Zero Hour Podcast

Zero Hour Podcast

By Karl SharmanTechnology
Download on the App Store

Zero Hour Podcast episodes

  • Ian Edwards - From IT to Cybersecurity to Management
    Welcome to the latest episode of the ZeroHour Podcast and I’m your host Karl Sharman. Today we are joined by Ian Edwards. After leaving IT in 2017, he moved into Cybersecurity. After quick progressions, Ian was appointed as Information Security Manager for MEDICA Group in 2018 and leads the Information Security and Risk team, maintaining the Group’s information security and quality management systems and leading on risk management and cyber security strategy. In the relatively short space of time with the company Ian has driven a security transformation programme. Ian is also delivering a fresh and modern security awareness programme to further develop MEDICA’s ‘human firewall’.
    Key Minutes
    2:55 Hearing cybersecurity for the first time
    3:30 Working local over city life
    5:00 Getting to Medicaid
    5:38 Arriving on site for the first time
    6:46 Reporting lines
    08:09 Having oversight
    09:07 Stepping up to manage
    09:48 Challenges in management
    10:44 Time being a key issue in security
    11:48 Focusing on data protection as a business need
    12:45 How you learn regulations?
    14:32 How can Data Protection and Cybersecurity work together?
    16:35 Mitigating supply chain risk
    18:58 Communication with third parties
    20:40 How do you get senior buy in from a technical perspective?
    23:35 The importance of getting recognised through awards
    27:35 Planning your career ahead
    28:55 Prediction of industry changes
    32:10 Challenges around recruitment
    34:23 Ten Quick Fire Questions
    Key Findings
    - Smaller organisations can be behind the curve in data protection or Cybersecurity normally because they lack the expertise they require.
    - Reporting into the decision makers of the company is highly important to achieve success as a security department.
    - You have to focus your time on prioritising the business outcomes.
    You can find Ian at:
    LinkedIn: https://www.linkedin.com/in/iandvedwards/
    Company Website: http://www.medicagroup.co.uk
    Follow us:
    Twitter: @zero_hourpod
    Instagram: @zerohourexperience
    Website: www.beechermadden.com
    This podcast is sponsored by:
    BeecherMadden - www.beechermadden.com
    Cyber Security Professionals - www.cybersecurity-professionals.com
    43 min
  • Lisa Ventura - Cybersecurity, Autism & Women in the industry
    Welcome to the latest episode of the ZeroHour Podcast and I’m your host Karl Sharman. Today we are joined by Lisa Ventura. Lisa is an inspiring woman in the industry of cybersecurity and was recently in the top 50 women of influence. Currently the CEO and Founder the Cybersecurity Association, Lisa has been through a lot of great and testing experiences in her life including autism. We run through her rollercoaster story till 2019 where she was the winner of “Cybersecurity Personality of the Year” at the Cyber Security Awards.
    Key Minutes
    1:10 Lisa’s Italian heritage
    2:45 Education in writing
    4:30 Managing Chris Tarrant
    7:20 Practising your negotiating
    10:00 when did you first hear about cyber security?
    11:50 your first role in the industry
    14:58 Going through a divorce & multiple losses but still keep on track
    18:00 getting diagnosed with autism
    19:05 Moving past the mountains
    21:50 managing your time in a challenging time
    24:32 Focusing on cybersecurity within SME
    26:20 Working for yourself within cyber security
    28:15 Why is there momentum towards getting women in security?
    31:15 how will publications, events and book help inclusion?
    32:40 what can we do to help recruit more women?
    34:28 what real initiatives can company do to enhance more women into security?
    35:20 what one area would you focus on to improve participation?
    36:20 Lisa’s new book
    38:25 Getting diagnosed with Autism
    42:40 Approaching social situations with autism
    44:00 How should people change their approach to hiring when considering autism?
    45:10 Linking autism to women in security through promotion
    45:55 Not looking too far ahead
    49:15 Quickfire questions
    Key Findings
    - More women need to come forward to share positive experiences to help get others into the industry
    - There is still such a head in the sand approach to cybersecurity
    - Getting the diagnosis of autism helped Lisa to handle her previous loss and challenges.
