Secure & Simple — Podcast for Consultants and CISOs on Cybersecurity Governance and Compliance

Secure & Simple — Podcast for Consultants and CISOs on Cybersecurity Governance and Compliance

Download on the App Store

Secure & Simple — Podcast for Consultants and CISOs on Cybersecurity Governance and Compliance episodes

  • Promoting Consulting Business Through Content Marketing | Interview with Punit Bhatia

    In this episode of the Secure and Simple Podcast, host Dejan Kosutic interviews Punit Bhatia, founder of FIT4Privacy Consulting Company, author of 4 books on GDPR, and host of the FIT4Privacy podcast. Punit shares his journey from working at a bank to becoming a leading consultant in privacy and AI governance. He discusses the importance of content marketing, personal branding, and consistency in building a consultancy business. Punit also provides insights into how creating expert materials, publishing books, speaking at events, and maintaining a presence on platforms like YouTube and LinkedIn have contributed to his success. Tune in to learn best practices for promoting your consultancy and establishing a strong professional network.

    Links from the episode:
    - Conformio software to streamline and scale ISO 27001 implementation and maintenance for your clients: https://advisera.co/Conformio-software
    - White label documentation toolkits for NIS2, DORA, ISO 27001, and other ISO standards to create all the required documents for your clients: https://advisera.co/page-all-toolkits
    - Accredited Lead Auditor and Lead Implementer courses for various standards and frameworks to show your expertize to potential clients: https://advisera.co/Consultant-Courses
    - Company Training Academy with numerous videos for NIS2, DORA, ISO 27001, and other frameworks to organize training and awareness programs for your client’s workforce: https://advisera.co/page-Company-Training-Account  

    • (00:00) - Interview with Punit Bhatia
  • (01:02) - Starting a Consulting Career: Punit's Journey
  • (03:47) - The Freedom of Being an Independent Consultant
  • (04:36) - Building an International Clientele
  • (07:33) - Visibility and Content Marketing Strategies
  • (13:02) - Effective Use of Social Media Channels
  • (18:14) - The Podcast Journey
  • (23:21) - Leveraging Content for Business
  • (25:49) - The Role of Books in Brand Building
  • (27:39) - The Importance of Consistency
  • (34:53) - Expanding Expertise to AI
  • (36:45) - Future of AI and Privacy Standards
  • (39:56) - Final Thoughts and Recommendations
  • (41:13) - Useful Resources for Consultants
  • 43 min
  • Trends in ISO Standards: Certification Body Perspective | Interview with Tom Wheat

    In this insightful episode of the Secure and Simple Podcast, host Dejan Kosutic discusses the evolving landscape of standards with Tom Wheat, UK Country Manager at PJR. They delve into the importance of ISO 27001 as the benchmark for global information security, the internal processes within certification bodies, and the value certification bodies can add beyond just issuing certificates. The discussion also covers the role of consultants, the competitive certification market, the impacts of AI, and key recommendations for consultants preparing clients for certification. Tune in for valuable insights on ensuring continuous improvement, compliance, and the future of cybersecurity certification.

    Links from the episode:
    - Conformio software to streamline and scale ISO 27001 implementation and maintenance for your clients: https://advisera.co/Conformio-software
    - White label documentation toolkits for NIS2, DORA, ISO 27001, and other ISO standards to create all the required documents for your clients: https://advisera.co/page-all-toolkits
    - Accredited Lead Auditor and Lead Implementer courses for various standards and frameworks to show your expertize to potential clients: https://advisera.co/Consultant-Courses
    - Company Training Academy with numerous videos for NIS2, DORA, ISO 27001, and other frameworks to organize training and awareness programs for your client’s workforce: https://advisera.co/page-Company-Training-Account  

    • (00:00) - Interview with Tom Wheat
  • (02:10) - Tom's Journey: From Consultant to Certification Manager
  • (05:36) - The Importance of ISO 27001
  • (07:51) - Trends in Certification and Compliance
  • (13:52) - Behind the Scenes of Certification Bodies
  • (22:18) - The Value of Certification Bodies
  • (24:55) - Auditors and Best Practices
  • (28:07) - Consultants in the Certification Process
  • (30:14) - Handling Non-Conformities and Appeals
  • (32:41) - Competing in the Certification Market
  • (36:42) - The Future of Certification Bodies
  • (39:13) - AI and the Future of Compliance
  • (43:13) - Top Recommendations for Consultants
  • (45:22) - Conclusion and Resources
  • 47 min
  • How to Combine ISO 27001 and GDPR | Interview with Luigi Viscione

    This episode features Luigi Viscione, CEO and Founder of Micsar, a seasoned consultant with a decade of experience in IT security and data protection. Luigi discusses the intersection of privacy and cybersecurity, the challenges and benefits of being a consultant, as well as the importance of integrating multiple security frameworks like GDPR and ISO 27001. Gain insights on how to streamline processes, secure client buy-in, and manage large-scale implementations effectively. Don't miss Luigi's experiences on the future of AI in consultancy and how it can influence the cybersecurity landscape.

