<?xml version="1.0" encoding="UTF-8"?><?xml-stylesheet type="text/xsl" href="//www.infosecmadeeasy.com/sitemap.xsl"?><urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:image="http://www.google.com/schemas/sitemap-image/1.1"><url><loc>https://www.infosecmadeeasy.com/application-security-engineer-fixing-the-code-before-attackers-find-it/</loc><lastmod>2026-06-16T21:59:39.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/appsec-engineer-career-guide-2026-04-12.jpg</image:loc><image:caption>appsec-engineer-career-guide-2026-04-12.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/how-to-motivate-cybersecurity-teams-with-stretch-assignments-1020-time-model/</loc><lastmod>2026-06-15T22:49:57.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/Motivate-Sec-Teams.png</image:loc><image:caption>Motivate-Sec-Teams.png</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/why-mttr-is-one-of-the-most-important-metrics-in-cybersecurity/</loc><lastmod>2026-06-15T22:48:54.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/FA5B652C-37E1-45E6-9A10-E3F63C3B2DD8.png</image:loc><image:caption>FA5B652C-37E1-45E6-9A10-E3F63C3B2DD8.png</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/choosing-the-right-information-security-metrics-how-visual-management-and-gemba-boards-drive-continuous-improvement/</loc><lastmod>2026-06-15T22:47:34.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/Security-Metrics.png</image:loc><image:caption>Security-Metrics.png</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/secure-ot-connectivity-a-cisos-guide-to-reducing-cyber-risk-without-disrupting-operations/</loc><lastmod>2026-06-15T22:46:54.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/Secure-OT-Connectivity.png</image:loc><image:caption>Secure-OT-Connectivity.png</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/ot-connectivity-governance-why-cisos-must-require-a-business-case-for-every-connection/</loc><lastmod>2026-06-15T22:46:18.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/302D31EE-E5CE-4E2A-920F-B5AB83EC3139.PNG</image:loc><image:caption>302D31EE-E5CE-4E2A-920F-B5AB83EC3139.PNG</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/minimizing-ot-attack-surface-a-cisos-perspective-on-limiting-exposure/</loc><lastmod>2026-06-15T22:45:29.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/99102DDC-0030-48FA-A230-6DD51C7D60AE.png</image:loc><image:caption>99102DDC-0030-48FA-A230-6DD51C7D60AE.png</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/protocol-risk-is-business-risk-what-cisos-need-to-know-about-ot-communications/</loc><lastmod>2026-06-15T22:44:58.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/Insecure-Protocols.png</image:loc><image:caption>Insecure-Protocols.png</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/why-cisos-should-centralize-ot-connectivity-before-it-becomes-unmanageable/</loc><lastmod>2026-06-15T22:44:37.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/Centralized-connectivity-for-improved-security.png</image:loc><image:caption>Centralized-connectivity-for-improved-security.png</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/designing-ot-networks-to-contain-breaches-not-pretend-they-wont-happen/</loc><lastmod>2026-06-15T22:44:06.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/Designing-OT-to-Contain-a-Breach.png</image:loc><image:caption>Designing-OT-to-Contain-a-Breach.png</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/hardening-the-ot-boundary-a-control-cisos-cannot-delegate/</loc><lastmod>2026-06-15T22:43:37.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/Hardening-the-OT-Boundry.png</image:loc><image:caption>Hardening-the-OT-Boundry.png</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/why-ot-logging-and-monitoring-are-executive-level-controls/</loc><lastmod>2026-06-15T22:43:11.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/OT-Logging.png</image:loc><image:caption>OT-Logging.png</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/isolation-is-not-failure-why-cisos-must-plan-for-ot-disconnect-scenarios/</loc><lastmod>2026-06-15T22:42:35.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/Isolation-is-not-failure.png</image:loc><image:caption>Isolation-is-not-failure.png</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/the-power-of-yes-and-how-cisos-become-business-enablers-without-compromising-security/</loc><lastmod>2026-06-15T22:42:09.