Why are construction companies considered "low-hanging fruit" for cybercriminals?
Kirk Westwood sits down with Mike Hamilton, founder of PISCES International, a nonprofit providing no-cost cyber monitoring for small governments and public utilities. With decades of experience as former Chief Information Security Officer for the City of Seattle and managing consultant for Verisign Security, Mike brings real-world threat response expertise to construction leaders. The conversation covers why construction companies are increasingly targeted, the three most common attack vectors, and what "good enough" cybersecurity looks like for organizations without massive IT budgets. Mike emphasizes one critical mindset shift: "The Internet is not a nice place. It's here to sell to you, steal from you and manipulate your opinion." Topics include ransomware mechanics, workforce development, and practical resilience strategies.
Mike Hamilton is the founder of PISCES International, a nonprofit providing no-cost cybersecurity monitoring and threat intelligence to small governments, public utilities, and critical infrastructure organizations. A veteran cybersecurity leader, Mike previously served as Chief Information Security Officer for the City of Seattle and as managing consultant for Verisign Security. Through PISCES, he combines live threat response with workforce development, using real-world data to train the next generation of cyber analysts. His work focuses on making cybersecurity accessible, actionable, and resilient for organizations that lack dedicated IT security teams.
Subscribe now so you don’t miss an episode!
Talk the TAUC podcast is brought to you by The Association of Union Constructors (TAUC). Your host, Kirk Westwood, is Director of Marketing for TAUC. In each episode, we’ll explore the latest labor trends, industry insights, and important issues in the world of construction. Our guests are industry leaders, subject matter experts, and innovative visionaries discussing how we are building the ‘world of tomorrow.’ TAUC is made up of more than 1,800 contractor companies that utilize union labor for their projects, as well as local contractor associations and vendors in the industrial maintenance and construction fields. TAUC’s mission is to act as an advocate for union contractors and enhance cooperation between all parties to achieve the successful completion of construction projects.
(00:00) Mike Hamilton on cybersecurity - What cyber risk actually means: the five business outcomes every leader should know(08:33) The attacks you don't hear about: persistent access versus quick monetization(10:37) When ransomware hits: what it looks like when nothing works(15:26) The three ways hackers get in: social engineering, credential abuse, and vulnerability exploitation(20:22) The single most important thing business leaders misunderstand about cyber risk(27:01) Workforce development crisis: why cyber analysts are the fifth fastest growing job(31:33) One mindset shift construction leaders can make tomorrowShare with someone who would be interested, like, and subscribe now so you don’t miss an episode!Resources:
PISCES International: https://pisces-intl.org/
Cybersecurity Resources
NIST Cybersecurity Framework: https://www.nist.gov/cyberframeworkCalifornia Consumer Privacy Act (CCPA): https://oag.ca.gov/privacy/ccpaCalifornia Privacy Protection Agency: https://cppa.ca.gov/Government & Research
Bureau of Labor Statistics: https://www.bls.gov/Pacific Northwest National Laboratory: https://www.pnnl.gov/CHIPS and Science Act: https://www.congress.gov/bill/117th-congress/house-bill/4346CHIPS Act (NSF): https://www.nsf.gov/chipsTAUC Calendar of Events
TAUC Website
Kirk Westwood TAUC
The Construction User Magazine back issues
The Construction User podcast archive