mastouille.fr est l'un des nombreux serveurs Mastodon indépendants que vous pouvez utiliser pour participer au fédiverse.
Mastouille est une instance Mastodon durable, ouverte, et hébergée en France.

Administré par :

Statistiques du serveur :

672
comptes actifs

#riskmanagement

3 messages3 participants0 message aujourd’hui

Are your defenses ready for the quantum future?

Quantum computing and cybersecurity are on a collision course—and it's time to start thinking about the impacts it will have on your organization.

Check out our latest blog to learn what quantum computing means for your organization, the NIST standards, how to protect your data, and what steps to take right now to stay ahead of the curve.

Read more: lmgsecurity.com/quantum-comput

quantum computing and cybersecurity image
LMG SecurityQuantum Computing and Cybersecurity: How to Secure the Quantum Future | LMG SecurityQuantum computing and cybersecurity are colliding—are you ready? Learn how emerging quantum threats could break today’s encryption and how to stay secure in a post-quantum world.

As we look ahead to Infosecurity Europe, we’re also taking a moment to look back — just a bit more — on what made #RSAC2025 such a powerful event.

🎙️ In this Brand Story conversation recorded on the show floor, I met once more with Steve Schlarman, to hear the Archer Integrated Risk Management perspective on the current state and future direction of #risk, #compliance, and #AI in #cybersecurity.

💡 From regulatory complexity and AI-driven policy generation to the challenge of translating risk data into business decisions — this episode is packed with grounded insights and real-world applications.

▶️ Watch the video: youtu.be/7c6kKbwlfgE

🎧 Listen to the podcast: brand-stories-podcast.simpleca

📝 Read the article: itspmagazine.com/their-stories

🙏 And once again — a huge thank you to Archer for sponsoring our #RSAC 2025 coverage and helping us bring conversations like this to life.

🎧 Missed any of our RSAC 2025 episodes? Catch them all here: itspmagazine.com/rsac25

🎯 Want to meet us at Infosecurity Europe and tell your story with ITSPmagazine? 👉 itspmagazine.com/infosec25 or just DM me (Marco Ciappelli) or Sean Martin, CISSP

🎙️ When AI writes code, builds models, and simulates threats… who checks the checker?

In this last On Location Conversation from #RSAC2025, Alex Kreilein and John Sapp Jr. join Sean Martin, CISSP to explore what trust actually means in the age of AI-generated security tooling — and how modern #AppSec teams must rethink validation, #resiliency, and #risk.

This episode cuts deep into:

Why “trust the output” is not enough in AI-driven workflows
How #AI security debt is becoming the new tech debt
Why we need #zerotrust thinking applied to models and agents
The real shift: from patching CVEs to building resilient architecture
The role of traceability, governance, and context-driven decision-making

If you’re serious about secure AI, application security, and shifting AppSec left (the right way), this conversation will challenge what you think you know — and help reframe what secure development actually looks like.

🎥 Watch the full video:
👉 youtu.be/kJdQz9LmT6s

🎧 Listen to the audio podcast:
👉 eventcoveragepodcast.com/episo

✨ Thank you to our Full Coverage Sponsors:
ThreatLocker 👉 itspm.ag/threatlocker-r974
Akamai Technologies 👉 itspm.ag/akamailbwc
BLACKCLOAK 👉 itspm.ag/itspbcweb
SandboxAQ 👉 itspm.ag/sandboxaq-j2en
Archer Integrated Risk Management 👉 itspm.ag/rsaarchweb
ISACA 👉 itspm.ag/isaca-96808
Object First 👉 itspm.ag/object-first-2gjl
Edera 👉 itspm.ag/edera-434868

🎙️ Explore more RSAC 2025 coverage:
👉 itspmagazine.com/rsa-conferenc

🎧 Catch all of our event conversations:
👉 itspmagazine.com/technology-an

🎤 Want to tell your Brand Story Briefing as part of our coverage?
👉 itspm.ag/evtcovbrf

📆 Want Sean Martin, CISSP and Marco Ciappelli to cover your event or moderate your panel?
👉 itspmagazine.com/contact-us

Two editorials from #RSAC today + then 2 written recaps, one by Sean Martin, CISSP and one by Marco Ciappelli and we will call the #RSAC adventure off!
Or will we ... 😬?!

