SIEM vs SOAR vs XDR in Plain English
Three categories, three different jobs. What SIEM, SOAR and XDR each do, where each one disappoints, and the number you own whichever you buy.
THE REGISTER
Three categories, three different jobs. What SIEM, SOAR and XDR each do, where each one disappoints, and the number you own whichever you buy.
Three controls, three different jobs. What SPF, DKIM and DMARC each prove, where each one fails, and why only alignment ties any of it to your name.
Least privilege is easy advice for a company with departments. What it means when everyone is an admin because there is nobody else to be one.
Your model can be right while its explanation is wrong, and the two are measured separately. What that costs you, and the questions worth asking.
A leaked credential is a problem for exactly as long as it stays valid. Who holds production keys when there are three of you, and what to do first.
AI decisions get made all over your organization. Governance is how you own the decision, not just the risk. What to inventory, tier, and gate.
Password reset is not where you differentiate. What buying identity actually costs, and the enterprise demand that quietly decides your vendor for you.
One customer seeing another customer's data is the rare failure a SaaS company does not recover from. Where isolation belongs, and what proves it works.
You shipped a SaaS product and inherited the security function by default. Five decisions you make once and live with, and what can safely wait.
AI models escaped a benchmark sandbox and compromised Hugging Face production systems. What a room of 700 CISOs concluded, and what is worth acting on.
The post-quantum deadline is not the day quantum computers arrive. It is the day you start, and it depends entirely on how quickly you can change an algorithm.
A deployed model can degrade, leak, or be abused for months without anyone noticing. AI observability is how you find out in time, and what to ask for.
A control that works at one phase of an AI system's life is often useless at another. The OECD's seven phases, and what to gate at each.
You can present a serious risk to the board and watch nothing change. Usually the problem is not the risk. It is that you brought a status, not a decision.
One corporate login now opens dozens of apps. OpenID Connect is the plumbing. Here is the part of it that becomes your problem, and the questions to ask.
A valid signature is not the same as an undeniable one. Four things have to hold together, and the one that usually fails is key custody.
Least privilege is the most quoted and least practiced principle in security. Here's what it really asks of you, and how to start applying it this week.