    You can find Lisa at:
    Personal Website: www.lisaventura.co.uk
    Company Website: https://cybersecurityassociation.co.uk
    Blog: www.cybergeekgirl.co.uk
    Lisa is also available at Twitter and LinkedIn
    Follow us:
    Twitter: @zero_hourpod
    Instagram: @zerohourexperience
    Website: www.beechermadden.com
    This podcast is sponsored by:
    BeecherMadden - www.beechermadden.com
    Cyber Security Professionals - www.cybersecurity-professionals.com
    59 min
  • Scott Corzine - Consultant, Continunity & Consequences within cybersecurity
    Scott is the Senior Managing Director at Ankura Consulting Group and Co-Leader of the Risk Management Practice. His teams focus on the operational risk and resilience challenges of their clients in the areas of cybersecurity, business continuity and disaster recovery, and emergency and crisis management. They help clients understand their risk posture, improve their readiness, and become more resilient in the face of operational disruptions.
    Scott has previously held leadership roles with FTI Consulting & Risk Solutions International. Scott has worked with a variety of companies including Fortune 500 and mid-market companies in all sectors, government agencies and departments, airports, higher education institutions, and selected not-for-profits.
    KEY MINUTES
    2:30 - from marketing to cyber
    3:20 - the link from risk to resiliency
    4:36 - Crisis management and continuity fitting into cyber
    6:51 - Where are the issues?
    12:33 - What’s driving motivations to improve cybersecurity?
    18:35 - What is at the heart of most breaches?
    22:14 - Third party risk to your organisation
    25:35 - Focusing on how risk industries
    35:10 - OT vs IT recruitment within cyber
    39:55 - How do you make this all excitable?
    44:45 - Mergers & Acquisitions with an impact to cyber
    49:00 - Prioritising workload
    56:35 - How do you know when you’re finished with a client?
    61:25 - Choosing where you work?
    64:25 - Being a consultant
    66:01 - Getting into cybersecurity
    68:40 - Ten quick fire questions
    THREE KEY TAKEAWAYS
    - Human beings still remain in being the leading cause for most incidents.
    - The buck stops at the board. The board doesn’t normally hire cyber articulate people which needs to change.
    - In M&A, speed of deal is leading executives to have blinders on & not assessing correctly.
    You can find Scott at:
    LinkedIn: https://www.linkedin.com/in/scott-corzine-0121ab/
    Website: https://ankura.com/people/scott-corzine/
    Follow us:
    Twitter: @zero_hourpod
    Instagram: @zerohourexperience
    Website: www.beechermadden.com
    This podcast is sponsored by:
    BeecherMadden - www.beechermadden.com
    Cyber Security Professionals - www.cybersecurity-professionals.com
    1 hr 14 min
  • Doug Brush - Breaches, Theft & Incident Response
    Douglas is the Vice President of Cyber Security Solutions at Special Counsel, an Adecco company. Douglas and his teams provide incident response, governance, compliance, and end-to-end preventative security solutions for clients across the globe. He is also the founder and host of Cyber Security Interviews.
    Douglas has previously held leadership roles with Kivu Consulting, Kraft Kennedy, and Duff & Phelps after founding cybersecurity and technology consulting firms over the past two decades.
    he has conducted hundreds of investigations involving data breaches, trade secret theft, insider threat, and a variety of other legal and compliance issues.
    KEY MINUTES
    01:58 - Having parents working in consultancy
    04:28 - Self Education
    05:00 - First time finding cybersecurity
    06:00 - Entering cybersecurity
    08:00 - Difference between cyber investigations and incident response
    09:28 - Where are the incidents coming from?
    12:06 - Common mistakes from organisations
    13:29 - Insider Threat
    14:56 - Compliance landscape
    16:04 - Step by step guide to handle an incident
    20:33 - Speeding up detection
    22:06 - Moving quickly but effectively through an incident
    24:43 - Limiting damage to organisations
    28:23 - Disruption of new communication and storage technologies
    31:18 - Pressure from Consumers, regulators and investors
    33:13 - The meaning of cybersecurity
    34:23 - Making security more transparent
    36:03 - Dealing with the evolving threat
    37:53 - Coming out of your comfort zone
    40:11 - Learn as much as you can
    42:29 - Ten quick fire questions
    THREE KEY TAKEAWAYS
    - A lot of organisations feel if they don’t see a problem it doesn’t exist.