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/Power-of-Yes-and.png</image:loc><image:caption>Power-of-Yes-and.png</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/why-govern-matters-in-nist-csf-20-risks-of-acting-and-not-acting-on-cybersecurity-governance/</loc><lastmod>2026-06-15T22:41:40.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/NIST-CSF-2.0-Govern.png</image:loc><image:caption>NIST-CSF-2.0-Govern.png</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/understanding-the-identify-function-in-nist-csf-20-strategic-risks-and-operational-imperatives/</loc><lastmod>2026-06-15T22:41:06.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/NIST-2.0-Identify.png</image:loc><image:caption>NIST-2.0-Identify.png</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/the-protect-function-in-nist-csf-20-managing-the-risk-of-control-effectiveness/</loc><lastmod>2026-06-15T22:40:31.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/NIST-2.0-Protect.png</image:loc><image:caption>NIST-2.0-Protect.png</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/the-detect-function-in-nist-csf-20-the-risk-of-seeing-too-lateor-too-much/</loc><lastmod>2026-06-15T22:39:57.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/NIST-2.0-Detect.png</image:loc><image:caption>NIST-2.0-Detect.png</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/the-respond-function-in-nist-csf-20-turning-detection-into-decisive-action/</loc><lastmod>2026-06-15T22:39:30.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/NIST-2.0-Respond.png</image:loc><image:caption>NIST-2.0-Respond.png</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/the-recover-function-in-nist-csf-20-restoring-trust-operations-and-confidence-after-an-incident/</loc><lastmod>2026-06-15T22:38:54.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/NIST-2.0-Recover.png</image:loc><image:caption>NIST-2.0-Recover.png</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/nist-csf-20-for-executives-how-the-six-functions-work-together-to-reduce-business-risk/</loc><lastmod>2026-06-15T22:38:23.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/NIST-CSF-2.0.png</image:loc><image:caption>NIST-CSF-2.0.png</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/getting-your-first-information-security-job-why-courage-and-outreach-matter-more-than-another-resume/</loc><lastmod>2026-06-15T22:14:21.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/Getting98024331-A686-47C7-95CA-7079E1CB89DD.png</image:loc><image:caption>Getting98024331-A686-47C7-95CA-7079E1CB89DD.png</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/how-to-prepare-for-an-information-security-interview-and-stand-out/</loc><lastmod>2026-06-15T22:11:57.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/Interview-Tips.png</image:loc><image:caption>Interview-Tips.png</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/why-mean-time-to-contain-mttc-matters-as-a-core-cybersecurity-metric/</loc><lastmod>2026-06-15T22:11:17.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/MTTC.jpg</image:loc><image:caption>MTTC.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/why-mean-time-to-detect-mttd-is-a-foundational-cybersecurity-metric/</loc><lastmod>2026-06-15T22:10:53.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/MTTD.jpg</image:loc><image:caption>MTTD.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/generative-ai-governance-using-the-nist-framework-to-build-trust-reduce-risk-and-lead-secure-ai-adoption/</loc><lastmod>2026-06-15T22:10:33.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/23C9B4B6-E05A-48BB-987E-191974B92029.png</image:loc><image:caption>23C9B4B6-E05A-48BB-987E-191974B92029.png</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/generative-ai-policies-aligning-organizational-governance-with-the-nist-ai-risk-management-framework/</loc><lastmod>2026-06-15T22:09:38.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/GenAI-Policy.jpg</image:loc><image:caption>GenAI-Policy.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/nist-csf-20-organizational-context-gvoc-governing-cybersecurity-with-business-clarity/</loc><lastmod>2026-06-15T22:09:12.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/GV.OC.jpg</image:loc><image:caption>GV.OC.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/nist-csf-20-risk-management-strategy-gvrm-turning-risk-tolerance-into-actionable-cyber-decisions/</loc><lastmod>2026-06-15T22:08:51.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/GV.RM.jpg</image:loc><image:caption>GV.RM.