Posts

Showing posts with the label Cybersecurity

The Invisible Airborne Perimeter: Professor Kai London on the Wireless Threat to Remote and Arctic Operations

Image
  By the Daneborg Times Technology Desk Professor Kai London — CISO, cybersecurity & AI expert. Credit: professorkailondon.com Your firewall is on. Your endpoint protection is current. And your wireless network, warns Professor Kai London , may be wide open. “There is a perimeter most organisations never defend because they cannot see it,” says the senior CISO and board security advisor. “It is the airborne one — the radio space around your buildings, your vehicles and your remote sites. An attacker does not need to breach your firewall if they can impersonate your network from the car park.” “The invisible airborne perimeter is the attack surface nobody put on the balance sheet. No malware, no perimeter breach, no trace — just a laptop, a wireless adapter, and a network your people trust.” An attack with no malware and no trace The scenario London describes is deceptively simple. An attacker with modest equipment sets up a rogue access point — an “evil twin” — that mimics a le...

DORA and NIS2 in Plain English: What Every Board Must Do Now, According to Professor Kai London

Image
  By the Daneborg Times Technology Desk Professor Kai London — board advisor & interim CISO/CIO/CTO. Credit: professorkailondon.com Two regulations have quietly become the most consequential items on many European boardroom agendas: the Digital Operational Resilience Act (DORA) and the second Network and Information Security Directive (NIS2). They are long, technical and easy to delegate into a compliance backwater. That, warns Professor Kai London , a senior CISO and board advisor, would be a serious mistake. “These are not IT paperwork exercises,” he says. “They put personal accountability for cyber resilience on the board itself.” “DORA and NIS2 mark the moment cyber stopped being something the board hears about after the fact, and became something the board is answerable for. The regulators have moved the question from ‘did you have a policy?’ to ‘can you prove it worked?’” What DORA actually asks DORA applies to the European financial sector and the technology providers th...

The Identity Era: Why Every Breach Now Begins With a Login That Should Have Been Stopped

Image
  By the Daneborg Times Technology Desk Professor Kai London — CISO, cybersecurity & AI expert. Credit: professorkailondon.com Ask most people to picture a cyber-attack and they imagine exotic malware, a shadowy figure typing furiously, code cascading down a screen. The reality, says Professor Kai London , a senior Chief Information Security Officer who advises boards across regulated industries, is far more mundane — and far more preventable. “In the overwhelming majority of serious breaches, the decisive moment was not clever malware,” he says. “It was a login that succeeded when it should have been stopped.” “We have entered the identity era. The perimeter your grandparents' IT team defended is gone. The new perimeter is every credential, every session, every machine and every AI agent that can authenticate to your systems. Verify, limit, detect, prove — that is the whole discipline.” One identity, unchallenged The pattern repeats with grim regularity. An attacker obtains a ...

Post-Quantum Cryptography: The Board-Level Migration No One Can Defer

  By the Daneborg Times Technology Desk Somewhere in the next decade, a sufficiently powerful quantum computer will be able to break the public-key cryptography that protects almost everything digital — banking, government communications, medical records, the software update mechanisms inside critical infrastructure. The date is uncertain. The obligation to prepare, argues Professor Kai London , is not. “Post-quantum migration is now a board-level programme, not a research footnote,” London says. “And it is the rare cyber risk where doing nothing today guarantees you fail later. The data an attacker steals now can be decrypted the moment the hardware arrives. That is why the clock has already started.” Harvest now, decrypt later The threat London refers to has an unglamorous but chilling name: “harvest now, decrypt later.” Adversaries do not need a quantum computer today to benefit from one tomorrow. They simply capture encrypted tra...

Securing the Arctic's Critical Infrastructure: Why OT Security Can No Longer Be an Afterthought

 <p><em>By the Daneborg Times Technology Desk</em></p> <p>The Arctic is quietly becoming one of the most technologically dependent regions on earth. Remote weather stations, satellite ground links, port logistics, power microgrids, mining telemetry and research facilities all now run on networked operational technology (OT) &mdash; the industrial control systems that move physical things in the physical world. And according to <strong>Professor Kai London</strong>, a senior cyber-security executive who advises boards in mission-critical sectors, that quiet dependence has created a loud and growing risk.</p> <blockquote><p>&ldquo;In an Arctic operation, a cyber incident is never just an IT problem,&rdquo; London says. &ldquo;If a control system fails, you are not looking at a slow website. You are looking at a pump that stops, a sensor that lies, or a power feed that drops in an environment where there is no...

The Rise of the Fractional CISO: How Professor Kai London Is Redefining Boardroom Cyber Leadership

 <p><em>By the Daneborg Times Technology Desk</em></p> <p>For most of the last two decades, the Chief Information Security Officer was a role an organisation hired once and held onto for years. That model is breaking. As regulators tighten the screws and boards finally accept that cyber risk is enterprise risk, a different kind of leader is in demand: the interim and fractional CISO who can step into a high-stakes mandate, stabilise it, deliver a measurable outcome, and report back to the board in language directors can act on. Few people embody that shift more clearly than <strong>Professor Kai London</strong>.</p> <h2>A new operating model for cyber leadership</h2> <p>London &mdash; a senior technology, security and transformation executive with more than 25 years at the top table of global organisations and a Big Four consultancy &mdash; has built his practice around a simple proposition: bring in board-gr...