Security Confidential provides weekly interviews and insights into the world of cybersecurity. Produced entirely in-house by MSSP & global risk management firm Dark Rhino Security.
Mark Kreitzman is a cybersecurity leader with more than two decades of experience building security companies and protecting organizations from emerging threats. Mark is currently the Chief Cyber Evangelist at Efani, where he's focused on securing one of the most overlooked attack surfaces we all carry every day: our mobile phones. After becoming the victim of a SIM swap attack, Mark turned that experience into a mission to educate others about mobile identity theft, privacy, and why your phone may be your biggest cybersecurity risk.
00:00 Introduction to Mark Kreitzman and Mobile Security05:20 Mark's Journey into Cybersecurity and Mobile Tech10:45 The Dot Com Bubble and Mobile Industry Evolution13:37 Legal Challenges and Industry Liability in SIM Swapping18:32 Why Industry Costs Make Security Expensive12:15 The Role of Social Engineering and Insider Threats25:47 Impact of Mobile Hacks on Major Institutions29:54 Global Mobile Coverage and Wi-Fi Calling Features33:11 Cost Comparison: Efani vs Major Carriers40:00 Special Offer for Listeners and Future Topics
David is a veteran cybersecurity executive with more than 30 years of experience and currently serves as Chief Information Security Officer after previously leading Oracle's SaaS Cloud Security organization. David has held leadership roles at Microsoft and Google Cloud, helping build and secure some of the world's largest cloud platforms. He's also a former U.S. Navy electronic warfare specialist, an inventor with more than 30 security patents, and now serves as both a Chief Information Security Officer and Venture Partner.
00:00 Intro
02:50 Our Guest
05:50 The Evolution of Technology and Coding
10:55 AI's Role in Software Development and Security
16:07 DevSecOps and Cloud Security Architecture
18:35 The Future of Vulnerabilities and Human Factors in Cybersecurity
21:22 The Value of Veterans in Cybersecurity
22:21 Maturing Organizations in Cybersecurity
23:20 Understanding Risk and Maturity Models
24:51 Simplicity in Cybersecurity Practices
25:27 Challenges for Small and Medium Enterprises
27:05 Adopting AI in Organizations
29:58 Data Leakage Prevention Strategies
32:01 Third Party Risk Management
35:02 Concerns with Embedded Systems
37:50 Emerging Threats in Cybersecurity
39:58 The Future of Cyber Threats
43:27 Leveraging AI for Enhanced Capabilities
Bronwen Aker is an AI Security Strategist and cybersecurity expert who works at the intersection of artificial intelligence, governance, and security. Bronwen helps organizations evaluate and deploy AI technologies safely while understanding the risks that come with them. With years of experience in penetration testing, digital forensics, and AI security research, she's uniquely positioned to explain both what AI can do and how attackers might exploit it.
00:00 Intro
02:30 Our Guest
05:45 Treat AI as a drunk Intern
11:10 Overuse of your chatbot
18:00 Modern AI in the medical space
21:57 Myth#1: Computers are more intelligent than we are
24:04 Microsoft Co-pilot
32:05 Grok Dossing story
36:30 Retrieval Augmented Generation (R.A.G)
39:55 Responsible data handling----------------------------------------------------------------------To learn more about Bronwen visit https://www.linkedin.com/in/bronwenaker/To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com
00:00 Intro
01:17 Our Guest
02:50 Shifting from On-premise to Cloud Computing
09:30 Compliance and Data Privacy in Decentralized systems
11:22 Data Recovery
13:10 Ransomware and Data security
15:31 AI on Cybersecurity
19:25 Mindset Challenges in adopting technology
26:01 Egress Cost Awareness
33:15 Budgeting for Data backup Solutions
35:00 More about John
00:00 Intro
02:17 Our Guest
03:50 All Defenders get this wrong
06:05 What good does all this technology do?
09:48 My experience with a third party breach
11:30 Deception technologies
18:50 AI is not detecting properly
22:26 What about LLMs? Do they mirror that behavior?
26:30 The Assume breach philosophy
35:38 What makes deployment of deception technology defective?
40:40 Tracking Canaries
47:00 Learn about Tracebit----------------------------------------------------------------------To learn more about Andy visit https://www.linkedin.com/in/andy-m-smith/To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com----------------------------------------------------------------------
Jasson Casey is the CEO & Co-Founder of Beyond Identity, the first and only identity security platform built to make identity-based attacks impossible. With 20+ years in security and networking, Jasson has built enterprise solutions that protect global organizations from credential-based threats.
00:00 Intro
02:00 Our Guest
10:37 The Identity and Access Management field is crowded
16:11 How does your MFA know?
45:34 What does the future look like for AI?
49:48 Claude and Ceros
Jason Roos is a globally recognized CIO, digital transformation leader with over 25 years of experience, and the CEO of TAITAN. Jason has led major initiatives across the U.S., Europe, and the Middle East, including serving as CIO for NEOM’s Education, Research & Innovation sector. He’s also been named one of the Top 10 CIOs in the Middle East multiple times.
00:00 Intro
02:10 Our Guest
11:38 How do you balance convenience vs Security
17:30 De-provisioning gaps
22:36 Are people more accepting of compliance rules in the Middle East?
28:20 TAITAN
34:20 The current administration’s relationship with Saudi Arabia
43:29 Connecting with Jason----------------------------------------------------------------------To learn more about Jason visit https://www.linkedin.com/in/jason-roos-9840933/To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com
Krisztian Kiraly is a specialist in AI-driven conversion rate optimization and personalization. Krisztian works at the intersection of AI, behavioral analytics, and digital strategy, helping businesses understand how artificial intelligence can predict user behavior and transform the way companies interact with customers online. He’s also known for making complex technology fun and engaging through his high-energy approach to education.
00:00 Intro
02:26 Our Guest
03:54 How does a small business leverage digital marketing without a big budget?
08:22 Top 5 KPI’s
12:17 Return on Ad Spend
18:09 Working with the Algorithm
20:20 What motivates buyers to buy online?
30:55 How do you get into the mind of the buyer?
38:55 5 Seconds to show your company
40:25 Who do you sell to?
43:21 Optimonk
Diyar Saadi Ali is a cybersecurity professional specializing in cybercrime investigations, SOC operations, and malware analysis. A contributor to the MITRE ATT&CK framework, Diyar has helped strengthen global threat intelligence efforts and defensive strategies. Diyar regularly speaks at international cybersecurity conferences, including Arab Cyber Security, DeepSec, GISEC, BlackHat, and SulyCon, contributing to the advancement of the global cyber community.
00:00 Intro
02:26 Our Guest
03:42 Learning Cybersecurity in Iraq
07:40 The MITRE attack Framework: Is that all the knowledge we know?
11:30 There are still tons of unknown vulnerabilities
13:30 You can’t fake motivation
17:00 Defenders are to blame
19:16 Who is coming up with Malware?
22:10 Every crime leaves a trace
24:12 AI is making malware easy
29:00 Governance and Trust
38:02 Presentations and News from Diyar
Sara Ricci is a cybersecurity and enterprise risk executive with deep expertise in operational resilience, IT risk, and third-party risk management. She advises C-suite leaders on building stronger, more resilient organizations in the face of evolving cyber and operational threats. Sara is a frequent global speaker and mentor through the Executive Women’s Forum Lift program and is known for her cross-disciplinary approach to risk, combining cybersecurity, business continuity, privacy, and sustainability to help organizations stay resilient.
00:00 Intro
02:29 Our Guest
06:12 Resilience across industry
15:30 Data exists in many forms
21:20 Is you see something, say something
26:20 The attack surface changing with AI
38:30 4th party risk
42:15 Connecting with Sara
SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @DarkrhiinosecurityFacebook: @Dark-Rhiino-Security-IncTwitter: @darkrhiinosecLinkedIn: @dark-rhiino-securityYoutube: @DarkRhiinoSecurity
Filip Verloy is a technology leader with over 25 years of experience across enterprise IT, consulting, and global vendors. Currently working on securing Agentic AI for the enterprise, he brings deep expertise in API security, infrastructure, and large-scale complex environments. Before joining Rubrik, Filip served as Global Field CTO at API security startup Noname Security and held senior architecture and solutions roles at Citrix, Dell, Riverbed, and VMware. Known for his curiosity and commitment to understanding the fundamentals behind technology, Filip challenges the “illusion of knowledge” and focuses on building secure, resilient systems from first principles.
00:00 Intro
02:30 Our Guest
05:06 Illusion of Knowledge
07:04 Unknown-Unknowns in AI
09:57 Increasing the Attack Surface
12:58 Risk in the Age of Agentic AI
17:56 How do you secure that data?
25:00 How do we deal with IAM in this world of Agentic AI?
31:22 API Security and API Access in Agentic AI
39:02 How is the model of consuming surfaces over the internet going to change?
43:00 Agentic AI Governance
49:25 More about Filip
01:00 Intro
02:34 Our Guest
03:33 93% of Employees are using AI
05:04 Why don’t existing governance models work?
06:15 ChatGPT Sources are fake
07:17 A.I Hallucinates
12:06 How do you govern Ai?
22:02 When should you govern Ai?
31:47 What should AI look like for my company?
33:45 European Union AI Act
39:05 Believing False AI statements
43:20 How can you build governance to something that changes daily?
45:43 How do I get into AI?
48:06 Connecting with Dr. Rizwan
01:00 Intro
02:34 Our Guest
03:33 93% of Employees are using AI
05:04 Why don’t existing governance models work?
06:15 ChatGPT Sources are fake
07:17 A.I Hallucinates
12:06 How do you govern Ai?
22:02 When should you govern Ai?
31:47 What should AI look like for my company?
33:45 European Union AI Act
39:05 Believing False AI statements
43:20 How can you build governance to something that changes daily?
45:43 How do I get into AI?
48:06 Connecting with Dr. Rizwan
Matthew Waddell is an incident response and digital forensics expert with over 25 years of experience helping governments, global enterprises, and small businesses. He has also supported U.S. government counter-intelligence investigations and frontline operations overseas. Today, he’s distilling decades of real-world experience into practical guidance and a new book designed to help organizations survive ransomware with clarity and confidence.
----------------------------------------------------------------------To learn more about Matthew visit https://tacticallysecure.com/survive/To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com
Grant Asplund is a cybersecurity evangelist with over 25 years of experience helping organizations defend against sophisticated cyber threats. He travels globally, speaking at major conferences like RSA, engaging with analysts, partners, and media to advance security across cloud, mobile, and infrastructure. Grant has held leadership roles across sales, marketing, and executive management at companies including Dome9, Blue Coat, Neustar, and Altor Networks, and previously led MetaInfo through its acquisition by Neustar. He also hosts the CISO Secrets and Talking Cloud podcasts, where he explores cloud security trends and real-world leadership insights.
00:00 intro
03:00 Our Guest
05:13 Start with a Helpdesk role
10:00 Ai taking over roles
13:35 AI first mindset
35:10 The future of AI tools
45:07 CISOs report to the board
49:05 More about Grant
Daniel Lowrie (@daniellowrie) is a longtime IT and cybersecurity professional with over 20 years of hands-on experience, starting from workstation support and evolving into ethical hacking and security training. Inspired early on by hacker and spy movies, he turned that curiosity into a career focused on popping shells, breaking into systems ethically, and teaching others how it all works. Today, he spends his time learning everything he can about cybersecurity, creating training content, and helping the next generation of cyber professionals grow through speaking, mentoring, and community involvement.00:00 Intro02:20 Our Guest04:40 Getting started in Cyber09:20 Taking inspiration from movies09:40 War Games13:35 First hack18:07 The Path to a Cyber career26:27 Finding bugs early32:36 Secure or Cheap?38:53 The downside of AI in Tech48:32 More about Daniel ----------------------------------------------------------------------To learn more about Daniel visit https://www.linkedin.com/in/daniellowrie/Check out his classes: https://youtube.com/@daniellowrie?si=ExQHOcMTKlE4E51G To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com----------------------------------------------------------------------SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @DarkrhiinosecurityFacebook: @Dark-Rhiino-Security-IncTwitter: @darkrhiinosecLinkedIn: @dark-rhiino-securityYoutube: @DarkRhiinoSecurity ----------------------------------------------------------------------#darkrhiinosecurity #securityconfidential #cybersecurity #cyberpodcast #ai #artificialintelligence #securitypodcast #cybernews #technews #techsoftware #informationtechnology #infosec #cybersecurityforbeginners #technewstoday
Daniel Lowrie is a longtime IT and cybersecurity professional with over 20 years of hands-on experience, starting from workstation support and evolving into ethical hacking and security training. Inspired early on by hacker and spy movies, he turned that curiosity into a career focused on popping shells, breaking into systems ethically, and teaching others how it all works. Today, he spends his time learning everything he can about cybersecurity, creating training content, and helping the next generation of cyber professionals grow through speaking, mentoring, and community involvement.00:00 Intro02:20 Our Guest04:40 Getting started in Cyber09:20 Taking inspiration from movies09:40 War Games13:35 First hack18:07 The Path to a Cyber career26:27 Finding bugs early32:36 Secure or Cheap?38:53 The downside of AI in Tech48:32 More about Daniel ----------------------------------------------------------------------To learn more about Daniel visit https://www.linkedin.com/in/daniellowrie/Check out his classes: https://youtube.com/@daniellowrie?si=ExQHOcMTKlE4E51G To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com----------------------------------------------------------------------SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @DarkrhiinosecurityFacebook: @Dark-Rhiino-Security-IncTwitter: @darkrhiinosecLinkedIn: @dark-rhiino-securityYoutube: @DarkRhiinoSecurity ----------------------------------------------------------------------#darkrhiinosecurity #securityconfidential #cybersecurity #cyberpodcast #ai #artificialintelligence #securitypodcast #cybernews #technews #techsoftware #informationtechnology #infosec #cybersecurityforbeginners #technewstoday
Husam Shbib is a cybersecurity consultant specializing in penetration testing, digital forensics, malware analysis, programming, and OSINT. He’s the founder of Memory Forensic and the author of Captain Cyber and the Safe Surfing Adventure. Husam is also a global speaker featured at events like BlackHat MEA, ASFSFM, and 3D Forensics, known for his hands-on expertise in uncovering digital evidence and analyzing complex cyber incidents.
00:00 Intro
02:20 What’s new in Cybersecurity?
04:05 Companies in the news
04:56 How does your data get leaked?
17:10 Do you have to list all your processes?
22:37 Technology is changing
29:00 The Life span of a CISO
31:50 The CISO, the CEO, and the CIO
34:40 Penetration testing
36:40 The Digital Forensics procedure
44:00 More about Husam
To learn more about Husam visit https://husamshbib.com/
To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com
SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: @securityconfidential and @Darkrhiinosecurity
Facebook: @Dark-Rhiino-Security-Inc
Twitter: @darkrhiinosec
LinkedIn: @dark-rhiino-security
Youtube: @DarkRhiinoSecurity
----------------------------------------------------------------------
Matthew Devost is a cybersecurity, risk management, and national security expert with over 25 years of experience. He is the CEO and Co-Founder of OODA LLC and Devsec previously founded the Terrorism Research Center and cybersecurity consultancy FusionX, which was acquired by Accenture. At Accenture, he led the Global Cyber Defense practice. Matthew has held key leadership roles at iDefense, iSIGHT Partners, Total Intel, SDI, Tulco Holdings, and Technical Defense, making him a trusted voice in cyber threat intelligence and critical infrastructure protection.
00:00 Introduction
02:03 The Evolution of Cybersecurity and National Security Risks
06:16 Understanding Cyber Threats and Strategies for Defense
11:19 The Role of Private Sector in Cybersecurity
14:40 Addressing Cybersecurity Challenges and Failures of Imagination
17:16 Overcoming Inertia in Cybersecurity Leadership
20:42 The Importance of Red Teaming and Realistic Simulations
24:44 The Impact of AI on Cybersecurity
29:31 Future of Cybersecurity and Emerging Technologies
36:56 Overview of OODA and DevSec Ventures
Maman Ibrahim is a cybersecurity and digital risk leader with over 20 years of experience helping organizations transform cybersecurity from a compliance task into a strategic advantage. As Principal Partner at EugeneZonda and Founder of Ginkgo Resilience, he has led secure digital transformations across industries like pharma, manufacturing, and business services, saving companies over £150 million through risk management and third-party oversight. A contributor to initiatives like the OWASP Top 10 Agentic AI Risks and the World Economic Forum’s Cyber Resilience Compass, Maman is deeply involved in global cybersecurity organizations, including ISACA, CIISec, and the UK Cyber Security Council. Known for his facilitation-first approach, he helps executives align leadership and strategy to build cultures of cyber resilience. 00:00 Introduction to Cybersecurity and Mamon Ibrahim02:38 Maman's Journey11:29 Transforming Cybersecurity: Compliance to Strategic Advantage16:12 Understanding Risks in Cybersecurity18:46 Making Cybersecurity a Competitive Advantage22:07 The Role of the CISO in Modern Organizations27:12 The Importance of Asset Protection in Organizations29:10 Navigating Third-Party Risks in Cybersecurity32:48 The Role of Procurement in Cyber Resilience38:41 Understanding Agentic AI Risks47:48 Knowledge Sharing and Mentorship in Cybersecurity----------------------------------------------------------------To learn more about Maman visit https://www.linkedin.com/in/mamane/To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com
Husam Shbib is a cybersecurity consultant specializing in penetration testing, digital forensics, malware analysis, programming, and OSINT. He holds multiple certifications, including ICMDE, CCE, CCD, CCDFA, IWM, 3CE/I, eCDFP, etc. He spoke at conferences and events such as BlackHat MEA, ASFSFM, 3D Forensics and others. He is committed to cybersecurity awareness, as he shares knowledge through LinkedIn, YouTube, and personal mentoring
00:00 Intro
02:14 All hackers aren’t bad?
04:38 How is cybersecurity in the Middle East
06:03 To become an Ethical hacker, should you focus on penetration testing first?
07:14 How does a hackers mind work?
12:04 How do you not get discovered in the scanning phase?
14:16 Hackers prefer to work alone
15:10 Hackers aren’t using the same tools
19:05 If you want in, you could get in
28:57 Any companies that are well defended?
30:45 Air gapping correctly
39:10 More about Husam------------------------------------------------------------To learn more about Husam visit https://www.linkedin.com/in/husamshbib/To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com
Husam Shbib is a cybersecurity consultant specializing in penetration testing, digital forensics, malware analysis, programming, and OSINT. He holds multiple certifications, including ICMDE, CCE, CCD, CCDFA, IWM, 3CE/I, eCDFP, etc. He spoke at conferences and events such as BlackHat MEA, ASFSFM, 3D Forensics and others. He is committed to cybersecurity awareness, as he shares knowledge through LinkedIn, YouTube, and personal mentoring
00:00 Intro
02:14 All hackers aren’t bad?
04:38 How is cybersecurity in the Middle East
06:03 To become an Ethical hacker, should you focus on penetration testing first?
07:14 How does a hackers mind work?
12:04 How do you not get discovered in the scanning phase?
14:16 Hackers prefer to work alone
15:10 Hackers aren’t using the same tools
19:05 If you want in, you could get in
28:57 Any companies that are well defended?
30:45 Air gapping correctly
39:10 More about Husam
------------------------------------------------------------To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com------------------------------------------------------------SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @DarkrhiinosecurityFacebook: @Dark-Rhiino-Security-IncTwitter: @darkrhiinosecLinkedIn: @dark-rhiino-securityYoutube: @DarkRhiinoSecurity ------------------------------------------------------------
To learn more about Ed visit https://www.linkedin.com/in/edgaudet/To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com
Bob Burke is the Chief Information Security Officer at Beyond Identity, where he plays a key role in building and securing the company’s identity-first access management platform. He has over 20 years of experience in cybersecurity and engineering leadership and brings deep expertise in identity, cloud infrastructure, compliance, and protecting mission-critical SaaS systems.00:00 Intro10:07 What the main threat back then?13:30 Finding a Security Architect15:24 What gaps cause MFA to go down?18:00 You don’t know you’ve been breached22:36 Should CISOs be part of IT?30:31 Phishing Resistant Attacks33:42 Beyond Identity37:42 If your identity is compromised…41:19 Hardware supply chain47:45 More about Bob------------------------------------------------------------To learn more about Bob visit https://www.linkedin.com/in/bob-burke-4293712/To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com------------------------------------------------------------SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @DarkrhiinosecurityFacebook: @Dark-Rhiino-Security-IncTwitter: @darkrhiinosecLinkedIn: @dark-rhiino-securityYoutube: @DarkRhiinoSecurity
Bob Burke is the Chief Information Security Officer at Beyond Identity, where he plays a key role in building and securing the company’s identity-first access management platform. He has over 20 years of experience in cybersecurity and engineering leadership and brings deep expertise in identity, cloud infrastructure, compliance, and protecting mission-critical SaaS systems.
00:00 Intro
10:07 What the main threat back then?
13:30 Finding a Security Architect
15:24 What gaps cause MFA to go down?
18:00 You don’t know you’ve been breached
22:36 Should CISOs be part of IT?
30:31 Phishing Resistant Attacks
33:42 Beyond Identity
37:42 If your identity is compromised…
41:19 Hardware supply chain
47:45 More about Bob
To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com------------------------------------------------------------SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @DarkrhiinosecurityFacebook: @Dark-Rhiino-Security-IncTwitter: @darkrhiinosecLinkedIn: @dark-rhiino-securityYoutube: @DarkRhiinoSecurity
Santosh Kaveti is the CEO and Founder of ProArch. He has over 18 years of experience as a technologist, entrepreneur, investor, and advisor. Santosh’s vision and leadership have propelled ProArch to become a dominant force in key industry verticals, such as Energy, Healthcare & Lifesciences, and Manufacturing, where he leverages his expertise in manufacturing process improvement, mentoring, and consulting
00:00 Intro
03:48 Protect what matters the most
12:32 Talking to the client. What is worth protecting
24:27 Proarch
29:30 The Cultural fit with acquisition
36:40 Disaster Recovery
39:50 What do you think AI is going to do?
43:55 Im too small to get attacked--------------------------------------------------------------To learn more about Santosh visit https://www.linkedin.com/in/santoshkaveti/To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com--------------------------------------------------------------
Santosh Kaveti is the CEO and Founder of ProArch. He has over 18 years of experience as a technologist, entrepreneur, investor, and advisor. Santosh’s vision and leadership have propelled ProArch to become a dominant force in key industry verticals, such as Energy, Healthcare & Lifesciences, and Manufacturing, where he leverages his expertise in manufacturing process improvement, mentoring, and consulting
00:00 Intro
03:48 Protect what matters the most
12:32 Talking to the client. What is worth protecting
24:27 Proarch
29:30 The Cultural fit with acquisition
36:40 Disaster Recovery
39:50 What do you think AI is going to do?
43:55 Im too small to get attacked--------------------------------------------------------------To learn more about Santosh visit https://www.linkedin.com/in/santoshkaveti/To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com--------------------------------------------------------------
Alex Sharpe is a Security Confidential Alumni, board member, practitioner, speaker, and author. He started his career in the intelligence community, built two startups, recognized as a top thought leader in cybersecurity, risk management, cloud, and digital assets. 00:00 Intro02:20 Cybersecurity Imposters05:50 How do we prepare for the future?12:40 The best investment we can make18:44 AI Models Collapse23:00 Training AI Models for malicious intent----------------------------------------------------------------------To learn more about Alex visit https://www.linkedin.com/in/alex-sharpe-3rd/To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com----------------------------------------------------------------------SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @DarkrhiinosecurityFacebook: @Dark-Rhiino-Security-IncTwitter: @darkrhiinosecLinkedIn: @dark-rhiino-securityYoutube: @DarkRhiinoSecurity
Alex Sharpe is a Security Confidential Alumni, board member, practitioner, speaker, and author. He started his career in the intelligence community, built two startups, recognized as a top thought leader in cybersecurity, risk management, cloud, and digital assets. 00:00 Intro02:20 Cybersecurity Imposters05:50 How do we prepare for the future?12:40 The best investment we can make18:44 AI Models Collapse23:00 Training AI Models for malicious intent----------------------------------------------------------------------To learn more about Alex visit https://www.linkedin.com/in/alex-sharpe-3rd/To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com----------------------------------------------------------------------SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @DarkrhiinosecurityFacebook: @Dark-Rhiino-Security-IncTwitter: @darkrhiinosecLinkedIn: @dark-rhiino-securityYoutube: @DarkRhiinoSecurity
Henrik Parkkinen is a globally recognized security leader from Sweden with over 20 years in the cybersecurity field. His experience spans both offensive and defensive security, developed through a combination of hands-on technical roles, management and leadership positions. Henrik is known for his strategic thinking, strong leadership, and ability to communicate complex security concepts across all levels of an organization—from engineers to board members. His impact in the industry has earned him numerous accolades, including recognition as a Top 12 GRC Leader in 2025, one of the Top 10 Cybersecurity Leaders in EMEA, and a finalist for Best Cyber Blog of the Year.
