エピソード

  • ​​Who Is Responsible for Securing SaaS Tools?
    2024/09/12

    All links and images for this episode can be found on CISO Series.

    Check out this post for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark (@dspark), the producer of CISO Series, and Steve Zalewski. Joining us is our sponsored guest, Russell Spitler, CEO and co-founder, Nudge Security.

    In this episode:

    • Defining responsibilities
    • Understanding the problem
    • A different role for security
    • Focus on the data

    Thanks to our podcast sponsor, Nudge Security

    Get a full inventory of all SaaS accounts ever created by anyone in your org, in minutes, along with automated workflows to scale SaaS security and governance. No agents, browser plug-ins or network changes required. Start today with a free 14-day trial.

    続きを読む 一部表示
    35 分
  • Hiring Cyber Teenagers with Criminal Records
    2024/09/05

    All links and images for this episode can be found on CISO Series.

    Check out this post for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark (@dspark), the producer of CISO Series, and Steve Zalewski. Joining us is our guest, Adam Arellano, vp, enterprise cybersecurity, PayPal.

    In this episode:

    • Accounting for mindset
    • The importance of ethics
    • A matter of incentives
    • Understanding what is teachable

    Thanks to our podcast sponsor, ThreatLocker

    ThreatLocker® is a global leader in Zero Trust endpoint security, offering cybersecurity controls to protect businesses from zero-day attacks and ransomware. ThreatLocker operates with a default deny approach to reduce the attack surface and mitigate potential cyber vulnerabilities. To learn more and start your free trial, visit ThreatLocker.com.

    続きを読む 一部表示
    30 分
  • What's Working With Third-Party Risk Management?
    2024/08/29

    All links and images for this episode can be found on CISO Series.

    Check out this post for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark (@dspark), the producer of CISO Series, and Steve Zalewski. Joining us is our sponsored guest, Nick Muy, CISO, Scrut Automation.

    In this episode:

    • Segment and test
    • Focus on you

    • Embrace the risk lifecycle

    • Not all vendors are the same

    Thanks to our podcast sponsor, Scrut Automation

    Scrut Automation allows compliance and risk teams of any size to establish enterprise-grade security programs. Our best-in-class features like process automation, AI, and 75+ native integrations reverse compliance debt and help manage risk proactively as your business grows. Visit www.scrut.io to learn more or schedule a demo.

    続きを読む 一部表示
    31 分
  • What Triggers a CISO?
    2024/08/22

    All links and images for this episode can be found on CISO Series.

    Check out this post for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark (@dspark), the producer of CISO Series, and Steve Zalewski. Joining me is our guest, Sherron Burgess, CISO, BCD Travel.

    In this episode:

    • Disingenuous claims rub everyone the wrong way.
    • Don’t put the CISO behind the 8-ball

    • The sales hustle

    • They didn’t understand the assignment

    Thanks to our podcast sponsor, Scrut Automation

    Scrut Automation allows compliance and risk teams of any size to establish enterprise-grade security programs. Our best-in-class features like process automation, AI, and 75+ native integrations reverse compliance debt and help manage risk proactively as your business grows. Visit www.scrut.io to learn more or schedule a demo.

    続きを読む 一部表示
    33 分
  • Information Security vs. Cybersecurity
    2024/08/15

    All links and images for this episode can be found on CISO Series.

    Check out this post for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark (@dspark), the producer of CISO Series, and John Underwood, vp, information security, Big 5 Sporting Goods. Joining us is our guest, Mike Lockhart, CISO, EagleView.

    In this episode:

    • Marketing versus strategy
    • A distinction without a difference?
    • Terminology follows function
    • Security convergence

    Thanks to our podcast sponsor, Scrut Automation

    Scrut Automation allows compliance and risk teams of any size to establish enterprise-grade security programs. Our best-in-class features like process automation, AI, and 75+ native integrations reverse compliance debt and help manage risk proactively as your business grows. Visit www.scrut.io to learn more or schedule a demo.

    続きを読む 一部表示
    27 分
  • Should Deny By Default Be the Cornerstone of Zero Trust?
    2024/08/08

    All links and images for this episode can be found on CISO Series.

    Check out this post for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark (@dspark), the producer of CISO Series, and Geoff Belknap (@geoffbelknap). Joining us is our sponsored guest Rob Allen, chief product officer, ThreatLocker.

    In this episode:

    • Can you retrofit zero trust?
    • The business case for deny by default
    • Seizing an opportunity
    • Zero trust doesn’t stand alone

    Thanks to our podcast sponsor, ThreatLocker

    ThreatLocker® is a global leader in Zero Trust endpoint security, offering cybersecurity controls to protect businesses from zero-day attacks and ransomware. ThreatLocker operates with a default deny approach to reduce the attack surface and mitigate potential cyber vulnerabilities. To learn more and start your free trial, visit ThreatLocker.com.

    続きを読む 一部表示
    30 分
  • What Is a Field CISO?
    2024/08/01

    All links and images for this episode can be found on CISO Series.

    Check out this post for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark (@dspark), the producer of CISO Series, and Geoff Belknap (@geoffbelknap). Joining us is Bil Harmer, operating partner and CISO, Craft Ventures.

    In this episode:

    • A time and a place for Field CISOs
    • This isn’t a new role
    • Consulting the Field CISO
    • Words mean things

    Thanks to our podcast sponsor, Cyera

    Cyera’s AI-powered data security platform gives companies visibility over their sensitive data, context over the risk it represents, and actionable, prioritized remediation guidance.
 As a cloud-native, agentless platform, Cyera provides holistic data security coverage across SaaS, PaaS, IaaS and On-premise environments. Visit www.cyera.io to learn more.

    続きを読む 一部表示
    30 分
  • Cybersecurity Is a Communications Problem
    2024/07/25

    All links and images for this episode can be found on CISO Series.

    Check out this post for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark (@dspark), the producer of CISO Series, and Geoff Belknap (@geoffbelknap). Joining us is Jim Bowie, CISO, Tampa General Hospital.

    In this episode:

    • The goal is to connect to the business
    • The hard truth about soft skills
    • Balancing risk
    • Looking beyond communication

    Thanks to our podcast sponsor, SeeMetrics

    SeeMetrics automates cybersecurity metrics programs, continuously measuring and helping prioritize risks based on context. SeeMetrics unifies siloed data from your security stack and offers hundreds of ready-to-use metrics. Once connected with SeeMetrics, security teams reduce risk, minimize exposure and optimize performance while eliminating tedious repetitive manual work.


    Ready to automate your security programs? start connecting your environment at seemetrics.co

    続きを読む 一部表示
    31 分