Redefining CyberSecurity

Redefining CyberSecurity

By Sean Martin, ITSPmagazineBusinessTechnologyEducation
Download on the App Store

Redefining CyberSecurity episodes

  • The Future Of The Cybersecurity Market Is Rooted In The Outcome We Are Trying To Achieve | A Conversation With William Kilmer | Redefining CyberSecurity Podcast With Sean Martin

    Guests
    William Kilmer
    Venture Investor | Company Builder | Author | Innovation Strategist
    On Linkedin | https://www.linkedin.com/in/wkilmer/
    On Twitter | https://twitter.com/wkilmer

    Marco Ciappelli
    Co-Founder at ITSPmagazine [@ITSPmagazine] and Host of Redefining Society Podcast [@ITSP_Society]
    On ITSPmagazine | https://www.itspmagazine.com/itspmagazine-podcast-radio-hosts/marco-ciappelli
    On Linkedin | https://www.linkedin.com/in/marco-ciappelli/
    On Twitter | https://twitter.com/marcociappelli

    Host
    Sean Martin
    Co-Founder at ITSPmagazine [@ITSPmagazine] and Host of Redefining CyberSecurity Podcast [@RedefiningCyber]
    On ITSPmagazine | https://www.itspmagazine.com/itspmagazine-podcast-radio-hosts/sean-martin
    On Linkedin | https://www.linkedin.com/in/imsmartin
    On Twitter | https://twitter.com/sean_martin

    ____________________________

    This Episode’s Sponsors
    Imperva: https://itspm.ag/imperva277117988
    Asgardeo | https://itspm.ag/asgardeo-by-wso2-u8vc

    ___________________________

    In the business of security, the market can be viewed as driven by 3 things: advancing threats, innovative solutions, and the intersection of these two things to the business. It's this last point that many forget when we look at how a sector can grow, survive, and thrive: how well does it fit into the target customer's business model, financial model, staffing model, operational model, and more.

    Our guest, William Kilmer, spearheaded interviews with roughly 40 cybersecurity professionals to hear where they thought the market was going. One thing William heard, as an example, was the interest in seeing new operating and business models for cybersecurity beyond the traditional SaaS/recurring software subscription model. As we dig into this point, we get into how and where we can expect budget for cyber for new products will derive — will they be flat, grow, or decline?

    We also look to see if there are other industries with “similar” challenges that have been transformative where there have been signs of people thinking in a transformative fashion.

    In the business of security, we must remember the outcome we are trying to achieve. Are we, the collective cybersecurity community, doing what we need to do to meet — or possibly change — the desired outcome?

    ____________________________

    Resources

    Podcast: Book | Transformative | Being Innovative Is No Longer Enough. To Win, You Need To Be Transformative. | Redefining Technology With William Kilmer | https://itsprad.io/redefining-technology-746

    Article referenced: https://news.crunchbase.com/cybersecurity/founders-apple-strategic-cybersecurity-startups-kilmer-c5-capital/

    ____________________________

    To see and hear more Redefining CyberSecurity content on ITSPmagazine, visit:
    https://www.itspmagazine.com/redefining-cybersecurity-podcast

    Are you interested in sponsoring an ITSPmagazine Channel?
    👉 https://www.itspmagazine.com/sponsor-the-itspmagazine-podcast-network

    44 min
  • Reliant — Resilient — Recoverable | Exploring Space Security And The Hack-a-Sat Capture The Flag Event | A Conversation With Logan Finch And Jason Williams | Redefining CyberSecurity Podcast With Sean Martin

    Aerospace and the satellite ecosystem is comprised of several systems — a system of systems, in fact. Does the sector offer enough transparency to ensure each one operates securely while supporting the core objectives of reliance, resiliency, and recoverability? The team behind the hack-at-sat CTF says we need to do more.

    Join us as we discuss the core elements that make up a satellite ecosystem, the difficulties in gaining access to real-world systems to analyze their cyber risk, and the work the team is doing with the hack-a-sat capture the flag (CTF) event to help secure these critical environments.