    Links from the episode:
    - Conformio software to streamline and scale ISO 27001 implementation and maintenance for your clients: https://advisera.co/Conformio-software
    - White label documentation toolkits for NIS2, DORA, ISO 27001, and other ISO standards to create all the required documents for your clients: https://advisera.co/page-all-toolkits
    - Accredited Lead Auditor and Lead Implementer courses for various standards and frameworks to show your expertize to potential clients: https://advisera.co/Consultant-Courses
    - Company Training Academy with numerous videos for NIS2, DORA, ISO 27001, and other frameworks to organize training and awareness programs for your client’s workforce: https://advisera.co/page-Company-Training-Account 

    • (00:00) - Interview with Luigi Viscione
  • (01:27) - Starting a Consulting Business
  • (03:10) - Combining Cybersecurity and Privacy
  • (05:16) - Implementing ISO 27001 and GDPR
  • (07:07) - Integrated Risk Management
  • (10:47) - Handling Security Incidents
  • (12:27) - Client Reactions to Integrated Approaches
  • (16:23) - Gaining Senior Management Support
  • (28:41) - Balancing Implementation and Maintenance
  • (33:31) - Managing Multiple Frameworks
  • (40:28) - Future of AI in Consulting
  • (47:14) - Consultancy Evolution and Key Takeaways
  • (50:24) - Conclusion and Resources
  • 52 min
  • Trends with ISO 27001, NIS2, and Supplier Security | Interview with René Matthiassen

    In this episode of the Secure and Simple Podcast, host Dejan Kosutic is joined by Rene Matthiassen, a senior security consultant and partner at Front Door Security. With 30 years of experience in cybersecurity frameworks, Rene discusses the importance of tailored security frameworks, particularly ISO 27001, and how they benefit companies and suppliers under NIS2 scope. They delve into Rene’s journey from network engineering to consulting, the process behind developing security standards, and practical steps for managing cybersecurity among suppliers. The conversation also touches on the increasing importance of operational technology security frameworks like IEC 62443 and provides a forecast for the evolution of cybersecurity compliance in the digital decade.

    Links from the episode:
    - Conformio software to streamline and scale ISO 27001 implementation and maintenance for your clients: https://advisera.co/Conformio-software
    - White label documentation toolkits for NIS2, DORA, ISO 27001, and other ISO standards to create all the required documents for your clients: https://advisera.co/page-all-toolkits
    - Accredited Lead Auditor and Lead Implementer courses for various standards and frameworks to show your expertize to potential clients: https://advisera.co/Consultant-Courses
    - Company Training Academy with numerous videos for NIS2, DORA, ISO 27001, and other frameworks to organize training and awareness programs for your client’s workforce: https://advisera.co/page-Company-Training-Account 

    • (00:00) - Interview with René Matthiassen
  • (00:19) - Meet Our Guest: Rene Matthiassen
  • (02:35) - Transitioning from Technical to Governance
  • (04:38) - Developing ISO 27001 Standards
  • (06:15) - The Democratic Process of Standardization
  • (07:53) - Transposing NIS2 in Denmark
  • (11:10) - ISO 27001 and NIS2: A Symbiotic Relationship
  • (18:07) - Supply Chain Security and Compliance
  • (24:25) - Handling Supplier Disruptions
  • (26:56) - Creating Effective Security Contracts
  • (30:10) - Supplier's Perspective on Compliance
  • (36:40) - Navigating the Competitive Consulting Market
  • (39:39) - Operational Technology Security Standards
  • (42:26) - Future of Cybersecurity Compliance
  • (46:34) - Conclusion and Resources for Consultants
  • 48 min
  • How to Become a Successful Consultant | Interview with Carlos Cruz

    In this episode of Secure and Simple Podcast, host Dejan Kosutic interviews Carlos Cruz, founder of Metanoia and ISO 9001 & ISO 14001 expert at Advisera. Carlos shares his journey in the consulting business, starting from the 1990s, and provides valuable insights on the do's and don'ts of building a successful consulting career. Learn how Carlos used writing, training, and strategic connections to grow his business, and how the consulting landscape has changed over the decades. The discussion also touches on the role of AI in consulting and offers practical advice for new consultants. Don't miss this opportunity to learn from Carlos's extensive experience in the consulting field.

    Links from the episode:
    - Conformio software to streamline and scale ISO 27001 implementation and maintenance for your clients: https://advisera.co/Conformio-software
    - White label documentation toolkits for NIS2, DORA, ISO 27001, and other ISO standards to create all the required documents for your clients: https://advisera.co/page-all-toolkits
    - Accredited Lead Auditor and Lead Implementer courses for various standards and frameworks to show your expertize to potential clients: https://advisera.co/Consultant-Courses
    - Company Training Academy with numerous videos for NIS2, DORA, ISO 27001, and other frameworks to organize training and awareness programs for your client’s workforce: https://advisera.co/page-Company-Training-Account 

    • (00:00) - Audio 1001 Interview Carlos Cruz
  • (00:19) - Meet Carlos Cruz: A Veteran Consultant
  • (01:42) - Starting a Consulting Business in the 1990s
  • (03:20) - The Importance of Writing and Blogging
  • (06:07) - Connecting Quality Management with Strategy
  • (12:01) - Differentiation and Client Satisfaction
  • (28:12) - Promoting Imperfect Competition
  • (29:59) - Understanding Customer Perception
  • (31:41) - Finding Your Niche as a Consultant
  • (33:43) - Working with Japanese Companies
  • (37:44) - Lessons from Bad Consultants
  • (44:23) - The Role of Training and Auditing
  • (48:25) - The Evolution of Consulting
  • (51:15) - Future of Consulting with AI
  • (54:34) - Top Tips for Consultants
  • (58:34) - Conclusion and Resources
  • 1 hr

About Secure & Simple — Podcast for Consultants and CISOs on Cybersecurity Governance and Compliance

From the publisher's feed

“Secure & Simple” demystifies governance and compliance challenges faced by CISOs, consultants, and other cybersecurity professionals. The podcast is hosted by Dejan Kosutic, an expert in cybersecurity governance, ISO 27001, NIS2, and DORA. The episodes present topics in an easy-to-understand way and provide you with insight you won’t be able to find elsewhere.