-
Privacy & Compliance
Apr 20, 2018
Another GDPR Gotcha: HR and Employee Data
Have I mentioned recently that if you’re following the usual data security standards (NIST, CIS Critical Security Controls, PCI DSS, ISO 27001) or common sense infosec principles (PbD), you shouldn’t have to expend much effort to comply with the General Data Protection Regulation (GDPR)? I still stand by this claim.
Michael Buckbee
3 min read
-
Data Security
Apr 17, 2018
Verizon 2018 DBIR: Phishing, Stolen Passwords, and Other Cheap Tricks
Like the rest of the IT security world last week, I had to stop everything I was doing to delve into the latest Verizon Data Breach Investigations Report. I spent some quality time with the 2018 DBIR (after drinking a few espresso), and I can sum it all up in one short paragraph.
Michael Buckbee
4 min read
-
Privacy & Compliance
Apr 12, 2018
SHIELD Act Will Update New York State’s Breach Notification Law
Those of you who have waded through our posts on US state breach notification laws know that there are few very states with rules that reflect our current tech realities. By this I mean there are only a handful that consider personally identifiable information (PII) to include internet-era identifiers, such as email addresses and passwords. And even fewer that would require a notification to state regulators when a ransomware attack occur.
Michael Buckbee
3 min read
-
Privacy & Compliance
Apr 11, 2018
What Experts Are Saying About GDPR
You did get the the memo that GDPR goes into effect next month?
Michael Buckbee
5 min read
-
Data Security
Apr 10, 2018
Women in Tech: The Anatomy of a Female Cybersecurity Leader
Cybersecurity has a gender gap.
Michael Buckbee
1 min read
-
Data Security
Mar 01, 2018
GDPR Data Protection Supervisory Authority Listing
The DPA (Data Protection Authority) is the agency within each European Union country that is responsible for GDPR (General Data Protection Regulation) assistance and enforcement.
Michael Buckbee
5 min read
-
Data Security
Dec 15, 2017
Best of the Inside Out Security Show Podcast
We’ve interviewed many privacy experts, chief data officers, security pros and learned so much about the real world. Because we’ve covered so much, I’ve curated the most popular infosec quotes so that we can revisit their sage advice and strategies. Let the ideas simmer so that we can enter the stage we’re in with a stronger vision and execute our ideas smoothly. Enjoy!
Michael Buckbee
1 min read
-
Data Security
Oct 30, 2017
Why A Honeypot Is Not A Comprehensive Security Solution
A core security principle and perhaps one of the most important lessons you’ll learn as a security pro is AHAT, “always have an audit trail”. Why? If you’re ever faced with a breach, you’ll at least know what, where, and when. And some laws and regulations require audit trails as well.
Michael Buckbee
5 min read
-
Privacy & Compliance
Oct 23, 2017
GDPR By Any Other Name: The UK’s New Data Protection Bill
Last month, the UK published the final version of a law to replace its current data security and privacy rules. For those who haven’t been following the Brexit drama now playing in London, the Data Protection Bill or DPB will allow UK businesses to continue to do business with the EU after its “divorce” from the EU.
Michael Buckbee
3 min read
-
Data Security
Oct 03, 2017
[Transcript] Ofer Shezaf and Keeping Ahead of the Hackers
This article is part of the series "[Podcast] Varonis Director of Cyber Security Ofer Shezaf". Check out the rest: Part I Part II [Transcript] Ofer Shezaf and Keeping Ahead of the Hackers
Michael Buckbee
11 min read
-
PowerShell
Aug 22, 2017
Practical PowerShell for IT Security, Part V: Security Scripting Platform Gets a Makeover
This article is part of the series "Practical PowerShell for IT Security". Check out the rest: Part I: File Event Monitoring Part II: File Access Analytics (FAA) Part III: Classification on a Budget Part IV: Security Scripting Platform (SSP) Part V: Security Scripting Platform Gets a Makeover
Michael Buckbee
11 min read
-
Data Security
Jun 28, 2017
Complete Guide to Windows File System Auditing - Varonis
Windows file system auditing is an important tool to keep in your cybersecurity forensics toolbox.
Michael Buckbee
7 min read
SECURITY STACK NEWSLETTER
Ready to see the #1 Data Security Platform in action?
Ready to see the #1 Data Security Platform in action?
“I was amazed by how quickly Varonis was able to classify data and uncover potential data exposures during the free assessment. It was truly eye-opening.”
Michael Smith, CISO, HKS
"What I like about Varonis is that they come from a data-centric place. Other products protect the infrastructure, but they do nothing to protect your most precious commodity — your data."
Deborah Haworth, CISO, Penguin Random House
“Varonis’ support is unprecedented, and their team continues to evolve and improve their products to align with the rapid pace of industry evolution.”
Al Faella, CTO, Prospect Capital