The Social-Engineer Podcast

Ep. 164 - Security Awareness Series - Metrics and Empathy the Answer To Cyber Breaches with Kate Mullin


Listen Later

This month Chris Hadnagy and Ryan MacDougall are joined by Kathleen (Kate) Mullin. Kate is an influential information security practitioner with over 30 years of experience. Kate currently is CISO with Cancer Treatment Centers of America.  Kate has been CISO at various organizations including start-ups, publicly traded, private equity, not-for-profit, and governmental entities. Throughout her career, Kate has volunteered and participated in maturing information security as a profession. She volunteers with ISC(2) and ISACA and has been a member of the ISACA CGEIT Certification and Credentials Committee and a chapter president. Kate serves as a featured international speaker and panelist. She has a BSBA from St Joseph’s College and an MBA from Florida Metropolitan University. Kate is also certified as a Master Level Social Engineer. [February 21, 2022] 

00:00 – Intro 

  • Social-Engineer.com
  • Managed Voice Phishing
  • Managed Email Phishing
  • Adversarial Simulations 
  • Social-Engineer channel on SLACK
  • CLUTCH
  • innocentlivesfoundation.org
  • Human Behavior Conference

03:09 – Kathleen Mullin intro 

04:25 – How did you get started in Information Security? 

06:39 – What are some indicators that tells you something is ineffective? 

10:21 – Do you think the “cookie cutter” type of training is a reflection on the security awareness team itself? 

12:16 – How can you offer the more personalized training to a company that is spread out all over the U.S. or the globe? 

16:31 – Is having someone in this position who is focused on the people and the results the way to go about having the program be successful? 

18:09 – What are your major security concerns being in the healthcare industry, and how are you dealing with those? 

21:08 – We are seeing SMishing attacks becoming more prevalent in general. Are you seeing that happening in your industry? 

22:47 – Caring about employees’ security outside of work as well 

23:35 – What are some action steps that any company can start doing right now? 

  • Have metrics and measure training effectiveness 
  • Humanize your training 
  • Incremental steps 
  • Care about your users for real 

26:11 – Demoralizing phishing techniques 

28:15 – Book Recommendations: 

  • Martha Wells - Murderbot Diaries series 
  • Robin DreekeCode of Trust 
  • Textbook - Enterprise Security Architecture  

30:13 – Who would you consider your greatest mentor? 

  • Father, Naval pilot/engineer 
  • Chris Hadnagy 
  • Michele Fincher 
  • David Lynus from the SABSA Institute

34:27 – Finding Kate on the web: 

  • https://www.linkedin.com/in/katemullin/ 

35:17 – Guest Wrap Up 

36:00 – Outro 

  • www.social-engineer.com 
  • www.innocentlivesfoundation.org 
...more
View all episodesView all episodes
Download on the App Store

The Social-Engineer PodcastBy Social-Engineer, LLC

  • 4.5
  • 4.5
  • 4.5
  • 4.5
  • 4.5

4.5

149 ratings


More shows like The Social-Engineer Podcast

View all
Risky Business by Patrick Gray

Risky Business

363 Listeners

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast) by Johannes B. Ullrich

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

634 Listeners

Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec by Jerry Bell and Andrew Kalat

Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec

369 Listeners

Hacked by Hacked

Hacked

176 Listeners

CyberWire Daily by N2K Networks

CyberWire Daily

1,006 Listeners

Smashing Security by Graham Cluley & Carole Theriault

Smashing Security

313 Listeners

Click Here by Recorded Future News

Click Here

387 Listeners

Malicious Life by Malicious Life

Malicious Life

924 Listeners

Darknet Diaries by Jack Rhysider

Darknet Diaries

7,836 Listeners

Cybersecurity Today by Jim Love

Cybersecurity Today

142 Listeners

CISO Series Podcast by David Spark, Mike Johnson, and Andy Ellis

CISO Series Podcast

182 Listeners

Hacking Humans by N2K Networks

Hacking Humans

310 Listeners

Defense in Depth by David Spark, Steve Zalewski, Geoff Belknap

Defense in Depth

72 Listeners

Cyber Security Headlines by CISO Series

Cyber Security Headlines

120 Listeners

Hacker And The Fed by Chris Tarbell & Hector Monsegur

Hacker And The Fed

159 Listeners