Author
Sue Poremba

Drilling Down on Data Privacy: 5 Key Charts From ISACA’s 2025 Report
Regulations are pushing more enterprises to build data privacy programs, but ISACA researchers were surprised by some of the hows and whys – and why nots – revealed in this new report. We highlight five to guide enterprises in their own data privacy plans.

CISO Success Story: The Best Cure for Boring Cybersecurity Training
“Privacy evangelist” Ken Fishkin had a strong sense the cybersecurity video training at his 350-person law firm wasn’t exactly getting through. How did he know? Too many kept falling for scams. Here’s how he fixed that.

Building Diversity in AI: 3 New Hires Discuss Supply and Demand in the Tech Revolution
Experts say diverse teams with varied backgrounds and points-of-view are better at spotting and mitigating cybersecurity threats, and the same is proving true when it comes to deploying AI systems responsibly and ethically. We talked to three AI workers about their experiences gaining skills, getting hired, and adjusting in the workplace.

RSA 2024 Preview: Applying Past Lessons for Intel-Driven Identity Threat Detection
In the second of our three-part RSA preview, Focal Point asks Cisco Talos’ Nicole Hoffman of about IAM–and an unusual book.

The Essential Guide to Slow Patching: The Reasons, the Risks, the Remedies
A recent survey shows significant delays in patching critical software vulnerabilities. Here’s why it happens, why security teams are sometimes encouraged to let it happen, and the policies that can reverse this (increasingly dangerous) trend.

CISO Success Story: How Zoom Achieved Cybersecurity 2.0 With Cyber Risk Scoring
In the first of an ongoing series of one-on-one interviews with leading CISOs, Focal Point sits down with Zoom’s Michael Adams to discuss the moment when cyber risk scoring really paid off.

Best New (Cyber) Read: A Philosopher’s Guide to Cracking the “Upcode”
We talked to Yale philosophy professor Scott J. Shapiro about his new book, Fancy Bear Goes Phishing: The Dark History of the Information Age, in Five Extraordinary Hacks, and his unique take on hacking, which he says originates in political, legal, social, and psychological vulnerabilities—what he calls “the upcode.”

These Films Won’t Win Any Oscars, But They Might Save Your Company
So long PowerPoint—these security awareness training videos leverage Netflix-style production values and suspense to engage workers.