Listen "Your Security Is ALWAYS in Scope, Part 2 - Joseph Kirkpatrick - SCW #80"
Episode Synopsis
Our client was using a hosted service to perform remote monitoring and management and resisted its inclusion in the audit scope. The vendor's external scans revealed critical vulnerabilities. Prior to a highly-publicized breach, the vendor said no auditor had ever included their service in the scope of their audits. We will explore attitudes that keep critical security controls out of scope. Visit https://www.securityweekly.com/scw for all the latest episodes! Show Notes: https://securityweekly.com/scw80
More episodes of the podcast Security and Compliance Weekly (video)
Everything You Wanted to Know About CISOs But Were Afraid to Ask, Part 2 - Ben Carr - SCW #98
15/12/2021
Everything You Wanted to Know About CISOs But Were Afraid to Ask, Part 1 - Ben Carr - SCW #98
14/12/2021
Security & Compliance Thru the Lens of a Technology Journalist, Part 2 - Evan Schuman - SCW #96
24/11/2021
ZARZA We are Zarza, the prestigious firm behind major projects in information technology.