Sam.F
Involved In Discussions
Cari is giving you good advice - someone in your IT group should have enough knowledge about the security measures for the types of software you are discussing. Of course you may be from a small company that hasn’t hired an IT person who is knowledgeable about cyber security in which case Funboi’s resources are a good start.
Does your organization not have a cyber security expert? Are you being asked to do this in addition to your QA duties? Or are you just not aware or comfortable with what your IT group is doing? This matters as to what advice we can - or should - give you…
Cyber Security is a complex and continually evolving specialty within IT technologies. It is as specialized as tax law, electrical engineering or quality engineering….for example. It is very difficult to become expert enough in these subjects or cybersecurity from asking a few questions on a forum such as this or from reading a few web sites - no matter how reputable they are….or as a colleague of mine used to ask: would you perform heart surgery on yourself after watching a couple of you tube videos about how to do it?
My last organization Used a lot of cloud based software and had a lot of internet based communication with very sensitive data. We had a swarm of cyber security experts who were continually working to keep us secure…
I get surveys from customers sometimes about cybersecurity and since the IT guys dont work with us full time. Is in my own to answer those questions. Is not just simple stuff .