Christopher Burgess Christopher Burgess (@burgessct) is a writer, speaker and commentator on security issues. He is a former Senior Security Advisor to Cisco and served 30+ years within the CIA which awarded him the Distinguished Career Intelligence Medal upon his retirement. Christopher co-authored the book, “Secrets Stolen, Fortunes Lost, Preventing Intellectual Property Theft and Economic Espionage in the 21st Century”. He also founded the non-profit: Senior Online Safety.

Christopher Burgess
Black Hat 2024: Why Knowing Your Users is the Ultimate Defense
Christopher Burgess | | black hat, blurred lines, Dtex Systems, Event, insider risk, Insider Risk Management
Proactive insider risk management is the name of the game, and DTEX Systems’ Blurred Lines event at Black Hat made such clear. Those in attendance no doubt have Black Hat 2024 in their rear-view mirror with a pronounced sense of the need to stay ahead of the miscreants targeting our ... Read More
Why Third-Party Insider Risk is an Overlooked Threat
Christopher Burgess | | CrowdStrike, Dtex Systems, employee behavior, insider risk, Insider Risk Management, Remote Work Security, Supply Chain Risk, Third Party Risk
Businesses have any number of people with access to their network at any given time. They have employees, yes. But they also have vendors, partners, contractors, and others – all with varying degrees of access to corporate assets and systems. Network interconnectivity, raw materials, finished goods, and the software within ... Read More
The Value of HR in Your Insider Risk Management Program
Christopher Burgess | | data, Dtex Systems, employee behavior, HR, human sensor, Insider Risk Management, irm program trust
Companies hire people, and while every one of those individuals presents a potential risk, not all (hopefully none) will manifest as an insider threat to the company. As a human challenge, one cannot identify or address insider risks (or threats) without human-driven data and input. This is one but many ... Read More
User Behavior Analytics: Why False Positives are NOT the Problem
Christopher Burgess | | big data, cfti, Dtex Systems, gigaom, Insider Risk Management, mohan koo, UBA, UEBA
The axiom “garbage in, garbage out” has been around since the early days of computer science and remains apropos today to the data associated with user behavior analytics and insider risk management (IRM). During a recent Conversations from the Inside (CFTI) episode, Mohan Koo, DTEX President and Co-Founder, spoke about ... Read More
Potential Risk Indicator Decay and Insider Risk Management
Christopher Burgess | | Dtex Systems, insider risk, Insider Risk Management, insider threat, pri, pri decay
Who among us hasn’t received an answer to what we thought was a precise question with, “it depends” and our mind remains befuddled. Potential Risk Indicators are like that: on the surface they seem to be very black and white, but they end up being various shades of gray dependent ... Read More
The Proactive Power of Tabletop Exercises in Insider Risk Management
Christopher Burgess | | Christopher Burgess, Dtex Systems, employee behavior, Insider Risk Management, tabletop exercises
As the adage goes, “practice makes perfect.” To get as close to perfection as possible in any endeavor, one must expect there to be an education and practice quotient. This is especially true for insider risk management (IRM), where there is no room for error. For an IRM team, tabletop ... Read More
Measuring the Efficacy of your Insider Risk Program
Christopher Burgess | | business objectives, employee behavior, Insider Risk Management, insider risk program, maturity, measurement
For those dealing with insider risks for as long as I have, justifying the mission can feel akin to providing results to Fermat’s Last Theorem. There are solutions to each challenge, but maintaining and securing buy-in against competing budgetary requirements is easier said than done. This is why measuring the ... Read More
Insider Risk Detection: Data Relationships Tell the Whole Story
Data comes in a multitude of formats and flavors: physical, cyber, organizational, and, of course, the human sensors. Collecting data is easy – it’s the lowest hanging fruit. Capturing and correlating complete and accurate data sets is not as straightforward. And when the data is flawed, drawing meaningful findings and ... Read More
Insider Risk Detection: Data Relationships Tell the Whole Story
Data comes in a multitude of formats and flavors: physical, cyber, organizational, and, of course, the human sensors. Collecting data is easy – it’s the lowest hanging fruit. Capturing and correlating complete and accurate data sets is not as straightforward. And when the data is flawed, drawing meaningful findings and ... Read More
Insider Risk Management | Why You Need an Employee Assistance Program
Christopher Burgess | | Christopher Burgess, employee assistant program, employee behavior, Insider Risk Management
There is no debate, regardless of sector, that an organization’s most valuable resource is its people. It makes sense then that an Employee Assistance Program (EAP) can support a holistic Insider Risk Management (IRM) program. Indeed, an EAP is a worthy investment that produces significant returns. The Case for an ... Read More