Insight #1
It’s time to stop measuring your security organization success by the number of vulnerabilities you find. Security is a journey not a destination. Measure how quickly you are mitigating the vulnerabilities, mean time to remediate (MTTR), and measure how many of those vulnerabilities escape your processes, vulnerability escape rate (VER).
Insight #2
The “shift left” movement is over. Put your security processes and tools where they best fit your organization and “shift smart” instead.
Insight #3
What have you improved this month during Cybersecurity Awareness Month? Did you enable multi-factor authentication (MFA) on something new? Enable your users to use a password manager? Deploy some auto-update mechanisms? What is stopping you?