The Gate 15 Podcast Channel

The Gate 15 Podcast Channel

By Gate 15Business
Download on the App Store

The Gate 15 Podcast Channel episodes

  • The Gate 15 Interview EP 11. Matt Mitchell, a Champion for Security and Privacy
    In this episode of The Gate 15 Interview, Andy Jabbour talks with Matt Mitchell, “a hacker and Tech Fellow at The Ford Foundation. Matt is working with the BUILD and Technology and Society teams at Ford Foundation to develop digital security strategy, technical assistance offerings, and safety and security measures for the foundation’s grantee partners. Matt was recently named by WIRED magazine as one of the 25 ‘innovators who are using technology to lead society through this period of global uncertainty and pointing the way to a safer future.’ called the WIRED25.” In 2017, Matt was listed by VICE's MOTHERBOARD as a HUMAN OF THE YEAR, for his work protecting marginalized communities from surveillance. Read more about Matt in this Medium post. Photo by Nick Lee, via Medium. Matt on Twitter. Matt on LinkedIn.
    In the discussion we address:
    • Matt’s background
    • Current projects 
    • Privacy as a right
    • Privacy as security
    • And more!
    “Backdoors… they don’t work…” – Matt Mitchell, in The Gate 15 Interview, recorded 21 Apr 2021
    A few references mentioned in or relevant to our discussion include:
    • Matt Mitchell Is Arming Underserved Communities With Anti-Surveillance Tools, Vice, 14 Feb 2017
    • Ford Foundation, BUILD
    • Ford Foundation, Cybersecurity Assessment Tool
    • Nigerian Tech Hub Update: It’s Funded, Built, Educating, and… by Ronnie Tokazowski, @iHeartMalware, 08 Apr 2021
    • Can you fight BEC popularity in Nigeria by steering youth to legitimate IT jobs? by Catalin Cimpanu, @campuscodi, on The Record, by Recorded Future, @TheRecord_Media, 18 Apr 2021 
    • Zero Trust: Enable a remote workforce by embracing Zero Trust security, Micorsoft
    • William Coffee, NSA 2011 Hall of Honor Inductee, African American Honoree. “In April 1946, William D. Coffee was awarded the Commendation for Meritorious Civilian service for his wartime leadership in exploiting critical enciphered messages. During a time of harsh racial discrimination, he excelled and became the acting supervisor of a segregated office that made impressive contributions to the nation's cryptologic achievements.” 
    • CryptoHarlem
    • Wikipedia: CryptoParty
    • On Bug Bounties: Google Project Zero will give a 30-day grace period before disclosing security issues, Kim Lyons, @SocialKimLy, The Verge, @verge, 17 Apr 2021
    • The do’s and don’ts of bug bounty programs with Katie Moussouris (@k8em0), by Zack Whittaker, @zackwhittaker, TechCrunch, @TechCrunch, 07 Apr 2021
    • Zack Whittaker@zackwhittaker / 3:15 PM EDT•April 7, 2021
    • DON'T PANIC. Making Progress on the "Going Dark" Debate, The Berkman Center for Internet & Society at Harvard University
    "One: the companies want to surveil the people. Two: the organizations, the companies, don't have people's best interests at heart…" – Matt Mitchell, in Vice, 14 Feb 2017
    44 min
  • Nerd Out Security Panel Discussion: EP 12. High Stress and U....2.

    This month the panel is a party of one - Rob Yandow joins again to talk with Dave about high stress situations and preparedness. This is especially relevant given the reopenings and the latest hostile event situations. Rob goes into detail about the phsiology of fear, as well as how and why individuals respond to high stress situations the way they do. Using various examples, Rob hammers home the various stages in the survival arc - denial, deliberation, and decisive action. And most importantly, the podcast talks about the ways organizations can use this information to train and prepare to respond.  Then Dave is joined by a special guest to talk about the greatest band ever. 

    Rob Yandow is a security expert who is a former police officer and who works with the Faith-Based Information Sharing and Analysis Organization (FB-ISAO) and serves as the Co-Chair of their Business Resilience Group - website: https://faithbased-isao.org. Twitter: @RobYandow

    1 hr 6 min
  • The Cybersecurity Evangelist: EP 9 – The ISAC Series, Part 5 – REN-ISAC

    Despite the razzing I got from the guys (David Pounder - host of the NerdOut! Security Panel Discussion, and Andy Jabbour - host of The Gate 15 Interview) during the last Risk Roundtable, the TCE ISAC Series continues!!! This time, REN-ISAC (Research & Education Networks Information Sharing & Analysis Center) joins me. REN-ISAC serves the higher education and research community by promoting cybersecurity operational protections and response.

