Author
George V. Hulme

Agentic AI is headed for SecOps. Know the pros, cons, and steps to scale
Is your security operations team ready to partner with machines that act? We asked experts how to harness agentic AI's potential while navigating the pitfalls.

RSAC 2025: An Insider’s Guide to the World’s Largest Cybersecurity Conference
As IT execs, security leaders and tech lovers head to San Francisco for the RSAC 2025 Conference, our RSAC veteran (27 years and counting) reveals next week’s must-see sessions, speakers, and networking opps,– plus some unofficial ways to recharge and changes you should know about.

Adding AI to Your SOAR Security Systems? Think ‘RoboCop’
Security leaders see plenty of potential as they integrate AI and LLMs into their security orchestration, automation, and response platforms, but bear in mind: It’s still early days, and expectations need to remain grounded.

How AI Enhances Anomaly Detection and Eases Alert Fatigue
Alert-weary security pros are looking to GenAI’s contextual capabilities to identify the most serious anomalies and get to the “big aha moments” of actionable threat intel.

AI vs. Humans: Why SecOps May (Not) Be the Next Battleground
Experts see five primary areas in security operations where, for the foreseeable future, humans will remain the central asset or be needed to collaborate with those handy – but sometimes untrustworthy – AI tools.

Racing to Deploy GenAI? Security Starts With Good Governance
GenAI adoption is moving fast, so enterprises must set good governance policies first. Here's what you need to know to keep your deployments secure.

The 3 Biggest GenAI Threats (Plus 1 Other Risk) and How to Fend Them Off
As enterprises deploy generative AI to boost productivity, they need to be prepared for the associated risks. We checked with experts to outline the ways AI tech is vulnerable. SBOMs and other defense strategies will help, but getting this right this may take some trial and error.

Report: Last Year’s Top Finserv Cyber Threats to Intensify in 2023
What’s old—classic forms of cybercrime like ransomware, DDoS attacks, and business email scams—will seem new again to financial services targets this year, thanks to advances in malware-as-a-service and artificial intelligence, says a new FS-ISAC report.

The Top Cybersecurity Trends for 2023
These cybersecurity issues—some well-known and ongoing, others new and emerging—should keep CISOs and other security professionals plenty busy over the year ahead.

The Most High-Stakes Cybersecurity Stories of 2022
Amid a rise in cybersecurity threats, five issues had the most impact on the way CISOs do their jobs.

5 Big Mistakes CISOs Should Avoid During a Downturn
An economic downturn is a tough time to reduce security spending and an easy time to make a mistake. Here, a CISO defense guide.

A Security Automation Playbook for 2023 (Or Any Year)
Call it the security automation imperative: Amid today’s cybertalent shortage, SecOps leaders must consider how machines can better assist humans, rather than the other way around.

The Most Chilling Cybersecurity Trends of 2022
Forget Halloween—or the latest season of “Stranger Things.” These forces will continue to haunt organizations well into the coming year.

The CISO’s Guide to the First 90 Days
The first three months as a new security leader set the foundation for success. Here’s how to how to make those early days count.

How to Quickly Scale Up a Security Operations Center
A security operations center accelerates your ability to respond to cyberattacks but building it (usually) takes time.

The CISO’s M&A Survival Guide
When your CEO goes shopping for a merger or acquisition, don’t let the company get caught with its defenses down.

RSA Conference 2022: The Four Dimensions of Top Security Programs
Moving forward means stepping back, taking a hard look at cyber hygiene. YL Ventures’ Andy Ellis shares tips from his upcoming RSA Conference 2022 panel.

RSA Conference 2022: What Makes Security Programs Successful?
A new panel at this week’s RSA Conference 2022 reviews a new security outcomes study. Cyentia Institute’s Wade Baker has your sneak peek at the numbers.

RSA Conference 2022: The Jetsons Meet the Security Team
A panel at the RSA Conference 2022 reviews the best ways to harness future tech disruption—and prioritize cyber hygiene.

Firmware Flaws Put Laptops at Risk
Attackers are always seeking new ways to infiltrate endpoints. Today they're targeting system firmware. Here's what you need to know.

The Russo-Ukrainian Conflict Shows Why Threat Hunting Teams Are Now Critical
Assembling an elite threat hunting squad takes time. Start by looking for these skills, traits and certifications.

6 Cybersecurity Priorities for 2022
While 2021 remains one of the most devastating years for cybersecurity, 2022 has already put CISOs on alert. Here’s why.

Taming Supply Chain Risks in the Wake of the Log4j Vulnerability
The latest cyber bug shows how a lack of visibility into third-party software continues to plague organizational networks. Here's how to protect yourself.

Security at the Speed of Digital Transformation
Today’s rapid rate of digital change has flipped traditional approaches to cybersecurity. CIOs and CISOs should follow these five transformation practices.

How to Get Out of Technical Debt
Experts define technical debt differently, making it seem more complex than it is. What you need to know—it’s on the rise, a security threat, and fixable.

Turning Alert Fatigue Into Alert Awareness
To bring down alerts to a level humans and systems can manage, companies must make the leap from alert fatigue to alert awareness.

How to Respond to a Data Breach
After a series of devastating cyberbreaches on U.S. businesses, incident response strategies are getting new respect. Learn how to respond.

Your Firmware Is A Wide Open Back Door
Attacks against the firmware of endpoint devices are on the rise. They constitute some of the biggest threats enterprises face. Avoid this open back door.

How to Block Lateral Movement in Cyber Attacks
The key to protecting your IT environment is to make it as difficult as possible for an attacker to move laterally. Here are ways to block lateral movement.

It's Time to Ditch the VPN for Zero Trust
Google security expert Anton Chuvakin discusses how it's time to ditch the VPN for Zero trust and how IT teams need to rethink network security strategies.

Adobe Flash Is Dead. But Other Insecure Apps Are Out There Waiting to Cause Mayhem
With the Death of Adobe Flash, the awareness and need for application management and security have increased across today's modern workforce.