CISO Series Podcast - podcast cover

CISO Series Podcast

David Spark, Mike Johnson, and Andy Elliscisoseries.com
Discussions, tips, and debates from security practitioners and vendors on how to work better together to improve security for themselves and everyone else.

Episodes

I'll See Your Gated Whitepaper and Raise You One Fake Email Address

All links and images for this episode can be found on CISO Series ( https://cisoseries.com/ill-see-your-gated-whitepaper-and-raise-you-one-fake-email-address/ ) We're all in with not wanting "follow up email marketing" on the latest episode of CISO/Security Vendor Relationship Podcast. This episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and founder of Spark Media Solutions and Mike Johnson . Our guest this week is Ian Amit ( @iiamit ), CSO, Cimpress . Thanks to this we...

Oct 22, 201934 min

Rated #1 in Irresponsible Security Journalism

All links and images for this episode can be found on CISO Series ( https://cisoseries.com/rated-1-in-irresponsible-security-journalism/ ) No security alert is too small for us to completely misrepresent its severity. The sky is falling on the latest episode of CISO/Security Vendor Relationship Podcast . Thanks to this week's podcast sponsor, Zix. Zix simplifies administration and reporting with a single management interface. Configuring, deploying, and monitoring email security and unified arch...

Oct 15, 201934 min

Cybercrimes Solved in an Hour or Your Next One's Free

All links and images for this episode can be found on CISO Series ( https://cisoseries.com/cybercrimes-solved-in-an-hour-or-your-next-ones-free/ ) In the real world, cybercrimes just don't get solved as fast as they do on CSI . So we're offering a guarantee. If we don't catch the cyber-perpetrator in an hour (including commercial breaks) we'll make sure you're attacked again. This episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and founder of Spark Media Solutions and M...

Oct 08, 201931 min

Mapping Unsolvable Problems to Unattainable Solutions

All links and images for this episode can be found on CISO Series ( https://cisoseries.com/mapping-unsolvable-problems-to-unattainable-solutions/) We're busting out the Cyber Defense Matrix to see what our security program we'll never be able to achieve. This episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and founder of Spark Media Solutions and Mike Johnson . Our guest this week Sounil Yu ( @sounilyu ), former chief security scientist for Bank of America and creator o...

Oct 01, 201935 min

Wait… What? Good News in Cybersecurity?

All links and images for this episode can be found on CISO Series ( https://cisoseries.com/wait-what-good-news-in-cybersecurity/ ) On this episode of CISO/Security Vendor Relationship Podcast , cybercrime fails and we brag about it. This episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and founder of Spark Media Solutions and Mike Johnson . Our guest this week is Geoff Belknap ( @geoffbelknap ), CISO, LinkedIn . Mike Johnson, co-host, CISO/Security Vendor Relationship Po...

Sep 24, 201938 min

Serious Hackers Wear TWO Black Hoodies

All images and links for this episode can be found on CISO Series ( https://cisoseries.com/serious-hackers-wear-two-black-hoodies/ ) We're doubling down and embracing the absolute worst of hacker tropes. Put on your black hoodie and then a second one. Boot up your Matrix screensaver and listen to the latest episode of CISO/Security Vendor Relationship Podcast. This episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and founder of Spark Media Solutions and Mike Johnson . Ou...

Sep 17, 201938 min

CISO Confessions: "It's Not You. It's Me."

Links and images for this episode can be found on CISO Series ( https://cisoseries.com/ciso-confessions-its-not-you-its-me-/ ) Vendors are trying to understand why CISOs are ghosting them and sometimes, it really isn't their fault. CISOs accept the blame on the latest episode of CISO/Security Vendor Relationship Podcast. This episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and founder of Spark Media Solutions and joining me is special guest co-host Betsy Bevilacqua ( @H...