    For this episode, I enjoyed a fun and lively chat with Krysten Stevens, “new” Director of Technical Operations, and Brett Zupan, Risk Analyst and DC Liaison. We talked about threats facing the research and higher education community and bragged on Kim Milford’s (REN-ISAC’s Executive Director) amazing vision in 2019 to execute a series of workshops that had colleges, universities, and relevant community partners, such as state/local health departments and law enforcement working together through an infectious disease scenario – a scenario the team thought might be going too far…

    Resources discussed on this episode:

    • https://www.ren-isac.net
    • https://gate15.global/the-gate-15-interview-from-blended-threats-to-pandemic-lessons-learned-a-candid-conversation-on-higher-education-security-and-resilience-with-ren-isacs-kim-milford/
    • https://www.ren-isac.net/public-resources/csirt.html
    • https://www.ren-isac.net/public-resources/workshops/index.html
    • https://www.caudit.edu.au/
    • 49 min
    • The Risk Roundtable: EP 18. Security / Analytical Bias.

      The Risk Roundtable crew looked at the increasingly important idea of security bias and security blindness. The group specifically looked at how bias in analysis can lead to security blindness and the minimization and exaggeration of threats. Within the analytical community it is important to note how bias exists in virtually everything and the team discussed ways in which bias could exist from the analyst, but also by those that receive the data. Andy, Jen and Dave discussed some of the root causes and how this can lead to and continue a cycle of misinformation and disinformation if not handled correctly. In fact, the more divisive our politics become, the more bias our media, the more people – politicians, the media, foreign governments, and others - fan the flames of division, the more challenging the role of the analyst can become. In the end, bias is a discussion that is encouraged to be had by all organizations to ensure they are accurately representing the threat and risk to the organization.

      Next the team looked at their roulette items (Dave even shared the theme song on demand!) reminding listeners of the Microsoft Exchange Vulnerability and to update their systems. In addition, as reopenings are occurring around the world in varying degrees, it is important that organizations review security plans and processes.

      Items highlighted in the Podcast:

      Health ISAC Spring Summit open to members and non-members: https://h-isac.org/summits/secured-in-paradise-spring-2021-summit/

      Agenda: https://web.cvent.com/event/cd1e7b44-7e38-487b-bd1f-b4f39cc82a11/websitePage:645d57e4-75eb-4769-b2c0-f201a0bfc6ce

      Troy Hunt Confirmation Bias - and good read: https://www.troyhunt.com/lets-stop-the-5g-hysteria-understanding-hoaxes-and-disinformation-campaigns/

      Additional information about the Microsoft Exchange Vulnerability:  

      • https://cyber.dhs.gov/ed/21-02/
      • https://us-cert.cisa.gov/ncas/alerts/aa21-062a
      • FortiOS Vulnerability: https://us-cert.cisa.gov/ncas/current-activity/2021/04/02/fbi-cisa-joint-advisory-exploitation-fortinet-fortios

        CISA Cybersecurity Directives and Implementation Guidance Site: us-cert.cisa.govus-cert.cisa.gov


        47 min
      • The Gate 15 Interview EP 10. James Whalen, Technology and Cybersecurity Leadership

        In this episode of The Gate 15 Interview, Andy Jabbour talks with James Whalen, SVP, Chief Information & Technology Officer, Boston Properties. In this podcast we address:

        • Jim’s background
        • Changes in facilities; changes in security
        • Threats facing facilities and broader implications
        • Security and collaboration
        • And more!
        • James Whalen: James Whalen serves as Senior Vice President, Chief Information & Technology Officer for Boston Properties where he is responsible for the direction and implementation of technology services and solutions. Prior to joining the Company in March 1998, he served as Vice President, Information Systems of Beacon Properties. He is a graduate of the University of Notre Dame and a recipient of the New York City Urban Fellowship. Mr. Whalen is a current trustee and past President of the Boston Chapter of the Society for Information Management (SIM) and serves on the Real Estate Cyber Consortium, Realcomm Advisory Council, Commercial Facilities Cyber Working Group, TechHire Boston and Boston Private Industry Council. LinkedIn.