    ____________________________

    Guests
    Logan Finch
    Principal Engineer at Cromulence [@cromulencellc]
    On Linkedin | https://www.linkedin.com/in/logan-finch/
    On Twitter | https://twitter.com/hack_a_sat

    Jason Williams
    Co-Founder and CEO of Cromulence [@cromulencellc]
    On Linkedin | https://www.linkedin.com/in/jason-williams-5858c3
    On Twitter | https://twitter.com/hack_a_sat

    ____________________________

    This Episode’s Sponsors
    Imperva: https://itspm.ag/imperva277117988
    Asgardeo | https://itspm.ag/asgardeo-by-wso2-u8vc

    Are you interested in sponsoring an ITSPmagazine Channel?
    👉 https://www.itspmagazine.com/sponsor-the-itspmagazine-podcast-network

    ____________________________

    Resources

    Hack-a-Sat CTF Website: https://hackasat.com/

    ____________________________

    To see and hear more Redefining CyberSecurity content on ITSPmagazine, visit:
    https://www.itspmagazine.com/redefining-cybersecurity-podcast

    Are you interested in sponsoring an ITSPmagazine Channel?
    👉 https://www.itspmagazine.com/sponsor-the-itspmagazine-podcast-network

    44 min
  • Advocate Security For Your Customers By Ensuring The Safety Of Your Products | A Crucial Conversation With Alex Kreilein

    CISOs and InfoSec teams in charge of product security realize how the drive for innovation can speed up their organization's product release philosophy. Software development teams want applications to continuously expand functionality to solve more customer pain points and go to market before the competition.

    But it’s just as vital for CISOs and InfoSec teams to be product security advocates for customers—to ensure their accounts and sensitive data are safe from bad actors.

    In this episode, Alex Kreilein, a Senior Technical Program Manager for Microsoft, discusses what it takes for CISOs and InfoSec teams to become security advocates for customers by ensuring the safety of software products. Kreilein also examines the importance for CISOs and InfoSec teams to understand the objectives of the software development team and to interject product security early into the software development lifecycle. Kreilein then presents why accuracy in security testing is more important than finding vulnerabilities and how it’s critical to establish one team across security and developer teams—by making success metrics transparent and allowing team members to hold each other accountable.

    _______________________

    Community Member Contributor: Alex Kreilein
    Senior Technical Program Manager, Microsoft [@Microsoft / @msftsecurity]
    On Twitter | https://twitter.com/AK3R303
    On LinkedIn | https://www.linkedin.com/in/alexkreilein/

    Host: Sean Martin
    On ITSPmagazine | https://www.itspmagazine.com/itspmagazine-podcast-radio-hosts/sean-martin

    ______________________

    For more podcasts from Crucial Conversations with The Blue Lava Community, visit: https://www.itspmagazine.com/crucial-conversations-podcast

    To access the full collection of Blue Lava Community resources, visit: https://itspm.ag/blclog22

    To learn more about Blue Lava, visit: https://itspm.ag/blue-lava-w2qs

    ______________________

    Are you interested in sponsoring an ITSPmagazine Channel?
    👉 https://www.itspmagazine.com/sponsor-the-itspmagazine-podcast-network

    53 min
  • Solving Modern-Day SOC Challenges | A Conversation With Chaz Lever | Second Annual SOC Analyst Appreciation Day | On Location Coverage Podcast With Sean Martin And Marco Ciappelli

    The threat landscape has changed. The technology landscape has evolved. The security operations center analysts and researchers have had to do the same.

    In this special event coverage episode, we connect with the Senior Director of Security Research at Devo, Chaz Lever, to discuss the past, present, and future of technology, behavior, tactics, techniques, tools, training, leadership, community, and more.

    Want more on this topic? Be sure to watch the live stream of the Second Annual SOC Analyst Appreciation Day: https://itspm.ag/devo2p8i

    ____________________________

    Guest
    Chaz Lever
    Senior Director, Security Research at Devo [@devo_Inc]
    On Linkedin | https://www.linkedin.com/in/chazlever/
    On Twitter | https://twitter.com/chazlever

    ____________________________

    For more SOC Analyst Appreciation Day  Event Coverage podcast and video episodes visit: https://itspmagazine.com/second-annual-soc-analyst-appreciation-day

    To see and hear more Redefining CyberSecurity content on ITSPmagazine, visit:
    https://www.itspmagazine.com/redefining-cybersecurity-podcast

    Are you interested in sponsoring an ITSPmagazine Channel?
    👉 https://www.itspmagazine.com/sponsor-the-itspmagazine-podcast-network

    41 min
  • DDoS: An Old Problem Taking On New Forms As Attack Vectors Evolve | Exploring The Imperva DDoS Threat Landscape Report | An Imperva Brand Story With David Elmaleh

    The “waves” of ransom-driven DDoS — Distributed Denial of Service — attacks continue to come as the attack vectors, techniques, and targets continue to evolve. Where does this leave us? Let's look to the DDoS Threat Landscape Report from Imperva to glean some answers.

