Center for Internet Security

Simplify security management with CIS SecureSuite Platform

Simplify security management with CIS SecureSuite Platform 2026-06-03 at 20:20 By Help Net Security New operating systems prioritize usability, a reality which threat actors use to exploit security gaps. Every misconfiguration creates an opportunity for compromise, and lean teams struggle in their security management efforts to harden hundreds or thousands of endpoints. CIS SecureSuite Membership […]

Simplify security management with CIS SecureSuite Platform Read More »

Download: Secure Foundations for AI Workloads on AWS

Download: Secure Foundations for AI Workloads on AWS 2026-05-05 at 17:46 By Help Net Security Center for Internet Security helps organizations deploy AI and high-performance compute environments from a trusted, hardened operating system baseline. CIS Hardened Images help teams reduce misconfiguration risk, support compliance efforts, and move faster in AWS. What are AI-optimized CIS Hardened

Download: Secure Foundations for AI Workloads on AWS Read More »

Prompt injection tags along as GenAI enters daily government use

Prompt injection tags along as GenAI enters daily government use 2026-04-09 at 08:27 By Sinisa Markovic Routine use of GenAI has moved into daily operations in state and territorial government environments, placing new security risks within common workflows. A Center for Internet Security (CIS) report, Prompt Injections: The Inherent Threat to Generative AI, identifies prompt

Prompt injection tags along as GenAI enters daily government use Read More »

CIS Benchmarks March 2026 Update

CIS Benchmarks March 2026 Update 2026-04-01 at 16:08 By Anamarija Pogorelec The following CIS Benchmarks and CIS Build Kits have been updated or recently released. The Center for Internet Security has highlighted the major updates below. Each Benchmark and Build Kit includes a changelog that references all changes. Updated CIS Benchmarks overview CIS Microsoft Windows

CIS Benchmarks March 2026 Update Read More »

Secure by Design: Building security in at the beginning

Secure by Design: Building security in at the beginning 2026-03-03 at 16:16 By Help Net Security Secure by Design is not a single tool, product, or one‑time activity. It is a holistic approach that requires security to be deliberately embedded from the very beginning, at the point where systems, software, and services are conceived and

Secure by Design: Building security in at the beginning Read More »

How Secure by Design helps developers build secure software

How Secure by Design helps developers build secure software 2026-02-04 at 08:06 By Help Net Security Security isn’t just a feature, it’s a foundation. As cyber threats grow more sophisticated and regulations tighten, developers are being asked to do more than just write clean code. They’re being asked to build software that’s secure by design

How Secure by Design helps developers build secure software Read More »

CIS, Astrix, and Cequence partner on new AI security guidance

CIS, Astrix, and Cequence partner on new AI security guidance 2025-12-04 at 09:20 By Industry News The Center for Internet Security, Astrix Security, and Cequence Security announced a strategic partnership to develop new cybersecurity guidance tailored to the unique risks of AI and agentic systems. This collaborative initiative builds on the CIS Critical Security Controls

CIS, Astrix, and Cequence partner on new AI security guidance Read More »

CISA says it will fill the gap as some federal funding for MS-ISAC dries up

CISA says it will fill the gap as some federal funding for MS-ISAC dries up 2025-09-30 at 18:45 By Zeljka Zorz The cooperative agreement between the U.S. Cybersecurity and Infrastructure Security Agency (CISA) and the not-for-profit Center for Internet Security is ending today, the agency has announced on Monday, and CISA will take it upon

CISA says it will fill the gap as some federal funding for MS-ISAC dries up Read More »

Download: Cyber defense guide for the financial sector

Download: Cyber defense guide for the financial sector 2025-09-09 at 15:46 By Help Net Security Data breaches cost more for financial organizations than they do for those in many other industries. In attempting to strengthen your financial organization’s cybersecurity, you must contend with evolving regulatory obligations, outdated IT infrastructure, and other challenges. How do you

Download: Cyber defense guide for the financial sector Read More »

Local governments struggle to defend critical infrastructure as threats grow

Local governments struggle to defend critical infrastructure as threats grow 2025-08-22 at 08:03 By Sinisa Markovic A small-town water system, a county hospital, and a local school district may not seem like front-line targets in global conflict, but they are. These organizations face daily cyber attacks, from ransomware to foreign adversaries probing for weak points.

