Redefining CyberSecurity

Redefining CyberSecurity

By Sean Martin, ITSPmagazineBusinessTechnologyEducation
Download on the App Store

Redefining CyberSecurity episodes

  • Adversarial Machine Learning: Realities of AI and ML in Cybersecurity | A Conversation with Dr. Anmol Agarwal | Redefining CyberSecurity with Sean Martin

    Guest: Dr. Anmol Agarwal, Senior Security Researcher

    On LinkedIn | https://www.linkedin.com/in/anmolsagarwal/

    On Twitter | https://twitter.com/anmolspeaker

    On YouTube | https://www.youtube.com/channel/UCuWzfnJyZ0S68kG5e-lUZ6w

    ____________________________

    Host: Sean Martin, Co-Founder at ITSPmagazine [@ITSPmagazine] and Host of Redefining CyberSecurity Podcast [@RedefiningCyber]

    On ITSPmagazine | https://www.itspmagazine.com/sean-martin

    View This Show's Sponsors

    ___________________________

    Episode Notes

    In this episode of Redefining CyberSecurity, host Sean Martin explores the complex world of artificial intelligence (AI) and machine learning (ML) with Dr. Anmol Agarwal, a senior security researcher at Nokia and adjunct professor at George Washington University. The discussion kicks off with a reflection on the evolving dialogue around AI and ML, shedding light on the critical role of machine learning as the backbone of AI technology. Dr. Agarwal emphasizes machine learning's influence on the accessibility and popularity of generative AI, thanks to its application in natural language processing.

    The conversation transitions to Dr. Agarwal's intricate work on standardizing 5G and 6G technologies, underscoring the significance of security standardization in the rapid advancement of mobile technologies. Furthermore, they explore the utilization of machine learning in balancing network load and enabling emerging technologies like the metaverse, showcasing AI's prowess in facilitating fast data analytics.

    A substantial portion of the episode is dedicated to adversarial machine learning, where Dr. Agarwal explains its definition as the study of attacking and defending machine learning models. Through examples such as the potential manipulation of Tesla's autopilot via adversarial techniques, they provide a vivid picture of the threats posed by malicious actors leveraging AI for harmful purposes. The episode concludes with an appeal for a deeper understanding of AI and ML beyond the buzzwords, promoting a pragmatic approach to integrating these technologies in cybersecurity strategies.

    This episode offers valuable insights for cybersecurity leaders, CISOs, business executives, and security analysts, emphasizing the importance of comprehensive risk analysis and the ethical application of AI and ML in bolstering cybersecurity defenses.

    ___________________________

    Watch this and other videos on ITSPmagazine's YouTube Channel

    Redefining CyberSecurity Podcast with Sean Martin, CISSP playlist:

    📺 https://www.youtube.com/playlist?list=PLnYu0psdcllS9aVGdiakVss9u7xgYDKYq

    ITSPmagazine YouTube Channel:

    📺 https://www.youtube.com/@itspmagazine

    Be sure to share and subscribe!

    ___________________________

    Resources

    MITRE ATLAS: https://atlas.mitre.org/

    ___________________________

    To see and hear more Redefining CyberSecurity content on ITSPmagazine, visit: 

    https://www.itspmagazine.com/redefining-cybersecurity-podcast

    Are you interested in sponsoring this show with an ad placement in the podcast?

    Learn More 👉 https://itspm.ag/podadplc

    45 min
  • The Art of Possible: Getting a Peek into the Future of Cybersecurity Innovations | An RSA Conference 2024 Conversation With Cecilia Murtagh Marinier | On Location Coverage with Sean Martin and Marco Ciappelli

    Guest: Cecilia Murtagh Marinier, Cybersecurity Advisor - Strategy, Innovation & Scholars at RSA Conference [@RSAConference]

    On LinkedIn | https://www.linkedin.com/in/cecilia-murtagh-marinier-14967/

    ____________________________

    Hosts: 

    Sean Martin, Co-Founder at ITSPmagazine [@ITSPmagazine] and Host of Redefining CyberSecurity Podcast [@RedefiningCyber]

    On ITSPmagazine | https://www.itspmagazine.com/sean-martin

    Marco Ciappelli, Co-Founder at ITSPmagazine [@ITSPmagazine] and Host of Redefining Society Podcast

    On ITSPmagazine | https://www.itspmagazine.com/itspmagazine-podcast-radio-hosts/marco-ciappelli

    ____________________________

    Episode Notes

    In this new On Location with Sean and Marco episode, hosts Sean Martin and Marco Ciappelli are joined by a special guest, Cecilia Murtagh Marinier, renowned for her pivotal role in overseeing innovation programs and scholar initiatives at the RSA Conference. The trio embarks on an insightful conversation, navigating through a myriad of topics central to the RSA Conference 2024 and the broader landscape of technology and security.

    The discussion kicks off with a light-hearted exchange about the unpredictability of San Francisco weather and the personal tradition of acquiring new jackets during the RSA conferences. Quickly shifting gears, they delve into the anticipations surrounding the conference, reminiscing about past interactions with notable figures such as Linda, Britta, and Jessica Robinson, and emphasizing the vibrancy of aerospace village and upcoming discussions on sandbox innovation.

