IIA Canada National Conference 2023

4.1 Have you hired the Red Team? The novel approach to providing assurance for cybersecurity controls across the enterprise’s layers of defense

03 Oct 2023
15:35 – 16:25
DAY 1 - TRACK 4 - SESSION 1

4.1 Have you hired the Red Team? The novel approach to providing assurance for cybersecurity controls across the enterprise’s layers of defense

Level: Intermediate

This topic is at it’s core Cybersecurity. Red team testing is a form of security testing that simulates a real-world attack on an organization’s infrastructure, systems, and people to identify vulnerabilities and weaknesses in the organization’s defenses. The goal of red team testing is to think like an attacker and identify ways to exploit an organization’s security controls. It is a novel approach to a wide variety of internal controls under one exercise. The results of red team testing are used to identify vulnerabilities and weaknesses in the organization’s security controls, and to develop a plan for mitigating enterprise cybersecurity risk. The goal is to improve the organization’s overall security posture and to make it more difficult for attackers to successfully penetrate the organization’s defenses.