Mark's List

Mark's List

...of Cybersecurity Resources frequently sent to customers and colleagues. (Last updated January 2023). https://aka.ms/markslist - Twitter: @MarkSimos Mastodon: https://infosec.exchange/@markasimos#

Share and enjoy!

Recent Updates


Cybersecurity Laws

Overview of Microsoft Guidance

This is an overall guidance map for Microsoft security guidance (slide is also in the MCRA)

No alt text provided for this image


Ninja Training

No alt text provided for this image


Interactive Guides

Threat Intelligence / Recent Events

No alt text provided for this image


Ransomware, Extortion, and Destructive attacks

  • Security Guidance - Detailed mitigation plan for attacks including Objectives and Key Results (OKRs) for 10 security initiatives, links to technical procedures, recommended team members, checklists, and more?

No alt text provided for this image

  • Backup Guidance - Backup and restore guidance to ensure you can rapidly continue business operations after these attacks (which intentionally target backups)

Zero Trust Resources


Privileged Access and Identity

Additional Resources:


Incident Response and Recovery


Baselines and Benchmarks

?

Cybersecurity for Business Leaders


Security Operations (SecOps) / [Center] (SOC)


Operational Technology (OT) Security


Enterprise Patch Management


Azure and Multi-Cloud Security


Azure Sentinel

Microsoft's Cloud Native SIEM and SOAR capability


Office 365 Security


Application/Development Security

Jon Fedor

Product Leader - Expert in Product Lifecycle Management, SAFe agile, and Cross-functional Collaboration

1 个月

I can't believe I'm just finding this now! What a great list, Mark! Not even halfway through and I've already found excellent resources I've not heard about before.

回复
Gregory Elder

I self start, complete tasks, and make sure they are done well. Looking for someone who enjoys working with a team in cybersecurity? See my progress with the web portfolio attached. I am ready, lets go!

4 个月

Hey mark just found this gem of security resources, Thanks!

回复
Marcel Reviol

Senior Cybersecurity Architect bei Deutsche Bahn AG Konzernleitung - Architecture Office

1 年

Have watched your "Making end to end security real" session at Seattle Ignite. This directed me to this very brilliant collection of cybersec information at one place. Thank you!

回复
Praveen Koli

Senior Platform Architect (Pre-Sales) | Converged Communications | Modern Work | Copilot | Cybersecurity

2 年

Cannot see this video "Security Return on Investment (ROI) Video (1.5 minutes)", getting below error Video unavailable This video is private

回复
Mike Spence????

Frontline GTM Leader | 3x Microsoft Security Partner of the Year | Risk Informed Cyber Defense | Business Partner |

2 年

Great collection of resources. Thanks!

回复

要查看或添加评论,请登录

Mark Simos的更多文章

  • Clarity Matters: Identity and Access Capabilities

    Clarity Matters: Identity and Access Capabilities

    I am working on a proposed revision to the Zero Trust Reference Model from The Open Group and wanted to get your…

    6 条评论
  • Words Matter #3 - Incident, Compromise, and Breach

    Words Matter #3 - Incident, Compromise, and Breach

    The Open Group is working on updated definitions for various Security and Zero Trust terms for an upcoming security…

    18 条评论
  • Security Roles and Responsibilities

    Security Roles and Responsibilities

    Security is a team sport across the organization If you think that "security is the security team's job", you will have…

    11 条评论
  • Words Matter #2 - Security Policy and Security Policy exception

    Words Matter #2 - Security Policy and Security Policy exception

    The Open Group is working on updated definitions for various Security and Zero Trust terms for an upcoming security…

    9 条评论
  • Words Matter: Trust and Trustworthiness

    Words Matter: Trust and Trustworthiness

    What is Trust? Do we really need Zero of it? What about Trusting AI? The Open Group is working on updated definitions…

    26 条评论
  • Security Roles

    Security Roles

    Nikhil Kumar and I found that we had to create a list of roles impacted by cybersecurity for the Zero Trust Playbook…

    1 条评论
  • Zero Trust Playbook - Cutting through the complexity

    Zero Trust Playbook - Cutting through the complexity

    We recently announced the first book in the Zero Trust Playbook Series (https://zerotrustplaybook.com) that is aimed at…

    7 条评论
  • Microsoft Secure Future Initiative (my thoughts)

    Microsoft Secure Future Initiative (my thoughts)

    I highly encourage everyone to read this blog from Microsoft on the Secure Future Initiative (SFI). I have been with…

    14 条评论
  • Learning about Generative AI

    Learning about Generative AI

    I've been playing with Generative AI and Large Language Models (LLMs) lately and thought I would share my experience…

    4 条评论
  • SecOps Tools Strategy in 2023, Part 1

    SecOps Tools Strategy in 2023, Part 1

    I really enjoyed reading Anton Chuvakin's recent posts on SOC tools (https://www.linkedin.

    17 条评论