    A significant portion of the conversation is dedicated to the College Day, the scholar program, and the sandbox innovation, spotlighting the RSA Conference's commitment to nurturing the future generation of security professionals. Cecilia eloquently outlines her role in fostering innovation across the conference, with a special focus on contests and expos aimed at spotlighting emerging talents and startups within the cybersecurity realm.

    Artificial Intelligence (AI) takes center stage as the trio explores its transformative impact on security practices and the anticipation of its further integration into the RSA Conference's themes. Cecilia shares insights into the Innovation Sandbox Contest and Launchpad, highlighting the remarkable potential and diversity of participating companies.

    The episode is peppered with personal anecdotes and reflections on the evolution of the cybersecurity sector, underscoring the importance of community, diversity, and innovation. Special mention is made of the diverse tracks and villages at the RSA Conference, each offering unique perspectives on security and technology's role in society.

    As the conversation winds down, excitement builds for the RSA Conference 2024, with encouraging calls for participation and engagement. The hosts reflect on the importance of community and innovation, urging listeners to stay tuned for what promises to be an extraordinary event.

    Be sure to follow our Coverage Journey and subscribe to our podcasts!

    ____________________________

    Follow our RSA Conference USA 2024 coverage: https://www.itspmagazine.com/rsa-conference-usa-2024-rsac-san-francisco-usa-cybersecurity-event-infosec-conference-coverage

    On YouTube: 📺 https://www.youtube.com/playlist?list=PLnYu0psdcllS-B9eaPcHUVmy_lGrbIw9J

    Be sure to share and subscribe!

    ____________________________

    Resources

    Learn more about RSA Conference USA 2024: https://itspm.ag/rsa-cordbw

    ____________________________

    Catch all of our event coverage: https://www.itspmagazine.com/technology-cybersecurity-society-humanity-conference-and-event-coverage

    To see and hear more Redefining CyberSecurity content on ITSPmagazine, visit: https://www.itspmagazine.com/redefining-cybersecurity-podcast

    To see and hear more Redefining Society stories on ITSPmagazine, visit:
    https://www.itspmagazine.com/redefining-society-podcast

    Are you interested in sponsoring our event coverage with an ad placement in the podcast?

    Learn More 👉 https://itspm.ag/podadplc

    Want to tell your Brand Story as part of our event coverage?

    Learn More 👉 https://itspm.ag/evtcovbrf

    33 min
  • The Art and Science of Defending Against Business Logic Attacks: Insights from Imperva's Observations and Best Practices for Defense | An Imperva Brand Story with Luke Babarinde

    Hosts Sean Martin and Marco Ciappelli delve into the complexities of business logic attacks, with a particular focus on vulnerabilities within APIs. They engage with Luke Babarinde, Global Solutions Architect at Imperva, in a detailed conversation about how cybersecurity threats have evolved in tandem with business processes, tapping into Sean Martin's introduction of the novel concept of a "Workflow Bill of Materials," underlining the necessity of comprehending each step within complex business tasks to defend against potential misuse and abuse.

    The discussion explores the mechanisms through which attackers leverage business logic for sophisticated, hard-to-detect attacks that pose significant risks to organizations. Through examples, Babarinde illustrates how automated bots and malicious actors can inflict substantial financial damage by exploiting publicly accessible services, highlighting the paramount importance of identifying and counteracting these threats. Moreover, the episode addresses the impact of artificial intelligence and machine learning in enhancing cybersecurity defenses while also expanding attackers’ arsenals. The conversation reflects on the dual effects of these technologies, especially concerning API usage, which now dominates a considerable volume of internet traffic and is integral to digital services.

    Babarinde also emphasizes the crucial role of human interaction in cybersecurity, advocating for substantive dialogue between security experts and business leaders to align on strategies and comprehend the motivations behind attacks. This human-centered approach, augmented by the technological solutions offered by entities like Imperva, is portrayed as the foundation of effective cybersecurity strategies amid continuously evolving threats.

    Overall, the episode offers an exhaustive overview of both the challenges and strategies associated with business logic attacks, promoting a collaborative and informed stance on cybersecurity in the face of progressing threats.

    Top Questions Addressed:

    • What are business logic attacks and why are they important to understand?
    • How do artificial intelligence and machine learning impact cybersecurity strategies?
    • Why is collaboration between security experts and business leaders crucial in combating cyber threats?

     

    Note: This story contains promotional content. Learn more.

     

    Guest: Luke Babarinde, Global Solution Architect at Imperva [@Imperva]

    On Linkedin | https://www.linkedin.com/in/lbabs/

    Resources

    Learn more about Imperva and their offering: https://itspm.ag/imperva277117988

    Report: The State of API Security in 2024: https://itspm.ag/imperv7szg

    What is business logic?

