<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>intuitem’s Blog</title><description>🐙 intuitem is a French company specialized in cyber security and infrastructure management. We are a team of passionate and experienced engineers, who are dedicated to providing the best solutions to our clients. CISO Assistant is our main product, a one-stop-shop that helps CISOs and cyber security practionners manage their security program. We also provide consulting services and audits. 🚀</description><link>https://intuitem.com</link><item><title>What&apos;s New in CISO Assistant — Week 23, 2026 (v3.17.1 – v3.17.2)</title><link>https://intuitem.com/whats-new-ciso-assistant-2026-w23</link><guid isPermaLink="true">https://intuitem.com/whats-new-ciso-assistant-2026-w23</guid><description>Two releases close out the week: v3.17.1 brings a Prometheus metrics endpoint, user-configurable date formats, expanded comments and audit aggregation; v3.17.2 piles on an expanded AI/MCP server, the ABRO framework, a tables column selector, action-plan cost breakdowns, SSO redirect handling, and a big batch of data-wizard, framework-builder, and ordering fixes.</description><pubDate>Fri, 05 Jun 2026 00:00:00 GMT</pubDate></item><item><title>What&apos;s New in CISO Assistant — Week 22, 2026 (v3.16.5 – v3.17.0)</title><link>https://intuitem.com/whats-new-ciso-assistant-2026-w22</link><guid isPermaLink="true">https://intuitem.com/whats-new-ciso-assistant-2026-w22</guid><description>A big stretch: native project management arrives, framework-driven reporting goes cross-domain, requirement nodes gain their own score scales, and OIDC picks up a strict state/nonce mode. Plus new NCSC CAF v4.0 and TRUE II frameworks, analytics on applied controls, the psycopg2→psycopg3 upgrade, and a long tail of fixes across four releases (v3.16.5 → v3.17.0).</description><pubDate>Sat, 30 May 2026 00:00:00 GMT</pubDate></item><item><title>PostgreSQL vs SQLite, 2026 edition</title><link>https://intuitem.com/postgresql-vs-sqlite-2026-benchmark</link><guid isPermaLink="true">https://intuitem.com/postgresql-vs-sqlite-2026-benchmark</guid><description>We benchmarked PostgreSQL 16 against SQLite 3.46.1 under a real CISO Assistant workload on a single 1 vCPU / 8 GB host. The results weren&apos;t what we expected — SQLite-WAL won on most read patterns.</description><pubDate>Tue, 26 May 2026 00:00:00 GMT</pubDate></item><item><title>Rebuilding the CISO Assistant Documentation</title><link>https://intuitem.com/ciso-assistant-docs-restructure</link><guid isPermaLink="true">https://intuitem.com/ciso-assistant-docs-restructure</guid><description>Why we&apos;re restructuring the CISO Assistant documentation — clearer mental models, concepts separated from guides, versioned with the code, and open to community contributions.</description><pubDate>Mon, 25 May 2026 00:00:00 GMT</pubDate></item><item><title>What&apos;s New in CISO Assistant — Week 21, 2026 (v3.16.3 – v3.16.4)</title><link>https://intuitem.com/whats-new-ciso-assistant-2026-w21</link><guid isPermaLink="true">https://intuitem.com/whats-new-ciso-assistant-2026-w21</guid><description>Two releases land back-to-back: v3.16.3 brings the AI Defense Matrix and KSA PDPL frameworks, a Responsibility Matrix (RACI/RASCI/RAPID), Ebios RM import in Egerie format, task labels, and full Estonian language support — followed by a v3.16.4 hotfix round covering Matrix Editor, breadcrumbs, and journey templates.</description><pubDate>Tue, 19 May 2026 00:00:00 GMT</pubDate></item><item><title>What&apos;s New in CISO Assistant — Week 20, 2026 (v3.16.2)</title><link>https://intuitem.com/whats-new-ciso-assistant-2026-w20</link><guid isPermaLink="true">https://intuitem.com/whats-new-ciso-assistant-2026-w20</guid><description>v3.16.2 brings two new framework libraries (EU CER directive, UK Defence Standard 05-138), an experimental UI mode for asset creation, a specialized wizard for customer questionnaire prefill, the start of CBDDO and DoW ZT-OT framework support, plus a healthy round of audit performance work, mapping engine fixes, and i18n improvements.