00:00 Intro
02:36 Love for Technology
06:35 Pathway to skills
14:38 The contextual aspect of security
20:35 What is worth protecting
29:00 You are the translator
46:10 How is your approach changing to AI?
52:34 Free resources from Henrik
To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com
SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @DarkrhiinosecurityFacebook: @Dark-Rhiino-Security-IncTwitter: @darkrhiinosecLinkedIn: @dark-rhiino-securityYoutube: @DarkRhiinoSecurity
--------------------------------------------------------------#darkrhiinosecurity #securityconfidential #cybersecurity #cyberpodcast #ai #artificialintelligence #securitypodcast #cybernews #technews #techsoftware #informationtechnology #infosec #cybersecurityforbeginners #technewstoday
Henrik Parkkinen is a globally recognized security leader from Sweden with over 20 years in the cybersecurity field. His experience spans both offensive and defensive security, developed through a combination of hands-on technical roles, management and leadership positions. Henrik is known for his strategic thinking, strong leadership, and ability to communicate complex security concepts across all levels of an organization—from engineers to board members. His impact in the industry has earned him numerous accolades, including recognition as a Top 12 GRC Leader in 2025, one of the Top 10 Cybersecurity Leaders in EMEA, and a finalist for Best Cyber Blog of the Year.
00:00 Intro
02:36 Love for Technology
06:35 Pathway to skills
14:38 The contextual aspect of security
20:35 What is worth protecting
29:00 You are the translator
46:10 How is your approach changing to AI?
52:34 Free resources from Henrik
To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com--------------------------------------------------------------SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @DarkrhiinosecurityFacebook: @Dark-Rhiino-Security-IncTwitter: @darkrhiinosecLinkedIn: @dark-rhiino-securityYoutube: @DarkRhiinoSecurity --------------------------------------------------------------#darkrhiinosecurity #securityconfidential #cybersecurity #cyberpodcast #ai #artificialintelligence #securitypodcast #cybernews #technews #techsoftware #informationtechnology #infosec #cybersecurityforbeginners #technewstoday
Chuck Brooks is a globally recognized cybersecurity thought leader, two-time Presidential appointee, Forbes contributor, and Adjunct Faculty at Georgetown University. Named a "Top 5 Tech Person to Follow" by LinkedIn and a "Top 50 Global Influencer in Risk and Compliance" by Thomson Reuters, Chuck has served in senior roles across government, industry, and academia. With decades of experience shaping cyber policy, risk management, and innovation, he’s a trusted voice in cybersecurity, homeland security, and emerging tech.--------------------------------------------------------------To learn more about Chuck visit https://www.linkedin.com/in/chuckbrooks/To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com--------------------------------------------------------------SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @DarkrhiinosecurityFacebook: @Dark-Rhiino-Security-IncTwitter: @darkrhiinosecLinkedIn: @dark-rhiino-securityYoutube: @DarkRhiinoSecurity
Chuck Brooks is a globally recognized cybersecurity thought leader, two-time Presidential appointee, Forbes contributor, and Adjunct Faculty at Georgetown University. Named a "Top 5 Tech Person to Follow" by LinkedIn and a "Top 50 Global Influencer in Risk and Compliance" by Thomson Reuters, Chuck has served in senior roles across government, industry, and academia. With decades of experience shaping cyber policy, risk management, and innovation, he’s a trusted voice in cybersecurity, homeland security, and emerging tech.--------------------------------------------------------------To learn more about Chuck visit https://www.linkedin.com/in/chuckbrooks/To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com--------------------------------------------------------------SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @DarkrhiinosecurityFacebook: @Dark-Rhiino-Security-IncTwitter: @darkrhiinosecLinkedIn: @dark-rhiino-securityYoutube: @DarkRhiinoSecurity
Alex Sharpe is a board member, practitioner, speaker, and author known for driving value while managing cyber risk. With a career that began in the intelligence community, Alex has since led strategic transformations across global enterprises, built two startups (including one with a successful IPO), and participated in over 20 M&A transactions. Recognized as a top thought leader in cybersecurity, risk management, cloud, and digital assets, he bridges the worlds of business, cyber, and governance to build stronger organizations and better lives.
John Carse is the Field CISO at SquareX and a seasoned cybersecurity leader with over 20 years of experience spanning the U.S. Navy, JPMorgan, Expedia, Dyson, and Rakuten. With a background in securing critical naval systems during his 14 years in the Navy, John has since built and led global security programs across finance, tech, and e-commerce. He holds multiple cloud security patents and is currently helping develop the industry’s first Browser Detection and Response (BDR) solution. With hands-on expertise and a global perspective from roles in the U.S., Japan, Singapore, Bahrain, and Europe, John is passionate about tackling emerging threats and sharing real-world insights that blend innovation with practical defense.
Jon DiMaggio is the Chief Security Strategist at Analyst1 with over 15 years of experience tracking cyber threats. Specializing in enterprise ransomware and nation-state attacks, Jon is best known for infiltrating the LockBit ransomware gang during a two-year undercover operation. His research, including Ransomware Diaries and The Art of Cyberwarfare, has aided law enforcement and been featured by CBS 60 Minutes, The New York Times, and Wired. A frequent speaker at RSA, he has twice received the SANS Difference Makers Award for his groundbreaking work.00:00 Introduction02:34 You don’t need an expensive university11:00 In order to be successful in cyber, you need to…17:38 What are the bad guys doing?23:13 What does the government do to help?26:24 Consequences for bad actors41:35 The Art of Cyber Warfare44:05 Jon’s new book--------------------------------------------------------------To learn more about Jon visit https://www.linkedin.com/in/jondimaggio/https://www.amazon.com/Art-Cyberwarfare-Investigators-Ransomware-Cybercrime-ebook/dp/B09BKLRH8P?ref_=ast_author_dpTo learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com
Jon DiMaggio is the Chief Security Strategist at Analyst1 with over 15 years of experience tracking cyber threats. Specializing in enterprise ransomware and nation-state attacks, Jon is best known for infiltrating the LockBit ransomware gang during a two-year undercover operation. His research, including Ransomware Diaries and The Art of Cyberwarfare, has aided law enforcement and been featured by CBS 60 Minutes, The New York Times, and Wired. A frequent speaker at RSA, he has twice received the SANS Difference Makers Award for his groundbreaking work.00:00 Introduction02:34 You don’t need an expensive university11:00 In order to be successful in cyber, you need to…17:38 What are the bad guys doing?23:13 What does the government do to help?26:24 Consequences for bad actors41:35 The Art of Cyber Warfare44:05 Jon’s new book
Chris is a professional information technologist, author, trainer, manager, a lifelong learner, and Former Law Enforcement Officer. He has been creating courses for over 25 years and has been working as an author on Plurasight for 11 years. He has created over 80 IT Certification training courses (52 or so with Pluralsight) and his students have watched over 1 million hours of his content. Chris really enjoys helping people advance in their careers through training and personal development.00:00 Introduction05:20 What were some of the cybercrimes you came across?10:30 Deep fake stress13:49 What is the strategy to break up the back up?17:17 Method and Approach for understanding risk24:31 Interactive labs29:57 Will AI change training methods? Will it replace SOC Jobs?38:40 Elevate your career41:00 Check out his Pluralsight courses----------------------------------------------------------------------To learn more about Chris visit https://www.pluralsight.com/authors/chris-reesTo learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com----------------------------------------------------------------------SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @DarkrhiinosecurityFacebook: @Dark-Rhiino-Security-IncTwitter: @darkrhiinosecLinkedIn: @dark-rhiino-securityYoutube: @DarkRhiinoSecurity
Chris is a professional information technologist, author, trainer, manager, a lifelong learner, and Former Law Enforcement Officer. He has been creating courses for over 25 years and has been working as an author on Plurasight for 11 years. He has created over 80 IT Certification training courses (52 or so with Pluralsight) and his students have watched over 1 million hours of his content. Chris really enjoys helping people advance in their careers through training and personal development.
00:00 Introduction
05:20 What were some of the cybercrimes you came across?
10:30 Deep fake stress
13:49 What is the strategy to break up the back up?
17:17 Method and Approach for understanding risk
24:31 Interactive labs
29:57 Will AI change training methods? Will it replace SOC Jobs?
38:40 Elevate your career
41:00 Check out his Pluralsight courses
Craig Taylor is a seasoned cybersecurity expert and entrepreneur with nearly 30 years of experience managing risk across industries—from Fortune 500 corporations to SMBs. As the Co-Founder and CEO of CyberHoot, he has pioneered a positive reinforcement approach to cybersecurity education, helping businesses eliminate risky behaviors and build a positive cybersecurity culture. With a background in psychology and extensive experience leading security programs at Chase Paymentech, Vistaprint, and DXC Technology, Craig specializes in incident response, governance, and compliance. A CISSP-certified professional since 2001, he is a recognized thought leader, public speaker, and advocate for making cybersecurity training engaging, fun, and effective.
00:00 Introduction
01:16 Our guest
08:40 There are two types of companies
10:00 We taught them how to Phish
12:12 Business Email compromise
13:50 Go back to the way your parents ran security
16:19 What do I do first?
26:12 Changing your passwords is not good for you
29:00 Encryption
31:30 What to look for in a Password Manager
35:17 “Unsubscribe” button mishap
46:15 Cyberhoot
49:05 Free Training from Cyberhoot
To learn more about Cyberhoot visit https://cyberhoot.com/
To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com
Craig Taylor is a seasoned cybersecurity expert and entrepreneur with nearly 30 years of experience managing risk across industries—from Fortune 500 corporations to SMBs. As the Co-Founder and CEO of CyberHoot, he has pioneered a positive reinforcement approach to cybersecurity education, helping businesses eliminate risky behaviors and build a positive cybersecurity culture. With a background in psychology and extensive experience leading security programs at Chase Paymentech, Vistaprint, and DXC Technology, Craig specializes in incident response, governance, and compliance. A CISSP-certified professional since 2001, he is a recognized thought leader, public speaker, and advocate for making cybersecurity training engaging, fun, and effective.
00:00 Introduction
01:16 Our guest
08:40 There are two types of companies
10:00 We taught them how to Phish
12:12 Business Email compromise
13:50 Go back to the way your parents ran security
16:19 What do I do first?
26:12 Changing your passwords is not good for you
29:00 Encryption
31:30 What to look for in a Password Manager
35:17 “Unsubscribe” button mishap
46:15 Cyberhoot
49:05 Free Training from Cyberhoot
To learn more about Cyberhoot visit https://cyberhoot.com/
To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com
Stacey Champagne is the Founder & CEO of Hacker in Heels, a community dedicated to advancing women in cybersecurity through coaching, courses, and events. With over a decade of experience leading cybersecurity programs at Fortune 500 companies and startups, she specializes in insider risk management, security investigations, and program management. She has been recognized as a 2024 SANS "Diversity Champion of the Year" finalist and a 2024 Cybersecurity Woman of the World Top 20 Honoree. She holds multiple industry certifications, including CISSP and GSOM, and earned a Master’s in Security and Resilience Studies.
00:00 Intro
02:26 Making cyber make sense
09:50 Why are cyber programs not working?
14:47 How do you motivate folks?
29:38 When should you use a mentor or a coach?
31:26 The difference between a mentor and a coach
34:20 How do you find a great coach?
40:47 Connecting with the Hackers In Heels community----------------------------------------------------------------To learn more about Hackers In Heels visit https://www.hackerinheels.com
Become a Hacker In Heels Insider: https://www.hackerinheels.com/insidersTo learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com----------------------------------------------------------------SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @DarkrhiinosecurityFacebook: @Dark-Rhiino-Security-IncTwitter: @darkrhiinosecLinkedIn: @dark-rhiino-securityYoutube: @DarkRhiinoSecurity ------------------------------------------------------------------
Stacey Champagne is the Founder & CEO of Hacker in Heels, a community dedicated to advancing women in cybersecurity through coaching, courses, and events. With over a decade of experience leading cybersecurity programs at Fortune 500 companies and startups, she specializes in insider risk management, security investigations, and program management. She has been recognized as a 2024 SANS "Diversity Champion of the Year" finalist and a 2024 Cybersecurity Woman of the World Top 20 Honoree. She holds multiple industry certifications, including CISSP and GSOM, and earned a Master’s in Security and Resilience Studies.
00:00 Intro
02:26 Making cyber make sense
09:50 Why are cyber programs not working?
14:47 How do you motivate folks?
29:38 When should you use a mentor or a coach?
31:26 The difference between a mentor and a coach
34:20 How do you find a great coach?
40:47 Connecting with the Hackers In Heels community-----------------------------------------------------------------To learn more about Hackers In Heels visit https://www.hackerinheels.com
Become a Hacker In Heels Insider: https://www.hackerinheels.com/insidersTo learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com-----------------------------------------------------------------SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @DarkrhiinosecurityFacebook: @Dark-Rhiino-Security-IncTwitter: @darkrhiinosecLinkedIn: @dark-rhiino-securityYoutube: @DarkRhiinoSecurity
Darren Mott, author of "Get Cyber Smart", is a retired FBI agent with 20 years of experience in cyber and counterintelligence investigations. He played a key role in strengthening FBI-Russian collaboration on cyber threats and created the FBI’s first program blending counterintelligence and cyber disciplines. Now, he owns an investigative and consulting company called Gold Shield Cyber. Mott holds master’s degrees in education and cybersecurity policy and hosts The CyBUr Guy Podcast, CyBUr Smart Morning News Update and the Tactical Cyber Podcast.
00:00 Intro
02:50 No one gets to where we are at the beginning
12:59 Stupid Cyber Criminals
19:01 Proactive vs Reactive
32:52 How big of an amount until the FBI is involved?
40:28 Get CyBUr Smart
To learn more about Darren visit: https://www.linkedin.com/in/darrenmott/
Get Darren's book here: https://www.amazon.com/Get-Cyber-Smart-user-friendly-protecting-ebook/dp/B0D7KPCZZB
To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com
Darren Mott, author of "Get Cyber Smart", is a retired FBI agent with 20 years of experience in cyber and counterintelligence investigations. He played a key role in strengthening FBI-Russian collaboration on cyber threats and created the FBI’s first program blending counterintelligence and cyber disciplines. Now, he owns an investigative and consulting company called Gold Shield Cyber. Mott holds master’s degrees in education and cybersecurity policy and hosts The CyBUr Guy Podcast, CyBUr Smart Morning News Update and the Tactical Cyber Podcast.
00:00 Intro
02:50 No one gets to where we are at the beginning
12:59 Stupid Cyber Criminals
19:01 Proactive vs Reactive
32:52 How big of an amount until the FBI is involved?
40:28 Get CyBUr Smart
To learn more about Darren visit: https://www.linkedin.com/in/darrenmott/
Get Darren's book here: https://www.amazon.com/Get-Cyber-Smart-user-friendly-protecting-ebook/dp/B0D7KPCZZB
To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com
Sandra has over 25 years of experience in Cybersecurity, IT, and Data Privacy. She transformed her personal nightmare of identity theft into inspiration, helping individuals and businesses protect what matters most from hackers, scammers, and Cybermonsters®.
She is a TEDx speaker, podcast host, corporate trainer, and international bestselling author of the Happily Ever Cyber! She focuses is on empowering women, families, and businesses to take control of their cyber safety. Sandra is also the founder of Way2Protect. They believe in a world where everyone can "live Happily Ever Cyber!"—thriving in a tech-driven world, staying safe, and having peace of mind online.
-----------------------------------------------------------To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com------------------------------------------------------------SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @DarkrhiinosecurityFacebook: @Dark-Rhiino-Security-IncTwitter: @darkrhiinosecLinkedIn: @dark-rhiino-securityYoutube: @DarkRhiinoSecurity -----------------------------------------------------------
Tammy Klotz is a cybersecurity leader with over 20 years in IT and a decade as a CISO for global manufacturing firms. She has transformed cybersecurity programs, driven cultural change, and championed women in technology through mentorship and active involvement in groups like WiCyS and the Cloud Security Alliance. At Versum Materials, she developed a cloud-centric cybersecurity strategy, and at Covanta, she built a program from scratch, later serving as CTO and IT co-leader. Currently, as CISO at Trinseo, Tammy oversees cybersecurity for 24 manufacturing sites and 11 R&D facilities. She shares leadership insights in her 2024 book, Leading with Empathy and Grace: Secrets to Developing High-Performing Teams. 00:00 Introduction02:40 Tammy’s origin story05:06 The harsh truth 08:57 Compliant does not mean secure14:57 AI has always been around32:00 Empowerment41:36 How to communicate properly to your team48:00 Book signings, follow, and connect with Tammy-------------------------------------------------------------To learn more about Tammy visit https://www.linkedin.com/in/tammyklotz/To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com
Allie Hunter is a cybersecurity advocate and the author of Mothers Against Cyber Crime, a book that addresses the challenges parents face in protecting their families online. With a background in psychology, behavioral science, cybersecurity, and marketing, Allie weaves together real-life cyber incidents into compelling stories that offer practical advice for navigating the digital world. Allie collaborates with Savvy Cyber Kids, a nonprofit dedicated to educating families about online safety. Her work focuses on providing resources that empower parents and caregivers to safeguard their loved ones against cyber threats. Through her writing, Allie aims to raise awareness and equip readers with the knowledge they need to combat cybercrime effectively. 00:00 Introduction01:47 Our Guest02:13 Your net worth is your Network07:20 Real-life horror stories for parents10:37 The Bark Phone16:20 Minecraft and Roblox21:25 Protecting Tech Savvy Teens online23:20 I thought I was safe, until it happened to me25:37 Workshops with SavvyCyberKids.org28:59 Takeaways for parents----------------------------------------------------To learn more about Savvy Cyber Kids contact them at Info@Savvycyberkids.orgTo learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com
Ken is the former CEO, Executive Producer, and Television Host at Cyber Life. He is the Best-Selling Author of “Hack the Cybersecurity Interview: A complete interview preparation guide for jumpstarting your cybersecurity career”. He has been featured in Forbes, Reader's Digest, Tech Republic, Fox, NBC, Dark Reading, and many more places.
00:00 Snippet
00:59 Our Guest04:22 People are using AI to write books?
11:47 Additional places to look for Cybersecurity jobs
12:32 How to properly reach out to companies for jobs
16:05 Ghost jobs
20:12 Don’t create “wish lists” for jobs
25:30 Diversity in our industry
30:00 Fake coaching program scams
31:00 Are Certifications important
37:20 Diversity of Thought
40:20 Make your boss's life easier
45:50 Organizations to follow-------------------------------------------------------------------Purchase the second edition of "Hack the Cybersecurity Interview" :
https://www.amazon.com/Hack-Cybersecurity-Interview-Interviews-Entry-level/dp/1835461298To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com-------------------------------------------------------------------SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @DarkrhiinosecurityFacebook: @Dark-Rhiino-Security-IncTwitter: @darkrhiinosecLinkedIn: @dark-rhiino-securityYoutube: @DarkRhiinoSecurity -------------------------------------------------------------------
Jim Love is a strategic consultant and corporate advisor specializing in AI, technology, marketing, and business strategy. He is an accomplished author, journalist, professor, and podcast host, known for producing the popular shows Hashtag Trending and Cybersecurity Today, and is the publisher of Tech Newsday. Jim served as CIO and Chief Content Officer at IT World Canada, overseeing IT World Canada, CIO Canada, IT Business, Computer Dealer News, Network World Canada, and Direction Informatique, while also leading the company’s event initiatives. Before consulting, Jim worked in the financial services industry, covering banking, investments, trust, and insurance. 00:00 Intro00:58 Our Guest02:06 Working with Jim Carrey07:11 The best piece of advice14:07 Password Reuse19:48 Holding CISOs criminally responsible30:11 The dangers of Chat GPT39:56 Our new normal: Automation47:46 Connecting with Jim------------------------------------------------------------To learn more about Jim visit https://www.technewsday.com/To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com------------------------------------------------------------SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @DarkrhiinosecurityFacebook: @Dark-Rhiino-Security-IncTwitter: @darkrhiinosecLinkedIn: @dark-rhiino-securityYoutube: @DarkRhiinoSecurity ------------------------------------------------------------
Sanjay Chopra is the co-founder and CEO of Cognistx, an AI company known for developing innovative products like SQUARE and DQE, used across various industries. With over 30 years of experience in AI and business strategy, Sanjay has led several successful technology ventures. He serves on the Pittsburgh board of the Federal Reserve Bank of Cleveland and is involved in multiple technology councils and advisory boards. Sanjay holds advanced degrees from Carnegie Mellon University and Virginia Tech, and he also teaches e-Commerce as an adjunct professor at Carnegie Mellon.
00:00 Intro
01:04 Our Guest
10:15 Changing the AI threat landscape
17:40 Using AI to complete legal work
27:10 Will AI remove the human element?
47:08 What does CognistX do?
50:00 SQUARY and Dark Rhiino’s vCISO Bot Launch--------------------------------------------------------To learn more about CognistX visit https://www.cognistx.com/To test our vCISO bot visit https://darkrhiinosecurity.com/To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com--------------------------------------------------------SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @DarkrhiinosecurityFacebook: @Dark-Rhiino-Security-IncTwitter: @darkrhiinosecLinkedIn: @dark-rhiino-securityYoutube: @DarkRhiinoSecurity --------------------------------------------------------
Greg Schaffer, founder of vCISO Services, LLC and a returning guest on Security Confidential, brings over 35 years of experience in IT and security, with 15 years as a CISO. He hosts the Virtual CISO Moment podcast and is the author of Information Security for Small and Midsized Businesses. 00:58 Our Guest01:59 What’s new with Greg?03:37 Changes in the vCISO world11:29 People, Process, and Technology15:00 Information Security for Small and Midsized Businesses--------------------------------------------------------------Here's a link for $5 off Information Security for Small and Midsized Businesses exclusively for Security Confidential.Offer expires September 30, 2024.To learn more about Greg visit https://www.linkedin.com/in/gregoryschaffer/To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com-------------------------------------------------------------SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @DarkrhiinosecurityFacebook: @Dark-Rhiino-Security-IncTwitter: @darkrhiinosecLinkedIn: @dark-rhiino-securityYoutube: @DarkRhiinoSecurity --------------------------------------------------------------
Dr. Eric Daimler is a leading authority in robotics and artificial intelligence with over 20 years of experience as an entrepreneur, investor, technologist, and policymaker. He served as a Presidential Innovation Fellow for AI and Robotics under the Obama Administration, driving U.S. leadership in AI research and commercialization. Eric has founded and led several pioneering tech companies and currently serves on the boards of WelWaze Medical and Petuum. His latest venture, Conexus, addresses the critical issue of data deluge in information technology. With a career spanning business, academia, and policy, Eric offers a unique perspective on shaping the future of AI for societal benefit.
00:00 Snippet01:09 Our Guest05:40 AI is much more than Machine Learning10:57 Lisp and data30:54 Conexus 32:53 Type Theory and Quantum compiling34:44 The government's role in AI39:14 Connecting with Eric ------------------------------------------------------------------To learn more about Eric visit https://www.linkedin.com/in/ericdaimler/To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com------------------------------------------------------------------SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @DarkrhiinosecurityFacebook: @Dark-Rhiino-Security-IncTwitter: @darkrhiinosecLinkedIn: @dark-rhiino-securityYoutube: @DarkRhiinoSecurity
Vivek Ramachandran is a security researcher, author, speaker/trainer, and serial entrepreneur with over two decades of experience in offensive cybersecurity. He is currently the founder of SquareX, building a browser-native security product focused on detecting, mitigating, and threat-hunting web attacks. Prior to that, he was the founder of Pentester Academy (acquired), which has trained thousands of customers from government agencies, Fortune 500 companies, and enterprises from over 140+ countries. He has authored multiple books in cybersecurity and spoken at DEFCON, BlackHat multiple times.
00:00 Introduction
01:04 Our Guest
05:55 Advice from Vivek to those who want to follow a passion
09:19 Ransomware payments have gone down
13:37 Why is this still not addressed?
27:55 Should the CISO report to the board or the CIO?
