ClearOPS

280 posts

ClearOPS banner
ClearOPS

ClearOPS

@_ClearOPS_

The problems we solve: security questionnaires, vendor management, RFPs, RFIs, privacy impact assessments, AI assessments. GenAI & RAG

New York, USA Sumali Ocak 2019
277 Sinusundan92 Mga Tagasunod
ClearOPS
ClearOPS@_ClearOPS_·
You need help with security questionnaires. Not a SOC2 audit.
English
0
0
0
20
ClearOPS
ClearOPS@_ClearOPS_·
Security questionnaire response writing assistant
English
0
0
1
49
ClearOPS
ClearOPS@_ClearOPS_·
The most backwards practice in cybersecurity is to allow sales to answer secques and not also have them do due diligence on their own vendors for security compliance.
English
0
0
1
0
ClearOPS
ClearOPS@_ClearOPS_·
“Point-in-time security questionnaires are a legal requirement, not a preventive control. The number of third-party providers can be staggering, with security teams having to assess hundreds of providers,” he said.securityboulevard.com/2022/09/white-…
English
0
0
0
0
ClearOPS
ClearOPS@_ClearOPS_·
@kelleymak You can't do security alone. That's why you need a #vCISO if you don't have an in-house team.
English
0
1
0
0
Kelley Mak
Kelley Mak@kelleymak·
The most challenging part of security isn’t convincing people they need it, but providing actionable guidance on how to be secure To do that, everyone, not only the security team, needs context and data about how to make the right decisions. Security teams can help 1/
English
3
1
13
0
ClearOPS
ClearOPS@_ClearOPS_·
Wouldn't it be easier if someone else helped you find them? Can a tool do that? Yes, yes it can.
English
0
0
0
0
ClearOPS
ClearOPS@_ClearOPS_·
We have been really focused on #risk #assessments recently. As required by SOC2 and ISO 27001, it forces you to put to paper the logic of your assessment of risks. The hardest part? writing down the risk.
English
1
0
0
0
ClearOPS nag-retweet
Rinki Sethi
Rinki Sethi@rinkisethi·
#infosec vendors please never cold call personal phone numbers - it is a terrible practice. Most #security folks will block the number and may not do business with the vendor. I have posted about this before, but the number of vendor calls have significantly increased.
English
43
84
608
0
ClearOPS
ClearOPS@_ClearOPS_·
If you fill out a vendor risk questionnaire through a third party, you need to ask for a copy of the completed questionnaire for liability purposes.
English
0
1
2
0