    As we connect with David Elmaleh, during this episode, we quickly realize there is a lot to catch up on — past, present and future — for what appears to be a never-ending problem in DDoS. Attacks seems to be be repeatedly targeting the same victims and are coming more quickly and running for shorter periods. Don't be fooled, however, the financial impact due to the unplanned and seemingly-uncontrolled downtime is wreaking havoc on industries and organizations all around the globe.

    In addition to leveraging new techniques, bad actors are also using advanced technologies — artificial intelligence, the Internet of Things (IoT), and 5G to name but a few — to do their dirty deeds. They are investing in these technologies to help them scale their operations to reach more targets with fewer resources. On the other side of this coin, the bad actors' deep understanding of these technologies and the new, modern architectures and infrastructures that companies are building with them, makes them prime targets as well. The expanded business capabilities using these advanced technologies equate to expanded attack surface for the DDoS slingers to target.

    We cover a lot from the first 2 quarters of this quarterly report while also getting to hear what some real-world cases from Imperva customers sound and look like.

    It's time we found a way to handle these distributed attacks. Have a listen to hear what your business can do to mitigate this risk.

    Note: This story contains promotional content. Learn more.

    Guest
    David Elmaleh
    Director, Product Management | Edge Cloud Security at Imperva [@Imperva]
    On Linkedin | https://www.linkedin.com/in/davidelmaleh/

    Resources
    Learn more about Imperva and their offering: https://itspm.ag/imperva277117988

    Explore the DDoS Threat Landscape Report Q2 2022: https://itspm.ag/impervqi54

    Are you interested in telling your story?
    https://www.itspmagazine.com/telling-your-story

    53 min
  • Vulnerable, Targeted, And Exploited IoT Devices: Take The Necessary Steps To Discover Assets And Remediate The Risk | A Crucial Conversation With Brian Contos

    Large enterprises and government agencies deploy thousands of Internet of Things (IoT), Operational Technology (OT), and other network-connected devices. But many severely underestimate the count, and many more do not manage these devices to ensure the latest security measure are in place.

    This includes up-to-date firmware and strong passwords. Knowing this, the cybercriminal community focuses on these devices and environments. They are more vulnerable than primary IT infrastructures and offer an easy way to breach digital assets and move laterally without discovery across an organization’s broader infrastructure.

    In this episode, Brian Contos, Chief Security Officer for Phosphorous Cybersecurity, presents insights and examines the risks to IoT, OT, and network devices and the issues they can cause to an organization's overall IT infrastructure. The article also demonstrates how devices are attacked and presents ways to overcome the risks to ensure digital assets remain safe.

    _______________________

    Community Member Contributor: Brian Contos
    Chief Security Officer for Phosphorous Cybersecurity [@phosphorusinc]
    On Twitter | https://twitter.com/BrianContos
    On LinkedIn | https://www.linkedin.com/in/briancontos/

    Host: Sean Martin
    On ITSPmagazine | https://www.itspmagazine.com/itspmagazine-podcast-radio-hosts/sean-martin

    ______________________

    For more podcasts from Crucial Conversations with The Blue Lava Community, visit: https://www.itspmagazine.com/crucial-conversations-podcast

    To access the full collection of Blue Lava Community resources, visit: https://itspm.ag/blclog22

    To learn more about Blue Lava, visit: https://itspm.ag/blue-lava-w2qs

    ______________________

    Are you interested in sponsoring an ITSPmagazine Channel?
    👉 https://www.itspmagazine.com/sponsor-the-itspmagazine-podcast-network

    51 min
  • Automated Security Validation With Red Team Penetration Testing Software | There Is A Silver Lining | A Pentera Brand Story With Aviv Cohen

    This is a story that begins with the journey of Arik Liberzon, the founder and CTO and head of the R&D and product teams at Pentera. Arik was the head of the red team for the Israeli Defense Forces, chartered with pentesting — or red teaming — all of the strategic assets against nation state levels of threats. He did so with a great number of people, just like you would expect to do with an enterprise level red teaming program, tapping into a wealth of ethical hackers and red teamers. But he also had another part of his brain, which was all about software. Arik fused the two mindsets and had an a-ha moment that 'I can do everything that I'm doing here with people and I can do it in software. I can shrink wrap a red team in a box of software and give every enterprise in the world the ability to red team irrespective of their budget. I can give every business the power of a big red team army, delivered through software.'