    Rise in API Usage and Attacks Putting Businesses at Risk in 2024

    Protect applications from business logic abuse

    Catch more stories from Imperva at https://www.itspmagazine.com/directory/imperva

    Are you interested in telling your story?
    https://www.itspmagazine.com/telling-your-story

    44 min
  • Confused Learning: Supply Chain Attacks through Machine Learning Models | A Conversation With Adrian Wood and Mary Walker | On Location Coverage with Sean Martin and Marco Ciappelli

    Guests: 

    Mary Walker, Security Engineer, Dropbox [@Dropbox]

    On LinkedIn | https://www.linkedin.com/in/marywalkerdfir/

    At Black Hat | https://www.blackhat.com/asia-24/briefings/schedule/speakers.html#mary-walker-47392

    Adrian Wood, Security Engineer, Dropbox [@Dropbox]

    On LinkedIn | https://www.linkedin.com/in/adrian-wood-threlfall/

    At Black Hat | https://www.blackhat.com/asia-24/briefings/schedule/speakers.html#adrian-wood-39398

    ____________________________

    Hosts: 

    Sean Martin, Co-Founder at ITSPmagazine [@ITSPmagazine] and Host of Redefining CyberSecurity Podcast [@RedefiningCyber]

    On ITSPmagazine | https://www.itspmagazine.com/sean-martin

    Marco Ciappelli, Co-Founder at ITSPmagazine [@ITSPmagazine] and Host of Redefining Society Podcast

    On ITSPmagazine | https://www.itspmagazine.com/itspmagazine-podcast-radio-hosts/marco-ciappelli

    ____________________________

    Episode Notes

    On this episode of On Location with Sean and Marco, Sean Martin hosts the show solo, discussing supply chain attacks through machine learning models with guests Mary Walker and Adrian Wood. Mary and Adrian, both security engineers at Dropbox, share insights on their journey in cybersecurity and research on exploiting machine learning models. They delve into the implications of machine learning models being used as software programs containing malware and the risks associated with model repositories.

    The conversation explores the ease of poisoning machine learning models and the importance of understanding the provenance of models for risk mitigation. Mary and Adrian emphasize the need for enhanced detection mechanisms for shadow AI and proactive measures for securing model repositories. Additionally, they discuss the impact of AI standardization and the legal implications surrounding AI development.

    The episode concludes with a call to action for listeners to engage in discussions on supply chain attacks, join Mary and Adrian for their talk at Black Hat Asia, participate in Q&A sessions, and contribute to the open-source tools developed by the guests.

    Be sure to follow our Coverage Journey and subscribe to our podcasts!

    ____________________________

    On YouTube: 📺 https://www.youtube.com/playlist?list=PLnYu0psdcllQtJTmj9bp2RMzfkXLnN4--

    Be sure to share and subscribe!

    ____________________________

    Resources

    Confused Learning: Supply Chain Attacks through Machine Learning Models: https://www.blackhat.com/asia-24/briefings/schedule/#confused-learning-supply-chain-attacks-through-machine-learning-models-37794

    Offensive Machine Learning Playbooks: https://wiki.offsecml.com

    Blog describing the attack killchain for bug bounty: https://5stars217.github.io

    Learn more about Black Hat Asia 2024: https://www.blackhat.com/asia-24/

    ____________________________

    Catch all of our event coverage: https://www.itspmagazine.com/technology-cybersecurity-society-humanity-conference-and-event-coverage

    To see and hear more Redefining CyberSecurity content on ITSPmagazine, visit: https://www.itspmagazine.com/redefining-cybersecurity-podcast

    To see and hear more Redefining Society stories on ITSPmagazine, visit:
    https://www.itspmagazine.com/redefining-society-podcast

    Are you interested in sponsoring our event coverage with an ad placement in the podcast?

    Learn More 👉 https://itspm.ag/podadplc

    Want to tell your Brand Story as part of our event coverage?

    Learn More 👉 https://itspm.ag/evtcovbrf

    29 min
  • The Alphabet Soup of Privacy and Data Protection Across Borders: Employing Justification, Documentation, and Transparency in Global Privacy | A Conversation with Elena Elkina | Redefining CyberSecurity with Sean Martin

    Guest: Elena Elkina, Partner / Privacy & Data Protection Management Executive, Aleada Consulting [@AleadaPrivacy]

    On LinkedIn | https://www.linkedin.com/in/elenaelkina/

    ____________________________

    Host: Sean Martin, Co-Founder at ITSPmagazine [@ITSPmagazine] and Host of Redefining CyberSecurity Podcast [@RedefiningCyber]

    On ITSPmagazine | https://www.itspmagazine.com/sean-martin

    View This Show's Sponsors

    ___________________________

    Episode Notes

    In this episode of the Redefining CyberSecurity Podcast, hosted by Sean Martin, the spotlight is on the complex world of data privacy, specifically focusing on the French data protection authority, CNIL, and its broader implications on global privacy and data protection practices. Joining the conversation is Elena Elkina, a seasoned privacy and data protection executive. With nearly two decades of experience in the field, Elkina shares her expertise on the evolving landscape of privacy laws and the challenges businesses face in operationalizing these regulations.

