Melinda Marks
banner
Melinda Marks
@melindamarks.bsky.social
Writer, gardener, music lover. Day job is Practice Director, Cybersecurity, at Omdia covering cloud native security, app sec (formerly @solublecloud, StackRox,Qualys, VMware), opinions are my own
AI is helping attackers target mobile devices and our children who are increasingly online. Learn more and gain practical tips to help your family stay safe online.
#cybersecurityawareness #cybersecurity #onlinesecurity #AIscams #CSAM #childsafety
www.forbes.com/sites/tonybr...
AI Scams Are Growing Up Faster Than Kids
AI scams, early device use and limited supervision are reshaping digital parenting. Here's how and what parents can do about it.
www.forbes.com
October 29, 2025 at 1:10 AM
Another update from #Qualys #ROCon keynote w/ Shailesh Athalye: integration of identity security w/ TruRisk Platform pulling data from Active Directory for context to mitigating risk from access points.
#identitysecurity #riskmanagement #trurisk #riskremediation #attacksurfacemanagement
October 15, 2025 at 5:03 PM
More from #Qualys #ROCon on their work eliminating risk, including their application of #AgenticAI to automate remediation
#ciso #infosec #threatintelligence #Secops #soc #patchmanagment #vulnerabilitymanagement #riskmanagement #AI
October 15, 2025 at 4:55 PM
The #Qualys user conference: Qualys Security Conference, #QSC, is now the Risk Operations Conference (ROCon). CEO/President Sumedh Thakar describes their journey: from #vulnerabilitydetection to patch management, to #riskmanagement, to #ROCon
#VulnerabilityManagement #infosec #ciso #cybersecurity
October 15, 2025 at 4:53 PM
Updates to @HashiCorp Security Lifecycle Management (SLM) for #vault help with #secretmanagement. Keynote with @armon.bsky.social “You have to protect secrets everywhere, the attackers only have to find it once.”
@hashiconf #IAM #appsec #devsecops #securedevelopment
September 25, 2025 at 11:28 PM
Security Lifecycle Management (SLM) enhancements in today’s #hashiconf keynote: @armon.bsky.social covered how security can work with platform engineers and development to manage vulnerabilities and exposure from #secrets sprawl with #Vault.
#secretsmanagement #appsec #devsecops #infosec
September 25, 2025 at 11:21 PM
Announcements at #hashiconf:
#ILM updates help #security: HCP #Terraform Stacks GA scales configuration management and betas for Terraform Search and Terraform Actions trigger actions with resources at various points in the development lifecycle.
#appsec #devsecops
#infosec
#cybersecurity #cyber
September 25, 2025 at 11:14 PM
Today #hashiconf keynote celebrated its 10th year! @armon.bsky.social described how their view of the world has been supporting hybrid infrastructure, operationalizing what's needed to build applications and support #AI adoption. This helps w/ #cybersecurity!
#devsecops #terraform #IaC #appsec
September 25, 2025 at 11:12 PM
Reposted by Melinda Marks
The Blackhat summary blog is live! If you choose "Agentic AI", you won the buzzword bingo contest. The blog has details on trends/ announcements around identity security and data security (and, of course, it touches on AI agents!). www.techtarget.com/searchsecuri...
Identity and data security themes at Black Hat 2025 | TechTarget
Explore Black Hat 2025's top trends around agentic AI security, identity verification against deepfakes and preparing for post-quantum cryptography.
www.techtarget.com
August 20, 2025 at 1:29 PM
Reposted by Melinda Marks
New Blog Published: Running into Data Loss Prevention (#DLP) alert noise and figuring out how Data Security Posture Management (#DSPM) plays with DLP? Check out the blog and Enterprise Strategy Group research for insights to help your data security team - www.techtarget.com/searchsecuri...
DLP and DSPM: Navigate policy challenges and quiet alert noise | TechTarget
Discover how DSPM and DLP technologies work together to solve alert fatigue and policy challenges in modern data security programs.
www.techtarget.com
July 28, 2025 at 5:59 PM
Our #cybersecurity Enterprise Strategy Group
analysts will be at #BlackHatUSA hosting BrightTALK @ Summit sessions. Spots are filling up fast. Follow the link or ping us to learn more.

