avatarTeri Radichel

Free AI web copilot to create summaries, insights and extended knowledge, download it at here

7088

Abstract

3></div> <div><p>medium.com</p></div> </div> <div> <div style="background-image: url(https://miro.readmedium.com/v2/resize:fit:320/1*ubjkPg6nfc3ds2bIa7Lx7A.jpeg)"></div> </div> </div> </a> </div><p id="eb7f"><b>Golang and Cybersecurity</b></p><p id="a5c2">I started using golang. I didn’t quite finish what I started. Hope to get back to this later. So many topics, so little time! Follow the links. The second post is pretty popular.</p><div id="5e63" class="link-block"> <a href="https://readmedium.com/why-use-golang-71d8350de904"> <div> <div> <h2>Security Benefits of Golang Concurrency</h2> <div><h3>Getting started with Go: Part 1</h3></div> <div><p>medium.com</p></div> </div> <div> <div style="background-image: url(https://miro.readmedium.com/v2/resize:fit:320/1*WwOXwAvsuGD83rnSJNB30Q.png)"></div> </div> </div> </a> </div><p id="73b5"><b>Cloud Security for Developers</b></p><p id="2b69">I wrote a series for aCloudGuru on cybersecurity for developers. They seem to have deleted it. I have the content around here somewhere and may republish it later. It’s a frequent topic on IANS Consulting Calls</p><div id="adcd" class="link-block"> <a href="https://readmedium.com/cloud-security-for-developers-213b29641403"> <div> <div> <h2>Cloud Security for Developers</h2> <div><h3>Why is my security team bugging me?</h3></div> <div><p>medium.com</p></div> </div> <div> <div style="background-image: url(https://miro.readmedium.com/v2/resize:fit:320/1*MpzHZfKiz8UpNJDvEZnuuw.png)"></div> </div> </div> </a> </div><p id="64c8"><b>Scrum</b></p><p id="d80c">Follow the links starting with this post to get my take on scrum after 25 years of software development and project management experience. Been through waterfall, extreme programming, agile, scrum, etc. etc. It usually boils down to common sense not a magic formula but this may help.</p><div id="0f2a" class="link-block"> <a href="https://readmedium.com/simple-scrum-part-1-aa00e91198a8"> <div> <div> <h2>Simple Scrum: Part 1</h2> <div><h3>Scrum that works (and doesn’t) for software and security professionals</h3></div> <div><p>medium.com</p></div> </div> <div> <div style="background-image: url(https://miro.readmedium.com/v2/resize:fit:320/1*FGRunETNRtkGSOVVGTQ-Gw.png)"></div> </div> </div> </a> </div><p id="03ac"><b>Cybersecurity for the Real Estate and Mortgage Industry</b></p><p id="0e67">After purchasing a home I experienced a lot of cybersecurity issues and wrote about them in this series. It started out mainly focusing on the mortgage industry but then led into issues with real estate security when attempting to complete the transaction and even IRS website site problems. Since then I attempted to get a refinance and went through the same issues all over again. The mortgage industry, banks, and credit unions really need more secure methods for document transfer — that work. Follow the links starting with this one.</p><div id="59f3" class="link-block"> <a href="https://readmedium.com/cybersecurity-for-the-mortgage-industry-part-1-e989849cc45"> <div> <div> <h2>Cybersecurity for the Mortgage Industry — Part 1</h2> <div><h3>Responsibility lies at the top but everyone involved can help</h3></div> <div><p>medium.com</p></div> </div> <div> <div style="background-image: url(https://miro.readmedium.com/v2/resize:fit:320/1*HZbsWqKncbZZ2Dl1Zt97RQ.jpeg)"></div> </div> </div> </a> </div><p id="b3f8"><b>Cloud Governance</b></p><p id="8482">I’ve written a number of posts on Cloud Governance. The book I wrote at the end of this series is really all about governance and risk management at an executive level when you get down to it. My latest blog series is really about implementation of governance and risk management on AWS. I have a few standalone posts on cloud governance as well.</p><div id="e97e" class="link-block"> <a href="https://readmedium.com/cloud-governance-cd985ddcfee"> <div> <div> <h2>Cloud Governance</h2> <div><h3>Stopping data breaches in the cloud more effectively</h3></div> <div><p>medium.com</p></div> </div> <div> <div style="background-image: url(https://miro.readmedium.com/v2/resize:fit:320/1*FNNmRQN3uB7U0NDXLHuSgQ.jpeg)"></div> </div> </div> </a> </div><div id="d4ec" class="link-block"> <a href="https://readmedium.com/governance-foundations-in-the-cloud-52c0959c3f81"> <div> <div> <h2>Governance Foundations in the Cloud</h2> <div><h3>Getting security controls in place from the ground up</h3></div> <div><p>medium.com</p></div> </div> <div> <div style="background-image: url(https://miro.readmedium.com/v2/resize:fit:320/1*WKLQOKqJFI-7CT5xVbKwkg.jpeg)"></div> </div> </div> </a> </div><p id="ca4a">In my latest blog series I explain why you should not be relying on policy documents — based on personal experience and how organizations can cerate more effective policies that actually stop breaches.</p><div id="6c22" class="link-block"> <a href="https://readmedium.com/stop-writing-paper-policies-4b5d73950996"> <div> <div> <h2>Stop Writing Paper Policies</h2> <div><h3>ACM.112 A look at how effective your PDF and Word policy documents are in a cloud environment — and how to fix it</h3></div> <div><p>medium.com</p></div> </div> <div> <div style="background-image: url(https://miro.readmedium.com/v2/resize:fit:320/1*XowedQ0xDjTkN_vjy_hbKA.png)"></div> </div> </div> </a> </div><p id="bcc9">I started writing a new class using AWS Control Tower and SSO and hit some glitches. There are things I simply cannot do with AWS SSO that I need to do to securely perform penetration tests and assessments on customer accounts. Maybe that will change with the new AWS Identity Center, but I wrote about some of the challenges here.</p><div id="3908" class="link-block"> <a href="https://readmedium.com/wishlist-for-cloud-governance-7ea3ca7cb696"> <di

