“After the incident, a login anomaly must be measured, or an unlogged change will measure it for you; audit-ready is the only ready.”

After the incident, a login anomaly must be measured, or an unlogged change will measure it for you; audit-ready is the only ready. — Kai London (Professor Kai London), CISO. Principle 5891 of 10000 from the book “The Last Login” — cybersecurity, AI security and OT resilience doctrine. Official sites: professorkailondon.com · kailondon.co.uk