Author: Bethany Kozal

Cyber Risk in 2026: What Security Leaders Need to Pay Attention to Now

Featuring insights from DirectDefense’s fireside chat with Jim Broome, Rick McElroy, and Tim Armstrong Watch the Full Webinar The Reality: Cyber Risk Isn’t Changing – It’s Accelerating Budget cuts. Leaner teams. AI-generated code. Expanding attack surfaces. Cyber risk in 2026 doesn’t look entirely new, but it is moving faster, becoming harder to see, and shifting… Read more »

DirectDefense at RSAC 2026: Showcasing OT Defense in Action

Operational technology security is no longer a side conversation at RSA. It is central to the broader cybersecurity dialogue. As industrial environments become more connected, threat activity continues to evolve, and regulatory expectations increase, organizations are being pushed to strengthen how they detect and respond to incidents in OT environments. At RSA Conference 2026, DirectDefense… Read more »

Cyber Due Diligence in the M&A Process

Why Cybersecurity in Mergers and Acquisitions Can be a Dealmaker – or a Deal Breaker It’s not uncommon for companies that are approaching a merger or acquisition process to focus on financials, company culture, and operational structure, casting cyber due diligence to the wayside. If cybersecurity isn’t a key component in a company’s M&A process,… Read more »

Critical Alert: Microsoft SharePoint Zero-Day Exploited in Active Attacks (CVE-2025-53770)

Unpatched SharePoint? This Zero-Day Could Let Attackers In Microsoft has issued an urgent warning regarding a newly weaponized zero-day vulnerability, CVE-2025-53770, affecting on-premise SharePoint Server deployments. With a CVSS score of 9.8, this remote code execution (RCE) flaw is being actively exploited and poses a severe risk to unpatched environments. What’s the Threat? This unauthenticated… Read more »

Water Treatment infrastructure

Tales From the Road: Establishing a Common Language Using NIST

Getting a wastewater utility’s OT and IT departments on the same page to address vulnerabilities they didn’t know they had. Wastewater utilities are among some of the most targeted industries for cyber attacks, and the implications can be devastating as operational interruptions or shut-downs could directly affect public health.  The Environmental Protection Agency (EPA) does… Read more »

Tales From the Road: Red Team Assessment Services to the Rescue

Organizations with security maturity can greatly benefit from annual red team assessments to keep up with the ever-evolving cyber threat landscape. Major organizations that hold detailed and private information are prime targets for malicious attackers, regardless of industry. Bad actors will find ways to break through physical and cyber barriers to obtain and sell personal… Read more »

Tales From the Road: If Your Networks Can Talk to Each Other, You’ve Got Gaps

Industrial control systems have a big job to do for a single facility’s OT environment – but if you’re operating multiple facilities spread across the U.S. or the world, those systems have a far larger workload, and the security risks inherent in their function get larger too.  What no critical infrastructure or industrial corporation wants… Read more »