36:55 Vulnerabilities in Gmail, Outlook, and their counterparts
47:14 SquareX + DEFCON
SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @DarkrhiinosecurityFacebook: @Dark-Rhiino-Security-IncTwitter: @darkrhiinosecLinkedIn: @dark-rhiino-securityYoutube: @DarkRhiinoSecurity
Stephen Kowski is a seasoned cybersecurity expert with a robust career spanning over two decades. He is currently the CTO at SlashNext, the leader in Ai-powered cloud email, mobile, and browser messaging security. Stephen has a rich history of leading and implementing comprehensive cybersecurity strategies, ensuring robust protection for organizations against evolving cyber threats. His expertise encompasses risk management, compliance, incident response, and innovative security solutions. Stephen is also a passionate advocate for cybersecurity education and awareness, continuously contributing to the development of the cybersecurity community. 00:00 Introduction 00:32 Our Guest02:08 What is a field CTO?03:19 Learning to speak their language07:26 Why not take the traditional approach?11:00 Anything made by a human can be broken by a human15:03 What role does Risk play into product design?20:35 3D Phishing25:25 What are you trying to solve?36:11 Is Email marketing effective anymore?42:58 Attackers don’t care45:07 Have you become a target?47:36 Following SlashNext ----------------------------------------------------------------------To learn more about Stephen visit https://www.linkedin.com/in/jstephenkowski/To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com----------------------------------------------------------------------SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @DarkrhiinosecurityFacebook: @Dark-Rhiino-Security-IncTwitter: @darkrhiinosecLinkedIn: @dark-rhiino-securityYoutube: @DarkRhiinoSecurity
This week on Dark Rhiino Security’s Security Confidential podcast, Host Manoj Tandon celebrates 150 episodes with Robert Kerbeck. Robert is a multifaceted storyteller, former corporate spy, actor, acclaimed author, and founder of the Malibu Writers Circle. His award-winning debut book, "Malibu Burning: The Real Story Behind LA's Most Devastating Wildfire," earned him the 2020 IPPY Award and Readers’ Favorite Award, among others. One of his stories was adapted into the award-winning film, "Reconnected," showcased at film festivals globally. His latest memoir, "RUSE: Lying the American Dream from Hollywood to Wall Street," offers a thrilling glimpse into his career as a corporate spy. 00:00 Introduction 00:39 Our Guest02:10 Corporate spy06:10 Hacking your people33:04 What’s the legal position for companies?36:06 RUSE 43:30 People want connection46:26 Getting a signed copy of RUSE----------------------------------------------------------------------To learn more about Robert visit https://robertkerbeck.com/To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com----------------------------------------------------------------------SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @DarkrhiinosecurityFacebook: @Dark-Rhiino-Security-IncTwitter: @darkrhiinosecLinkedIn: @dark-rhiino-securityYoutube: @DarkRhiinoSecurity
This week on Dark Rhiino Security’s Security Confidential podcast, Host Manoj Tandon talks to Brian Vallelunga. Brian is the Founder and CEO of Doppler, which is the first secrets management platform for developers. Doppler empowers tens of thousands of engineering and devops teams to seamlessly orchestrate, govern, and manage their secrets across environments at scale. Brian has been featured in Forbes 30 Under 30, worked at improving overall Safety at Uber, and has won multiple state level science fairs.
00:00 Introduction
00:18 Our Guest
01:03 Building a successful company
07:37 Falling in love with your own idea
11:20 Killing Bad Startups
20:53 What problem are you solving?
26:38 Closing the gap
30:25 The bigger the company, the worse their security is
37:20 Out of Business 6 months after Breach
41:26 Will Machine Learning and Quantum Computing play a role?
46:07 More about Brian-------------------------------------------------To learn more about Brian visit https://www.linkedin.com/in/vallelungabrian/To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com------------------------------------------------SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @DarkrhiinosecurityFacebook: @Dark-Rhiino-Security-IncTwitter: @darkrhiinosecLinkedIn: @dark-rhiino-securityYoutube: @DarkRhiinoSecurity ------------------------------------------------------------------
This week on Dark Rhiino Security’s Security Confidential podcast, Host Manoj Tandon talks to Max Hillebrand. Max is the CEO at ZKSNACKS and Wasabi Wallet, a pioneering figure in the realm of privacy-focused cryptocurrency wallets. He is a dedicated open-source contributor focused on liberty and digital freedom. He champions non-scarcity in the digital realm, sharing his creations generously. Hillebrand works to build a robust economic ecosystem, empowering individuals for entrepreneurial pursuits.
00:00 Introduction
00:21 Our Guest
03:41 ZKSNACKS and Wasabi Wallet
06:41 The Basics of Bitcoin: How does it work?
13:30 How do bitcoin exchanges fail?
26:46 Changing the rules
33:47 Why do Ransomware actors want their cash in bitcoin?
37:00 How to get your public key on the blockchain?
44:10 Quantum computing and future issues
57:05 Book Recommendations from Max
This week on Dark Rhiino Security’s Security Confidential podcast, Host Manoj Tandon talks to Troy Hunt. Troy is an Australian Microsoft Regional Director and MVP for Developer Security. He's known for his expertise in web security, as well as his creation of 'Have I Been Pwned?' He's a prolific author for Pluralsight, a sought-after speaker at global conferences, and has been featured in a number of articles with publications including Forbes, TIME magazine, Mashable, PCWorld, ZDNet and Yahoo! Tech. Aside from technology and security, Troy is an avid snowboarder, windsurfer and tennis player00:00 Introduction 01:17 We’re going to outsource you05:20 Have I Been Pwned?10:10 Does the value length matter?15:13 Convenience vs Security20:20 Recovering an account34:08 What is the effectivity of 2FA?37:45 Artificial Intelligence and NLP443:27 If you’re going to do nothing, at least do this52:25 More about Troy
To learn more about Troy visit https://www.troyhunt.com/https://haveibeenpwned.com/https://ndcoslo.com/To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com----------------------------------------------------------------------SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @DarkrhiinosecurityFacebook: @Dark-Rhiino-Security-IncTwitter: @darkrhiinosecLinkedIn: @dark-rhiino-securityYoutube: @DarkRhiinoSecurity
This week on Dark Rhiino Security’s Security Confidential podcast, Host Rory Meikle fills in for Manoj Tandon as he talks to Richard Hollis, the Founder and Chief Executive of Risk Crew. Richard is a seasoned cyber security expert and ardent privacy rights advocate who possesses over 30 years of “hands-on” skills and experience in designing, implementing, and testing the security integrity of business information technology systems. He lives and breathes cyber security and understands how to simplify it and make it relevant. 00:00 Introduction 00:17 Our Guest06:25 People, process, and Technology08:25 The cybersecurity community takes zero accountability12:50 Cybersecurity vendors profit from the insecurity of computing16:15 Either it works or it doesn’t27:40 How do we get nontechnical people to understand?34:24 Nothing is free38:20 Until it’s personal46:13 How did we get to this point?50:25 How business owners can become more aware54:08 Connecting with Richard----------------------------------------------------------------------To learn more about Richard visit https://www.linkedin.com/in/riskexpertrichardhollis/To learn more about Risk Crew visit https://www.riskcrew.com/To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com
This week on Dark Rhiino Security’s Security Confidential podcast, Host Manoj Tandon talks to Tom Eston. Tom’s work over his 17 years in cybersecurity has focused on information security, network, red team, and application penetration testing as well as security and privacy advocacy. Tom has led multiple projects in the cybersecurity community, improved industry-standard testing methodologies, and is an experienced team manager and leader. Tom is also a frequent speaker at security user groups and international cybersecurity conferences including Black Hat, DEF CON, DerbyCon, SANS, InfoSec World, OWASP AppSec, and ShmooCon.
00:00 Introduction
00:20 Our Guest
12:34 The leadership role
14:09 Would you redesign the internet?
18:55 The Golden age of education
22:03 why is it that the hacking community can be better than the OEM?
25:19 Do you think Cybersecurity adds value to the market offering?
29:48 The Hackback program
35:08 Misconceptions of cybersecurity
48:56 More About Tom
Dorota Wrobel is the Chief Research and Devlopment Officer at G2A.com, the world's largest and most trusted marketplace for games, DLCs, in-game items, as well as software, and e-learning. She has worked in e-commerce for the last 9 years, is passionate about revolutionizing online shopping experiences, and a big advocate of women in tech. Dorota believes that the best work comes from diverse teams with interdisciplinary backgrounds. She is a cycling enthusiast and a big fan of documentaries.00:00 Introduction00:10 Our Guest02:50 Listening to the customers04:55 Selling to different cultures08:15 Creating a secure platform on G2A 16:44 How to be safer online19:06 Regulation for e-commerce20:59 AI transforming e-commerce31:40 Why do people game?33:15 Keeping Personal data safe35:30 Diversity in a team 43:51 More about Dorota and G2A----------------------------------------------------------------------To learn more about Dorota visit https://www.linkedin.com/in/dorota-wr%C3%B3bel-b653823b/To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com----------------------------------------------------------------------SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @DarkrhiinosecurityFacebook: @Dark-Rhiino-Security-IncTwitter: @darkrhiinosecLinkedIn: @dark-rhiino-securityYoutube: @DarkRhiinoSecurity
This week on Dark Rhiino Security’s Security Confidential podcast, Host Manoj Tandon talks to Scott Augenbaum. Scott is a Retired FBI Supervisory Special Agent, Author, Keynote Speaker, and Cybercrime Prevention Trainer. Scott spent most of his 30-year career handling Cybercrime investigations. In January 2019, he released a book called “The Secret to Cybersecurity, A Simple Plan to Protect Your Family and Business from Cybercriminals”. He says “It gave me an opportunity to share my thoughts about Cybercrime prevention with the world and also led to accomplish a major personal goal”. He has been featured on popular News broadcasting programs including Dr. Phil’s Talk Show.
00:00 Introduction
00:40 Our Guest
4:57 Did you always want to be an FBI Agent
07:47 “Advanced” computer skills in 1997
13:03 Technology will solve all of our problems
17:41 How long until the FBI is involved?
17:54 The FOUR truths about Cybersecurity
31:24 Magic Software solves our problems
38:45 The biggest takeaways from Scott
46:17 Connecting with Scott
This week on Dark Rhiino Security’s Security Confidential podcast, Host Manoj Tandon talks to Christian Espinosa. Christian is a bestselling author, certified high-performance coach, powerful keynote speaker, and the founder and CEO of Blue Goat Cyber, an organization designed to combat cybercrime through technical prowess and emotional intelligence. Christian is a US Air Force veteran with a BS in Engineering from the US Air Force Academy and MBA from Webster University. He holds multiple patents related to cybersecurity attack and defense. 00:00 Introduction00:16 Our Guest04:48 The Air Force Academy07:07 The Culture and Operation at Blue Goat Cyber08:18 Emotional Intelligence and Communicating with non-technical people14:57 Hiring Personality19:34 The Checklist should be Organized by Risk22:33 Extreme Sports and it’s Correlation with Cyber22:55 Translating Cybersecurity35:50 Where does AI come into view?42:03 Connecting with Christian----------------------------------------------------------------------To learn more about Christian visit https://christianespinosa.com/To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com----------------------------------------------------------------------SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @DarkrhiinosecurityFacebook: @Dark-Rhiino-Security-IncTwitter: @darkrhiinosecLinkedIn: @dark-rhiino-securityYoutube: @DarkRhiinoSecurity
This week on Dark Rhiino Security’s Security Confidential podcast, Host Manoj Tandon talks to Troy Fine. Troy is an industry-recognized thought leader (and meme creator) at the intersection of compliance, auditing, and cybersecurity. His expertise spans a range of frameworks, from SOC 2 and ISO 27001 to HIPAA, HITRUST, PCI, FedRAMP, CMMC, and privacy regulations. Through a holistic approach, Troy helps clients navigate the complexities of compliance and fosters a culture of continuous improvement within organizations.00:00 Introduction00:15 Our Guest01:27 Finding a job during an Economic Crisis06:26 Auditing is not Sexy09:50 Learning by experience and teaching others13:44 Top 3 most common questions17:02 Does this do anything to improve security?32:30 Why should I be liable?39:35 Overbearing controls44:42 Jumping from SOC2 type 1 to type 250:01 Book recommendations from Troy----------------------------------------------------------------------To learn more about Troy visit https://www.linkedin.com/in/troyjfine/To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com----------------------------------------------------------------------SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @DarkrhiinosecurityFacebook: @Dark-Rhiino-Security-IncTwitter: @darkrhiinosecLinkedIn: @dark-rhiino-securityYoutube: @DarkRhiinoSecurity -----------------------------------------------------------
This week on Dark Rhiino Security’s Security Confidential podcast, Host Manoj Tandon talks to Chandra Pandey. Chandra is an expert with 20+ years of experience in the cybersecurity and networking domain. Chandra has been associated with multiple disruptive innovations for cybersecurity and networking domains. Current innovations at Seceon is already used by 6000+ customers around the globe and make industry’s best cybersecurity affordable to organizations of any size and eliminate the need for customers to buy 15+ products like SIEM, SOAR, NBAD, UEBA, MDR, Cloud Security, Container Security, IDS etc. 00:00 Introduction00:16 Our Guest06:57 The Culture at Seceon09:32 The culture one comes from or the culture that one finds oneself in, What’s more important?11:23 Transitioning from a technical engineer to a business leader12:45 Adapting to changes in the industry13:34 How to get the most out of Ai21:46 Will we ever be able to get rid of the human in the SOC and have the SIEM be automated by AI?23:40 Why develop a SIEM?27:35 Motivation from Chandra----------------------------------------------------------------------To learn more about Chandra visit Seceon.comTo learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com----------------------------------------------------------------------SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @DarkrhiinosecurityFacebook: @Dark-Rhiino-Security-IncTwitter: @darkrhiinosecLinkedIn: @dark-rhiino-securityYoutube: @DarkRhiinoSecurity
This week on Dark Rhiino Security’s Security Confidential podcast, Host Manoj Tandon talks to James Potter. James is an Active Directory veteran with nearly 25 years in the field. A native of Detroit, James started his career at the University of Michigan where at the tender age of 17, he helped U of M develop their computer systems. For the next two decades James earned his stripes in consulting with organizations like Ernst & Young and PwC before founding his own company, DSE, in 2019. At DSE, James leads a dynamic group of architects, engineers, and SMEs who help large international organizations secure and modernize their AD infrastructure. He currently resides in the Pacific Northwest where—like a true son of Michigan—he restores old cars in his spare time.
00:00 Introduction
00:18 Our Guest
01:11 Starting in Active Directory
06:29 Has the security changed on a Jet Database?
08:06 The 3 tiers of security
11:44 What should SMBs do? Compliance vs Security
13:12 When you’re small, you’re the easiest target
16:40 Biggest risks that organizations face
20:02 Why do we still have Active Directory?
23:40 Foundational things that you should be doing
26:44 Escalation of Privileges
29:55 Asset Inventory: how do you control anything if you don’t know what you have?
40:47 Mergers and acquisitions
43:50 DSE and Connecting with James
This week on Dark Rhiino Security’s Security Confidential podcast, Host Manoj Tandon talks to Matt Brown. Matt is a serial entrepreneur, author of the #1 Amazon Best Selling book: Your Inner Game, podcaster, and the host of the Matt Brown Show podcast. The Matt Brown Show has built a global following, with millions of downloads and a network of talent unrivaled by most other business podcasts. He has hosted more than 650 extraordinary guests, with billionaires on six continents, New York Times Best Selling authors, navy seals, professors, scientists, and many leading business thought leaders throughout his 800 episodes. He has also founded 14 startups in the last 25 years and now he’s on a mission to help startup founders, entrepreneurs, and the community of business to change the world for the better. 00:00 Introduction00:20 Our GuestHow do you build something of value?05:57 Unlocking the human potential 09:21 Self-limiting themselves10:00 Why do 99% of Startups Die?16:30 Overcoming challenges and Influencing others 29:36 Ask better questions34:10 Does success happen because of Education?37:45 The law of attraction42:03 Changing your mindset47:17 More about Matt----------------------------------------------------------------------To learn more about Matt visit https://mattbrownshow.com/To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com----------------------------------------------------------------------SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @DarkrhiinosecurityFacebook: @Dark-Rhiino-Security-IncTwitter: @darkrhiinosecLinkedIn: @dark-rhiino-securityYoutube: @DarkRhiinoSecurity ----------------------------------------------------------------------
This week on Dark Rhiino Security’s Security Confidential podcast, Host Manoj Tandon talks to Angela Bergsma. Angela is the Founder & President of Latinas In Cyber, an Entrepreneur, a Navy Veteran, and an executive leader with over 20+ years of diverse experience encompassing national security (federal intelligence agencies), strategic analytics, program management, and security and IT practice management.
She founded Latinas in Cybersecurity (LAIC), a 501(c)3 non-profit with a mission to improve the representation of Latinas in within the cybersecurity industry. She is also an active advocate for veterans and neurodiversity in the workspace, as well as a member of cyber and defense women groups.
00:00 Introduction
00:18 Our Guest
01:12 Transitioning from Intelligence into Cyber Security
06:09 How did you target people?
08:59 Compromising an individual
09:45 The Psychology of Cybersecurity
16:44 Do I have to be a conspiracy theorist in order to understand Cybersecurity?
19:50 Teaching employee awareness
21:59 Who makes those widgets?
23:50 IOT devices
27:23 Can you trust anything or anyone?
28:26 Being a Role Model for Latinas In Cyber
40:56 Connecting with Latinas In Cyber
Connecting with Latinas In Cyber:
https://beacons.ai/latinasincyber
https://www.linkedin.com/company/latinas-in-cyber/
This week on Dark Rhiino Security’s Security Confidential podcast, Host Manoj Tandon talks to Aaron Painter. Aaron is an Entrepreneur, Author, former VP of Microsoft in China, and is currently the CEO of Nametag Inc. This company invented “Sign in with ID” as a more secure alternative to passwords. Aaron has successfully integrated his human identity platform with major organizations such as Reddit and Web.com. In his 2017 best-selling book, LOYAL, he describes his key to leadership: fostering a culture of listening. Through codifying and implementing a business listening framework, Aaron has built success worldwide.
00:00 Introduction
00:22 Our Guest
01:22 Motivated by cause
06:57 How do they handle cyber in Brazil or China?
09:12 Traditional vs Online ways of verifying your identity
11:34 NameTag Inc
20:31 Okta Breach
22:55 Holiday season attacks
24:15 Humans will be at fault
26:45 Flaws in SSMS
35:23 FaceID verification
37:56 Government help with verification
39:03 India's Aadhaar Verification
42:56 Book: LOYAL
46:03 Connecting with Aaron Painter----------------------------------------------------------------------To learn more about Aaron visit https://www.linkedin.com/in/aaronpainter/https://www.amazon.com/LOYAL-Leaders-Winning-Customer-Employee/dp/161961751XNameTag Inc: https://www.getnametag.com/To learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com----------------------------------------------------------------------SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @DarkrhiinosecurityFacebook: @Dark-Rhiino-Security-IncTwitter: @darkrhiinosecLinkedIn: @dark-rhiino-securityYoutube: @DarkRhiinoSecurity ----------------------------------------------------------------------#darkrhiinosecurity #securityconfidential #cybersecurity #cyberpodcast #ai #artificialintelligence #securitypodcast #cybernews #technews #techsoftware #informationtechnology #infosec #cybersecurityforbeginners #technewstoday
This week on Dark Rhiino Security’s Security Confidential podcast, Host Manoj Tandon talks to Dave Sobel. Dave is the host of the “Business of Tech” podcast, a leading IT services-focused news and analysis podcast and YouTube show, with thousands of listeners and subscribers. He also co-hosts the podcast “Killing IT”, and authored the book Virtualization: Defined. Dave has been recognized as one of the top virtualization experts globally as a Microsoft MVP for Virtualization. Dave has served on the executive council for Managed Services and Emerging Technologies, the Vendor Advisory Council, as the founding Chair for the Mobility Community for CompTIA. 00:00 Introduction00:22 Our Guest01:18 Business of Tech Podcast03:21 Dave’s Origin story05:19 Remaining positive06:30 Checklist before switching roles09:35 The market is brutal13:54 Boring is perception16:54 The adoption of Ai, User behavior, and applying common sense28:00 Why would I pay for security?30:25 Laws to protect your data43:52 Hackback47:08 Connecting with Dave----------------------------------------------------------------------To learn more about Dave visit: https://www.businessof.tech/https://www.amazon.com/LOYAL-Leaders-Winning-Customer-Employee/dp/161961751XTo learn more about Dark Rhiino Security visit https://www.darkrhiinosecurity.com----------------------------------------------------------------------SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @DarkrhiinosecurityFacebook: @Dark-Rhiino-Security-IncTwitter: @darkrhiinosecLinkedIn: @dark-rhiino-securityYoutube: @DarkRhiinoSecurity ----------------------------------------------------------------------#darkrhiinosecurity #securityconfidential #cybersecurity #cyberpodcast #ai #artificialintelligence #securitypodcast #cybernews #technews #techsoftware #informationtechnology #infosec #cybersecurityforbeginners #technewstoday #darkrhinosecurity
Dmytro Bielievtsov is the CTO and Co-founder of Respeecher. Respeecher focuses on high-fidelity voice cloning and their synthetic speech technology was the first one to be adopted by big Hollywood production studios in 2019. Respeecher's has already shown up in major Feature films, TV projects, and Video Games. Animation studios, Localization and media agencies, in Healthcare, and other areas are using it. Some of their projects include artificially voicing God of War Ragnarok, de-aging Mark Hamill’s voice in The Mandalorian and The Book of Boba Fett, and James Earl Jones’s voice for the Obi-Wan Kenobi series. They have also been featured in Forbes, The Guardian, TechCrunch, VentureBeat, to name a few.00:00 Introduction00:19 Our Guest01:33 Running a company in the Ukraine04:55 Respeecher07:24 How does Respeecher work?10:37 How did Hollywood find you?12:10 Voice work for Star Wars14:55 Do you keep the voice?16:23 Deep Fake in the Election22:02 Vishing23:25 Luke Skywalkers Voice25:26 De-Aging Mark Hamill’s voice26:15 Animal Voices28:02 The Future for Respeecher30:11 Electrolarynx devices----------------------------------------------------------------------To learn more about Respeecher visit https://www.respeecher.com/To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com----------------------------------------------------------------------SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @OfficialDarkRhinoSecurityFacebook: @Dark-Rhino-Security-IncTwitter: @darkrhinosecLinkedIn: @dark-rhino-securityYoutube: @Dark Rhino Security ----------------------------------------------------------------------#darkrhinosecurity #securityconfidential #cybersecurity #cyberpodcast #ai #artificialintelligence #securitypodcast #cybernews #technews #techsoftware #informationtechnology #infosec #cybersecurityforbeginners #technewstoday
Frank is a cybersecurity and privacy expert and former C-level executive with 25 years of experience developing compliance and privacy programs for large healthcare systems. Riccardi has held positions as Chief Compliance and Privacy Officer overseeing high-profile data breaches and cybersecurity investigations. His book, “Mobilizing the C-suite: Waging War Against Cyberattacks,” urges C-suite leaders to take action against cyberattacks by deploying basic cybersecurity controls and supporting frontline cybersecurity professionals with companywide cyber hygiene training. It also introduces real-world cybersecurity principles to college students, our future generation of cyber-savvy leaders.
00:00 Introduction
00:19 Our Guest
01:20 Frank’s Background
02:05 2021 Events, Motivation, and the Colonial Pipeline
07:28 Regulations in Healthcare
10:14 Does the C-suite understand that Cyber is a business problem or an I.T. problem?
17:53 The trickery behind the technology
21:17 The Human Factor is the weakest link in Cybersecurity
23:27 Why do Healthcare organizations ask for Social Security?
28:15 Why can’t the healthcare industry solve the problem?
31:55 Bills from Hospitals. What percentage do they get?
35:38 Mobilizing the C-suite: Waging War Against Cyberattacks
36:55 Connect with Frank!
Frank https://www.linkedin.com/in/frank-riccardi-jd-chc-261831b1/
Taking a break from our regularly scheduled Security Confidential episodes to talk about Streaming services, important skills that need to be taught in schools, an Okta Breach, and "Owning" DVDs.