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/nist-csf-20-roles-responsibilities-and-authorities-gvrr-eliminating-ambiguity-in-cybersecurity-leadership/</loc><lastmod>2026-06-15T22:08:31.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/GV.RR.jpg</image:loc><image:caption>GV.RR.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/nist-csf-20-policies-processes-and-procedures-gvpo-turning-governance-into-operational-reality/</loc><lastmod>2026-06-15T22:08:10.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/GV.PO.jpg</image:loc><image:caption>GV.PO.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/nist-csf-20-govern-gvov-turning-governance-into-oversight-that-works/</loc><lastmod>2026-06-15T22:07:49.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/GV.OV.jpg</image:loc><image:caption>GV.OV.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/choosing-the-right-security-framework-for-your-organization/</loc><lastmod>2026-06-15T22:07:29.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/SecFramework.jpg</image:loc><image:caption>SecFramework.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/ciso-brief-february-11-2026-critical-vulnerabilities-nation-state-threats-and-ransomware-developments/</loc><lastmod>2026-06-15T22:06:41.000Z</lastmod></url><url><loc>https://www.infosecmadeeasy.com/nist-csf-20-govern-gvsc-governing-cyber-risk-beyond-your-organizational-boundaries/</loc><lastmod>2026-06-15T22:06:32.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/GV.SC.jpg</image:loc><image:caption>GV.SC.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/ciso-weekly-brief-zero-day-exploits-identity-threats-and-ai-abuse-feb-12-2026/</loc><lastmod>2026-06-15T22:05:58.000Z</lastmod></url><url><loc>https://www.infosecmadeeasy.com/cybersecurity-governance-that-works-a-board-and-executive-guide-to-the-nist-csf-20-govern-function/</loc><lastmod>2026-06-15T22:05:50.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/GV-Overview.jpg</image:loc><image:caption>GV-Overview.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/nist-csf-20-identify-function-deep-dive-asset-management-idam/</loc><lastmod>2026-06-15T22:05:20.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/ID.AM.jpg</image:loc><image:caption>ID.AM.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/nist-csf-20-identify-function-deep-dive-risk-assessment-idra/</loc><lastmod>2026-06-15T22:05:01.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/ID.RA.jpg</image:loc><image:caption>ID.RA.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/nist-csf-20-identify-function-deep-dive-improvement-idim/</loc><lastmod>2026-06-15T22:04:11.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/ID.IM.jpg</image:loc><image:caption>ID.IM.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/nist-csf-20-protect-function-deep-dive-identity-authentication-and-access-control-praa/</loc><lastmod>2026-06-15T22:03:42.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/PR.AA.jpg</image:loc><image:caption>PR.AA.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/nist-csf-20-protect-function-deep-dive-awareness-and-training-prat/</loc><lastmod>2026-06-15T22:03:22.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/PR.AT.jpg</image:loc><image:caption>PR.AT.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/nist-csf-20-protect-function-deep-dive-data-security-prds/</loc><lastmod>2026-06-15T22:03:03.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/PR.DS.jpg</image:loc><image:caption>PR.DS.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/nist-csf-20-protect-function-deep-dive-platform-security-prps/</loc><lastmod>2026-06-15T22:02:42.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/PR.PS.jpg</image:loc><image:caption>PR.PS.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/nist-csf-20-protect-function-deep-dive-technology-infrastructure-resilience-prir/</loc><lastmod>2026-06-15T22:02:21.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/PR.IR.jpg</image:loc><image:caption>PR.IR.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/nist-csf-20-detect-continuous-monitoring-decm-explained/</loc><lastmod>2026-06-15T22:01:59.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/DE.CM.jpg</image:loc><image:caption>DE.CM.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/nist-csf-20-detect-adverse-event-analysis-deae-explained/</loc><lastmod>2026-06-15T22:01:35.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/DE.AE.jpg</image:loc><image:caption>DE.AE.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/nist-csf-20-respond-incident-management-rsim-explained/</loc><lastmod>2026-06-15T22:01:11.