sueden.social ist einer von vielen unabhängigen Mastodon-Servern, mit dem du dich im Fediverse beteiligen kannst.
Eine Community für alle, die sich dem Süden hingezogen fühlen. Wir können alles außer Hochdeutsch.

Serverstatistik:

1,8 Tsd.
aktive Profile

#grc

0 Beiträge0 Beteiligte0 Beiträge heute
kaaswe<p>The good thing working with security is I don’t have to evolve in my role, the same slides I presented 20+ years ago still are valid…</p><p>That was irony, big time, sadly but true</p><p>Basic security hygiene is still left out in every major company, why?</p><p>One dangerous trend is that before containers, devops order a server from server team, network team assigned VLAN and IP, firewall team opening what was required as a minimum. </p><p>Now, devops team controls the tenant deploys hundreds of containers in seconds, allowing inbound Internet access with no other security than Microsoft components (if we are in Azure) and we all know that standard components are Not enough security. </p><p>This is a major problem in several ways<br>1. Too much privledge and authorities in one person, often with not enough knowledge <br>2. Lack of Asset management, after a while no one knows how many functions exists where, what they do, or how they interact.<br>3. Excessive energy consumption, despite this was one selling point, </p><p>But there are light in the tunnel, we can regain control. The tools are there, it’s “only” a matter of structure and process, bringing me back to the start of this article and what my slides contained and still contains.</p><p>Keep it up out there, and don’t give up even when it feels hopeless </p><p><a href="https://swecyb.com/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cybersecurity</span></a> <a href="https://swecyb.com/tags/grc" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>grc</span></a></p>
bsidesnova<p>Live! Laugh! Love to Hack! at <a href="https://mastodon.social/tags/BSidesNoVa" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>BSidesNoVa</span></a> in Arlington, Virginia Oct 10-11!</p><p>Submit a talk or workshop no later than 23:59 on Friday, August 15th. Like. As in. Tomorrow. OK. <br><a href="https://sessionize.com/bsidesnova-2025/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="">sessionize.com/bsidesnova-2025/</span><span class="invisible"></span></a> </p><p>Share how you Live! <a href="https://mastodon.social/tags/InfoSec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>InfoSec</span></a>, Laugh! at inefficient <a href="https://mastodon.social/tags/GRC" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>GRC</span></a> documentation, Love to Hack! all the things!</p>
Phil<p>Good lord, <a href="https://fed.bajsicki.com/tags/Vanta" rel="nofollow noopener" target="_blank">#Vanta</a><span> is so limited in features. <br><br>My self-designed system (using </span><a href="https://fed.bajsicki.com/tags/orgmode" rel="nofollow noopener" target="_blank">#orgmode</a> and <a href="https://fed.bajsicki.com/tags/orgql" rel="nofollow noopener" target="_blank">#orgql</a> and <a href="https://fed.bajsicki.com/tags/orgsuperlink" rel="nofollow noopener" target="_blank">#orgsuperlink</a><span>) can handle inventory, shadow it (via API calls to SSO vendor), risk register, regulations, compliance tracking and a bunch more. And it can work as a database for lookups.<br><br>Granted it's a little bit more demanding (a few keypresses instead of clicking on the website) but it's infinitely expandable and fully integrated across its modules (</span><a href="https://fed.bajsicki.com/tags/orgroam" rel="nofollow noopener" target="_blank">#orgroam</a><span>). <br><br>Vanta, on the other hand, does come with very simplified stuff. For SOC2, I see only 67 pre-defined risk scenarios, which are so vague as to be meaningless. <br><br>What do you mean "personnel misused assets and data is lost?" <br><br>What assets? What data? Lost in what way? <br><br>If I tried to mitigate this risk (properly) I'd spend weeks ensuring </span><i>everything</i><span> is backed up and then testing those backup systems. That's unrealistic.<br><br>But that's the kind of feel-good vagueness one can expect from vendors. They don't sell to </span><i>infosec</i>, they sell to <i>management</i><span>. <br><br>My </span><i>baseline</i><span> at the moment is &gt;200 basic risks that are split per-system, with specific steps for mitigation (and if the same risk occurs in different systems, that's a different risk since the outcomes will be different and need to be handled appropriately.)<br><br>So... why does Vanta exist, exactly? <br><br>Sure it can pull data in near-real time from </span><i>some</i><span> systems (a lot of our systems literally can't hook into it)... but that's a non-issue anyway if you just maintain your inventory a little bit each week. It's not like massive infra changes happen often.