🎙️ How do cybersecurity leaders balance innovation, real business needs, and practical risk management in today’s evolving landscape?

In this On Location Conversation from #RSAC2025, Phillip Miller, MA, CISSP, joins Sean Martin, CISSP to offer a candid and grounded perspective on what’s working — and what’s missing — inside today’s enterprise security strategies.

Miller shares lessons from stepping away from a traditional #CISO seat to work hands-on with startups, and why closing the door on emerging technology vendors might cost organizations more than they realize.

He dives into:
Shifting buying conversations to empower security teams
Looking beyond legacy providers to marketplace ecosystems
Leading with business risks before chasing technology solutions
Building better teams and third-party risk management programs

Catch the full conversation to hear why peer discussions at events like RSAC aren’t just valuable — they’re critical to keeping security leadership connected to real innovation.

🎥 Watch the full video:
👉 youtu.be/8Y6gNHHpvyI

🎧 Listen to the audio podcast:
👉 eventcoveragepodcast.com/episo

✨ Thank you to our Full Coverage Sponsors:
ThreatLocker 👉 itspm.ag/threatlocker-r974
Akamai Technologies 👉 itspm.ag/akamailbwc
BLACKCLOAK 👉 itspm.ag/itspbcweb
SandboxAQ 👉 itspm.ag/sandboxaq-j2en
Archer Integrated Risk Management 👉 itspm.ag/rsaarchweb
ISACA 👉 itspm.ag/isaca-96808
Object First 👉 itspm.ag/object-first-2gjl
Edera 👉 itspm.ag/edera-434868

🛰️ Resources:
Learn more and catch more stories from RSA Conference 2025:
👉 itspmagazine.com/rsa-conferenc

Catch all of our event coverage:
👉 itspmagazine.com/technology-an

Want to tell your Brand Story Briefing as part of our event coverage?
👉 itspm.ag/evtcovbrf

Want Sean and Marco to be part of your event or conference?
👉 itspmagazine.com/contact-us

🎙️ Ready for a mindset shift? 🤯

In this On Location Briefing from #RSAC2025, we catch up with one of the industry’s leading voices on risk-based security, Richard Seiersen, for an insightful discussion you won’t want to miss!

🚀 New Briefing from #RSAC 2025: This Is What Happens When Security Stops Chasing Threats and Starts Managing Risk

At RSA Conference 2025, Sean Martin, CISSP caught up with Rich Seiersen, Chief Risk Technology Officer at Qualys, to talk about why simply chasing threats isn’t enough — and why risk-based security is the future.

🔐 How can organizations rethink their priorities to focus on what truly matters in cybersecurity?

Find out how Qualys is helping companies shift from reactive defense to proactive, risk-driven security strategies.

🎙️ Watch, listen, or read the full conversation here:
👉 itspmagazine.com/their-stories

📌 Learn more about Qualys’ work:
👉 itspmagazine.com/directory/qua

🛰️ See all our RSAC 2025 coverage:
👉 itspmagazine.com/rsac25

🌟 Discover more Brand Stories and Briefings from innovative companies:
👉 itspmagazine.com/brand-story

🎥🎙️ This is just one of the many incredible conversations we recorded On Location in San Francisco, as Sean Martin and Marco Ciappelli covered the event as official media partners for the 11th year in a row.

Stay tuned for more Brand Stories, Briefings, and candid conversations from RSAC 2025!

🎤 Looking ahead:
If your company would like to share your story with our audiences On Location, we’re gearing up for Infosecurity Europe in June and Black Hat USA in August!

⚡ RSAC 2025 sold out fast — we expect the same for these next events.
🎯 Reserve your full sponsorship or briefing now: itspmagazine.com/purchase-prog

ITSPmagazineThis is what Happens When Security Stops Chasing Threats and Starts Managing Risk | A Brand Story with Rich Seiersen from Qualys | An On Location RSAC Conference 2025 Brand Story — ITSPmagazine | Broadcasting Ideas. Connecting Minds.™Richard Seiersen, Chief Risk Technology Officer at Qualys, introduces the concept of a Risk Operations Center—a transformative shift from traditional threat-focused security operations to a model centered on managing business value and reducing risk at scale. In this episode, he explains how organiz

One more On Location recording — this time, we’re exploring a shift in the compliance mindset!