</description><pubDate>Wed, 13 May 2026 00:00:00 GMT</pubDate></item><item><title>What&apos;s New in CISO Assistant — Week 18, 2026 (v3.16.1)</title><link>https://intuitem.com/whats-new-ciso-assistant-2026-w18</link><guid isPermaLink="true">https://intuitem.com/whats-new-ciso-assistant-2026-w18</guid><description>A focused v3.16.1 release: a new journeys editor, Azure Blob Storage as an alternative to S3, AI chat memory improvements, EPSS feeds, IEC 62443 outline, NIST CSF 1.1 enriched with reference controls, expanded respondent mode for third parties, and a steady stream of performance and bug fixes.</description><pubDate>Sun, 03 May 2026 00:00:00 GMT</pubDate></item><item><title>What&apos;s New in CISO Assistant — Week 17, 2026 (v3.16.0)</title><link>https://intuitem.com/whats-new-ciso-assistant-2026-w17</link><guid isPermaLink="true">https://intuitem.com/whats-new-ciso-assistant-2026-w17</guid><description>A heavy v3.16.0 release: merge applied controls, action plans for incidents, custom analytics dashboards, four new framework libraries (CNDP Morocco, OIV Air Transport, 3CF v3.1, recyf enrichment), NIST CSF 2.0 recommendations, and a long sweep of UX, performance and bug fixes.</description><pubDate>Sun, 26 Apr 2026 00:00:00 GMT</pubDate></item><item><title>The &apos;mother of all AI supply chains&apos; advisory: what it actually says, and how we audited our own MCP server</title><link>https://intuitem.com/auditing-mcp-servers-ox-advisory</link><guid isPermaLink="true">https://intuitem.com/auditing-mcp-servers-ox-advisory</guid><description>Reading ox.security&apos;s MCP advisory against the real Model Context Protocol attack surface, and a ten-minute audit for MCP server authors.</description><pubDate>Fri, 24 Apr 2026 00:00:00 GMT</pubDate></item><item><title>What&apos;s New in CISO Assistant — Week 16, 2026 (v3.15.8 – v3.15.9)</title><link>https://intuitem.com/whats-new-ciso-assistant-2026-w16</link><guid isPermaLink="true">https://intuitem.com/whats-new-ciso-assistant-2026-w16</guid><description>Container hardening, Cyfun 2025 scoring and export, richer import/export across TPRM, findings and risk assessments, DORA subcontracting chains, and a wave of UX polish.</description><pubDate>Sun, 19 Apr 2026 00:00:00 GMT</pubDate></item><item><title>What&apos;s New in CISO Assistant — Week 15, 2026 (v3.15.3 – v3.15.7)</title><link>https://intuitem.com/whats-new-ciso-assistant-2026-w15</link><guid isPermaLink="true">https://intuitem.com/whats-new-ciso-assistant-2026-w15</guid><description>Security keys as a second factor, expanded vulnerability management, five new frameworks, a redesigned timeline, and EBIOS RM light mode.</description><pubDate>Sun, 12 Apr 2026 00:00:00 GMT</pubDate></item><item><title>What&apos;s New in CISO Assistant — Week 14, 2026 (v3.15.1 – v3.15.2)</title><link>https://intuitem.com/whats-new-ciso-assistant-2026-w14</link><guid isPermaLink="true">https://intuitem.com/whats-new-ciso-assistant-2026-w14</guid><description>DORA incident reporting, MCP vulnerability tools, framework builder fixes, degraded status for controls, and new language contributions for risk matrices.</description><pubDate>Sun, 05 Apr 2026 00:00:00 GMT</pubDate></item><item><title>What&apos;s New in CISO Assistant — Week 12, 2026 (v3.14.5 – v3.15.0)</title><link>https://intuitem.com/whats-new-ciso-assistant-2026-w12</link><guid isPermaLink="true">https://intuitem.com/whats-new-ciso-assistant-2026-w12</guid><description>Chat mode, framework builder with revamped questionnaire respondent, visual risk matrix editor, universal fuzzy search, SoA generation, vulnerability import, and Korean language support.