← @kwm Twitter archive

Keith

@kwm

8-K filings for material cybersecurity incidents should require disclosure of cybersecurity controls (software + services) in place when the event occurred.

Think of the immense good that would come from analysis of this data over time.

Also, the chilling effect on marketing.

1/17/2025, 1:04:53 PM

Favs: 4

Retweets: 0

Keith

@kwm

Some expected victim disclosure to be jarring, but the SEC rule normalized it overnight.

One of the last bastions of caginess, opacity in this industry are the products and services that a company uses.

But when material incidents occur, optimize for transparency and learning.

1/17/2025, 1:06:21 PM

Favs: 3

Retweets: 0