    The discussion opens up with an exploration of various privacy frameworks, including GDPR, CNIL, TIA, EDPB, and ICO, unraveling the interconnected yet distinct nature of these acronyms in the realm of data protection. Elena Elkina delves into the intricacies of the CNIL and its recent draft guidance on Transfer Impact Assessments (TIA), emphasizing its practical approach and the operational guidance it offers to companies dealing with data protection across different jurisdictions.

    A significant part of the conversation is dedicated to understanding the legal and operational challenges associated with TIA, including the legal analysis required for transfers to third countries, the importance of documenting and periodic reevaluation, and the role of both data importers and exporters in ensuring compliance. Elkina highlights the collaboration required between these parties and the importance of comprehensive documentation to demonstrate compliance efforts.

    Additionally, the dialogue touches upon broader themes, such as the differences between privacy approaches in the United States and the European Union, the impact of new privacy laws and regulatory guidance, and the importance of organizational data hygiene.

    Throughout the episode, both Martin and Elkina underscore the importance of justification, documentation, and transparency in navigating the complex landscape of international data transfers. The conversation serves as a crucial guide for businesses looking to align their data protection practices with regulatory requirements and industry best practices, providing valuable insights into the ongoing evolution of privacy and data protection obligations.

    Top Questions Addressed

    • What is the role of CNIL in data protection?
    • How do data transfer impact assessments work?
    • What does the new executive order on data protection mean for American companies?

    ___________________________

    Watch this and other videos on ITSPmagazine's YouTube Channel

    Redefining CyberSecurity Podcast with Sean Martin, CISSP playlist:

    📺 https://www.youtube.com/playlist?list=PLnYu0psdcllS9aVGdiakVss9u7xgYDKYq

    ITSPmagazine YouTube Channel:

    📺 https://www.youtube.com/@itspmagazine

    Be sure to share and subscribe!

    ___________________________

    Resources

    Inspiring Post: https://www.linkedin.com/posts/elenaelkina_cnil-transferimpactassessment-activity-7151733484561010689-qda5/

    CNIL (Commission Nationale de l’Informatique et des Libertés) = French Data Protection Authority | https://www.cnil.fr/en

    TIA = Transfer Impact Assessments

    EDPB = European Data Protection Board: EDPB | https://edpb.europa.eu/edpb_en

    ICO = Information Commissioner's Office (ICO) for International data transfers | https://ico.org.uk/for-organisations/data-protection-and-the-eu/data-protection-and-the-eu-in-detail/the-uk-gdpr/international-data-transfers/ & https://ico.org.uk/for-organisations/data-protection-and-the-eu/data-protection-and-the-eu-in-detail/the-uk-gdpr/international-data-transfers/

    PIA = Privacy Impact Analysis

    ROPA = Records of Process Activity

    ___________________________

    To see and hear more Redefining CyberSecurity content on ITSPmagazine, visit: 

    https://www.itspmagazine.com/redefining-cybersecurity-podcast

    Are you interested in sponsoring this show with an ad placement in the podcast?

    Learn More 👉 https://itspm.ag/podadplc

    50 min
  • ITSPmagazine Podcasts Catch-Up | Thinking About and Looking Forward to all the Engaging Conversations That Will Happen at RSA Conference 2024 | On Location Podcast with Sean Martin and Marco Ciappelli

    Sean Martin, Co-Founder at ITSPmagazine [@ITSPmagazine] and Host of Redefining CyberSecurity Podcast [@RedefiningCyber] | https://www.itspmagazine.com/itspmagazine-podcast-radio-hosts/sean-martin

    Marco Ciappelli, Co-Founder at ITSPmagazine [@ITSPmagazine] and Host of Redefining Society Podcast | https://www.itspmagazine.com/itspmagazine-podcast-radio-hosts/marco-ciappelli

    Episode Notes

    In a dynamic and engaging episode of the On Location Podcast, hosts Sean Martin and Marco Ciappelli take listeners on a captivating journey through their on-location plans leading up to the RSA Conference 2024. The duo's insightful conversations shed light on the diverse topics and vibrant energy surrounding one of the most anticipated cybersecurity events of the year.

    The podcast kicks off with Sean and Marco bantering about app functionalities and the picturesque backdrop of Mount Fuji (no is not!). Their camaraderie and playful exchange set the tone for a series of discussions that seamlessly blend tech-talk with personal anecdotes, offering listeners a glimpse into the human side of the cybersecurity community and their coverages around the world.

    As the hosts dive into the preparations for the RSA Conference, they provide a behind-the-scenes look at the meticulous planning and excitement building up to the event. From testing out equipment to reminiscing about past experiences, Sean and Marco offer valuable insights into the multifaceted nature of cybersecurity conferences.

    The conversation evolves to highlight the theme of innovation and the intersection of art and technology within the cybersecurity landscape. Through engaging dialogues with industry futurists and thought leaders, Sean and Marco emphasize the significance of embracing emerging technologies like AI while pondering the ethical implications that accompany such advancements.

