Info Risk Today Podcast

Info Risk Today Podcast

By InfoRiskToday.comBusinessTechnology
Download on the App Store

Info Risk Today Podcast episodes

  • Application Security: Offense Vs. Defense
    Amidst a multi-city tour, ISMG and Sonatype visited Boston for an engaging discussion on how to mitigate risks introduced by open source software. Sonatype CMO Matt Howard discusses how the conversation highlights the offense vs. defense approaches to securing critical applications.
    0 min
  • URGENT/11 Vulnerabilities: Taking Action
    Healthcare organizations can take steps to start mitigating risks while awaiting vendor software patches to address URGENT/11 IPnet vulnerabilities in their medical devices, says researcher Ben Seri of security firm Armis, which identified the flaws.
    0 min
  • Analysis: Huawei's US Trust Problem
    The latest edition of the ISMG Security Report analyzes concerns about the use of Huawei equipment by U.S. telecommunications firms. Also featured: A Huawei executive discusses 5G security, plus an update on an Australian ransomware attack.
    0 min
  • Wearing Two Hats: CISO and DPO
    What's it like to serve in the dual roles of CISO and DPO? Gregory Dumont, who has both responsibilities at SBE Global, a provider of repair and after-sales service solutions to the electronics and telecommunication sectors, explains how the roles differ.
    0 min
  • Risk Ranking Re-Evaluated
    ISMG and Rapid7 kicked off a roundtable dinner series in San Francisco, where Rapid7's Scott King says the conversation showcased the challenges security leaders face in engaging business leaders to discuss risk.
    0 min
  • Remote Desktop Protocol: Securing Access
    Microsoft's Remote Desktop Protocol is one of the most widely used utilities for connecting to remote machines. But it poses risks if organizations don't actively monitor how it's used, says Chris Morales of the security firm Vectra.
    0 min
  • Sophos Launches Managed Threat Response
    With all of the tools deployed for endpoint detection and response, enterprises today are often overwhelmed by threat intelligence, says J.J. Thompson of Sophos. To alleviate "analysis paralysis," Sophos has just launched its Managed Threat Response service. Thompson details its offerings.

    With all of the tools deployed for endpoint detection and response, enterprises today are often overwhelmed by threat intelligence, says J.J. Thompson of Sophos. To alleviate "analysis paralysis," Sophos has just launched its Managed Threat Response service. Thompson details its offerings.

    Thompson, senior director of Managed Threat Response, says the new service combines sophisticated tools and expert analysts in a service that surpasses what traditional EDR can do today.

    "Of the landscape of MDR providers out there, very few take action," Thompson says. "Other services simply notify customers of attacks or suspicious events, and then it's really up to them to manage things from there."

    But with the new Sophos service, "neutralize" is just as important as "detect."

    In an interview about managed threat response, Thompson discusses:

    • The evolution of threat hunting;
    • How Sophos' new service works;
    • Why neutralizing threats is a competitive edge.
    • Thompson is among the earliest pioneers in the field of cybersecurity known today as Managed Detection and Response. An industry veteran with a 20-year entrepreneurial track record of success, J.J. joined Sophos to lead strategy for managed service offerings following the acquisition of his company Rook Security in 2019.

      Previously, J.J. led security program strategy and operations for some of the world's largest technology and security companies. While at Ernst & Young, he served Global 100 accounts through strategic incident and crisis response. J.J. also served as President of the Silicon Valley chapter of the Information Systems Security Association (ISSA) and (ISC)² Indianapolis.

      0 min

    About Info Risk Today Podcast

    From the publisher's feed

    Exclusive, insightful audio interviews by our staff with info risk/security leading practitioners and thought-leaders