</description><pubDate>Sun, 29 Mar 2026 00:00:00 GMT</pubDate></item><item><title>What&apos;s New in CISO Assistant — Week 11, 2026 (v3.14.1 – v3.14.4)</title><link>https://intuitem.com/whats-new-ciso-assistant-2026-w11</link><guid isPermaLink="true">https://intuitem.com/whats-new-ciso-assistant-2026-w11</guid><description>Markdown policy editor with lifecycle management, persistent table filters, modernised command palette, cost summaries on action plans, SSO security hardening, and ReCyF framework support.</description><pubDate>Sun, 22 Mar 2026 00:00:00 GMT</pubDate></item><item><title>What&apos;s New in CISO Assistant — Week 10, 2026 (v3.13.5 – v3.14.0)</title><link>https://intuitem.com/whats-new-ciso-assistant-2026-w10</link><guid isPermaLink="true">https://intuitem.com/whats-new-ciso-assistant-2026-w10</guid><description>Admin-controlled default language, expanded folder navigation, Journey feature flags, broader currency support, customisable email and report templates, and DORA 4.0 ROI alignment.</description><pubDate>Sun, 15 Mar 2026 00:00:00 GMT</pubDate></item><item><title>What&apos;s New in CISO Assistant — Week 09, 2026 (v3.13.0 – v3.13.4)</title><link>https://intuitem.com/whats-new-ciso-assistant-2026-w09</link><guid isPermaLink="true">https://intuitem.com/whats-new-ciso-assistant-2026-w09</guid><description>Enforced MFA, advanced audit analytics with radar charts, EBIOS RM interactive graph editor, onboarding presets and journeys, PostgreSQL SSL support, and three new framework libraries.</description><pubDate>Sun, 08 Mar 2026 00:00:00 GMT</pubDate></item><item><title>What&apos;s New in CISO Assistant — Week 08, 2026 (v3.12.5 – v3.12.7)</title><link>https://intuitem.com/whats-new-ciso-assistant-2026-w08</link><guid isPermaLink="true">https://intuitem.com/whats-new-ciso-assistant-2026-w08</guid><description>ITIL 4 library, expanded validations, Kubernetes ServiceAccount support, Skeleton UI v4 migration, and a raft of notification and export fixes.</description><pubDate>Sun, 01 Mar 2026 00:00:00 GMT</pubDate></item><item><title>What&apos;s New in CISO Assistant — Week 07, 2026 (v3.12.1 – v3.12.4)</title><link>https://intuitem.com/whats-new-ciso-assistant-2026-w07</link><guid isPermaLink="true">https://intuitem.com/whats-new-ciso-assistant-2026-w07</guid><description>Findings-to-threats linking, generalised &apos;pick existing&apos; pattern, MCP context improvements, campaign feature flags, and a wave of translation and UX fixes.</description><pubDate>Sun, 22 Feb 2026 00:00:00 GMT</pubDate></item><item><title>What&apos;s New in CISO Assistant — Week 06, 2026 (v3.11.3 – v3.12.0)</title><link>https://intuitem.com/whats-new-ciso-assistant-2026-w06</link><guid isPermaLink="true">https://intuitem.com/whats-new-ciso-assistant-2026-w06</guid><description>Batch actions on tables, partial requirement assignments, sticky form buttons, the Moroccan cybersecurity framework, and a critical data-integrity fix in v3.11.5.</description><pubDate>Sun, 15 Feb 2026 00:00:00 GMT</pubDate></item><item><title>What&apos;s New in CISO Assistant — Week 05, 2026 (v3.10.5 – v3.11.2)</title><link>https://intuitem.com/whats-new-ciso-assistant-2026-w05</link><guid isPermaLink="true">https://intuitem.com/whats-new-ciso-assistant-2026-w05</guid><description>A packed week: Excel library import, optional perimeters, evidence metrics, the RBI framework, a data-wizard overhaul, and the move to Django 6.</description><pubDate>Sun, 08 Feb 2026 00:00:00 GMT</pubDate></item><item><title>What&apos;s New in CISO Assistant — Week 04, 2026 (v3.10.4)</title><link>https://intuitem.com/whats-new-ciso-assistant-2026-w04</link><guid isPermaLink="true">https://intuitem.com/whats-new-ciso-assistant-2026-w04</guid><description>v3.10.4 refines the GDPR module with breaking simplifications, adds audit score aggregation options, manager review of assignments, and the BIO2 framework.