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: @securityconfidential and @OfficialDarkRhinoSecurity Facebook: @Dark-Rhino-Security-Inc Twitter: @darkrhinosec LinkedIn: @dark-rhino-security Youtube: @Dark Rhino Security
Her career started with music. From then on, she did hundreds of commercial jingles (famously, Tillie the All-Time Teller for the first successful ATM in the US) and sang backup vocals on tour with Burt Bacharach and Roy Orbison. She got into voiceover and acting work at Doppler Studios in Atlanta, when the voice actor hired for a particular commercial didn't show up, and studio owner Pete Caldwell suggested she do the spot instead. She ended up doing spots for Coca-Cola, IBM, Papa John's Pizza, McDonald's, AT&T, Wendy's, Goodyear, Ford, Chiquita, etc., for both radio and TV. She also ended up working on camera for such clients as Morrison's, Ford, GA Pacific, IBM, Kimberly Clark, etc. But she’s Best known as the original VOICE OF SIRI. 00:00 Introduction00:18 Our Guest01:18 Her background03:01 How Apple Took Her Voice04:55 Remaining positive05:16 Working with Roy Orbison06:55 Perfect Pitch07:40 Learning to play the Piano08:40 How Siri affected her career09:31 A Siri-like voice10:07 Future acting jobs11:45 Are you tech-savvy?12:33 Remaining Positive14:44 AI taking over voice work16:53 Have you ever not been selected as the voice of Siri?18:18 Hire Susan for your speaker events19:00 A message to anyone in Tech----------------------------------------------------------------------To learn more about Susan or to hire her for your next event, visit https://susancbennett.com/To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com----------------------------------------------------------------------SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @OfficialDarkRhinoSecurityFacebook: @Dark-Rhino-Security-IncTwitter: @darkrhinosecLinkedIn: @dark-rhino-securityYoutube: @Dark Rhino Security ----------------------------------------------------------------------#darkrhinosecurity #securityconfidential #cybersecurity #cyberpodcast #ai #artificialintelligence #securitypodcast #cybernews #technews #techsoftware #informationtechnology #infosec #cybersecurityforbeginners #technewstoday #Voicework #SAGAFTRAstrike #SAGstrike #Actorstrike #Siri #voiceacting #appleceo #susancbennett #susanbennett #mcdonalds #voicecloning ----------------------------------------------------------------------Photos used:McDonald's logo: https://www.flickr.com/photos/neeky_b/24814690583Coca-Cola logo: Viktaur, Public domain, via Wikimedia Commons
Peter Warmka is a Keynote Speaker, Author, Cybersecurity/Insider Threat Consultant, Founder of Counterintelligence Institute, and a retired senior intelligence officer with the U.S. Central Intelligence Agency (CIA) where he specialized in clandestine HUMINT (human intelligence) collection. He was on previously to talk about his book “Confessions of a CIA Spy” and now he’s here to promote his new book “Why Are You Messing With Me? - Senior Survival Guide on Fraud, Privacy, and Security".
00:00 Introduction 00:19 Our Guest 02:06 ChatGPT and Generative Ai: How they’re used 06:14 Evil ChatGPT 07:16 How do we remain secure with Ai? 12:18 Why you shouldn’t be giving out your SSN 13:35 Sim Swapping Case 16:26 U.A.E Voice Cloning Case 23:07 What measurements does the CIA take? 25:55 Facial recognition 27:03 Educating the Public 29:38 Why are you messing with me? - Senior survival guide 43:28 More about Peter
Links Mentioned:
$24M AT&T Sim Swapping Case: https://blockworks.co/news/att-crypto-sim-swap-lawsuit
Voice Cloning U.A.E Case: https://www.forbes.com/sites/thomasbrewster/2021/10/14/huge-bank-fraud-uses-deep-fake-voice-tech-to-steal-millions/?sh=4e5cb5507559
Peters Books: https://www.amazon.com/stores/Peter-Warmka/author/B08QZ8C7S6?ref=ap_rdr&store_ref=ap_rdr&isDramIntegrated=true&shoppingPortalEnabled=true
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: @securityconfidential and @OfficialDarkRhinoSecurity Facebook: @Dark-Rhino-Security-Inc Twitter: @darkrhinosec LinkedIn: @dark-rhino-security Youtube: @Dark Rhino Security
Dan Wachtler is the CEO of DarkLight Inc and an accomplished entrepreneur with over 20 years of experience serving in both executive and sales leadership roles. Previously, he was the President of root9B Holdings, Inc., a NASDAQ-listed advanced cybersecurity firm and creator of the first-ever commercial HUNT platform. Dan has led numerous capital raises and managed large corporate realignment efforts including international expansion efforts.
00:00 Disclaimer 00:09 Introduction 00:25 Our Guest 01:18 Journey into Becoming an Entrepreneur 03:44 What is success to you? 08:21 What’s the secret to bringing awareness to your startup? 12:22 How do you differentiate? 16:43 What does DarkLight do? 22:53 How does your system differentiate between industries? 28:30 Understanding Risk 31:09 Does A.I. have a role in this? 36:07 Getting a Demo with DarkLight 37:44 More about Dan and DarkLight
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: @securityconfidential and @OfficialDarkRhinoSecurity Facebook: @Dark-Rhino-Security-Inc Twitter: @darkrhinosec LinkedIn: @dark-rhino-security Youtube: @Dark Rhino Security
Ryan is the CEO of Neuvik and the author of the book “Understand, Manage, and Measure Cyber Risk”. His past adventures include growing a cyber research and development company, formerly serving as Chief of Staff and Associate Director of Cyber for the U.S. Department of Defense, a cybersecurity strategist for McKinsey, and a technologist at IBM.
00:00 Introduction 00:17 Our Guest 01:08 Behind the name Neuvik 02:20 What does Neuvik do? 03:29 Imperfect Technology layered on Imperfect Technology 05:35 Is the next gadget worth it? 07:54 Guiding a newbie CXO 10:50 What is it that you're protecting? 22:54 Which framework has worked the best? 25:56 Understand, Manage, and Measure Cyber Risk 35:39 Leveraging vulnerabilities for offensive purposes 40:35 Connecting with Ryan
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: @securityconfidential and @OfficialDarkRhinoSecurity Facebook: @Dark-Rhino-Security-Inc Twitter: @darkrhinosec LinkedIn: @dark-rhino-security Youtube: @Dark Rhino Security
Eric is an entrepreneur and the CTO of SOOS, a software technology company. He has 15+ years of experience in leadership, business strategy, and software team transformation with a broad set of skills. On top of that, Eric has formal training as a software and mechanical engineer
00:00 Introduction 00:16 Our Guest 02:11 Open Source is Everywhere. Even Healthcare 04:45 Legal Risk using Open Source 06:05 Reading the Terms and Conditions 07:55 Would development time increase if you don’t use Open Source? 09:16 26,448 New CVEs Reported in 2022 11:03 Equifax Attack affected 143 Million 13:01 Therac-25 Medical Device Tragedy 14:53 What is a SBOM? 18:53 You need an FBOM 20:21 Knowing your “ingredients” 21:53 Is this a blockchain problem? 23:42 How does an SBOM help me? 31:48 Embedded Systems 40:28 Forking a project 43:10 How is SOOS staying up to date 47:40 Holding companies responsible 53:15 News from Eric
Robert Black is a Lecturer in Information Activities at Cranfield University on behalf of the UK Defence Academy. He is also the former Deputy Director of the UK’s National Cyber Deception Laboratory. At the Defence Academy, he helps educate senior military leaders about Warfare in the Information Age. His interests are several interests one of them being the role of influence and deception in cyber.
00:00 Introduction 00:19 Our Guest: Robert Black 01:28 Rob's Journey into Cyber 06:20 The weakest link is designing systems that don’t appreciate humans are integrated as a part of the system 09:17 Taking an insurance mindset 10:36 Does the Lock and Key model for Cyber work on bad actors? 16:12 Legality and Kinetic Response (Hack back, WannaCry attack, Liam Neeson, Crowdstrike report, U.S. Military) 22:30 Striking Fear into the Hackers 28:00 Does that help the SOC team? 29:45 Arguing with Attorneys and Hackers 33:19 Use of Deception in Tech 35:32 The psychology of the adversary 41:41 Who is responsible for Cybersecurity? 52:43 Connecting with Rob
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: @securityconfidential and @OfficialDarkRhinoSecurity Facebook: @Dark-Rhino-Security-Inc Twitter: @darkrhinosec LinkedIn: @dark-rhino-security Youtube: @Dark Rhino Security
Marius is also a public speaker, mentor, and non-executive director for many cybersecurity businesses. He was the former Cloud Security Architect and Analyst at Domino’s Pizza UK & Ireland, Analyst at Burberry, and many more.
00:00 Introduction 00:18 Our Guest: Marius Poskus 01:03 Physical Security to Cybersecurity 04:14 Tech talk overwhelms the nontechnical 11:00 How do you go about assessing risk? 17:20 A message to the executives 21:56 Cyber basics: How do you connect the dots? 26:39 Understanding the techniques from the 3 letter agencies 42:47 The Role of Offense 48:58 What can we do to implement processes to look out for configurations? 53:55 More about Marius
To learn more about Marius visit https://www.linkedin.com/in/marius-poskus-92611b22/
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: @securityconfidential and @OfficialDarkRhinoSecurity Facebook: @Dark-Rhino-Security-Inc Twitter: @darkrhinosec LinkedIn: @dark-rhino-security Youtube: @Dark Rhino Security
Chris Rock is a Cyber Mercenary, A three-time presenter at DEFCON, Author of The Baby Harvest, and Co-Founder of SIEMonster. Chris has spent the last 30 years in the Middle East, the US, and Asia preventing cyber attacks for governments and private organizations alike.
Chris and his team excel at countering sophisticated cyber threats with the implementation of advanced SIEM methods for all types of organizations. Chris is passionate about raising the public’s awareness of modern cybersecurity threats and trends.
00:19 Can Cyber Mercenaries overthrow the government? 04:32 What can we do about it? 09:50 SIEM logic for engineers 12:43 Could the government apply policies to help? 14:32 Refusing to loose Power 17:55 Chris’ Research
Chris Rock is a Cyber Mercenary, A three-time presenter at DEFCON, Author of The Baby Harvest, and Co-Founder of SIEMonster. Chris has spent the last 30 years in the Middle East, the US, and Asia preventing cyber attacks for governments and private organizations alike.
Chris and his team excel at countering sophisticated cyber threats with the implementation of advanced SIEM methods for all types of organizations. Chris is passionate about raising the public’s awareness of modern cybersecurity threats and trends.
00:00 Introduction 00:24 Our Guest 01:18 How many Chris Rocks are there? 02:58 3 Cyber Threats to Society 05:56 Can you use Genralative Ai for malicious reasons? 09:00 The Third Cyber Threat to Society 12:26 Looking for flaws in the process 16:15 The Gartner Model 18:16 Is it Laziness, Apathy, or Indifference? 23:59 Terminated from speaking at TED Global
Order his book here: https://www.amazon.com/Baby-Harvest-terrorist-criminal-laundering/dp/1515014576
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: @securityconfidential and @OfficialDarkRhinoSecurity Facebook: @Dark-Rhino-Security-Inc Twitter: @darkrhinosec LinkedIn: @dark-rhino-security Youtube: @Dark Rhino Security
Your life is important to everyone around you. If you have had Suicidal thoughts, please call or chat the:
988 Suicide and Crisis Lifeline Hours: Available 24 hours. Languages: English, Spanish
You can also chat with them online: https://988lifeline.org/
Kevin Metcalf is a former federal agent turned prosecutor, author, and founder of the National Child Protection Task Force, which brings together recognized experts in fields such as strategic legal applications, OSINT, cellular mapping and analysis, dark web investigations, and cryptocurrency to aid law enforcement agencies everywhere. Kevin has assisted with the recovery of numerous missing and exploited children and the identification and apprehension of sexual predators in multiple states.
00:00 Disclaimer 00:10 Introduction 00:23 Our guest 01:30 What is OSINT? How does it work? 05:10 Privacy laws 11:30 Sextortion 17:51 Financial Sextortion: How it works 20:00 When does it become statistically significant 21:33 What lead Kevin to help children 22:37 What role does law enforcement play? 25:52 A special case 28:45 OSINT, Mobile devices, and Kevins Books 34:53 Kevin's thoughts on the ADPPA 41:19 News from Kevin
To learn more about The National Child Protection Task Force (NCPTF) visit: https://www.ncptf.org/
Read more of Kevins Work: https://www.amazon.com/Books-Kevin-Metcalf/s?rh=n%3A283155%2Cp_27%3AKevin+Metcalf
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: @securityconfidential and @OfficialDarkRhinoSecurity Facebook: @Dark-Rhino-Security-Inc Twitter: @darkrhinosec LinkedIn: @dark-rhino-security Youtube: @Dark Rhino Security
Benjamin Johnson is a serial entrepreneur with a track record of success and hands-on open-source programming experience. With 20+ years as a software developer and leader, Benjamin is the CEO & Founder of Particle41, a dev firm founded by industry veterans that aims to help companies accelerate their initiatives through Software Development, DevOps, and Data Science.
00:00 Introduction 00:20 Our Guest 01:25 Behind the name: Particle41 03:07 Ben’s Origin story 05:14 Where did the ideas come from? 08:20 Outsourcing DevOps 10:45 What makes a great DevOps team? 16:50 Extreme Ownership 19:50 “Bridge” Personality 21:30 Is there a benefit to being first to market? 22:55 Monetizing Open Source 28:22 Characteristics that make successful people 34:02 More about Ben
To learn more about Ben visit
https://www.linkedin.com/in/benjaminrjohnson/https://particle41.com/
https://www.linkedin.com/company/particle41/
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: @securityconfidential and @OfficialDarkRhinoSecurity Facebook: @Dark-Rhino-Security-Inc Twitter: @darkrhinosec LinkedIn: @dark-rhino-security Youtube: @Dark Rhino Security
This is part 2 of our discussion. Bec McKeown is a Chartered Psychologist with twenty years experience of in researching and evaluating human performance in high-risk, high-stakes organizations, including the UK Ministry of Defence. She is an expert on the ways humans behave when working in complex, uncertain, and ambiguous environments and human performance in cybersecurity. She established Mind Science which assists companies at an operational and strategic level.
00:00 Introduction 00:10 Does a person have the ability to pause their thoughts before taking action? 05:18 What is Resilience? 10:32 You can Train your mind 12:34 Why do teams still fall apart under pressure? 14:42 What would you say to the executive? 17:26 What to do if you get the same results again? 19:00 The Wicked Problem 21:04 The Chain of Command 28:01 Mandatory Security Awareness training: What does that have to do with me? 33:30 More about Bec
Thinking, Fast and Slow by Daniel Kahneman https://www.amazon.com/Thinking-Fast-Slow-Daniel-Kahneman/dp/0374533555
To learn more about Bec McKeown visit https://www.linkedin.com/in/rebeccamckeowncpsychol/
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: @securityconfidential and @OfficialDarkRhinoSecurity Facebook: @Dark-Rhino-Security-Inc Twitter: @darkrhinosec LinkedIn: @dark-rhino-security Youtube: @Dark Rhino Security
This is part 1 of our discussion. Bec McKeown is a Chartered Psychologist with twenty years’ experience of researching and evaluating human performance in high-risk, high-stakes organizations, including the UK Ministry of Defence. She is an expert on the ways humans behave when working in complex, uncertain and ambiguous environments and human performance in cybersecurity. She established Mind Science which assists companies at an operational and strategic level.
00:00 Introduction
00:20 Our Guest
01:27 What is a chartered Psychologist?
03:40 How do you control chaos?
07:08 How we compare to mIlitary Training?
09:20 The baseline of response: How does the brain work?
13:31 So how do we structure a team?
17:10 Cognitive Agility: Passing along that knowledge
20:29 Getting Comfortable with being uncomfortable
Thinking, Fast and Slow by Daniel Kahneman
https://www.amazon.com/Thinking-Fast-Slow-Daniel-Kahneman/dp/0374533555
To learn more about Bec McKeown visit https://www.linkedin.com/in/rebeccamckeowncpsychol/
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: @securityconfidential and @OfficialDarkRhinoSecurity Facebook: @Dark-Rhino-Security-Inc Twitter: @darkrhinosec LinkedIn: @dark-rhino-security Youtube: @Dark Rhino Security
Phillip is an offensive security professional, educator, mentor, author, and frequent public speaker. His passions outside of the technical side of cybersecurity are sharing resources, professional networking, and bringing people together. He is also the host of The Hacker Factory Podcast and his new podcast, the Phillip Wylie Show. Phillip is the concept creator and coauthor of The Pentester Blueprint: Starting a Career as an Ethical Hacker.
00:00 Introduction
00:18 Our Guest
01:45 Phillips Origin Story
04:06 Wrestling a 750 pound bear
07:41 From Wresting to Cyber
10:12 What motivated Phillip to pursue Ethical Hacking?
11:43 Vulnerability management: What are we getting wrong?
14:52 Changing the Mindset
26:51 What is the role of Threat Intel?
28:08 Asset Intel approaches31:05 Ransomware: It’s still growing34:35 The Hacker Factory Podcast34:59 The Phillip Wylie Show36:17 News from Phillip37:44 Connecting with Phillip ----------------------------------------------------------------------To learn more about Phillip visit :https://www.linkedin.com/in/phillipwylie/https://www.thehackermaker.com/Podcasts:https://www.thehackermaker.com/the-hacker-factory-podcast/https://www.thehackermaker.com/phillip-wylie-show/To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com----------------------------------------------------------------------SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @OfficialDarkRhinoSecurityFacebook: @Dark-Rhino-Security-IncTwitter: @darkrhinosecLinkedIn: @dark-rhino-securityYoutube: @Dark Rhino Security
George Kamide was once an anthropologist, a rock climbing instructor, a wedding photographer, and a creative writer. He’s the host of the cybersecurity podcast First Watch and the podcast Bare Knuckles and Brass Tacks. As an advocate for greater representation in information security, he sits on the advisory board for Vision & Voice, a community dedicated to lifting women into cyber leadership positions. He has briefed US Cyber Command and the Congressional Cyber Caucus.
00:10 Changing the vulnerability landscape
01:48 Voice Cloning and email chat hacking
05:55 How does a machine generate context?
07:58 Social Media bots
10:06 What jobs will go away with AI?15:40 Whose fault is it?
20:40 Can you 100% trust something?
23:03 Work from Home
26:11 Connecting with George
To learn more about George visit https://www.linkedin.com/in/george-ka...
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA:
Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: @securityconfidential and @OfficialDarkRhinoSecurity
Facebook: @Dark-Rhino-Security-Inc
Twitter: @darkrhinosec
LinkedIn: @dark-rhino-security
Youtube: @Dark Rhino Security
https://www.zdnet.com/article/watch-o...
https://www.wsj.com/articles/i-cloned...
https://www.washingtonpost.com/techno...
https://abcnews.go.com/GMA/Family/mom...
George Kamide is a Senior Director at SafeGuard Cyber. He was once an anthropologist, a rock climbing instructor, a wedding photographer, and a creative writer. He’s the host of the cybersecurity podcast First Watch and the podcast Bare Knuckles and Brass Tacks. As an advocate for greater representation in information security, he sits on the advisory board for Vision & Voice, a community dedicated to lifting women into cyber leadership positions. He has briefed US Cyber Command and the Congressional Cyber Caucus. 00:00 Introduction00:18 Our Guest01:30 George’s Origin story05:04 Twitter bots controlled by Russia07:37 Does Congress understand the cyber risks?09:57 First Watch13:03 Bare knuckles and Brass Tacks14:15 Bad practices vendors make18:40 Developing trust with People virtually20:43 Using AI for Marketing----------------------------------------------------------------------To learn more about George visit https://www.linkedin.com/in/george-kamide/https://www.zdnet.com/article/twitter-bot-activity-spiked-after-the-release-of-the-mueller-report/https://www.cyberdefensemagazine.com/russian-twitter-bot-activity-increased-in-the-wake-mueller-report-release/https://www.safeguardcyber.com/podcastsTo learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com----------------------------------------------------------------------SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @OfficialDarkRhinoSecurityFacebook: @Dark-Rhino-Security-IncTwitter: @darkrhinosecLinkedIn: @dark-rhino-securityYoutube: @Dark Rhino Security ----------------------------------------------------------------------#darkrhinosecurity #securityconfidential #twitterbot #cybersecurity #cyberpodcast #ai #artificialintelligence #marketingusingai #securitypodcast #firstwatchpodcast #bareknucklesandbasstackspodcast #cybernews
Huxley Barbee is a Security Evangelist at runZero (formerly Rumble Network Discovery), a company founded by Metasploit creator HD Moore that helps companies discover unmanaged devices for asset inventory. Huxley previously worked for Cisco, Sparkpost, and most recently, Datadog – where he formulated the Datadog Cloud Security Platform. He has spent over 20 years as a software engineer and security consultant. He attended his first DEF CON in 1999 and holds both CISSP and CISM certifications. On top of that, he’s also an organizer of BSidesNYC.
00:00 Introduction
00:15 Our Guest
01:00 Huxleys Origin Story
02:27 Proactive Security, Risk, and Asset Inventory: What’s the connection?
04:56 Using the right tools
07:17 IPv4 and IPv6
11:15 What do you need in terms of an ACCURATE Asset inventory?
21:56 Asset Inventory Playing a role in ransomware
26:17 Connecting with Huxley
https://www.runzero.com/
https://www.linkedin.com/in/jhbarbee/
https://www.helpnetsecurity.com/2023/02/24/bsidesnyc-2023/
Tom Dusenberry has spent 30 years of his career as an interactive entertainment executive and was the CEO of Hasbro Interactive, Games.com, and Atari. He is currently the CEO of Dusenberry Entertainment. Tom is closely associated with great game brands like Monopoly, Trivial Pursuit, Frogger, Star Wars, and Roller Coaster Tycoon.
00:00 Introduction
00:22 Our Guest
01:26 Are you a gamer?
01:55 Tom's Favorite Games in different eras
04:54 Elements for a good game
07:02 Streaming Games
09:55 The Blue Ocean Strategy
12:03 Controlling the Gaming Market
14:20 Dusenberry Entertainment
16:35 The Process needed to create a game
19:54 Is creating a gaming community part of the process?
22:20 Gaming Franchises
23:27 Ai and it’s Role in the gaming world
25:03 Does violence in games cause violence in real life?