<br><br>Given that, the only answer I can think of is to pull wool over their customer's eyes and give them the impression of compliance, the impression of </span><i>less effort</i><span>, while sweeping the real security implications under the rug. <br><br>You don't get security by being vague.<br><br></span><a href="https://fed.bajsicki.com/tags/burnout" rel="nofollow noopener" target="_blank">#burnout</a> <a href="https://fed.bajsicki.com/tags/infosec" rel="nofollow noopener" target="_blank">#infosec</a> <a href="https://fed.bajsicki.com/tags/imsotired" rel="nofollow noopener" target="_blank">#imsotired</a> <a href="https://fed.bajsicki.com/tags/compliance" rel="nofollow noopener" target="_blank">#compliance</a> <a href="https://fed.bajsicki.com/tags/grc" rel="nofollow noopener" target="_blank">#grc</a></p>
Tanya Janca | SheHacksPurple :verified: :verified:<p>Great offer alert! My friend Gerald Auger from SimpleCyber has a <a href="https://infosec.exchange/tags/GRC" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>GRC</span></a> course "GRC Jumpstart: GRC Foundations in Modern Cybersecurity" and he gave me permission to share his 'Pay What You Can' Code: GRCJUMPSTARTZERO ! </p><p><a href="https://twp.ai/4iptH4" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="">twp.ai/4iptH4</span><span class="invisible"></span></a></p><p>PS If you can afford to pay the $20, please pay.</p>
bsidesnova<p>Lead a 4-hour or 8-hour <a href="https://mastodon.social/tags/Workshop" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Workshop</span></a> at our Friday, October 10th event at GMU-Mason Square in Arlington, Virginia! </p><p><a href="https://mastodon.social/tags/BSidesNoVA" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>BSidesNoVA</span></a> is the premier <a href="https://mastodon.social/tags/InfoSec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>InfoSec</span></a> &amp; <a href="https://mastodon.social/tags/DataPrivacy" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>DataPrivacy</span></a> event in Northern Virginia, don't miss your opportunity to share your knowledge, passion, and enthusiasm for topics like <a href="https://mastodon.social/tags/CTI" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>CTI</span></a>, <a href="https://mastodon.social/tags/Hacking" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Hacking</span></a>, <a href="https://mastodon.social/tags/Networking" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Networking</span></a>, <a href="https://mastodon.social/tags/Coding" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Coding</span></a>, <a href="https://mastodon.social/tags/OSINT" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>OSINT</span></a>, <a href="https://mastodon.social/tags/GRC" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>GRC</span></a>, and more.</p><p>Get it together no later than 23:59 on Friday, Aug 18th <a href="https://sessionize.com/bsidesnova-2025/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="">sessionize.com/bsidesnova-2025/</span><span class="invisible"></span></a></p>
Sean Martin 🎙️✨:verified_paw: :donor:<p>What if your GRC platform could coach your team instead of just tracking tasks?</p><p>Join Sean Martin, CISSP and Marco Ciappelli as they talk with Anders Søborg and M. Humphrey (MBA) about how E-V-E GRC is helping teams automate control evaluations, simplify third-party assessments, and build evidence-based dashboards that executives actually trust.</p><p>Real AI for real problems.</p><p>📺 Watch the full conversation: <a href="https://youtu.be/-YYDh1wgpUw" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="">youtu.be/-YYDh1wgpUw</span><span class="invisible"></span></a></p><p>🎧 Listen to the podcast: <a href="https://brand-stories-podcast.simplecast.com/episodes/solving-grc-fatigue-how-ai-is-helping-compliance-teams-do-more-with-less-an-e-v-e-grc-brand-origin-story-with-anders-sborg-co-founder-of-eve-and-mark-humphrey" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">brand-stories-podcast.simpleca</span><span class="invisible">st.com/episodes/solving-grc-fatigue-how-ai-is-helping-compliance-teams-do-more-with-less-an-e-v-e-grc-brand-origin-story-with-anders-sborg-co-founder-of-eve-and-mark-humphrey</span></a></p><p>📖 Read the blog: <a href="https://www.itspmagazine.com/their-stories/solving-grc-fatigue-how-ai-is-helping-compliance-teams-do-more-with-less-an-e-v-e-grc-brand-origin-story-with-anders-sborg-co-founder-of-eve-and-mark-humphrey" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">itspmagazine.com/their-stories</span><span