    This story, and the broader capabilities, mission, and vision for the future at Pentera, was told to us by Aviv Cohen, Pentera's Chief Marketing Officer. Connecting the human element to software and operations, the team at Pentera believes that it is important to have a human view for the challenges organizations face when managing their security programs. This is why Pentera created a series of cyber cartoons that are specialized to represent cybersecurity life. The cartoons connect the life of cybersecurity personnel and their role in society. This is a way for us to laugh, adding some humor to reality, connecting the technology products and services that we provide to this reality.

    The software-enabled red team army is here and ready to join your team. Have a listen and connect with the team at Pentera to begin and continue your own red team journey.

    Note: This story contains promotional content. Learn more.

    Guest
    Aviv Cohen
    Chief Marketing Officer at Pentera [@penterasec]
    On Linkedin | https://www.linkedin.com/in/avivco/

    Resources
    Be sure to visit Pentera at https://itspm.ag/pentera-tyuw to learn more about their offering.

    Meet Pentera Labs: https://itspm.ag/penteri67a

    Browse the cybertoon series: https://itspm.ag/penttoon

    To see and hear more Redefining CyberSecurity content on ITSPmagazine, visit:
    https://www.itspmagazine.com/redefining-cybersecurity-podcast

    Are you interested in telling your story?
    https://www.itspmagazine.com/telling-your-story

    51 min
  • From Fighting Crime As A Former Federal Prosecutor To Protecting Cyberspace As The CSO At A Multi-National Tech Company | A Conversation With Huawei USA CSO Andy Purdy | Redefining CyberSecurity Podcast With Sean Martin

    When a multi-national technology company needs to manage cyber risk on a global scale while not losing sight of the regional and local aspects of the business, one way to accomplish this is through regional and global committees comprised of multiple business functions.

    A mixed global and regional view can help to determine budgetary needs to ensure security management and operations function in support of the business in a way that remains focused on minimizing the threat and impact of a cyber incident. Doing so also encourages a culture of security maturity where the business recognizes the value that the security function brings to the table as the company defines, architects, and builds its business, operations, and technology stack that makes everything possible.

    Join us for an in-depth conversation with the Chief Security Officer (CSO) at Huawei Technologies USA, Andy Purdy, as we explore how an organization can better prepare its security teams, operations, and committees to ensure each is poised to be resilient and sustainable for the bigger picture and the long term.

    ____________________________

    Guest
    Andy Purdy
    Chief Security Officer (CSO) at Huawei Technologies USA [@Huawei]
    On LinkedIn | https://www.linkedin.com/in/andy-purdy-9b1b554/
    On Twitter | https://twitter.com/andy_purdy

    ____________________________

    This Episode’s Sponsors
    Pentera | https://itspm.ag/pentera-tyuw
    Edgescan | https://itspm.ag/itspegweb

    Are you interested in sponsoring an ITSPmagazine Channel?
    👉 https://www.itspmagazine.com/sponsor-the-itspmagazine-podcast-network

    ____________________________

    Resources

    Inspiring post: https://www.forbes.com/sites/forbestechcouncil/2022/07/11/why-we-need-accountability-for-effective-cybersecurity-frameworks/?sh=1a055eb45e62

    ____________________________

    To see and hear more Redefining CyberSecurity content on ITSPmagazine, visit:
    https://www.itspmagazine.com/redefining-cybersecurity-podcast

    38 min
  • Pentesting Done Right | It's Time To Re-Imagine Your Penetration Testing Program To Achieve Outcomes Over Activity | A Bugcrowd Brand Story With Justin Kestelyn

    Traditional penetration testing has been a cornerstone of effective cybersecurity for decades, providing a vital baseline function for every security practice. But in the face of today's rapidly proliferating and diversifying cyberattacks, its consulting-heavy service delivery model is looking and feeling its age.

    Join us for a conversation with Justin Kestelyn as we take a unique journey into the past, present, and future of penetration testing. We get the opportunity to explore how the role of a pentest has evolved as part of a more extensive security program, how the tools have evolved, how the technique and skills have transformed, and how the human element is still crucial when outcomes matter more than just showing the results of a scan.

    It's time to re-imagine penetration testing. So let's do that together now.

    Have a listen.

    Note: This story contains promotional content. Learn more.

