CISA’S Jen Easterly: Federal Cloud Security Must Evolve to Thwart Modern Threats

In a decisive move to bolster cloud security, CISA unveiled Binding Operational Directive 25-01, targeting vulnerabilities that expose federal civilian agencies to cyber threats. “Recent cybersecurity incidents highlight the significant risks posed by misconfigurations and weak security controls, which attackers can use to gain unauthorized access, exfiltrate data, or disrupt services,” said CISA Director Jen … Read more

The Grand Jury Says: Get Cyber Insurance

The San Diego County Civil Grand Jury exists to “represent the citizens of San Diego County by investigating, evaluating, and reporting on the actions of local government and special districts.” Its new report gauges efforts by the San Diego County Office of Education (SDCOE) and local school districts to handle cyber security and how they … Read more

Which Sectors Have the Highest and Lowest Cyber Insurance Penetration? A Survey from Sophos Has Answers

The energy, oil/gas and utilities sector has the highest level of cyber insurance coverage, with 97% of surveyed organizations reporting policies (most of them standalone.) The lowest adoption of cyber security coverage is found in the “Central/federal government” and IT, tech and telecom sectors. To be sure, even with the lowest penetration, these two sectors … Read more

NuHarbor’s SLED Cybersecurity Report Unveils Trends and Strategies

NuHarbor Security, a managed security provider, has unveiled the second annual edition of the SLED Cybersecurity Priorities Report (CPR), shedding light on the often overlooked state, local, and education (SLED) organizations in the cybersecurity landscape. The report delves into the challenges and innovations within the SLED community. This report features insights from interviews with prominent … Read more

Feds Push Cyber Insurance for Healthcare Industry

The HHS 405(d) Program (see below) is an industry group supported by the U.S. Department of Health and Human Services (HHS) that is attempting to improve cyber security in the health industry. See examples of its resources and projects here. (We’ve reported numerous stories on cyber insurance for healthcare organizations and hospitals.) The HHS program … Read more