27:30 Advice for being successful in gaming
29:33 Got a game idea? Contact Tom! (Tom@tomdusenberry.com)----------------------------------------------------------------------To learn more about Tom visit Dusenberryentertainment.com To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com----------------------------------------------------------------------SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @OfficialDarkRhinoSecurityFacebook: @Dark-Rhino-Security-IncTwitter: @darkrhinosecLinkedIn: @dark-rhino-securityYoutube: @Dark Rhino Security
----------------------------------------------------------------------
Frogger:https://www.amazon.com/Frogger-Classic-Arcade-Poster-Vintage/dp/B098TPZRNL
Sonic the Hedgehog:
https://www.bbc.com/news/newsbeat-57566746
https://play.google.com/store/apps/details?id=com.sega.sonic1px&hl=en_US&pli=1
First Nintendo System:
https://www.amazon.com/Nintendo-Entertainment-System-NES-Classic/dp/B01IFJBQ1E
Nintendo 64 Console: GoldenEye 007
https://retrovgames.com/n64-console-goldeneye-007/
RollerCoaster Tycoon:
https://store.steampowered.com/app/683900/RollerCoaster_Tycoon_Classic/
Forza: https://store.steampowered.com/app/1551360/Forza_Horizon_5/
Chris and Rory are BACK! This time with Tech news that you should know about.00:00 Introduction02:53 War Thunder Discord Documents11:54 U.S. taking your Data vs. Chinese taking your Data13:49 Apple Has Weird Terms and Conditions15:23 A Guide to Understanding the Hoax of the Century22:00 Russia’s Electronic Draft Bill----------------------------------------------------------------------To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com----------------------------------------------------------------------SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @OfficialDarkRhinoSecurityFacebook: @Dark-Rhino-Security-IncTwitter: @darkrhinosecLinkedIn: @dark-rhino-securityYoutube: @Dark Rhino Security ----------------------------------------------------------------------https://www.cnn.com/2023/04/14/politics/discord-chatrooms-leaked-pentagon-documents/index.htmlUnderstanding the Hoax of the Century:https://www.tabletmag.com/sections/news/articles/guide-understanding-hoax-century-thirteen-ways-looking-disinformationhttps://apnews.com/article/russia-ukraine-war-draft-mobilization-conscription-notices-bf18ad64dd08c9d11aab2e222cabfee9https://www.fbi.gov/how-we-can-help-you/safety-resources/scams-and-safety/on-the-internet----------------------------------------------------------------------#warthunder #apple #termsandconditions #cybernews #technews #russiannews #electronicdraft#militarydraft #chinesedata #chineseapps #discord #itunes #media #politicsnews
Melissa Thornley is a leadership consultant who focuses on using emotional intelligence to drive better results. She has years of experience as an advertising/film industry executive and has worked with McDonald’s, Walgreens, Anheuser Busch, Nike, Capital One, Coca-Cola, and PBS. She's known for her contagious energy and passion for turning intangible concepts into tangible outcomes.00:00 Introduction00:18 Our Guest01:15 Starting off in Tech06:58 Working with Celebrities09:05 Celebrity leadership10:20 How do you create a leader?14:07 Emotional intelligence: What is it?19:37 Managing your triggers22:20 Have a system or process30:25 Personal and Team Accountability32:38 “Your baby’s Ugly”40:12 More about Melissa----------------------------------------------------------------------To learn more about Melissa visit https://www.melissathornley.com/To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com----------------------------------------------------------------------SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @OfficialDarkRhinoSecurityFacebook: @Dark-Rhino-Security-IncTwitter: @darkrhinosecLinkedIn: @dark-rhino-securityYoutube: @Dark Rhino Security ----------------------------------------------------------------------Read More About Melissa:https://reelchicago.com/article/reel-women-author-leadership-expert-melissa-thornley/https://medium.com/authority-magazine/melissa-thornley-emotional-intelligence-what-it-is-why-it-is-so-essential-and-how-we-can-2f75525bec62https://cceglobal.org/event/global-industry-spotlight-melissa-thornley/
Joel Beasley is a well-known figure in the tech industry. In 2017, he founded the Modern CTO Podcast while writing the Modern CTO book, with the goal of interviewing CTOs and sharing their experiences with others in the tech community. From there, Joel founded ProSeries Media to help companies worldwide create their own podcasts. Through his work on the Modern CTO Podcast and ProSeries Media, Joel has inspired others to share their knowledge and insights with the wider community. His passion for creating engaging content that informs, inspires, and entertains has made him a sought-after speaker and advisor on all things tech. 00:00 Introduction00:22 Our Guest01:04 Joel’s Origin Story05:45 Motivation to keep you going07:18 Maintaining a positive attitude 08:49 What does a CTO do?12:09 The Role of Failure in Success15:51 What if Success happens easily?17:02 Is there a secret sauce to say motivated through the failures. 21:11 Self-awareness22:25 Playing the Victim22:52 Nashville shooting30:18 Modern CTO30:22 Joel Beasley Tech Titans30:34 Joel Beasley Tech and Science----------------------------------------------------------------------To learn more about Joel visit https://www.linkedin.com/in/joelbeasleyleader/https://proseriesmedia.com/To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com----------------------------------------------------------------------SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @OfficialDarkRhinoSecurityFacebook: @Dark-Rhino-Security-IncTwitter: @darkrhinosecLinkedIn: @dark-rhino-securityYoutube: @Dark Rhino Security
Josh has 10 years of military experience, as an Air Force pilot and cyberwarfare officer. Currently, Josh is a Senior Technical Trainer for Neuvik Solutions, providing training, engagement management, penetration testing, risk assessments, and business consulting for clients00:00 Introduction00:22 Our Guest01:06 U.S Air Force Academy to Cyber07:28 Is there a bias against Veterans entering Cybersecurity?08:49 What are clients getting wrong with Infosec?13:14 Learning Lessons16:58 People like “Free”17:35 Constantly Changing20:43 More about Josh----------------------------------------------------------------------To learn more about Josh visit https://www.linkedin.com/in/joshuacmason/To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com----------------------------------------------------------------------SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @OfficialDarkRhinoSecurityFacebook: @Dark-Rhino-Security-IncTwitter: @darkrhinosecLinkedIn: @dark-rhino-securityYoutube: @Dark Rhino Security ----------------------------------------------------------------------Images:https://www.military.com/equipment/marine-corps-aircrafthttps://www.zuora.com/billing-topics/annual-recurring-revenue/#:~:text=Annual%20Recurring%20Revenue%2C%20or%20ARR,for%20a%20single%20calendar%20year.
Shea has over 25 years in cybersecurity, risk, and technology. Including incident response planning, crisis management, security assessments, developing and maturing cybersecurity programs, and more. 00:00 Introduction01:07 Our Guest02:39 The policy question that made me pause my vacation05:16 Diversity in Cyber06:22 Echelon Risk07:05 Has the Executive Mindset changed?12:52 Hack-Back and the Biden administration 18:50 News from Shea----------------------------------------------------------------------2023 Central Ohio InfoSec Summit (https://www.infosecsummit.com/website/44575/home/) – it’s titled “Beyond Checking the Box: Putting Compliance at the Forefront of Decision-Making” being presented by Amelia Fisherhttps://echeloncyber.com/Hack-Backhttps://www.techdirt.com/2023/01/27/biden-administration-declares-war-on-the-internet-clears-path-for-offensive-hacking-efforts-by-federal-agencies/https://www.securityweek.com/us-national-cyber-strategy-pushes-regulation-aggressive-hack-back-operations/https://www.darkreading.com/ics-ot/bidens-cybersecurity-strategy-calls-for-software-liability-tighter-critical-infastructure-securityhttps://slate.com/news-and-politics/2023/01/biden-cybersecurity-inglis-neuberger.htmlhttps://www.newyorker.com/magazine/2018/05/07/the-digital-vigilantes-who-hack-backhttps://techbeacon.com/security/why-hack-back-still-worst-idea-cybersecurity---------------------------------------------------------------------To learn more about Shea visit https://www.linkedin.com/in/sheanangle/To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com----------------------------------------------------------------------SOCIAL MEDIA:Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!Instagram: @securityconfidential and @OfficialDarkRhinoSecurityFacebook: @Dark-Rhino-Security-IncTwitter: @darkrhinosecLinkedIn: @dark-rhino-securityYoutube: @Dark Rhino Security
Continuing our Conversation with Navy SEAL, Mike Rice
00:00 Introduction
00:18 Our Guest
00:30 The Future of War
05:06 Is China our biggest threat?
09:13 TikTok and other Chinese Apps
11:40 Spy Balloons? Weather balloons? What was it?
16:13 Where do you see the war in Ukraine headed?
17:58 Who is the Wagner group?
18:41 Russia
Host Rory Meikle chats with Mike Rice. Mike is a retired Navy Seal officer who started out his Military career as an enlisted marine corp infantry. This is part 1 of their conversation.
00:00 Introduction
00:18 Our Guest
00:33 The Navy SEAL Team
04:05 What made you shift to SEAL Team?
08:16 What was the atmosphere like in BUD/S?
11:09 How was the SEAL Team Technology after 9/11?
13:21 Leveraging Technology
17:39 Where do you see technology affect you the most?
21:40 Stories with Mike
David is a SOC Analyst, Cyber Mentor, Educator, and Founder and Creator of CyberTech Dave. He holds a Master of Science degree in Information Systems and has a wide array of skills ranging from Teaching to Virus Removal. David is passionate about Cybersecurity and enjoys using his platform to teach people how to protect themselves and stay safe online.
00:00 Introduction
00:17 Our Guest
01:12 Using LinkedIn to break into Cybersecurity
07:30 Fake Profiles on Linkedin
08:30 Having a complete profile
10:19 the LinkedIn Algorithm
14:20 Useful Certifications and Resources
26:39 Davids Book about Women in Cyber
32:28 SOC fatigue
36:27 What role does Automation has?
37:46 Will Automation replace a SOC Analyst?
39:30 How can Clients improve their Cybersecurity?
42:35 Risk Assessments: Who should be leading?
45:20 Connecting with David
To learn more about David visit https://www.linkedin.com/in/david-meece-cybertech-dave/
To learn more about Dark Rhino Security at https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on social media, where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: @securityconfidential and @OfficialDarkRhinoSecurity
Facebook: @Dark-Rhino-Security-Inc
Twitter: @darkrhinosec
LinkedIn: @dark-rhino-security
Youtube: @Dark Rhino Security
https://securityplus.training/
Jax is a cyber influencer, author, speaker, podcaster, President, and Founder of Outpost Gray. With over 13 years of experience working in IT and cyber, both private and public sectors. Jax spent a significant portion of her life serving in the Special Operations Command, spearheading global Cyber, Electronic Warfare, and Intelligence operations. She is also the co-host of the cybersecurity podcast 2CyberChicks.
00:00 Introduction
00:16 Our Guest
01:52 Being in the Special Forces as a Woman
04:30 Cultural Support Team Program
07:47 Jaxs’ Current Mission
09:29 What is an Entry-Level Job?
11:49 How Jax began her journey into Cybersecurity
16:07 Data Breaches: What’s broken?
18:07 Company Policies and Bringing Awareness
19:38 Compliance isn’t security
23:17 NIST vs CMMC vs ISO
27:03 Who uses CMMC?
30:56 Resources for CMMC
32:12 What should the Federal Government be adopting?
36:45 HackBack
41:58 Connect with Jax
To learn more about Jax visit https://www.linkedin.com/in/iamjax/
https://twitter.com/outpostgray
https://iamjax.me/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: @securityconfidential and @OfficialDarkRhinoSecurity
Facebook: @Dark-Rhino-Security-Inc
Twitter: @darkrhinosec
LinkedIn: @dark-rhino-security
Youtube: @Dark Rhino Security
Articles and Resources Mentioned in this Video:
Jaxs' Book: https://www.amazon.com/Cybersecurity-Career-Master-Plan-cybersecurity/dp/1801073562/ref=sr_1_2?crid=2NPCHKN8K746B&keywords=jaclyn+scott&qid=1645818712&sprefix=jaclyn+scott%2Caps%2C181&sr=8-2&redirectFromSmile=1
Cultural Support Team Program: https://arsof-history.org/articles/v12n2_cst_timeline_page_1.html
NICE and NIST Frameworks:
https://resources.infosecinstitute.com/topic/what-is-the-nice-cybersecurity-workforce-framework/
https://www.cisa.gov/nice-cybersecurity-workforce-framework
https://www.securityprogram.io/a-guide-to-common-security-standards/
Target Breach: https://www.darkreading.com/attacks-breaches/target-ignored-data-breach-alarms
JP Morgan Breach: https://archive.nytimes.com/dealbook.nytimes.com/2014/10/02/jpmorgan-discovers-further-cyber-security-issues/
HackBack: https://foresite.com/blog/what-is-the-proposed-hack-back-bill/
Computer Fraud and Abuse Act: https://www.sciencedirect.com/topics/computer-science/computer-fraud-and-abuse-act#:~:text=The%20Computer%20Fraud%20and%20Abuse%20Act%20of%201986%20makes%20it,or%20foreign%20commerce%20or%20communication.
Active Cyber Defense Certainty Act https://www.billtrack50.com/BillDetail/1133039
Wendy is a keynote speaker, Principal Cloud Security Architect, and senior security advisor. She has worked for Cisco, PWC, and Deloitte. Has a doctorate from the University of Oxford. She is currently with OneWeb. Prior to joining OneWeb, Wendy was Experian’s DevSecOps Security Managing Adviser and defined the strategy for the organization's global DevSecOps transformation initiative. Wendy is active in the community, regularly sharing experiences through keynotes, Blogs, and Black Hat.
00:00 Introduction
00:21 Our Guest
01:40 Transitioning from Medical Genetics to Cyber
04:50 The importance of having people from different fields
07:41 Comparisons between Bacterial Virus and Breach
12:09 Low Earth Orbit Constellation
18:18 Hackers are Collaborative
22:01 100% Security
26:30 Understanding the Risk
30:40 Building a Culture of Awareness
35:35 DevSecOps
38:50 Controlling that 3rd party risk
43:15 Connecting with Wendy
VkzkH79NmeR5yCZidDzz
Bob Carver CISM, CISSP, M.S. began his security career working in the financial industry. Later, Bob became the first full-time security employee hired to start the dedicated security monitoring and incident response team for Verizon Wireless. He has been involved in cyber risk management, policy, threat intelligence, and analytics. He was recognized by LinkedIn as one of the Top 5 Influencers in the World to follow in Cybersecurity. Most recently, he was on the expert panel for CES (Consumer Electronics Show) in Las Vegas discussing "Focusing on Security in Product Innovation."
00:00 Introduction
00:18 Our Guest
01:47 Bobs Beginning
05:02 How did Bob land his position at Verizon?
08:00 Budget issues
11:02 Why are companies so ineffective with Cybersecurity?
13:38 Cyber professionals not addressing business security implications
18:40 Malvertising
21:31 Not downloading everything off the internet
26:15 Curing your problems with a tool
28:26 Budgeting: Where should you prioritize?
32:22 ChatGPT
33:47 Cyber Insurance
37:29 Multifactor Authentication
43:06 File Storing System
45:48 Modern-day Bonnie and Clyde
47:43 Connecting with Bob
Bobs video on Malvertising: https://www.linkedin.com/feed/update/urn:li:activity:7029053209889411072/
Bob's Twitter: @cybersecboardrm
Bob's LinkedIn https://www.linkedin.com/in/bobcarver/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: @securityconfidential and @OfficialDarkRhinoSecurity
Facebook: @Dark-Rhino-Security-Inc
Twitter: @darkrhinosec
LinkedIn: @dark-rhino-security
Youtube: @Dark Rhino Security
Articles Mentioned:
https://cybermagazine.com/cyber-security/executive-profile-bob-carver-verizon-wireless
https://www.wired.com/2005/02/paris-hilton-hacked-or-not/
Peter Warmka is a Keynote Speaker, Author, Cybersecurity/Insider Threat Consultant, Founder of Counterintelligence Institute, and a retired senior intelligence officer with the U.S. Central Intelligence Agency (CIA) where he specialized in clandestine HUMINT (human intelligence) collection.
00:00 Introduction
00:19 Our Guest
01:39 How do you become a CIA Intelligence Officer?
05:59 Human Intelligence Gathering
08:27 Knowing the risks within the job
13:24 The Counterintelligence Institute
13:53 Statistics and TED talks
19:42 Change the name of Cybersecurity
22:03 Getting into the mind of a Hacker
27:19 Why would anyone target me?
30:11 Panama Papers
32:28 Success with Employee Awareness
34:57 Being cautious on the Social Media
40:45 Fake Profiles on Social Media
42:32 Advanced AI technology/ ChatGPT
43:20 The Dangers of Linkedin
49:43 Peters Book: Confessions of a CIA Spy
53:10 Contact Peter
More About Peter:
https://www.counterintelligence-institute.com/upcoming-events
https://www.amazon.com/Confessions-CIA-Spy-Human-Hacking-ebook/dp/B08QYZJ13K?ref_=ast_author_mpb
https://www.linkedin.com/in/peterwarmka/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: @securityconfidential and @OfficialDarkRhinoSecurity
Facebook: @Dark-Rhino-Security-Inc
Twitter: @darkrhinosec
LinkedIn: @dark-rhino-security
Youtube: @Dark Rhino Security
Eric is an entrepreneur and the CTO of SOOS, a software technology company. He has 15+ years of experience in leadership, business strategy, and software team transformation with a broad set of skills. On top of that, Eric has formal training as a software and mechanical engineer.
00:00 Introduction
00:19 Our Guest
01:20 Software Engineering out of College
04:23 Being a Stay-at-Home-Dad
05:57 Entrepreneurship to Corporate
07:33 Everybody has a boss
08:53 Giving Interview Feedback
11:25 Opinionated Questions in an Interview
13:30 What is SOOS?
16:33 Minimum Viable Product (MVP)
24:27 Software tools: What works and what doesn’t?
29:18 People should become more aware
36:12 Compliance
41:03 SOOS tools
46:10 More news from Eric
Articles Mentioned:
https://soos.io/news/soos-launches-free-community-edition-sca-tool
https://soos.io/news/soos-partners-with-secureframe
https://soos.io/news/new-soos-partnership-with-rkvst-makes-it-easier-to-create-and-share-sboms
https://www.linkedin.com/pulse/importance-giving-feedback-after-interviews-sacha-dixon/
https://www.federalreserve.gov/paymentsystems/regcc-faq-check21.htm
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: @securityconfidential and @OfficialDarkRhinoSecurity
Facebook: @Dark-Rhino-Security-Inc
Twitter: @darkrhinosec
LinkedIn: @dark-rhino-security
Youtube: @Dark Rhino Security
Dallas is a US Army Veteran and Cyber Professional. He has worked for many companies including PerimeterX, Blue Shield, PayPal, and HUMAN where he is currently the Threat Intelligence Analyst. He is skilled in Python, SQL, Information Security, JavaScript, Networking, and recently obtained a new certification in Cyber Threat Management
00:00 Introduction
00:16 Our Guest
00:45 What’s new from Dallas
02:34 HUMAN + Perimeter X
03:51 Cyber is not secure!
05:34 Phishing Emails
09:25 2 Human behaviors that cause breaches
13:24 Analyst Fatigue
15:56 Having Humans perform Automation is not proper automation
20:07 Realtor, Angel Investor, and more projects from Dallas
24:23 HBO Documentary with Dallas
35:32 More news from Dallas
38:14 Connecting with Dallas
Article Mentioned: https://www.businesswire.com/news/home/20210330005240/en/White-Ops-Reintroduces-Itself-as-HUMAN-Signaling-Cybersecurity-Company%E2%80%99s-Dedication-to-Protecting-Enterprises-from-Bot-Attacks
About HUMAN: https://www.humansecurity.com/newsroom/tag/in-the-news
To learn more about Dallas visit https://www.linkedin.com/in/dallascbaker/
https://www.instagram.com/realdallasbaker/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: @securityconfidential and @OfficialDarkRhinoSecurity
Facebook: @Dark-Rhino-Security-Inc
Twitter: @darkrhinosec
LinkedIn: @dark-rhino-security
Youtube: @Dark Rhino Security
00:00 Introduction
00:20 Our Guest
02:15 Philippe’s Origin Story
07:42 Becoming a Leader
14:51 The Captain America Approach
18:20 Approaching Unknown Unknowns
22:34 How to monetize an open-source platform
26:19 Free Users
27:15 Where is Open source going?
28:34 CrowdSecs big announcement
32:01 Malevolent IP addresses Growing
33:25 Ensuring Accuracy
37:32 More about Philippe
Article Mentioned: https://health.clevelandclinic.org/barometric-pressure-headache/
To learn more about Philippe visit https://www.linkedin.com/in/philippehumeau/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
----------------------------------------------------------------------
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: @securityconfidential and @OfficialDarkRhinoSecurity
Facebook: @Dark-Rhino-Security-Inc
Twitter: @darkrhinosec
LinkedIn: @dark-rhino-security
Youtube: @Dark Rhino Security
John Shegerian (pronounced "SHUH-GARE-EE-UHN") is the co-founder and Chairman/CEO of ERI, the largest fully integrated IT and electronics asset disposition provider and cybersecurity-focused hardware destruction company in the United States. He is also the co-author of the #1 best-selling book "The Insecurity of Everything: How Hardware Data Security is Becoming the Most Important Topic in the World” and the host of the IMPACT podcast.
00:00 Introduction
00:10 Our Guest
01:34 Johns Origin Story
05:34 The secret to success: Doing good for others
07:56 Advice for Future Entrepreneurs
11:00 ERI: SOC2 Compliance
12:05 What are the steps for recycling electronics?
15:33 Gold, Copper, Precious Metals
18:30 Is there a recycling issue forming with EV cars? How JB Straubel is involved
25:21 Hardware Hacking
30:55 What to do before throwing electronics away
38:07 Anything you can’t recycle?
42:03 A FREE COPY OF JOHNS BOOK
44:33 Johns Book
47:11 Rental Car Agencies
48:20 Anything new for John
To learn more about John visit https://johnshegerian.com
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: @securityconfidential and @OfficialDarkRhinoSecurity
Facebook: @Dark-Rhino-Security-Inc
Twitter: @darkrhinosec
LinkedIn: @dark-rhino-security
Youtube: @Dark Rhino Security
Articles Mentioned
United Nations Article: https://ewastemonitor.info/gem-2020/
https://www.businesswire.com/news/home/20170914006135/en/Fortune-Magazine-Calls-Electronic-Waste-%E2%80%98Dead-but-Not-Forgotten%E2%80%99----ERI-Featured-in-Report-About-Cybersecurity
https://fortune.com/2017/09/06/electronic-waste-recycling-cybersecurity/
Information and photos about John:
https://impactpodcast.com/
https://eridirect.com/category/news/
https://johnshegerian.com/gallery/
https://eridirect.com/
1992 LA Rodney King Riots:
https://www.britannica.com/event/Los-Angeles-Riots-of-1992
https://www.npr.org/2017/04/26/524744989/when-la-erupted-in-anger-a-look-back-at-the-rodney-king-riots
https://www.nbclosangeles.com/news/local/timeline-rodney-king-beating-lapd-verdict-1992-la-riots/2880027/
Brian started his career as a systems analyst for the United States Army then became a Senior Systems Analyst for the United States Airforce. From then on, Brian grew extensive experience with a background in managing risk, security, compliance, business continuity, and governance for SaaS providers. He is currently a Security Test Manager for Adobe.
00:00 Introduction
01:05 The Army or the Airforce? Is one better than the other?
01:40 Brians Background
03:07 Pivoting into a new role
07:14 Credentials: What is important to get?
12:17 Is cybersecurity about a mindset or skill?
13:12 Communicating the Mindset
19:00 Risk Assessment process
24:30 100% Compliance
31:00 Getting pushback
33:47 Risk Quantification
36:36 Third-party risk
47:39 News for Brian
To learn more about Brian visit https://www.linkedin.com/in/briandavisit/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: @securityconfidential and @OfficialDarkRhinoSecurity
Facebook: @Dark-Rhino-Security-Inc
Twitter: @darkrhinosec
LinkedIn: @dark-rhino-security
Youtube: @Dark Rhino Security
Kenneth is a Senior Cyber Security Consultant at EY where he specializes in SIEM and SOAR technologies. He is also the Founder and owner of Ellington Cyber Academy, an E-Learning platform that teaches and trains people on how to use various SIEM and SOAR technologies so that they can transition or upskill themselves in their careers. On top of all that, Kenneth is also a part-time Associate cybersecurity instructor at the University of Houston and a Cybersecurity trainer at Blacks In Cybersecurity.
00:00 Introduction
03:08 The Chicken Tender Sub
04:13 How important are ingredients?
05:24 Passion for educating others
06:30 Leaving an impression with teaching
07:40 Being a good student
09:34 Tips you won’t get in College
11:06 Explaining in business terms
12:38 Why Cybersecurity?
14:35 An opportunity at Publix
15:30 Cyber Bootcamp
18:55 Why choose an analyst role?
20:45 SIEM vs Log Management System
23:10 What do you need for a good SIEM platform?
27:07 What is the role of SOAR
29:19 Ai and Analyst fatigue
32:25 No human elements
36:17 Common mistakes when implementing a SIEM
37:38 Can you ever be done tuning a SIEM
39:25 The Ellington Cyber Academy
41:00 How does ECA compare?
45:00 ECA’s goals in the future
48:02 News for Kenneth
To learn more about Kenneth visit https://www.linkedin.com/in/kenneth-ellington/
The Ellington Cyber Academy: https://kenneth-ellington-s-school.teachable.com/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: @securityconfidential and @OfficialDarkRhinoSecurity
Facebook: @Dark-Rhino-Security-Inc
Twitter: @darkrhinosec
LinkedIn: @dark-rhino-security
Youtube: @Dark Rhino Security
Justin is a corporate M&A attorney, Author, Tedx and keynote speaker, and business advisor, with a deep background in cybersecurity. He uses a unique skill set to collaborate with executives to create and implement multi-layered strategies to better manage cybersecurity and data protection. He co-hosts the “She Said Privacy/ He said Security” Podcast with his wife Jodi.
00:00 Introduction
01:52 Origin Story
03:19 Remote work: How attackers are successful
07:57 Cyber Proctology Exam
10:00 The Digital Seatbelt of the 21st Century
13:17 Cyber being an afterthought: How to change the mindset
14:20 Where does our Data go?
17:57 Can you have privacy?