class="invisible">/solving-grc-fatigue-how-ai-is-helping-compliance-teams-do-more-with-less-an-e-v-e-grc-brand-origin-story-with-anders-sborg-co-founder-of-eve-and-mark-humphrey</span></a></p><p>➤ Command Compliance: <a href="https://itspm.ag/e-v-e-i1ml" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="">itspm.ag/e-v-e-i1ml</span><span class="invisible"></span></a></p><p>➤ Learn more about E-V-E GRC: <a href="https://itspm.ag/eve-grc-99" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="">itspm.ag/eve-grc-99</span><span class="invisible"></span></a></p><p>➤ Follow E-V-E GRC on ITSPmagazine: <a href="https://www.itspmagazine.com/directory/evegrc" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">itspmagazine.com/directory/eve</span><span class="invisible">grc</span></a></p><p><a href="https://infosec.exchange/tags/grc" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>grc</span></a> <a href="https://infosec.exchange/tags/ai" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ai</span></a> <a href="https://infosec.exchange/tags/compliance" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>compliance</span></a> <a href="https://infosec.exchange/tags/audit" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>audit</span></a> <a href="https://infosec.exchange/tags/automation" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>automation</span></a></p>
Blacks In Cybersecurity HQ :verified:<p>🍎 Meet our 2025 Class of Subject Matter Ambassadors!</p><p>🗓️ Friday August 9, 2024 at 6:00 PM | LVCC 322 - 324</p><p><a href="https://infosec.exchange/tags/GRC" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>GRC</span></a> <a href="https://infosec.exchange/tags/Cybersecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Cybersecurity</span></a> <a href="https://infosec.exchange/tags/SME" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SME</span></a> <a href="https://infosec.exchange/tags/BlacksInCyber" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>BlacksInCyber</span></a> <a href="https://infosec.exchange/tags/LitLikeBIC" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>LitLikeBIC</span></a> <a href="https://infosec.exchange/tags/BlacksInCybersecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>BlacksInCybersecurity</span></a> <a href="https://infosec.exchange/tags/BIC_Village" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>BIC_Village</span></a> <a href="https://infosec.exchange/tags/AlaafiaState" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>AlaafiaState</span></a> <a href="https://infosec.exchange/tags/DEFCON33" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>DEFCON33</span></a></p>
Blacks In Cybersecurity HQ :verified:<p>🍎 Meet our 2025 Class of Subject Matter Ambassadors!</p><p>🗓️ Friday August 9, 2024 at 6:00 PM | LVCC 322 - 324</p><p><a href="https://infosec.exchange/tags/GRC" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>GRC</span></a> <a href="https://infosec.exchange/tags/Cybersecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Cybersecurity</span></a> <a href="https://infosec.exchange/tags/SME" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SME</span></a> <a href="https://infosec.exchange/tags/BlacksInCyber" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>BlacksInCyber</span></a> <a href="https://infosec.exchange/tags/LitLikeBIC" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>LitLikeBIC</span></a> <a href="https://infosec.exchange/tags/BlacksInCybersecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>BlacksInCybersecurity</span></a> <a href="https://infosec.exchange/tags/BIC_Village" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>BIC_Village</span></a> <a href="https://infosec.exchange/tags/AlaafiaState" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>AlaafiaState</span></a> <a href="https://infosec.exchange/tags/DEFCON33" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>DEFCON33</span></a></p>
Blacks In Cybersecurity HQ :verified:<p>🍎 Meet our 2025 Class of Subject Matter Ambassadors!</p><p>🗓️ Friday August 9, 2024 at 6:00 PM | LVCC 322 - 324</p><p><a href="https://infosec.exchange/tags/GRC" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>GRC</span></a> <a href="https://infosec.exchange/tags/Cybersecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Cybersecurity</span></a> <a href="https://infosec.exchange/tags/SME" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SME</span></a> <a href="https://infosec.exchange/tags/BlacksInCyber" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>BlacksInCyber</span></a> <a href="https://infosec.exchange/tags/LitLikeBIC" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>LitLikeBIC</span></a> <a href="https://infosec.exchange/tags/BlacksInCybersecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>BlacksInCybersecurity</span></a> <a href="https://infosec.exchange/tags/BIC_Village" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>BIC_Village</span></a> <a href="https://infosec.exchange/tags/AlaafiaState" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>AlaafiaState</span></a> <a href="https://infosec.exchange/tags/DEFCON33" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>DEFCON33</span></a></p>
