|
|
|
|
|
by valenterry
692 days ago
|
|
> The CISO and security ops will demand to be completely independent from corp IT, for legit reasons, as the security team needs to treat IT as potential insider threat actors with elevated privileges. I always wondered: why should security ops not be a potential insider thread actor? In fact, if they were compromised, it would be even worse. Do we need two different security ops that monitor each other? :) |
|
So I guess 5 security OPS teams in different regions of the world, and they can all call a vote if one of the teams is now 'bad' :)