31.07.2023 Views

The Cyber Defense eMagazine August Edition for 2023

Cyber Defense eMagazine August Edition for 2023 #CDM #CYBERDEFENSEMAG @CyberDefenseMag by @Miliefsky a world-renowned cyber security expert and the Publisher of Cyber Defense Magazine as part of the Cyber Defense Media Group as well as Yan Ross, Editor-in-Chief and many more writers, partners and supporters who make this an awesome publication! Thank you all and to our readers! OSINT ROCKS! #CDM #CDMG #OSINT #CYBERSECURITY #INFOSEC #BEST #PRACTICES #TIPS #TECHNIQUES

Cyber Defense eMagazine August Edition for 2023 #CDM #CYBERDEFENSEMAG @CyberDefenseMag by @Miliefsky a world-renowned cyber security expert and the Publisher of Cyber Defense Magazine as part of the Cyber Defense Media Group as well as Yan Ross, Editor-in-Chief and many more writers, partners and supporters who make this an awesome publication! Thank you all and to our readers! OSINT ROCKS! #CDM #CDMG #OSINT #CYBERSECURITY #INFOSEC #BEST #PRACTICES #TIPS #TECHNIQUES

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Could cybersecurity be considered CNI?<br />

We’ve already touched upon the importance of cybersecurity <strong>for</strong> CNI, but this begs the question whether<br />

cybersecurity could actually be CNI. <strong>The</strong> Center <strong>for</strong> the Protection of Critical National Infrastructure<br />

(CPNI) defines CNI as:<br />

“National Infrastructure are those facilities, systems, sites, in<strong>for</strong>mation, people, networks and processes,<br />

necessary <strong>for</strong> a country to function and upon which daily life depends. It also includes some functions,<br />

sites and organizations which are not critical to the maintenance of essential services, but which need<br />

protection due to the potential danger to the public (civil nuclear and chemical sites <strong>for</strong> example).”<br />

Considering that all of the industries that would fall inside those parameters rely on cybersecurity to<br />

continue operating, then surely cybersecurity, by definition, should also be considered CNI.<br />

CNI sectors are considered critical because if any failed, a country could cease to function. Moreover,<br />

CNI suffers more frequent, diverse, and sophisticated cyberattacks than any other sector; this means<br />

that should the cybersecurity sector fail, an entire nation’s CNI could fail with it.<br />

In summary, it’s clear that the mere prospect of cyber warfare has had a major impact on government<br />

attitudes towards cybercrime. While, from a security perspective at least, this change is welcome, it does<br />

mean that private organizations will be increasingly pressured to take responsibility <strong>for</strong> their<br />

cybersecurity. Employing security tools, like BAS <strong>for</strong> example, that provide deep insight into an<br />

organization’s environment is more important than ever. Whether we like it or not, more stringent<br />

cybersecurity regulation is on the horizon, and businesses must be prepared.<br />

About the Author<br />

Avishai Avivi is the Chief In<strong>for</strong>mation Security Officer at SafeBreach, the<br />

pioneer in Breach Attack and Simulation (BAS.) Avi brings more than 30 years<br />

as a senior in<strong>for</strong>mation security leader with companies such as Wells Fargo,<br />

E*Trade, and Experian, where he created and implemented security programs<br />

with a focus on best practices and control maturity. Avi’s security career started<br />

with the Israeli <strong>Defense</strong> Forces Unit 8200 and has included multiple roles and<br />

domains across in<strong>for</strong>mation security, product R&D, professional services,<br />

customer support and strategic leadership. Avi holds a dual MBA from UC<br />

Berkeley’s Haas School of Business and Columbia University’s Business<br />

School. He is CISSP, CISM, CRISC, CISA, CIPM and CIPT certified and holds<br />

the Stan<strong>for</strong>d University Strategic Decision and Risk Management program<br />

certification.<br />

Avi can be reached online at linkedin.com/in/aavivi and at http://www.safebreach.com<br />

<strong>Cyber</strong> <strong>Defense</strong> <strong>eMagazine</strong> – <strong>August</strong> <strong>2023</strong> <strong>Edition</strong> 107<br />

Copyright © <strong>2023</strong>, <strong>Cyber</strong> <strong>Defense</strong> Magazine. All rights reserved worldwide.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!