🚀 New Brand Story from #RSAC2025: From Overhead to Advantage — Turning #Compliance into a Strategic Asset

At #RSAC Conference 2025, Sean Martin, CISSP sat down with Steve Schlarman, Senior Director of Product Management at Archer Integrated Risk Management, to explore a powerful shift in mindset: treating compliance not as a burden, but as a #business advantage.

🔐 How can companies turn regulatory requirements into strategic opportunities that fuel growth, #resilience, and competitive edge?

Find out how #Archer is helping organizations evolve their risk and compliance programs to meet the future head-on.

🎙️ Watch, listen, or read the full story here:
👉 itspmagazine.com/their-stories

📌 Learn more about Archer’s work:
👉 itspmagazine.com/directory/arc

🛰️ See all our RSAC 2025 coverage:
👉 itspmagazine.com/rsac25

🌟 Discover more Brand Stories from innovative companies:
👉 itspmagazine.com/brand-story

🎥🎙️ This is just one of the many incredible conversations we recorded On Location in San Francisco, as Sean Martin and Marco Ciappelli covered the event as official media partners for the 11th year in a row.

Stay tuned for more Brand Stories, Briefings, and candid conversations from RSAC 2025!

🎤 Looking ahead:
If your company would like to share your story with our audiences On Location, we’re gearing up for Infosecurity Europe in June and Black Hat USA in August!
⚡ RSAC 2025 sold out fast — we expect the same for these next events.
🎯 Reserve your full sponsorship or briefing now: itspmagazine.com/purchase-prog

📲 Hashtags:
#cybersecurity #infosec #infosecurity #technology #tech #society #business #compliance #riskmanagement #strategicrisk #archer

ITSPmagazineFrom Overhead to Advantage: Turning Compliance into a Strategic Asset | A Brand Story with Steve Schlarman from Archer | An On Location RSAC Conference 2025 Brand Story — ITSPmagazine | Broadcasting Ideas. Connecting Minds.™Steve Schlarman, Senior Director of Product Management at Archer, shares how the new Archer Evolve platform is transforming compliance and risk management from a manual, reactive burden into a streamlined, AI-enhanced business enabler. Discover how quantifying risk and automating regulatory processe
A répondu dans un fil de discussion

@elementary tl;dr I support your objectives, and kudos on the goal, but I think you should monitor this new policy for unexpected negative outcomes. I take about 9k characters to explain why, but I’m not criticizing your intent.

While I am much more pragmatic about my stance on #aicoding this was previously a long-running issue of contention on the #StackExchange network that was never really effectively resolved outside of a few clearly egregious cases.

The triple-net is that when it comes to certain parts of software—think of the SCO copyright trials over header files from a few decades back—in many cases, obvious code will be, well…obvious. That “the simplest thing that could possibly work” was produced by an AI instead of a person is difficult to prove using existing tools, and false accusations of plagiarism have been a huge problem that has caused a number of people real #reputationalharm over the last couple of years.

That said, I don’t disagree with the stance that #vibecoding is not worth the pixels that it takes up on a screen. From a more pragmatic standpoint, though, it may be more useful to address the underlying principle that #plagiarism is unacceptable from a community standards or copyright perspective rather than making it a tool-specific policy issue.

I’m a firm believer that people have the right to run their community projects in whatever way best serves their community members. I’m only pointing out the pragmatic issues of setting forth a policy where the likelihood of false positives is quite high, and the level of pragmatic enforceability may be quite low. That is something that could lead to reputational harm to people and the project, or to community in-fighting down the road, when the real policy you’re promoting (as I understand it) is just a fundamental expectation of “original human contributions” to the project.

Because I work in #riskmanagement and #cybersecurity I see this a lot. This is an issue that comes up more often than you might think. Again, I fully support your objectives, but just wanted to offer an alternative viewpoint that your project might want to revisit down the road if the current policy doesn’t achieve the results that you’re hoping for.

In the meantime, I certainly wish you every possible success! You’re taking a #thoughtleadership stance on an important #AIgovernance policy issue that is important to society and to #FOSS right now. I think that’s terrific!