Business Security Weekly (Video)

Business Security Weekly (Video)

By Matt AldermanNewsTechnologyTech News
Download on the App Store

Business Security Weekly (Video) episodes

  • Identity Resilience: The Next Frontier in Security - Ray Zadjmool - BSW #350

    In today's enterprises, the Identity Access Management (IAM) System is the key to a business' critical operations. But that IAM environment is more vulnerable than most security executives realize.

    Segment Resources: https://www.mightyid.com/articles/the-r-in-itdr-the-missing-piece-in-identity-threat-detection-and-response

    https://www.mightyid.com/download-am-i-covered

    https://www.mightyid.com/articles/business-continuity-and-cyber-security-the-crucial-role-of-identity-resilience

    https://www.mightyid.com/articles/vegas-under-cyber-attack-what-went-wrong

    This segment is sponsored by MightyID. Visit https://securityweekly.com/mightyid to learn more about them!

    28 min
  • Leveraging AI & The Role Identity Plays - BSW #350

    AI is more than just a buzzword. Done right, AI can improve decision making and scale your identity security platform to manage every identity, human and machine, physical and digital. Learn about how Saviynt's #1 Identity Security platform is leveraging a variety of AI capabilities to enhance the user experience and improve identity security and compliance, bringing AI to life in a practical, market leading way to drive value for our customers.

    Segment Resources: https://saviynt.com/blog/analytics-ai-automation-and-abstraction-pioneering-the-next-chapter-in-identity-security/

    This segment is sponsored by Saviynt. Visit https://www.securityweekly.com/saviyntrsac to learn more about them!

    The common misperception that identity infrastructure and IAMs like Active Directory, Okta, or Ping can adequately secure the entire identity infrastructure is to blame for the continued barrage of cyber and ransomware attacks. Yes, each of these vendors has security controls baked into their solution, however they cannot extend those controls outside their environments to provide visibility, context, and protection beyond their walls. Hackers use the gaps between these tools to move throughout a company and evade detection. We don't expect Dell or Lenovo to protect our entire suite of endpoints. Nor do expect a single cloud provider to protect all your clouds; we rely on Wiz for that. Identity infrastructure remains the most unprotected part of the technology stack and needs dedicated protection, as organizations already apply for cloud, endpoints, or networks. Watch this conversation with Hed Kovetz as he takes us through why identity security remains the most unprotected part of the security stack, and what needs to change to advance the state of cybersecurity.

    Segment Resources: https://www.silverfort.com/the-identity-underground-report/

    https://www.forbes.com/sites/forbestechcouncil/2023/11/16/rethinking-the-framework-around-identity-security/

    https://techcrunch.com/2024/01/23/silverfort-now-valued-at-1b-after-raising-116m-for-its-holistic-approach-to-identity-security/

    This segment is sponsored by Silverfort. Visit https://securityweekly.com/silverfortrsac to learn more about them!

    Show Notes: https://securityweekly.com/bsw-350

    35 min
  • Say Easy, Do Hard - Train How You Fight, Part 2 - BSW #349

    Inspired by my co-host Jason Albuquerque, we dig into the hard part of our Say Easy, Do Hard segment. In part 2, we discuss how to train for a cyber instance. We'll cover the elements of a training program that will prepare you for responding to a cyber incident, including:

    • Developing the training program
    • Practice, practice, practice
    • Imposing corrective actions
    • Constantly evaluating/reviewing the success of the training program

    Show Notes: https://securityweekly.com/bsw-349

    33 min
  • Say Easy, Do Hard - Train How You Fight, Part 1 - BSW #349

    Inspired by my co-host Jason Albuquerque, this quarter's Say Easy, Do Hard segment is Train How You Fight. In part 1, we discuss the importance of training for a cyber incident. However, lots of organizations do not take it seriously, causing mistakes during an actual cyber incident. How will the lack of preparation impact your organization during an incident?

    Show Notes: https://securityweekly.com/bsw-349

    29 min
  • Meet Silver SAML: Golden SAML in the Cloud - Eric Woodruff - BSW #348

    A hybrid workforce requires hybrid identity protection. But what are the threats facing a hybrid workforce? As identity becomes the new perimeter, we need to understand the attacks that can allow attackers access to our applications. Eric Woodruff, Product Technical Specialist at Semperis, joins Business Security Weekly to discuss those attacks, including a new attack technique, dubbed Silver SAML. Join this segment to learn how to protect your hybrid workforce.

    Segment Resources: https://www.semperis.com/blog/meet-silver-saml/&utmsource=cra&utmcampaign=bsw-podcast

    This segment is sponsored by Semperis. Visit https://securityweekly.com/semperis to learn more about them!

    Show Notes: https://securityweekly.com/bsw-348

    28 min
  • Unraveling the "Materiality" Mystery: A CISO's Guide to SEC Compliance - Mike Lyborg - BSW #347

    The new SEC Cyber Security Rules require organizations to be ready to report cyber incidents. But what do you actually need to do? Mike Lyborg, Chief Information Security Officer at Swimlane, joins Business Security Weekly to discuss how to prepare. In this interview he'll discuss the key element of your preparation, including:

    • Quantification
    • Materiality
    • Evidence
    • Disclosure

    Show Notes: https://securityweekly.com/bsw-347

    30 min
  • What does DoD's CMMC Requirement Mean for American Businesses - Edward Tuorinsky - BSW #347

    Since 2016, we been hearing about the impending impact of CMMC. But so far, it's only been words. That looks to be changing. Edward Tourinsky, Founder & Managing Principal at DTS, joins Business Security Weekly to discuss the coming impact of CMMC v3. Edward will cover:

    • The background of CMMC
    • Standardization of CMMC
    • CMMC v3 changes and implementation timelines
    • Best practices to prepare

    Segment Resources: https://www.federalregister.gov/documents/2023/12/26/2023-27280/cybersecurity-maturity-model-certification-cmmc-program

    https://www.forbes.com/sites/forbesbusinesscouncil/2024/02/13/the-department-of-defenses-cmmc-requirement-and-what-it-means-for-american-businesses/?sh=7ccbc268b7b5

    https://consultdts.com/demystifying-the-cmmc-rule-a-breakdown-of-proposed-regulation/

    Show Notes: https://securityweekly.com/bsw-347

    36 min
  • From Idea to Success: How to Operationalize a Startup from Zero to Exit - Seth Spergel - BSW #346

    Startup founders dream of success, but it's much harder than it looks. As a former founder, I know the challenges of cultivating an idea, establishing product market fit, growing revenue, and finding the right exit. Trust me, it doesn't always end well.

    In this interview, we welcome Seth Spergel, Managing Partner at Merlin Ventures, to discuss how to accelerate that journey to lead to a successful outcome. Seth will share Merlin Venture's approach to helping startups tackle the largest markets in the world, including US enterprises and federal. He will also share what success looks like.

    Segment Resources:

    https://merlin.vc/advice-for-young-startups-eyeing-federal-what-kind-of-tech-does-the-u-s-government-need/

    https://merlin.vc/we-have-liftoff/

    https://merlin.vc/portfolio/

    https://merlin.vc/dig-security-talon-cyber-security-acquired-by-palo-alto-networks/

    https://innovationisrael.org.il/en/digital-reports/

    Show Notes: https://securityweekly.com/bsw-346

    31 min

About Business Security Weekly (Video)

From the publisher's feed

About bridging the gap between security initiatives and business objectives. Hosted by Matt Alderman, co-hosted by Jason Albuquerque, Ben Carr.