1 min read

Episode #65 - Dissecting Cybersecurity Frameworks - Part 1

A cybersecurity framework is the foundation of any good cyber risk management program but many people are not familiar with what a framework really is and what they include. This week the guys reveal the importance of following an industry-recognized cybersecurity framework and begin walking through the National Institute of Standards & Technology Cybersecurity Framework (NIST CSF) as an example. You'll understand why cyber risk management is not a mystical "make it up as you go" approach but a series of cybersecurity methods with easy to access, readily available guidance.



Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com
Be sure to rate the podcast, leave us a review, and subscribe!

Mike's Headlines

 

RANSOMWARE VICTIMS ARE INCREASINGLY PAY RANSOM DEMANDS

Former DHS Acting IT Chief Convicted in Software, Database Theft Scheme
Human Activated Risk Still a Pain Point for Organizations

Consumers Feel Data Leakage is Inevitable so Many Have Stopped Caring

Cash App Breach Demonstrates Threat Posed by Past and Present Employees

Patient Data Stolen Ahead of East Tennessee Children’s Hospital Attack, Outage
Lack of Data Readiness Threatens Digital Transformation in Healthcare Date Published

SEC Breach Disclosure Rule Makes CISOs Assess Damage Sooner

Microsoft Takes Down Domains Used in Cyberattack Against Ukraine

NGINX project maintainers fix flaws in LDAP Reference Implementation
Microsoft has Taken Legal and Technical Action to Dismantle the Zloader Botnet
80% of Software Codebases Contain at Least One Vulnerability

Microsoft Exposes Evasive Chinese Tarrask Malware Attacking Windows Computers
Microsoft Fixes Actively Exploited Zero-Day Reported by the NSA (CVE-2022-24521)

Critical VMware Workspace ONE Access CVE-2022-22954 flaw actively exploited


 

Lorem Ipsum Dolor

The CMMC 2.0 Pause: Why Defense Contractors Shouldn’t Stop Building Now

The CMMC 2.0 Pause: Why Defense Contractors Shouldn’t Stop Building Now

On July 13, 2026, the Department of Defense (DoD) announced the immediate suspension of CMMC Phase II requirements,...

What Is Cybersecurity Remediation? Plan + Examples

What Is Cybersecurity Remediation? Plan + Examples

If you’re an IT leader who just received a risk assessment report that’s 40 pages long with a list of findings you’re not...

What Are the Major Risks Associated with Generative AI Models?

What Are the Major Risks Associated with Generative AI Models?

If your organization is using—or planning to use—generative AI tools, you’re already carrying new risk. The major risks...

SOC 2 Type 1 vs. Type 2: Key Differences, Requirements, and How to Choose the Right Audit

SOC 2 Type 1 vs. Type 2: Key Differences, Requirements, and How to Choose the Right Audit

SOC 2 is an auditing standard that verifies how your organization protects customer data. It comes in two forms: