The Virtual CISO Moment

The Virtual CISO Moment

By Greg SchafferTechnology
Download on the App Store

The Virtual CISO Moment episodes

  • VCM Quick Strike for Monday, June 13, 2022

    A third of organizations hit by ransomware were forced to close temporarily or permanently, job cuts hit cybersecurity industry despite surging growth from ransomware attacks, four signs you may be ignoring your health for your career, and Cyber Security for Small Organisations webinar.

    • https://www.techrepublic.com/article/organizations-hit-by-ransomware-shut-down/
    • https://www.cnbc.com/2022/06/10/job-cuts-hit-cybersecurity-firms-despite-surging-growth-from-attacks.html
    • https://www.reefguardian.org/health-for-your-career/
    • https://ncsc-production.microsoftcrmportals.com/event/sessions?id=Digital_Loft_Template3613648229
    • 14 min
    • The Virtual CISO Moment Wrap Up for Friday, June 10, 2022

      Small businesses aren't ready for a cyberattack, security leaders metrics and reporting, cloud migration, NIST supply chain guidance.

      • https://www.cnbc.com/2022/05/21/americas-small-businesses-arent-ready-for-a-cyberattack.html
      • https://biztechmagazine.com/article/2022/05/how-should-cybersecurity-leaders-report-their-progress
      • https://securityboulevard.com/2022/06/six-things-to-check-before-moving-to-the-cloud-to-avoid-pitfalls-in-the-long-run/
      • https://www.helpnetsecurity.com/2022/05/06/cybersecurity-supply-chain-risk/
      • 16 min
      • VCM Quick Strike for Monday, June 6, 2022

        Unpacking the Verizon Data Breach Investigations Report, a new "Man on the Side" attack (and what is that?),  this week's resource highlight - InfoSecSherpa, and "paying your dues".

        • https://securityboulevard.com/2022/06/verizon-dbir-2022-whats-worth-acting-on/
        • https://thehackernews.com/2022/06/chinese-luoyu-hackers-using-man-on-side.html
        • https://en.wikipedia.org/wiki/Man-on-the-side_attack
        • https://infosecsherpa.medium.com/
        • 14 min
        • The Virtual CISO Moment Wrap Up for Friday, June 3, 2022

          Confluence zero day, Microsoft zero day exploitation example, Ransomware roundup, and my reaction to a LinkedIn post about virtual CISO services that went semi-viral for the wrong reasons.

          We need to do better in the virtual CISO space.

          • https://www.volexity.com/blog/2022/06/02/zero-day-exploitation-of-atlassian-confluence/
          • https://msrc-blog.microsoft.com/2022/05/30/guidance-for-cve-2022-30190-microsoft-support-diagnostic-tool-vulnerability/
          • https://techcrunch.com/2022/06/01/china-backed-hackers-are-exploiting-unpatched-microsoft-zero-day/
          • https://www.csoonline.com/article/3662038/ransomware-roundup-system-locking-malware-dominates-headlines.html
          • 18 min
          • The Virtual CISO Moment S4E22 - A Conversation with Rob Black

            Rob Black, Founder and CEO of Fractional CISO (https://fractionalciso.com) talks about providing fractional/virtual CISO services to midsized SaaS technical organizations as well as other businesses, his story of starting Fractional CISO, and how he sees the SMB threat environment.

            26 min
          • VCM Quick Strike for Monday, May 30, 2022

            Microsoft Zero Day, CISA adds 75 vulns to critical list, and cybersecurity as Corporate Social Responsibility.

            Today we honor all who gave their life for freedom.

            • https://thehackernews.com/2022/05/watch-out-researchers-spot-new.html
            • https://www.forbes.com/sites/daveywinder/2022/05/26/us-cybersecurity-agency-strongly-urges-you-patch-these-75-actively-exploited-flaws/?sh=7c03a1b26381
            • https://venturebeat.com/2022/05/26/cybersecurity-is-a-corporate-social-responsibility-especially-in-times-of-war/
            • 9 min
            • The Virtual CISO Moment Wrap Up for Friday, May 27, 2022

              Verizon DBIR, 10 exploited access points, email is still a problem (surprise), four tips for entry-level cyber analysts, and ransomware with a twist.

              Be kind to each other. Please.

              • https://www.verizon.com/business/resources/reports/2022/dbir/2022-data-breach-investigations-report-dbir.pdf
              • https://www.securitymagazine.com/articles/97676-cisa-outlines-10-initial-access-points-exploited-by-hackers
              • https://www.scmagazine.com/analysis/email-security/employees-email-still-drives-most-of-the-data-loss-at-organizations
              • https://www.redglobal.com/news-blog/cybersecurity-jobs-4-tips-every-budding-cybersecurity-analyst-should-know
              • https://www.tripwire.com/state-of-security/security-data-protection/ransomware-demands-acts-of-kindness-to-get-your-files-back/
              • 13 min
              • The Virtual CISO Moment S4E21 - A Conversation with Kyle Cravens

                Kyle Cravens, Founder/Managing Principal of the staffing and recruiting firm Key Resource Group, LLC (https://www.krgnow.com/), joins us to discuss the IT and Information Security recruiting environment including tips on how a candidate can improve their chances of landing the position; how COVID and remote work has changed the environment, and how his faith guides his journey.

                24 min

              About The Virtual CISO Moment

              From the publisher's feed

              The Virtual CISO Moment dives into the stories of information security, information technology, and risk management pros; what drives them and what makes them successful while helping small and midsized business (SMB) security needs. No frills, no glamour, no transparent whiteboard text, no complex graphics, and no script - just honest discussion of SMB information security risk issues.