mastodon.world is one of the many independent Mastodon servers you can use to participate in the fediverse.
Generic Mastodon server for anyone to use.

Server stats:

8.4K
active users

#securitycomms

0 posts0 participants0 posts today
melanie ensign (she/her)<p>Most security teams ask "what could go wrong?" when planning incident response. But I've found that asking "what could go right?" fundamentally changes how we prepare -- and opens up more positive opportunities for teams in their response. </p><p>It's possible to thrive through an incident, not merely survive it.</p><p><a href="https://defcon.social/tags/IncidentResponse" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>IncidentResponse</span></a> <a href="https://defcon.social/tags/SecurityComms" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SecurityComms</span></a> </p><p><a href="https://discernibleinc.com/blog/what-could-go-right" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">discernibleinc.com/blog/what-c</span><span class="invisible">ould-go-right</span></a></p>
Discernible<p>🚨 1 day left in our giveaway! </p><p>Tomorrow we’re selecting 5 winners to receive free Pro subscriptions to our weekly incident response communication drills!</p><p>Have our blog posts on gaining influence, cross-functional communications, or post-mortems improved your team’s effectiveness? </p><p>Comment &amp; tell us which blog post helped you the most!</p><p>Remember: each comment = new entry. More participation = better chances!</p><p>Get your entries in before tomorrow’s deadline!</p><p><a href="https://infosec.exchange/tags/IncidentResponse" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>IncidentResponse</span></a> <a href="https://infosec.exchange/tags/SecurityComms" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SecurityComms</span></a> <a href="https://infosec.exchange/tags/PrivacyComms" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>PrivacyComms</span></a></p>
Discernible<p>💫 New Discernible Drill this week! </p><p>You’ll face escalating challenges that force difficult tradeoffs between business continuity, stakeholder communications, and technical remediation - all while racing against the clock. 😰</p><p>Subscribe at DiscernibleInc.com/drills</p><p><a href="https://infosec.exchange/tags/IncidentResponse" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>IncidentResponse</span></a> <a href="https://infosec.exchange/tags/SecurityComms" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SecurityComms</span></a></p>
melanie ensign (she/her)<p>Five years ago this week, I launched Discernible with a vision that the best security communications is transformative rather than reactive. </p><p>Today, I couldn't be prouder of the teams we've helped build political capital and decision-making frameworks that expand their options during critical moments. </p><p>In our blog post, I share the most profound lesson from our journey- how an organization's daily choices shape their response capabilities during incidents, and how effective communication turns potential crises into opportunities to demonstrate organizational strength.</p><p><a href="https://defcon.social/tags/SecurityComms" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SecurityComms</span></a> <a href="https://defcon.social/tags/IncidentResponse" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>IncidentResponse</span></a> <a href="https://defcon.social/tags/Influence" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Influence</span></a> </p><p><a href="https://discernibleinc.com/blog/organizations-lack-sufficient-decision-frameworks-to-expand-incident-response-options" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">discernibleinc.com/blog/organi</span><span class="invisible">zations-lack-sufficient-decision-frameworks-to-expand-incident-response-options</span></a></p>
Discernible<p>🔥 New <a href="https://infosec.exchange/tags/SecurityComms" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SecurityComms</span></a> drill! </p><p>This week, we test how teams handle security communications when public narratives clash with emerging technical findings. </p><p>Practice navigating these complex issues in our upcoming simulation! </p><p>Subscribe to join: DiscernibleInc.com/drills</p>
Discernible<p>Want to boost your security &amp; privacy team's influence? Our new blog explores how corporate anthropology helps teams evolve from technical specialists to strategic partners.</p><p>Learn 3 actionable steps to map organizational terrain, speak cross-functional languages, &amp; build an empowering reputation.</p><p>Read more: <a href="https://discernibleinc.com/blog/boost-your-teams-influence-with-corporate-anthropology-3-steps" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">discernibleinc.com/blog/boost-</span><span class="invisible">your-teams-influence-with-corporate-anthropology-3-steps</span></a></p><p><a href="https://infosec.exchange/tags/SecurityComms" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SecurityComms</span></a> <a href="https://infosec.exchange/tags/PrivacyComms" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>PrivacyComms</span></a></p>
