The Social-Engineer Podcast

Ep. 150 - Security Awareness Series - Getting Senior Management Buy-In With Michael Fortune


Listen Later

In this episode, Chris Hadnagy and Ryan MacDougall are joined by Michael Fortune.  Michael is the Security Behaviours Team Manager for British Telecom (BT) UK. Michael has been with BT for an amazing 22 years, where he is currently BT’s expert on security behavior, insider threat behavior, and social engineering, and helps guides the business around these risks. With over 160 thousand employees across the globe in his charge, Michael helps run a team of experts who support and drive security programs for the company.  July 19, 2021

00:00 – Intro 

www.social-engineer.com 

www.social-engineer.org 

www.innocentlivesfoundation.org 

Managed Voice Phishing

Managed Email Phishing

Adverserial Simulations

Social-Engineer channel on SLACK

CLUTCH

03:37 – Michael Fortune Intro

05:22 – Michael’s Path – how has your background in psychology helped with cyber and information security?

06:10 – Have you been able to use psychological principles in eduction?

07:27 – How do you keep education engaging for 160,000 people?

10:07 – Top down approach

12:51 – You are essentially performing an SE gig in order to get an SE gig

14:03 – What’s your rule set?

15:59 – Senior Management Buy In – people are afraid of doing that so they don’t do it.  How do you approach that?

 19:08 – Where is the ethical line in using social engineering to get buy-in?

21:21 – Explaining to upper management the repercussions of not doing this training

22:52 – Were your CISO and Director of Protections always on board or did you have to convince them? 

25:56 – What have you learned from your hundreds of thousands of SMishing attacks under your belt?

29:18 – Advice about getting buy-in from the top down can work for any sized company

 30:30 – When you talk about personalizing the sessions that you do, do you personalize to the department, or 

33:05 – Following through with a good program

36:24 – The idea is to get people to do it

36:38 – What colleagues do you respect most in the industry? 

  • Steve Benton – Deputy CISO at BT 
  • Chris Hadnagy

39:22 – What are some action steps that corporations should start doing right now?

42:00 – Experience is everything

42:40 –

Book Recommendations 

  • Behave by Robert Sapolsky 

44:48 – You need patience, because human being is different and complex

45:13 – Michael Fortune on the internet: [email protected]

...more
View all episodesView all episodes
Download on the App Store

The Social-Engineer PodcastBy Social-Engineer, LLC

  • 4.5
  • 4.5
  • 4.5
  • 4.5
  • 4.5

4.5

149 ratings


More shows like The Social-Engineer Podcast

View all
Risky Business by Patrick Gray

Risky Business

363 Listeners

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast) by Johannes B. Ullrich

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

634 Listeners

Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec by Jerry Bell and Andrew Kalat

Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec

369 Listeners

Hacked by Hacked

Hacked

176 Listeners

CyberWire Daily by N2K Networks

CyberWire Daily

1,006 Listeners

Smashing Security by Graham Cluley & Carole Theriault

Smashing Security

313 Listeners

Click Here by Recorded Future News

Click Here

387 Listeners

Malicious Life by Malicious Life

Malicious Life

924 Listeners

Darknet Diaries by Jack Rhysider

Darknet Diaries

7,836 Listeners

Cybersecurity Today by Jim Love

Cybersecurity Today

142 Listeners

CISO Series Podcast by David Spark, Mike Johnson, and Andy Ellis

CISO Series Podcast

182 Listeners

Hacking Humans by N2K Networks

Hacking Humans

310 Listeners

Defense in Depth by David Spark, Steve Zalewski, Geoff Belknap

Defense in Depth

72 Listeners

Cyber Security Headlines by CISO Series

Cyber Security Headlines

120 Listeners

Hacker And The Fed by Chris Tarbell & Hector Monsegur

Hacker And The Fed

159 Listeners