Enterprise Security Weekly (Video)

Enterprise Security Weekly (Video)

By Security Weekly ProductionsNewsTechnologyTech News
Download on the App Store

Enterprise Security Weekly (Video) episodes

  • Patch It Like You Stole It: Vulnerability Management Lifestyle Choices - Matthew Toussain - ESW #403

    What a time to have this conversation! Mere days from the certain destruction of CVE, averted only in the 11th hour, we have a chat about vulnerability management lifecycles. CVEs are definitely part of them.

    Vulnerability management is very much a hot mess at the moment for many reasons. Even with perfectly stable support from the institutions that catalog and label vulnerabilities from vendors, we'd still have some serious issues to address, like:

    • disconnects between vulnerability analysts and asset owners
    • gaps and issues in vulnerability discovery and asset management
    • different options for workflows between security and IT: which is best?
    • patching it like you stole it

    Oh, did we mention Matt built an open source vuln scanner?

    • https://sirius.publickey.io/

    Show Notes: https://securityweekly.com/esw-403

    35 min
  • What is old is new again: default deny on the endpoint - Danny Jenkins - ESW #402

    Default deny is an old, and very recognizable term in security. Most folks that have been in the industry for a long time will associate the concept with firewall rules. The old network firewalls, positioned between the public Internet and private data centers, however, were relatively uncomplicated and static. Most businesses had a few hundred firewall rules at most.

    The idea of implementing default deny principles elsewhere were attempted, but without much success. Internal networks (NAC), and endpoints (application control 1.0) were too dynamic for the default deny approach to be feasible. Vendors built solutions, and enterprises tried to implement them, but most gave up.

    Default deny is still an ideal approach to protecting assets and data against attacks - what it needed was a better approach. An approach that could be implemented at scale, with less overhead. This is what we'll be talking to Threatlocker's CEO and co-founder, Danny Jenkins, about on this episode. They seemed to have cracked the code here and are eager to share how they did it.

    This segment is sponsored by ThreatLocker. Visit https://www.securityweekly.com/threatlocker to learn more about them!

    Show Notes: https://securityweekly.com/esw-402

    37 min
  • The rise of MSSPs, CVE drama, Detection Engineering How-To & Doggie Survival Skills - ESW #402

    In the enterprise security news,

    1. new startup funding
    2. what happened to the cybersecurity skills shortage?
    3. tools for playing with local GenAI models
    4. CVE assignment drama
    5. a SIEM-agnostic approach to detection engineering
    6. pitch for charity
    7. a lost dog that doesn't want to be found

    All that and more, on this episode of Enterprise Security Weekly.

    Show Notes: https://securityweekly.com/esw-402

    52 min
  • I SIEM, you SIEM, we all SIEM for a Data Security Strategy - Colby DeRodeff - ESW #402

    We wanted security data? We got it! Now, what the heck do we DO with all of it?

    The core challenge of security operations, incident response, and even compliance is still a data management and analysis problem. Which is why we're seeing companies like Abstract Security pop up to address some of these challenges.

    Abstract just released a comprehensive eBook on security data strategy, linked below, and you don't even need to give up an email address to read it! In this interview, we'll talk through some of the highlights:

    • Challenges
    • Myths
    • Pillars of a data security strategy
    • Understanding the tools available

    Segment Resources

    • A Leader's Guide to Security Data Strategy eBook

    Show Notes: https://securityweekly.com/esw-402

    36 min
  • How attackers exploit identity gaps to get into your cloud and SaaS - Paul Nguyen - ESW #401

    You might know them from their excellent research work on groups like Scattered Spider, or their refreshing branding/marketing style, but Permiso is laying some impressive groundwork for understanding and defending against identity and cloud-based attacks. In this interview, we talk with co-founder and co-CEO Paul Nguyen about understanding the threats against some of cybercriminals' favorite attack surface, insider threats, and non-human identity compromise.