at-summits.brighttalk.com/summit/7043/

#infosec #cloudsecurity #appsec #blackhat #lasvegas
@ Black Hat USA 2025 - BrightTALK @ Summits
Live-streamed expert conversations between industry professionals and Enterprise Strategy Group analysts, powered by TechTarget Studios. Join us for a virtual experience as we stream live and speak to...
at-summits.brighttalk.com
July 1, 2025 at 7:05 PM
Check out the new research brief here on the importance of getting security involved as early as possible in the development processes from my study on the State of #DevSecOps and #CloudSecurity Platforms.
#securedevelopment #appsec #shiftleft #cloudnativesecurity #cloudsecurity #cnapp
The Imperative to Involve Security Starting Early in Application Development Processes - Enterprise Strategy Group
Demands for breakneck speed in application development certainly aren’t going away in increasingly competitive business environments.
www.techtarget.com
June 10, 2025 at 3:52 PM
Reposted by Melinda Marks
What's an enterprise CISO to do in slight of #signalgate? My thoughts are published in @computerweekly.bsky.social . TL;DR it is about security culture more than technical controls (but don't forget those controls ... and their limitations!). www.computerweekly.com/opinion/Sign...
Signalgate: Learnings for CISOs securing enterprise data | Computer Weekly
A leak of information on American military operations caused a major political incident in March 2025. The Security Think Tank considers what can CISOs can learn from this potentially fatal error.
www.computerweekly.com
May 2, 2025 at 4:19 PM
#AgenticAI will be a game changer for #cybersecurity! 💥 Read my Enterprise Strategy Group colleague Dave Gruber's post on how it helps #SecOps (and check out his latest research on 🚀 The Future of SecOps in an AI Driven World!)
#AI #SecurityOperations www.techtarget.com/searchsecuri...
RSAC 2025 to center on agentic AI, GenAI in security | TechTarget
Security leaders at RSA conference will learn how to support their organizations' use of AI while managing security risks.
www.techtarget.com
April 26, 2025 at 1:15 AM
New blog alert! 🚨 At #RSAC am looking forward to deep dives into #AI adoption and how applying #genAI 🤖 and #agenticAI help #cybersecurity teams scale 📈.
#infosec #artificialintelligence #RSAC2025 #AIsecurity
www.techtarget.com/searchsecuri... via @techtargetnews
RSAC 2025 to center on agentic AI, GenAI in security | TechTarget
Security leaders at RSA conference will learn how to support their organizations' use of AI while managing security risks.
www.techtarget.com
April 25, 2025 at 9:15 PM
New post on what to expect at #RSAC next week for email and endpoint security from my Enterprise Strategy Group colleague @gabeknuth.bsky.social
#RSAC2025 #EUC #EndpointSecurity #EmailSecurity #GenerativeAI #CyberSecurity #Phishing #BEC
www.techtarget.com/searchenterp... via TechTarget
3 EUC security topics I'll be looking for at RSAC 2025 | TechTarget
Those interested in RSA Conference 2025 should learn what topics to focus on at this upcoming conference.
www.techtarget.com
April 23, 2025 at 8:49 PM
Keynote at #GoogleCloudNext - demo of Google Unified Security (GUS) utilizes agentic AI to analyze data from typically siloed tools, adding context and intelligence for rapid remediation and security hardening.
#cybersecurity #cloudsecurity #vulnerabilitymanagement #threatintelligence #devsecops
April 9, 2025 at 5:44 PM
Fun way to kick off #googlecloudnext at the Sphere: Sundar Pichai showcases how #AI helps brings us new experiences reducing the huge amount of work it would take to create an immersive experience.
April 9, 2025 at 12:30 AM
Here's my take on the @wiz_io acquisition & how #cloudnative security solutions have evolved. This a 🔥 space and this post explores the evolution over the past 10 years.
#cloudsecurity #CSPs #cloudnative #devsecops #applicationsecurity
#appsec www.techtarget.com/searchsecuri... via @techtargetnews
What the $32B Google-Wiz deal says about cloud-native security | TechTarget
Google's purchase of Wiz for $32 billion highlights the importance of cloud-native security.
www.techtarget.com
March 27, 2025 at 4:12 PM
The entire Enterprise Strategy Group
#cybersecurity team is excited for #RSAC2025. We'll be in Broadcast Alley again this year filming sessions. Ping us with your ideas for topics and/or to participate! at-summits.brighttalk.com/summit/7001/
#infosec #rsac
@ RSA Conference 2025 USA
Live-streamed expert conversations from the showfloor at the Moscone Center in San Francisco! Hear from security / IT / cyber / risk professionals and Enterprise Strategy Group Analysts, powered by Te...
at-summits.brighttalk.com
February 13, 2025 at 10:40 PM
I am often asked about when #startups should engage with industry analysts, so I wrote this blog post about how we at Enterprise Strategy Group help startups with product market fit #PMF and #GTM strategy
#cybermarketing #startupmarketing #analystrelations
www.techtarget.com/esg-global/b...
The Value of Early Analyst Engagement for Startup Marketing Success - Enterprise Strategy Group
Joining a startup is exciting. You get to bring a new product or service to market that solves customer problems. Success depends on focusing the internal team on creating a unique offering that serve...
www.techtarget.com
January 29, 2025 at 10:57 PM
Reposted by Melinda Marks
Cybersecurity point product vs platforms? A new @tylershields.bsky.social blog weighs in on the debate. I am of the view that "it depends" and "s--t has gotta work" - www.techtarget.com/searchsecuri...
Too many 'point'less tools: Platformization is better | TechTarget
The security community has long debated the merit of point products vs. platforms. Follow this cheat sheet to get started toward platformization.
www.techtarget.com
January 24, 2025 at 4:53 PM
Useful series here 👇 for anyone considering making the move from a Mac 🍎 to a PC 💻 from my awesome Enterprise Strategy Group colleague Gabe Knuth.
#Dell #MacOS #MSWindows #windowsPC #ARM #microsoft #applecomputers
I spent 2 months switching from my Mac to a Dell XPS 13 w/ Snapdragon Elite, and I wrote about it.

Part 1: Windows on ARM is a big deal. It was (mostly) flawless, and the laptop was great bit.ly/4fP11oD

Part 2: The real challenge—switching from macOS to Windows. Spoiler: It’s hard. bit.ly/3BYIisG
What it's like to use a Dell Qualcomm AI PC for 2 months | TechTarget
Learn what it's like for a longtime Mac user to transition to an AI PC from Dell and Qualcomm and what the expert takeaways are from this process.
bit.ly
January 6, 2025 at 7:01 PM
Reposted by Melinda Marks
Lots of #cybersecurity talk about zero day threats, but the basics will drive identity security investments (AKA identity & access management) according to the Enterprise Strategy Group 2025 Technology Spending Intentions survey. www.techtarget.com/searchsecuri...
The basics drive 2025 identity security investments | TechTarget
Before investing in shiny new technologies, enterprises know they need foundational identity security technologies and processes in place. Learn more.
www.techtarget.com
January 3, 2025 at 10:40 PM