New piece on ThinkSystem about something I see constantly in governance work:

Organizations treat compliance certification as a project with a finish line. But ISO 27001, SOC 2, and every major framework are programs โ€” designed to run continuously, with no end state.

The certificate proves you built the system. The program proves you can keep it alive.

https://carlosraulmuozjr.substack.com/p/programs-dont-end

#Compliance #InformationSecurity

Programs Donโ€™t End

Why your compliance certification is just the beginning of the hard part โ€” and what practitioners can actually do about it.

ThinkSystem: Navigating Project & Business Innovation

The smartest device strategy is the one that ๐˜ฑ๐˜ณ๐˜ฐ๐˜ต๐˜ฆ๐˜ค๐˜ต๐˜ด ๐˜ฅ๐˜ข๐˜ต๐˜ข and the planet.

#cybersecurity #informationsecurity #iso27001 #dora #cybergovernance #digitaltransformation #legalcompliance #odit #isms
#riskmanagement #assetmanagement

We urgently need information on bug reporting and #responsibleDisclosure process that is available and easily understandable.

There should be a web page with resources in text and video form with examples on how to do this right.

I am fed up by people, exposing #security issues with a working #exploit out in the wild before affected bodies had the possibility to respond accordingly.

But why? BECAUSE!

#informationsecurity #floss #opensource #advisory

Modern technology offers advantages that transcend humanityโ€™s natural laws, a truth evident throughout history. #Applications #Cybersecurity #InformationSecurity #ChaosEngineering

https://joealongi.dev/cybersecurity-ethics-and-the-security-of-information-in-a-global-posture/

Cybersecurity ethics and the security of information in a global posture

Modern technology offers advantages that transcend humanityโ€™s natural laws, a truth evident throughout history. What sets this era apart is the unprecedented availability of data for analysis, sophisticated methods for ingesting it, and the capture of human experiences in bits and bytes. Ethics must adapt to modern theories that

Joe Alongi

๐™’๐™๐™ฎ ๐™จ๐™š๐™˜๐™ช๐™ง๐™š ๐™™๐™ž๐™จ๐™ฅ๐™ค๐™จ๐™–๐™ก ๐™ข๐™–๐™ฉ๐™ฉ๐™š๐™ง๐™จ ๐™ข๐™ค๐™ง๐™š ๐™ฉ๐™๐™–๐™ฃ ๐™ฅ๐™š๐™ค๐™ฅ๐™ก๐™š ๐™ฉ๐™๐™ž๐™ฃ๐™ 

#cybersecurity #informationsecurity #iso27001 #dora #digitaltransformation #cybergovernance #odit #isms #riskmanagement

I champion the thoughtful coders, those brewing custom solutions, assembling hardware, coding deliberately and impeccably. #Applications #Cybersecurity #InformationSecurity #ChaosEngineering

https://joealongi.dev/a-decade-in-react-javascript-and-other-languages/

A decade in React, JavaScript, and other languages

As 2026 began, I was immersed in a project Iโ€™d launched earlier in the year, one full of promise, as they often are. Instead of watching the ball drop, I savored falling snow, a solid cup of coffee, and progress on a golf app for our office tournament. Scrolling

Joe Alongi

BSidesDayton is still looking for a handful of sponsors for our event May 23rd, 2026! If you know of a company that would be interested, please get them in contact with us!

Tickets are on sale now!

https://www.eventbrite.com/e/bsidesdayton-tickets-1975315383486

#bsides #infosec #infosecurity #InfoSecCommunity #informationsecurity #informationsecurity #informationtechnology

BSidesDayton

BSidesDayton is a community-driven information security conference offering hands-on learning and collaboration for security pros.

Eventbrite

When evaluating the risk applied to a project, elevated by the interactions of CUI, for U.S. and DoW standards, the focus is to maintain the organizations business continuity. #Applications #Cybersecurity #InformationSecurity #ChaosEngineering

https://joealongi.dev/business-process-plan-for-federal-technology-fedramp/

Business process plan for Federal Technology (FedRAMP)

In an ongoing contract with the federal government of the United States or Department of War (DoW), a business will need to stay compliantโ€ฆ

Joe Alongi

A secure device is only secure if its whole life is ๐˜ค๐˜ฐ๐˜ฏ๐˜ต๐˜ณ๐˜ฐ๐˜ญ๐˜ญ๐˜ฆ๐˜ฅ.

#cybersecurity #informationsecurity #iso27001 #dora #cybergovernance #digitaltransformation #legalcompliance #odit #isms
#riskmanagement #assetmanagement