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/RS.IM.jpg</image:loc><image:caption>RS.IM.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/nist-csf-20-respond-incident-analysis-rsan-explained/</loc><lastmod>2026-06-15T22:00:48.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/RS.AN.jpg</image:loc><image:caption>RS.AN.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/nist-csf-20-respond-response-communications-rsco-explained/</loc><lastmod>2026-06-15T22:00:22.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/RS.CO.jpg</image:loc><image:caption>RS.CO.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/nist-csf-20-respond-mitigation-rsmi-explained/</loc><lastmod>2026-06-15T21:59:56.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/RS.MI.jpg</image:loc><image:caption>RS.MI.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/how-to-build-a-security-team-in-a-midsize-organization/</loc><lastmod>2026-06-15T21:58:27.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/SecTeam-Part-1.jpg</image:loc><image:caption>SecTeam-Part-1.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/how-to-scale-your-team-without-losing-executive-support/</loc><lastmod>2026-06-15T21:57:48.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/First30Post4-1.jpg</image:loc><image:caption>First30Post4-1.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/what-to-outsource-without-losing-control/</loc><lastmod>2026-06-15T21:56:53.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/SecTeam-Part-2.jpg</image:loc><image:caption>SecTeam-Part-2.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/what-functions-a-large-enterprise-security-organization-must-have-and-why/</loc><lastmod>2026-06-15T21:56:03.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/LargeExec.jpg</image:loc><image:caption>LargeExec.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/structuring-roles-and-gaining-executive-approval-to-build-the-organization/</loc><lastmod>2026-06-15T21:55:14.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/LargeTeam.jpg</image:loc><image:caption>LargeTeam.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/turning-a-gemba-board-into-real-weekly-security-improvement/</loc><lastmod>2026-06-15T21:53:50.000Z</lastmod></url><url><loc>https://www.infosecmadeeasy.com/driving-real-security-improvement-with-a-gemba-board/</loc><lastmod>2026-06-15T21:53:11.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/Gemba-Board.png</image:loc><image:caption>Gemba-Board.png</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/when-leadership-says-keep-us-safe-finding-cyber-risk-tolerance-in-the-10-k/</loc><lastmod>2026-06-15T21:52:40.000Z</lastmod></url><url><loc>https://www.infosecmadeeasy.com/asset-management-physical-devices-what-do-you-have-do-you-know/</loc><lastmod>2026-06-15T21:52:28.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/Asset-Management.png</image:loc><image:caption>Asset-Management.png</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/vulnerability-management-its-easy-planning/</loc><lastmod>2026-06-15T21:51:50.000Z</lastmod></url><url><loc>https://www.infosecmadeeasy.com/the-most-important-skills-for-a-cybersecurity-grc-professional-hint-theyre-not-technical/</loc><lastmod>2026-06-15T21:51:31.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/GRCSoftSkills.jpg</image:loc><image:caption>GRCSoftSkills.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/days-130-listen-learn-and-dont-break-anything/</loc><lastmod>2026-06-15T21:50:34.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/First30Post1.jpg</image:loc><image:caption>First30Post1.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/days-3160-assess-the-landscape-and-build-your-roadmap/</loc><lastmod>2026-06-15T21:50:12.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/First30Post2.jpg</image:loc><image:caption>First30Post2.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/days-6190-start-executing-and-show-early-wins/</loc><lastmod>2026-06-15T21:49:36.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/First30Post3-1-.jpg</image:loc><image:caption>First30Post3-1-.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/winning-the-room-how-to-gain-and-keep-executive-support/</loc><lastmod>2026-06-15T21:48:37.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/First30Post4.jpg</image:loc><image:caption>First30Post4.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/understanding-indias-dpdp-act/</loc><lastmod>2026-06-15T21:47:15.