Options

v> <div> <h2>Wishlist for Cloud Governance</h2> <div><h3>Make it easier to secure multiple accounts</h3></div> <div><p>medium.com</p></div> </div> <div> <div style="background-image: url(https://miro.readmedium.com/v2/resize:fit:320/1*x3XuPeXI8oKp0xImlwlNvA.png)"></div> </div> </div> </a> </div><p id="ec07">AWS re:Invent is right around the corner so we’ll see if anything new comes out for AWS IAM, governance, and security for organizations with multiple accounts and the need to enforce MFA in certain scenarios that are not currently possible.</p><p id="0fc9"><b>Risks Management</b></p><p id="81b6">I’ve written a number of posts on risk management as well. My book at the bottom of this post is really about governance and risk management.</p><div id="0d86" class="link-block"> <a href="https://readmedium.com/cybersecurity-policies-that-reduce-risk-4784b444ae4b"> <div> <div> <h2>Cybersecurity policies that reduce risk</h2> <div><h3>Why your current cybersecurity policies are probably ineffective</h3></div> <div><p>medium.com</p></div> </div> <div> <div style="background-image: url(https://miro.readmedium.com/v2/resize:fit:320/1*-27lS0_Pmst8mO9Xydvw1g.jpeg)"></div> </div> </div> </a> </div><p id="a94a">My latest blog series is ultimately about risk management. I show you how cybersecurity architecture can reduce risk as I build the frameworks. I want to show you how cybersecurity metrics can help you track and manage risk with the fraemwork I’m trying to build.</p><div id="0e22" class="link-block"> <a href="https://readmedium.com/automating-cybersecurity-metrics-890dfabb6198"> <div> <div> <h2>Automating Cybersecurity Metrics (ACM)</h2> <div><h3>A series of blog posts on cybersecurity metrics and security automation</h3></div> <div><p>medium.com</p></div> </div> <div> <div style="background-image: url(https://miro.readmedium.com/v2/resize:fit:320/1*L9lEIsaWt6xm2Op2ww-G5w.png)"></div> </div> </div> </a> </div><p id="73bc"><b>Cloud Data Breaches</b></p><p id="5148">A few posts with some thoughts and analysis on cloud data breaches.</p><div id="37ef" class="link-block"> <a href="https://medium.com/cloud-security"> <div> <div> <h2>Cloud Security: Cloud Data Breaches</h2> <div><h3>undefined</h3></div> <div><p>undefined</p></div> </div> <div> <div style="background-image: url(https://miro.readmedium.com/v2/resize:fit:320/1*l7iMtsK7ta3j11-rZU-sWQ.jpeg)"></div> </div> </div> </a> </div><p id="8f29"><b>Cloud Penetration Testing and Security Assessments</b></p><p id="49e6">2nd Sight Lab offers cloud, application, and cloud product <a href="https://2ndsightlab.com/cloud-security-assessment.html">security assessments</a> and <a href="https://2ndsightlab.com/cloud-penetration-testing.html">penetration tests</a>. I write about things I learn along the way occasionally.</p><div id="5c26" class="link-block"> <a href="https://medium.com/cloud-security"> <div> <div> <h2>Cloud Security: Penetration Testing and Security Assessments</h2> <div><h3>undefined</h3></div> <div><p>undefined</p></div> </div> <div> <div style="background-image: url(https://miro.readmedium.com/v2/resize:fit:320/1*l7iMtsK7ta3j11-rZU-sWQ.jpeg)"></div> </div> </div> </a> </div><p id="d43c"><b>Cybersecurity Book Reviews</b></p><p id="9be1">Although I don’t have as much time for reading or listening to books as I would like I try to write reviews for some of them along the way.</p><div id="d1d4" class="link-block"> <a href="https://medium.com/cloud-security"> <div> <div> <h2>Cloud Security: Cybersecurity Book Reviews</h2> <div><h3>undefined</h3></div> <div><p>undefined</p></div> </div> <div> <div style="background-image: url(https://miro.readmedium.com/v2/resize:fit:320/1*l7iMtsK7ta3j11-rZU-sWQ.jpeg)"></div> </div> </div> </a> </div><p id="0249"><b>Woman in Cyber</b></p><p id="5c5a">Random posts written over time. Trials, Tribulations, and Triumphs. Lessons learned and perspectives. An annual look back and the prior year.</p><div id="d719" class="link-block"> <a href="https://medium.com/cloud-security"> <div> <div> <h2>Cloud Security: Woman in Cyber</h2> <div><h3>undefined</h3></div> <div><p>undefined</p></div> </div> <div> <div style="background-image: url(https://miro.readmedium.com/v2/resize:fit:320/1*l7iMtsK7ta3j11-rZU-sWQ.jpeg)"></div> </div> </div> </a> </div><p id="f610">Follow for updates.</p><p id="4a3a">Teri Radichel | <i>© <a href="https://2ndsightlab.com/?source=post_page---------------------------">2nd Sight Lab</a> 2022</i></p><div id="8b5f"><pre><span class="hljs-section">About Teri Radichel:

