Frank #CompuWatcher Piscitelloโ˜•๐Ÿบ๐Ÿง‘โ€๐Ÿ’ป๐Ÿ––

122 Followers
236 Following
61 Posts

I retired as CISO from a public higher ed in Pennsyltucky. Now I'm working in private industry doing GRC/vCISO consulting for a local InfoSec company.

Hash Potatoes: #singleDad #minecrafter #sciFiFan #infosec #WindowsGeek #HITRUST #CISSP

OpinionsI have some and they are all mine.
ForceLight Side
PronounsHe/Him/His
Twitterhttps://twitter.com/CompuWatcher
Happy Thanksgiving Everyone!

@accidentalciso Not sure if it helps anyone, but this is my current readiness checklist for applications.

Privileged Access Management
โ˜ Privileged access approvers list (group or individuals)
โ˜ Data access approvers list (group or individuals)
โ˜ Roles identified for PAM
โ˜ Targets identified for PAM
โ˜ Service accounts identified
โ˜ Secret inventory completed
โ˜ Secret rotation procedures written
โ˜ Access review strategy and schedule written
โ˜ MFA implemented
โ˜ Break-glass accounts created
Secure Configuration Management
โ˜ Unnecessary features/ports/services disabled
โ˜ Patch/update strategy defined
โ˜ Inventory added to CMDB with owners
โ˜ Baseline Configurations documented/exported
Detection Engineering
โ˜ Authentication logs sent to SIEM
โ˜ Administrative activity logs sent to SIEM
โ˜ Logging levels configured to capture security events
โ˜ Special IOC development
โ˜ Special rule development
Incident Response
โ˜ Determine SOAR necessity
โ˜ Endpoint isolation strategy
โ˜ Identity isolation strategy
โ˜ Downtime procedures documented
Incident Recovery
โ˜ Application operational/functional check procedure
โ˜ Service/system restart dependencies document
โ˜ Backup & Recovery test schedule

So, I seem to be making a fence between social media tools. I find myself gravitating to Mastodon for Infosec and IT stuff, and Threads for more personal/non-work. Of course the streams do cross sometimes, and that's ok. That's just like life.

I'm using Twitter less and less. Insta is still more personal, but it is also more photo oriented. So, I still go there. And Reddit is Reddit.

I'm just going to leave this here. Haha. #foodporn
It's Saturday! Time for one of my favorite forms of #coffee Cold Brew on nitro. #localcoffee
What's the magic word today? PeeWee. Ahhh! RIP Paul. #cancerSucks
@andrewdwilliams Truth! It's so annoying and seems like a desperate act by a marketing team.
@evacide I like to write the strongly worded email, but I use my name on the To field. That way I can still feel the satisfaction of hitting the send button but not lose a friend or job.
@johntimaeus sometimes I just want to find out how many sodas are left in the machine at MIT just by lifting a Finger. No expectations of me sharing any information other than my laziness to see if it's worth the trip to the machine.
@pixelnull I get ya. Maybe start small. Can you do it in the org you are in? Maybe make a YouTube video series as a side project. It may not get you out of doing IR completely, but maybe build an audience. Add subscribe options. At least it changes your week up so it's not just actual IR.