<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic September 2022 Meeting Minutes in Cleveland Chapter Discussion Forum</title>
    <link>https://community.isc2.org/t5/Cleveland-Chapter-Discussion/September-2022-Meeting-Minutes/m-p/57171#M18</link>
    <description>&lt;P&gt;Start: 17:35&lt;/P&gt;&lt;P&gt;Attendees: 30, # first time&lt;/P&gt;&lt;P&gt;Sponsor: Dell&lt;/P&gt;&lt;P&gt;Location: Improving, Independence, OH&lt;/P&gt;&lt;P&gt;Officers in attendance&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Rob Netgen&lt;/LI&gt;&lt;LI&gt;Chris Hartley&lt;/LI&gt;&lt;LI&gt;Troy Sheley&lt;/LI&gt;&lt;LI&gt;Ted Kozenko&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Chapter Updates&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Elections in October&lt;/LI&gt;&lt;LI&gt;Charging for attendance in 2023&lt;/LI&gt;&lt;LI&gt;Fees charged to the chapter covered by sponsorship&lt;/LI&gt;&lt;LI&gt;Possible meeting 18:00-20:00 in 2023.&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Job openings&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Parkplace Technologies - Security 1&lt;/LI&gt;&lt;LI&gt;Current - SAP Security Lead&lt;/LI&gt;&lt;LI&gt;Vitamix - Business Systems Analyst, Enterprise Engineer, Systems Architect.&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Security Friends&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Public wi-fi worries WaPo&lt;/LI&gt;&lt;LI&gt;American Airlines breached through phishing attack&lt;/LI&gt;&lt;LI&gt;London police arrested 17yo of Uber hack&lt;/LI&gt;&lt;LI&gt;Firing the entire cybersecurity team by Patreon&lt;/LI&gt;&lt;LI&gt;Russian RSOCKS botmaster arrested&lt;/LI&gt;&lt;LI&gt;Colonial Pipeline hackers add startling new capabilities to ransomware&lt;/LI&gt;&lt;LI&gt;Hackers target unpatched Atlassian Confluence servers&lt;/LI&gt;&lt;LI&gt;Malware bytes blocks google domain&lt;/LI&gt;&lt;LI&gt;LockBit ransomware builder v3.0 leaked online by developer&lt;/LI&gt;&lt;LI&gt;Unpatched 15yo Python bug allows code execution&lt;/LI&gt;&lt;LI&gt;$35M fine for Morgan Stanley&lt;/LI&gt;&lt;LI&gt;Critical flaw in airplane wi-fi.&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Information Security Summit Announcement&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Call for volunteers&lt;/LI&gt;&lt;LI&gt;Announcement of registration&lt;/LI&gt;&lt;LI&gt;Security Friends will be there&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Topic 1: Chris Hartley - Adventures in Cybersecurity (group discussion)&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Downloading images to company laptops&lt;/LI&gt;&lt;LI&gt;Running websites on company servers&lt;/LI&gt;&lt;LI&gt;Assessment vs. Audit = grades vs. proof&lt;/LI&gt;&lt;LI&gt;Document what you do then prove it&lt;/LI&gt;&lt;LI&gt;Is the CMDB actually up to date and what is in it&lt;/LI&gt;&lt;LI&gt;Leaders in all levels have to be involved in security to drive it in the organization&lt;/LI&gt;&lt;LI&gt;Assign work and delegate authority&lt;/LI&gt;&lt;LI&gt;Can have policies, but can it be enforced as written; if not, it's not a policy&lt;/LI&gt;&lt;LI&gt;What does good look like&lt;/LI&gt;&lt;LI&gt;How is infosec viewed in the org - enabler, deterrent, etc.&lt;/LI&gt;&lt;LI&gt;Know time to detect and time to defeat&lt;/LI&gt;&lt;LI&gt;ISAO.org group for info sharing&lt;/LI&gt;&lt;LI&gt;Resources: CSO mag, Gartner, Forester,&lt;/LI&gt;&lt;LI&gt;what is my competitor doing.&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;End 19:35&lt;/P&gt;</description>
    <pubDate>Sat, 11 Feb 2023 00:58:09 GMT</pubDate>
    <dc:creator>TedKozenko</dc:creator>
    <dc:date>2023-02-11T00:58:09Z</dc:date>
    <item>
      <title>September 2022 Meeting Minutes</title>
