Mark Simos

3.7K posts

Mark Simos banner
Mark Simos

Mark Simos

@MarkSimos

Simplify and clarify • Cybersecurity architecture and strategy • Business + Security Alignment • Make the world better @markasimos.bsky.social

Katılım Temmuz 2016
383 Takip Edilen5.6K Takipçiler
Sabitlenmiş Tweet
Mark Simos
Mark Simos@MarkSimos·
All 18 of the Microsoft Cybersecurity Reference Architectures (MCRA) videos are now up! We cover detailed technical information + context on security threats and business risk. Share and Enjoy! aka.ms/mcra-videos Many thanks to my incredible co-presenters!
English
6
109
280
0
Mark Simos
Mark Simos@MarkSimos·
Blaming/firing/punishing security experts for events out of their control (conducted by criminals who exploit risky decisions made by business teams) is NOT an effective approach.
English
1
0
1
73
Mark Simos
Mark Simos@MarkSimos·
Cybersecurity is often incorrectly seen as a 'technical problem' that can be 'solved' (it isn't!) by business leaders & others. *Security is an ongoing risk that requires ongoing work.* Security leaders often accidentally create or reinforce this misperception. a short 🧵
Mark Simos tweet media
English
1
0
1
221
Mark Simos
Mark Simos@MarkSimos·
We also must recognize that we all bring different skills and knowledge to the table. Cybersecurity is complex , but so is prescribing medicine, finding a vein to inject it, choosing material for a bridge, testing new chemical formulas for aircraft lubricants, and many others.
English
1
0
0
126
Mark Simos
Mark Simos@MarkSimos·
Think security can do it all on our own? WRONG! We must recognize that we are part of a larger team and each of us has a different part to play in protecting the organization. short 🧵
Mark Simos tweet media
English
1
1
6
347
Mark Simos
Mark Simos@MarkSimos·
This standard covers 72 roles across security, technology, and business teams), up to and including the jobs of CEOs and Board members.
English
0
0
0
69
Mark Simos
Mark Simos@MarkSimos·
This talk is based on the security roles (and glossary) standard from The Open Group defining security roles, security accountabilities on business & IT teams, and what happens if any of those 'jobs to be done' isn't being done.
English
1
0
0
105
Mark Simos
Mark Simos@MarkSimos·
We must respect other professions and professionals the way we want to be respected as cybersecurity professionals. We are just people trying to do our jobs and so are they. end 🧵
English
0
0
3
74
Mark Simos
Mark Simos@MarkSimos·
We need to explain things by making analogies to similar common things they already know (fire prevention, kids safety, etc.) or professional things they already know (safety briefings in petroleum industry, liability in legal industry, etc.) so its clear and easy to them.
English
1
0
1
79
Mark Simos
Mark Simos@MarkSimos·
Ever been tempted to call people "stupid users" because they make a basic security or technology mistake? I would advise against saying this and encourage you to change your thinking patterns. A short 🧵
Mark Simos tweet media
English
1
0
3
280