
CISOSteve
600 posts

CISOSteve
@Prot3ctD3f3nd
vCISO | CISO | CIO | Strategic Cyber Security Leader | like to break things....legally



📺 New: SecurityScorecard CISO Steve Cobb spoke with CBS about the recent Canvas breach and the growing risks facing shared education platforms. 🎤 “Attackers are going to victimize these systems because there's so much data possible. What they're looking to do is beat their ROI, their mission, which is to financially harm people,” Cobb said. 🌐 The incident highlights a broader issue: when a single provider supports thousands of institutions, one breach can quickly impact an entire academic ecosystem. 🔍 Repeated attacks also raise difficult questions about visibility, monitoring, and whether enough changed after prior incidents. Watch the full interview for more insights on why proactive cybersecurity and continuous monitoring matter now more than ever: cbsnews.com/newyork/video/…





📣 Third-Party Risk Management just got better. Say goodbye to the age of the infinite loop of vendor questionnaires. The Third Party Risk Association (TPRA) has announced the release of the Standard Trust Portal Guidance for Third Party Risk Management. SecurityScorecard is proud to have contributed to developing the guidance as a member of the TPRM Service Providers Advisory Council. 📑 The Standard Trust Portal Guidance for TPRM is designed to unify how organizations demonstrate security, compliance, privacy, and governance maturity. 🤝 SecurityScorecard is proud to be a partner with TPRA and others in defining the new era of Third-Party Risk Management. Other contributing organizations include: Aravo Solutions Bitsight Certa.ai Drata Inc. ProcessUnity RiskRecon by Mastercard Vanta Venminder, an NContracts Company SecurityScorecard proudly acknowledges the direct contributions of Steve Cobb, CISO in the development of the Standard Trust Portal Guidance for Third Party Risk Management. For more on the Standard Trust Portal Guidance for Third Party Risk Management from TPRA, see the full press release here: tprassociation.org/trust-portal #CISO #cybersecurity #vendorriskmanagement #supplychain #TPRM #artificialintelligence #pressrelease





⚠️ The risk lies not just in the third-party risk but also in the fourth, fifth, nth party risk. 📊 In this week’s Weekly Brief: The CISO Edition, SecurityScorecard CISO Steve Cobb talks the importance of AI in aiding TPRM teams scale their visibility beyond sole human capabilities. 🔗 With AI, TPRM teams are able to assess not just their immediate third-party vendors but the greater supply chain ecosystem of their third-party suppliers. This is critical for organizations to understand their actual risk and exposure. “ You might have three vendors that you consider medium impact to your organization, but all three of those vendors are using a common vendor to provide them services. That's what we consider concentration risk.” 👉 Subscribe to SecurityScorecard on YouTube for more insights on cyber risk, AI-empowered TPRM programs, supply chain security, and the evolving cyber threat landscape. To learn more about how you can leverage AI from SecurityScorecard in your TPRM program, visit our TITAN platform page: securityscorecard.com/platform/ #CyberSecurity #ArtificialIntelligence #ThirdPartyRisk #VendorManagement #SupplyChainSecurity #CyberRisk #TPRM #CyberAttack


