Equifax Proves the CISOs Right

I recently wrote about the hard lessons learned in risk as a result of the Equifax breach. Having watched and read parts of the ongoing Congressional hearing with former CEO Richard Smith, I wanted to revisit those issues I posed in my original article as the crux of Equifax’s problems, as I believe that much of what I have heard in the testimony has proven me to be  right.   Broken Escalation Process In my last article I argued that  either  Equifax had no  escalation process, or, if they did, that it was severely broken and reflected a systemic problem with their information security program.

