Good morning everyone, or I should say boa tarde as I write this newsletter from Sao Paulo, Brazil. As promised from last week, I wrote a more expansive post on the Usenix Enigma conference - Closing the Gap Between Security and Usability.
It was a top-notch event all around, capped off with the second BeyondCorpSF Happy Hour that brought together a solid group of folks eager to share their own thoughts on the future of Zero Trust security architectures. Be sure to join the SF or the recently launched Austin Meetup groups for updates on upcoming events.
Here are a few things that caught my eye this week.
How Google Took on Mirai [KrebsOnSecurity]
One of the most popular talks at the Enigma conference was from Damian Menscher, SRE at Google. He spoke about DDoS mitigation, and what Google is doing to support those at risk. Brian Krebs gives thanks to him and Google for bringing his site into Project Shield.
Tidal Forces: Software as a Service is the New Back Office [Securosis Blog]
Rich Mogull writes about another tidal force - SaaS applications. A key takeaway is that a Zero Trust architecture with centralized security will be the norm, but we’re still missing consistent security controls.
Talking Cybersecurity From A Risk Management Point of View [DarkReading]
An interview with David Mahon, CSO at CenturyLink reveals how the role has changed as security becomes more business critical. What was once a purely technical role is now focused on risk assessment that the C-Suite can understand and adapt to.
Intercontinental Hotels Confirms Credit Card Breach [ThreatPost]
Another high profile breach made headlines, this time the result of malware found on servers that processed payment cards. Details are still emerging, but it points to a larger trend targeting the hospitality industry through sophisticated social engineering methods.
RSA 2017: The Internet of Things security threat [CSO Online]
Next week is the RSA Conference, which I’m sure will be action packed as always. Tim Greene shares a look at what to expect, with a focus on the security threats from the rise of low cost, high volume connected devices.
For those attending RSA who may want a break from the main conference, Google is hosting a satellite event nearby on Tuesday and Wednesday. The talks are all relevant to BeyondCorp, with our very own Paul Querna joining a panel discussion on Identity and Access. Be sure to RSVP here.
That does it for this week. Check back this time next week for another set of relevant news, articles, and events. Cheers,
Ivan at ScaleFT