Knowledge

Cybersecurity knowledge base

Articles on the standards, regulations and directives that shape security work, and trainings that explain the technology behind it.

Published OWASP – open tools for secure softwareThe OWASP Top 10 is the best-known list of risks in web applications. But OWASP offers much more: standards for setting requirements, maturity models and tools for the software supply chain.Read morePublished Standard of Good Practice for Information Security (SoGP)The Standard of Good Practice for Information Security (SoGP) is an information security framework from the Information Security Forum (ISF).Read morePublished NIST Cybersecurity FrameworkIdentify, protect, detect, respond, recover — this is an approach many people recognise and use to address systematic IT security work. Here we go through what the framework involves and what it…Read morePublished CIS ControlsThe CIS Controls are a set of control points with associated safeguards that guide organisations in addressing their IT security. The methodology can be a good complement to, and enabler for, ISO certification and…Read morePublished Effective security management with the ISO 27000 seriesNew technical solutions are being developed at a rapid pace in the field of digitalisation. It's essential to keep up while always taking IT security and information security into account, so as not to risk leaving your own organisation…Read more