          A few references mentioned in or relevant to our discussion include:

          ·      The Real Estate Information Sharing and Analysis Center (RE-ISAC). “The Real Estate Information Sharing and Analysis Center (RE-ISAC), a not-for-profit information sharing entity organized by The Real Estate Roundtable in February 2003, is a public-private partnership between the US commercial facilities sector and federal homeland security officials which serves as the primary conduit of terrorism, cyber and natural hazard warning and response information between the government and the commercial facilities sector.”

          ·      InfraGardNCR: Commercial Facilities Cyber Working Group (CCWG)  

          ·      FBI IC3 Cyber Crime Report: FBI Releases the Internet Crime Complaint Center 2020 Internet Crime Report & PDF: 2020 Internet Crime Report, 17 Mar 21 

          ·      Palo Alto Networks: Highlights from the 2021 Unit 42 Ransomware Threat Report & Ransomware Threat Assessments: A Companion to the 2021 Unit 42 Ransomware Threat Report, 17 Mar 21

          ·      Group-IB: ransomware empire prospers in pandemic-hit world. Attacks grow by 150%, 04 Mar 21

          ·      Realcomm Advisory Council

          33 min
        • Nerd Out Security Panel Discussion: EP 11. Reopenings, Protests, and the future of Conspiracy

          In the latest episode of Nerd Out, Dave and his merry band of nerdies, Bridget, Travis, and Joe, look at the latest news around the reopening and what organizations need to be on guard for as crowd sizes and capacity limits will test the ongoing health pandemic. Then the group looks at the way threat actors may respond. Will it be a target of opportunity or will new security measures be disruptive enough. Next, the panel looked at recent protests, and the potential for future protests (did people really forget about May Day!) and what ways they may change in a reopened world. Finally, what is the future of conspiracy theories and the movements that were charged over the past several years? The group then lightened it up a bit and went through some lightning round questions and discovered that the Snyder Cut really isn't a thing because no one particularly cared for it in the first place to even know it was a thing. 

          Dave Pounder is a Senior Risk Analyst for Gate. Twitter: @dpounder; email: [email protected]

          Joe Levy is the chairman of the International Associate of Venue Managers (IAVM) Venue Safety and Security Committee. In addition, Joe is the Chief Operating Officer at the Usdan Center for the Creative & Performing Arts. IAVM website https://www.iavm.org/ Venue Safety and Security committee contact information: [email protected]; LinkedIn Profile: https://www.linkedin.com/in/joelevy1/    

          Travis Moran is the Assistant Deputy Director, Critical Infrastructure Protection & Physical Security. Twitter: @dronin_on; email: [email protected]    

          Bridget Johnson is the Managing Editor for Homeland Security Today. In addition her contributions on Homeland Security Today (hstoday.us), they are also running a series of webinars (Webinar signups, https://www.eventbrite.com/e/le-only-anti-government-extremists-who-they-are-how-to-combat-them-tickets-144507635227?aff=ebdsoporgprofile). Twitter: @BridgetCJ

          41 min
        • The Risk Roundtable: EP 17. Oldsmar, Conspiracy Theories, and Arnold Shirts

          In the latest episode of the Risk Roundtable, Andy, Jen, and Dave look at some recent events (Oldsmar) while looking ahead to upcoming events that may present risks (Qanon, the George Floyd murder trial, and upcoming religious holidays) but only after talking about Andy's taste in shirts. Then in the risk roulette, which Dave forgot again to find music for (or did he), Dave wonders about weather preparedness is overhyped while Jen circles back to lessons learned from Solar Winds and the concept of "zero trust" - not in Andy and Dave but in terms of cybersecurity. The gang wraps up talking about some of their struggles and what they are watching. But that's not all - after the credits Dave may have redeemed himself with a new theme for the risk roulette. 

          Some of the links from today's episode:

          YouTube: Treatment Plant Intrusion Press Conference, 08 Feb. 

