My Favorite CISO Tools
Dall-E "a synthwave of a serious monster explaining the future of hackers" cropped

My Favorite CISO Tools

Here's some of my favorite CISO tools. I'm not talking technical tools, I'm talking PROGRAM-LEVEL tools. If you want learn nmap flags, go ask #ChatGPT.

No alt text provided for this image

Communicating #cybersecurity: The Cyber Defense Matrix by Sounil Yu . https://cyberdefensematrix.com/. This framework is phenomenal and the future of #communicating security.

No alt text provided for this image

The OWASP? Foundation #TaSM by Ross Young . I believe the #TaSM is one of the best operational frameworks and extends the work in the #CyberDefenseMatrix.

No alt text provided for this image

CISO #Roadmap tools - ???????? Carlota S. has the industry standard roadmap and financial analysis tools. Use them. She’s awesome. https://github.com/carlota/showmethemoney

No alt text provided for this image

Top 20 #IncidentResponse #Playbooks. Credit goes to CERT Societe Generale who developed and made public. This repository is a VERY good place to start.?Playbook links:?https://github.com/certsocietegenerale/IRM/tree/main/EN

No alt text provided for this image

CISO #Policies - Open-source cybersecurity policy templates that we open-sourced so you don’t have to build them yourself - https://github.com/ericiussecurity/ProjectKeystone. Originally published open-source at StrataCore with a collaboration between me, Sean Eyre , and Adrian Tilston .

No alt text provided for this image

CISO #Roadmap Phases - Open-source vCISO tools. The five phases of a security program build (roadmap) - https://github.com/ericiussecurity/vCISO-Tools. I wrote the original draft, now maintained by Ericius Security .

?? Stephen Semmelroth

Leader. I have the honor of leading the AVANT Resilience Practice including Engineers and Channel Vendor Managers.

2 年
Courtney Hans, MBA

Information Security | Strategic Business Leader | Governance, Risk & Compliance| Mitigating risk while accelerating business growth

2 年

Good stuff, thank you!

回复

Great list - I’m honored to be included!

Richard Rodriguez

Chief Executive Officer at ClearSync Solutions - Co-Host of The IT Crowd Podcast - CF Top 101 Technology Advisor

2 年

Thank you for sharing!

要查看或添加评论,请登录

?? Stephen Semmelroth的更多文章

  • Your Resume Sucks.

    Your Resume Sucks.

    Yeah, I said it and I'll say it again: Your resume sucks. I don't do resume reviews anymore.

    33 条评论
  • Adventures in Venture Capital

    Adventures in Venture Capital

    Before the Pandemic, I had a BLAST working in #VC! I got to see absolute cutting-edge solutions spanning mind-blowing…

    7 条评论
  • Where do I start? Cybersecurity by Stephen

    Where do I start? Cybersecurity by Stephen

    Unfortunately, I don’t have space to take on more mentorship spots right now. And I don’t want to leave you with…

    19 条评论
  • Learning from Equifax: Why Businesses Must Rehearse Their Incident Response Plans

    Learning from Equifax: Why Businesses Must Rehearse Their Incident Response Plans

    I originally posted this article to Medium in December 2018. Here it is, unedited for your reading pleasure.

    11 条评论
  • LinkedIn's Emojis. That's it.

    LinkedIn's Emojis. That's it.

    Just to help you, the content maker out. Current list as of July 2021.

    3 条评论
  • How to Build Exploits and Reverse Engineer

    How to Build Exploits and Reverse Engineer

    I've coached dozens of candidates through this program. It works.

    19 条评论
  • No Shame Security

    No Shame Security

    It’s been a week since you started your new role. You’re almost done with onboarding and you get an email from your CEO.

    12 条评论
  • Why You'll Fail in Cyber Security.

    Why You'll Fail in Cyber Security.

    Last year, I personally mentored 164 people transitioning into security or moving upward in their security careers…

    72 条评论
  • How to Pick Your First/Next Cyber Certification

    How to Pick Your First/Next Cyber Certification

    Welcome to cyber security. There is no singular entry point, plan, pipeline, or training workflow to prepare you for…

    16 条评论
  • Military Transition - Cyber Focus

    Military Transition - Cyber Focus

    I get this question all the time: “ I will be transitioning out of the {service} in a couple months. Any advice on…

    13 条评论

社区洞察

其他会员也浏览了