The Virtual CISO Moment

The Virtual CISO Moment

By Greg SchafferTechnology
Download on the App Store

The Virtual CISO Moment episodes

  • Infosec Wrap Up May 12, 2023

    Support us by supporting our sponsor Bitdefender! https://bitdefender.f9tmep.net/c/4084356/1488530/4466


    https://www.infosecurity-magazine.com/news/ransomware-fails-to-extort-dragos/


    https://www.bleepingcomputer.com/news/security/wordpress-elementor-plugin-bug-let-attackers-hijack-accounts-on-1m-sites/


    https://securelist.com/new-ransomware-trends-in-2023/109660/


    https://www.helpnetsecurity.com/2023/05/11/bitdefender-app-anomaly-detection/


    https://arstechnica.com/tech-policy/2023/05/1-5m-crypto-scheme-leads-to-2-year-prison-term-for-ex-coinbase-manager/


    https://www.sans.org/cyber-security-training-events/cybersecurity-small-businesses-summit-2023/


    https://www.bleepingcomputer.com/news/security/top-5-password-cracking-techniques-used-by-hackers/

    16 min
  • Throwback Thursday - A Conversation with Cheri Hotman

    From November 29, 2022 - Cheri Hotman of the Hotman Group (https://hotmangroup.com) is a CPA, has her MBA, and is a CISSP - a combination rare in information security. She discusses her experiences and lessons learned managing a business providing quality virtual CISO services to a variety of clients, including navigating "the land of 1000 piranhas"!

    28 min
  • Cybersecurity Quick Strike - May 8, 2023

    Support us by supporting our sponsor Bitdefender!

    https://bitdefender.f9tmep.net/c/4084356/1488530/4466


    Wordpress vuln, Cactus ransomware, Bitmarck attacked, Apple Rapid Security Updates, generative AI in malware, CISA urges incorporating list in risk management plans, and SEC whistleblower payout record (and why that is meaningful to cybersecurity).

    https://thehackernews.com/2023/05/new-vulnerability-in-popular-wordpress.html

    https://www.bleepingcomputer.com/news/security/new-cactus-ransomware-encrypts-itself-to-evade-antivirus/

    https://www.infosecurity-magazine.com/news/bitmarck-halts-operations/

    https://arstechnica.com/gadgets/2023/05/seven-months-in-ios-and-macos-get-their-first-rapid-security-updates/

    https://securityaffairs.com/145692/security/generative-ai-lure-malware.html

    https://www.cisa.gov/news-events/alerts/2023/05/01/cisa-urges-organizations-incorporate-fcc-covered-list-risk-management-plans

    https://www.sec.gov/news/press-release/2023-89



    20 min
  • S5E25 - A Conversation with David Primor

    David Primor is the Founder and CEO of Cynomi, which addresses a critical gap in mid-market cyber protection - creating and executing a cyber and compliance strategy for companies with insufficient (or no) cyber personnel. He spent the first half of his career as a strategic cyber expert and leader, on the front lines of state-level cyber defense (8200, Israeli National Cyber Security Authority). He believes one of the next big challenges (and opportunities) in cyber is in the SMB space - providing optimal protection for companies with a very limited cyber budget and little to no in-house expertise. Cynomi’s AI powered offering does just that.

    30 min
  • Infosec Wrap Up - May 5, 2023

    Dallas breach brings down systems, Cisco vuln, cyber risk index lowers, Brightline hack exposes patient data, university alert system hijacked, and the lock icon is going away. 

    https://bitdefender.f9tmep.net/c/4084356/1488530/4466 

    https://www.darkreading.com/attacks-breaches/dallas-city-systems-taken-down-by-royal-ransomware 

    https://thehackernews.com/2023/05/cisco-warns-of-vulnerability-in-popular.html 

    https://www.helpnetsecurity.com/2023/05/05/cyber-risk-index-2h-2022/ 

    https://www.infosecurity-magazine.com/news/brightline-hack-exposes-data/ 

    https://www.bleepingcomputer.com/news/security/ransomware-gang-hijacks-university-alert-system-to-issue-threats/ 

    https://arstechnica.com/information-technology/2023/05/google-will-retire-chromes-https-padlock-icon-because-no-one-knows-what-it-means/ 

     

    16 min
  • Throwback Thursday - A Conversation with Robin Wilde

    From November 22, 2022 - Robin Wilde is the Director of Business Solutions for TeamHealth. She is passionate about project management and cyber security, particularly Identity Management, as well as promoting women in cyber. She holds a variety of certifications, including the CISSP, CRISC, PMP, ACP, CSP, and Prosci, demonstrating her vast skillset and experience. She introduces the phrase "privilege sprawl" - listen to find out what that means!