          WaterISAC: 15 Cybersecurity Fundamentals for Water and Wastewater Utilities
          Gate 15: Blended Threats: Did Florida’s Cyber Attack Whet Your Appetite for Better Preparedness and Security?
          NSA: NSA Issues Guidance on Zero Trust Security Model
          Forrester: Zero Trust Is Not A Security Solution; It’s A Strategy
          The Hacker News: SolarWinds Blame Intern for Weak Password That Led to Biggest Attack in 2020
          Vice: QAnon Isn’t So Sure Trump Will Magically Become President Again on March 4
          Ready.gov: Plan Ahead for Disasters

          49 min
        • The Gate 15 Interview EP 9. Mark Herrera on Venues, Safety, and Security in 2021
          In this episode of The Gate 15 Interview, Andy Jabbour talks with Mark Herrera, Director of Education for the International Association of Venue Managers (IAVM; @IAVMWHQ). In this podcast we discuss a range of issues from the pandemic’s impact to venues, to security and preparedness with broad applicability to all organizations - from venues to places of worship, and across events and facilities of all types. We discuss a wide range of issues from the impacts of COVID on venues and events, and what lies ahead in 2021, ideas on enhancing security through conflict management and professionalism, and lot more. Mark talks about the importance of “programming the mind through mental preparation” noting that, “the body will go where the mind has been, if the mind hasn’t been there the body will not follow.” Mark is always full of great quotes. Some are shared below; listen to the conversation for more great insight and Herrera-isms! In the discussion we address:
          Mark’s backstory
          IAVM
          The pandemic’s impact to venues
          Where the venue community is going in 2021
          Resetting security and the physical threat environment
          Organizational and personal security best practices
          And more!
          Mark Herrera: Herrera is the Director of Education & Life Safety for the International Association of Venue Managers and recognized as one of the 25 most influential leaders in the meetings and event industry. As part of his duties, Mark teaches Situational Awareness-Mindset training aimed at giving venues the tools to be safer and more secure.   The training emphasizes on Exceptional Focus, Performance, and Control in Extreme Situations and Risk Mitigation through Guest Services Interjection. In addition, as the Director of Education for IAVM, Herrera represents the Department of Homeland Security Office of Infrastructure Protection through the Public Assembly Facility Sub-Sector Council. For Mark’s complete bio, see below. Twitter: @IAVM_Herrera; LinkedIn; Instagram; Facebook.
          ·      IAVM on Twitter; LinkedIn; Instagram; Facebook. And learn about:
          ·      IAVM’s Academy for Venue Safety and Security
          ·      IAVM’s VenueConnect 2021, at the Georgia World Congress Center in Atlanta, 02-05 Aug 2021
          48 min
        • Nerd Out Security Panel Discussion: EP 10. Singapore, Norway, Minnesota - what does it mean?
          In the latest episode of Nerd Out, it was a five star day for Dave. First, you can hear him open up with his "Warrrrshington" versus President's Day poll (did you see what I did there), followed by the group getting into a discussion about behaviors and indicators of hostile events related to recent arrests and incidents in Singapore, Norway, and Minnesota, and the role that mental health plays a role into it. The team then looks at reporting such instances, before getting into the Florida Water breach and the ramifications as it highlights the various ways blended threats can have an impact to organizations. Unfortunately a real-time weather event prevented the group from getting into their lightning round (no pun intended considering the weather event), but not before Bridget was able to share her true feelings for a certain seven time Super Bowl winning quarterback.
          Joe Levy is the chairman of the International Associate of Venue Managers (IAVM) Venue Safety and Security Committee. In addition, Joe is the Chief Operating Officer at the Usdan Center for the Creative & Performing Arts. IAVM website https://www.iavm.org/ Venue Safety and Security committee contact information: [email protected]; LinkedIn Profile: https://www.linkedin.com/in/joelevy1/  
          Travis Moran is the Assistant Deputy Director, Critical Infrastructure Protection & Physical Security. Twitter: @dronin_on; email: [email protected]  
          Bridget Johnson is the Managing Editor for Homeland Security Today. In addition her contributions on Homeland Security Today (hstoday.us), they are also running a series of webinars (Webinar signups, https://www.eventbrite.com/o/homeland-security-today-30028526516). Twitter: @BridgetCJ
          39 min

        About The Gate 15 Podcast Channel

        From the publisher's feed

        The Gate 15 Company is a leader in helping organizations by providing threat-informed, risk-based approaches to analysis, preparedness and operations.