Ensure Adequate Audit Log Storage Here’s a pattern that repeats in incident after incident. The investigation finally pinpoints the moment that matters, everyone goes to pull the logs for that date, and they’re gone. Not deleted by an attacker. They simply aged out, because storage was sized to hold a few weeks and the intrusion started months earlier. Control 8.3 is about making sure the evidence is still there when you finally go looking for it. This is the third piece of the...

The Financial Risk of Healthcare Non-Compliance: Why “Good Enough” Security Is No Longer Enough
by Heath Gieson For healthcare organizations, cybersecurity and compliance are no longer just IT concerns—they are material financial risks...
CIS IG1 Control 3.1: Data Management is Not a Policy Problem
by Tim Marley Over the course of my career, and particularly in the last five to ten years, the topic of data management comes up frequently....
CIS IG1 Control 2.3 — Why Unauthorized Software Is a Hidden Threat Lurking on “Trusted” Devices
Most organizations assume that corporate devices only run approved software. In reality, that assumption is often wrong. Users are inherently...
CIS IG1 Control 2.2 — Why Running Supported Software Is a Security Requirement, Not an IT Preference
Most security conversations focus on what software exists in an environment. CIS Control 2.2 pushes the conversation one step further by asking a...
CIS IG1 Spotlight: Why a Software Inventory Is More Than a Security Requirement
One of the themes we keep hitting in the CIS IG1 series is simple: you can’t protect what you don’t know you have. That’s true for hardware—and it’s...
CIS IG1 Control 1.2: Why Addressing Unauthorized Assets Matters—and How to Do It Easily
When we kicked off this series with Control 1.1: Establish and Maintain a Detailed Enterprise Asset Inventory, we focused on the Identify security...
CIS IG1 Control 1.1: Establish and Maintain a Detailed Enterprise Asset Inventory
By Heath Gieson If you don’t know what you have, how can you protect it? That simple question is why the very first control in the Center for...
CISOs’ Security Priorities: The Augmented Cyber Agenda—and How Forthright Is Leading the Way
Cybersecurity leaders are facing a rapidly evolving threat landscape. According to CSO Online’s latest Security Priorities Study , CISOs (Chief...
The Root of All Operational Problems: Misalignment Between Technology, People, and Process
By Heath Gieson What if I told you that the biggest challenges in your growing business most likely are not about money, talent, or even...













