The Virtual CISO Moment

The Virtual CISO Moment

By Greg SchafferTechnology
Download on the App Store

The Virtual CISO Moment episodes

  • The Virtual CISO Moment S4E29 - A Conversation with J.J. Powell

    J.J. Powell of Cyber Defense Group (https://www.cdg.io/) discusses his career journey from police officer to system administrator to CISO and now as leading virtual CISO services. He is also a pivotal component into my decision to leave corporate and become an independent vCISO - listen to find out what was "the straw that broke the camel's back" for me!

    25 min
  • VCM Quick Strike for Monday, July 18, 2022

    Shodan special offer, banks need to implement best practices, five key things from smal org CISOs, Netwrix Auditor bug, and on the road challenges.

    • https://www.shodan.io/
    • https://fintechmagazine.com/banking/banks-need-best-practices-to-fight-rising-cyberattacks
    • https://thehackernews.com/2022/07/5-key-things-we-learned-from-cisos-of.html
    • https://thehackernews.com/2022/07/new-netwrix-auditor-bug-could-let.html

    • 11 min
    • The Virtual CISO Moment Wrap Up for Friday, July 15, 2022

      Phishing campaign bypasses MFA, healthcare debt collection agency ransomware breach 1.9 million records, Log4Shell endemic, criminal hackers targeting Indian students, Florida Atlantic University received grant, and my cybersecurity path, including learning Python?

      • https://threatpost.com/large-scale-hishing-bypasses-mfa/180212/
      • https://www.theregister.com/AMP/2022/07/13/19m_patients_medical_data_exposed/
      • https://www.computerweekly.com/news/252522789/Log4Shell-on-its-way-to-becoming-endemic
      • https://thehackernews.com/2022/07/pakistani-hackers-targeting-indian.html
      • https://www.fau.edu/newsdesk/articles/cybersecurity-grant
      • https://youtu.be/NzJlE0YLSiA
      • https://www.youtube.com/watch?app=desktop&v=7utwZYKweho&ab_channel=TheCyberMentor
      • 13 min
      • Throwback Thursday for July 14, 2022 - The CISSP and the Virtual CISO

        On this week's Throwback Thursday from 3/22/2022 - The Certified Information Systems Security Professional, or CISSP, is considered by some to be the pinnacle of information security professional certifications, on par with the CPA. But why is that, and what differentiates it from other certifications? And why is it important for virtual CISOs to have and maintain this certification?

        15 min
      • VCM Quick Strike for Monday, July 11, 2022

        Rogers service interruption, hacking a Honda, the future of certifications, and Monday thoughts.

        • https://www.reuters.com/business/media-telecom/rogers-communications-services-down-thousands-users-downdetector-2022-07-08/
        • https://blog.cloudflare.com/cloudflares-view-of-the-rogers-communications-outage-in-canada/
        • https://www.coguard.io/post/canada-rogers-outage-root-cause-analysis
        • https://www.vice.com/en/article/z34xnw/hackers-say-they-can-unlock-and-start-honda-cars-remotely
        • https://www.infosecurity-magazine.com/magazine-features/future-cybersecurity-certifications/
        • https://www.linkedin.com/posts/gregoryschaffer_motivationalmonday-mondaythoughts-career-activity-6952245177432387584-Knql

        • 18 min
        • The Virtual CISO Moment Wrap Up for Friday, July 8, 2022

          Marriott breach third in four years, CISA alert for Maui ransomware, SMBs not leveraging MFA, free entry-level cybersecurity training, DoD bug bounty program, the illusion of short cuts, and a disturbing LinkedIn site allegedly distributing copyrighted cybersecurity books without author and publisher authorization.

          • https://www.cyberscoop.com/marriott-data-breach-baltimore/
          • https://www.cisa.gov/uscert/ncas/alerts/aa22-187a
          • https://www.helpnetsecurity.com/2022/07/08/smb-implement-mfa/
          • https://venturebeat.com/2022/07/04/dod-bug-bounty-program/
          • https://goodmenproject.com/featured-content/the-illusion-of-short-cuts-take-the-long-cut-kpkn/
          • 17 min
          • Throwback Thursday for July 7, 2022 - A Conversation with Ed Carroll

            On this week’s Throwback Thursday from 3/15/22, Ed Carroll joins us to discuss many of the initiatives he's involved with, including Edison Marks to apply AI to help SMBs (https://edisonmarks.com/), the Carolina Cyber Center to help with information security in North Carolina and beyond (https://carolinacybercenter.com/), and an update on the RETR3AT cyber security conference at beautiful Montreat College (https://www.montreat.edu/about/events/retr3at/).

            19 min
          • The Virtual CISO Moment S4E27 - A Conversation with William Birchett

            William Birchett, President of Logos Systems and creator of the vCISO Network, discusses the virtual CISO space including elements that make a successful vCISO, the biggest threat to SMBs (it's not ransomware!), and his future plans to help the vCISO field through Logos Systems, the vCISO Network, and other endeavors.

            26 min
          • VCM Quick Strike for Monday, July 4, 2022

            Ransom returned with gains, cyber risks in space, NIST CSF 2.0 coming, HackerOne employee claims bug bounties for themselves, bug bounty programs offer hope for cyber skills gap, and thoughts on another approach to closing that gap.

            • https://www.dw.com/en/dutch-university-wins-big-after-bitcoin-ransom-returned/a-62337229
            • https://cybernews.com/editorial/in-space-cutting-losses-invite-cyberattacks/
            • https://insidecybersecurity.com/share/13585
            • https://www.bleepingcomputer.com/news/security/rogue-hackerone-employee-steals-bug-reports-to-sell-on-the-side/
            • https://www.computing.co.uk/sponsored/4050714/bug-bounty-cyber-skills
            • https://www.linkedin.com/feed/update/urn:li:activity:6949703194893578240/
            • https://www.linkedin.com/feed/update/urn:li:activity:6949499768611966977/

            • 14 min

            About The Virtual CISO Moment

            From the publisher's feed

            The Virtual CISO Moment dives into the stories of information security, information technology, and risk management pros; what drives them and what makes them successful while helping small and midsized business (SMB) security needs. No frills, no glamour, no transparent whiteboard text, no complex graphics, and no script - just honest discussion of SMB information security risk issues.