How Government Institutions Can Manage Cyber Insurance Increases

How Government Institutions Can Manage Cyber Insurance Increases Growing trends and recent news have shocked the cyber insurance system. With cost and coverage changes, government institutions are simply seeking to attain reasonably affordable cyber insurance. This blog summarizes a spirited debate amongst subject matter experts on the topic in January 2023. Contributors include a former .gov […]

Managed Security Services Improve Security & Your Team’s Value

Managed Security Services Improve Security & Your Team’s Value The Power of MSSPs When I was leading technology organizations, one of the most critical and valuable partner vendor relationships was with our managed security service provider (MSSP). They served in three capacities: Around-the-clock 24/7/365 monitoring for malicious activity, including proactive threat hunting. Served as the […]

Defuse the Technical Debt Time Bomb

Defuse the Technical Debt Time Bomb While it has certainly been in the news more often lately, technical debt has been a challenge for organizations since the days of vacuum tubes.  Other than the recent air travel examples in the last few months, there is a constant stream of articles about health care providers, colocation […]

The Pros and Cons of Threat Hunting

The Pros and Cons of Threat Hunting Assuming Breach Stealthy supply chain attacks like Solorigate and Log4j have shined a light on the importance of assuming breach. When these attacks hit the news, vendors and analysts often suggest to “hunt for Indicators of Compromise.” IT and security pros spend nights and weekends determining the extent […]

Evolve Your Cloud Vendor Management Program

Evolve Your Cloud Vendor Management Program Having an active and intentional vendor management program has always been important for a technology team. With the introduction of cloud, SaaS, laaS, and all the other flavors of “as a Service” offerings, this program has become even more critical. While the cloud offers significant benefits and provides a far more robust […]

Nonprofit IT Executives Talking Azure

Nonprofit IT Executives Talking Azure In a recent case study about his organization’s journey to the Microsoft cloud, a nonprofit leader stated, “Technology can be the great equalizer.” That evidence was again on display in a recent panel hosted by Microsoft and eGroup | Enabling. Panelists included IT leaders representing four non-profit organizations, with topics ranging […]

Using Regular Expressions to Build a Microsoft Purview Custom Sensitive Information Type

Using Regular Expressions to Build a Microsoft Purview Custom Sensitive Information Type Introduction A colleague of mine needed to create a Microsoft Purview custom Sensitive Information Type (SIT) for a client– The client wanted to use this SIT as part of their implementation of Microsoft Purview. The client needed the SIT to match on occurrences […]

Configuring Internet Facing Firewall Rules for Microsoft Teams Direct Routing

Configuring Internet Firewall Rules for Microsoft Teams Direct Routing Introduction This is the fourth in a series of articles on hardening AudioCodes Session Border Controllers (SBCs). The series is mostly following the guidance provided by AudioCodes. These configuration notes are referenced at the end of this article. These articles are components of eGroup | Enabling […]

How to Save on Sentinel’s Recurring Costs

How to Save on Sentinel’s Recurring Costs While Microsoft Sentinel is a powerful tool to identify and resolve sophisticated cyber attacks, organizations who pilot without taking preliminary steps to minimize costs might experience some sticker shock. This blog outlines some of the more obvious and subtle optimizations that are often missed. Don’t Go with Pay-As-You-Go […]

Risk Reductions – The Cloud Benefit We Don’t Talk About

Risk Reductions – The Cloud Benefit We Don’t Talk About Most cloud decisions that I have been a part of in the past, or help clients with today, are typically dominated by budget, security, functionality, and adoption considerations. While these are all extremely important, risk reductions outside the security space often go unrecognized. These other […]