Local governments struggle to defend critical infrastructure as threats grow Read More »

Back to basics webinar: The ecosystem of CIS Security best practices

Back to basics webinar: The ecosystem of CIS Security best practices 2025-08-05 at 08:17 By Help Net Security Generative AI models, multi-cloud strategies, Internet of Things devices, third-party suppliers, and a growing list of regulatory compliance obligations all require the same security response: come together as a community to prioritize the basics. Watch this on-demand

Back to basics webinar: The ecosystem of CIS Security best practices Read More »

Webinar: Cloud security made easy with CIS Hardened Images

Webinar: Cloud security made easy with CIS Hardened Images 2025-06-10 at 16:05 By Help Net Security This webinar is designed for leadership and management professionals looking to enhance their organization’s security posture in the cloud. The authors explore CIS Hardened Images: how they work, the security benefits they offer, and why they’re especially valuable for

Webinar: Cloud security made easy with CIS Hardened Images Read More »

Webinar: Securely migrating to the cloud

Webinar: Securely migrating to the cloud 2025-05-06 at 16:04 By Help Net Security Whether your organization is already in the cloud or just starting to plan your migration, security is a top priority. This webinar will help you to better understand your options for cloud migration as well as learn how to prioritize cloud security

Webinar: Securely migrating to the cloud Read More »

Photos: RSAC 2025

Photos: RSAC 2025 2025-04-30 at 16:31 By Help Net Security RSAC 2025 Conference is taking place at the Moscone Center in San Francisco. Help Net Security is on-site, and this gallery takes you inside the event. The featured vendors are: PowerDMARC, Skyhawk Security, ThreatLocker, Stellar Cyber, Center for Internet Security, PlexTrac, ISC2, Bitdefender, SentinelOne, and

Photos: RSAC 2025 Read More »

11 cyber defense tips to stay secure at work and home

11 cyber defense tips to stay secure at work and home 2025-04-08 at 16:29 By Help Net Security Cybersecurity is inextricably tied to the technology it protects. Just as technology continues to grow in variety, quantity, and presence in all of our lives, so too does cybersecurity and our personal responsibility for it. You might

11 cyber defense tips to stay secure at work and home Read More »

Building a reasonable cyber defense program

Building a reasonable cyber defense program 2025-04-01 at 16:04 By Help Net Security If you do business in the United States, especially across state lines, you probably know how difficult it is to comply with U.S. state data privacy laws. The federal government and many U.S. state governments require you to implement “reasonable” cybersecurity controls

Building a reasonable cyber defense program Read More »

Balancing cloud security with performance and availability

Balancing cloud security with performance and availability 2025-02-18 at 07:33 By Help Net Security Your business can’t realize the many benefits of cloud computing without ensuring performance and availability in its cloud environments. Let’s look at some examples. Scalability: To scale your business’s cloud computing services, you need those services to be available and to

Balancing cloud security with performance and availability Read More »

The ongoing evolution of the CIS Critical Security Controls

The ongoing evolution of the CIS Critical Security Controls 2025-01-09 at 09:46 By Help Net Security For decades, the CIS Critical Security Controls (CIS Controls) have simplified enterprises’ efforts to strengthen their cybersecurity posture by prescribing prioritized security measures for defending against common cyber threats. In this article, we’ll review the story of the CIS

The ongoing evolution of the CIS Critical Security Controls Read More »

Enhancing national security: The four pillars of the National Framework for Action

Enhancing national security: The four pillars of the National Framework for Action 2024-10-24 at 07:33 By Mirko Zorz In this Help Net Security interview, John Cohen, Executive Director, Program for Countering Hybrid Threats at the Center for Internet Security, discusses the four pillars of the National Framework for Action, emphasizing how these measures can combat

Enhancing national security: The four pillars of the National Framework for Action Read More »

Meet the shared responsibility model with new CIS resources

Meet the shared responsibility model with new CIS resources 2024-10-07 at 06:01 By Help Net Security You can’t fulfill your end of the shared responsibility model if you don’t emphasize secure configurations. Depending on the cloud services you’re using, you’re responsible for configuring different things. Once you figure out those responsibilities, you then need to

Meet the shared responsibility model with new CIS resources Read More »

Scroll to Top