    Segment Resources:

    • This blog post from our threat research team on Scattered Spider shows how threat actors move laterally in an environment across identity providers, Iaas, PaaS and SaaS environments, and how this lateral movement ultimately creates blind spots for many security teams
    • This great talk by Ian Ahl, from fwd:cloudsec 2024, touches on a lot of great TTPs used by attackers in IDPs and in the cloud
    • Another blog, When AI Gets Hijacked: Exploiting Hosted Models for Dark Roleplaying
    • and another, What Security Teams Can Learn From The Rippling/Deel Lawsuit: Intent Lies in Search Logs

    Show Notes: https://securityweekly.com/esw-401

    44 min
  • Soft skills for engineers - Evgeniy Kharam - ESW #401

    When we use the phrase "talent gap" in cybersecurity, we're usually talking about adding headcount. For this interview, however, we're focusing on a gap that is evident within existing teams and practitioners - the often misunderstood soft skills gap.

    Side note: I really hate the term "soft skills". How about we call them "fundamental business skills", or "invaluable career advancement skills"? Hmm, doesn't quite roll off the tongue the same.

    Soft skills can impact everything, as they impose the limits of how we interact with our world. That goes for co-worker interactions, career advancements, and how we're perceived by our peers and community. It doesn't matter how brilliant you might be - without soft skills, your potential could be severely limited.

    Did you know that soft skills issues contributed to the Equifax breach?

    We'll also discuss how fear is related to some of the same limitations and challenges as soft skills.

    Segment Resources:

    • https://www.softskillstech.ca/
    • Order the Book

    Show Notes: https://securityweekly.com/esw-401

    31 min
  • The toughest decisions CISOs have to make, MCP servers, Napster's comeback - ESW #400

    In this week's enterprise security news,

    1. Big funding for Island
    2. Is DLP finally getting disrupted? By something that works?
    3. We learn all about Model Context Protocol servers
    4. Integrating SSO and SSH!
    5. Do we have too many cybersecurity regulations?
    6. Toxic cybersecurity workplaces
    7. Napster makes a comeback
    8. this week, we've got 50% less AI and 50% more co-hosts

    All that and more, on this episode of Enterprise Security Weekly.

    Show Notes: https://securityweekly.com/esw-400

    56 min
  • The Top Trends Shaping Identity and Access Management in 2025 - Geoff Cairns - ESW #400

    In this interview, we feature some research from Geoff Cairns, an analyst at Forrester Research. This is a preview to the talk he'll be giving at Identiverse 2025 in a few months.

    We won't have time to cover all the trends, but there are several here that I'm excited to discuss!

    • Deepfake Detection Difficult
    • Zero Trust Agentic AI
    • Phishing resistant MFA adoption
    • Identity Verification
    • Machine Identity
    • Decentralized Identity
    • Post Quantum
    • Shared Signals

    Segment Resources:

    • The Top Trends Shaping Identity And Access Management In 2025 - (Forrester subscription required)

    Show Notes: https://securityweekly.com/esw-400

    31 min
  • Setting up your SIEM for success - Pitfalls to preclude and tips to take - Neil Desai - ESW #400

    A successful SIEM deployment depends on a lot more than implementing the SIEM correctly. So many other things in your environment have an impact on your chances of a successful SIEM.

    • Are the right logs enabled?
    • Is your EDR working correctly?
    • Would you notice a sudden increase or decrease in events from critical sources?
    • What can practitioners do to ensure the success of their SIEM deployment?

    This segment is sponsored by Graylog. Visit https://securityweekly.com/graylog to learn more about them!

    Show Notes: https://securityweekly.com/esw-400

    33 min

About Enterprise Security Weekly (Video)

From the publisher's feed

News, analysis, and insights into enterprise security. We put security vendors under the microscope, and explore the latest trends that can help defenders succeed. Hosted by Adrian Sanabria. Co hosts:…