Implement #CloudNative security practices with this new cheat sheet developed by @Jon Zeolla to support #SEC540: #CloudSecurity and #DevSecOps Automation. Need a helpful reference guide with detailed commands for your next #cloud #security project? This cheat sheet has it all to get you started with: #Git, #Pre-Commit, #Prowler, #Docker (including multiplatform images and #SLSA attestations), #Azure Key Vault, #AWS Systems Manager Parameter Store, #Terraform, and Policy as Code with #Conftest, #Checkov, and #easy_infra. This cheat sheet supports the content taught in SEC540: Cloud Security and DevSecOps Automation and was created by Jon Zeolla Comment below to get the full (pdf) cheat sheet.
Seiso
Computer and Network Security
Wexford, Pennsylvania 1,477 followers
Get audit-ready. Fast.
About us
Seiso provides Security as Advantage Frictionless, agile security programs that match the speed and demands of your modern pipelines. So you can be confident your business is secure. Our expert team focuses on maximizing security with utmost simplicity so you attain Information security solutions that you can easily understand and use. Your system will be simple enough to be explained in documentation while effective enough to be enforced by automation, codified into your company’s process. We have built highly customized information security systems for dozens of satisfied customers in sectors ranging from banking to manufacturing to tech. We’re proud of our 95% client retention rate and work hard daily to maintain our excellent reputation. Trust in Seiso for the best results. It’s one reason why we were named Pittsburgh Tech Council's 2021 Start-Up Innovator of the Year, 2022 and 2023 Pittsburgh Business Times Best Places to Work.
- Website
-
https://sei.so/
External link for Seiso
- Industry
- Computer and Network Security
- Company size
- 11-50 employees
- Headquarters
- Wexford, Pennsylvania
- Type
- Privately Held
- Founded
- 2017
- Specialties
- Information Security Governance, Information Security Program Build, Information Security Strategy, Vendor Risk Management Program, Risk Assessment, Breach Readiness Assessment, Incident Response Program Development, Governance, Risk and Compliance, Ciso Advisory Services, DevSecOps, DevOps, Cloud Security, SOC 2, ISO 27001, CMMC, Cloud Native Security, Security Maturity Assessment, Balanced Security, and Low-Friction Security
Locations
-
Primary
Wexford, Pennsylvania 15090, US
Employees at Seiso
-
Cynthia Cavendish-Carey
-
Joseph Wynn
Founder & CEO @ Seiso | IANS Faculty Member | Co-founder of BSidesPGH | Board Member | Advisor | vCISO | Building audit-ready cybersecurity programs…
-
Dianne Chase
Leadership & Executive Communication/Crisis Communication/ Cybersecurity Communication/Media & Presentation Skill Training/Business…
-
Jon Zeolla
Founder | Cloud Native Security & Compliance
Updates
-
Is compliance taking more time than it should? We get it—ISO 27001, SOC 2, and CMMC certifications can feel like a burden. But Seiso offers a faster, more efficient way forward, so you can focus on scaling your business with peace of mind. See how we make compliance simpler at https://hubs.la/Q02VQnFm0
-
-
PCI compliance isn't just about company size—it's about efficiently managing requirements. Leverage Self-Assessment Questionnaires (SAQs) and consider outsourcing to PCI-compliant service providers to streamline the process and reduce complexity. Simplify your PCI compliance efforts—partner with experts who can guide you through the process. Checkout the full podcast here: https://hubs.la/Q02RDd_F0 Contact Seiso for tailored solutions to meet your PCI compliance needs. 📞 412.206.6591 📧 sales@seisollc.com 🌐 Visit https://hubs.la/Q02RDc-40 #Seiso #PCICompliance #Cybersecurity #DigitalSecurity
-
Seiso is pleased to announce its collaboration with the Cloud Security Alliance (CSA), reinforcing our commitment to enhancing cloud security standards. This new partnership will empower us to offer even more robust solutions and equip organizations with practical strategies for secure cloud adoption. For more details: https://hubs.la/Q02VTrmv0 #Seiso #CloudSecurity #Cybersecurity #CloudTechnology #CSAGuidance
-
-
The CMMC final rule is here, and we wanted to highlight the key changes here for you. The Department of Defense (DoD) published the Cybersecurity Maturity Model Certification (CMMC) Final Rule on October 15, 2024. This newly issued regulation (CFR 32) will go into effect on December 16, 2024. Some key updates from the final rule include: - Full implementation is planned to be in place by 2028 using a phased approach for Level 1, Level 2, and Level 3 organizations. This is largely unchanged from the initial draft rule communications. - CUI / FCI identification and access control more clearly dictate which functions of the organization are in scope for the assessment and who needs to be certified under CMMC, including service providers. - At least 80% of the security control must be met going into an assessment to warrant the use of a POA&M to extend the remediation timeline of those controls that don't fully pass right away. At Seiso, we understand the complexities contractors face in meeting CMMC requirements. As a trusted readiness and vGRC partner, we ensure you’re not just prepared for certification—but maintain compliance long-term, staying ahead of evolving standards. Learn more about the journey to CMMC and how Seiso can help you through it all: https://hubs.la/Q02VwGJg0 Download our CMMC PDF: https://hubs.la/Q02VwH7s0
-
-
Whether your business needs to comply with ISO 27001, SOC 2, or CMMC, Seiso offers a comprehensive, simplified approach. Our team of experts ensures your business remains secure and compliant, allowing you to focus on growth, not regulations. Find out more at https://hubs.la/Q02V4gMr0.
-
-
Navigating ISO 27001, SOC 2, and CMMC compliance doesn’t have to slow your business down. At Seiso, we cut through the complexity, delivering simple, clear steps to ensure your organization meets the necessary standards with minimal disruption. Learn how we simplify compliance at https://hubs.la/Q02TNq-Y0.
-
-
Seiso is a proud sponsor of Bridgeway Capital, a local organization providing access to capital and resources for those deprived of opportunity. We support Bridgeway Capital's efforts of building capacity, investing capital, and developing underserved areas to grow businesses and revitalize places. We invite you to get involved and share in their impact through their annual event this evening, 6 PM - 9 PM at the August Wilson Center. More info at https://hubs.la/Q02THgdc0
-
Are your #cybersecurity efforts driving real business impact? Cybersecurity isn’t just about threat protection. It’s also about enabling business imperatives. Imagine turning your cybersecurity #strategy into a powerful tool for #growth and #innovation. Our new compliance guide will help you get there. ⏬Download your free copy today! https://hubs.la/Q02T9pYc0
-
-
In PCI compliance, a key focus of infrastructure penetration testing is ensuring the complete segmentation of the Cardholder Data Environment (CDE) from the rest of the corporate network. The goal is to identify any potential attack paths from the main corporate network into the CDE. This involves testing whether an attacker could breach the segmentation and access cardholder data, which is critical to maintaining PCI compliance. Secure your network and protect your cardholder data with expert penetration testing from Seiso. 📞 412.206.6591 📧 sales@seisollc.com 🌐 Visit https://hubs.la/Q02RDd9c0 Listen to this complete podcast and all other episodes here: https://hubs.la/Q02RD7p-0 #Seiso #PCICompliance #PenetrationTesting #Cybersecurity #DataProtection