Highlights of my conversation with Ray:
Historically security was done in the shadows
Everyone is a partner to the security team
Give people a sense of ownership and their part in the security program
Drive surveys using tactical questions
Do employees have confidence in the security team handling relevant issues
If you have an external service, you should be thinking of security
Go back and resurvey after incorporating security changes
Share the security survey results with everyone and be transparentMeet: Meet: Ray Espinoza is CISO at Inspectiv. At the time of recording, he was the VP of Cloud Security at Medallia. Before Medallia, Ray was CISO at Cobalt.io, a pentest-as-a-service company. Ray also drove third-party cloud security across Amazon's retail business. He also held VP and CISO roles with Atmosera and Proofpoint and various security leadership positions at Workday, Cisco Systems, and eBay.
If you have any questions for Ray, please feel free to reach out via:
https://www.linkedin.com/in/ray-espinoza-b399821/
https://twitter.com/rayespinozasec
I hope you enjoyed the episode. The best place to connect with me is on Linkedin - https://www.linkedin.com/in/amirbormand (Amir Bormand). Please send me a message if you want me to cover specific topics with future guests.