</description><pubDate>Sun, 01 Feb 2026 00:00:00 GMT</pubDate></item><item><title>What&apos;s New in CISO Assistant — Week 03, 2026 (v3.10.0 – v3.10.3)</title><link>https://intuitem.com/whats-new-ciso-assistant-2026-w03</link><guid isPermaLink="true">https://intuitem.com/whats-new-ciso-assistant-2026-w03</guid><description>A landmark week: the Actors concept arrives, AI-powered MCP skills for TPRM and EBIOS RM, domain focus mode, Kanban for controls, CIS-to-NIST/ISO mapping tools, and much more across four releases.</description><pubDate>Sun, 25 Jan 2026 00:00:00 GMT</pubDate></item><item><title>What&apos;s New in CISO Assistant — Week 02, 2026 (v3.9.2)</title><link>https://intuitem.com/whats-new-ciso-assistant-2026-w02</link><guid isPermaLink="true">https://intuitem.com/whats-new-ciso-assistant-2026-w02</guid><description>v3.9.2 brings the Estonian E-ITS framework, MITRE ATT&amp;CK v18.1, Chinese (Simplified) translation, richer asset exports, and quality-of-life fixes for IdP and policy management.</description><pubDate>Sun, 11 Jan 2026 00:00:00 GMT</pubDate></item><item><title>What&apos;s New in CISO Assistant — Week 01, 2026 (v3.9.1)</title><link>https://intuitem.com/whats-new-ciso-assistant-2026-w01</link><guid isPermaLink="true">https://intuitem.com/whats-new-ciso-assistant-2026-w01</guid><description>Kicking off 2026 with session security hardening after 2FA enrollment, audit performance improvements, and better implementation group handling.</description><pubDate>Sun, 04 Jan 2026 00:00:00 GMT</pubDate></item><item><title>AI-Assisted mapping generation</title><link>https://intuitem.com/ai-assisted-mapping</link><guid isPermaLink="true">https://intuitem.com/ai-assisted-mapping</guid><description>Summary of our ongoing research on accelerating the creation of consistent frameworks mappings</description><pubDate>Sat, 25 Oct 2025 00:00:00 GMT</pubDate></item><item><title>Fiche Lecture : How to measure anything in cybersecurity risk - 2nd edition, Wiley, 2023</title><link>https://intuitem.com/fiche_lecture_how_to_measure_anything</link><guid isPermaLink="true">https://intuitem.com/fiche_lecture_how_to_measure_anything</guid><description>Mon ambition avec cette fiche est de retenir les points essentiels de cet ouvrage, devenu une référence pour la quantification du risque cyber. La première édition est parue en 2016, et la deuxième édition de 2023 approfondit et actualise les concepts.</description><pubDate>Sun, 17 Aug 2025 00:00:00 GMT</pubDate></item><item><title>Are Heat Maps Evil in Cyber Risk Management?</title><link>https://intuitem.com/heat-maps</link><guid isPermaLink="true">https://intuitem.com/heat-maps</guid><description>Heat maps aren’t evil but limited. Quantitative risk assessment is always preferable when feasible</description><pubDate>Mon, 10 Feb 2025 00:00:00 GMT</pubDate></item><item><title>Introduction to Operational GRC</title><link>https://intuitem.com/operational-grc</link><guid isPermaLink="true">https://intuitem.com/operational-grc</guid><description>Operational GRC transforms traditional governance by focusing on actionable security measures. This approach integrates GRC directly into daily operations, enhancing data-driven decision-making and operational efficiency.</description><pubDate>Sat, 28 Dec 2024 12:39:00 GMT</pubDate></item><item><title>NIST&apos;s AI Risk Management Framework (AI RMF)</title><link>https://intuitem.com/overview-ai-risk-management-framework</link><guid isPermaLink="true">https://intuitem.com/overview-ai-risk-management-framework</guid><description>NIST&apos;s AI Risk Management Framework: overview</description><pubDate>Sat, 16 Mar 2024 00:00:00 GMT</pubDate></item><item><title>Security Orchestration, Automation, and Response (SOAR)</title><link>https://intuitem.com/security-orchestration-automation-response-soar</link><guid isPermaLink="true">https://intuitem.com/security-orchestration-automation-response-soar</guid><description>This article is an introduction to Security Orchestration, Automation, and Response</description><pubDate>Fri, 02 Feb 2024 00:00:00 GMT</pubDate></item></channel></rss>