19:10 Credibility Gap
27:00 Privacy Laws in Tech (Samsung, Tesla, Healthcare)
35:10 Data Reimagined: Building Trust
39:52 Bad Actors
42:48 Defense in Depth
48:38 A Message from Justin
Justin and Jodi's Book: https://www.amazon.com/Data-Reimagined-Building-Trust-Byte-ebook/dp/B0BDVQ97YQ
Justin and Jodi's Podcast: https://open.spotify.com/show/5q8B2oYUPajIvmvZiLa4K4
To learn more about Justin visit https://www.linkedin.com/in/justinsdaniels/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: @securityconfidential and @OfficialDarkRhinoSecurity
Facebook: @Dark-Rhino-Security-Inc
Twitter: @darkrhinosec
LinkedIn: @dark-rhino-security
Youtube: @Dark Rhino Security
Brian is the Vice President of Worldwide Channels and Alliances at DTEX Systems. Brian has extensive experience in MSSP, Channel, Strategic Alliances, and OEM for high-growth security solution providers. Brian has a long history with cybersecurity OEMs starting with CA where I first met him. Brian has been with McAfee, Fireeye, Cylance, Stellar Cyber, and is now with DTEX Systems.
00:00 Introduction
01:18 Technology trends
02:30 Is the industry overcrowded?
05:49 DTEX: who are they and what do they do?
08:45 Compromised Machines
9:26 Endpoint detection
13:48 Where is DTEX Classified?
15:32 Managing Vulnerabilities on the endpoint
18:19 Working with Sectors
20:39 Customer Profile: How small is too small?
24:05 DTEX Cloud
25:23 Trends with Investors
28:00 Remote work: Can you trust your employees?
30:00 Remote work: Fake Linkedin Profiles
33:53 More about Brian
Boise States Cyber Dome Program: https://www.boisestate.edu/news/2022/10/12/welcome-to-the-cyberdome/
https://www.boisestate.edu/cybersecurity/
To learn more about Brian visit https://www.linkedin.com/in/brian-stoner-146a56/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: @securityconfidential and @OfficialDarkRhinoSecurity
Facebook: @Dark-Rhino-Security-Inc
Twitter: @darkrhinosec
LinkedIn: @dark-rhino-security
Youtube: @Dark Rhino Security
Greg Tomchick is a former professional athlete. He played in the minor league for three seasons for the St. Louis Cardinals. He is the author of the book Growing into you. He is driven by a passion for cybersecurity from an experience he had with a former company. He is currently the Partner and CEO of Valorr. They focused on identifying and mitigating cyber threats upfront and when necessary, countering cyber attacks with targeted and strategic responses.
00:00 Introduction
01:36 Gregs Origin Story
04:15 Incubation Technologies
05:42 The right mindset
10:26 Cyberattack
15:12 Cybersecurity is a business problem
15:56 100% Cyber security?
16:56 Stimulation Output
17:50 How much cybersecurity is enough?
19:17 The process at Valor
22:38 Communicating with the Department of No
24:50 Advise for CEOs when talking about digital risk
27:16 Talking to the executive team
30:02 The Proactive side
31:58 Threat Actors
34:00 Third-Party Risk and Communicating with Vendors
37:50 Laws
43:12 Gregs Book
46:00 More about Greg
To learn more about Greg visit https://www.linkedin.com/in/greg-tomchick/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: @securityconfidential and @OfficialDarkRhinoSecurity
Facebook: @Dark-Rhino-Security-Inc
Twitter: @darkrhinosec
LinkedIn: @dark-rhino-security
Youtube: @DarkRhinoSecurity
Kevin is the director of cybersecurity data and application protection for Cleveland Clinic. He has over two decades of experience in software development and cybersecurity. He has done work in embedded systems and attack surface reduction and has a couple of patents related to this. He is the president-elect for the Northern Ohio HIMSS Chapter. In his spare time, he supports Velosano in fundraising for cancer research.
00:00 Introduction
02:12 From Rockwell to Cybersecurity
04:53 Nation-state actors
07:32 FedEx and Merck Cyber insurance lawsuit
09:04 Cybersecurity awareness for healthcare. Is it discussed?
13:08 Getting the Executive's attention
18:19 Healthcare Data
21:55 Purple Team/Red Team: What is their role?
27:40 Getting the word out about Cyber
33:03 Embedded Systems: How big of a threat are they and how do we manage it?
37:22 Compromised Chips
38:16 Open source components: What are the risks?
41:06 Updating the law? Can we secure everything?
45:24 Velosano: fundraising for cancer research.
47:42 More about Kevin
To learn more about Kevin visit https://www.linkedin.com/in/kevintambascio/
Cleveland Clinic: https://my.clevelandclinic.org/giving
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: @securityconfidential and @OfficialDarkRhinoSecurity
Facebook: @Dark-Rhino-Security-Inc
Twitter: @darkrhinosec
LinkedIn: @dark-rhino-security
Youtube: @Dark Rhino Security
Ted Harrington is the #1 best-selling author of Hackable: How to Do Application Security Right. He’s also the Executive Partner at Independent Security Evaluators (ISE), the company of ethical hackers famous for hacking cars, medical devices, and password managers. He’s helped companies like Google, Amazon, Microsoft, Netflix, and more fix thousands of security vulnerabilities. Ted has been featured in more than 100 media outlets, including The Wall Street Journal, Financial Times, and Forbes
00:00 Introduction
01:04 More than a checklist
06:19 Investing in the wrong thing
12:51 Story #1 Why would Grandma care?
13:58 Story #2 Grain of Sand
15:48 Psychology security
17:56 Different types of Hackers
22:59 Changing the mindset
32:49 Embedding
34:31 Defense in Depth
40:26 Automation
43:51 Pen Test vs Vulnerability Scan vs Vulnerability assessment
49:47 More about Ted
50:58 Win a SIGNED copy of Teds Book
To win a FREE signed copy of Ted's book "Hackable: How to Do Application Security Right" make sure you:
Follow @securityconfidential and @teddy.ballgame on Instagram.
Comment a good question that will stump Ted under the Security Confidential infographic for Teds part 1 episode.
Nothing else! You're done!
To learn more about Ted visit https://www.tedharrington.com/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: securityconfidential and OfficialDarkRhinoSecurity
Facebook: @Dark-Rhino-Security-Inc
Twitter: @darkrhinosec
LinkedIn: @darkrhinosecurity
Youtube: @Dark Rhino Security
Derek is a military veteran. He has over 10 years of experience in infosec and IT. Derek is the Founder, Content Creator, and Podcast Host of Cyber Warrior Studios LLC, and a Senior Security Consultant at Seiso.
00:00 Introduction
01:25 Dereks Origin Story
04:20 Dereks Military Cyber background
09:13 Dereks Origin Story (cont.)
12:15 Why “Cyber Warrior”
14:50 Strategy
18:50 Defense in Depth
21:50 Prevention Paradox
22:49 100% Secure
26:30 What makes a good target?
30:34 How many companies are compromised and don’t know it?
33:05 What can we do?
35:07 Sony attack
38:46 Hackers & Malware
43:30 More About Derek
To learn more about Derek visit https://www.linkedin.com/in/dschellerjr/ Visit Cyberwarriorstudios.com
Follow Derek on his Social Media Channels:
https://www.instagram.com/cyberwarriorstudios/
https://www.youtube.com/cyberwarriorstudios
https://www.facebook.com/CyberWarriorStudios/
https://twitter.com/cyberwarriorst1
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
Zinet is a cloud security engineer at Best Buy, an award-winning children's book author, and speaker, and is working on her master's degree in Cybersecurity at Georgia Tech. She is the director of community outreach at Black Girls In Cyber.
00:00 Introduction
01:25 Why the United States?
03:55 Transitioning from Law to Cybersecurity
05:27 Why Cyber security?
07:00 What do you want to be when you grow up?
08:38 How did you learn about cybersecurity?
13:40 Culture, Diversity, and Heritage
16:10 Our Special Sauce
18:55 “Oh no…Hacked again!”
22:51 Online Gaming: What can parents/guardians do to help?
30:55 Cloud Security: What do businesses miss?
35:18 Blue Team vs Red Team
36:20 Repeating defenses
37:20 CISA Auditor: What should companies prep for?
39:20 Has the government gained more knowledge of Cybersecurity?
41:39 Advice for anyone changing careers?
46:13 Upcoming news for Zinet
47:13 Finding Zinets Book
To learn more about Zinet Kemal visit Zinetkemal.com or https://www.linkedin.com/in/zinet-kemal/
Subscribe to her on Youtube: https://www.youtube.com/channel/UC4fg6G_rpsDh2s5laPoTZkg
Buy Zinets Books:
"Oh no...Hacked again": https://www.amazon.com/Oh-No-Hacked-Again-Online-ebook/dp/B09M85Y31J/ref=tmm_kin_swatch_0?_encoding=UTF8&qid=1645231721&sr=8-1
"Proud in her Hijab" : https://www.amazon.com/Proud-Her-Hijab-Strength-Empowerment-ebook/dp/B099NX1GTV/ref=d_pd_sbs_sccl_1_1/147-1154618-3680532?pd_rd_w=LJwaX&content-id=amzn1.sym.e8ae2edd-d546-4619-bda8-82a9f33e83eb&pf_rd_p=e8ae2edd-d546-4619-bda8-82a9f33e83eb&pf_rd_r=ZN1019A5MX4TNVQMMCCG&pd_rd_wg=tTrY2&pd_rd_r=31b172cf-c512-4c18-9d39-ea6b66aff608&pd_rd_i=B099NX1GTV&psc=1
Zinet on GMA: https://www.youtube.com/watch?v=ff0Y2BP5Ei8
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
Finishing off the Cyber Horror Story train is our Tech team..some of them.
These three brave souls WANTED to try the Lil Nitro Gummy Bear Challenge.
Some information:
-The Lil Nitro Gummy bear has 9 million Scoville units!
-The instructions are to chew the gummy bear for 30 seconds and then swallow.
-We ate right before starting this challenge...
-After swallowing the gummy bear, the challenge begins; who can withstand the heat for 5 minutes?
-It is 900 times hotter than a jalapeno
Finishing off the Cyber Horror Story train is our Tech team..some of them.
These three brave souls WANTED to try the Lil Nitro Gummy Bear Challenge.
Some information:
-The Lil Nitro Gummy bear has 9 million Scoville units!
-The instructions are to chew the gummy bear for 30 seconds and then swallow.
-We ate right before starting this challenge...
-After swallowing the gummy bear, the challenge begins; who can withstand the heat for 5 minutes?
-It is 900 times hotter than a jalapeno
Eddie is a Regional Sales Manager at DataLocker, a bestselling author, and entrepreneur who has been featured on ABC, CBS, & FOX news affiliates. Eddie has worked with multiple Fortune 500 companies to improve their revenue and was named one of the top business professionals by the Chamber of Commerce. Eddie hosts the popular “Leaders in Cyber security” where he talks to cyber professionals about #InfoSec.
00:00 Introduction
01:50 “People have to be people”
05:30 U.N.L.O.C.K. Yourself
11:56 Humility
15:14 Who you want to be
16:30 Negativity
24:15 Twitter CISO News
29:27 Who owns the risk in the company?
31:30 Why CISOs don’t stay more than 2 years
35:58 vCISO or CISO?
40:30 What’s new for Eddie
Books Mentioned:
"The Compound Effect" By Darren Hardy
"THE ENERGY BUS: 10 RULES TO FUEL YOUR LIFE, WORK, AND TEAM WITH POSITIVE ENERGY" By Jon Gordon
"Unlock Yourself: How to Earn the Success You were Born to Create" By Eddie Thomason
Article Mentioned: https://www.infosecurity-magazine.com/news/ex-security-chief-twitter-cyber/
To learn more about Eddie visit https://www.linkedin.com/in/eddiethomason/
https://leadersincyberpodcast.com/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
Eddie is a Regional Sales Manager at DataLocker, a bestselling author, and entrepreneur who has been featured on ABC, CBS, & FOX news affiliates. Eddie has worked with multiple Fortune 500 companies to improve their revenue and was named one of the top business professionals by the Chamber of Commerce. Eddie hosts the popular “Leaders in Cyber security” where he talks to cyber professionals about #InfoSec.
00:00 Introduction
01:50 “People have to be people”
05:30 U.N.L.O.C.K. Yourself
11:56 Humility
15:14 Who you want to be
16:30 Negativity
24:15 Twitter CISO News
29:27 Who owns the risk in the company?
31:30 Why CISOs don’t stay more than 2 years
35:58 vCISO or CISO?
40:30 What’s new for Eddie
Books Mentioned:
"The Compound Effect" By Darren Hardy
"THE ENERGY BUS: 10 RULES TO FUEL YOUR LIFE, WORK, AND TEAM WITH POSITIVE ENERGY" By Jon Gordon
"Unlock Yourself: How to Earn the Success You were Born to Create" By Eddie Thomason
Article Mentioned: https://www.infosecurity-magazine.com/news/ex-security-chief-twitter-cyber/
To learn more about Eddie visit https://www.linkedin.com/in/eddiethomason/
https://leadersincyberpodcast.com/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
Hacker Valley Media's own Ron Eddings shares his personal horror story and how his past came back to haunt his future
This October we wanted to do something different. So we came up with Cyber Horror Stories. These are 2-10 minute scary stories from your favorite guests. Now hold on, You'll still have new episodes of Security Confidential every Friday at 8 am. But now, you'll also have new Cyber Horror Stories every Monday, Wednesday, and Friday.
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA:
Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: @SecurityConfidential
Facebook: @DarkRhinoSecurity Inc
Twitter: @Darkrhinosec
LinkedIn: @DarkRhinoSecurity
Youtube: @DarkRhinoSecurity
Hacker Valley Media's own Ron Eddings shares his personal horror story and how his past came back to haunt his future
This October we wanted to do something different. So we came up with Cyber Horror Stories. These are 2-10 minute scary stories from your favorite guests. Now hold on, You'll still have new episodes of Security Confidential every Friday at 8 am. But now, you'll also have new Cyber Horror Stories every Monday, Wednesday, and Friday.
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA:
Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: @SecurityConfidential
Facebook: @DarkRhinoSecurity Inc
Twitter: @Darkrhinosec
LinkedIn: @DarkRhinoSecurity
Youtube: @DarkRhinoSecurity
Share and spread the word!
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
Share and spread the word!
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
This October we wanted to do something different. So we came up with Cyber Horror Stories. These are 2-10 minute scary stories from your favorite guests. Now hold on, You'll still have new episodes of Security Confidential every Friday at 7 am EST on your favorite Podcast app/9 am EST on Youtube. But now, you'll also have new Cyber Horror Stories every Monday, Wednesday, and Friday as well
Share and spread the word!
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
This October we wanted to do something different. So we came up with Cyber Horror Stories. These are 2-10 minute scary stories from your favorite guests. Now hold on, You'll still have new episodes of Security Confidential every Friday at 7 am EST on your favorite Podcast app/9 am EST on Youtube. But now, you'll also have new Cyber Horror Stories every Monday, Wednesday, and Friday as well
Share and spread the word!
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
Share and spread the word!
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
Share and spread the word!
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
This October we wanted to do something different. So we came up with Cyber Horror Stories. These are 2-10 minute scary stories from your favorite guests. Now hold on, You'll still have new episodes of Security Confidential every Friday at 7 am EST on your favorite Podcast app/9 am EST on Youtube. But now, you'll also have new Cyber Horror Stories every Monday, Wednesday, and Friday as well
Share and spread the word!
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
This October we wanted to do something different. So we came up with Cyber Horror Stories. These are 2-10 minute scary stories from your favorite guests. Now hold on, You'll still have new episodes of Security Confidential every Friday at 7 am EST on your favorite Podcast app/9 am EST on Youtube. But now, you'll also have new Cyber Horror Stories every Monday, Wednesday, and Friday as well
Share and spread the word!
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
This October we wanted to do something different. So we came up with Cyber Horror Stories. These are 2-10 minute scary stories from your favorite guests. Now hold on, You'll still have new episodes of Security Confidential every Friday at 8 am. But now, you'll also have new Cyber Horror Stories every Monday, Wednesday, and Friday.
Share and spread the word!
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
Dr. Gerald Auger has worked in the cybersecurity field since 2006 and holds a Ph.D. in cyber operations, is Chief Content Creator at “Simply Cyber”, and is the managing partner at the Coastal Information Security Group. His Book “Cybersecurity Career Master Plan” is a step-by-step guide for anyone who considers cybersecurity as a potential career field.
00:00 Introduction
01:20 Geralds Background
03:50 Being a lifelong learner
05:05 What drove you to write your book “Cybersecurity Career Master Plan”
08:00 Where to begin
13:00 Building your own brand
14:52 Black Hat 2022
18:20 What the government can do to help remove bad actors?
22:50 Access for Sale and Ransomware as a service
25:50 Multi-factor Authentication
30:13 Flashlight in a Dark Room Theory
35:35 What should small businesses do?
39:50 Securing the Cloud
43:22 S3 Bucket Leak
48:39 Security Awareness
53:05 Plugs from Jerry
To learn more about Gerald visit https://www.linkedin.com/in/geraldauger/
https://www.simplycyber.io/free-cyber-resources
https://www.simplycyber.io/blog
https://www.youtube.com/c/GeraldAuger
Geralds Book: https://www.amazon.com/Cybersecurity-Career-Master-Plan-cybersecurity/dp/1801073562?crid=3EBR8UHNWROGY&keywords=cybersecurity+master+plan&qid=1657667595&sprefix=cybersecurity+master,aps,150&sr=8-1&linkCode=sl1&tag=simplycyber-20&linkId=3141ad487e8cdd550a1bcfd63525209e&language=en_US&ref_=as_li_ss_tl
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
This October we wanted to do something different. So we came up with Cyber Horror Stories. These are 2-10 minute scary stories from your favorite guests. Now hold on, You'll still have new episodes of Security Confidential every Friday at 7 am EST on your favorite Podcast app/9 am EST on Youtube. But now, you'll also have new Cyber Horror Stories every Monday, Wednesday, and Friday as well
Share and spread the word!
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
This October we wanted to do something different. So we came up with Cyber Horror Stories. These are 2-10 minute scary stories from your favorite guests. Now hold on, You'll still have new episodes of Security Confidential every Friday at 7 am EST on your favorite Podcast app/9 am EST on Youtube. But now, you'll also have new Cyber Horror Stories every Monday, Wednesday, and Friday as well
Share and spread the word!
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
This October we wanted to do something different. So we came up with Cyber Horror Stories. These are 2-10 minute scary stories from your favorite guests. Now hold on, You'll still have new episodes of Security Confidential every Friday at 7 am EST on your favorite Podcast app/9 am EST on Youtube. But now, you'll also have new Cyber Horror Stories every Monday, Wednesday, and Friday as well
Share and spread the word!
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
Ken is the CEO, Executive Producer, and Television Host at Cyber Life. He is the Best-Selling Author of “Hack the Cybersecurity Interview: A complete interview preparation guide for jumpstarting your cybersecurity career”. He has been featured in Forbes, Reader's Digest, Tech Republic, Fox, NBC, Dark Reading, and many more places.
00:00 Introduction
01:07 Kens start
04:45 Making a difference: Bangladesh Story
07:11 Making a difference: Miguel’s Story
14:08 Growing up and overcoming challenges
20:10 Avoid playing the victim
23:00 Keeping people interested in Cyber
24:32 Defense in Depth Taco
28:33 Teaching about Cyber
31:30 Tips for a job in Cybersecurity
39:05 Hack the Cybersecurity Interview Book
42:27 Block Party
45:02 Starting jobs in Cybersecurity
51:50 Resources for Companies to feel safer
57:20 News for Ken
Kens Book: https://www.amazon.com/gp/product/B09V2S1T35/ref=dbs_a_def_rwt_hsch_vapi_tkin_p1_i0
The CISO Evolution: https://www.wiley.com/en-us/The+CISO+Evolution%3A+Business+Knowledge+for+Cybersecurity+Executives-p-9781119782483
To learn more about Ken visit https://www.linkedin.com/in/kenunderhill/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
This October we wanted to do something different. So we came up with Cyber Horror Stories. These are 2-10 minute scary stories from your favorite guests. Now hold on, You'll still have new episodes of Security Confidential every Friday at 7 am EST on your favorite Podcast app/9 am EST on Youtube. But now, you'll also have new Cyber Horror Stories every Monday, Wednesday, and Friday as well
Share and spread the word!
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
This October we wanted to do something different. So we came up with Cyber Horror Stories. These are 2-10 minute scary stories from your favorite guests. Now hold on, You'll still have new episodes of Security Confidential every Friday at 7 am EST on your favorite Podcast app/9 am EST on Youtube. But now, you'll also have new Cyber Horror Stories every Monday, Wednesday, and Friday at 8:30 am EST.
Share and spread the word!
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
This October we wanted to do something different. So we came up with Cyber Horror Stories. These are 2-10 minute scary stories from your favorite guests. Now hold on, You'll still have new episodes of Security Confidential every Friday at 7 am EST on your favorite Podcast app/9 am EST on Youtube. But now, you'll also have new Cyber Horror Stories every Monday, Wednesday, and Friday as well
Share and spread the word!
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
New Month, New Season! Boyd is a self-taught cybersecurity consultant who helps entry-level IT professionals upskill and land six-figure jobs. He was formerly at American Airlines and is the Co-founder, of Baxter Clewis Cybersecurity. Boyd is the Author of “Corporate Security: Proven Ways to Reduce Cybersecurity Breaches” and a Highly-Respected International Expert and Speaker on Cybersecurity featured on Forbes, NBC, ABC, FOX, and CBS.
00:00 Introduction
01:50 Boyds Beginning
07:00 Avoid playing the victim
10:20 Being Motivated
15:00 Mythbusting: Jumping into Cyber with no experience
17:11 Cyber-hero Rule #25
18:05 Cyber-hero Rule #24
21:02 Cyber-hero Rule #26
21:30 Cyber-hero Rule #1
22:24 Cyber-hero Rule #2
23:33 Cyber-hero Rule #3
25:13 Cyber-hero Rule #4
26:31 Cyber-hero Rule #5
28:17 It’s not just about completing the program
30:42 KPIs and Activation points
33:50 PCI and DSS
35:10 If you're complaint does that mean you have significant cybersecurity?
37:02 What should companies be doing to better safeguard the privacy of that information?
40:18 Thoughts on not using a credit card and using PayPal/Android/Apple Pay instead?
41:30 Boyds Book: Proven ways companies can reduce cybersecurity breaches
47:26 Upcoming News for Boyd
To learn more about Boyd visit https://www.linkedin.com/in/boydclewis/
https://www.baxterclewis.com/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
This October we wanted to do something different. So we came up with Cyber Horror Stories. These are 2-10 minute scary stories from your favorite guests. Now hold on, You'll still have new episodes of Security Confidential every Friday at 7 am EST on your favorite Podcast app/9 am EST on Youtube. But now, you'll also have new Cyber Horror Stories every Monday, Wednesday, and Friday as well
Share and spread the word!
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
This October we wanted to do something different. So we came up with Cyber Horror Stories. These are 2-10 minute scary stories from your favorite guests. Now hold on, You'll still have new episodes of Security Confidential every Friday at 7 am EST on your favorite Podcast app/9 am EST on Youtube. But now, you'll also have new Cyber Horror Stories every Monday, Wednesday, and Friday as well
Share and spread the word!
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
Ranbir Bhutani is the CEO and vCISO of CyberCulture, a partner at Ingram Advisory Group, and a vCISO at many companies. He has a master's in cybersecurity from the University of Maryland global campus.
00:00 Introduction
01:00 CyberCulture and Ingram Advisory Group: What is the mission of both companies
03:06 Why not take a corporate job?
07:25 Myth busting #1: 100% Cyber security
08:57 CyberCulture: Meaning behind the name
10:50 Penalize Employees
13:30 Myth busting #2: Achieving Compliance
16:00 Why are companies so reactionary to their cyber issues?
16:56 How to take cybersecurity from a cost sector to a revenue sector?
19:05 Zero Trust Frameworks 25:07 Cloud Infrastructure
26:35 Process steps for how the program should be operated
36:15 Mitigation vs Outsourcing of Risk
37:38 Do the boards understand 3rd party Risk?
40:50 Landscape of CyberSecurity evolving
44:00 A Message from Ranbir
To learn more about Ranbir visit https://www.linkedin.com/in/ranbir-b-725286175/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
Ranbir Bhutani is the CEO and vCISO of CyberCulture, a partner at Ingram Advisory Group, and a vCISO at many companies. He has a master's in cybersecurity from the University of Maryland global campus.
00:00 Introduction
01:00 CyberCulture and Ingram Advisory Group: What is the mission of both companies
03:06 Why not take a corporate job?
07:25 Myth busting #1: 100% Cyber security
08:57 CyberCulture: Meaning behind the name
10:50 Penalize Employees
13:30 Myth busting #2: Achieving Compliance
16:00 Why are companies so reactionary to their cyber issues?
16:56 How to take cybersecurity from a cost sector to a revenue sector?