Sep 10, 201941 min

Getting Over Our "Security ≠ Compliance" Obsession

Links and images for this episode can be found on CISO Series ( https://cisoseries.com/getting-over-our-security-%e2%89%a0-compliance-obsession/ ) We repeat "Security ≠ Compliance" so often it's become our mantra. Does anyone pay attention to it anymore? We're unpacking our compulsion to keep saying it on the latest episode of CISO/Security Vendor Relationship Podcast. This episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and founder of Spark Media Solutions and Mike Joh...

Sep 03, 201931 min

Open this Email for an Exclusive Look at Our Clickable Web Links

All images and links for this episode can be found on CISO Series ( https://cisoseries.com/open-this-email-for-an-exclusive-look-at-our-clickable-web-links/) You'll be dazzled by the clickability of our web links on this week's episode of CISO/Security Vendor Relationship Podcast. This episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and founder of Spark Media Solutions and Mike Johnson . Our guest this week Aanchal Gupta ( @nchlgpt ), head of security for Calibra, Faceb...

Aug 27, 201938 min

Like Fine Wine Our Vendor BS Meter Gets Better with Age

All links and images for this episode can be found on CISO Series ( https://cisoseries.com/like-fine-wine-our-vendor-bs-meter-gets-better-with-age/) The bouquet of this particular vendor BS is a mixture of FUD, unnecessary urgency, and a hint of pecan. Look to your left and grab the spittoon because we don't expect everyone to swallow what you're about to hear on this week's episode of CISO/Security Vendor Relationship Podcast . This episode is hosted by me, David Spark ( @dspark ), producer of ...

Aug 20, 201939 min

If Capital One Listened to Our Podcast They Still Would Have Been Breached

All links and images for this episode can be found on CISO Series ( https://cisoseries.com/if-capital-one-listened-to-our-podcast-they-still-would-have-been-breached/) We guarantee listening to our show would have done absolutely nothing to prevent the Capital One breach. We've consulted our lawyers and we feel confident about making that claim. It's all coming up on this week's episode of CISO/Security Vendor Relationship Podcast. This episode was recorded in the ExtraHop booth during Black Hat...

Aug 13, 201932 min

Improve Security By Hiring People Who Know Everything

All links and images for this episode can be found on CISO Series ( https://cisoseries.com/improve-security-by-hiring-people-who-know-everything/ ) If you're having a hard time securing your infrastructure, then maybe you need to step up the requirements for expertise. Why not ask for everything? We're offering unreasonable advice on this week's episode of CISO/Security Vendor Relationship Podcast . This episode was recorded in front of a live audience at ADAPT's CISO Edge conference in Sydney, ...

Aug 06, 201944 min

Just Click "Accept" As We Explain Informed Consent

Find all images and links for this episode on CISO Series ( https://cisoseries.com/just-click-accept-as-we-explain-informed-consent/ ) Even if you do give "informed" consent, do you really understand what we're doing with your data? Heck, we don't know what we're going to do with it yet, but we sure know we want a lot of it. It's all coming up on this week's episode of CISO/Security Vendor Relationship Podcast. This episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and fo...

Jul 30, 201935 min

Who Are the Perfect Targets for Ransomware?

All images and links for this episode can be found on CISO Series ( https://cisoseries.com/who-are-the-perfect-targets-for-ransomware/ ) If you've got lots of critical data, a massive insurance policy, and poor security infrastructure, you might be a perfect candidate to be hit with ransomware. This week and this week only, it's an extortion-free episode of CISO/Security Vendor Relationship Podcast. This episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and founder of Spa...

Jul 23, 201935 min

Passwords So Good You Can't Help But Reuse Them

All links and images for this episode can be found on CISO Series ( https://cisoseries.com/passwords-so-good-you-cant-help-but-reuse-them/ ) We've just fallen in love with our passwords we just want to use them again and again and again. Unfortunately, some companies more interested in security aren't letting us do that. We discuss on the latest episode of CISO/Security Vendor Relationship Podcast . This episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and founder of Spa...

