OK, a huge thumbs up to Byte Federal for their breach notification letter. They frankly admit where they screwed up and what happened. I wish more notifications were as clear and straightforward as this one.

https://databreaches.net/2024/12/17/a-positive-example-of-forthright-breach-disclosure/

#databreach #transparency #disclosure #IncidentManagement #IncidentReporting #infosec

Timely, accurate incident reporting is now essential under the SEC Cyber Disclosure Rule.

Learn how to align your cyber strategy with regulatory demands:⬇️

https://hubs.la/Q02ZG8sv0

#IncidentReporting #Compliance #SEC #InfoSecurity

What We Know About The SEC’s New Cyber Disclosure Rule

Learn about the SEC's new cyber disclosure rule and how CISOs and CIOs must enhance transparency in incident reporting to meet compliance.

Review – CSB Updates Accidental Release Reporting Data – 10-24-24 – 28 new chemical incidents reported to CSB since July – Short version – https://tinyurl.com/bcns3y5f #ChemicalIncident #CSB #IncidentReporting
Review - CSB Updates Accidental Release Reporting Data – 10-24-24

Yesterday in preparation for their quarterly business meeting today , the CSB updated their published list of reported chemical release inc...

Review – New CISA Voluntary Cyber Incident Reporting Initiative – Short version – https://tinyurl.com/38kh5syx #IncidentReporting #CISA
Review - New CISA Voluntary Cyber Incident Reporting Initiative

Yesterday, CISA announced a new effort targeting efforts to get organizations to voluntarily report cyber incidents. The new website β€œis de...

New CISA Voluntary Cyber Incident Reporting Initiative – https://tinyurl.com/3hj7hzfv #IncidentReporting #CISA
New CISA Voluntary Cyber Incident Reporting Initiative

New CISA Voluntary Cyber Incident Reporting Initiative -

CFSN Detailed Analysis
How many different rulesets are going to demand the private sector to report incidents? Wouldn't that money be better spent finding a way to share the reported information with the departments and agencies that need it? In fact, wasn't that the whole rationale for the ISACs?#RulesSuck #cybersecurity #IncidentReporting #ITSecurity #infosec #CanadaNeedsThishttps://www.csoonline.com/article/2092015/understanding-cisas-proposed-cyber-incident-reporting-rules.html

Confused by the wave of new EU cybersecurity regulations impacting the telecom sector?

Can't distinguish the obligations of the NIS2 Directive from those of NIS1? The Cyber Resilience Act (CRA) from the Critical Entity Resilience Act (CER)? And whatever happened to the European Electronic Communications Code (EECC)?

Telecom operators in the EU have to comply with all of these but the NIS2 Directive is the central one now. It ushers in by far the most substantial changes in telco cybersecurity strategy and day to day cybersecurity operations. Read more in this new HardenStance White Paper:
https://www.hardenstance.com/wp-content/uploads/2023/11/Telco-Takeaways-from-the-NIS2-Directive-FINAL.pdf

#nis2directive #incidentreporting #vulnerabilitydisclosure #threatintelligence

CISA Publishes Report on Harmonizing Cyber Incident Reporting – Report to Congress require as part of the CIRCIA legislation that authorized CISA’s reporting regulation - https://tinyurl.com/5feuynju #CISA #IncidentReporting
CISA Publishes Report on Harmonizing Cyber Incident Reporting

Today, CISA announced that the Agency had published their congressionally mandated report on β€œ Harmonization of Cyber Incident Reporting to...

SEC Eyes Final Rules on Incident Disclosure, Board Expertise

Some of the comments to the ruling are good but to be effective, the regs have to create incentives to improve practices. Some of these will incent orgs to CYA instead.

#cyberregs #accountability #incidentreporting

https://www.databreachtoday.com/sec-eyes-final-rules-on-incident-disclosure-board-expertise-a-21593

SEC Eyes Final Rules on Incident Disclosure, Board Expertise

Rules coming in April could require publicly traded companies to disclose a breach within four days of deeming it material as well as board member cybersecurity

Explosions and CSB Chemical Incident Reporting – Explosion of unknown origin killed one and injured 13 in Ohio manufacturing facility – Is this a CSB reportable incident? https://tinyurl.com/36r5bjhh #CSB #IncidentReporting
Explosions and CSB Chemical Incident Reporting

An explosion and fire at a manufacturing facility in Oakwood Village, OH yesterday raises some interesting questions about chemical release ...