Truth in IT
    • Sign In
    • Register
        • Videos
        • Channels
        • Pages
        • Galleries
        • News
        • Events
        • All
Truth in IT Truth in IT
  • Data Management ▼
    • Converged Infrastructure
    • DevOps
    • Networking
    • Storage
    • Virtualization
  • Cybersecurity ▼
    • Application Security
    • Backup & Recovery
    • Data Security
    • Identity & Access Management (IAM)
    • Zero Trust
  • Cloud ▼
    • Hybrid Cloud
    • Private Cloud
    • Public Cloud

JupiterOne: Automate Cybersecurity with the Cyber Defense Matrix and the DIE Triad

Truth in IT
07/09/2023
100
1 (100%)
Share
  • Comments
  • Download
  • Transcript
Report Like Favorite
  • Share/Embed
  • Email
Link
Embed

Transcript


Sounil Yu, CISO and Head of Research at JupiterOne, describes the Cyber Defense Matrix and the importance of consistent cybersecurity activities across different asset classes. This talk addresses questions related to inventory, importance, vulnerability, exploitation, risk assessment, and resolution of security issues. Sunil introduces JupiterOne as a solution that provides unified cyber insights to answer these questions.

Sunil acknowledges the existence of gaps in implementing cybersecurity activities consistently and highlights ongoing efforts to identify and fill these gaps within the cybersecurity ecosystem. Sunil also discuss the need to shift from people-centric approaches to technology-centric approaches and provide examples of using JupiterOne to find and classify assets based on criticality.

The determination of criticality is also explored, with the proposition of the DIA (Distributed, Immutable, Ephemeral) Triad as an alternative to the traditional CIA (Confidentiality, Integrity, Availability) Triad. It is suggested that measuring attributes related to DIA, such as time, immutability, and distribution, can help infer criticality algorithmically.

Additionally, the challenge of identifying actively exploited vulnerabilities is discussed, and Sunil proposes incorporating an exploitability scoring system similar to EPS (Exploitability Prediction Scoring) to address this issue. The talk highlights the need for an equivalent system for human vulnerabilities and data stores.

This talk also delves into the automation of cybersecurity activities using the Cyber Defense Matrix and how JupiterOne can help automate tasks such as inventory management, vulnerability identification, and prioritization of fixes.
Categories:
  • » Cybersecurity » Backup & Recovery
  • » Cybersecurity
Channels:
News:
Events:
Tags:
  • jupiterone
  • repost
  • security
Show more Show less

Browse videos

  • Related
  • Featured
  • By date
  • Most viewed
  • Top rated

            Video's comments: JupiterOne: Automate Cybersecurity with the Cyber Defense Matrix and the DIE Triad

            Upcoming Spotlight Events

            • Jun
              24

              Agentic AI Ransomware: What You Need to Know

              06/24/202501:00 PM ET
              • Jul
                29

                QR Codes Exposed: From Convenience to Cybersecurity Nightmare

                07/29/202501:00 PM ET
                More events

                Upcoming 360 View Events

                • Jun
                  18

                  360View: The Data Resilience Imperative – Securing, Scaling & Optimizing Enterprise Data

                  06/18/202512:00 PM ET
                  • Jul
                    24

                    360View: API Security & the Expanding Attack Surface

                    07/24/202512:00 PM ET
                    • Aug
                      21

                      360View: HCI, Cloud, and Virtualization: What’s Next?

                      08/21/202512:00 PM ET
                      More events

                      Upcoming Industry Events

                      • Jun
                        24

                        Tactics, Entry Points, and Real-World Insights on Ransomware Threats

                        06/24/202501:00 PM ET
                        • Jun
                          25

                          Anticipating Evolving Threats: Strategies for Detection, Response, and Resilience

                          06/25/202501:00 PM ET
                          • Jun
                            26

                            Mastering Modern Security with Wallarm's Advanced API Solutions

                            06/26/202501:00 PM ET
                            More events

                            Recent Industry Events

                            • May
                              29

                              Dispelling Misconceptions Surrounding API Security

                              05/29/202501:00 PM ET
                              • May
                                08

                                Strengthening API Security through NIST SP 800-228 Guidelines

                                05/08/202501:00 PM ET
                                • Apr
                                  17

                                  Critical Insights on the Discovery, Disclosure, and Impact of an Android Vulnerability

                                  04/17/202502:40 AM ET
                                  More events
                                  Truth in IT
                                  • Advertise
                                  • About Us
                                  • Terms of Service
                                  • Privacy Policy
                                  • Contact Us
                                  • Be Our Guest
                                  • Preference Management
                                  Desktop version
                                  Standard version