ISO 27001 Threat Intelligence | Annex A 5.7 | Explained

  Рет қаралды 3,578

Stuart Barker

Stuart Barker

Күн бұрын

Пікірлер: 14
@robinjhunter
@robinjhunter 11 ай бұрын
Great video. Just about to implement it and this has reinforced my strategy on how to get this done.
@StuartBarker
@StuartBarker 11 ай бұрын
Great to hear ! I do weekly (ish) free group q and a sessions too … link on website.
@Babyology101
@Babyology101 6 ай бұрын
Super helpful! Do you have a threat intelligence log/spreadsheet template you can share?
@StuartBarker
@StuartBarker 6 ай бұрын
@babyology101 - yes, hightable.io/product/iso27001-threat-intelligence-process-template/ This should help.
@MicheleGarampi
@MicheleGarampi 10 ай бұрын
Hi Stuart, great video and thanks for the great advice. I'm working on this control and I'm stuck. My company is small and I have difficulty identifying who is responsible for threat Intellience. It is possible to consider the person responsible for the management system as threat intelligence overall responsible, including analysis and reporting. Thank you
@StuartBarker
@StuartBarker 10 ай бұрын
Thanks for the feedback. Remember I hold a free weekly Q and A so you can speak to me - hightable.io/free-iso-27001-certification-consultancy/ The answer will depend a bit on your context but there are a couple of roles involved here. I would allocate responsibility to the most senior role that makes sense. Is there a CISO? Or *shudders* a CTO? Maybe it sits with incident management. I would need to know more about you and size and context to give more guidance but as I say, free weekly Q and A so we can chat in person to help more. Your suggestion of person responsible for management system without context is also valid and sensible and you wont fail the audit doing it for sure.
@JossOrtan
@JossOrtan 5 ай бұрын
Great breakdown on implementing ISO 27001 Annex A 5.7 for threat intelligence! What are some common pitfalls to avoid during the audit?
@StuartBarker
@StuartBarker 4 ай бұрын
Thank you - I cover what you need in the blog that goes with the video - it is here for reference - hightable.io/iso-27001-annex-a-5-7-threat-intelligence/ 🙏
@picachufairy
@picachufairy 10 ай бұрын
Threat intel is a lifecycle of taking raw data, processing it and analyzing to create actionable information to share with stakeholders. One analyst or a whole team, it's more than feeds and articles. It's so hard to get people past seeing intel as IOCs feeds. Any advice to help people understand when they refuse to see intel outside of IOCs?
@StuartBarker
@StuartBarker 10 ай бұрын
I hear you. For me that is why I have roles and responsibilities in the process. As you will know, the feeds and data need some level of expert interpretation. Usually multiple people, teams and expertise. The feed is useless on its own. You need to know you and what you have, your risk appetite, your controls etc to assess the data in context and then transform it into both simple communicable information and then more technical actionable information. To be fair, some people just want to tick a box and have the feeds and some people want a full SOC and somewhere in the middle is where I think most 'should' land. What's your thoughts? I do have weekly Q and A sessions if you want to talk over - Tuesdays at 9am GMT - links on site. Thanks for watching and commenting.
@ytsearchengine
@ytsearchengine 11 ай бұрын
Sir Thank You. Your hairline is good. How has it not shrinkd? I am curious to know.
@StuartBarker
@StuartBarker 11 ай бұрын
Not bad for 50? I am currently growing it out so that come the summer I will have a 'man bun'.
@ytsearchengine
@ytsearchengine 11 ай бұрын
@@StuartBarker ❤️
@Kj99x
@Kj99x 7 ай бұрын
genetic lottery
How To Create an ISO 27001 Threat Intelligence Process and Report
11:29
Andro, ELMAN, TONI, MONA - Зари (Official Music Video)
2:50
RAAVA MUSIC
Рет қаралды 2 МЛН
БОЙКАЛАР| bayGUYS | 27 шығарылым
28:49
bayGUYS
Рет қаралды 1,1 МЛН
How to have fun with a child 🤣 Food wrap frame! #shorts
0:21
BadaBOOM!
Рет қаралды 17 МЛН
ISO27001:2022 - A5 7 - Threat Intelligence
5:35
Consultants Like Us
Рет қаралды 263
11 New Controls in ISO 27001 updated version of 2022 explained
20:11
Luv Johar Free IT Training Videos
Рет қаралды 3,9 М.
What is Information Security? | ISO 27001 for Beginners
9:10
ISO 27001 (2013)  Annex 'A' control
23:29
Hemang Doshi
Рет қаралды 21 М.
What does a Cyber Threat Intelligence Analyst do at work?
8:19
TechTual Chatter
Рет қаралды 7 М.
ISO 27001 Guide To Implementation
33:31
Mango
Рет қаралды 42 М.
ISO 27001 2022 - The 11 New Controls!
6:25
Sprinto
Рет қаралды 736
Cybersecurity Threat Hunting Explained
6:51
IBM Technology
Рет қаралды 87 М.