Results for Search Submit Filter by: Advanced Filter All results Solutions Industry People Client Story Insights/Blogs Filter Blog Security Advisory: Meltdown and Spectre – Processor Flaws Expose Networks to New Class of Vulnerabilities Security researchers have identified a flaw, present in most computer processors, that allows unauthorized disclosure of information. The flaw, which affects most major processor manufacturers, is the first known instance of a security vulnerability at the processor level, and could be exploited in servers, workstations (including laptops), network infrastructure, mobile devices, IoT devices and… Blog New IT Security Awareness Learning Library Designed to Help Workers Become Frontline Cyber Defenders for Their Employers Taking advantage of a user’s poor security practices is often a critical first step for malicious hackers or other cybercriminals seeking to compromise an organization’s systems and data. More than 80 percent of hacking-related breaches leveraged stolen or weak passwords, according to research for the 2017 Data Breach Investigations Report from Verizon. The report also says that about… Blog Undetected Breaches and Ransomware Change How We Think About Cybersecurity Undetected Breaches and Ransomware Change How We Think About Cybersecurity As new possibilities in information technology continue to transform organizations, they may outpace any cybersecurity protections already in place. Controls that seemed adequate yesterday might not be equal to the challenges presented by new technology and ever-evolving threats today. Our issue of Board Perspectives:… Blog Recent Roundtable Perspectives on Cloud Security As cloud adoption accelerates within well-established businesses and emerges across nearly all industries and company sizes, security executives have been presented with thematic challenges to managing cloud governance, security, and regulatory risk. Protiviti recently held a roundtable of Chicago-area CISOs and Security Leaders to discuss the thematic challenges, share strategies, and gain… Blog Even After Patching, Meltdown & Spectre Continue to be a Big Deal First, a recap of the vulnerability For the first time, performance-enhancing features of most modern processors (known as out-of-order superscalar execution, speculative prediction, and HW caching) were discovered to contain (as a unit) a flaw that allows unauthorized disclosure of information. The fact that this flaw is at the processor level differentiates it from other potential… Blog What’s Ahead in Vendor Assessments? Rapidly changing information security threats and regulatory requirements continue to put pressure on vendor risk management programs and capabilities for all organizations globally. We anticipate that the number and comprehensiveness of vendor assessments required of, and conducted by, organizations will continue to substantially increase in 2018 and into 2019 before the requests begin to… Blog With GDPR Deadline Looming, the First Step Is Discovery With the new EU General Data Protection Regulation (GDPR) scheduled to take effect on May 25, 2018, organizations with EU employees or customers need to be able to demonstrate compliance. GDPR expands the scope of previous EU regulations to include any data processor or data controller that collects, stores, or processes the personal data of EU residents. It mandates data portability,… Blog Top Takeaways from the Women in Cybersecurity Conference ** Today’s post is provided by guest blogger Veronica, an Experienced Consultant in our Technology Consulting practice ** Last week, I was fortunate enough to attend the Women in Cybersecurity Conference (WiCyS) in Chicago! The event is a two day conference packed with information sessions, guest speakers and opportunities to network. The conference was hugely impactful in… Blog Part 1: SAP S/4HANA® Implementations: What’s Trending? A Report from GRC 2018 and Financials 2018 The 2018 GRC and Finance SAP Insider Conferences featured a wealth of knowledge and insight around new areas of interest, including SAP S/4HANA updates, Central Finance strategies, the importance of managing risks during S/4HANA implementations, and some newer topics around General Data Protection Regulation (GDPR), lease accounting (IFRS 16 and ASC 842), and SAP’s big announcement of the… Blog Part 2: SAP S/4HANA® Implementation Considerations: What’s Trending? A Report from GRC 2018 and Financials 2018 The 2018 GRC and Finance SAP Insider Conferences took place in mid-February in Las Vegas. Our SAP teams spent time attending conference sessions, and their observations on what’s trending across the industry are compiled here in a five-part series. In part 2, we summarize the key SAP S/4HANA implementation considerations discussed at the conference. During this year’s GRC conference, there was a… Load More