Internal leakage can be described by the "triangle of fraud". In this article, we will explain corporate risk from the perspective of motivation, opportunity, and justification, and introduce practical internal fraud countermeasures and how to use Microsoft Defender. |Colorkrew Security
Beware of the new threat "ClickFix" created by the user's "permission operation". Based on real-world examples, we will explain the importance of specific corporate measures and SOC linkage using Microsoft Defender and EDR. Colorkrew Security Blog
An easy-to-understand explanation of the revision points of JIS Q 15001:2023. Here are the latest trends in the P mark examination and tips for practical response. |Colorkrew Security
Should all dependent library vulnerabilities be addressed? Learn how GitHub Dependabot and risk-based management can help you focus on critical vulnerabilities. |Colorkrew Security
How will you respond to the new management measures in ISMS 2022? Specific examples of security monitoring, web filtering, and secure coding are explained. |Colorkrew Security
Microsoft Authenticator's password saving function has ended. We will explain the password manager and migration procedure of the switch destination in an easy-to-understand manner. |Colorkrew Security
Thorough explanation of practical examples in response to the new ISMS(ISO27001) standard. Introducing important points to keep in mind in the examination, such as information deletion, data masking, and data leakage prevention, with actual examples. A must-see for those in charge of companies who are worried about responding to new management measures! Colorkrew Security Blog
We will explain in detail the 11 management measures to comply with the new ISMS standard in the 2022 edition of the ISO27001. From cloud security to BCP, we introduce the implementation of each management measure and the evaluation points in the audit, and cover important information that companies aiming to obtain certification should know. |Colorkrew Security
In response to the new ISMS standard, we will introduce practical examples for building threat intelligence. Detailed explanation of effective security measures such as IPA and security news auto-posting, dark web monitoring, vulnerability management, etc. This article is full of tips to help companies strengthen their information security. Colorkrew Security Blog
Based on the 2022 revisions of the ISO27001, we will explain in detail how to respond to the new ISMS standard. It provides a step-by-step introduction to the changes to Annex A and the steps to introduce new management measures, covering important points that certified companies should be aware of. A practical guide to strengthening your security strategy. Colorkrew Security Blog