WELCOME TO NO CYBER BLUES!

Beat the Monday blues with our monthly dose of uplifting cybersecurity news that brightens the digital landscape. One Monday each month, we share positive headlines and stories from the cybersecurity industry to inspire and uplift.

Discover how cybersecurity can be a force for good as we highlight the stories that prove it.

 

Join us on this journey to turn every Blue Monday into a Great Monday with a positive twist!

2024 NIST Password Guidelines

The 2024 NIST Password Guidelines introduce significant updates aimed at enhancing security practices while simplifying user experiences. A key shift is the emphasis on password length over complexity. Rather than requiring complex combinations of characters, the guidelines now recommend passwords or passphrases with a minimum length of 12-16 characters. This change reflects the understanding that longer passwords are inherently harder to crack, and users find them easier to remember than overly complicated ones. The update also eliminates mandatory password expiration unless there’s clear evidence of a breach, recognizing that frequent password changes often lead to weaker security due to predictable patterns. Additionally, the guidelines encourage the use of password managers to store and generate secure, unique passwords, reducing common risks associated with reused or weak passwords. With these updates, NIST continues its evolution toward smarter and more user-friendly security practices, balancing strong protection with practical usability​

UK’s Evolving Cybersecurity Regulations

While the UK continues to adhere to its pre-Brexit cybersecurity framework (NIS), there are ongoing discussions about expanding it to include managed service providers. The new telecoms security framework also highlights increasing scrutiny on the cybersecurity practices of service providers, especially for those interacting with telecoms sectors​

Saudi Arabia’s Cybersecurity Legal Framework

Saudi Arabia continues to enhance its cybersecurity efforts. In 2024, the country enforced the new Data Protection Law (PDPL), which aligns closely with the EU’s GDPR. This law mandates the implementation of robust security measures by organizations handling personal data, with stringent penalties for breaches, including fines up to SAR 10 million for repeated offenses. It also mandates the appointment of Data Protection Officers (DPOs) in certain sectors​​

TALK TO AN EXPERT

Contact us today to guide you how to protect your organization and achieve cyber resilience.

TALK TO AN EXPERT

Contact us today to guide you how to protect your organization and achieve cyber resilience.

SIGN UP

Subscribe for the industry news, in-depth blog posts, and Odyssey-exclusive updates directly in your inbox.