      <link>https://community.isc2.org/t5/Cleveland-Chapter-Discussion/September-2022-Meeting-Minutes/m-p/57171#M18</link>
      <description>&lt;P&gt;Start: 17:35&lt;/P&gt;&lt;P&gt;Attendees: 30, # first time&lt;/P&gt;&lt;P&gt;Sponsor: Dell&lt;/P&gt;&lt;P&gt;Location: Improving, Independence, OH&lt;/P&gt;&lt;P&gt;Officers in attendance&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Rob Netgen&lt;/LI&gt;&lt;LI&gt;Chris Hartley&lt;/LI&gt;&lt;LI&gt;Troy Sheley&lt;/LI&gt;&lt;LI&gt;Ted Kozenko&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Chapter Updates&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Elections in October&lt;/LI&gt;&lt;LI&gt;Charging for attendance in 2023&lt;/LI&gt;&lt;LI&gt;Fees charged to the chapter covered by sponsorship&lt;/LI&gt;&lt;LI&gt;Possible meeting 18:00-20:00 in 2023.&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Job openings&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Parkplace Technologies - Security 1&lt;/LI&gt;&lt;LI&gt;Current - SAP Security Lead&lt;/LI&gt;&lt;LI&gt;Vitamix - Business Systems Analyst, Enterprise Engineer, Systems Architect.&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Security Friends&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Public wi-fi worries WaPo&lt;/LI&gt;&lt;LI&gt;American Airlines breached through phishing attack&lt;/LI&gt;&lt;LI&gt;London police arrested 17yo of Uber hack&lt;/LI&gt;&lt;LI&gt;Firing the entire cybersecurity team by Patreon&lt;/LI&gt;&lt;LI&gt;Russian RSOCKS botmaster arrested&lt;/LI&gt;&lt;LI&gt;Colonial Pipeline hackers add startling new capabilities to ransomware&lt;/LI&gt;&lt;LI&gt;Hackers target unpatched Atlassian Confluence servers&lt;/LI&gt;&lt;LI&gt;Malware bytes blocks google domain&lt;/LI&gt;&lt;LI&gt;LockBit ransomware builder v3.0 leaked online by developer&lt;/LI&gt;&lt;LI&gt;Unpatched 15yo Python bug allows code execution&lt;/LI&gt;&lt;LI&gt;$35M fine for Morgan Stanley&lt;/LI&gt;&lt;LI&gt;Critical flaw in airplane wi-fi.&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Information Security Summit Announcement&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Call for volunteers&lt;/LI&gt;&lt;LI&gt;Announcement of registration&lt;/LI&gt;&lt;LI&gt;Security Friends will be there&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Topic 1: Chris Hartley - Adventures in Cybersecurity (group discussion)&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Downloading images to company laptops&lt;/LI&gt;&lt;LI&gt;Running websites on company servers&lt;/LI&gt;&lt;LI&gt;Assessment vs. Audit = grades vs. proof&lt;/LI&gt;&lt;LI&gt;Document what you do then prove it&lt;/LI&gt;&lt;LI&gt;Is the CMDB actually up to date and what is in it&lt;/LI&gt;&lt;LI&gt;Leaders in all levels have to be involved in security to drive it in the organization&lt;/LI&gt;&lt;LI&gt;Assign work and delegate authority&lt;/LI&gt;&lt;LI&gt;Can have policies, but can it be enforced as written; if not, it's not a policy&lt;/LI&gt;&lt;LI&gt;What does good look like&lt;/LI&gt;&lt;LI&gt;How is infosec viewed in the org - enabler, deterrent, etc.&lt;/LI&gt;&lt;LI&gt;Know time to detect and time to defeat&lt;/LI&gt;&lt;LI&gt;ISAO.org group for info sharing&lt;/LI&gt;&lt;LI&gt;Resources: CSO mag, Gartner, Forester,&lt;/LI&gt;&lt;LI&gt;what is my competitor doing.&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;End 19:35&lt;/P&gt;</description>
      <pubDate>Sat, 11 Feb 2023 00:58:09 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Cleveland-Chapter-Discussion/September-2022-Meeting-Minutes/m-p/57171#M18</guid>
      <dc:creator>TedKozenko</dc:creator>
      <dc:date>2023-02-11T00:58:09Z</dc:date>
    </item>
  </channel>
</rss>

