Insight CISO Jeremy Nelson walks through what smart cyber recovery looks like when your environment is already compromised. From executive missteps to AI-powered DeepFakes, Jeremy shares how to recover without making things worse — and how to spot the signs that your response plan isn't working.
🎯 Key takeaways:
• How threat actors infiltrate response calls
• Why rushing to restore backups can backfire
• What "clean room" recovery really means
• Why separating executive and technical bridges is critical
Watch now to learn how to build a response plan that works — even when the worst has already happened.
Does your security need backup? We've got you covered: https://www.insight.com/en_US/what-we-do/expertise/cybersecurity.html
Related resources:
• https://www.insight.com/en_US/content-and-resources/gated/a-modern-approach-to-ransomware-readiness-ac1370.html
• https://www.insight.com/en_US/content-and-resources/solution-briefs/disaster-recovery-solutions.html
• https://www.insight.com/en_US/content-and-resources/insight-on/ransom-attacks-are-the-new-heist-and-theyre-easier-than-you-think.html
Jump right to…
00:00: Welcome/intro
07:45: First call after a breach
08:40: Tools for threat hunting 09:29: The three tiers of cyber incidents 10:24: When the business goes offline
11:06: Why a response plan matters
15:43: Leadership missteps during recovery
17:02: The danger of executive overreach
18:15: AI and DeepFakes in cyberattacks
20:10: Threat actors on the response call
25:44: The risk of rushing to restore
27:19: Why forensics must come first