Posts

Showing posts with the label IT

How CISOs Can Successfully Talk Security to CEOs

Image
It would be funny, if it were not so frustrating, that two individuals so intent on managing risk don’t understand one another. But that is the fundamental problem between business and security leaders. The gap is so huge that bridging it may seem nearly impossible. Yet, it can be done. Here’s some much-needed illumination on why previous attempts to close the gap have resulted in bridges to nowhere—and how to fix that. Understanding the C-level Perspective “The fact that cybersecurity is a board issue is yesterday’s news,” said Nik Whitfield, CEO of Panaseer, a cybersecurity data analytics company. “While there is lots of data available, the puzzle that CISOs are trying to solve is how to bring this information together to show the board the picture they need to see.” It’s like both sides are speaking a different language. The first step in effectively communicating with the CEO and board is to understand their risk language. “As a CEO, my key concerns are growing the

Amazon launches cloud SSO service for managing multiple AWS accounts

Image
The new AWS Single Sign-On service will make it easier for business users to centrally manage access to applications and accounts. On Thursday, Amazon Web Services (AWS) announced AWS Single Sign-On (SSO), a new cloud SSO service that will make it easier for users to manage multiple AWS accounts with a single set of credentials. According to a  press release , users will be able to sign in to a central portal using their existing corporate credentials. From there, they can access and manage all of their accounts and applications in one place. The tool also works with Microsoft Active Directory (AD), so users will be able to authenticate with their AD credentials. Through AD, admins can manage SSO access and permissions for users and groups in their directory as well. "For instance, you can grant the DevOps AD group access to your production AWS accounts. When you add users to this group, they are granted access to your production AWS accounts automatically. This m