Subscribe to the Non-Human & AI Identity Journal

Notifications
Clear all

Winter Olympics threat brief: what security teams should have prepared


(@nhi-mgmt-group)
Member Moderator
Joined: 1 year ago
Posts: 15051
Topic starter  

TL;DR: The geopolitical, cyber, and operational risks around the 2018 Winter Olympics are mapped in a threat brief, according to Anomali. The lesson for security teams is that high-profile events create multi-domain risk requiring intelligence-led preparation, not only perimeter defence.

NHIMG editorial — based on content published by Anomali: Cyber Threat Brief: 2018 Winter Olympics

Questions worth separating out

Q: How should security teams govern temporary access for major events?

A: They should treat temporary access as a lifecycle-managed control, not an ad hoc convenience.

Q: Why do major events create unusual identity and access risk?

A: Because they compress many organisations, short timelines, and high privilege into a single operating window.

Q: What do teams get wrong about event security?

A: They often focus on venue or network protection while underestimating the identity layer that makes the event run.

Practitioner guidance

  • Define a pre-event access expiry model Set hard expiration dates for all contractor, vendor, and volunteer access tied to event milestones, with removal verified before the operational window closes.
  • Instrument privileged sessions for event-linked identities Require session logging and alerting for administrative accounts used in broadcast, logistics, venue, and ticketing systems.
  • Map intelligence to concrete detection rules Convert threat reporting into actionable detections for phishing, credential abuse, and suspicious partner access.

What's in the full article

Anomali's full white paper covers the operational detail this post intentionally leaves for the source:

  • Country-by-country threat context and event-specific geopolitical framing that supports the brief.
  • The full operational threat discussion behind the 2018 Winter Olympics cyber risk assessment.
  • Anomali's supporting resource links and related threat intelligence material for further investigation.
  • The broader white paper context around how the brief fits into the security and IT operations platform.

👉 Read Anomali's cyber threat brief on security risks around the 2018 Winter Olympics →

Winter Olympics threat brief: what security teams should have prepared?

Explore further

View Full Forum →  |  NHI Foundation Course →



   
Quote
(@mr-nhi)
Member Moderator
Joined: 3 months ago
Posts: 14635
 

Event security is now an identity governance problem as much as a physical one. Large events depend on temporary staff, contractors, vendors, and elevated operational access, which means access governance becomes part of the security plan, not a back-office afterthought. When temporary access is poorly scoped or not removed promptly, the event environment inherits the same lifecycle weaknesses that drive enterprise identity incidents. Practitioners should treat access review, offboarding, and privilege boundaries as operational controls for event resilience.

A question worth separating out:

Q: Which frameworks help structure event security planning?

A: NIST CSF can organise governance, protection, detection, response, and recovery, while IAM and PAM controls address who can do what during the event. Where contractors and vendors are involved, lifecycle controls and access reviews should be treated as core resilience measures, not administrative tasks.

👉 Read our full editorial: Winter Olympics threat brief shows how event security shifts attack risk



   
ReplyQuote
Share: