Tag: Search Security Resources and Information from TechTarget

Top identity and access management risks

<p><a href=”https://www.techtarget.com/searchsecurity/definition/identity-access-management-IAM-system”>Identity and access management</a> has evolved from a supporting IT function into the foundation of enterprise security. In modern organizations, identity governs access not only for employees, but also for contractors, cloud workloads, SaaS platforms, APIs, automation pipelines and,…

CISO role changes as cyber-risk appetites in the C-suite grow

<p>While cybersecurity incidents are inevitable, they’re rarely existential threats, according to Will Candrick, analyst at Gartner, who discussed shifting cyber-risk appetites during a session at the firm’s 2026 Security and Risk Management Summit.</p> <p>”In the long run, the likelihood of…

CISO’s guide to data minimization

<p>Many enterprise cybersecurity conversations still focus primarily on prevention technologies. While these controls remain critically important, CISOs today recognize that one of the most effective ways to lessen breach impact is far simpler in concept: reduce the amount of sensitive…

Researchers build autonomous AI worm that can reason and adapt

<p>University of Toronto researchers said they used open source technology to create an agentic AI worm that reasons and adapts — identifying each targeted device’s unique vulnerabilities and creating tailored attack strategies on the fly.</p> <p>Traditional worms are one-trick ponies…

How to secure data at rest, in use and in motion

<p>Data security is a non-negotiable strategic imperative cloaked with business implications for risk management and competitive advantage.</p> <p>Organizations today face ever-increasing cybersecurity risks — both internal and external. Safeguarding data against financial losses, regulatory penalties and reputational damage is not…

How to find cyber-risk data sources for a FAIR analysis

<p>In today’s enterprise, some degree of cyber-risk exposure is inevitable. CISOs must use limited resources to <a href=”https://www.techtarget.com/searchsecurity/tip/Enterprise-risk-management-should-inform-cyber-risk-strategies”>strategically address the most significant risks</a>, in alignment with their organizations’ <a href=”https://www.techtarget.com/searchsecurity/feature/How-to-define-cyber-risk-appetite-as-a-security-leader”>cyber-risk appetites</a>.</p> <p>The easiest and fastest — but also least reliably…

Lost in translation: Cybersecurity board reporting for CISOs

<p>Hundreds of security leaders from across industries recently packed a ballroom in National Harbor, Md., to tackle a challenge some consider even more daunting than nation-state hackers or AI-fueled cyber threats: presenting to a company’s board members so they understand…

How to prepare security controls for future AI regulations

<p>The global AI regulatory landscape is fragmented and volatile. As a result, cybersecurity leaders must reconcile competing compliance requirements and safeguard organizational AI without creating roadblocks to the overall AI strategy’s success.</p> <p>While the EU AI Act imposes a comprehensive,…

EO 14390 raises stakes for enterprise cybersecurity

<p>For years, federal cybersecurity policy has primarily focused on protecting government systems and critical infrastructure. Executive Order 14390: “Combating Cybercrime, Fraud, and Predatory Schemes Against American Citizens” signals a broader shift in emphasis. Signed on March 6, 2026, the order…

First month of Mythos Preview testing exposes 10K flaws

<p>Organizations using Claude Mythos have discovered thousands of vulnerabilities in the first month of security testing under Project Glasswing, per an announcement from Anthropic last week.</p> <p>The project, initially announced on April 7, granted preview access of Mythos to about…

How to secure data at rest, in use and in motion

<p>Data security is a non-negotiable strategic imperative cloaked with business implications for risk management and competitive advantage.</p> <p>Organizations today face ever-increasing cybersecurity risks — both internal and external. Safeguarding data against financial losses, regulatory penalties and reputational damage is not…

OT attacks shift from recon to physical control, raising stakes

<p>In the Netflix thriller <i>Leave the World Behind, </i>a massive cyberattack plunges the U.S. into a complete electrical and technological blackout. While the scope and scale of the fictional attack are improbable, research suggests real-world malicious hackers are increasingly interested…

For CISOs, dawn of OpenAI Daybreak brings good and bad news

<p>The recent debut of OpenAI’s Daybreak means security leaders are waking up to a new reality: Artificial intelligence is no longer merely supporting cyberdefense but driving it.</p> <p>Accessible now to verified organizations and security teams, <a href=”https://openai.com/daybreak/”>Daybreak</a> combines OpenAI’s GPT-5.5…

Inside business email compromise attack: Real-world examples

<p>Business email compromise attacks have become some of the most costly and damaging threats facing organizations today. BEC attacks differ from traditional phishing schemes in that they rely on highly targeted social engineering tactics that exploit human psychology rather than…

Verizon 2026 DBIR: 6 key takeaways for CISOs

<p>The threat landscape is undergoing rapid and unprecedented change, as reflected in the “Verizon 2026 Data Breach Investigations Report.” For the first time in the report’s 19-year history, vulnerability exploitation was the leading initial access vector, displacing credential abuse from…

Identity security for AI agents: The proliferation challenge

<p>AI agents are proliferating across the enterprise, with use cases ranging from IT and security operations to legal and compliance tasks.</p> <p>Omdia, a division of Informa TechTarget, <a target=”_blank” href=”https://research.esg-global.com/reportaction/515202205/Marketing” rel=”noopener”>published</a> the results of a survey of 400 security leaders…