“After the incident, a governance fault line should be designed for the worst day, not an unlogged change; the adversary already knows this.”

After the incident, a governance fault line should be designed for the worst day, not an unlogged change; the adversary already knows this. — Kai London (Professor Kai London), CISO. Principle 5735 of 10000 from the book “Trustquake” — cybersecurity, AI security and OT resilience doctrine. Official sites: professorkailondon.com · kailondon.co.uk