    Amidst the buzz of the upcoming conference, Sean and Marco extend a heartfelt call to action to their audience, inviting them to actively participate in shaping the podcast's future content. Emphasizing the importance of community engagement and diverse perspectives, the hosts encourage listeners to contribute their ideas and suggestions for future episodes, showcasing the inclusive spirit that drives the On Location Podcast.

    As the podcast draws to a close, Sean and Marco exude a palpable sense of anticipation for the RSA Conference 2024. Their infectious enthusiasm, coupled with a commitment to fostering engaging conversations and connections within the cybersecurity community, sets the stage for an immersive and insightful event experience.

    This On Location Podcast episode featuring Sean Martin and Marco Ciappelli offers a compelling blend of candid conversations, insightful reflections, and a heartfelt call to action for audience engagement. As the hosts gear up for the RSA Conference 2024, listeners are in for a dynamic and enriching podcast experience that showcases the vibrancy and diversity of the cybersecurity landscape.

    ____________________________

    Resources

    Catch all of our RSA Conference coverage: https://www.itspmagazine.com/rsa-conference-usa-2024-rsac-san-francisco-usa-cybersecurity-event-infosec-conference-coverage

    View more conferences and events: https://www.itspmagazine.com/technology-cybersecurity-society-humanity-conference-and-event-coverage

    ITSPmagazine YouTube Channel — Be sure to share and subscribe!
    📺 https://www.youtube.com/@itspmagazine

    Subscribe to the Newsletter: https://www.linkedin.com/build-relation/newsletter-follow?entityUrn=7109347022809309184 

    Newsletter Archive: https://www.linkedin.com/newsletters/tune-into-the-latest-podcasts-7109347022809309184/

    Business Newsletter Signup: https://www.itspmagazine.com/itspmagazine-business-updates-sign-up

    Catch the regular catch-up videos here: https://youtube.com/playlist?list=PLnYu0psdcllQGJIyWHoPPDigW-B0ANjhn

    Redefining CyberSecurity Podcast with Sean Martin, CISSP playlist: 📺 https://www.youtube.com/playlist?list=PLnYu0psdcllS9aVGdiakVss9u7xgYDKYq

    Redefining Society Podcast with Marco Ciappelli playlist: 📺 https://www.youtube.com/playlist?list=PLnYu0psdcllTUoWMGGQHlGVZA575VtGr9

    Are you interested in creating custom podcasts with us, being part of a conversation, promoting your brand, or sponsoring an ITSPmagazine Channel?

    👉 https://www.itspmagazine.com/purchase-programs

    18 min
  • From Regulations to Relationships: Navigating the Maze of Third-Party Risk Management | A Conversation with Branan Cooper | Redefining CyberSecurity with Sean Martin

    Guest: Branan Cooper, Financial Services exec

    On LinkedIn | https://www.linkedin.com/in/brananc/

    ____________________________

    Host: Sean Martin, Co-Founder at ITSPmagazine [@ITSPmagazine] and Host of Redefining CyberSecurity Podcast [@RedefiningCyber]

    On ITSPmagazine | https://www.itspmagazine.com/sean-martin

    View This Show's Sponsors

    ___________________________

    Episode Notes

    In this episode of the Redefining Cybersecurity Podcast, hosted by Sean Martin, we dive into the intricate world of third-party risk management with the insightful Branan Cooper, boasting an impressive three-and-a-half decades of experience in financial services. Throughout this discussion, Cooper and Martin explore the evolution and critical aspects of managing third-party risk within businesses, emphasizing the ever-increasing interconnectivity and dependencies in the digital age.

    Branan Cooper draws on his vast experience, touching on the regulatory milestones that have shaped third-party risk management practices, from early quality assurance efforts in the '90s to the recent comprehensive interagency guidance. Highlighting the intertwined nature of third-party risk with operational, cybersecurity, and compliance aspects, the episode sheds light on the need for a holistic approach encompassing due diligence, ongoing monitoring, and a lifecycle approach to vendor relationships.

    Significantly, the conversation delves into practical strategies for mitigating third-party risk, the importance of fostering a culture of communication and collaboration across departments, and the pivotal role of documentation in managing and mitigating risks effectively.

    Cooper also shares invaluable insights into the nuances of vendor relationships, from assessing and prioritizing risks to the crucial aspect of planning for potential exit strategies. This episode not only serves as a primer on the complexities of third-party risk management but also as a guide for navigating these challenges proactively, offering listeners actionable advice and best practices drawn from decades of experience.

    Whether you're a business leader, IT professional, or risk management practitioner, this episode provides a wealth of knowledge on safeguarding your organization in a interconnected business ecosystem.

    Key Questions Addressed

    • How have regulatory milestones shaped third-party risk management practices over time?
    • What are the key strategies for effectively managing and mitigating third-party risks?
    • How does coordinating across departments contribute to managing third-party risks more effectively?