⭐️ Author: Cybersecurity Books
⭐️ Presentations: Presentations by Teri Radichel
⭐️ Recognition: SANS Award, AWS Security Hero, IANS Faculty
⭐️ Certifications: SANS ~ GSE 240
⭐️ Education: BA Business, Master of Software Engineering, Master of Infosec
⭐️ Company: Penetration Tests, Assessments, Phone Consulting ~ 2nd Sight Lab</pre></div><div id="caae"><pre><span class="hljs-section">Need Help With Cybersecurity, Cloud, or Application Security?
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~</span>
🔒 Request a penetration test or security assessment
🔒 Schedule a consulting call
🔒 Cybersecurity Speaker for Presentation</pre></div><div id="5a42"><pre>Follow <span class="hljs-keyword">for</span> more stories like <span class="hljs-keyword">this</span>:

❤️ Sign Up my Medium Email List ❤️ Twitter: <span class="hljs-meta">@teriradichel</span> ❤️ LinkedIn: https:<span class="hljs-comment">//www.linkedin.com/in/teriradichel</span> ❤️ Mastodon: <span class="hljs-meta">@teriradichel</span><span class="hljs-meta">@infosec</span>.exchange ❤️ Facebook: 2nd Sight Lab ❤️ YouTube: @2ndsightlab</pre></div><figure id="faf5"><img src="https://cdn-images-1.readmedium.com/v2/resize:fit:800/0*H9Ew1KCl-29nZiPR.jpeg"><figcaption></figcaption></figure></article></body>

Cyber Blog Series by Teri Radichel

Cybersecurity, Cloud Security, Software Development

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

⚙️ Check out my series on Automating Cybersecurity Metrics. The Code.

💻 Free Content on Jobs in Cybersecurity | ✉️ Sign up for the Email List

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

I decided to summarize all my blog posts series here because with close to 500 posts I’m finding it harder and harder to find something I wrote in the past that I want to reference.

Blog posts arranged by recurring topics below…

Cybersecurity for Executives

Series complete. I published a book which has some additional information and a lot of editing. Cybersecurity for Executives in the Age of Cloud. If you liked this series, book purchases and positive reviews on Amazon are very much appreciated!

