Jacob Olcott is Vice President at BitSight Technologies, where he helps organizations benchmark their cybersecurity programs using quantitative metrics. Olcott speaks and writes about the role of directors, officers and executives in cyber-risk management. His paper, “The Board’s Role in Cybersecurity,” was published in 2014 by the Conference Board.
Nation-state threat actors are exploiting known vulnerabilities in VPNs and remote access products, putting unpatched organizations at risk.
The cybersecurity executive order issued by the Biden administration last week doesn’t require the relevant agencies to increase their visibility into critical infrastructure, a lingering weakness for the federal government, security experts told FedScoop. When the May 7 ransomware attack on Colonial Pipeline Co. occurred, the Cybersecurity and Infrastructure Security Agency lacked any knowledge of […]
Departments and agencies who have the responsibility for overseeing critical infrastructure often rely on information that is voluntarily shared. And the infrequency of some of this data sharing contributes to a lack of broad situational awareness.
While some sectors may have higher rates of vulnerability -- the government sector, for example, had the highest rates of vulnerable Microsoft Servers when we first started tracking the issue -- we observe organizations of all sizes in every sector that struggle to effectively manage their security performance.