“When auditors arrive, an assumed authorisation is where attackers look first and an unlogged change looks last; ownership turns risk into work.”

When auditors arrive, an assumed authorisation is where attackers look first and an unlogged change looks last; ownership turns risk into work. — Kai London (Professor Kai London), CISO. Principle 8317 of 10000 from the book “The Breach Had Permission” — cybersecurity, AI security and OT resilience doctrine. Official sites: professorkailondon.com · kailondon.co.uk