    - You have to know you are going to have an incident so you need to prepare your people for it
    - Organisations are not taking the time when doing cloud implementation to build in security or even an incident response process.
    You can find Doug at:
    LinkedIn: https://www.linkedin.com/in/douglasabrush/
    Website: https://cybersecurityinterviews.com/
    Podcast: https://cybersecurityinterviews.com/episodes/
    Follow us:
    Twitter: @zero_hourpod
    Instagram: @zerohourexperience
    Website: www.beechermadden.com
    This podcast is sponsored by:
    BeecherMadden - www.beechermadden.com
    Cyber Security Professionals - www.cybersecurity-professionals.com
    48 min
  • Allan Alford - The Business, Product & Security in the role of the CISO
    Welcome to the latest episode of the Zero Hour Podcast and I’m your host Karl Sharman. Today we are joined by Allan Alford. Allan is Chief Information Security Officer (CISO) at Mitel, previously CISO at Forcepoint and CISO at Polycom.  With 30 years’ experience in IT and Engineering, Alford has a long history with product security as well, having served as Pearson’s Product Information Security Officer (PISO), and as Sr. Director of Product Security at Polycom.
    KEY MINUTES
    2:20 - Things are not stable for the adults
    3:30 - Attending Harvard while at high school
    6:55 - Working to pay for your education
    8:20 - What cybersecurity means?
    9:50 - Making the transition from IT to Cyber
    10:58 - Making the transition from Product Security to CISO
    12:25 - Picking the right and best products
    14:38 - Cloud Security Transformation
    16:04 - Being in the role of the CISO
    16:53 - The first 90 days in being a new CISO
    19:57 - Communicating with board & C-Suite
    22:01 - Using metrics to deliver your budget
    24:10 - Moving away from security being seen as a cost centre
    26:30 - People first approach
    29:25 - Choosing Mitel
    30:55 - Branding Mitel in the cybersecurity industry
    32:00 - Constantly learning
    34:28 - Standing out as a vendor
    38:20 - Out of your comfort zone
    39:50 - Advice for individuals starting in the industry
    Three key takeaways
    - Educate and train your team
    - Never stay still, keep evolving
    - Find the business need first
    You can find Allan at:
    LinkedIn: https://www.linkedin.com/in/allanalford/
    Website: https://allanalford.com/about
    Podcast: https://podcasts.apple.com/no/podcast/defense-in-depth/id1450197741
    Follow us:
    Twitter: @zero_hourpod
    Instagram: @zerohourexperience
    Website: www.beechermadden.com
    This podcast is sponsored by:
    BeecherMadden - www.beechermadden.com
    Cyber Security Professionals - www.cybersecurity-professionals.com
    46 min
  • Tony Cole - Threat Detection, Deception & Intelligence
    Welcome to the latest episode of the Zero Hour Podcast and I’m your host Karl Sharman. Today we are joined by Tony Cole. Tony is a veteran within cybersecurity having served in senior positions at Symantec, McAfee and FireEye over a 30 year career. Tony is now the CTO for Attivo Networks, the award-winning leader in deception for cybersecurity threat detection as well as serving as a member of the NASA Advisory Council.
    Key Minutes:
    3:30 First time hearing about cybersecurity
    4:20 What does it mean to work in cyber?
    5:26 Working for FireEye, McAfee & Symantec
    12:27 Now CTO at Attivo, who & why?
    14:00 Delivering strategy
    15:30 Countering threat
    16:55 The meaning of adversary
    20:45 Leading with Threat Intelligence
    21:57 Prevention or Detection?
    24:08 Active Cyber Defense
    25:50 It won’t happen to me
    27:25 Countering the evolving threat
    29:20 Increasing budgets within cybersecurity
    31:32 What is deception?
