Blog

Quantifying Cyber Risk

As more business processes increase their reliance on data, information security is not just a technical issue anymore. The bigger question, however, is around adoption of an effective risk management framework that not only quantifies risk but also improves executive decision making.

One such structured and defensible framework is FAIR (Factor Analysis of Information Risk).

Quantifying Cyber Risk Read More »

What does your organisation need: Penetration Test or Vulnerability Scan?

A vulnerability scan detects and classifies system weaknesses in computers, networks, and communications equipment. A penetration test, on the other hand, is the practice of testing a computer system, network or web application to identify insecure business processes, poor security settings, or other weaknesses that a hacker could exploit.

What does your organisation need: Penetration Test or Vulnerability Scan? Read More »

Application Program Interface (API) Security

Modern Application program interfaces (APIs) have been providing developers more options to deliver efficient products/services in minimal time. Sources such as ProgrammableWeb provides a great directory to choose from over 15,000 APIs. However, with more data comes more security concerns. Businesses use APIs to connect services and transfer data and a robust API security strategy is key to improving an organisation’s security posture.

Application Program Interface (API) Security Read More »

Privasec’s GRC Consultant featured in Symes Group Leadership of our time Report 2019.

Image Source: The Symes Report – Leadership of our times. (2019) Issue 5. Privasec’s GRC Consultant Vivienne Mutembwa was featured in Symes Group’s Leadership of our time Report 2019 – Women in Leadership. Read more here:   1) Can you describe your role/work and where and what you studied? I am a Consultant in the field of

Privasec’s GRC Consultant featured in Symes Group Leadership of our time Report 2019. Read More »

Cyber Security in Aviation Industry

Just like many other industries, the aviation industry has reaped benefits of substantial digital transformation. But with more digitalisation comes more risk. The Atlantic Council recently published a report regarding aviation cybersecurity, based on a global survey of 244 respondents. In this report, the two main sets of challenges highlighted are:

1. Attempt to weave aviation cybersecurity into flight safety, security, and enterprise information technology has proven difficult.
2. The second challenge is third-party risk management. There seems to be an issue between suppliers and customers regarding cybersecurity, with many finding it difficult to incorporate best practices into purchases, as well as difficulties in developing consensus on adequate cybersecurity risk management and transparency.

Cyber Security in Aviation Industry Read More »

Scroll to Top