Enterprise Security Weekly (Video)

Enterprise Security Weekly (Video)

By Security Weekly ProductionsNewsTechnologyTech News
Download on the App Store

Enterprise Security Weekly (Video) episodes

  • Addressing Identity-Related Threats in 2024 - Rod Simmons - ESW #353

    In this interview, we talk to Rod Simmons, the VP of Product Strategy at Omada. We'll discuss the complex topic of securing identities against ever growing threats. We'll discuss challenges like unnecessary access, accounts with too many permissions, and a threat landscape that is increasingly finding success from targeting identities. Finally, we'll discuss where the Identity Governance and Administration (IGA) market is going.

    Segment Resources:

    • Analyst Report: The State of Identity Governance 2024

    Show Notes: https://securityweekly.com/esw-353

    49 min
  • Early stage startup M&A on fire, funding healthy, and attackers are like lawyers? - ESW #352

    In the enterprise security news,

    1. Axonius raises $200M and is doing $100M ARR!
    2. Claroty raises $100M and is doing $100M ARR!
    3. Crowdstrike picks up DSPM with Flow Security
    4. CyCode picks up Bearer
    5. Are attackers like lawyers?
    6. How a bank failed (with no help from a cyber attack)
    7. the FTC cracks down on customer data collection
    8. Apple's car sadly won't be a thing any time soon
    9. or maybe ever.

    All that and more, on this episode of Enterprise Security Weekly.

    Show Notes: https://securityweekly.com/esw-352

    1 hr 1 min
  • What can we do today to prevent tomorrow's breach? - Michael Mumcuoglu - ESW #352

    Defenders spend a lot of time and money procuring and implementing security controls. At the heart of SecOps and the SOC are technologies like XDR, SIEM, and SOAR. How do we know these technologies are going to detect or prevent attacks?

    Wait for the annual pen test? Probably not a good idea.

    In this segment, we'll talk with Michael Mumcuoglu about how MITRE's ATT&CK framework can help defenders better prepare for inevitable attack TTPs they'll have knocking on their doors.

    Segment Resources:

    • CardinalOps Contributes to MITRE ATT&CK for Fourth Consecutive Release
    • ESG Report: Operationalize MITRE ATT&CK with Detection Posture Management
    • Report: Enterprise SIEMs offer inadequate threat detection
    • 2023 State of SIEM Detection Risk Report

    Show Notes: https://securityweekly.com/esw-352

    48 min
  • What can we do today to prevent tomorrow's breach? - Michael Mumcuoglu - ESW #352

    Defenders spend a lot of time and money procuring and implementing security controls. At the heart of SecOps and the SOC are technologies like XDR, SIEM, and SOAR. How do we know these technologies are going to detect or prevent attacks?

    Wait for the annual pen test? Probably not a good idea.

    In this segment, we'll talk with Michael Mumcuoglu about how MITRE's ATT&CK framework can help defenders better prepare for inevitable attack TTPs they'll have knocking on their doors.

    Segment Resources:

    • CardinalOps Contributes to MITRE ATT&CK for Fourth Consecutive Release
    • ESG Report: Operationalize MITRE ATT&CK with Detection Posture Management
    • Report: Enterprise SIEMs offer inadequate threat detection
    • 2023 State of SIEM Detection Risk Report

    Show Notes: https://securityweekly.com/esw-352

    50 min
  • Funding goes quiet while M&A makes some noise! - ESW #351

    In this week's news segment, we discuss the lack of funding announcements, and the potential effect RSA could have on the timing of all sorts of press releases. We also discuss 1Password's potential future with its sizable customer base and the $620M it raised a few years back.

