The CyberCall Podcast

Control 1 & 2: Inventory Control of Enterprise Hardware & Software Assets - Sponsored by CyberCNS


Listen Later

Abstract: There is a cybersecurity saying; “you can’t protect what you don’t know about.”  Without visibility into your information assets, their value, where they live, how they relate to each other and who has access to them, any strategy for protection would be inherently incomplete and ineffective.
Note sponsors are at the end at minute 28:30

The Why might an MSP want to listen?  Most MSPs only capture 50% of the assets on a client's network.

Min 2:30 - 8:46 (Ryan Weeks, CISO of Datto discusses)

  • Importance of asset management.
  • What defines an asset.
  • What defines good asset management.
  • What are common assets missed in an MSPs inventory.

Min 8:47 - 16:06  (Wes Spencer, CISO of Perch Security)

  • The repercussions of poor asset management.
  • Importance of Asset Management, as it pertains to Incident Response.
  • How asset management help with IR plans & Tabletops.

Min 16:08 - 23:05 (Brian Blakely, Fractional CISO of Cosant Cybersecurity)

  • What your policy statement should include.
  • Learn the importance of Data Flow Diagrams (DFDs).
  • Control objectives and standards MSPs need to consider.
  • Asset considerations on the Right & Left side of "Boom".

Min 23:06 - 28:30 (Phyllis Lee, Sr. Director of Controls for CIS)

  • Why CIS and most frameworks start with asset management.
  • The progression of sub-controls as an organization moves from IG1 - IG3 in CIS.
  • What actionable steps should MSPs take to successfully implement Control 1 & 2.

Sponsors:
Center for Internet Security
Phyllis Lee (28:30 - 30:58)
CSAT Pro - learn more here: https://www.cisecurity.org/cybersecurity-tools/cis-cat-pro/

Netalytics Security:
Shiva Shankar (31:00 - 38:50)
CyberCNS: https://www.cybercns.com/

...more
View all episodesView all episodes
Download on the App Store

The CyberCall PodcastBy Andrew Morgan

  • 4.7
  • 4.7
  • 4.7
  • 4.7
  • 4.7

4.7

16 ratings


More shows like The CyberCall Podcast

View all
HBR IdeaCast by Harvard Business Review

HBR IdeaCast

1,865 Listeners

Risky Business by Patrick Gray

Risky Business

364 Listeners

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast) by Johannes B. Ullrich

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

639 Listeners

Hacked by Hacked

Hacked

180 Listeners

Acquired by Ben Gilbert and David Rosenthal

Acquired

4,228 Listeners

CyberWire Daily by N2K Networks

CyberWire Daily

1,014 Listeners

Darknet Diaries by Jack Rhysider

Darknet Diaries

7,962 Listeners

Cybersecurity Today by Jim Love

Cybersecurity Today

166 Listeners

CISO Series Podcast by David Spark, Mike Johnson, and Andy Ellis

CISO Series Podcast

190 Listeners

All-In with Chamath, Jason, Sacks & Friedberg by All-In Podcast, LLC

All-In with Chamath, Jason, Sacks & Friedberg

9,252 Listeners

Cyber Security Headlines by CISO Series

Cyber Security Headlines

128 Listeners

The Artificial Intelligence Show by Paul Roetzer and Mike Kaput

The Artificial Intelligence Show

169 Listeners

No Fluff MSP Marketing by Taher Hamid

No Fluff MSP Marketing

22 Listeners

The AI Daily Brief (Formerly The AI Breakdown): Artificial Intelligence News and Analysis by Nathaniel Whittemore

The AI Daily Brief (Formerly The AI Breakdown): Artificial Intelligence News and Analysis

509 Listeners

Microsoft Threat Intelligence Podcast by Microsoft

Microsoft Threat Intelligence Podcast

21 Listeners