Posts

Showing posts from December, 2022

Week 3 - IoT (Internet of Things)

 Hello everyone!  Today I want to discuss the exciting world of IoT and some of its benefits. IoT devices are everywhere today, including home appliances, phones, and even at work. Smart devices have made it possible for daily operations to be simplified and provide real-time data. For example, smartwatches can provide data on how many steps we have taken and our current heart rate. While to some people, that might not be very important, it’s a huge benefit to others. The use of smartwatches helps doctors review the data to provide more effective and accurate diagnoses. These smart devices collect data that helps with decision-making within organizations. For example, organizations can use analytics to determine the culture of their products and use this information to make effective decisions. IoT devices are here to stay, and businesses will continue to invest, so it is equally crucial for security professionals to get familiar with these devices as they can be used as an ...

Week 2 - Common Vulnerability Scoring System (CVSS)

  Hi everyone! Today I wanted to talk about CVSS and the benefits of adopting this into vulnerability management. CVSS is a public framework for assessing the severity of vulnerabilities in software. Each vulnerability is reviewed and scored between 0-10, with 10 being the highest risk. Using group metrics such as base (exploitability and impact), exploitability metrics (characteristic) of the piece of software), and temporal metrics (worst-case scenario). When conducting vulnerability scans, having a platform such as CVSS to identify the severity and impact of vulnerabilities helps with prioritization, especially with limited resources to remediate. Thanks for reading, and I hope to you see you next time. Have a great day!