CISOs can no longer ignore the nation-state threat
Brief
Flare-ups between US intelligence agencies and private-sector defenders have long been a characteristic of the cybersecurity landscape, with the balance swinging between deep collaboration and friction.
The goal of CISOs has typically been to get adversaries out of networks as quickly as possible to contain liabilities, while government responders want to remain longer in compromised systems to watch the adversary and gather intelligence.
“A CISO will say, ‘Get them out of my network right now,’” Vikram Thakur , technical director at Symantec by Broadcom Software, tells CSO. “The government will say, ‘No, we know they’re there. Leave them there. We want to be able to see what they do.’ So there is no CISO who’s going to say, ‘Yeah, I think we should continue observing them.’
