Category: CISO Series

  • I Have So Little. Just Let Me Control Access to the Mail Server.

    I Have So Little. Just Let Me Control Access to the Mail Server. This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Andy Ellis (@csoandy), operating partner, YL Ventures. Our sponsored guest is Jadee Hanson (@jadeehanson), CIO/CISO, Code42. Full transcript [Voiceover] 10-second security tip, go! [Jadee Hanson] When you see an employee put company data at risk, don’t assume it was done maliciously. Remind yourself that collaboration tools of…

  • Gartner Creates Another Category for Everyone to Ignore

    Gartner Creates Another Category for Everyone to Ignore This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Andy Ellis (@csoandy), operating partner, YL Ventures. Our sponsored guest is RJ Friedman, CISO, Buchanan Technologies. Full transcription [Voiceover] Biggest mistake I ever made in security. Go! [RJ Friedman] The biggest mistake I’ve ever made in cyber security was assuming that everyone else cared as much as I…

  • Decommission Our Legacy Tech or Just Shut Down the Business?

    Decommission Our Legacy Tech or Just Shut Down the Business? This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Andy Ellis (@csoandy), operating partner, YL Ventures. Our guest is TJ Mann (@teejaymann), CISO, Children’s Mercy Kansas City. Full transcriptI [Voiceover] Best advice I ever got in security. Go! [TJ Mann] Your data is your most valuable asset. Be careful who you share with your data with, and what…

  • Life’s Certainties: Death, Taxes, and Violating Security Policies

    Life’s Certainties: Death, Taxes, and Violating Security Policies This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Andy Ellis (@csoandy), operating partner, YL Ventures. Our guest is Bruce Schneier (@schneierblog), chief of security architecture, Inrupt and fellow and lecturer at Harvard Kennedy School. Full transcript [Voiceover] Best advice for a CISO. Go! [Bruce Schneier] I teach a class in cyber security policy at the Harvard Kennedy School, basically…

  • Why CISOs Avoid the Dreaded “Request a Demo” Button

    Why CISOs Avoid the Dreaded “Request a Demo” Button This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Andy Ellis (@csoandy), operating partner, YL Ventures. Our guest is Jim Routh (@jmrouth1), former CISO for MassMutual and CVS/Aetna. Full transcription [Voiceover] Biggest mistake I ever made in security. Go! [Jim Routh] The biggest mistake in security was actually following and meeting stakeholder expectations. Specifically the board and…

  • What’s Next in Cybersecurity? Look at Last Year and Expect More

    What’s Next in Cybersecurity? Look at Last Year and Expect More This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Andy Ellis (@csoandy), operating partner, YL Ventures. Our sponsored guest is Ori Arbel, CTO, CYREBRO. Full transcript [Voiceover] 10-second security tip. Go! [Ori Arbel] After you bought it, that’s awesome, but make sure you set it up properly. In a month or two months’ time, go back, revisit…

  • Are You Attending the “What to Worry About Next” Security Conference?

    Are You Attending the “What to Worry About Next” Security Conference? This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Andy Ellis (@csoandy), operating partner, YL Ventures. Our guest is Jason Witty, CSO, USAA. Full transcript [Voiceover] Best advice for a CISO. Go! [Jason Witty] Don’t try to prevent everything. I would spend probably about roughly 40 to 45% of your budget on prevention. Probably more like 40…

  • How to Be So Awesome CISOs Can’t Ignore You

    How to Be So Awesome CISOs Can’t Ignore You This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Andy Ellis (@csoandy), operating partner, YL Ventures. Our guest is Katie Stebbins (@ktlgs), board president, Global Epic. Full transcript [Voiceover] Ten second security tip. Go. [Katie Stebbins] Make cyber security friends, not enemies, inside your organization. Be friends with the people trying to help you do responsible cyber security.…

  • If the Network Is Up, Somebody Is Violating Our Acceptable Use Policy

    If the Network Is Up, Somebody Is Violating Our Acceptable Use Policy This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Andy Ellis (@csoandy), operating partner, YL Ventures. Our sponsored guest is Matt Radolec, senior director, incident response and cloud operations, Varonis. Full transcript [Voiceover] Ten-second security tip, go! [Andy Ellis] There’s a tendency in cyber to overemphasize specific IOCs, and we’re seeing this a lot with Log4j and…

  • CISO Series: What We Lack In Security We’ll Make Up in School Spirit

    CISO Series: What We Lack In Security We’ll Make Up in School Spirit This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Andy Ellis (@csoandy), operating partner, YL Ventures. Our guest is Dave Stirling, CISO, Zions Bancorporation. Full transcript [Voiceover] Ten-second security tip, go! [Dave Stirling] How do you know your managers are being thoughtful about certifying their users’ access rather than just rubber-stamping the recertification request? So, you can…