詳細検索
Avatar

菊池

Unraveling the cause of internal leakage! The "fraud triangle" and the measures companies should take

Unraveling the cause of internal leakage! The "fraud triangle" and the measures companies should take

Internal leakage can be described by the "triangle of fraud". In this article, we will explain corporate risk from the perspective of motivation, opportunity, and justification, and introduce practical internal fraud countermeasures and how to use Microsoft Defender. |Colorkrew Security

【Attention】 What is ClickFix? "Allow vulnerabilities" that organizations should address and how to use Microsoft Defender

【Attention】 What is ClickFix? "Allow vulnerabilities" that organizations should address and how to use Microsoft Defender

Beware of the new threat "ClickFix" created by the user's "permission operation". Based on real-world examples, we will explain the importance of specific corporate measures and SOC linkage using Microsoft Defender and EDR. Colorkrew Security Blog

[Complete explanation] Revision points of JIS Q 15001:2023 and practical measures to be taken in the P mark examination

[Complete explanation] Revision points of JIS Q 15001:2023 and practical measures to be taken in the P mark examination

An easy-to-understand explanation of the revision points of JIS Q 15001:2023. Here are the latest trends in the P mark examination and tips for practical response. |Colorkrew Security

Not all vulnerabilities! Dependabot × How to Improve Efficiency with Risk-Based Vulnerability Management

Not all vulnerabilities! Dependabot × How to Improve Efficiency with Risk-Based Vulnerability Management

Should all dependent library vulnerabilities be addressed? Learn how GitHub Dependabot and risk-based management can help you focus on critical vulnerabilities. |Colorkrew Security

New Standard ISO27001 for Obtaining ISMS Certification: 2022 Migration Success Stories and Key Points (8.16 Monitoring Activities, etc.)

New Standard ISO27001 for Obtaining ISMS Certification: 2022 Migration Success Stories and Key Points (8.16 Monitoring Activities, etc.)

How will you respond to the new management measures in ISMS 2022? Specific examples of security monitoring, web filtering, and secure coding are explained. |Colorkrew Security

Microsoft Authenticator password storage is over! Transfer method and recommended management tools

Microsoft Authenticator password storage is over! Transfer method and recommended management tools

Microsoft Authenticator's password saving function has ended. We will explain the password manager and migration procedure of the switch destination in an easy-to-understand manner. |Colorkrew Security

New Standard ISO27001 for Obtaining ISMS Certification: 2022 Migration Success Stories and Key Points (8.12 Data Leakage Prevention, etc.)

New Standard ISO27001 for Obtaining ISMS Certification: 2022 Migration Success Stories and Key Points (8.12 Data Leakage Prevention, etc.)

Thorough explanation of practical examples in response to the new ISMS(ISO27001) standard. Introducing important points to keep in mind in the examination, such as information deletion, data masking, and data leakage prevention, with actual examples. A must-see for those in charge of companies who are worried about responding to new management measures! Colorkrew Security Blog

New Standard for Obtaining ISMS Certification ISO27001: 2022 Migration Success Stories and Key Points (5.23 Information Security for Cloud Service Usage, etc.)

New Standard for Obtaining ISMS Certification ISO27001: 2022 Migration Success Stories and Key Points (5.23 Information Security for Cloud Service Usage, etc.)

We will explain in detail the 11 management measures to comply with the new ISMS standard in the 2022 edition of the ISO27001. From cloud security to BCP, we introduce the implementation of each management measure and the evaluation points in the audit, and cover important information that companies aiming to obtain certification should know. |Colorkrew Security

New Standard ISO27001 for ISMS Certification: 2022 Migration Success Stories and Key Takeaways (5.7 Threat Intelligence)

New Standard ISO27001 for ISMS Certification: 2022 Migration Success Stories and Key Takeaways (5.7 Threat Intelligence)

In response to the new ISMS standard, we will introduce practical examples for building threat intelligence. Detailed explanation of effective security measures such as IPA and security news auto-posting, dark web monitoring, vulnerability management, etc. This article is full of tips to help companies strengthen their information security. Colorkrew Security Blog

New Standard ISO27001 for ISMS Certification: 2022 Transition Success Stories and Key Takeaways

New Standard ISO27001 for ISMS Certification: 2022 Transition Success Stories and Key Takeaways

Based on the 2022 revisions of the ISO27001, we will explain in detail how to respond to the new ISMS standard. It provides a step-by-step introduction to the changes to Annex A and the steps to introduce new management measures, covering important points that certified companies should be aware of. A practical guide to strengthening your security strategy. Colorkrew Security Blog