Discernible<p>In light of recent revelations regarding DPRK operatives infiltrating tech companies, our drill this week explores the critical communication challenges following discovery of this insider threat. </p><p>Join us to learn practical strategies for balancing operational security with stakeholder trust during active investigations.​​​​​​​​​​​​​​​​</p><p>Subscribe at DiscernibleInc.com/drills</p><p><a href="https://infosec.exchange/tags/IncidentResponse" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>IncidentResponse</span></a> <a href="https://infosec.exchange/tags/InsiderThreats" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>InsiderThreats</span></a> <a href="https://infosec.exchange/tags/SecurityComms" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SecurityComms</span></a></p>
Discernible<p>Not Just Security: CISOs are Business Executives </p><p>Read the full article: <a href="https://discernibleinc.com/blog/cisos-are-business-executives" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">discernibleinc.com/blog/cisos-</span><span class="invisible">are-business-executives</span></a></p><p><a href="https://infosec.exchange/tags/infosec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>infosec</span></a> <a href="https://infosec.exchange/tags/SecurityComms" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SecurityComms</span></a></p>
Discernible<p>Security and privacy communications deserve more attention and expertise.</p><p>Our monthly newsletter helps professionals communicate these complex topics more effectively through expert insights, communications theory, and practical research.</p><p>Each edition includes perspectives from founder <span class="h-card" translate="no"><a href="https://defcon.social/@Wednesday" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>Wednesday</span></a></span>, communications research highlights, podcast recommendations, and spotlights on nonprofits in tech.</p><p>Subscribe to up level how you communicate about security and privacy: <a href="https://discernibleinc.com/newsletter-signup" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">discernibleinc.com/newsletter-</span><span class="invisible">signup</span></a></p><p><a href="https://infosec.exchange/tags/SecurityComms" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SecurityComms</span></a> <a href="https://infosec.exchange/tags/PrivacyComms" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>PrivacyComms</span></a></p>
Discernible<p>Like the hammerhead, good IR plans are distinctive and adapted to their environment.</p><p>How we helped a design platform build a holistic security communications plan when:</p><p>😱 Only 26% of orgs have enterprise-wide IR plans</p><p>😱 74% apply them inconsistently</p><p>😱 43% fail to designate internal IR stakeholders</p><p>"We wanted to have a process that was inclusive and orderly, knowing those moments can be chaotic."</p><p><a href="https://discernibleinc.com/blog/case-study-incident-response-communications-planning" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">discernibleinc.com/blog/case-s</span><span class="invisible">tudy-incident-response-communications-planning</span></a></p><p><a href="https://infosec.exchange/tags/SecurityComms" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SecurityComms</span></a> <a href="https://infosec.exchange/tags/IncidentResponse" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>IncidentResponse</span></a></p>
Discernible<p>Your "incident response" plan probably ignores 90% of actual incidents. Have you planned for:</p><p>🥴 Hiccups: "Routine" issues that spiral with poor communications </p><p>🤦‍♀️ F*ck Ups: Perceived incompetence requiring apologies</p><p>🏳️ Give Ups: Business decisions that erode trust</p><p>"It's rarely major breaches that cause long-term reputation damage." - Discernible CEO <span class="h-card" translate="no"><a href="https://defcon.social/@Wednesday" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>Wednesday</span></a></span></p><p>Need practice handling these scenarios? Our IR communications subscription drills builds the muscle memory you'll need with weekly simulations.</p><p><a href="https://discernibleinc.com/blog/what-is-a-security-or-privacy-incident-hiccups-fck-ups-and-give-ups" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">discernibleinc.com/blog/what-i</span><span class="invisible">s-a-security-or-privacy-incident-hiccups-fck-ups-and-give-ups</span></a></p><p><a href="https://infosec.exchange/tags/IncidentResponse" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>IncidentResponse</span></a> <a href="https://infosec.exchange/tags/SecurityComms" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SecurityComms</span></a></p>
melanie ensign (she/her)<p>IR comms isn’t merely crisis response, it’s change management because you’ll never be the same again — and that’s a good thing, use it to your advantage. </p><p>The goal is not recovery to your previously known state. The goal is recovery that moves you forward, better than before. </p><p><a href="https://defcon.social/tags/SecurityComms" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SecurityComms</span></a></p>
Discernible<p>"I'm sorry" works better than "It wasn't our fault."</p><p>New piece from <span class="h-card" translate="no"><a href="https://defcon.social/@Wednesday" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>Wednesday</span></a></span> on why security incidents need fewer defensive statements and more trust-building strategies. Turns out, protecting organizational pride often backfires.</p><p>Read more: <a href="https://lnkd.in/gnB4-c5C" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="">lnkd.in/gnB4-c5C</span><span class="invisible"></span></a></p><p><a href="https://infosec.exchange/tags/SecurityComms" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SecurityComms</span></a> <a href="https://infosec.exchange/tags/IncidentResponse" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>IncidentResponse</span></a></p>