    ___________________________

    Watch this and other videos on ITSPmagazine's YouTube Channel

    Redefining CyberSecurity Podcast with Sean Martin, CISSP playlist:

    📺 https://www.youtube.com/playlist?list=PLnYu0psdcllS9aVGdiakVss9u7xgYDKYq

    ITSPmagazine YouTube Channel:

    📺 https://www.youtube.com/@itspmagazine

    Be sure to share and subscribe!

    ___________________________

    Resources

    Third Party Risk Management 101 : Learning the Fundamentals of Third-Party Risk Management (venminder.com)   

    The interagency guidance on third party risk management : Federal Register :: Interagency Guidance on Third-Party Relationships: Risk Management

    What is a third party?:  What Is a Third Party? How Their Role Works and Examples (investopedia.com)

    Why is third party risk management important?: Why is Third-Party Risk Management Important? | UpGuard

    Although no longer in force, these pieces of guidance were so fundamental in defining industry terms and such watershed moments that they are valuable still as reference material, for terms and procedures commonly followed in TPRM:

    FDIC financial institution letter   44 - 2008:   FDIC: Inactive FIL-44-2008: Guidance for Managing Third-Party Risk

    OCC Bulletin 2019 - 23: OCC+2013-29.pdf (sqspcdn.com)

    Understanding UDAAP or UDAP The Differences Between UDAP & UDAAP | McCune Law Group (mccunewright.com)

    ___________________________

    To see and hear more Redefining CyberSecurity content on ITSPmagazine, visit: 

    https://www.itspmagazine.com/redefining-cybersecurity-podcast

    Are you interested in sponsoring this show with an ad placement in the podcast?

    Learn More 👉 https://itspm.ag/podadplc

    45 min
  • Exploring the Excitement of Aerospace Village at RSA Conference 2024 | A Conversation With Henry Danielson and Liz Wharton | On Location Coverage with Sean Martin and Marco Ciappelli

    Guests: 

    Henry Danielson, Volunteer at AeroSpace Village [@SecureAerospace]

    On LinkedIn | https://www.linkedin.com/in/henry-danielson-43a61213/

    On Twitter | https://twitter.com/hdanielson

    Liz Wharton, Founder, Silver Key Strategies [@silverkeystrat]

    On LinkedIn | https://www.linkedin.com/in/elizabeth-wharton/

    On Mastodon | https://infosec.exchange/@LawyerLiz

    On Twitter | https://twitter.com/LawyerLiz

    ____________________________

    Hosts: 

    Sean Martin, Co-Founder at ITSPmagazine [@ITSPmagazine] and Host of Redefining CyberSecurity Podcast [@RedefiningCyber]

    On ITSPmagazine | https://www.itspmagazine.com/sean-martin

    Marco Ciappelli, Co-Founder at ITSPmagazine [@ITSPmagazine] and Host of Redefining Society Podcast

    On ITSPmagazine | https://www.itspmagazine.com/itspmagazine-podcast-radio-hosts/marco-ciappelli

    ____________________________

    Episode Notes

    The Aerospace Village at the RSA Conference 2024 is gearing up to be an event filled with innovation, collaboration, and excitement. In a recent episode of "Chats on the Road to RSA Conference 2024" with Sean Martin and Marco Ciappelli, the hosts digs into the details of what attendees can expect at the Aerospace Village. Let's take a closer look at the insights shared during this engaging discussion.

    Unveiling the Aerospace Village Experience:

    The podcast episode kicks off with Marco Ciappelli welcoming listeners to the conversation alongside guests Henry Danielson and Liz Wharton. The trio's palpable enthusiasm sets the stage for a deep dive into the diverse offerings of the Aerospace Village at RSA Conference 2024.

    Innovative Initiatives and Collaborations:

    Henry Danielson shares exclusive details about the Aerospace Village's collaboration with BuddhaBot to introduce a unique badge experience focused on constellations. The hands-on challenges and engaging activities promise an immersive experience for attendees, emphasizing learning through interactive participation.

    Exciting Activities and Exhibits:

    The conversation unfolds with discussions on Pentest partners' flight simulator and the AMSAT project, showcasing opportunities for visitors to explore CubeSat technology and ground control stations. The Space Grand Challenge, aimed at educating young minds in the cybersecurity realm, further highlights the village's commitment to fostering innovation and knowledge sharing.

    Insightful Industry Conversations:

    Liz Wharton sheds light on the importance of vulnerability disclosures in the aerospace industry and emphasizes the significance of building robust security practices collaboratively. The dialogue underscores the village's role in fostering critical conversations around cybersecurity, aviation, and space exploration.

    Community Engagement and Visionary Leadership:

    Hosts and Guests express their excitement for the upcoming RSA Conference and encourage attendees to join the vibrant community at the Aerospace Village. From showcasing cutting-edge technologies to facilitating thought-provoking discussions, the village promises to be a hub of inspiration and knowledge exchange.

    As the episode concludes, the hosts extend a warm invitation to all enthusiasts, innovators, and industry professionals to participate in the vibrant experience awaiting them at the Aerospace Village during RSA Conference 2024. The blend of education, engagement, and collaboration sets the stage for an unforgettable event that promises to shape the future of aerospace and cybersecurity industries.

