May 25, 2023, 3:58 p.m. | /u/xafinkel1x

cybersecurity www.reddit.com

My team performs Information Assurance (IA) services for a vendor whose products are on the DoDIN APL. When we review STIG configurations, we often identify dozens of findings which were not documented at the time of certification - so they are not included in the product's CAP package.

I believe this is partially due to the fact that the vendor is not keeping the product up to date by incorporating new STIG updates each quarter. In other words, the product …

assurance cap certification cybersecurity findings identify information package product products review services team updates vendor

Social Engineer For Reverse Engineering Exploit Study

@ Independent study | Remote

SITEC- Systems Security Administrator- Camp HM Smith

@ Peraton | Camp H.M. Smith, HI, United States

Cyberspace Intelligence Analyst

@ Peraton | Fort Meade, MD, United States

General Manager, Cybersecurity, Google Public Sector

@ Google | Virginia, USA; United States

Cyber Security Advisor

@ H&M Group | Stockholm, Sweden

Engineering Team Manager – Security Controls

@ H&M Group | Stockholm, Sweden