Blacks In Cybersecurity HQ :verified:<p>🍎 Meet our 2025 Class of Subject Matter Ambassadors!</p><p>🗓️ Friday August 9, 2024 at 6:00 PM | LVCC 322 - 324</p><p><a href="https://infosec.exchange/tags/GRC" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>GRC</span></a> <a href="https://infosec.exchange/tags/Cybersecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Cybersecurity</span></a> <a href="https://infosec.exchange/tags/SME" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SME</span></a> <a href="https://infosec.exchange/tags/BlacksInCyber" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>BlacksInCyber</span></a> <a href="https://infosec.exchange/tags/LitLikeBIC" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>LitLikeBIC</span></a> <a href="https://infosec.exchange/tags/BlacksInCybersecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>BlacksInCybersecurity</span></a> <a href="https://infosec.exchange/tags/BIC_Village" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>BIC_Village</span></a> <a href="https://infosec.exchange/tags/AlaafiaState" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>AlaafiaState</span></a> <a href="https://infosec.exchange/tags/DEFCON33" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>DEFCON33</span></a></p>
january1073<p>Cheating Permitted? German Federal Court of Justice Rules on ‘Action Replay II’<br><a href="https://medium.com/@january1073/cheating-permitted-german-federal-court-of-justice-rules-on-action-replay-ii-b1e8e051107c" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">medium.com/@january1073/cheati</span><span class="invisible">ng-permitted-german-federal-court-of-justice-rules-on-action-replay-ii-b1e8e051107c</span></a><br><a href="https://infosec.exchange/tags/cheating" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cheating</span></a> <a href="https://infosec.exchange/tags/software" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>software</span></a> <a href="https://infosec.exchange/tags/grc" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>grc</span></a></p>
Tanya Janca | SheHacksPurple :verified: :verified:<p>Great offer alert! My friend Gerald Auger from SimpleCyber has a <a href="https://infosec.exchange/tags/GRC" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>GRC</span></a> course "GRC Jumpstart: GRC Foundations in Modern Cybersecurity" and he gave me permission to share his 'Pay What You Can' Code: GRCJUMPSTARTZERO ! </p><p><a href="https://twp.ai/4ioINY" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="">twp.ai/4ioINY</span><span class="invisible"></span></a></p><p>PS If you can afford to pay the $20, please pay.</p>
XTROVERSO.COM<p>Dutch entrepreneurs: the Supreme Court just ruled that “I didn’t know” won’t save you from VAT fines. Ignorance = gross negligence. Read before it hits you. </p><p><a href="https://www.xtroverso.com/blog/governance-11/vat-fines-are-coming-for-you-513" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">xtroverso.com/blog/governance-</span><span class="invisible">11/vat-fines-are-coming-for-you-513</span></a> </p><p><a href="https://mastodon.social/tags/business" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>business</span></a> <a href="https://mastodon.social/tags/markets" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>markets</span></a> <a href="https://mastodon.social/tags/government" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>government</span></a> <a href="https://mastodon.social/tags/fine" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>fine</span></a> <a href="https://mastodon.social/tags/tax" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>tax</span></a> <a href="https://mastodon.social/tags/fiscal" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>fiscal</span></a> <a href="https://mastodon.social/tags/fiscality" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>fiscality</span></a> <a href="https://mastodon.social/tags/netherlands" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>netherlands</span></a> <a href="https://mastodon.social/tags/dutch" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>dutch</span></a> <a href="https://mastodon.social/tags/court" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>court</span></a> <a href="https://mastodon.social/tags/law" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>law</span></a> <a