    34:55 Finding room for regulations
    36:14 Relating to nation state risks
    39:40 Being a target in the Pentagon
    45:40 Being a leading figure within cybersecurity
    45:38 The best advice for a person coming into cybersecurity
    51:50 Ten Quick Fire Questions
    Key Points
    - An adversary focus can help us rebuild our security to ensure that even if they get in they are not successful
    - Make the adversary work harder to achieve their goals or make it difficult enough where they go after someone else instead.
    - It will happen to you, and it’s more likely happened to you already, as you have been focused on prevention over detection.
    You can find Tony at:
    LinkedIn: https://www.linkedin.com/in/wmtonycole/
    Twitter: https://twitter.com/NoHackn
    Follow us:
    Twitter: @zero_hourpod
    Instagram: @zerohourexperience
    Website: www.beechermadden.com
    This podcast is sponsored by:
    BeecherMadden - www.beechermadden.com
    Cyber Security Professionals - www.cybersecurity-professionals.com
    58 min
  • Parthasarathi Chakraborty - cybersecurity architecture, engineering & strategy
    Partha is the Director of Infrastructure Security Architecture at Bank of Montreal. Partha last week left Insurance company Guardian Life for a new exciting challenge at BMO in New York! Partha has worked at major organisations such as Bank of America and JP Morgan all within cyber security architecture, engineering and strategy. He has two Masters of Science within Technology and Cyber Security.
    Key Minutes
    03:10 - Getting into cybersecurity
    04:20 - Why engineering & architecture
    05:30 - Definition of Cybersecurity & AAA
    08:02 - Goal of Architecture
    10:42 - Changing cybersecurity architecture
    15:50 - How do you work across a large organisation to impact risk?
    19:00 - Banking to Insurance
    21:35 - Linking strategy to architecture
    23:30 - Prioritising what needs to be worked on
    25:21 - Managing a large number of customers for architecture
    27:20 - Implementing new technologies like Cloud
    28:22 - What do you class as a strong security framework?
    29:50 - Biggest challenges
    31:45 - What is your recommendation in securing funding for new roles or technologies?
    34:30 - What advice would you give to people looking to get into cybersecurity?
    37:00 - 10 Quick Fire Questions
    Key Points
    - AAA within cybersecurity: Awareness, agility & advanced technology
    - Be close to the business
    - Always plan and prioritise
    You can find Partha at:
    LinkedIn: https://www.linkedin.com/in/parthasarathi-chakraborty-baa24810/
    Follow us:
    Twitter: @zero_hourpod
    Instagram: @zerohourexperience
    Website: www.beechermadden.com
    This podcast is sponsored by:
    BeecherMadden - www.beechermadden.com
    Cyber Security Professionals - www.cybersecurity-professionals.com
    43 min
  • Nic Whittaker - the people, trust and transformation
    Nic is currently Head of Platform Engineering and Devops at Virgin Atlantic Airways. Nic started out as a chemistry teacher in the mid-nineties. Experimenting with designing molecular modelling webpages for his students led him to switch into a career in Technology in 2000. 
    He has worked across the development life cycle as a coder, a project and portfolio manager, a technical trainer, a solution and enterprise architect and in various delivery and operations leadership roles. He has worked in many industries including Manufacturing, Insurance, Film, Visual Effects and Broadcast.
    Key Minutes
    15:00 - Why Virgin?
    17:00 - The Virgin Brand and the people
    18:15 - Leading Devops
    20:00 - Why choose devops within transformation?
    23:00 - Why was devops a better way to go for Virgin?
    25:05 - Changing mindsets
    33:00 - Delivering to the executives or the leadership team
    39:55 - How a Third party supplier needs to act?
    44:00 - Are you more Dev or more ops?
    46:30 - Getting your hands dirty
    48:40 - Multi-delivering for success
    54:00 - Regular conversations with the business
    57:20 - The type of person you would hire
    58:30 - Ten quick fire questions
    Key Points
    - What should be consistent through any team or delivery is trust.
    - Put security throughout the whole project
    - Technology has to be delivering for the business.
