Teja Myneedu

Thoughts on scaling information security, innovation, careers and management

17 Feb 2021

Scaling Infosec - Leveraging MSSPs Effectively

Join us for a chat on ClubHouse App to Discuss “Leveraging MSSPs Effectively”

Date: 19th Feb 2019 Time: 12:00 PM PST

During last week’s conversation, there were a couple of interesting insights about leveraging MSSPs well. My goal for this week’s conversation is to learn from security leaders about how they leverage MSSPs for strategic objectives.

Terminology

  • MSSP: Managed Security Service Providers
  • MDR: Managed Detection and Response

What do security teams use MSSPs for?

  • Sourcing Talent
  • Security Monitoring (MDRs?)
  • Sourcing tools
  • Assurance (Penetration Testing, Architecture Reviews)
  • Compliance Audit Preparation

What are some of the more interesting use cases folks have leveraged MSSPs for recently?


How you you decide to leverage an MSSP for a given problem? How do you ensure that you get value out of the engagement?


How has the security consulting business changed? What are some new service offerings?


Do you consider bug bounty platforms MSSPs?