RSAC 2020 Watchlist: Threat Intelligence, Info Sharing And Frameworks

Understanding Automation Challenges And Risk Management Opportunities

Add bookmark
Threat Intelligence Frameworks

In advance of the RSA Conference, we highlight some of the leading trends and provide a glimpse of what will be on the minds of cyber security professionals in 2020.

 

Threat Intelligence And Information Sharing

Security professionals see the value in building a Collective Cyber Defense and public-private collaboration. This has been an interesting pendulum-swinging exercise to watch, and this year the industry appears to have once again arrived at the value of sharing intelligence, perhaps due to further confidence in technical frameworks and mechanisms to do so.

With the growing focus on fraud and identity, there is great interest related to user behavior analytics, indicating a strong link between behavioral sciences and cyber threats. Playing into the human element, many of this year’s talks point to the power of threat intelligence and sharing while recognizing the continuous need to upskill security teams.

See Related: Implementing Digital Transformation Without Stressing The Cyber Security Team

As AI continues to spread its wings, there is also an uptick in automation, for good and bad. Set against the backdrop of the 2020 US presidential elections and rising geopolitical concerns, classic social engineering meets the scale of automation was documented, with attackers leveraging machine learning and submitters exploring viable defenses against this growing challenge.

Threat intelligence relies on trust, and though artificial intelligence (AI) has the potential to inform, there must be a balance between automation and humans. With the maturation of this space and, indeed, the infusion of AI and machine learning into just about every process across organizations, we saw an increase in documented cases where the inherent weaknesses and challenges of machines, with some deeply technical and wonderfully detailed examples digging into the specifics and providing guidance and best practice considerations.

See Related: The Value Of Separating Compliance And Enterprise Cyber Security Goals

A Framework For Risk Management

In what is likely an indication that there is an ongoing formalization of processes, cross-departmental efforts between divisions within organizations and across organizations, and a drive toward automation, many security leaders want to dig deeper into frameworks.

Frameworks embrace both hard and soft skills. Frameworks are plentiful and serve to address everything from industry requirements to policies and from regulation to compliance. Popular frameworks that will be discussed at RSAC 2020 include the MITRE ATT&CK framework, the NIST Cybersecurity Framework, Competing Security Culture Framework (CSCF) and the Factor Analysis of Information Risk (FAIR) Framework. Privacy frameworks also burst on the scene in the past year.

The continued development and application of these frameworks—and the further mushrooming and morphing of more each year—appears to be driven by a desire for more efficient governance and improved risk management. Risk management is the thread that binds all of these trends in some way, shape or form.

Live From San Francisco

Cyber Security Hub will be in San Francisco and publishing content throughout the week. If you happen to see one of us, please stop and say hello. We would love to meet our readers!

Cyber Security Hub is a marketing partner of RSA Conference 2020

See Related: Utilizing Cyber Security Standards And Frameworks


Upcoming Events

16th Automotive Cybersecurity Summit 2026

March 18 - 19, 2026

Sheraton Ann Arbor Hotel, Ann Arbor, Michigan

16th Automotive Cybersecurity Summit 2026

Digital Identity Week

1st - 2nd September 2026

Sydney, Australia

Digital Identity Week

Latest Webinars

From Dependencies to Defences: Navigating Software Supply Chain Security

2025-09-24

11:00 AM - 12:00 PM SGT

Learn how to defend your software supply chain from dependency threats and build resilient security...

Unpacking global regulatory frameworks to enhance third-party operational resilience

2024-11-14

11:00 AM - 12:00 PM EST

Join this webinar to explore the resilience-focused requirements of DORA, NIS2 and other global regu...

Preventing financial and reputational risk with process intelligence

2024-05-23

11:00 AM - 12:00 PM EDT

Learn how to manage risk stemming from poorly controlled processes in a collaborative way

Recommended

info@cshub.com/r/n

We hope you enjoy All Access from CS Hub!!<\/p>\r\n<p>Best Regards,<\/p>\r\n<p><a href=https://www.cshub.com/"https:////www.cshub.com///" target=\"_blank\">CS Hub Team<\/a><\/p>\r\n<p>P.S. Be sure to check out our other upcoming <a href=https://www.cshub.com/"https:////www.cshub.com//events?filter_format=ONLINE\%22 target=\"_blank\">All Access events here<\/a>.<\/p>\r\n<p>--------------------------------<\/p>\r\nConnect with us on Social Media: <a href=https://www.cshub.com/"https:////www.linkedin.com//groups//12067996///" target=\"_blank\">LinkedIn<\/a> | <a href=https://www.cshub.com/"https:////twitter.com//CSHubUSA/" target=\"_blank\">Twitter<\/a><\/p>\r\n<p>--------------------------------<\/p>\r\n<p>FAQS<\/p>\r\n<p><b>Can I invite my colleagues?<\/b><br>Yes of course! Please send them this link so they can register for free! [WebUrl]<\/p>\r\n\r\n<p><b>How do I access the sessions?<\/b><br>\r\nAll Access is run on Zoom Events. You should receive an email shortly from Zoom Events with your unique All Access link to the event lobby. Please hold on to that email ahead of the event. We\u2019ll also send you a reminder 24 hours before we go live!<\/p>\r\n\r\n<p><b>Will the agenda be updated?<\/b><br>\r\nYes, the agenda will be continuously updated on the website with the latest sessions & speakers. As we get closer to the event, also look out for our weekly updates which will also include the latest updates information and link to access the event.<\/p>\r\n<p><b>Can I access the sessions On Demand?<\/b><br>\r\nEvery session will be available after the event via the event lobby. We\u2019ll also send you a reminder about the On Demand sessions which will be sent to you after the event is over.<\/p>\r\n<p>--------------------------------<\/p>\r\n<p>RELATED RESOURCES TO READ BEFORE YOUR EVENT<\/p>\r\n<ul>\r\n <li><a href=https://www.cshub.com/"https:////www.cshub.com//executive-decisions//reports//cs-hub-mid-year-market-report-2022?utm_source=eco-event-confirmation-email&utm_medium=email&utm_campaign=eco-event-confirmation-email\%22 target=\"_blank\">CS Hub Mid-Year Market Report 2022<\/a><\/li>\r\n <li><a href=https://www.cshub.com/"https:////www.cshub.com//security-strategy//reports//ciso-strategies-for-proactive-threat-prevention?utm_source=eco-event-confirmation-email&utm_medium=email&utm_campaign=eco-event-confirmation-email\%22 target=\"_blank\">CISO strategies for proactive threat prevention<\/a><\/li>\r\n <li><a href=https://www.cshub.com/"https:////www.cshub.com//security-strategy//reports//how-to-strengthen-email-security-and-protection-against-advanced-ransomware-attacks?utm_source=eco-event-confirmation-email&utm_medium=email&utm_campaign=eco-event-confirmation-email\%22 target=\"_blank\">How to strengthen email security and protection against advanced ransomware attacks<\/a><\/li>\r\n<\/ul>","event_registration_srs_confirmation_email":null,"assets_from_cdn":true},"bant_disabled":null,"sponsorship_disclaimer":null,"sponsorship_disclaimer_text":null,"sponsorship_disclaimer_checkbox_disabled":null,"ext_treat_id":null,"recording_url":null,"file_attachment":null,"ingo_enabled":null,"ingo_activator_id":null,"ingo_autofiller_id":null,"ingo_amplifier_id":null,"ingo_authorizer_id":null,"restricted_content":0,"featured_events_embedded":[],"featured_content_embedded":[],"featured_content_portal_embedded":null}" >