    29 min
  • VCM S5E24 - A Conversation with Nick Espinosa

    Nick Espinosa is the Chief Security Fanatic at Security Fanatics, author, speaker, and radio show host. An expert in cybersecurity and network infrastructure, Nick has consulted with clients ranging from the small business owners up to Fortune 100 level companies. Nick has designed, built, and implemented multinational networks, encryption systems, and multi-tiered infrastructures as well as small business environments. He is passionate about emerging technology and enjoys creating, breaking, and fixing test environments.

    27 min
  • Cybersecurity Quick Strike - May 1, 2023

    Hackers target Veeam backup servers, has MFA failed us, man gets four years for stealing Bitcoins, ChatGPT back in Italy, critical bugs in illumina dna sequencing systems, why people skills matter, and today’s list- six Key Moments From House Republicans' Hearing on Warrant-Free FISA Surveillance 

     

    Links 

    https://www.bleepingcomputer.com/news/security/hackers-target-vulnerable-veeam-backup-servers-exposed-online/ 

    https://medium.com/pcmag-access/has-multi-factor-authentication-failed-us-319ee10393dd 

    https://www.infosecurity-magazine.com/news/four-years-stealing-bitcoins/ 

    https://thehackernews.com/2023/04/chatgpt-is-back-in-italy-after.html 

    https://cyber-reports.com/2023/04/28/cisa-warns-of-critical-bugs-in-illumina-dna-sequencing-systems/ 

    https://securityaffairs.com/145483/hacking/esa-satellite-hack.html  

    https://securityintelligence.com/articles/why-people-skills-matter/ 

    https://gizmodo.com/fisa-hearing-congress-republicans-6-key-moments-1850384660 

     

    25 min
  • Infosec Wrap Up - April 28, 2023

    PaperCut vulnerabilities leveraged by Clop, LockBit, Ukranian arrested selling data, an OS that resists ransomware, okcupid scams Florida man, cable cut in DC whacks Vermont services, NCSA HBCU scholarship, major bug in Google cloud, new ways to manage your ChatGPT data, and a new podcast shout out.

    https://www.helpnetsecurity.com/2023/04/27/papercut-lockbit-clop/

    https://www.infosecurity-magazine.com/news/ukrainian-arrested-selling-data/

    https://cyberscoop.com/database-oriented-operating-system-rsa/

    https://securityaffairs.com/145369/cyber-crime/cryptorom-okcupid-scam-florida-man.html

    https://www.govtech.com/gov-experience/how-a-cut-cable-temporarily-downed-vermonts-state-websites

    https://www.helpnetsecurity.com/2023/04/25/national-cybersecurity-alliance-hbcu-scholarship-program/

    https://open.spotify.com/episode/7idaNBg4T9DiCloZ9i3IJp?si=jJLnF7uwR76wgyGcR3-EYQ

    https://www.techradar.com/news/security-experts-found-a-major-bug-in-google-cloud

    https://openai.com/blog/new-ways-to-manage-your-data-in-chatgpt

    https://open.spotify.com/show/4TR7B5bZ1IO41tIsnzcg4J

    15 min
  • Throwback Thursday - A Conversation with Lin Clark

    From November 16, 2022 - Lin Clark, the Carolina Cyber Center's SOC Director, discusses how the SOC benefits both the students in the Carolina Cyber Center program and the western North Carolina small business community. Recorded at RETR3AT Cyber Conference Montreat College September 23, 2022. Audio only.

    29 min

About The Virtual CISO Moment

From the publisher's feed

The Virtual CISO Moment dives into the stories of information security, information technology, and risk management pros; what drives them and what makes them successful while helping small and midsized business (SMB) security needs. No frills, no glamour, no transparent whiteboard text, no complex graphics, and no script - just honest discussion of SMB information security risk issues.