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/UnderstandingDPDP.jpg</image:loc><image:caption>UnderstandingDPDP.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/indias-dpdp-compliance-obligations/</loc><lastmod>2026-06-15T21:46:55.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/DPDPComplianceObligations.jpg</image:loc><image:caption>DPDPComplianceObligations.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/building-a-dpdp-readiness-roadmap/</loc><lastmod>2026-06-15T21:46:19.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/DPDPReadinessRoadmapjpg.jpg</image:loc><image:caption>DPDPReadinessRoadmapjpg.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/ncsc-secure-connectivity-principle-1-balance-the-risks-and-opportunities/</loc><lastmod>2026-06-15T21:45:28.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/NCSC.jpg</image:loc><image:caption>NCSC.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/ncsc-secure-connectivity-principle-2-limit-the-exposure-of-your-connectivity/</loc><lastmod>2026-06-15T21:45:06.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/NCSC2.jpg</image:loc><image:caption>NCSC2.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/ai-governance-security-leadership-nist-ai-rmf-series/</loc><lastmod>2026-06-15T21:44:16.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/gen-ai-governance-header.jpg</image:loc><image:caption>gen-ai-governance-header.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/ncsc-secure-connectivity-principle-3-centralise-and-standardise-network-connections/</loc><lastmod>2026-06-15T21:43:22.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/NCSC3.jpg</image:loc><image:caption>NCSC3.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/ncsc-secure-connectivity-principle-4-use-standardised-and-secure-protocols/</loc><lastmod>2026-06-15T21:43:00.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/NCSC4.jpg</image:loc><image:caption>NCSC4.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/ncsc-secure-connectivity-principle-5-harden-your-ot-boundary/</loc><lastmod>2026-06-15T21:28:27.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/NCSC5.jpg</image:loc><image:caption>NCSC5.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/ncsc-secure-connectivity-principle-6-limit-the-impact-of-compromise/</loc><lastmod>2026-06-15T21:28:04.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/NCSC6.jpg</image:loc><image:caption>NCSC6.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/ncsc-secure-connectivity-principle-7-ensure-all-connectivity-is-logged-and-monitored/</loc><lastmod>2026-06-15T21:27:43.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/NCSC7.jpg</image:loc><image:caption>NCSC7.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/ncsc-secure-connectivity-principle-8-establish-an-isolation-plan/</loc><lastmod>2026-06-15T21:27:14.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/NCSC8.jpg</image:loc><image:caption>NCSC8.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/shadow-ai-what-new-cisos-need-to-do-before-it-bites-them/</loc><lastmod>2026-06-15T21:26:47.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/shadow-ai-what-new-cisos-need-to-do-2026-03-20.jpg</image:loc><image:caption>shadow-ai-what-new-cisos-need-to-do-2026-03-20.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/zero-trust-from-concept-to-board-room-post-4-of-4/</loc><lastmod>2026-06-15T21:26:17.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/zero_trust_post4_header.jpg</image:loc><image:caption>zero_trust_post4_header.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/zero-trust-from-concept-to-board-room-post-3-of-4/</loc><lastmod>2026-06-15T21:25:57.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/zero_trust_post3_header.jpg</image:loc><image:caption>zero_trust_post3_header.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/zero-trust-from-concept-to-board-room-post-2-of-4/</loc><lastmod>2026-06-15T21:25:37.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/zero_trust_post2_header.jpg</image:loc><image:caption>zero_trust_post2_header.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/zero-trust-from-concept-to-board-room-post-1-of-4/</loc><lastmod>2026-06-15T21:25:13.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/zero_trust_post1_header.jpg</image:loc><image:caption>zero_trust_post1_header.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/iam-for-ai-agents-why-your-identity-program-isnt-ready/</loc><lastmod>2026-06-15T21:24:47.