SEC

SEC is Not Accepting Half-Truths
The SEC has fined four major companies for materially misleading investors regarding cyberattacks.Tech in TroubleRegulatory actions have been brought against Unisys, Avaya, Check Point, and Mimecast for their purposeful decisions to not clearly ...
SEC’s Cybersecurity Mandate: A New Era of Executive Liability and the Power of CCM
The Securities and Exchange Commission (SEC) has sent shockwaves through the corporate world over the last year with its groundbreaking cybersecurity rules. These rules place executives and board members directly in the ...

Cybersecurity Insights with Contrast CISO David Lindner | 7/19/24
Insight #1 It's been a while since I reminded everyone that one of the single greatest controls to implement to prevent account compromise is multifactor authentication (MFA). Do it today! ...

SAP Dynamic Access Controls: Meeting the SEC Cybersecurity Incident Disclosure Rules
In July 2023, the U.S. Securities and Exchange Commission (SEC) introduced new cybersecurity incident disclosure rules, aiming to enhance cybersecurity transparency and mitigate risks for investors. With the introduction of these stringent ...

Five Unintended Consequences of the New SEC Cybersecurity Disclosure Rule
The SEC's recent regulatory compliance mandate regarding breach disclosures is having some unintended consequences ...

Getting Ahead of Cybersecurity Materiality Mayhem
Cybersecurity leaders must differentiate between strategic (material) and tactical threats in a cross-functional manner and determine 'materiality.' ...

SEC’s X Breach Highlights Need for Better Defense Against SIM Swap Attacks
The ease with which fraudsters applied the SIM swap attack on the SEC indicates the issue should be a top concern for all organizations ...

What the Charges Against the SolarWinds CISO Mean for Security in 2024
The indictment of the SolarWinds CISO by the SEC served as a harsh wake-up call to the corporate world ...

SEC X Account Hack is a Case of SIM Swapping
The bad actor who hacked into the X account of the Securities and Exchange Commission (SEC) earlier this month gained access through a SIM swapping attack on the agency’s phone linked to ...

SEC Cyber Incident Reporting Rules Pressure IT Security Leaders
As the SEC gets tough on businesses' cybersecurity posture, IT security leaders will need to beef up incident response plans ...