    Stay tuned for more updates and insights as we venture into the dynamic world of Aerospace Village at RSA Conference 2024!

    Be sure to follow our Coverage Journey and subscribe to our podcasts!

    ____________________________

    Follow our RSA Conference USA 2024 coverage: https://www.itspmagazine.com/rsa-conference-usa-2024-rsac-san-francisco-usa-cybersecurity-event-infosec-conference-coverage

    On YouTube: 📺 https://www.youtube.com/playlist?list=PLnYu0psdcllS-B9eaPcHUVmy_lGrbIw9J

    Be sure to share and subscribe!

    ____________________________

    Resources

    Cal Poly Space Grand Challenge: https://cci.calpoly.edu/empower/space-grand-challenge-program

    Learn more about RSA Conference USA 2024: https://itspm.ag/rsa-cordbw

    ____________________________

    Catch all of our event coverage: https://www.itspmagazine.com/technology-cybersecurity-society-humanity-conference-and-event-coverage

    To see and hear more Redefining CyberSecurity content on ITSPmagazine, visit: https://www.itspmagazine.com/redefining-cybersecurity-podcast

    To see and hear more Redefining Society stories on ITSPmagazine, visit:
    https://www.itspmagazine.com/redefining-society-podcast

    Are you interested in sponsoring our event coverage with an ad placement in the podcast?

    Learn More 👉 https://itspm.ag/podadplc

    Want to tell your Brand Story as part of our event coverage?

    Learn More 👉 https://itspm.ag/evtcovbrf

    26 min
  • Embracing Technology Safely: A Look into Consilio's Role in Legal Cybersecurity | A Brand Story Conversation from LegalWeek 2024 | A Consilio Story with James Jansen

    Guest: James Jansen, Vice President & Global Head - Cyber Response Solutions at Consilio [@ConsilioGlobal]

    On Linkedin | https://www.linkedin.com/in/james-jansen-076a0214/

    In the latest episode of Brand Stories, Sean Martin and Marco Ciappelli host James Jansen, Vice President & Global Head of Cyber Response Solutions at Consilio as he sheds light on the critical intersection of technology and cybersecurity in the legal space. The conversation dives deep into the challenges and opportunities that arise when embracing technology while maintaining a keen focus on cybersecurity and risk management.

    The Importance of a Technology-Forward Approach: Consilio has always been at the forefront of embracing technology to drive efficiencies in legal workflows. With a forward-leaning attitude towards legal technology services, Consilio understands the significance of technology in assisting clients with various legal processes. From conceptual analytics to technology-assisted reviews, it has consistently leaned into new technologies with a blend of curiosity and skepticism, ensuring that they are utilized in the right way for their clients.

    Navigating the Landscape of AI in Legal Processes: As technology evolves, Consilio continues to vet new technologies and adopt innovative solutions to enhance their services. Particularly noteworthy is the adoption of generative AI, which presents both opportunities and challenges. Jansen emphasizes the importance of having humans at the wheel, underscoring the critical role of human oversight in leveraging technology effectively.

    Fostering a Culture of Cybersecurity: The dialogue highlights the need for a cultural shift within organizations towards cybersecurity. Every business is a potential target for cyber attacks, emphasizing the importance of developing a cybersecurity-conscious culture. By empowering employees to recognize and address cybersecurity threats, organizations can bolster their defenses and mitigate risks effectively.

    Enabling Legal Teams to Embrace Technology Safely: Consilio's role in helping legal teams navigate the complexities of technology integration is paramount. By offering insights, resources, and expertise, they assist organizations in managing legal processes, protecting data, and handling incidents with precision. Their commitment to connecting the human element with technological advancements ensures a balanced approach that prioritizes both innovation and security.

    Consilio stands out as a trusted partner for legal teams seeking to leverage technology safely and effectively. By emphasizing the importance of human oversight, fostering a culture of cybersecurity, and embracing innovative solutions like generative AI, it is possible to lead with a strategic approach to navigating the intersection of technology and legal cybersecurity.

    By adopting a technology-forward approach and prioritizing cybersecurity, Consilio is paving the way for legal teams to navigate the digital age with confidence and resilience.

    To learn more about Consilio and how they can assist your organization in embracing technology safely in the legal space, visit their website at https://itspm.ag/consilio-ch4i or reach out to their team for personalized insights and solutions.

