Real CyberSecurity

Real CyberSecurity

By Greg Young & Bill MalikBusinessNewsTechnologyTech News
Download on the App Store

Real CyberSecurity episodes

  • Episode 24 - Guest: Brian Reed Talks Data Loss Prevention (DLP), and Working at Gartner

    Brian Reed is proof that you can be smart, nice,  a great father, and successful in security. Brian is a long time Atlantan (the city in Georgia, not the underwater one) and has been doing security IBM, ISS, Gartner and Proofpoint. Brian talks about:
    - 2021 and the nexus between the upsides of DLP and the risks to privacy and surveillance if not done right.
    - Remote working and security.
    - Bill's dislike of open offices.
    - His experience at Gartner, overlapping with Bill and Greg. We each name the smartest non-security analyst at Gartner we worked with, and the security analyst we'd each want on an advisory day with us.
    - Cities we've been stuck in.

    Greg repeats his clown factory analogy. He repeats himself a lot. Bill and Brian talk about American football as an attempt to confuse Greg.

    He's on LinkedIn at https://www.linkedin.com/in/brianreed/


    53 min
  • Episode 23 - Backdoors, 5G Causes Security, & Security Clown Factories

    Bill shines a flashlight on the truth about 5G radiation, and shares his chicken recipes to demonstrate the difference in spiciness. We get seriousness about the security relationship between IoT and 5G and why they are so closely linked.  Bill says good things about Christopher Krebs. Greg explains that investors and products buyers look at security companies differently. Greg laments the greed-over-security  and clown factory theory of the Bay Area security scene. Greg and Bill agree that the Atlanta and Austin areas are great security scenes.

    36 min
  • Episode 22 - Interview with John Pescatore of SANS

    Greg and Bill interview John Pescatore from SANS about what's going on in the whacky world of cybersecurity. We cover a lot of ground including the breadcrumbs that attackers leave, the history of SANS, what are the big topics in the SANS community, Zero Trust, supply chain security, 2FA - why isn't it standard?, bug bounty programs, and the idea for a Netflix reality series called "This Old Firewall". And how nasty online events are right now, and how to fix them.

    54 min
  • Episode 21 - Hacked Car Things, PrezentationKraft, & Sanctioned by A Foreign Government

    Bill updates us on some recent threat and vulnerability reports. Greg thinks that all CIOs need an animatronic CISO hype-man, and that people would pay money to have sanctions against them announced by an evil foreign government. Our oddball segment of the day is what mugs we have on our desk. How we build and deliver a great security presentation, but we talk about when we bombed. Bill says Moby Dick, Moby, MOBI? And we can't hate Rob Lowe.

    42 min
  • Episode 19 - The Twitter Breach & Bitcoin, and Occam's Dumb Brother

    Bill and Greg cover the recent Twitter breach and try and unpack what maybe happened and what lessons we can learn from it. We invent a security axiom of "Occam's Younger Dumber Brother's Razor". We recount some insider cases, how too often good deeds are punished, and we give some career advice. And what is becoming a regular segment, we disclose what we're currently reading.

    43 min
  • Episode 18 - Foundations of Cloud Security, & Impacts of 5G and Cloud Garbage Collection

    We take a helicopter up a few thousand feet to suss out what cloud security is really about. What security problems does cloud fix?  What security problems does it introduce?  One hypothesis is that a lot of IT is unnecessarily 'custom', and so is the security with it.  The reality in the world is there is still a lot of on-premises IT, multi-cloud, and shadow IT today. Bill brings up the real issues of cloud resource garbage collection and the impacts of counters, and Greg shouts out 'object re-use!' and 'Y2K!' like a crazy person.

    42 min

About Real CyberSecurity

From the publisher's feed

The Real Cybersecurity Podcast decrypts the issues and business of technology security. But instead of just scaring you, these industry veterans provide real advice and analysis for organizations…