    Guest
    Justin Kestelyn
    Head Of Product Marketing at Bugcrowd [@Bugcrowd]
    On Twitter | https://twitter.com/kestelyn
    On Linkedin | https://www.linkedin.com/in/justinkestelyn/

    Resources
    Be sure to visit Bugcrowd at https://itspm.ag/itspbgcweb to learn more about their offering.

    eBook | See Security Differently™ Penetration Testing as a Service Done Right: https://itspm.ag/bugcro2ky8

    To see and hear more Redefining CyberSecurity content on ITSPmagazine, visit:
    https://www.itspmagazine.com/redefining-cybersecurity-podcast

    Are you interested in telling your story?
    https://www.itspmagazine.com/telling-your-story

    41 min
  • What Every CISO Needs To Know About Crisis Management Planning | A Crucial Conversation With Jasper Ossentjuk

    As world events have demonstrated these past couple of years, crisis management is a requisite for doing business in today’s world. CISOs have choices to make in the face of the next crisis that’s sure to come…either plan ahead or react.

    Those who do plan, practice, and engage the full support of the enterprise often reduce the impact of a crisis in terms of business disruptions, cost to recover, and lost revenue.

    In this episode, Jasper Ossentjuk, SVP and CFO for Nielsen IQ, discusses what every CISO needs to know about crisis management planning and how it differs from business continuity and disaster recovery planning. Ossentjuk also examines how to determine if an organization is crisis resilient and the critical role a CISO plays in facilitating the necessary conversations to create crisis management plans. Ossentjuk also offers tips for formulating strategies and emphasizes the need to practice the procedure so that organizations can be flexible in reacting to unexpected crises.

    _______________________

    Community Member Contributor: Jasper Ossentjuk
    SVP and CFO for Nielsen IQ [@NielsenIQ]
    On LinkedIn | https://www.linkedin.com/in/jasperossentjukciso/

    Host: Sean Martin
    On ITSPmagazine | https://www.itspmagazine.com/itspmagazine-podcast-radio-hosts/sean-martin

    ______________________

    For more podcasts from Crucial Conversations with The Blue Lava Community, visit: https://www.itspmagazine.com/crucial-conversations-podcast

    To access the full collection of Blue Lava Community resources, visit: https://itspm.ag/blclog22

    To learn more about Blue Lava, visit: https://itspm.ag/blue-lava-w2qs

    ______________________

    Are you interested in sponsoring an ITSPmagazine Channel?
    👉 https://www.itspmagazine.com/sponsor-the-itspmagazine-podcast-network

    47 min

About Redefining CyberSecurity

From the publisher's feed

Redefining CyberSecurity Podcast

More shows like Redefining CyberSecurity

This American Life by This American Life

This American Life

90,949 Listeners

Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec by Jerry Bell and Andrew Kalat

Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec

373 Listeners

Risky Business by Risky Business Media

Risky Business

374 Listeners

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast) by Johannes B. Ullrich

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

650 Listeners

CyberWire Daily by N2K Networks

CyberWire Daily

1,027 Listeners

Click Here by Recorded Future News

Click Here

418 Listeners

The ITSPmagazine Podcast by ITSPmagazine, Sean Martin, Marco Ciappelli

The ITSPmagazine Podcast

30 Listeners

Cybersecurity Today by David Shipley

Cybersecurity Today

179 Listeners

CISO Series Podcast by David Spark, Mike Johnson, and Andy Ellis

CISO Series Podcast

191 Listeners

Defense in Depth by CISO Series

Defense in Depth

73 Listeners

Cybersecurity Headlines by CISO Series

Cybersecurity Headlines

137 Listeners

Hard Fork by The New York Times

Hard Fork

5,554 Listeners

Audio Signals Podcast by ITSPmagazine, Marco Ciappelli, Sean Martin

Audio Signals Podcast

2 Listeners

Risky Bulletin by Risky Business Media

Risky Bulletin

46 Listeners

Microsoft Threat Intelligence Podcast by Microsoft

Microsoft Threat Intelligence Podcast

23 Listeners

Stories From Space by ITSPmagazine, Matthew S Williams

Stories From Space

4 Listeners

An Analog Brain In A Digital Age | With Marco Ciappelli by Marco Ciappelli

An Analog Brain In A Digital Age | With Marco Ciappelli

0 Listeners

CyberSecurity Summary by CyberSecurity Summary

CyberSecurity Summary

5 Listeners