Started By
Message

re: Job with Ernst and Young

Posted on 5/20/23 at 9:24 pm to
Posted by LemmyLives
Texas
Member since Mar 2019
6555 posts
Posted on 5/20/23 at 9:24 pm to
quote:

InfoSec guy here myself.


To some extent, InfoSec creates this problem themselves. A lot of us, especially the more technical they are, have a real problem explaining the business impact of findings. 31,000 unpatched vulnerabilities in production? So what?
Posted by Centinel
Idaho
Member since Sep 2016
43403 posts
Posted on 5/20/23 at 9:27 pm to
quote:

31,000 unpatched vulnerabilities in production? So what?


That's why you tune your vuln scanners to accept risk based on business stakeholder input. That and compensating controls. It's all about the compensating controls.

The problem I run into is the audit checklist morons who say they are "infosec experts" that have no ability to comprehend or process compensating controls.
first pageprev pagePage 1 of 1Next pagelast page
refresh

Back to top
logoFollow TigerDroppings for LSU Football News
Follow us on Twitter, Facebook and Instagram to get the latest updates on LSU Football and Recruiting.

FacebookTwitterInstagram