Security Think Tank: Effective DevSecOps requires collaboration

It’s tempting to view application security as the domain of the IT security team, but this is too narrow for today’s organisation, not least because any vulnerabilities that are exploited are likely to cause disruption across several business operations. In contrast, an integrated risk management philosophy and DevSecOps approach views risk from an enterprise […]

Read more
Use ISO/TS 22317:2021 to shape your business impact analysis

One of the most important activities to perform in the course of preparing business continuity and technology disaster recovery plans is the business impact analysis. A business impact analysis (BIA) identifies and analyzes business processes and activities to determine the impact on an organization if it cannot perform those activities due to disaster or […]

Read more
Mitigation should sustain datacentre operations during extreme heat

Tuesday 19 July 2022 was the hottest day ever recorded in the UK, peaking at an unprecedented 40.3ºC in Coningsby, Lincolnshire. Reports of datacentre cooling system failures at Google and Oracle swiftly followed. But while hot weather exacerbates operational challenges, datacentres worldwide have been designed for locations that regularly experience much more extreme conditions, […]

Read more
Google debuts open source bug bounty programme

Google has added a strand to its stable of vulnerability rewards programmes (VRPs) with the launch of a dedicated open source software (OSS) track that will reward hackers who disclose bugs in Google’s open source projects. Its existing VRP programmes date back to 2010 and have collectively rewarded over 13,000 submissions with pay-outs of […]

Read more
Norway has NOK200m plan to bolster cyber defences

Norway has increased its digital defence spending to buttress the country’s critical IT infrastructure against a heightened risk of state-sponsored cyber attacks from Russia. The elevated threat level, which follows an uptick in cyber attacks and updated security situational assessments, is linked to Norway’s military and trade support for Ukraine. Russia’s ongoing invasion of […]

Read more
NHS staff fall further behind amid ransomware attack

Although some NHS bodies have recovered the services that were affected by the 4 August ransomware attack on the systems of software supplier Advanced, multiple products remain offline and are likely to take much longer than hoped to be restored, leaving many organisations reliant on pen and paper-based systems, to the detriment of patient […]

Read more
Quantum computing: Industrial opportunities

The latest McKinsey Tech Trends 2022 outlook report notes that the biggest uncertainty facing quantum technologies is the time-frame in which error-corrected quantum computers will be developed. Despite research advances in the past few years, McKinsey’s research reports that quantum technologies remain nascent and have garnered less attention than more mature technologies. But despite […]

Read more