After a two-year hiatus, Cisco Live 2022 Melbourne is back! Personally, it will be a special experience, attending with my team and leaders for the first time as the Asia Pacific Cybersecurity Lead. I will be speaking on the “Top Priorities for IT and Security Leaders in 2023” on 7 December at the Cisco Secure Insights Live, covering key priorities for security leaders as we … [Read more...] about ALL IN at Cisco Live 2022 Melbourne: Building Security Resilience for the Modern Enterprise
modern
Top 3 SIEM Requirements for Modern, Agile Security Teams
Regardless of economic conditions, IT usually operates under an axiom no one in business ever likes to hear: “We have to do more with less.” Doing more with less is essentially the default position for IT, but when it comes to security operations, that position can have real consequences.People, tools, policies, and procedures are considered vital aspects of building a … [Read more...] about Top 3 SIEM Requirements for Modern, Agile Security Teams
APM is Legacy. Distributed Tracing is for Modern Teams
Some background. Having implemented at least 20 or more APM systems in production as an end-user at various companies, and both deployed and managed countless monitoring tools outside APM, I understand the role of the practitioner.Later on, I shifted to Gartner and led the APM Magic Quadrant for four years, finally spending another four years at AppDynamics (operating under … [Read more...] about APM is Legacy. Distributed Tracing is for Modern Teams
The Easy Solution for Stopping Modern Attacks
Modern cyberattacks are multifaceted, leveraging different tools and techniques and targeting multiple entry points. As noted in the CrowdStrike 2022 Global Threat Report, 62% of modern attacks do not use traditional malware and 80% of attacks use identity-based techniques, meaning that attacks target not only endpoints, but also cloud and identity layers with techniques that … [Read more...] about The Easy Solution for Stopping Modern Attacks
Modern Approaches to Logging with Go
The Go ecosystem has long relied on the use of third-party libraries for logging. Logrus, one of the first leveled, structured logging libraries, is now maintenance-only and its developers recommend migrating to other libraries. At CrowdStrike, we relied heavily on Logrus and recently underwent an overhaul to implement a more modern approach to logging. In evaluating our … [Read more...] about Modern Approaches to Logging with Go
Modern Approaches to Logging with Golang
The Golang ecosystem has long relied on the use of third-party libraries for logging. Logrus, one of the first leveled, structured logging libraries, is now maintenance-only and its developers recommend migrating to other libraries. At CrowdStrike, we relied heavily on Logrus and recently underwent an overhaul to implement a more modern approach to logging. In evaluating our … [Read more...] about Modern Approaches to Logging with Golang
TellYouThePass Ransomware Analysis Reveals Modern Reinterpretation Using Golang
TellYouThePass ransomware, discovered in 2019, recently re-emerged compiled using Golang Golang’s popularity among malware developers makes cross-platform development more accessible TellYouThePass ransomware was recently associated with Log4Shell post-exploitation, targeting Windows and Linux The CrowdStrike Falcon® platform protects customers from Golang-written … [Read more...] about TellYouThePass Ransomware Analysis Reveals Modern Reinterpretation Using Golang
How to Build a Modern Mentorship in Cybersecurity
Career planning in the cybersecurity industry can be a double-edged sword. On one hand, there is no typical or structured course to follow, which can make it difficult for people to find their way forward. On the other, the explosive growth and constant evolution within the field presents virtually limitless possibilities. The question is: Without a roadmap to follow, how can … [Read more...] about How to Build a Modern Mentorship in Cybersecurity
The Modern Security Operation Center
Every organization regardless of size, budget or area of focus should have some form of a security operation center (SOC). When I use the term “Security Operations Center”, many people imagine a dedicated team with expensive tools and a room full of monitors. That image can be a SOC, but it is not always the case. A SOC can just be one person or multiple groups of people spread … [Read more...] about The Modern Security Operation Center
A Conversation on Zero Trust for the Modern World
Insights from Cisco VP/GM of Zero Trust and Duo, Ash Devata I recently had a conversation with Cisco’s VP/GM of Zero Trust and Duo, Ash Devata, who knows more than a thing or two about zero trust. Ash joined Cisco in 2018 via Cisco’s acquisition of Duo Security. Duo is the leading provider of multi-factor authentication (MFA) and zero trust for the workforce, … [Read more...] about A Conversation on Zero Trust for the Modern World