Kevin Riggle<p>"Because of how Uber's PM ran our <a href="https://ioc.exchange/tags/bugbounty" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>bugbounty</span></a> program, the moment the reporter reached out, I was able to respond effectively." Melanie Ensign <span class="h-card" translate="no"><a href="https://defcon.social/@Wednesday" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>Wednesday</span></a></span> on the value of collaboration in <a href="https://ioc.exchange/tags/securitycomms" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>securitycomms</span></a> <a href="https://ioc.exchange/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cybersecurity</span></a> <a href="https://ioc.exchange/tags/incidentresponse" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>incidentresponse</span></a> <a href="https://ioc.exchange/tags/CriticalPointWarStories" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>CriticalPointWarStories</span></a></p><p><a href="https://youtu.be/8Ltyei5e1UI" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="">youtu.be/8Ltyei5e1UI</span><span class="invisible"></span></a></p>
melanie ensign (she/her)<p>A lot of plaintiffs pursue litigation to understand what happened and why -- precisely because of poor communication from the organization. </p><p>Decide in advanced what values you want to demonstrate in how and what you say in response to a security or privacy incident, and get written commitment from business stakeholders (including legal) during your preparedness process so that everyone is accountable for how you show up in your communications. </p><p>If you don't want your public statements and customer communications to sound tone deaf, apathetic, or defensive, you need to address that internally now or folks will default to their comfort zones once they feel the heat. </p><p>It takes time to teach certain people how to treat human beings as more than potential plaintiffs, so start now.</p><p><a href="https://defcon.social/tags/securitycomms" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>securitycomms</span></a> <a href="https://defcon.social/tags/privacycomms" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>privacycomms</span></a> <a href="https://defcon.social/tags/incidentresponse" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>incidentresponse</span></a></p>
melanie ensign (she/her)<p><span class="h-card" translate="no"><a href="https://infosec.exchange/@Discernible" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>Discernible</span></a></span> </p><p>This is how you write a job description to attract experienced security comms pros. Well done! </p><p>✅ it’s about reputation building, not publicity <br>✅ it’s cross functional &amp; considers all stakeholders, not only journalists<br>✅ it’s strategic, not prescriptive <br>✅ it’s ongoing &amp; proactive, not reactive or crisis-bound</p><p><a href="https://defcon.social/tags/SecurityComms" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SecurityComms</span></a> <a href="https://defcon.social/tags/hiring" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>hiring</span></a></p>
Discernible<p>💫 Open <a href="https://infosec.exchange/tags/SecurityComms" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SecurityComms</span></a> role at Zoom:</p><p>Senior Security and Reputation Communications Manager</p><p><a href="https://infosec.exchange/tags/hiring" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>hiring</span></a></p><p><a href="https://www.linkedin.com/jobs/view/3760550399" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">linkedin.com/jobs/view/3760550</span><span class="invisible">399</span></a></p>
melanie ensign (she/her)<p>Wendy services are extra, but you can pick your flavor. </p><p><a href="https://defcon.social/tags/SecurityComms" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SecurityComms</span></a></p>
Discernible<p>Not communicating about security until it escalates into a crisis is a self-fulfilling prophecy. </p><p>Instead, security teams should constantly be on the lookout for critical turning points that could lock-in a negative outcome for the organization or jeopardize their reputation. </p><p><a href="https://infosec.exchange/tags/SecurityComms" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SecurityComms</span></a> <a href="https://infosec.exchange/tags/ReputationManagement" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ReputationManagement</span></a> <a href="https://infosec.exchange/tags/Cybersecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Cybersecurity</span></a> <a href="https://infosec.exchange/tags/Infosec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Infosec</span></a></p><p><a href="https://discernibleinc.com/blog/risk-communications-recognizing-turning-points-managing-decisions" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">discernibleinc.com/blog/risk-c</span><span class="invisible">ommunications-recognizing-turning-points-managing-decisions</span></a></p>
melanie ensign (she/her)<p>Every <a href="https://defcon.social/tags/SecurityComms" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SecurityComms</span></a> person should be proficient in JIRA.</p>