Oh, something I noticed on LinkedIn since the Crowdstrike incident -
There are lots of “security leaders” and similarly titled folk proclaiming the presence of Crowdstrike on all these machines being nothing more than a box-checking compliance exercise. Not sure that’s true, I’ll happily say that Crowdstrike has saved me a few times, and any EDR tool is a pretty essential foundational security control for any org - not just something to keep the auditors happy.
Recency bias is a thing. It was the same with Okta. When you talk about Okta and Crowdstrike these days, the incidents are front and center of mind - not the decades of improving security and preventing incidents that came before them. Worth remembering that.