19:05 Zero Trust Frameworks 25:07 Cloud Infrastructure
26:35 Process steps for how the program should be operated
36:15 Mitigation vs Outsourcing of Risk
37:38 Do the boards understand 3rd party Risk?
40:50 Landscape of CyberSecurity evolving
44:00 A Message from Ranbir
To learn more about Ranbir visit https://www.linkedin.com/in/ranbir-b-725286175/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
Greg is the CEO of CryptoStopper, a ransomware protection service that automatically detects and stops active ransomware attacks. He has been a technology entrepreneur since 1998 and has founded many businesses. Including Axis Backup, a backup and disaster recovery company for the insurance industry, that he founded a few years before CryptoStopper. He is skilled in disaster recovery, Cloud computing, and Network security just to name a few.
00:00 Introduction
01:30 Starting your own businesses
02:20 Tips for future entrepreneurs
03:26 The fear of Failure
05:13 Entrepreneurship: should it be taught in schools?
07:50 Cryptostopper
11:42 Access Recovery
12:52 Getting a disaster recovery program
19:57 Wannacry
24:19 Anatomy of a Ransomware attack
25:20 When would SOC notice Ransomware
28:20 Russia
30:16 Ransomware
35:54 Layered Security
37:48 Vendor Consolidation or Defense in Depth?
40:37 Damage Mitigation and Prevention
44:10 More about Greg
To learn more about Greg visit https://www.linkedin.com/in/gedwardswpd/
https://kitcaster.com/greg-edwards/
Cryptostopper: https://www.getcryptostopper.com/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA:
Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: @SecurityConfidential
Facebook: @DarkRhinoSecurity Inc
Twitter: @Darkrhinosec
LinkedIn: @DarkRhinoSecurity
Youtube: @DarkRhinoSecurity
Greg is the CEO of CryptoStopper, a ransomware protection service that automatically detects and stops active ransomware attacks. He has been a technology entrepreneur since 1998 and has founded many businesses. Including Axis Backup, a backup and disaster recovery company for the insurance industry, that he founded a few years before CryptoStopper. He is skilled in disaster recovery, Cloud computing, and Network security just to name a few.
00:00 Introduction
01:30 Starting your own businesses
02:20 Tips for future entrepreneurs
03:26 The fear of Failure
05:13 Entrepreneurship: should it be taught in schools?
07:50 Cryptostopper
11:42 Access Recovery
12:52 Getting a disaster recovery program
19:57 Wannacry
24:19 Anatomy of a Ransomware attack
25:20 When would SOC notice Ransomware
28:20 Russia
30:16 Ransomware
35:54 Layered Security
37:48 Vendor Consolidation or Defense in Depth?
40:37 Damage Mitigation and Prevention
44:10 More about Greg
To learn more about Greg visit https://www.linkedin.com/in/gedwardswpd/
https://kitcaster.com/greg-edwards/
Cryptostopper: https://www.getcryptostopper.com/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA:
Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: @SecurityConfidential
Facebook: @DarkRhinoSecurity Inc
Twitter: @Darkrhinosec
LinkedIn: @DarkRhinoSecurity
Youtube: @DarkRhinoSecurity
Brian is the CEO of SideChannel. Creator and Host of the CISO life podcast and a professor at Boston College. Brian is a Security Confidential alum and an expert in Cybersecurity
00:00 Introduction
03:40 What’s new with SideChannel
09:02 #CISOLife
10:30 Roe v. Wade and Data
21:20 SMB: I’m not a target
23:21 Understanding Controls: A whiteboard demonstration
26:43 Top 3 things to do
37:35 Risk and Probability by Impact: A whiteboard demonstration
42:22 Upcoming News for Brian
Brians Book: https://www.wiley.com/en-us/Cybersecurity+Risk+Management%3A+Mastering+the+Fundamentals+Using+the+NIST+Cybersecurity+Framework-p-9781119816287
SideChannel on Youtube: https://www.youtube.com/c/SideChannel/videos
To learn more about Brian visit https://www.linkedin.com/in/brianhaugli/ https://sidechannel.com/team_member/brian-haugli/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
Brian is the CEO of SideChannel. Creator and Host of the CISO life podcast and a professor at Boston College. Brian is a Security Confidential alum and an expert in Cybersecurity
00:00 Introduction
03:40 What’s new with SideChannel
09:02 #CISOLife
10:30 Roe v. Wade and Data
21:20 SMB: I’m not a target
23:21 Understanding Controls: A whiteboard demonstration
26:43 Top 3 things to do
37:35 Risk and Probability by Impact: A whiteboard demonstration
42:22 Upcoming News for Brian
Brians Book: https://www.wiley.com/en-us/Cybersecurity+Risk+Management%3A+Mastering+the+Fundamentals+Using+the+NIST+Cybersecurity+Framework-p-9781119816287
SideChannel on Youtube: https://www.youtube.com/c/SideChannel/videos
To learn more about Brian visit https://www.linkedin.com/in/brianhaugli/ https://sidechannel.com/team_member/brian-haugli/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
Rafael is a Mentor, Motivational Speaker, Veteran, and an accomplished information and cybersecurity executive. He has many skills such as Risk Mitigation, Encryption, Vendor Collaboration, and PCI/DSS. Rafael has worked as an IT security manager and Principal Information Security Analyst for Lowes, vCiso of Fortalice Solutions, and Senior Security Architect for Sirius Computer Solutions. He is the Founder of RAYA Cyber Solutions LLC and Co-Founder of Carolinas CISO RoundTable.
00:00 Introduction
01:30 Rafaels Background
05:40 How Rafael remained positive
08:00 Motivation for everyone
09:40 Imposter Syndrome
12:20 Firing up that ego
14:00 How to motivate yourself
16:08 “It takes an entire village to keep your data safe”
21:44 Keeping Employees/Humans aware
29:41 Vulnerabilities
32:35 Friction Security
36:00 Target breach
39:29 Third Party Risk
43:30 Zero Trust and SASE
45:50 Corporate Failure
51:08 Personal Failure
53:03 Connecting with Rafael
To learn more about Rafael visit https://www.linkedin.com/in/rafael-nunez-jr-167347148/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA:
Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
Rafael is a Mentor, Motivational Speaker, Veteran, and an accomplished information and cybersecurity executive. He has many skills such as Risk Mitigation, Encryption, Vendor Collaboration, and PCI/DSS. Rafael has worked as an IT security manager and Principal Information Security Analyst for Lowes, vCiso of Fortalice Solutions, and Senior Security Architect for Sirius Computer Solutions. He is the Founder of RAYA Cyber Solutions LLC and Co-Founder of Carolinas CISO RoundTable.
00:00 Introduction
01:30 Rafaels Background
05:40 How Rafael remained positive
08:00 Motivation for everyone
09:40 Imposter Syndrome
12:20 Firing up that ego
14:00 How to motivate yourself
16:08 “It takes an entire village to keep your data safe”
21:44 Keeping Employees/Humans aware
29:41 Vulnerabilities
32:35 Friction Security
36:00 Target breach
39:29 Third Party Risk
43:30 Zero Trust and SASE
45:50 Corporate Failure
51:08 Personal Failure
53:03 Connecting with Rafael
To learn more about Rafael visit https://www.linkedin.com/in/rafael-nunez-jr-167347148/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA:
Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
Founder, CEO of Prevailion. He is the host of the podcast the introverted iconoclast. He has been in infosec since the 90s. He was the former director of intelligence at Mandiant. He is a serial entrepreneur. In 2011, his second company, Unveillance’s, success resulted in disrupting the malicious operations of the hacker collective, Anonymous. He has been featured in news outlets throughout the country.
00:00 Introduction
01:40 Why entrepreneurship? What’s your driver? Advice?
09:10 The Introverted Iconoclast
16:20 Keeping Cyber Interesting
18:47 Unveillance
21:44 Anonymous
26:01 The minds of Bad Actors
32:14 Sea Cucumbers and Armadillos
35:22 Reducing the dwelling time
37:03 How do I know I’m a target?
42:00 Do you get threatened?
43:54 How is Prevailion doing this?
49:00 Polymorphism of Malware
52:20 Artificial Intelligence
54:50 Connecting with Karim
To learn more about Karim visit https://www.linkedin.com/in/karimhijazi/
The Introverted Iconoclast: https://www.theintrovertediconoclast.com/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
Founder, CEO of Prevailion. He is the host of the podcast the introverted iconoclast. He has been in infosec since the 90s. He was the former director of intelligence at Mandiant. He is a serial entrepreneur. In 2011, his second company, Unveillance’s, success resulted in disrupting the malicious operations of the hacker collective, Anonymous. He has been featured in news outlets throughout the country.
00:00 Introduction
01:40 Why entrepreneurship? What’s your driver? Advice?
09:10 The Introverted Iconoclast
16:20 Keeping Cyber Interesting
18:47 Unveillance
21:44 Anonymous
26:01 The minds of Bad Actors
32:14 Sea Cucumbers and Armadillos
35:22 Reducing the dwelling time
37:03 How do I know I’m a target?
42:00 Do you get threatened?
43:54 How is Prevailion doing this?
49:00 Polymorphism of Malware
52:20 Artificial Intelligence
54:50 Connecting with Karim
To learn more about Karim visit https://www.linkedin.com/in/karimhijazi/
The Introverted Iconoclast: https://www.theintrovertediconoclast.com/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
Paul is an experienced Cybersecurity executive with many skills, including being an expert on Cloud Computing. He has worked as an information security leader for Truist, Head of Cloud Security for SunTrust, and Security Architecture for Capital One. He is also a contributor to CIO Review and most recently in IDGs CIO Think Tank Roadmap report on Setting the Multi-Cloud Agenda.
00:00 Introduction
01:58 Pauls Background
13:24 Learning to take risks with your job
17:31 Advice for your career
19:00 More about Paul's background
26:00 Clear Program
28:04 Malware and Bad Actors
37:20 True Stories
42:05 Microsoft, Google, Amazon
45:10 The Cloud
47:00 Top 5 tips for Companies to look at when mobilizing
49:50 Asset managers
51:45 Connecting with Paul
To learn more about Paul visit https://www.linkedin.com/in/paulhamman/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
Paul is an experienced Cybersecurity executive with many skills, including being an expert on Cloud Computing. He has worked as an information security leader for Truist, Head of Cloud Security for SunTrust, and Security Architecture for Capital One. He is also a contributor to CIO Review and most recently in IDGs CIO Think Tank Roadmap report on Setting the Multi-Cloud Agenda.
00:00 Introduction
01:58 Pauls Background
13:24 Learning to take risks with your job
17:31 Advice for your career
19:00 More about Paul's background
26:00 Clear Program
28:04 Malware and Bad Actors
37:20 True Stories
42:05 Microsoft, Google, Amazon
45:10 The Cloud
47:00 Top 5 tips for Companies to look at when mobilizing
49:50 Asset managers
51:45 Connecting with Paul
To learn more about Paul visit https://www.linkedin.com/in/paulhamman/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
Dallas is a US Army Veteran and Cyber Professional. He has worked for many companies including PerimeterX, Blue Shield, and PayPal. He is skilled in Python, SQL, Information Security, JavaScript, Networking, and more.
00:00 Introduction
01:10 Did you get your skills from the military?
08:41 Transitioning to civilian life
14:25 Rules of thumb when designing a website so you’re less prone to getting hacked
21:45 Credit Card frauds
26:35 Analyze, Understand, and Influence
29:48 Ransomware Attacks
31:05 Raising employee awareness about Phishing
34:39 Making Cyber interesting
39:11 HUMAN Security
47:06 How many companies have it right?
49:20 Tips for Small Businesses
56:40 Upcoming events for Dallas
To learn more about Dallas visit https://www.linkedin.com/in/dallascbaker/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA:
Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: @SecurityConfidential
Facebook: @DarkRhinoSecurity Inc
Twitter: @Darkrhinosec
LinkedIn: @DarkRhinoSecurity
Youtube: @DarkRhinoSecurity
Joshua is the CISO at H&R Block. He has deep experience in designing and building information security programs. He is an expert on Zero Trust. His approach to information security is to transparently support and drive business initiatives, leveraging security capabilities to differentiate companies from their competition. Josh has spoken at InfoSec World, InfraGard, and ISSA and he is a SANS mentor. In short, he is a master of helping companies reduce risk.
00:00 Introduction
01:14 Joshuas Background
05:18 Why having different backgrounds in cyber is so important
15:06 Using Cybersecurity as a competitive advantage
17:04 Brand Loyalty program
23:35 How do you measure and monitor risk?
30:30 Establishing a culture in Cybersecurity
33:10 Getting the Cyber sec people to understand the business
36:00 Understanding the WHY 37:36 Amazon, Microsoft, Google myth
40:40 Zero Trust vs SASE 45:00 Prevention, Detection, and Response
48:10 3rd Party Risk
50:12 More about Joshua
Women In Security KC https://www.wiskc.org/ or https://www.linkedin.com/company/wiskc/
H&R Blocks Accelerate Program https://www.hrblock.com/careers/
Anam Cara: A Book of Celtic Wisdom by John O'Donohue https://www.amazon.com/Anam-Cara-Book-Celtic-Wisdom/dp/006092943X
Atomic Habits: An Easy & Proven Way to Build Good Habits & Break Bad Ones by James Clear https://www.amazon.com/Atomic-Habits-Proven-Build-Break/dp/0735211299
To learn more about Joshua visit https://www.linkedin.com/in/brownjosh/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
Josh Harrington is a CISSP, CCSP certified Director of IT and Security at Wattpad. He has a degree in Information Technology with a specialization in Networking and IT Security and a minor in operations management. With nearly a decade of cyber and IT-related experience, Josh has utilized his knowledge of industry threats and emerging technologies to guide businesses in advisory roles from implementation to leadership development both internationally and in the Greater Toronto Area.
00:00 Introduction
01:22 Josh’s story
03:10 The challenge of a Cybersecurity career
04:00 How has your previous experience helped prepare you for your position today?
05:55 Hands-on Experience: required or not?
07:42 Wattpad
08:22 Security Challenges for open-source platforms
11:50 Top 3 areas of Security
15:10 Must have Security tools
16:20 The Future of Cyber: Where is it going?
21:13 3rd party risk
23:40 Key points for employees regarding security
27:32 Message for young cyber professionals
33:37 What has helped you grow in IT?
36:50 A must for a resume
42:27 Connecting with Josh
To learn more about Josh visit https://www.linkedin.com/in/harringtonjoshua/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
Kicking off Season 7 with Ron Eddings. Ron is a Cybersecurity Advocate, Creative Director, and Podcast Executive Producer. Ron has been a cybersecurity practitioner. He has worked as an architect at Palo Alto Networks and Demisto. He is currently the Creative Director for Axonius and is also the Co-founder & Executive Producer of Hacker Valley Studios.
00:00 Introduction
01:20 How did you start in Cyber?
06:13 Marcus Careys Guide to Success
07:55 Your spiritual guide to pursuing your passion
12:03 The Mind, the Body, and the Spirit
15:50 Maintaining your Sense of Wonder
19:40 Your Superpower 23:15 Learning and Teaching
28:20 Making Cyber entertaining
35:12 What is the value of Cybersecurity?
39:20 Vulnerability management
42:00 OKTA and Passwords
43:00 Infosec programs that worked and ones that didn’t
48:15 The Department of “no”
49:25 News with Ron
To learn more about Ron visit https://www.linkedin.com/in/ronaldeddings/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
Managing Oneself: https://www.amazon.com/Managing-Oneself-Harvard-Business-Classics/dp/142212312X
Hackervalley.com
Axonius.com
SOCIAL MEDIA:
Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
Jake is the SR. Director of Security Strategy at VillageMD. He has over 20 years of IT and Security experience building, operating, and enhancing: Risk Management, Security Awareness, and governance. He has worked with many "C-suite" executives and boards of directors. He is a graduate of the University of Pittsburgh Katz School of Business
00:00 Introduction
02:04 VillageMD
03:28 Walgreens and the Minute Clinic
05:01 How has Cyber security changed the Healthcare business?
07:50 Why is patient healthcare data worth more money than credit card information?
10:30 Making the data less valuable
16:50 What are some policy positions we could take?
18:57 What is motivating bad actors to get healthcare data?
22:50 Cyber insurance
26:40 3rd party risk
30:05 Doctors and mobile devices vs HIPAA?
39:10 More on Jake
To learn more about Jake Belcher visit https://www.linkedin.com/in/jakebelcher/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA:
Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
Greg Schaffer joins us on this episode of Security Confidential. Greg founded vCISO services in 2017 to help SMBs. He has over 33 years of experience in IT and security including over 15 years at the CISO level. Greg is the host of the virtual CISO moment podcast and authored information security for small and mid-sized businesses.
00:00 introduction
01:37 How did you get into Cyber?
04:40 What brought you to SMB?
07:00 Equifax Breach
10:30 Defense in Depth
13:05 Doing more than just checking the boxes
19:40 Cyber insurance
24:00 Some ways SMBs get breached
28:00 Ransomware
30:40 SMB: What to do if you don’t have the resources?
36:44 How much money should SMBs spend on cybersecurity?
38:24 Should the CISO work for the CIO?
42:17 Metrics for decision-makers
45:20 Russians and the Chinese
49:00 Meeting Greg
CU Intersect conference is July 18-20. Link https://cuintersect.com/
RETR3AT Link: https://www.montreat.edu/about/events/retr3at/
Greg's podcast: https://virtual-ciso.us/
Gregs Book: https://www.amazon.com/Information-Security-Small-Midsized-Businesses/dp/1733066845/
To learn more about Greg visit https://www.linkedin.com/in/gregoryschaffer/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA:
Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
Eddie Thomason joins us for this week's episode of Security Confidential. Eddie is a Regional Sales Manager at DataLocker, a bestselling author, and entrepreneur who has been featured on ABC, CBS, & FOX news affiliates. Eddie has worked with multiple Fortune 500 companies to improve their revenue and was named one of the top business professionals by the Chamber of Commerce. Eddie hosts the popular “Simply Secure Podcast” where he talks to cyber professionals about #InfoSec. When he is not talking or working in cyber, he can also be found creating cutting boards and wood furniture with his passion project ET Woodworks.
00:00 Introduction
04:07 How did you establish credibility with C-suite without trying to sell them anything?
09:02 Referring clients to other companies. Has that gotten you into trouble?
11:17 How SMBs should navigate through the sea of Cybersecurity?
15:40 Questions to ask MSSPs
19:22 Friction Security
25:10 Risk Appetite
32:35 Biggest mistakes Security teams have made
38:10 Tips for transitioning into cyber
46:00 How to use USBs correctly in your organization
53:55 Simply Secure Podcast
To learn more about Eddie visit https://www.linkedin.com/in/eddiethomason/
Listen to Eddie's podcast: https://simplysecurepodcast.com/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA:
Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
Rory Meikle hosts this episode of Security Confidential with Erika Carrara. Erika is an influential, strategic, business-focused, and highly accomplished C-Suite executive. She has accomplished many things such as being a CISO, Director of Information Technology, Penetration Tester, IT Security Specialist, and many more. Erika is also a Veteran of the United States Army and Mentor. She is currently the CISO of Wabtec Corporation.
00:00 Introduction
00:49 How did you start your career in cybersecurity? Was it something you did while in the military?
03:03 Advice for younger individuals stepping into cyber
04:27 Advice for Veterans transitioning into Cyber
06:29 Due diligence process when looking at an acquisition?
13:40 ISO 27,001
17:04 Security Frameworks for Small Businesses
22:00 What motivates bad actors?
26:40 Are there policies that you think the government should adopt that would better deter bad actors?
34:18 Can you shed some light on what defense in depth should entail for critical infrastructure companies?
37:45 3rd party risk mitigation
41:14 Small businesses: expectations regarding cybersecurity?
45:03 Code: Girl
50:00 Connecting with Erika
To learn more about Erika visit https://www.linkedin.com/in/infosecpainpoints/
To learn more about coding programs for girls, check out these websites:
https://girlswhocode.com/
https://code.org/girls
https://www.blackgirlscode.com/
https://www.coding-girls.com/
https://www.techgirlz.org/
https://djangogirls.org/en/
To learn more about Dark Rhino Security visit
https://www.darkrhinosecurity.com
SOCIAL MEDIA:
Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
Endre Jarraux Walls is the EVP and CISO for Customers Bancorp and Customers Bank. He provides leadership to the Bank’s technology risk, digital compliance, security operations, governance, resilience, physical security, and cyber fraud departments of Customers Bank. He has held all 3 C-level roles in the technology industry, as an award-winning CIO, CTO, and now CISO. Prior to joining the Bank, he served as an executive in Healthcare, Telecom, and more. He was recently recognized as one of the top 40 under 40 leaders in the greater Philadelphia region, is a 2021 Top 100 CISO, was recognized as a top 10 global CISO in 2020, and received an American Cyber Awards honor in 2020. He attended both Capella University in Minnesota for his BS in Information Technology and Yale University’s School of Management for Executive Education.
00:00 Introduction
01:17 How did you start your career in cybersecurity?
03:05 Is (General Electric, Nuclear Industry) moving to the cloud?
07:20 What do you see as the biggest threats in the financial sector
08:40 Third-Party Risk- How to go about it
11:38 Developing standards with Vendors
15:07 Personal devices
21:00 How do you communicate risks to the C-Suite?
23:12 Do they see cyber as a business problem or IT Problem?
27:40 How did you bring users in?
35:40 What is the role of frameworks?
41:20 What drives a bad actor?
47:40 Upcoming News for Endre
To learn more about Endre visit https://www.linkedin.com/in/endrewalls/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
00:00 Introduction
01:20 Penetration testing
05:50 Walking through Risk Analysis
08:07 SQL injections
09:50 3rd Party Risk. What does it mean?
11:30 How to protect yourself when using open sourced code
15:33 Google, Amazon, and Microsoft
16:30 Being on the Cloud and in the Cloud
18:40 Communicating to the executives
20:10 Cybersecurity as a Revenue Service
25:55 MFA issues and vulnerability
29:52 Smart Phones
37:56 Penetration tests on Mobile Devices
41:37 More about Nat
To learn more about Nat Shere visit https://www.linkedin.com/in/nathaniel-shere
Links to Nat's blogs as mentioned in the video:
https://www.craftcompliance.com/post/7-steps-to-website-security-worth-bragging-about
https://www.craftcompliance.com/post/penetration-testing-the-what-the-why-the-how
https://www.craftcompliance.com/post/getting-the-most-out-of-penetration-testing
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Brian Haugli joins host Manoj Tandon on this week's episode of Security Confidential. Brian is a Managing Partner and Chief Executive Officer at SideChannel. Brian has been driving security programs for two decades and brings a true practitioner’s approach to the industry. He has led programs for the DoD, Pentagon, Intelligence Community, Fortune 500, and many others. Brian is a renowned speaker and expert on NIST guidance, threat intelligence implementations, and strategic organizational initiatives. He is also a contributing author for the latest book from Wiley, “Cybersecurity Risk Management: Mastering the Fundamentals Using the NIST Cybersecurity Framework“. Lastly, he is a professor at Boston College, in the Woods College of Advancing Studies, Master’s Program in Cybersecurity.
00:00 Introduction
01:50 How do you see the threat landscape changing in cybersecurity?
05:00 Do you think the mid-market understands that cybersecurity is not an IT problem but a business problem?
08:30 Why are SMBs such hot targets?
12:35 Insurance brokers typically do not understand cybersecurity postures, they deal in applications. How can an SMB leverage the broker to get an underwriter to understand their posture?
20:50 Is it possible for you the client to get in front of the carrier?
23:42 How does a company access its security posture?
27:00 How do these businesses go about this practically?
33:20 News from Brian
Brian and Cynthia’s Book https://www.amazon.com/Cybersecurity-Risk-Management-Mastering-Fundamentals/dp/1119816289
To learn more about Brian visit https://www.linkedin.com/in/brianhaugli/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
SOCIAL MEDIA: Stay connected with us on our social media pages where we'll give you snippets, alerts for new podcasts, and even behind the scenes of our studio!
Instagram: https://www.instagram.com/securityconfidential/
Facebook: https://m.facebook.com/Dark-Rhino-Security-Inc-105978998396396/
Twitter: https://twitter.com/darkrhinosec
LinkedIn: https://www.linkedin.com/company/dark-rhino-security
Youtube: https://www.youtube.com/channel/UCs6R-jX06_TDlFrnv-uyy0w/videos
Tim Chase joins host Manoj Tandon on this episode of Security Confidential. Tim Chase is a Field CISO, Professional Speaker, Author, Ethical Hacker, Certified Application Security Engineer, etc. He is also a LinkedIn Learning Instructor who writes training modules about DevOps and DevSecOp. Tim is an expert at resolving challenging security incidents with a short turnaround time. He is a graduate of Tennessee Tech and the University of Phoenix.
