Wow! CISO is going to the guardhouse due to a breach


Userlevel 7
Badge +9

https://www.wsj.com/articles/former-uber-security-chief-found-guilty-of-obstructing-ftc-probe-11665004454?st

 

Always disclose breaches! what are your thoughts?W🤔


2 comments

Userlevel 7
Badge +20

Unfortunately they’re being used a bit as a scapegoat here, the CEO at the time was aware, but it’s the CISO that’s taking the fall… This standard should be applied to the board, determine who knew about this and was complicit, would be very interesting!

Userlevel 7
Badge +9

Unfortunately they’re being used a bit as a scapegoat here, the CEO at the time was aware, but it’s the CISO that’s taking the fall… This standard should be applied to the board, determine who knew about this and was complicit, would be very interesting!

I agree! A lot of organuzations aren’t reporting due to reputational damage, but I think .... “GDPR introduces a duty on all organizations to report certain personal data breaches to the relevant supervisory authority. You must do this within 72 hours of becoming aware of the breach, where feasible.”

Comment