Governance & Risk Management
,
Regulation
,
Standards, Regulations & Compliance
Integrity’s Ed Parsons on How Regs Are Pushing Firms Toward Proactive Security
The Network and Information Systems Directive 2, or NIS2 Directive, has driven significant improvements in vulnerability management across Europe. Organizations are accelerating vulnerability discovery by engaging with crowdsourced security communities and ethical hackers, enabling them to identify weaknesses before they can be exploited, said Ed Parsons, chief operations officer at Integrity.
See Also: How Enterprise Browsers Enhance Security and Efficiency
The regulation put more emphasis on asset discovery and the need for a deeper understanding of the full attack surface, including previously unknown or unmanaged systems related to shadow IT, he said.
“I think there really have been improvements in vulnerability management, and the role that NIS2 has played is in shifting more organizations from a reactive posture toward a more proactive security posture,” Parsons said.
In this video interview with Information Security Media Group, Parsons also discussed:
- The progress European organizations have made toward NIS2 compliance;
- Common misconceptions that still exist about bug bounty programs;
- Key challenges organizations face in ensuring compliance.
Parsons most recently served as vice president of global markets and member relations at ISC2, the world’s largest cybersecurity membership organization. He previously held several senior leadership roles in the cybersecurity industry, including executive vice president of consulting at F-Secure and director at MWR Security, acquired by F-Secure in 2018. Earlier in his career, he worked at KPMG U.K. as senior manager for cybersecurity, having begun his professional journey as a management consultant with the same firm.