    Note: This story contains promotional content. Learn more: https://www.itspmagazine.com/brand-story

    Resources
    Learn more about Consilio and their offering: https://itspm.ag/consilio-ch4i

    Hear more stories from the Consilio team on their directory page: https://www.itspmagazine.com/directory/consilio

    Are you interested in telling your Brand Story?
    https://www.itspmagazine.com/telling-your-story

    31 min
  • Crossing Borders: The Cyber Pulse of Global Healthcare | A Conversation with Dr. Saif Abed | Redefining CyberSecurity with Sean Martin

    Guest: Dr. Saif Abed MD, Director of Cybersecurity Advisory Services, The AbedGraham Group

    On LinkedIn | https://www.linkedin.com/in/drsaifabed/

    ____________________________

    Host: Sean Martin, Co-Founder at ITSPmagazine [@ITSPmagazine] and Host of Redefining CyberSecurity Podcast [@RedefiningCyber]

    On ITSPmagazine | https://www.itspmagazine.com/sean-martin

    View This Show's Sponsors

    ___________________________

    Episode Notes

    In this episode of the Redefining CyberSecurity Podcast, host Sean Martin welcomes Dr. Saif Abed, who brings a wealth of experience from both the medical and cyber security practices. Specializing in the interface of healthcare and cybersecurity, Dr. Abed discusses the diverse challenges and evolving threats faced by the healthcare sector amidst rapid digitization and the global push towards electronic health records and connected medical devices.

    Dr. Abed provides insightful reflections on the state of cyber maturity across nations, emphasizing the diverse stages at which healthcare systems find themselves in terms of digitization and cybersecurity readiness. He underpins the conversation with examples from his extensive advisory roles to technology companies and governmental agencies, especially during critical times such as the pandemic.

    A significant part of the discussion revolves around how healthcare entities are digitizing faster than they can secure their systems, making them susceptible to attacks such as ransomware. Dr. Abed criticizes the reactive nature of policy and regulation, suggesting that it often lags behind the threats, posing an ongoing challenge for healthcare providers to maintain patient safety and care quality.

    The conversation also explores the implications of policies like HIPAA and the importance of adopting a global treaty to address cyber attacks on healthcare organizations. Dr. Abed argues for a balanced approach — 'carrots' for providers and 'sticks' for vendors — to enforce better compliance and ensure the sustainability of digital healthcare ecosystems. Through a blend of personal anecdotes, professional achievements, and expert analysis, Dr. Abed offers a nuanced understanding of the intricate relationship between healthcare delivery and cybersecurity. His call for more resilient and proactive measures highlights the urgent need for alignment between healthcare advancements and cybersecurity policies to protect public health on a global scale.

    Top Questions Addressed

    • How does digitization in healthcare face cybersecurity challenges?
    • What role do policies like HIPAA play in shaping cybersecurity in healthcare?
    • How can global healthcare policy and diplomacy improve cybersecurity in healthcare?

    ___________________________

    Watch this and other videos on ITSPmagazine's YouTube Channel

    Redefining CyberSecurity Podcast with Sean Martin, CISSP playlist:

    📺 https://www.youtube.com/playlist?list=PLnYu0psdcllS9aVGdiakVss9u7xgYDKYq

    ITSPmagazine YouTube Channel:

    📺 https://www.youtube.com/@itspmagazine

    Be sure to share and subscribe!

    ___________________________

    Resources

    Inspiring Post: https://www.linkedin.com/posts/drsaifabed_dr-abed-who-cybersecurity-publications-activity-7158569953263042561--Gi3/

    ___________________________

    To see and hear more Redefining CyberSecurity content on ITSPmagazine, visit: 

    https://www.itspmagazine.com/redefining-cybersecurity-podcast

    Are you interested in sponsoring this show with an ad placement in the podcast?

    Learn More 👉 https://itspm.ag/podadplc

    41 min

About Redefining CyberSecurity

From the publisher's feed

Redefining CyberSecurity Podcast

More shows like Redefining CyberSecurity

This American Life by This American Life

This American Life

90,949 Listeners

Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec by Jerry Bell and Andrew Kalat

Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec

373 Listeners

Risky Business by Risky Business Media

Risky Business

374 Listeners

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast) by Johannes B. Ullrich

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

650 Listeners

CyberWire Daily by N2K Networks

CyberWire Daily

1,027 Listeners

Click Here by Recorded Future News

Click Here

418 Listeners

The ITSPmagazine Podcast by ITSPmagazine, Sean Martin, Marco Ciappelli

The ITSPmagazine Podcast

30 Listeners

Cybersecurity Today by David Shipley

Cybersecurity Today

179 Listeners

CISO Series Podcast by David Spark, Mike Johnson, and Andy Ellis

CISO Series Podcast

191 Listeners

Defense in Depth by CISO Series

Defense in Depth

73 Listeners

Cybersecurity Headlines by CISO Series

Cybersecurity Headlines

137 Listeners

Hard Fork by The New York Times

Hard Fork

5,554 Listeners

Audio Signals Podcast by ITSPmagazine, Marco Ciappelli, Sean Martin

Audio Signals Podcast

2 Listeners

Risky Bulletin by Risky Business Media

Risky Bulletin

46 Listeners

Microsoft Threat Intelligence Podcast by Microsoft

Microsoft Threat Intelligence Podcast

23 Listeners

Stories From Space by ITSPmagazine, Matthew S Williams

Stories From Space

4 Listeners

An Analog Brain In A Digital Age | With Marco Ciappelli by Marco Ciappelli

An Analog Brain In A Digital Age | With Marco Ciappelli

0 Listeners

CyberSecurity Summary by CyberSecurity Summary

CyberSecurity Summary

5 Listeners