Sav (@infosecsav) 's Twitter Profile
Sav

@infosecsav

Intelligence Capability Development consultant @Mandiant, studying the intersection of intelligence, risk, and business operations.

ID: 1328154887742484480

calendar_today16-11-2020 01:56:34

3,3K Tweet

530 Followers

786 Following

Sav (@infosecsav) 's Twitter Profile Photo

Add-on: if their request is unreasonable, explicitly put the incompatible tradeoff back on them. Eg “I want a deep dive on my desk tomorrow” - “we don’t have standing reporting on that. Do you want depth or speed?” This is on the GTI RFI intake form.

Sav (@infosecsav) 's Twitter Profile Photo

Once saw an org that maintained two different, incompatible frameworks for qualitative references to risk. Fuckin don’t do that.

Sav (@infosecsav) 's Twitter Profile Photo

A podcast to help security professionals that are tasked with supporting executives. Listen to some of the best in the business frame problems and convey tradeoffs upwards.

Sav (@infosecsav) 's Twitter Profile Photo

Just to brag for a minute: over the last three weeks, we've driven over 50 hours for family obligations with two kids under 5. They have been incredibly tolerant of that much car time, and we've been incredibly lucky to have great travelers. Can't believe it worked out.

Sav (@infosecsav) 's Twitter Profile Photo

This, plus things like verbal-only incident response, is an insane state of play that should be a major policy priority. theregister.com/2025/04/28/cis…

Sav (@infosecsav) 's Twitter Profile Photo

I asked a professor when Agile ceased to be Agile, having seen it misapplied and modified beyond recognition. He just laughed and moved on. It’s just not a good knowledge management model to purpose-fit.

Sav (@infosecsav) 's Twitter Profile Photo

For folks who left the military to get into private sector, what kind of lead time did you start applying for jobs? Asking for a friend who doesn’t know when to start.

Andrew Thompson (@imposecost) 's Twitter Profile Photo

Senior Manager, Threat Intel Research - $199,000 - $322,500/YR Remote. Lists "Familiarity with Vertex Synapse (The Vertex Project) preferred." jobs.smartrecruiters.com/PaloAltoNetwor…

SLEUTHCON (@sleuthcon) 's Twitter Profile Photo

Check out the final agenda on our website! There's still time to grab your ticket too and secure your spot at #SLEUTHCON 2025! sleuthcon.com

Check out the final agenda on our website!

There's still time to grab your ticket too and secure your spot at #SLEUTHCON 2025!

sleuthcon.com
Sav (@infosecsav) 's Twitter Profile Photo

This rules. As an industry we under-discuss interpersonal fraud and Google is doing some great work on this problem set.

Melanie Lombardi (@mel_lombardi) 's Twitter Profile Photo

This afternoon Google's Jeanette Manfra spoke to the US House Committee on Homeland Security on the need for harmonized regulation with strong cybersecurity standards that are agile enough to keep pace with evolving tech and threats: homeland.house.gov/hearing/commit…

SLEUTHCON (@sleuthcon) 's Twitter Profile Photo

The House of Sleuthington formally invites you to SLEUTHCON next Friday, June 6th, for a day of cybercrime research, networking, and collaboration. Sir Sleuthington is looking forward to seeing you! Some examples of suggested (but not required) Sleuthy-approved attire are below.