Contact

Asset Owner Identification Automation for Vulnerability Management

A major Communications & Media company faced a large number of long-lived vulnerabilities in their service delivery network for which the asset owner was unknown. Without an asset owner for whom to turn for remediation, each day the situation was going from bad to worse. Their existing manual ownership identification processes were hopelessly overwhelmed by […]

Read More
Created with Sketch.
Media & Events

DayBlink Consulting 2023 Community Report

In 2023, DayBlink Consulting made substantial contributions to our local communities, with our team dedicating over 300 hours of volunteer service. This commitment led to $25K+ in donations and $40K+ in pro bono services delivered to organizations, enriching the communities we hold dear. Follow the link to explore the breadth of our involvement and its […]

Read More
Created with Sketch.
Media & Events

DayBlink Consulting ranked #11 Best Boutique Consulting Firm by Vault Magazine

Tysons Corner, VA, March 2nd, 2024 – DayBlink Consulting has placed 11th on Vault’s 2024 list of Best Boutique Consulting Firms to Work For, and 32nd on Vault’s 2024 Consulting 50: Best Consulting Firms to Work For. This marks the 8th year in a row that DayBlink Consulting has been recognized with this honor. DayBlink Consulting ranked […]

Read More
icon / insight Created with Sketch.
Insight

Should a CISO be Better at Automation than Security?

As the story goes, and more recently popularized in the movie The Founder, Ray Kroc was speaking to a class at Harvard when asked “What business is McDonalds in?” “Restaurants!” “Hospitality!” “Supply Chain!” “Franchising!” “Entertainment!” “No!” Ray laughed and replied to each student. “Ladies and gentlemen, I’m not in the hamburger business. My business is real estate.” This […]

Read More
icon / insight Created with Sketch.
Insight

Industry Evolution of Modern Vulnerability Management

Vulnerability Management as a function has been around as long as we’ve had sophisticated IT and security organizations. Yet the overall scope and responsibilities of that function have morphed considerably over the past decade. Many organizations used to use a very narrow definition of vulnerability and simply compare configurations and software versions against a database […]

Read More
icon / insight Created with Sketch.
Insight

Preparing for the American Data Privacy & Protection Act

The average cost of a data breach in the United States is nearly 10 million dollars, the highest of any country in the world. In spite of this, the United States does not have a single comprehensive federal consumer privacy law comparable to the European Union’s General Data Protection Regulation (“GDPR”). Due to the fragmented […]

Read More
icon / insight Created with Sketch.
Insight

The Implications of AI-Assisted Code Development on Risk Management

AI-assisted code development (AICD) is a powerful tool that can be leveraged in the DevSecOps cycle to increase code efficiency. However, the increased speed and capacity for development also bring new risks to organizations. While organizations that are fast adopters of this technology will have a significant advantage over their competitors, their new development capabilities […]

Read More
Created with Sketch.
Position Paper

Maximize Impact, Minimize Burden: Making the Case for Rapid-Fire Crown Jewels Assessments

Identifying a company’s most important assets to protect should arguably be any cybersecurity organization’s first priority. Traditionally, the Crown Jewels Analysis method is thorough and comprehensive, but arguably heavy and slow to scale. While this approach is considered to be the gold standard and a worthwhile investment, we argue that the approach may not be […]

Read More
icon / insight Created with Sketch.
Insight

Key Changes in PCI DSS 4.0 for Organizations to Address

Originally released in March 2022, version 4.0 of the Payment Card Industry Data Security Standard (PCI DSS 4.0) officially takes effect on March 31, 2024. The updated PCI DSS presents important changes to the world of payments, placing heavier emphasis on risk management practices, strong authentication capabilities and security awareness training. Learn more about the […]

Read More
icon / insight Created with Sketch.
Insight

Lost in Translation: Overlooking Culture Integration in M&A

Even though it’s widely known that culture alignment is important for business success, it’s often overlooked, especially within M&A scenarios. In many cases, there are clear operational and financial synergies that justify the transaction, and yet lacking culture alignment has led to countless failed integrations. Follow the link below to learn more about why cultural […]

Read More