Secure Software Development

This series is complete. A book with additional information is in progress.

Automating Cloud Security Metrics

This series is in progress and has an associated GitHub repository.

Cloud Security Architecture

Here’s a compilation of posts on cloud security architecture.

Network Security

Posts here on network security for cloud, home and small business offices.

Machine Learning for Security

This series on my exploration of machine learning in relation to cybersecurity starts here…follow the links.

Golang and Cybersecurity

I started using golang. I didn’t quite finish what I started. Hope to get back to this later. So many topics, so little time! Follow the links. The second post is pretty popular.

Cloud Security for Developers

I wrote a series for aCloudGuru on cybersecurity for developers. They seem to have deleted it. I have the content around here somewhere and may republish it later. It’s a frequent topic on IANS Consulting Calls

Scrum

Follow the links starting with this post to get my take on scrum after 25 years of software development and project management experience. Been through waterfall, extreme programming, agile, scrum, etc. etc. It usually boils down to common sense not a magic formula but this may help.

Cybersecurity for the Real Estate and Mortgage Industry

After purchasing a home I experienced a lot of cybersecurity issues and wrote about them in this series. It started out mainly focusing on the mortgage industry but then led into issues with real estate security when attempting to complete the transaction and even IRS website site problems. Since then I attempted to get a refinance and went through the same issues all over again. The mortgage industry, banks, and credit unions really need more secure methods for document transfer — that work. Follow the links starting with this one.

Cloud Governance

I’ve written a number of posts on Cloud Governance. The book I wrote at the end of this series is really all about governance and risk management at an executive level when you get down to it. My latest blog series is really about implementation of governance and risk management on AWS. I have a few standalone posts on cloud governance as well.

In my latest blog series I explain why you should not be relying on policy documents — based on personal experience and how organizations can cerate more effective policies that actually stop breaches.

I started writing a new class using AWS Control Tower and SSO and hit some glitches. There are things I simply cannot do with AWS SSO that I need to do to securely perform penetration tests and assessments on customer accounts. Maybe that will change with the new AWS Identity Center, but I wrote about some of the challenges here.

AWS re:Invent is right around the corner so we’ll see if anything new comes out for AWS IAM, governance, and security for organizations with multiple accounts and the need to enforce MFA in certain scenarios that are not currently possible.

Risks Management

I’ve written a number of posts on risk management as well. My book at the bottom of this post is really about governance and risk management.

My latest blog series is ultimately about risk management. I show you how cybersecurity architecture can reduce risk as I build the frameworks. I want to show you how cybersecurity metrics can help you track and manage risk with the fraemwork I’m trying to build.

Cloud Data Breaches

A few posts with some thoughts and analysis on cloud data breaches.

Cloud Penetration Testing and Security Assessments

2nd Sight Lab offers cloud, application, and cloud product security assessments and penetration tests. I write about things I learn along the way occasionally.

Cybersecurity Book Reviews

Although I don’t have as much time for reading or listening to books as I would like I try to write reviews for some of them along the way.

Woman in Cyber

Random posts written over time. Trials, Tribulations, and Triumphs. Lessons learned and perspectives. An annual look back and the prior year.

Follow for updates.

Teri Radichel | © 2nd Sight Lab 2022

About Teri Radichel:
~~~~~~~~~~~~~~~~~~~~
⭐️ Author: Cybersecurity Books
⭐️ Presentations: Presentations by Teri Radichel
⭐️ Recognition: SANS Award, AWS Security Hero, IANS Faculty
⭐️ Certifications: SANS ~ GSE 240
⭐️ Education: BA Business, Master of Software Engineering, Master of Infosec
⭐️ Company: Penetration Tests, Assessments, Phone Consulting ~ 2nd Sight Lab
Need Help With Cybersecurity, Cloud, or Application Security?
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
🔒 Request a penetration test or security assessment
🔒 Schedule a consulting call
🔒 Cybersecurity Speaker for Presentation
Follow for more stories like this:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ 
❤️ Sign Up my Medium Email List
❤️ Twitter: @teriradichel
❤️ LinkedIn: https://www.linkedin.com/in/teriradichel
❤️ Mastodon: @teriradichel@infosec.exchange
❤️ Facebook: 2nd Sight Lab
❤️ YouTube: @2ndsightlab
Cyber Security
Cloud Security
Software Development
Author
Recommended from ReadMedium