Sensible Security

Home
Notes
Archive
About
SOC 2 is dead, long live SOC 2!
With a healthy dose of in-depth continuous assurance
Sep 17 • 
Justin Pagano
2
1

June 2024

Apple PCC is the future of consumer cloud computing we all deserve
Microsoft, Google, and literally everyone else need to get their act together
Jun 20, 2024 • 
Justin Pagano
1

March 2024

Are we doing vulnerability management all wrong? Part 2.1: evolving beyond CVEs and the NVD
While working on part 3 of this series (title TBD), something strange happened in the world of vulnerability management: NIST’s NVD quietly posted a…
Mar 12, 2024 • 
Justin Pagano
2

February 2024

Are we doing vulnerability management all wrong? Part 2: a better approach (maybe)
Update: part 2.1 is out in response to the NVD’s February 2024 service degradation announcement.
Feb 15, 2024 • 
Justin Pagano
3
1

November 2023

Are we doing vulnerability management all wrong? Part 1: Probably
A call to action for more innovation and focus on proactive vulnerability management
Nov 2, 2023 • 
Justin Pagano
5

December 2022

Protecting against a password manager breach: part 2
A recipe for keeping your online accounts safe
Dec 23, 2022 • 
Justin Pagano
1
Protecting against a password manager breach: part 1
Prepare for the inevitable to avoid digital disaster
Dec 13, 2022 • 
Justin Pagano
3
1
© 2025 Justin Pagano
Privacy ∙ Terms ∙ Collection notice
Start your SubstackGet the app
Substack is the home for great culture