SDVOSB Logo
-

Ready to find out more?

Select link for US - CERT CISA Report on Russian cybersecurrity threats

Ready to find out more?

Select link for DHS Report on the Chinese CCP cybersecurrity threats

MISSION "defined" --- MISSION "secured" ---
with the leadership & insight from
MISSION INSIGHT

MISSION INSIGHT will move your CyberSecurity Governance maturity from the "REACTIVE & PROACTIVE" maturity levels to

"PREDICTIVE & OFFENSIVE" maturity levels!

Mar2021 cis advisory

POA&M Actions To Secure Your Infrastructure ---

MS ISAC Related Resource CIS Control3

Ready to find out more about this CIS Control to improve your security profile?

Review the CIS Control 3: Continuous Vulnerability Assessment & Remediation

The current CYBERTHREAT level of the United States based on MS-ISAC and other alerting agencies - 2nd Quarter 2021
MS ISAC Threat Scale ELEVATED YELLOW

On March 10, the Cyber Threat Alert Level was evaluated and is being raised to Yellow (Elevated). On March 3, the Department of Homeland Security (DHS) Cybersecurity and Infrastructure Security Agency (CISA) released an activity alert (AA21-062A) and Emergency Directive (ED) 21-02, both addressing critical vulnerabilities in versions of Microsoft Exchange servers. Successful exploitation of these vulnerabilities allows an attacker to access on-premises Exchange servers, enabling them to gain persistent system access and control of an enterprise network. These vulnerabilities are being actively exploited in the wild and all organizations with affected versions of Microsoft Exchange Server are urged to patch their systems immediately. For more information on this threat, CIS has created a web page at https://www.cisecurity.org/ms-exchange-zero-day/. On March 4, the MS-ISAC released an update to an advisory for multiple vulnerabilities in Google Android OS, the most severe of which could allow for remote code execution. On March 9, the MS-ISAC released two advisories. The first of these was for multiple vulnerabilities in Microsoft products, the most severe of which could allow for remote code execution. The second advisory released was for a vulnerability in Apple products, which could allow for arbitrary code execution. On March 10, the MS-ISAC released an advisory for multiple vulnerabilities in Adobe products, the most severe of which could allow for arbitrary code execution. Organizations and users are advised to update and apply all appropriate vendor security patches to vulnerable systems and to continue to update their antivirus signatures daily. Another line of defense includes user awareness training regarding the threats posed by attachments and hypertext links contained in emails especially from un-trusted sources.

Ready to find out more?

What is your CyberSecurity Governance & support operations maturity levels?
"Battlefields to Boardrooms" MISSION INSIGHT provides the "insight" to your strategic "mission"

Interested in joining our MI team?

MISSION INSIGHT is currently looking for highly skilled  CyberSecurity Governance, AWS Cloud IT support & training professionals to support the MD THINK program in Linthicum Maryland.
Do you have the skills to support the MISSION? 

Ready to find out more?

Select link for US - CERT CISA Report

-
logo-web
-

CyberService: GRC Management

MI will lead the implementation of a comprehensive, measured & scalable governance, risk, and compliance (GRC) program that will enable organizations to address & measure with KPIs, KGIs, & KRIs the multiple factors that are essential in managing and controlling your enterprise risk.

Learn More

CyberService: Cyber Maturity Management

MI will design, implement & manage a comprehensive and measured CyberResiliency Baseline & Improvement Assessment program that aligns with the NIST CSF and COBIT frameworks and will drive process innovation throughout your enterprise.

Learn More

CyberService: Cyber Risk Management

MI delivers on identifying risk & will support your enterprise Cyber Risk objectives with our Cyber Risk Management services. We help organizations identify, define & measure the many security challenges they face in their 'day-2-day" operations — supporting risk-based decisions and improved cybersecurity, reducing costs related to managing security risk, and improving their overall cybersecurity posture.

Learn More

IntelService: Competitive Intelligence

A critical component of risk for any organization is the unknown risk of the market landscape your business operates in. Are you ware of your true competitors or the known cyber threats that target your unique industry? MI can assess your current state market & competitive posture, identify known cyber vulnerabilities & threat remediation with detailed Plans of Action & Milestones (POA&Ms) and will provide a defined market landscape road-map that identifies your risk, known threats related to both cybersecurity & competition to drive your unique selling proposition (USP) & strategies through the implementation of actionable & quantitative key performance indicators (KPIs), key risk indicators (KRIs) & key goal indicators (KGIs).

Learn More

MISSION INSIGHT

MISSION INSIGHT is a certified "Service - Disabled Veteran Owned Small Business" (SDVOSB) under the VA disability guidelines with a "reach-out" mission to transform our Veterans that have served our country into highly valued business consultants. MISSION INSIGHT focuses on securing insight to drive operational improvements to your CyberIntelligence & MarketIntelligence models for your business mission.

MISSION INSIGHT can assess your current state Security Governance functionality & work with your Security Team to mature to a new Capability Maturity Model level.

MISSION INSIGHT can construct a Security Governance that is built on the business foundation of the CyberSecurity Framework (CSF) and the technical foundation of the Risk Management Framework (RMF) to maximize your effectiveness in the identification of the few vulnerabilities that have the highest probability of exploitation.

MISSION INSIGHT is presently engaged with the State of Maryland in a support role providing a process driven Security Governance capability maturity model assessment to ensure the highest standards are met in securing the IT AWS infrastructure for the cutting-edge State of Maryland DHS MD THINK initiative that will serve as a model for the nation.

SDVOSB Logo

RSS SANS Institute Security Awareness Tip of the Day

  • Unique Passwords
    Make sure each of your accounts has a separate, unique password. Can't remember all of your passwords/passphrases? Consider using a password manager to securely store all of them for you.
  • Older Generation
    Using technology securely can be overwhelming or confusing, especially for those who did not grow up with it. When helping secure those who are uncomfortable with technology focus on just the basics - 1) be aware of social engineering attacks 2) secure your home network 3) keep your systems updated 4) use strong, unique passwords […]
  • Finding a USB Drive
    Be very careful of any lost USB drives you may find (such as in the parking lot or local coffee shop) or USB drives you are given at public events, like conferences. It is very easy for these devices to be infected with malware. Never use such devices for work, use only authorized devices issued […]
  • Personalized Scams
    Cyber criminals now have a wealth of information on almost all of us. With so many organizations getting hacked, cyber criminals simply purchase databases with personal information on millions of people, then use that information to customize their attacks, making them far more realistic. Just because an urgent email has your home address, phone number, […]
  • Smart Home Devices
    Now adays most of us have numerous devices in our homes connect to the Internet. From thermostats and gaming consoles to baby monitors, door locks or even your car. Ensure you change the default passwords on these devices and enable automatic updating.

Ready to protect your business...

MISSION INSIGHT can provide a 30 minute consultation to assess your cybersecurity or market intelligence risks and provide an "Insight" strategy road-map on how to drive operation improvements to your expanding "Mission".

SDVOSB Logo