Category: CISO Series

  • I Have So Little. Just Let Me Control Access to the Mail Server.

    I Have So Little. Just Let Me Control Access to the Mail Server.

    https://cisoseries.com/will-employees-eventually-violate-security-policies/ This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Andy Ellis (@csoandy), operating partner, YL Ventures. Our sponsored guest is Jadee Hanson (@jadeehanson), CIO/CISO, Code42. Full transcript [Voiceover] 10-second security tip, go! [Jadee Hanson] When you see an employee put company data at risk, don’t assume it was done maliciously. Remind yourself that collaboration tools of…

  • Gartner Creates Another Category for Everyone to Ignore

    Gartner Creates Another Category for Everyone to Ignore

    https://cisoseries.com/gartner-creates-another-category-for-everyone-to-ignore/ This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Andy Ellis (@csoandy), operating partner, YL Ventures. Our sponsored guest is RJ Friedman, CISO, Buchanan Technologies. Full transcription [Voiceover] Biggest mistake I ever made in security. Go! [RJ Friedman] The biggest mistake I’ve ever made in cyber security was assuming that everyone else cared as much as I…

  • Decommission Our Legacy Tech or Just Shut Down the Business?

    Decommission Our Legacy Tech or Just Shut Down the Business?

    https://cisoseries.com/decommission-our-legacy-tech-or-just-shut-down-the-business/ This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Andy Ellis (@csoandy), operating partner, YL Ventures. Our guest is TJ Mann (@teejaymann), CISO, Children’s Mercy Kansas City. Full transcriptI [Voiceover] Best advice I ever got in security. Go! [TJ Mann] Your data is your most valuable asset. Be careful who you share with your data with, and what…

  • Life’s Certainties: Death, Taxes, and Violating Security Policies

    Life’s Certainties: Death, Taxes, and Violating Security Policies

    https://cisoseries.com/lifes-certainties-death-taxes-and-violating-security-policies/ This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Andy Ellis (@csoandy), operating partner, YL Ventures. Our guest is Bruce Schneier (@schneierblog), chief of security architecture, Inrupt and fellow and lecturer at Harvard Kennedy School. Full transcript [Voiceover] Best advice for a CISO. Go! [Bruce Schneier] I teach a class in cyber security policy at the Harvard Kennedy School, basically…

  • Why CISOs Avoid the Dreaded “Request a Demo” Button

    Why CISOs Avoid the Dreaded “Request a Demo” Button

    https://cisoseries.com/why-cisos-avoid-the-dreaded-request-a-demo-button/ This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Andy Ellis (@csoandy), operating partner, YL Ventures. Our guest is Jim Routh (@jmrouth1), former CISO for MassMutual and CVS/Aetna. Full transcription [Voiceover] Biggest mistake I ever made in security. Go! [Jim Routh] The biggest mistake in security was actually following and meeting stakeholder expectations. Specifically the board and…

  • What’s Next in Cybersecurity? Look at Last Year and Expect More

    What’s Next in Cybersecurity? Look at Last Year and Expect More

    https://cisoseries.com/whats-next-in-cybersecurity-look-at-last-year-and-expect-more/ This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Andy Ellis (@csoandy), operating partner, YL Ventures. Our sponsored guest is Ori Arbel, CTO, CYREBRO. Full transcript [Voiceover] 10-second security tip. Go! [Ori Arbel] After you bought it, that’s awesome, but make sure you set it up properly. In a month or two months’ time, go back, revisit…

  • Are You Attending the “What to Worry About Next” Security Conference?

    Are You Attending the “What to Worry About Next” Security Conference?

    https://cisoseries.com/are-you-attending-the-what-to-worry-about-next-security-conference/ This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Andy Ellis (@csoandy), operating partner, YL Ventures. Our guest is Jason Witty, CSO, USAA. Full transcript [Voiceover] Best advice for a CISO. Go! [Jason Witty] Don’t try to prevent everything. I would spend probably about roughly 40 to 45% of your budget on prevention. Probably more like 40…

  • How to Be So Awesome CISOs Can’t Ignore You

    How to Be So Awesome CISOs Can’t Ignore You

    https://cisoseries.com/how-to-be-so-awesome-cisos-cant-ignore-you/ This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Andy Ellis (@csoandy), operating partner, YL Ventures. Our guest is Katie Stebbins (@ktlgs), board president, Global Epic. Full transcript [Voiceover] Ten second security tip. Go. [Katie Stebbins] Make cyber security friends, not enemies, inside your organization. Be friends with the people trying to help you do responsible cyber security.…

  • If the Network Is Up, Somebody Is Violating Our Acceptable Use Policy

    If the Network Is Up, Somebody Is Violating Our Acceptable Use Policy

    https://cisoseries.com/if-the-network-is-up-somebody-is-violating-our-acceptable-use-policy/ This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Andy Ellis (@csoandy), operating partner, YL Ventures. Our sponsored guest is Matt Radolec, senior director, incident response and cloud operations, Varonis. Full transcript [Voiceover] Ten-second security tip, go! [Andy Ellis] There’s a tendency in cyber to overemphasize specific IOCs, and we’re seeing this a lot with Log4j and…

  • CISO Series: What We Lack In Security We’ll Make Up in School Spirit

    CISO Series: What We Lack In Security We’ll Make Up in School Spirit

    https://cisoseries.com/what-we-lack-in-security-well-make-up-in-school-spirit/ This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Andy Ellis (@csoandy), operating partner, YL Ventures. Our guest is Dave Stirling, CISO, Zions Bancorporation. Full transcript [Voiceover] Ten-second security tip, go! [Dave Stirling] How do you know your managers are being thoughtful about certifying their users’ access rather than just rubber-stamping the recertification request? So, you can…