25 Oct Third Party Risk Management Don’t Mistake a SOC 2 Attestation for Proof of Security January 12, 2024 By Richard Barrus A SOC 2 attestation is a report from an independent auditor, which states his or her opinion of a company’s internal security and finan... Continue reading
09 Oct InfoSec Strategies | Category - Pivot Point Security SOC 2 vs ISO 27001: The 2 Biggest Reasons to Choose One Over the Other (with Help From Bono) January 15, 2024 By Richard Barrus If customers or other stakeholders are asking you for an information security attestation (my guess is they are), which of the leading ... Continue reading
18 Sep InfoSec Strategies | Category - Pivot Point Security Leveraging Metrics to Address the “Business” of Information Security January 13, 2024 By Richard Barrus In my work I find that many CISOs are in a Catch-22 position with the businesses they protect. Often CISOs are judged on the number of ... Continue reading
11 Sep InfoSec Strategies | Category - Pivot Point Security, SIEM | Category - Pivot Point Security Goldilocks and the Three SIEMs March 16, 2023 By John Verry As someone whose SIEM experience started nearly 17 years ago with eSecurity, Network Intelligence and Protego Networks, I find the rece... Continue reading
28 Aug ISO 27001 Certification | Category - Pivot Point Security SOC 2 and ISO 27001 Dual Implementation: Does It Make Sense for Your Business? January 15, 2024 By Richard Barrus Recently we have been seeing a lot of interest among clients and prospective clients in working towards SOC 2 attestation and ISO 27001... Continue reading