href="https://mastodon.social/tags/sentence" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>sentence</span></a> <a href="https://mastodon.social/tags/vat" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>vat</span></a> <a href="https://mastodon.social/tags/money" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>money</span></a> <a href="https://mastodon.social/tags/governance" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>governance</span></a> <a href="https://mastodon.social/tags/compliance" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>compliance</span></a> <a href="https://mastodon.social/tags/risk" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>risk</span></a> <a href="https://mastodon.social/tags/GRC" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>GRC</span></a> <a href="https://mastodon.social/tags/xtroverso" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>xtroverso</span></a> <a href="https://mastodon.social/tags/philosophy" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>philosophy</span></a> <a href="https://mastodon.social/tags/news" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>news</span></a></p>
Morpheus Being<p><a href="https://aus.social/tags/Energy" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Energy</span></a> <a href="https://aus.social/tags/RenewableEnergy" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>RenewableEnergy</span></a> <a href="https://aus.social/tags/Australia" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Australia</span></a> <a href="https://aus.social/tags/DarlingDowns" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>DarlingDowns</span></a> <a href="https://aus.social/tags/Beebo" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Beebo</span></a> <a href="https://aus.social/tags/GRC" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>GRC</span></a></p><p>Bring it on. What a boost for local jobs!</p><p><a href="https://reneweconomy.com.au/china-solar-giant-jinko-seeks-federal-approval-for-massive-pv-and-battery-project-in-queensland/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">reneweconomy.com.au/china-sola</span><span class="invisible">r-giant-jinko-seeks-federal-approval-for-massive-pv-and-battery-project-in-queensland/</span></a></p>
J. R. DePriest :verified_trans: :donor: :Moopsy: :EA DATA. SF:<p>On a call at work with our GRC folks and he dropped some wisdom.</p><blockquote><p>If you have a policy without enforcement, what you have is a suggestion.</p></blockquote><p>The moment was ruined when people on my team started extolling the benefits of negative reinforcement and downplaying positive.</p><p>Dude; there's room for both.</p><p><a href="https://infosec.exchange/tags/GRC" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>GRC</span></a> <a href="https://infosec.exchange/tags/InfoSec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>InfoSec</span></a></p>
Paul Reynolds :verified:<p>Today’s risks don’t sit in silos - so why is your risk management strategy still acting like they do?</p><p>From AI and cyber threats to third-party dependencies and cloud misconfigurations, risks in 2025 are interconnected, fast-moving, and deeply complex. </p><p>Yet too many organisations still treat them like isolated events. That’s not just outdated - it’s dangerous.</p><p>In our latest post, we explore:</p><p>👽 Why modelling risk relationships matters more than ever<br>👽 How scenario planning is evolving with AI and quantum-powered analytics<br>👽 The shift from compliance to strategic risk management<br>👽 And how advanced GRC platforms and third-party risk tools are transforming ERM into a true business enabler</p><p>Whether you're building resilience or unlocking opportunity, risk strategy in 2025 must be integrated, contextual, and forward-looking.</p><p>Ready to upgrade your enterprise risk posture?</p><p>Read the full post here: <a href="https://paulreynolds.uk/top-enterprise-risk-management-trends/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">paulreynolds.uk/top-enterprise</span><span class="invisible">-risk-management-trends/</span></a> or get in touch for support on ISO 27001, cyber assessments, and GRC frameworks that actually work.</p><p><a href="https://infosec.exchange/tags/ERM" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ERM</span></a> <a href="https://infosec.exchange/tags/CyberSecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>CyberSecurity</span></a> <a href="https://infosec.exchange/tags/RiskManagement" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>RiskManagement</span></a> <a href="https://infosec.exchange/tags/GRC" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>GRC</span></a> <a href="https://infosec.exchange/tags/AI" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>AI</span></a> <a href="https://infosec.exchange/tags/ISO27001" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ISO27001</span></a> <a href="https://infosec.exchange/tags/ThirdPartyRisk" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ThirdPartyRisk</span></a> <a href="https://infosec.exchange/tags/ProtectWhatMatters" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ProtectWhatMatters</span></a></p>