    Some other topics we discuss:

    • NIST CSF 2.0
    • insider threats
    • Ivanti Pulse Secure's appliance software found to be running positively ancient software (11 year old Linux distro, 5-20+ year old libraries & components)
    • Nevada AG trying to get messaging decrypted for children, to "protect them"
    • Kelly Shortridge's response to CISA's secure development RFI
    • OpenAI's new GenAI video product, Sora and the potential impact it could have on cybersecurity
    • Instacart spews out crappy AI recipes and photos

    Show Notes: https://securityweekly.com/esw-351

    1 hr 8 min
  • Hacktivism Unveiled: Insights into the Footprints of Hacktivists - Pascal Geenens - ESW #351

    Pascal Geenens from Radware joins us to discuss the latest research findings relating to hacktivists an other actors using volumetric and other network-based attacks. We'll discuss everything from the current state of DDoS attacks to use in the military and even the impact of cyberattacks on popular culture!

    You can find the report Pascal mentions here, on Radware's website: https://www.radware.com/threat-analysis-report/

    Show Notes: https://securityweekly.com/esw-351

    52 min
  • Threat Intelligence & Threat Hunting - Chris Cochran - ESW Vault

    Check out this interview from the ESW Vault, hand picked by main host Adrian Sanabria! This segment was originally published on September 22, 2021.

    Chris will discuss the relevance of intelligence and threat hunting today and how they work together. He will also talk about his EASY framework for creating impactful intelligence and its relation to hunting!

    Show Notes: https://securityweekly.com/vault-esw-8

    23 min
  • Pretending to be Batman, self-destructing USB drives, and controlling your dreams - ESW #350

    This is almost a special episode on crazy new products. For the first half of the show, we discuss startup funding, market forces, acquisitions - stuff we usually discuss.

    Then we get into all the crazy new AI and non-AI products being announced and coming out. Have some disposable cash to pre-order crazy gadgets? This is the episode for you!

    Show Notes: https://securityweekly.com/esw-350

    1 hr 9 min
  • Material: cybersecurity word of the year, thanks to the SEC - Amer Deeba - ESW #350

    In this segment, featuring guest Amer Deeba, we'll explore how the SEC's new breach reporting rules will affect companies. We've got a ton of questions: What behavior has to change? What additional preparation needs to take place? How does this rule affect data security? How does it affect crisis communications?

    And most importantly, when is an incident "material"?

    Show Notes: https://securityweekly.com/esw-350

    46 min
  • Fake IDs threaten ID verification services, PANW hits $100B valuation, and other news - ESW #349

    This week, we discussed how a quick (minutes) and cheap ($15 a pop) fake ID service creates VERY convincing IDs that are possibly good enough to fool ID verification services, HR, and a load of other scenarios where it's common to share images of an ID. Kudos to 404Media's work there.

    In the security market, we discuss who might be the first cybersecurity unicorn to go public in 2024, Oasis Security and Tenchi's funding rounds, Protect AI's acquisition of Laiyer AI and their FOSS project, LLM Guard. We discussed the seemingly inevitable M&A activity as unfunded security startups NEED to find a sale. Ross Haleliuk had an interesting LinkedIn post that goes deeper on this topic. Finally, we discussed Tyler's observation that Palo Alto Networks did the seemingly impossible - increased their valuation from $19B to over $100B in 5 years, despite having to weather a pandemic and market downturn along the way! Ryan pointed out that PANW joined the S&P 500 somewhere along the way - a watershed moment for them.

    We discussed Bluesky and how it's likely too little too late when it comes to building back the community we lost when much of the InfoSec community left Twitter.

    We also discussed a cybersecurity training scammer, Daniel Miessler's new Fabric tool, AnyDesk getting hacked, The Real Shim Shady vuln, new (voluntary) cybersecurity goals for healthcare, and the lack of toothbrush-enabled DDoS attacks!

    Full show notes here: https://www.scmagazine.com/podcast-episode/3061-enterprise-security-weekly-349

    Show Notes: https://securityweekly.com/esw-349

    54 min

About Enterprise Security Weekly (Video)

From the publisher's feed

News, analysis, and insights into enterprise security. We put security vendors under the microscope, and explore the latest trends that can help defenders succeed. Hosted by Adrian Sanabria. Co hosts:…