The Hands On CISO

The Hands On CISO

By ClearsightBusiness
Download on the App Store

The Hands On CISO episodes

  • Cybersecurity is a team sport - Scott Huntley, Director of IT and Security @ SET SEG

    In this conversation, Scott discusses the importance of building trust and creating an open environment in cybersecurity. He shares his experiences in organizations where security was viewed differently and emphasizes the need for collaboration and accountability.

    Scott also provides advice for those looking to advance in the security field and highlights the challenges and opportunities in both small and large security teams. He discusses the future of the field, the increasing rate of change, and the importance of continuous learning.

    Scott concludes by expressing his love for the challenges and growth opportunities in the security field.

    32 min
  • Creating A Safe Space To Operate | Chris Denbigh-White, CISO @ NextDLP

    Chris Denbigh-White, CISO of NextDLP, shares his non-standard path into information security and how he ended up in his current role. He discusses the importance of understanding the business and providing a safe space for employees to work in. He emphasizes the need for companies to focus on addressing the basics of information security, such as asset inventory, application inventory, and network protections, rather than solely focusing on advanced threats. He also highlights the challenges and complexities involved in implementing these basic security measures. Chris Denbigh-White, Next DLP CISO, discusses the challenges of presenting information security in a way that engages the wider business. He emphasizes the importance of explaining security in business language and reducing business risk. Chris also shares his strategies for staying up-to-date in the rapidly changing field of cybersecurity, including using resources like the SANS Internet Storm Center and participating in information security meetups. He highlights the benefits of having a small security team and involving the wider company in security efforts. Chris discusses the different roles and responsibilities of a CISO in small and large companies and the need for both technical and business knowledge. He predicts that the cybersecurity field will continue to evolve with the adoption of AI and large language models, but emphasizes the importance of understanding the business problems that these technologies can solve. Chris offers advice for those interested in cybersecurity, encouraging continuous learning and not letting personal characteristics or self-doubt hold them back.

    46 min
  • The more you know, the less you know | Stephen Owen, Group CISO @IQUW

    In this episode of the Hands-on CISO podcast, Adi interviews Stephen Owen, CISO of IQUW. With over 20 years of experience in the security field, Stephen shares his fascinating journey from software engineering to becoming a top 100 global leader in InfoSec. Listen in as Stephen discusses his background, the importance of constant learning, and the evolving landscape of cybersecurity. He delves into team management, risk assessment, and the impact of AI on security practices. This episode is packed with valuable advice for aspiring security professionals and seasoned leaders alike. Don't miss it!

    51 min
  • Balancing the Big Picture and Attention to Detail | Don Gibson, CISO@ Kinley

    Don Gibson, CISO of Kinley, shares his journey into the security field and discusses various aspects of cybersecurity. He emphasizes the importance of the desire to protect and help others in the role of a CISO. Don also talks about the evolving approach to security in different companies and sectors, highlighting the common foundation of the CIA (Confidentiality, Integrity, Availability) triad. He discusses the role of a CISO in a small team and the need to balance the big picture with attention to detail. Don also addresses the challenges of managing stress and mental health in the cybersecurity field. In this conversation, Don Gibson discusses the mental side of being a CISO and the ability to unwind. He emphasizes the importance of management support and the freedom to make decisions. Don also talks about the challenges of being a solo CISO and the need for a team. He highlights the need for continuous learning in cybersecurity and shares his methods of staying updated. Don also discusses the future of cybersecurity, including the impact of quantum computing and the potential irrelevance of personal data. He advises aspiring cybersecurity professionals to have a genuine passion for the field and to prioritize self-care.

    1 hr
  • Blockchain Startups Security | Sean Turner, CISO@ Twinstake

    In this conversation, Sean Turner discusses his journey into the security field and his experiences working in startups. He highlights the importance of having clear roles and responsibilities, especially in the startup environment where security personnel often wear multiple hats. Sean also talks about the balance between strategic and tactical work, the challenges of keeping up with the ever-changing cybersecurity landscape, and the role of AI in the field. The conversation covers various topics related to AI security, data protection, and the challenges faced by CISOs. The main themes include the need for controls and filters in AI systems, the intersection of AI and crypto, the importance of education and automation in preventing security threats, the carelessness of some businesses in handling cybersecurity, the challenges faced by CISOs, and the future of the cybersecurity field.

    58 min
  • The Gamification Of Cybersecurity | Malcolm Portelli, CISO @ Andaria

    Malcolm Portelli shares his career journey and insights into the cybersecurity industry. He emphasizes the importance of passion and finding enjoyment in your work. Malcolm got into cybersecurity by being poached from a tech team by a CISO who recognized his potential. He discusses the challenges and rewards of working at a small startup, where he wears many hats and handles both strategic and hands-on tasks. Malcolm highlights the significance of creating a culture of security awareness and training within the company. He also discusses the future of cybersecurity, including the need for a focus on emerging technologies and soft skills.


    45 min
  • The Biggest Attack Surface Is Human | Andrew Rose, Field CISO @ SoSafe

    Andrew Rose, CISO of SoSafe, shares his unconventional role as a field CISO and his journey to becoming a CISO. He emphasizes the importance of the human side of cybersecurity and the need for organizations to focus more on human risk management. Andrew discusses the stress and challenges faced by CISOs, the imbalance between technology and human resources, and the need for resilience in the face of cyber threats. He also highlights the need for CISOs to stay updated on the evolving threat landscape and to prioritize the security of their people. In this part of the conversation, Tamir discusses the importance of having backup systems and paper-based processes in case of a cyber attack. He emphasizes that every organization, regardless of its industry, is vulnerable to cyber attacks and should prioritize security. Tamir also talks about the role of the CISO and the need for them to have a strategic mindset and strong communication skills. He predicts that the future of cybersecurity will involve more automation and AI, as well as a greater focus on professionalizing the user awareness role. Tamir advises individuals looking to enter the cybersecurity field to gain experience in different industries, take on challenging roles, and bring their passion to the job.

    53 min
  • Security in the age of AI | Jose Bonilla, Security and GRC Leader

    Jose Bonilla, an information security GRC leader, shares insights on his career journey, the challenges of cybersecurity, and the evolving landscape of security in the age of AI. He discusses the importance of continuous learning, the impact of security incidents, and the need for a security-first culture in organizations. The conversation covers various aspects of cybersecurity, including AI, machine learning, career advice, security awareness, and the importance of security in organizations. It also delves into the challenges of auditing and the advice for those entering the field or working in organizations new to security practices.

    58 min
  • Building a bridge between security and people | Erez Bejerano, CISO @ accessiBe

    Erez Bejerano, a cybersecurity expert, shares insights on his career journey, the role of a CISO, and the future of cybersecurity. He emphasizes the importance of a security mindset, the impact of automation and AI, and the need for clear communication between security and business. Erez also highlights the challenges and responsibilities of a hands-on CISO, providing valuable advice for those entering the cybersecurity field.
    Takeaways

    • The role of a CISO involves being a bridge between business and security technology, requiring clear communication and a security mindset.
    • The future of cybersecurity will see increased automation and AI integration, as well as a consolidation of security systems.
    • Being a hands-on CISO involves managing priorities, planning ahead, and staying vigilant in the face of evolving threats.
    • Advice for those entering the cybersecurity field includes the importance of being calm, clear communication, and continuous learning.

    • 34 min

    About The Hands On CISO

    From the publisher's feed

    Dive deep into the worlds of CISOs from diverse industries. Each episode features an unfiltered conversation with leading CISOs, exploring their career trajectories, challenges, and the security issues that keep them up at night.