Sean Martin 🎙️✨:verified_paw: :donor:<p>What’s Heating Up Before Black Hat? 🔥<br>AI agents, cloud risks, GRC shifts, identity chaos… or something else entirely?</p><p>Join us live as we place our bets on the 4 trends that will shape this year’s hacker conference—and invite you to do the same.</p><p>🧠 Insight from leading voices<br>🎤 Hosted by <span class="h-card" translate="no"><a href="https://infosec.exchange/@seanmartin" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>seanmartin</span></a></span> &amp; <span class="h-card" translate="no"><a href="https://infosec.exchange/@Marcociappelli" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>Marcociappelli</span></a></span> <br>📅 Streamed live on July 31st, before Black Hat kicks off</p><p>👉 Register now: <a href="https://www.crowdcast.io/c/whats-heating-up-before-black-hat-2025-place-your-bet-on-the-top-trends-set-to-shake-up-this-years-hacker-conference" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">crowdcast.io/c/whats-heating-u</span><span class="invisible">p-before-black-hat-2025-place-your-bet-on-the-top-trends-set-to-shake-up-this-years-hacker-conference</span></a></p><p><a href="https://infosec.exchange/tags/BlackHat2025" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>BlackHat2025</span></a> <a href="https://infosec.exchange/tags/CyberSecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>CyberSecurity</span></a> <a href="https://infosec.exchange/tags/AgenticAI" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>AgenticAI</span></a> <a href="https://infosec.exchange/tags/SupplyChainSecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SupplyChainSecurity</span></a> <a href="https://infosec.exchange/tags/GRC" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>GRC</span></a> <a href="https://infosec.exchange/tags/AppSec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>AppSec</span></a> <a href="https://infosec.exchange/tags/IdentitySecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>IdentitySecurity</span></a> <a href="https://infosec.exchange/tags/ITSPmagazine" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ITSPmagazine</span></a> <a href="https://infosec.exchange/tags/InfosecEvents" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>InfosecEvents</span></a></p>
Tanya Janca | SheHacksPurple :verified: :verified:<p>Great offer alert! My friend Gerald Auger from SimpleCyber has a <a href="https://infosec.exchange/tags/GRC" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>GRC</span></a> course "GRC Jumpstart: GRC Foundations in Modern Cybersecurity" and he gave me permission to share his 'Pay What You Can' Code: GRCJUMPSTARTZERO ! </p><p><a href="https://twp.ai/4iomTb" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="">twp.ai/4iomTb</span><span class="invisible"></span></a></p><p>PS If you can afford to pay the $20, please pay.</p>
Morpheus Being<p><a href="https://aus.social/tags/qldpol" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>qldpol</span></a> <a href="https://aus.social/tags/Springborg" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Springborg</span></a> <a href="https://aus.social/tags/LyingNastyParasites" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>LyingNastyParasites</span></a> <a href="https://aus.social/tags/GRC" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>GRC</span></a> <a href="https://aus.social/tags/Goondiwindi" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Goondiwindi</span></a></p><p><a href="https://www.abc.net.au/news/2025-07-11/qld-lawrence-springborg-steps-down-as-lnp-president/105522160?utm_source=abc_news_app&amp;utm_medium=content_shared&amp;utm_campaign=abc_news_app&amp;utm_content=other" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">abc.net.au/news/2025-07-11/qld</span><span class="invisible">-lawrence-springborg-steps-down-as-lnp-president/105522160?utm_source=abc_news_app&amp;utm_medium=content_shared&amp;utm_campaign=abc_news_app&amp;utm_content=other</span></a></p>
theOmegabit<p>Audits suck. Is it time to move that workflow more left, yet? <a href="https://infosec.exchange/tags/grc" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>grc</span></a></p><p><a href="https://github.com/ajdehn/AWS-Audit-Playbook" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">github.com/ajdehn/AWS-Audit-Pl</span><span class="invisible">aybook</span></a></p>