• Where Are Secure Web Gateways Falling Short?
    May 16 2024

    All links and images for this episode can be found on CISO Series.

    Check out this post for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark (@dspark), the producer of CISO Series, and Steve Zalewski. Joining us is our sponsored guest, Vivek Ramachandran, founder, SquareX.

    In this episode:

    • Are secure web gateways still an effective tool in the enterprise?

    • As the browser has changed a lot in the last decade, are Secure Web Gateways - SWGs still keeping up?

    • Why is this a problem?

    • Does anyone have a better solution?

    Thanks to our podcast sponsor, SquareX

    SquareX helps organizations detect, mitigate and threat-hunt web attacks happening against their users in real-time, including but not limited to malicious sites, files, scripts, and networks.

    Find out more at sqrx.com.

    Show more Show less
    28 mins
  • Understanding the Zero-Trust Landscape
    May 9 2024

    All links and images for this episode can be found on CISO Series.

    Check out this post for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark (@dspark), the producer of CISO Series, and Geoff Belknap (@geoffbelknap), CISO, LinkedIn. Joining me is our guest Richard Stiennon, chief research analyst, IT-Harvest.

    In this episode:

    In this episode:

    • Why do so many vendors claim to offer zero-trust solutions?

    • Is that framework even applicable to some product categories?

    • Do your eyes roll when you hear "zero trust solution"?

    • What do most people think it is, and what’s the reality?

    Thanks to our podcast sponsor, SquareX

    SquareX helps organizations detect, mitigate and threat-hunt web attacks happening against their users in real-time, including but not limited to malicious sites, files, scripts, and networks.

    Find out more at sqrx.com.

    Show more Show less
    31 mins
  • Scaling Least Privilege for the Cloud
    May 2 2024

    All links and images for this episode can be found on CISO Series.

    Check out this post for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark (@dspark), the producer of CISO Series, and Geoff Belknap (@geoffbelknap), CISO, LinkedIn. Joining us is our sponsored guest, Sandy Bird, co-founder and CTO, Sonrai Security.

    In this episode:

    • Why does scaling least privilege in the cloud remain challenging?

    • Is throwing more people at the problem feasible?

    • How are you managing it?

    • What aspects haven’t been considered?

    Thanks to our podcast sponsor, Sonrai Security

    A one-click solution that removes excessive permissions and unused services, quarantines unused identities, and restricts specific regions within the cloud. Later, maintain this level of security by automatically enforcing policies as new accounts, roles, permissions, and services are added to your environment.

    Start a free trial today! sonrai.co/ciso

    Show more Show less
    35 mins
  • Should CISOs Be More Empathetic Towards Salespeople?
    Apr 25 2024

    All links and images for this episode can be found on CISO Series.

    Check out this post for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark (@dspark), the producer of CISO Series, and Geoff Belknap (@geoffbelknap), CISO, LinkedIn. Joining me is our guest, Emily Heath, general partner, Cyberstarts.

    In this episode:

    • How do CISOs feel about sales pitches?

    • Do they have legitimate complaints?

    • When do these legitimate complaints cross the line to sounding entitled?

    • Do CISOs need to show a little more empathy to sales?

    Thanks to our podcast sponsor, SquareX

    SquareX helps organizations detect, mitigate and threat-hunt web attacks happening against their users in real-time, including but not limited to malicious sites, files, scripts, and networks.

    Find out more at sqrx.com.

    Show more Show less
    35 mins
  • Managing Data Leaks Outside Your Perimeter
    Apr 18 2024

    All links and images for this episode can be found on CISO Series.

    Check out this post for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark (@dspark), the producer of CISO Series, and Geoff Belknap (@geoffbelknap), CISO, LinkedIn. Joining me is our sponsored guest, Mackenzie Jackson, developer advocate, GitGuardian.

    In this episode:

    • How to manage data leaks outside your perimeter?

    • When data leaks increasingly come from third-parties, what can you do to protect your organization?

    • How do we even begin to address this problem?

    • Is there a one size fits all fix?

    Thanks to our podcast sponsor, GitGuardian

    GitGuardian is a Code Security Platform that caters to the needs of the DevOps generation. It provides a wide range of code security solutions, including Secrets Detection, Infra as Code Security, and Honeytoken, all in one place. A leader in the market of secrets detection and remediation, its solutions are already used by hundreds of thousands of developers in all industries. Try now gitguardian.com

    Show more Show less
    30 mins
  • What Are the Risks of Being a CISO?
    Apr 11 2024

    All links and images for this episode can be found on CISO Series.

    Check out this post for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark (@dspark), the producer of CISO Series, and Geoff Belknap (@geoffbelknap), CISO, LinkedIn. Joining me is our guest, Phil Davis, attorney, healthcare cybersecurity and privacy, Hall Render.

    In this episode:

    • In today's current climate, is the role of the CISO still worth it?

    • Does the position carry a lot of potential liability?

    • Do the upsides still outweigh the risks?

    • Do CISOs tend to have more responsibility than authority?

    Thanks to our podcast sponsor, Sonrai Security

    A one-click solution that removes excessive permissions and unused services, quarantines unused identities, and restricts specific regions within the cloud. Later, maintain this level of security by automatically enforcing policies as new accounts, roles, permissions, and services are added to your environment.

    Start a free trial today! sonrai.co/ciso

    Show more Show less
    36 mins
  • Onboarding Security Professionals
    Apr 4 2024

    All links and images for this episode can be found on CISO Series.

    Check out this post for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark (@dspark), the producer of CISO Series, and Geoff Belknap (@geoffbelknap), CISO, LinkedIn. Joining me is our guest, Paul Connelly, former CISO, HCA HealthcareGot feedback?

    In this episode:

    • How important is onboarding new cyber talent?

    • Does it set the tone for their tenure with your organization?

    • What should CISOs do to make sure onboarding is effective for both sides?

    • What are the mistakes CISOs should avoid, and what are the best ways to excel?

    Thanks to our podcast sponsor, OffSec

    OffSec helps companies like Cisco, Google, and Salesforce upskill cybersecurity talent through comprehensive training and resources. With programs ranging from red team and blue team training and more, your team will be ready to face real-world threats. Request a free trial for your team to explore OffSec’s learning library and cyber range.

    Show more Show less
    31 mins
  • How to Improve Your Relationship With Your Boss
    Mar 28 2024

    All links and images for this episode can be found on CISO Series.

    Check out this post Monte Pedersen of The CDA Group for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark (@dspark), the producer of CISO Series, and Geoff Belknap (@geoffbelknap), CISO, LinkedIn. Joining us is our guest, Jerry Davis, division director for cyber defense at Truist Bank.

    In this episode:

    • Why does advancing your career require more than just technical skills?

    • Does it require you to build relationships within your organizations, particularly with your boss?

    • How can you consciously build these relationships with an eye to leveling up your career?

    • How do you develop soft skills?

    Thanks to our podcast sponsor, OffSec

    OffSec helps companies like Cisco, Google, and Salesforce upskill cybersecurity talent through comprehensive training and resources. With programs ranging from red team and blue team training and more, your team will be ready to face real-world threats. Request a free trial for your team to explore OffSec’s learning library and cyber range.

    Show more Show less
    29 mins