Jul 16, 201937 min

Please Don't Investigate Our Impeccable Risk Predictions

All links and images for this episode can be found at CISO Series ( https://cisoseries.com/please-dont-investigate-our-impeccable-risk-predictions/ ) It's easy to calculate risk if no one ever checks the accuracy of those predictions after the fact. It's all coming up on CISO/Security Vendor Relationship Podcast. This episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and founder of Spark Media Solutions and Mike Johnson . Our sponsored guest this week is Bob Huber ( @bone...

Jul 01, 201934 min

CISO Series One Year Review

Links and images for this episode can be found on CISO Series ( https://cisoseries.com/defense-in-depth-ciso-series-one-year-review/) The CISO/Security Vendor Relationship Podcast is now more than a year old. On this episode, the hosts of both podcasts, reflect on the series and we respond to listeners critiques, raves, and opinions. Check out this post and this post for the basis of our conversation on this week’s episode co-hosted by me, David Spark ( @dspark ), the creator of CISO Series and ...

Jun 25, 201929 min

Worst Question Award Goes to "How Secure Are We?"

Images and links for this episode can be found at CISO Series ( https://cisoseries.com/worst-question-award-goes-to-how-secure-are-we/ ) We've got better ways to determine the overall quality of your security posture than asking this unanswerable question. It's all coming up on CISO/Security Vendor Relationship Podcast . This episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and founder of Spark Media Solutions and Mike Johnson . Our guest this week is Helen Patton ( @osu...

Jun 20, 201933 min

You're Not Going Anywhere Until You Clean Up That Cyber Mess

The images and links for this episode can be found at CISO Series ( https://cisoseries.com/youre-not-going-anywhere-until-you-clean-up-that-cyber-mess/ ) Our CISOs and Miss Manners have some rules you should follow when leaving your security program to someone else. It's all coming up on CISO/Security Vendor Relationship Podcast . This episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and founder of Spark Media Solutions and Mike Johnson . Our guest this week is newly fre...

Jun 18, 201933 min

We Take Privacy, Not Our CISO, Seriously

All pictures and links for this episode can be found on CISO Series ( https://cisoseries.com/we-take-privacy-not-our-ciso-seriously/ ) We're looking for the one company brave enough to say they don't care about privacy on the latest episode of CISO/Security Vendor Relationship Podcast . This episode was recorded live on June 6th at The B.O.B. in Grand Rapids, Michigan at the 2019 West Michigan IT Summit , hosted by C3 Technology Advisors . This episode is hosted by me, David Spark ( @dspark ), p...

Jun 11, 201946 min

Do These Jeans Make My Vulnerabilities Look Too Big?

Full episode with images and links available at CISO Series ( https://cisoseries.com/do-these-jeans-make-my-vulnerabilities-look-too-big/ ) We're starting to get a little self-conscious that our vulnerabilities are starting to show. People we don't even know are telling us we have them on the latest episode of CISO/Security Vendor Relationship Podcast . This episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and founder of Spark Media Solutions and Mike Johnson . Our guest...

Jun 03, 201932 min

Great Demo! Let's Schedule a Time to Ignore Your Follow Up

All links and images for this episode can be found on CISO Series ( https://cisoseries.com/great-demo-lets-schedule-a-time-to-ignore-your-follow-up/ ) We're playing hard to get on the latest episode of CISO/Security Vendor Relationship Podcast . This episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and founder of Spark Media Solutions and Mike Johnson . Our guest this week is Al Ghous , head of cloud security at GE Digital . Thanks to this week's podcast sponsor Carbon B...

May 28, 201931 min

We Unleash Our Military Grade InfoSec BS Detector

Find all images and links for this episode on CISO Series ( https://cisoseries.com/we-unleash-our-military-grade-infosec-bs-detector/ ) We're trying to clean up vendor pitches of unnecessary and outrageous claims so they can sail through to a CISO's inbox. It's our service to cybersecurity community on this week's episode of CISO/Security Vendor Relationship Podcast . This show was recorded live in front of an audience of CISOs and security vendors at the San Francisco CISO Executive Summit , ho...