    You can find Nic at:
    LinkedIn: https://www.linkedin.com/in/nic-whittaker-33a63a3/?originalSubdomain=uk
    Follow us:
    Twitter: @zero_hourpod
    Instagram: @zerohourexperience
    Website: www.beechermadden.com
    This podcast is sponsored by:
    BeecherMadden - www.beechermadden.com
    Cyber Security Professionals - www.cybersecurity-professionals.com
    1 hr 6 min
  • Thomas Fischer - Organisations vs Hackers, Threats & Phishing
    Thomas has more than 25 years of experience, he has a unique view on enterprise security with experience across multiple domains from policy and risk management, secure development and enterprise incident response and forensics. Thomas has held roles varying from a security architect for a large fortune 500 company to consultant for both industry vendors and consulting organizations. He is an active participant in the InfoSec Community including being a director of Security BSides London.
    Key Minutes:
    2:35 Meeting Cyber Security for the first time
    3:57 What is cyber security to you?
    5:55 Individuals leading to the biggest threat
    9:15 The most common threats
    11:55 Will the threats go away?
    13:00 How can we keep moving forwards to protect ourselves?
    14:55 What is the main objective of any attack?
    16:40 The more innovation is leaving us open to risk
    20:15 How do we make the business aware of the risk?
    24:00 What changes if you are communicating threats to the business?
    27:07 Finding vulnerabilities in the business
    28:14 What tools can be used to support this?
    31:48 Managing the threat
    33:52 How can individuals protect theirselves from the threats?
    35:23 What about events, can they lead to cyber attacks?
    37:53 Who will win hackers or organisations?
    39:45 Ten Quick Fire Questions
    Key Points:
    - Security has to be an enabler
    - An individual can be as destructive as a group
    - You need talented staff to protect the business
    - We can be in a better place by solving the simple issue.
    You can find Thomas at:
    Twitter: @fvt
    Follow us:
    Twitter: @zero_hourpod
    Instagram: @zerohourexperience
    Website: www.karlsharman.com
    This podcast is sponsored by:
    BeecherMadden - www.beechermadden.com
    Cyber Security Professionals - www.cybersecurity-professionals.com
    46 min
  • Tim Carmichael - Data, Smart Decisions & GDPR
    Tim is an award-winning C-Suite senior leader and champion of harnessing data to improve business outcomes. He is a strong believer in the power of the data narrative and the art of story-telling to enhance Board-level insight and in the need to bring data into the heart of the business. He was the British Army’s first Chief Data Officer and Chief Analytics Officer, before founding Ensifera Limited, a consultancy specialising in data, leadership and transformation. He was recently supporting Southern Water, as Head of Data Transformation.
    Key Minutes:
    02:25 - Learning in the environment of the Army
    03:10 - Transitioning into Data
    07:40 - How do you embed a vision with the use of data?
    09:25 - Driving insight
    11:10 - Is the success of an outcome linked to data?
    13:00 - What data can be used?
    15:10 - Financial value in ALL data
    17:50 - Delivering the message up to board level
    20:00 - Culture
    22:00 - Being a leader in the data world
    27:10 - How Important are people with this?
    30:05 - Recruiting similar to you
    31:15 - The gap between business and technology
    34:15 - How do you build a data culture?
    37:30 - The implementation of GDPR
    39:00 - What’s been Tim’s biggest success?
    40:15 - Ten quick fire questions
    Key Points:
    - You can link data together to provide better outcomes
    - It allows organisations to make better decisions throughout the processes
    - Guessing can lead to a more harmful culture
    You can find Tim at:
    LinkedIn: https://www.linkedin.com/in/tim-carmichael-link/
    Follow us:
    Twitter: @zero_hourpod
    Instagram: @zerohourexperience
    Website: www.karlsharman.com
    This podcast is sponsored by:
    BeecherMadden - www.beechermadden.com
    Cyber Security Professionals - www.cybersecurity-professionals.com
    45 min

About Zero Hour Podcast

From the publisher's feed

Welcome to the Zero Hour Podcast hosted by Karl Sharman and Karla Reffold, sponsored by Cyber Security Professionals. The podcast that speaks to the best talent in the cybersecurity industry. Each episode provides insights, techniques and tools required to be successful in the cybersecurity space. This podcast is now available on Stitcher, ITunes, SoundCloud and Spotify. Please follow our content at: