-
7 votes
-
Lawsuit: City cameras make it impossible to drive anywhere without being tracked | "Every passing car is captured," says 4th Amendment lawsuit against Norfolk, VA
52 votes -
Exploding pagers, Hezbollah and Israel - The events, outcomes and value of supply chain security
13 votes -
Passwords have problems, but passkeys have more
35 votes -
Encrypted Root with LUKS and Opal
6 votes -
Hackers take control of robot vacuums in multiple US cities, yell racial slurs
37 votes -
More people than ever are trying to hack the US government--and they love it
11 votes -
Using YouTube to steal your files
40 votes -
Kaspersky deletes itself, installs UltraAV antivirus without warning
22 votes -
SS7: A mobile network operator protocol with scary vulnerabilities
29 votes -
Data security help - SOC2ish
Hi Tilderinos, I head up a small startup and we're looking to get some support for our data security. Up until now we've worked with small mom and pops that didn't have any requirements, but a few...
Hi Tilderinos,
I head up a small startup and we're looking to get some support for our data security. Up until now we've worked with small mom and pops that didn't have any requirements, but a few of our new clients have full data security teams and our infrastructure and policies/protocols aren't up to snuff. We reached out to a few consulting firms and they quotes us between $80-100k to get things set up and run us through a full SOC2 review. As a small company we don't really have that type of budget, more like $40-50k. I stumbled upon Vanta and Drata as alternatives and had meetings with their sales folks last week. Both of their offerings from setting up our protocols to monitoring and getting us through a SOC2 were only $16k.
Are platform based companies like Vanta or Drata enough to get us off the ground while we're still getting set up? Has anyone worked with them before and have any feelings one way or the other? Should we be signing on with a security consulting company - be it at a lower rate if we can negotiate it?
This is all quite new to me and any insight folks here can provide would be incredible useful.12 votes -
Inside Elon Musk’s mushrooming security apparatus
8 votes -
China's Arctic dreams make the Norwegian port of Kirkenes a global prize – and an unlikely hotbed of East-West rivalry
6 votes -
US lawsuits against Crowdstrike begin with Delta Airlines and Crowdstrike shareholders filing suit
21 votes