Edoardo Gerosa
banner
edoardogerosa.bsky.social
Edoardo Gerosa
@edoardogerosa.bsky.social
#CISO, blogger, lecturer | posting about lean cybersecurity, leadership and engineering | blogonsecurity.com
Slash #Pentesting report analysis time (and costs) with smart #AI agents that do all the heavy lifting 🏋‍Eliminate all the manual work involved in copy-pasting findings into your #Jira ticketing system 😎 More here: www.blogonsecurity.com/posts/ai-pen...
April 10, 2025 at 2:31 PM
New power #geopolitics will have an unforeseen impact on #cybersecurity. The faster speed and influence of geopolitics will challenge security teams used to only tracking technology changes. There are 3 things that security teams can do to re-adjust: www.blogonsecurity.com/posts/geopol...
March 11, 2025 at 8:26 AM
Is your nascent security team struggling with identifying and prioritising threats? Consider using lean threat management: an approach to deliver accurate results while being cheap and fast to implement.
🔗 Get an intro here: lnkd.in/ebCHYy8t
#CyberSecurity
March 3, 2025 at 7:49 AM
Are your #cybersecurity management reviews going nowhere? Here's a couple of #ciso tips to help reclaim leadership's full attention with lean reviews that deliver twice the value while taking half the time. More here: www.blogonsecurity.com/posts/lean-c...
February 10, 2025 at 8:42 AM
Need to write a SaaS vulnerability management policy using #AI? Spoiler: it's not as simple as prompting chatbots to "Write a vulnerability management policy". Learn more here: www.blogonsecurity.com/posts/free-i... #cybersecurity
February 5, 2025 at 6:14 PM
Reposted by Edoardo Gerosa
Fellow blue teamers - make this your New Years resolution. Pick one of the tools in your infrastructure and take the time to _really_ tune it. Make it perfect. Make it sing.
Companies don’t need more security tools; they need to use the ones they already bought properly
December 4, 2024 at 3:53 PM
Need to quickly build a wiki for your #cybersecurity team?
Nail the basics:
• ❓ Start with 𝗪𝗛𝗬 you exists (mission)
• ✨ Continue with 𝗪𝗛𝗔𝗧 you bring to the table (value-add)
• 🚀 Finish with 𝗛𝗢𝗪 you make things happen (execution)
...then expand from there. More here: tinyurl.com/wikitip
December 4, 2024 at 8:37 AM
Want to build a free endpoint detection capability? 💡Sysmon can offer a cost-effective way to enhance threat detection, especially when paired with the MITRE ATT&CK framework and optimised using parsing tools mapped to OSSEM. More here: blogonsecurity.com/posts/azure-... #cybersecurity
Build an Azure Sentinel lab - part four: free endpoint detection with Sysmon - Blog on Security
Learn how to build a free endpoint detection capability using Sysmon and Mitre ATT&CK
blogonsecurity.com
November 29, 2024 at 12:08 PM
If you are looking to build a free ISMS using only ChatGPT/Gemini then this article (and related cheatsheet) will be of interest to you www.blogonsecurity.com/posts/build-... #ai #CyberSecurity #GRC
November 19, 2024 at 3:55 PM
Can you accelerate data breach simulations using #AI? Yes! Using simple scenarios, detailed plans and AI to create artefacts, you can build data breach simulations that balance efficient organisation with realistic execution. More here: www.blogonsecurity.com/posts/runnin... #cybersecurity
How to run data breach simulations - Blog on Security
Need to run a data breach simulation? Learn how to organise and execute them quickly and efficiently
www.blogonsecurity.com
November 18, 2024 at 8:50 AM
A deep-dive on running rapid risk assessments using Google Gemini and Confluence. Can it be done? For simple use cases chatbots can drastically accelerate the definition and execution of smaller risk assessments

Read more here: blogonsecurity.com/posts/runnin...

#CyberSecurity #risk #ai
November 15, 2024 at 7:54 AM
Are expensive transformations needed to successfully shift to #agile #SecOps? No. You can initiate small changes that eventually snowball into a larger shift. Here are 3 easy ideas to get started: kanban, handshake protocols and retrospectives. More here: blogonsecurity.com/posts/agile-...
November 15, 2024 at 7:52 AM