Microsoft Will Hold Executives Accountable for Cybersecurity
ID: 72d4d1cd-a2f0-500e-a2d2-40e0eb98d37c
STIX ID: report--72d4d1cd-a2f0-500e-a2d2-40e0eb98d37c
Feed Name: Dark Reading
Microsoft announced an expanded Secure Future Initiative and organizational changes to strengthen security and hold senior leadership accountable following criticism from the Cyber Safety Review Board and recent high-profile intrusions (Storm-0558 and Midnight Blizzard). The plan mandates deputy CISOs per product team, direct reporting of threat intelligence to the enterprise CISO, cross-team engineering coordination, and a six-pillar approach (protecting identities/secrets, tenants/production cloud systems, networks, engineering systems, monitoring/detection, and accelerated response/remediation) with measures such as automatic key rotation, removal of legacy systems, continuous least-privileged access, network segmentation, and zero-trust access to source code and infrastructure.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
