Archive

All entries

nexus-vid_goodwin.png
Risk Management
Nexus Conference

Cristin Flynn Goodwin on the SEC Cybersecurity Rules

Cristin Flynn Goodwin, attorney and founder of Advancing Cyber, describes the U.S. Securities and Exchange Commission’s new cybersecurity rules and their…
Michael Mimoso
nexus_cisos-on-boards.jpg
Risk Management

Do U.S. Boards of Directors Have Adequate CISO Representation?

George V. Hulme
nexus_career-success.jpg
Risk Management

How to Get a Job in Cybersecurity–A Survival Guide

John Frushour
Stephen Reynolds, a partner at the law firm of McDermott, Will, and Emery, discusses the personal, criminal liability that can attach to individuals and executives during investigations, and offers some practical advice for CISOs.
Risk Management

Nexus Podcast: Protecting the CISO During Incident Investigations

Michael Mimoso
Petro and Vargas explain numerous attacks that leverage weaknesses in the protocol itself that may not be easily rectified, in addition to implementation and configuration errors, and vulnerabilities, that may be effectively mitigated with some work by vendors of readers and controllers.
Risk Management
Federal

Nexus Podcast: Bishop Fox on OSDP Vulnerabilities and Physical Security

Michael Mimoso
Jennifer Lyn Walker, Director of Infrastructure Cyber Defense for the WaterISAC, discusses the current state of cybersecurity within the water sector, and explores the disparity in security talent, technology, and funding available across the sector.
Risk Management

Nexus Podcast: Jennifer Lyn Walker on Cybersecurity Risks in the Water Sector

Michael Mimoso
The Securities and Exchange Commission's (SEC) new cybersecurity rules create concern among CISOs and security experts about what will ultimately constitute a material cyber incident.
Risk Management

CISOs Play a Critical Role in Compliance with New SEC Cybersecurity Disclosure Rules

George V. Hulme
NIS2 addresses limitations from NIS1 where some areas of improvement were needed to counter risk introduced by digital transformation and by evolving cyber threats, that exposed a lack of resilience within systems supporting businesses in the EU.
Risk Management
Cyber Resilience

Inside the EU's Toughened NIS2 Cybersecurity Directive

Roberto De Paolis
In part two of Nexus' series on vulnerability remediation and patch management challenges related to industrial automation and control systems, we cover patching challenges, downtime, and the governance and oversight required to reduce risk.
Risk Management
Industrial

IT/OT Convergence Challenges, Part 2: Vulnerability Management Course of Action to Reduce Risk

Juan Piacquadio
Tim Hall
Security leaders newly introduced to OT should have a punch list of things to familiarize themselves with before challenges become overwhelming and insurmountable.
Operational Technology
Risk Management

Cybersecurity Punch List for CISOs Securing Converged IT/OT Environments

ADM. Michael S. Rogers, USN (Ret.)
Juan Piacquadio and Tim Hall explain the need for tailored patch management and vulnerability management processes that cater to the specific requirements of OT systems.
Risk Management
Industrial

IT/OT Convergence Challenges, Part 1: Managing IACS Vulnerabilities

Juan Piacquadio
Tim Hall
Attorney Mark Rasch discusses the considerations for enterprises involved in negotiating with hackers after a ransomware attack.
Ransomware
Risk Management

Navigating Ransomware Negotiations

George V. Hulme
Latest on Nexus Podcast