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/iam-for-ai-agents-2026-03-25.jpg</image:loc><image:caption>iam-for-ai-agents-2026-03-25.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/openclaw-and-personal-ai-assistants-emerging-threats-and-what-cisos-need-to-do-now/</loc><lastmod>2026-06-15T21:24:20.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/openclaw-security-2026-03-28.jpg</image:loc><image:caption>openclaw-security-2026-03-28.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/iam-metrics-that-actually-matter-proving-risk-reduction-and-value-to-every-level-of-the-organization/</loc><lastmod>2026-06-15T21:23:36.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/iam-metrics-blog-header.jpg</image:loc><image:caption>iam-metrics-blog-header.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/iam-metrics-in-practice-real-numbers-real-scenarios-real-conversations/</loc><lastmod>2026-06-15T21:23:09.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/iam-metrics-practice-blog-header.jpg</image:loc><image:caption>iam-metrics-practice-blog-header.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/white-house-national-ai-policy-framework-what-cisos-need-to-know-and-do-now/</loc><lastmod>2026-06-15T21:22:28.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/white-house-ai-framework-2026-03-29.jpg</image:loc><image:caption>white-house-ai-framework-2026-03-29.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/stop-scanning-start-managing-exposure-the-cisos-guide-to-continuous-threat-exposure-management/</loc><lastmod>2026-06-15T21:22:07.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/continuous-exposure-management-ctem-2026-04-01.jpg</image:loc><image:caption>continuous-exposure-management-ctem-2026-04-01.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/ai-governance-deep-dive-building-the-committee-that-actually-governs/</loc><lastmod>2026-06-15T21:21:02.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/ai-governance-deep-dive-committee-charter-2026-.jpg</image:loc><image:caption>ai-governance-deep-dive-committee-charter-2026-.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/project-glasswing-claude-mythos-what-cisos-need-to-know-right-now/</loc><lastmod>2026-06-15T21:20:42.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/project-glasswing-claude-mythos-2026-04-12.jpg</image:loc><image:caption>project-glasswing-claude-mythos-2026-04-12.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/breaking-into-information-security-the-complete-guide-for-beginners/</loc><lastmod>2026-06-15T21:19:15.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/breaking-into-infosec-beginners-guide-2026-04-1.jpg</image:loc><image:caption>breaking-into-infosec-beginners-guide-2026-04-1.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/infosec-certifications-home-labs-and-the-skills-that-actually-get-you-hired/</loc><lastmod>2026-06-15T21:18:51.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/infosec-certs-labs-skills-2026-04-12.jpg</image:loc><image:caption>infosec-certs-labs-skills-2026-04-12.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/cloud-security-engineer-the-role-thats-reshaping-cybersecurity/</loc><lastmod>2026-06-15T21:18:19.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/cloud-security-engineer-career-guide-2026-04-12.jpg</image:loc><image:caption>cloud-security-engineer-career-guide-2026-04-12.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/identity-and-access-management-the-role-that-controls-every-door-in-the-building/</loc><lastmod>2026-06-15T21:17:36.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/iam-career-guide-2026-04-12.jpg</image:loc><image:caption>iam-career-guide-2026-04-12.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/incident-responder-the-career-for-people-who-run-toward-the-fire/</loc><lastmod>2026-06-15T21:15:49.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/incident-responder-career-guide-2026-04-12.jpg</image:loc><image:caption>incident-responder-career-guide-2026-04-12.jpg</image:caption></image:image></url><url><loc>https://www.infosecmadeeasy.com/grc-analyst-the-business-side-of-security-nobody-talks-about/</loc><lastmod>2026-06-15T21:13:55.000Z</lastmod><image:image><image:loc>https://storage.ghost.io/c/af/8e/af8ef459-6473-469b-839e-7b09c96d4400/content/images/2026/06/grc-analyst-career-guide-2026-04-12.jpg</image:loc><image:caption>grc-analyst-career-guide-2026-04-12.jpg</image:caption></image:image></url></urlset>