Persist Security Blog

Cybersecurity & Information Security Blog — insights, threat intelligence, and security research from Persist Security experts.

Internal vs external penetration testing comparison – Persist Security

Internal vs External Penetration Testing

“Internal” and “external” penetration testing answer two different questions about your security. External testing asks: can an attacker break in from the internet? Internal testing asks: once they are in,

Read More >
Cyber and privacy regulations in Israel – Amendment 13 compliance, Persist Security

Cyber Regulations in Israel

Israel’s cyber and privacy regulatory landscape changed fundamentally in 2025. With Amendment 13 to the Protection of Privacy Law now in force, stronger enforcement powers, and the central role of

Read More >
ISO 27001 certification checklist – Persist Security GRC

ISO 27001 Checklist

ISO/IEC 27001 is the international standard for an Information Security Management System (ISMS) — a structured, risk-based framework for protecting information. Certification proves to customers, regulators, and partners that security

Read More >
NIS2 compliance requirements and deadlines – Persist Security GRC

NIS2 Compliance Guide

NIS2 (Directive EU 2022/2555) is the European Union’s flagship cybersecurity law, in force since 17 October 2024, replacing the original 2016 NIS Directive. It dramatically widens the scope of who

Read More >
Attack surface management discovery and monitoring – Persist Security

Understanding Attack Surface Management

You cannot defend what you do not know you have. Attack Surface Management (ASM) is the continuous discovery, inventory, and monitoring of every internet-facing asset an organization exposes — known

Read More >