A structured approach to managing third-party risk. The book covers fundamental concepts such as the CIA Triad (Confidentiality, Integrity, Availability), various cybercrime types (phishing, ransomware), and the five phases of a breach (research, intrusion, lateral movement, privilege escalation, exfiltration). It further explores the impact of the COVID-19 pandemic on cybersecurity trends, emphasizing the increased attack surface due to remote work, and details a robust Cybersecurity Third-Party Risk Management program. This program includes intake, ongoing, and on-site due diligence processes, methods for continuous monitoring, and strategies for offboarding vendors securely. The text also addresses legal protections, cloud security patterns, software due diligence, network connectivity, Zero Trust principles for third parties, and the particular risks associated with offshore vendors and IoT devices.
You can listen and download our episodes for free on more than 10 different platforms:
https://linktr.ee/cyber_security_summary
Get the Book now from Amazon:
https://www.amazon.com/Cybersecurity-Third-Party-Risk-Threat-Hunting/dp/111980955X?&linkCode=ll1&tag=cvthunderx-20&linkId=5bc3f54eff2022c0d5568c140c673e14&language=en_US&ref_=as_li_ss_tl
Discover our free courses in tech and cybersecurity, Start learning today:
https://linktr.ee/cybercode_academy