APT): Examples and Prevention https://securityboulevard.com/2025/01/advanced-persistent-threat-apt-examples-and-prevention/ https://securityboulevard.com/2025/01/advanced-persistent-threat-apt-examples-and-prevention/#respond Fri, 17 Jan 2025 15:11:12 +0000 https://www.legitsecurity.com/blog/advanced-persistent-threat-examples Advanced Persistent Threat (APT): Examples and Prevention

Advanced persistent threats (APTs) use sophisticated tools and techniques to breach systems and maintain access—all while remaining undetected. Unlike other cyberattacks, APTs work over an extended period, using more resources to achieve specific objectives, such as stealing sensitive data or bringing down operations.

The post Advanced Persistent Threat (APT): Examples and Prevention appeared first on Security Boulevard.

]]>
https://securityboulevard.com/2025/01/advanced-persistent-threat-apt-examples-and-prevention/feed/ 0 2043355
Cybersecurity Insights with Contrast CISO David Lindner | 01/17/25 https://securityboulevard.com/2025/01/cybersecurity-insights-with-contrast-ciso-david-lindner-01-17-25/ https://securityboulevard.com/2025/01/cybersecurity-insights-with-contrast-ciso-david-lindner-01-17-25/#respond Fri, 17 Jan 2025 14:00:00 +0000 https://www.contrastsecurity.com/security-influencers/cybersecurity-insights-with-contrast-ciso-david-lindner-01/17/25 Cybersecurity Insights with Contrast CISO David Lindner | 01/17/25

Insight No. 1: HIPAA amendments: More bureaucratic BS? 

Most media reports are hyping proposed HIPAA amendments, claiming they'll magically close security gaps. Yeah, right. Like forcing already overwhelmed healthcare providers to jump through more hoops with multifactor authentication (MFA) and encryption is going to stop determined attackers. This smells like security theater, designed to give the illusion of action while shifting blame to providers when the inevitable breaches happen. Time to call out this regulatory smokescreen and demand real solutions — say, no-fault liability for software security liabilities a la the new 2024 EU Product Liability Directive (PLD) — not just more paperwork.

The post Cybersecurity Insights with Contrast CISO David Lindner | 01/17/25 appeared first on Security Boulevard.

]]>
https://securityboulevard.com/2025/01/cybersecurity-insights-with-contrast-ciso-david-lindner-01-17-25/feed/ 0 2043342
White House Executive Order: Strengthening and Promoting Innovation in the Nation’s Cybersecurity https://securityboulevard.com/2025/01/white-house-executive-order-strengthening-and-promoting-innovation-in-the-nations-cybersecurity/ https://securityboulevard.com/2025/01/white-house-executive-order-strengthening-and-promoting-innovation-in-the-nations-cybersecurity/#respond Thu, 16 Jan 2025 17:48:07 +0000 https://www.legitsecurity.com/blog/white-house-executive-order-cybersecurity White House Executive Order: Strengthening and Promoting Innovation in the Nation’s Cybersecurity

Get details on this new cybersecurity Executive Order and its implications. 

The post White House Executive Order: Strengthening and Promoting Innovation in the Nation’s Cybersecurity appeared first on Security Boulevard.

]]>
https://securityboulevard.com/2025/01/white-house-executive-order-strengthening-and-promoting-innovation-in-the-nations-cybersecurity/feed/ 0 2043232
The DORA Deadline Is Here: But There’s Still Time to Comply https://securityboulevard.com/2025/01/the-dora-deadline-is-here-but-theres-still-time-to-comply/ https://securityboulevard.com/2025/01/the-dora-deadline-is-here-but-theres-still-time-to-comply/#respond Thu, 16 Jan 2025 15:30:00 +0000 https://insights.comforte.com/the-dora-deadline-is-here-but-theres-still-time-to-comply comforte AG - The DORA Deadline Is Here: But There’s Still Time to Comply

It’s almost time. After several years in the making, the long-awaited compliance deadline for the EU Digital Operational Resilience Act (DORA) is finally here. After Friday, January 17, non-compliant organizations serving customers inside the bloc could theoretically be hit with multimillion-euro fines. The repercussions will be felt not just within Europe, but globally.

The post The DORA Deadline Is Here: But There’s Still Time to Comply appeared first on Security Boulevard.

]]>
https://securityboulevard.com/2025/01/the-dora-deadline-is-here-but-theres-still-time-to-comply/feed/ 0 2043270
Securing generative AI: 5 action items to protect your organization https://securityboulevard.com/2025/01/securing-generative-ai-5-action-items-to-protect-your-organization/ https://securityboulevard.com/2025/01/securing-generative-ai-5-action-items-to-protect-your-organization/#respond Thu, 16 Jan 2025 15:27:03 +0000 https://www.reversinglabs.com/blog/securing-generative-ai-5-action-items-to-protect-your-organization Securing generative AI: 5 action items to protect your organization

Generative AI applications can be a rich source of opportunity for increased productivity and innovation for organizations. At the same time, they are fast becoming a headache for security teams. In a recent report, titled "The State of Attacks on GenAI," Pillar Security cautioned that "the unchecked proliferation of AI technologies without robust security measures poses significant risks."

The post Securing generative AI: 5 action items to protect your organization appeared first on Security Boulevard.

]]>
https://securityboulevard.com/2025/01/securing-generative-ai-5-action-items-to-protect-your-organization/feed/ 0 2043268
Allstate Violates Drivers’ Privacy, Texas AG Alleges https://securityboulevard.com/2025/01/allstate-arity-texas-privacy-richixbw/ Wed, 15 Jan 2025 17:37:10 +0000 https://securityboulevard.com/?p=2043031 DonkeyHotey (cc:by-sa)

Don’t Mess With Texas Privacy: “We will hold all these companies accountable,” rants state attorney general Ken Paxton (pictured).

The post Allstate Violates Drivers’ Privacy, Texas AG Alleges appeared first on Security Boulevard.

]]>
2043031
Critical Infrastructure Seeing Benefits of Government Program, CISA Says https://securityboulevard.com/2025/01/critical-infrastructure-seeing-benefits-of-government-program-cisa-says/ Tue, 14 Jan 2025 12:56:52 +0000 https://securityboulevard.com/?p=2042888 critical, infrastructure, threats, cybersecurity energy infrastructure CISA NSA

CISA in two years has seen the number of critical infrastructure organizations signing up for its CPG services double, which has improved the overall security in most sectors, but more needs to be done to strengthen what has become a target adversarial state-sponsored threat groups.

The post Critical Infrastructure Seeing Benefits of Government Program, CISA Says appeared first on Security Boulevard.

]]>
2042888
HHS Proposes Major Overhaul of HIPAA Security Rule in the Wake of Change Healthcare Breach  https://securityboulevard.com/2025/01/hhs-proposes-major-overhaul-of-hipaa-security-rule-in-the-wake-of-change-healthcare-breach/ Mon, 13 Jan 2025 20:15:39 +0000 https://securityboulevard.com/?p=2042795 healthcare, breach, organizations, healthcare, cybersecurity healthcare UnitedHealth CISO

The new rules come in the wake of the Change Healthcare breach, which exposed the electronic personal health information of about 100 million Americans.

The post HHS Proposes Major Overhaul of HIPAA Security Rule in the Wake of Change Healthcare Breach  appeared first on Security Boulevard.

]]>
2042795