May 21, 201928 min

What's Worse?! "Culture of No" or No Culture?

See all links and images for this episode on CISO Series ( https://cisoseries.com/whats-worse-culture-of-no-or-no-culture/ ) We want to put an end to InfoSec negativity, but not at the sacrifice of the soul of the company. We're weighing our options on this week's episode of CISO/Security Vendor Relationship Podcast . This show, like all the previous ones is hosted by me, David Spark ( @dspark ), founder of Spark Media Solutions and Mike Johnson . Our guest this week is Sean Catlett , CISO of Re...

May 11, 201933 min

Our "What Not to Do" Security Selling Secret

Check out all links and images for this episode on CISO Series ( https://cisoseries.com/our-what-not-to-do-security-selling-secret/ ) We're not always clear on what vendors should do when selling security products, but when we get a really bad email pitch, we're very clear on what they should not do. We're bedazzled with bad pitch disbelief on this episode of CISO/Security Vendor Relationship Podcast . Thanks to this week's sponsor, Women in Security and Privacy (WISP) Women in Security and Priv...

May 06, 201932 min

We're Gonna Run These Pen Test Exercises Until You Turn Purple

Find all the links and images on CISO Series ( https://cisoseries.com/were-gonna-run-these-pen-test-exercises-until-you-turn-purple/ ) We learn to iterate our security stamina faster by bringing the attackers and defenders in the room together. We're seeing purple on this episode of CISO/Security Vendor Relationship Podcast. This show, like all the previous ones is hosted by me, David Spark ( @dspark ), founder of Spark Media Solutions and Mike Johnson . Our guest this week is Matt Southworth ( ...

Apr 30, 201932 min

Vulnerability Management

This is a special episode of Defense in Depth being shared on this feed. Find the full post with links and images on the CISO Series site here ( https://cisoseries.com/defense-in-depth-vulnerability-management/ ) So many breaches happen through ports of known vulnerabilities. What is the organizational vulnerability in vulnerability management? Check out this post and discussion and this one for the basis of our conversation on this week’s episode co-hosted by me, David Spark ( @dspark ), the cr...

Apr 25, 201922 min

I'm Humbled to Tell You About My Prestigious Award

Find the full episode of this podcast (with links and images) on the CISO Series site right here: ( https://cisoseries.com/im-humbled-to-tell-you-about-my-prestigious-award/ ) I'm not exactly sure what "humbling" means, but I'm going to use it to hopefully soften my braggadocio announcement. We discuss semantics and when it's OK to boast your accomplishments on this week's episode of CISO/Security Vendor Relationship Podcast . This show, like all the previous ones is hosted by me, David Spark ( ...

Apr 23, 201931 min

No Shirt. No Security. No Merger.

Episode available on CISO Series blog ( https://cisoseries.com/no-shirt-no-security-no-merger/) Sure, we'd like to merge with your company but geez, have you looked at your security posture lately? Uggh. I don't know if I could be seen in public with your kind let alone acquire your type. We're wary as to who wants to enter our digital home on this week's episode of CISO/Security Vendor Relationship Podcast . This show, like all the previous ones is hosted by me, David Spark ( @dspark ), founder...

Apr 16, 201935 min

Machine Learning Failures

Full post for this episode ( https://cisoseries.com/defense-in-depth-machine-learning-failures/ ) NOTE : You're seeing this special episode of Defense in Depth, because we think our CISO/Security Vendor Relationship Podcast listeners should hear it. Is garbage in, garbage out the reason for machine learning failures? Or is there more to the equation? Check out this post and discussion for the basis of our conversation on this week’s episode co-hosted by me, David Spark ( @dspark ), the creator o...

Apr 10, 201932 min