00:00 Introduction
01:13 The problem of Ransomware, how do you see it evolving over in the near future?
05:17 Third-Party Risk
06:21 Applications built on open source code and how to ensure their security?
11:45 What do you see as the Top 3 root causes of security incidents?
14:40 Deep Provisioning
22:22 Step-by-step on how to build a cybersecurity program for SMB
32:05 How to make Cybersecurity logical when coaching a young cybersecurity team. What foundational elements do you emphasize?
37:30 Companies use Cybersecurity as a revenue
40:48 Outro
To learn more about Tim Chase visit https://www.linkedin.com/in/timchase2/
To see Tim's Course on DevOps and DevSecOps visit https://www.linkedin.com/learning/devops-foundations-devsecops/welcome?autoplay=true
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
Dr. Joseph J. Burt-Miller Jr talked with host Manoj Tandon on this episode of Security Confidential. Dr. Joseph is a Veteran, Father, Husband, and GRC-Focused Cybersecurity Professional among many other things. Dr. Joseph J Burt-Miller Jr. is a product of Mt. Vernon, NY. He is an Air Force Veteran and a Capella University graduate with a myriad of experience within IT, cybersecurity, cloud-based applications, and biometric identity management for the United States government.
To learn more about Dr. Joseph J. Burt-Miller Jr visit https://www.linkedin.com/in/drjjbmj/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
Articles mentioned:
https://www.kaspersky.com/resource-center/threats/ransomware-attacks-and-types
https://www.backblaze.com/blog/complete-guide-ransomware/
https://www.tomsguide.com/us/ransomware-what-to-do-next,news-25107.html
To learn more about Ransomware, listen to our podcast video with Ransomware expert Dennis Underwood here
https://www.youtube.com/watch?v=DJoVdcMGzE0
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
Brian Stoner joins us today on Security Confidential. Brian has a long history with cybersecurity OEMs starting with CA where I first met him. Brian has been with McAfee, Fireeye, Cylance, and is now with Stellar Cyber. Brian has been in the business of helping companies build their channels.
00:00 Introduction
02:04 What are the elements of a successful cybersecurity channel program?
06:10 Is there an inherent conflict with having a salesperson be managing a partner?
08:12 Where do the programs have mismatched expectations between the OEM and reseller?
13:20 Is the pure Var model the way forward? Are clients in cybersecurity not locking more for a total solution for defense in depth vs a pure technology play.
16:11 What market sectors in cybersecurity do you see doing well in the coming year?
20:17 Explain what is XDR?
31:28 How have you been able to avoid the pitfalls of storage and compute power as it relates to the cloud?
39:52 Thoughts on AI
41:00 Events and Contacting Brian
To learn more about Brian visit https://www.linkedin.com/in/brian-stoner-146a56/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
For individuals to get hacked is very common. Getting hacked is regardless of an individual's demographic. Even well-protected personalities like Donald Trump have been hacked. The sad reality is much could have been done by the individual to prevent it. Dark Rhino Security shares some very simple and basic information security knowledge for individuals to take control of their online accounts.
Research from the video:
https://www.washingtonpost.com/world/...
https://www.nytimes.com/2021/09/13/te...
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
Confidence Staveley joins host Manoj Tandon in this week's episode of Security Confidential. Confidence joins us from Lagos, Nigeria, where she talks to us about her career in Cyber and how she is helping young women break the stereotypes. She is a Cyber Security Professional, Author, and Entrepreneur. She is the founder and executive director of CyberSafe and NoGoFallMaga. Confidence was also the winner of the Cyber Security Woman of the Year 2021 award.
00:00 Introduction
01:25 How Confidence started in Cyber
06:07 Cyber Security in Nigeria
10:24 Cyber Security Woman of the Year
15:56 CyberSafe Foundation
17:46 Biggest Challenges
19:58 Women in the role of Cyber
24:42 Stereotypes for Women
31:28 Cybersafe for businesses
35:55 CyberSafe success stories
42:43 Cyber advice from Confidence
46:33 Closing
Brandon Keath joins host Manoj Tandon on this week's episode of Security Confidential. Apart from being a Cyber Security officer, Brandon is also the President of PA Hackers and faculty at the University of Cumberlands and Harrisburg University. Brandon shares with us a bit about his gaming background along with his thoughts and suggestions for people wanting to start a career in Cyber.
00:00 Introduction
06:00 There’s no better teacher than failure
08:25 Vulnerabilities in the Gaming industry
12:18 Cyber background
19:44 How to look at Risk?
28:15 The cost-benefit analysis
39:00 Quantum computing
40:00 Getting rid of Passwords
45:00 Cyber insurance
51:00 TheHackingLab.com
To learn more about Brandon visit https://www.linkedin.com/in/brandon-keath/
You can check out The Hacking Lab at https://thehackinglab.com/ and https://www.youtube.com/channel/UC6vzWXOOw-hV8iuOYATPm4A
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
Dennis Underwood joins host Manoj Tandon in this episode of Security Confidential. Dennis shares about his military background and how he turned to cyber to help shape his career. He is an Veteran, Father, Cryptographer, Threat Hunting Expert, and Ransomware Expert. Among his 10 years of combat experience, Dennis also has over 20 years experience being an Entrepreneur.
00:00 Introduction
01:00 Military Background
10:50 A Career in Cyber
11:50 Ransomware
16:13 Executive perspective
21:46 The Cloud and How it affects you
25:30 Speed bump Security
27:07 Rate of Encryption
31:30 Cyber Crucible
39:00 Chaos Monkeys
42:40 B-Sides PGH
45:22 Outro
To learn more about Dennis visit https://www.linkedin.com/in/dennis-underwood/
Be sure to check out https://www.cybercrucible.com/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
Mia Landsem joins host Manoj Tandon in this episode of Security Confidential. From Norway, Mia discusses how a series of unfortunate events led into an astonishing Career choice. Mia has used her skills in cybersecurity to help many people. She has focused her attention on image abuse which led to a nomination in 2021 as Cybersecurity Women of The Year. She is a best selling author, has numerous TV appearances, lectured at over 300 schools, and has helped train law enforcement on pursuing criminals posting pictures of minors.
00:00 Introduction
01:16 How Mia got into Cybersecurity
03:17 Making The Olympic Team
04:27 Learnings from sports training applied to cybersecurity
07:20 Advice on Cyberbullying
09:30 Law enforcement response to Cyberbullying
11:00 The Law and illicit pictures of minors
16:54 Using Cyber knowledge to stop Image Abuse
22:21 Changing the Laws on Image Abuse
24:14 Working with the Police
29:51 Cybersecurity Woman of the Year
31:03 Privacy rules and catching pedophiles
36:20 Moving forward
42: 45 How illicit pictures are propagated
53:23 Can pedophiles recover?
55:00 Contacting Mia
Laura Tich, founder of SheHacks_KE and Cybersecurity Women of The Year Nominee joins host Manoj Tandon on this episode of Security Confidential. Laura along with SheHacks_KE has helped over 400 people on their Cybersecurity Career journey. She discusses:
00:00 Introduction
01:30 What led to the nomination of Cybersecurity women of the Year?
03:27 Why focus on Information Security
05:40 High tech environment in Kenya
08:20 The work of SheHacks_KE
10:44 Cybersecurity threats Kenyan business face
13:30 Cybersecurity awareness in Kenya
15:16 Personal security challenges
17:14 The people impact of SheHacks_KE
18:37 Ransomware impacts in Kenya
22:00 Providing defense in depth to organizations in Kenya
26:15 Supporting SheHacks_KE
Sean Sweeney is a frequent author and speaker on cybersecurity. In this episode of Security Confidential Sean talks about cloud security. He has a deep background in cloud security.
Sean currently leads the Field CISO and Cloud Security Advisor group within Oracle North America Cloud Engineering. In his prior role Sean was with Microsoft where he was the Global Chief Security Advisor. Sean is a previous Chief Information Security Officer at the University of Pittsburgh, and Litigation Support Applications Manager for the U.S. Department of Justice. Sean began his career as a Database Administrator for ExxonMobil and the U.S. Department of the Interior.
00:09 Sean Sweeney’s Background
01:38 From DB Admin to CISO
05:00 Helping Dave Hickton prosecute cyber criminals
06:52 The future of cybersecurity
07:20 SAS, PAS, IAS-Your responsibilities in cloud cybersecurity
13:33 If IP is exfiltrated from the cloud app, whose responsible?
14:30 What gets popped in the cloud environment!
15:23 What is the difference between zero trust and SASE?
19:45 What is the order of implementing elements of SASE or Zero Trust
23:10 The role of MDM in BYOD
26:54 Too much friction is a risk
32:27 Should the CISO work for the CIO?
36:58 How do you secure hybrid cloud environment?
42:34 Accelerator Program at Oracle
45:49 Dealing with Ransomware
50:26 Struggling with vulnerability management
To learn more about Dark Rhino Security
Strategist and best-selling author Michele Wucker coined the term “gray rhino” for obvious, probable, impactful risks, which we are surprisingly likely but not condemned to neglect. The metaphor has moved markets, shaped financial policies, and made headlines around the world. It became a frame for the ignored warnings that led to the COVID-19 pandemic and a lyric in a hit BTS single about depression. Michele’s 2019 TED Talk has attracted 2.5 million views. She is the author of four books including the global bestseller THE GRAY RHINO: How to Recognize and Act on the Obvious Dangers We Ignore; and the new book YOU ARE WHAT YOU RISK: The New Art and Science of Navigating an Uncertain World. A former media and think tank executive who began her career writing about emerging market finance, Michele is founder of the Chicago-based strategic advisory firm, Gray Rhino & Company. She speaks regularly to high-level audiences on risk management, the global economy, and decision-making, and is quoted often in leading media. She has been recognized as a Young Global Leader of the World Economic Forum and a Guggenheim Fellow, among other honors. Visit her website at www.thegrayrhino.com or www.wucker.com; follow her on twitter @wucker.
00:00 Introduction
01:22 How the name Grey Rhino was coined
05:45 Why companies put off dealing with Risk
10:55 What is an individual’s risk fingerprint
12:26 Does nature or nurture win on defining One's risk fingerprint?
14:01 Are there one or two that stand out in shaping One's risk fingerprint?
21:28 Millennials and risk
24:58 The risk muscle
28:09 Building your risk muscle
34:05 Genetics and risk
40:00 How to change an organization's risk fingerprint
45:30 https:/Thegreyrhino.com
45:53 Newsletter Around my Mind
Naomi Buckwalter joins Security Confidential as a guest on this episode. Naomi has over twenty years of experience in Cybersecurity, two degrees from Villanova, and has worked at great companies like Vanguard. She brings her wealth of knowledge on Cybersecurity and discusses all the foundational elements of a great cybersecurity program from hiring the right people, Cybersecurity's effects on everyday life, shifting left in Cybersecurity to enhance it, using Cybersecurity as a revenue generator, all the way to quantifying risk and explaining it to the C-Level. There is something in this discussion for everyone interested in Cybersecurity.
00:00 Introduction
01:18 The demand gap in Cybersecurity for personnel
12:06 Cybersecurity bleeding into everyday life
19:11 Gatekeeper and created hindrances in Cybersecurity
19:45 Crafting a defense in depth architecture
23:00 The importance of explaining of the why in Cybersecurity to people
25:00 Christian Espinosa The Smartest Person in the Room: The Root Cause and New Solution for Cybersecurity
25:46 Diversity of thought
28:00 Convincing executives to take on fresh Cybersecurity talent
32:00 Is being a women in Cybersecurity is a plus?
37:20 Shifting left in Cybersecurity-what is that?
44:10 Quantifying and communicating cyber risk to the c-level
46:14 Understanding corporate revenue channels and their importance to Cybersecurity
47:37 Using Cybersecurity as a revenue generator
51:38 Cybesecuritygatebreakers.org
Charles Herring, CTO of witfoo, joins this episode of Security Confidential. Charles started his career in Information Security in 2002 with the US Navy, serving as the Network Security Officer at the US Naval Postgraduate School. Charles has been a contributing product reviewer for InfoWorld Magazine and spent 7 years running Herring Consulting a firm dedicated to process orchestration. Charles is dedicated to maturing the craft of Infosec.
00:00 Introduction
02:12 Getting a start in Cybersecurity and transition to civilian life
13:22 7 unstable conversations in Cybersecurity
14:40 Establishing a unit of work-increasing deterrence
20:04 Law Enforcement success with cyber crimes-Sharing Information
24:34 How to vet the quality of Threat Intelligence
26:47 Dealing with the Unknown-Unknowns-Zero Day Attack
33:26 1st unstable conversation-understanding all the data from the toolsets
36:36 2nd unstable conversation-managing the investigators
37:28 3rd unstable conversation-security practice communicating with the business
40:23 4th unstable conversation-security vendors lie
41:42 5th unstable conversation-challenges in sharing information by orgs
42:00 6th unstable conversation-law enforcement sharing information
42:04 7th unstable conversation-law enforcement lacks evidence to prosecute
43:30 What is witfoo?
48:24 https://www.logfibber.com
50:10 Breaking in Bad
Manoj Tandon, one of the founders of Dark Rhino Security, appeared on Pittsburgh Technology Council's TechVibe Radio on ESPN 970. This is a complete repost of the show which is wholly owned and operated by the Pittsburgh Technology Council. The Mythbusting in Cybersecurity starts at time marker 15:55. Please subscribe and leave your comments.
Fredrik Oedegaardstuen joins Dark Rhino's Security Confidential to discuss Open Source software in cybersecurity. Fredrik the is the CEO of Shuffle, an automation platform. He has been a software engineer and has extensive experience in SOC operations in an MSSP environment. Fred discusses many topics ranging from monetizing open source software, myths with open source, architecture and design, silver bullets in cybersecurity, and provides cautionary advice.
02:34 Why Tokyo
04:13 Open source and cybersecurity
06:37 Monetizing Open Source Software
12:17 Myth of Open Source tools being not that secure
13:29 Shuffle-The security automation platform
18:40 Architecture of Shuffle inspired from the NSA
26:21 Integration of disparate systems
32:26 Tools and Silver Bullets in Cybersecurity
34:09 Does the role of the analyst change with Shuffle?
40:04 Cautionary advice on automation
Frikkylikeme is Fredrik's Twitter Handle
Hans Vargas Silva joins this episode of Dark Rhino Security's Security Confidential Podcast and Videocast. Hans is a leader in cybersecurity leader. He has extensive experience in the field. Hans has worked with Sallie Mae and is currently with Marathon Petroleum. He has a great academic background with degrees and certificates from Purdue, MIT, and Harvard. He provides his thoughts and experiences on protecting critical infrastructure from cyber intrusions, compliance and cybersecurity, giving back to the community and much more.
01:13 How Hans got into Cybersecurity
04:00 How education shapes a career in Cybersecurity
08:56 Critical Infrastructure and Cybersecurity
19:40 Compliance is a low bar for Cybersecurity
23:57 Incomplete deployments of Cybersecurity solutions
24:49 How to communicate cyber risk
29:58 The dilemma of regulators
34:44 Sharing security information with the Federal Gov’t
39:20 Contributions to infosec from academia
42:25 Giving back and volunteering
To learn more about Team Rubicon
Amelia Jarboe appears on this episode of Security Confidential. Amelia is a Cybersecurity Controls Engineer. She has held many positions in the field of cybersecurity. She is a graduate of The Ohio State University. In addition, to her work as a cybersecurity controls engineer she is on the Steering Committee for Machine Learning and is speaking at the ISSA Central Ohio Infosec Summit.
00:00 Introduction
01:10 How Amelia got into Cybersecurity
03:57 A passion for protecting people with Cybersecurity
06:47 OSU's Cybersecurity Program
07:40 Imposter Syndrome in Cybersecurity
12:25 Compliance and Cybersecurity
15:20 Continually verifying and validating the controls in place
16:17 Top metrics in Cybersecurity
17:47 A technique to convince decision makers about cyber spend
21:25 Controls to begin a Cybersecurity program with-Spikes and Gaps
26:38 Guidance on frameworks in Cybersecurity
30:20 Cybersecurity is an everyone problem
32:27 Individual privacy and Cybersecurity
36:37 Causes for Cybersecurity incidents
39:12 Engaging the end users in Cybersecurity
41:13 Machine learning
43:13 Mentorship at the High School and Elementary School levels
49:24 The freedom to fail as a base for great success
50:00 ISSA in Central Ohio appearance
To learn more about Dark Rhino Security
Ilya Bodner joins us on Security Confidential. Ilya is the found and CEO of Bold Penguin a highly successful technology company serving major insurance companies. Ilya has created a great company and achieved great success. He has received much recognition including business executive of the year and Columbus Business First 40 under 40 Class of 2019. In this episode Ilya discusses:
01:34 Journey from Russia to the CEO of Bold Penguin
05:00 Partner/Co-Founder Relationships
09:03 Three legs of the stool for business success
14:25 Lessons from working with VCs
17:40 How to land your first customer
23:26 Origins of the name Bold Penguin
26:00 Why pick insurance as the prime sector for a tech startup?
28:53 Competing with insurance companies on their own products
32:14 Is cybersecurity a business problem or an IT problem?
35:47 Making cybersecurity accessible to SMBs
36:37 Should cyber insurance be tied to effectivity of implemented controls?
39:40 What does a startup enthusiast do next?
41:25 Career opportunities at Bold Penguin
To learn more about Ilya
To learn more about Manoj Tandon
To watch the videocast
To learn more about Bold Penguin
To learn more about Dark Rhino Security
Samara R. Williams 🔸️ Manager of Threat Operations for Cardinal Health joins on us on this episode of Security Confidential. Samara pecializes in defense in depth improvement, vulnerability management, threat intelligence, technical risk communication, and cybersecurity program design and development. She has several degrees in computer science and cybersecurity and she is passionate about helping young people with STEM. Samara is also the founding member and treasurer of Empower Women of Infosec.
01:36 Journey into Cybersecurity-South Texas to Columbus
05:08 Passion, persistence, and reliance = success in cybersecurity
08:17 Why is there a lack of people going into STEM?
15:12 Building a team in the pandemic and Social Media
20:55 Vulnerability and Risk Management and Threat Intelligence
23:34 Defense in Depth Build of Risks
26:12 Metrics to consider in cybersecurity
29:34 Making Threat Intelligence actionable
35:50 Mentorship in Cybersecurity
39:57 Organizations of interest to Samara and Scholarships
To learn more about International Consortium of Minority Cybersecurity Professionals (ICMCP)
Empower Women in Infosec https://www.empower-infosec.org/
Check out the videocast
#Cybersecurity #threatintelligence #vulnerabilitymanagement #DarkRhinoSecurity
Ross Young joins us on Security Confidential to talk about cybersecurity. Ross is the CISO of Caterpillar Financial Services Corporation, a lecturer at Johns Hopkins University, and the Co-Host of the CISO Tradecraft podcast, and the inventor of the OWASP Threat and Safeguard Matrix. Ross is also a veteran of CIA and NSA.
00:00 Introduction
00:55 How Ross became CISO of Caterpillar Financial Service
03:04 Scholarship for Service
04:10 Foreign cyber espionage capabilities
07:01 The elusive identity online
07:50 Compliance frameworks = great cybersecurity?
12:47 Can cybersecurity be used for revenue generation?
20:30 Learning from vendors selling in cybersecurity place
22:55 Vulnerability management in the cloud
27:02 How do you develop a resilient software system
31:50 OWASP Threat and Safeguard Matrix
37:58 Accounting for The X-Factor and Zero Day threat in cybersecurity
41:45 CISO Tradecraft
The videocast for this episode
To learn more about Ross Young
To learn more about Dark Rhino Security
We are joined by Rob Oden for a discussion on cybersecurity. Rob is an Air Force veteran and has over 16 years of experience in cybersecurity and is a practicing security architect. This is part 2 of our interview with him. Rob provides insights into the many issues prevalent in cybersecurity and relevant to anyone serious about making their cyber environment safer.
00:00 Introduction
01:50 Why does being compliant not equate to great cybersecurity?
13:53 No good deed goes unpunished
16:50 Technology vs Process in cybersecurity
21:45 The Prevention Paradox
28:54 Gov't Policies addressing cybersecurity
34:41 Cybersecurity business problem or an IT Problem?
37:37 Should the office of the CISO be separate from IT?
40:26 How to quantify cybersecurity risk?
44:08 The insider threat and the executive order governing it?
54:10 How to leverage the most underutilized cybersecurity asset?
01:00:20 Vulnerability management
01:07:18 Rob's favorite cybersecurity organizations
To learn more about Rob Oden https://www.linkedin.com/in/robertoden/
To learn more about Dark Rhino Security https://www.darkrhinosecurity.com
To watch the videocast of this episode https://youtu.be/FnEilYhfrOw
Host: Manoj Tandon
Guest: Chad Weinman
The FAIR way to assess cybersecurity risk is discussed in this episode of Dark Rhino Security's Security Confidential. Chad Weinman is the VP of Professional Services at Risk Lens. Risk Lens is a software company that has codified the FAIR based approach to assessing cybersecurity risk. Chad has performed many consulting engagements helping clients quantify cyber risk.
00:00 Introduction
00:47 Is Cybersecurity Risk used in a cavalier way?
03:16 What are the ground rules for discussing cybersecurity risk?
05:53 Does the disaster recovery plan cover all the risks?
07:30 Are regulators considered threats?
09:03 Compliance does not correlate to cybersecurity
14:20 What is FAIR?
17:59 Layman's approach to risk
28:00 Is a single risk score of any relevance?
32:20 Companies that have direction with a FAIR analysis of risk
37:40 Chad's information for cybersecurity practitioners
To learn more about Chad Weinman https://www.linkedin.com/in/chadweinman/
To learn more about Risk Lens https://www.risklens.com/
To learn more about FAIR https://www.fairinstitute.org/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
To watch the videocast of this episode visit https://youtu.be/_wYJP1UedFE
Rob Oden joins us on Security Confidential for a two part series. This is part 1 and he is going to discuss with us his personal journey from humble beginnings to a great cybersecurity architect. He shares his story and the many challenges he faced and qualities of people wanting to create success for themselves in the field of cybersecurity.
The topics discussed in this episode are:
Journey from humble beginnings to cybersecurity architect
First exposure to cybersecurity
Taking responsibility and owning it
The crab effect
Is a traditional computer science path necessary for cybersecurity?
The transition from Military to Civilian life
The soft skills for a great career
Check in with yourself-have a true North
Be comfortable with being uncomfortable
Rob can be found on linkedin https://www.linkedin.com/in/robertoden/
Manoj Tandon can be found linkedin https://www.linkedin.com/in/manoj-tandon-drs/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
The video cast for this episode can be found https://youtu.be/TH2LalGB3ok
Dark Rhino Security's Security Confidential is hosted by Manoj Tandon who is joined by guest Rob Duhart Jr. He has many years of experience in cybersecurity having worked at the Department of Energy, NSA, FBI, Ford Motor Company's Red Team, and is currently the head of Federated Security for Google.
Rob discusses:
Formative experiences with the FBI and APT's, the best and most frequent bad actors, inspiration to get into cybersecurity, builders and breakers in cybersecurity, finding the genius in cybersecurity, cybersecurity as the great equalizer, bug bounty, hiring cybersecurity professionals at firms like Google, Microsoft, and Facebook. Rob also discusses cybersecurity as a business problem, quantify risk, an over reliance tools, the biggest cybersecurity asset in a company, the impact of Covid 19, unified IAM, and spirituality.
Rob's twitter handle is @robduhart
He https://www.icmcp.org/ and https://sharethemicincyber.splashthat.com/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
The videocast for this episode can be found at https://youtu.be/M-ArRdE2DB0
Jeff Manhardt joins us for episode 11 of Season 3 of Dark Rhino Security's Security Confidential. Jeff is the chief project officer at Kaleida Health, president of the PMI Buffalo Chapter and an adjunct professor at Daemen College. Jeff believes in the art of the possible and the power of the why. Jeff shares his insights on project management, cybersecurity, future direction of PMI with us.
00:46 The Power of the Why and the Art of the Possible
03:50 How has the Pandemic affected project management
05:40 Regulatory mandates and issues as result of Covid 19
07:53 Telehealth and change management
09:31 How to make cultural change happen
11:37 Have the metrics changed by which projects are measured
12:57 The future of of project management techniques
15:50 Collisions are important
16:54 How should cybersecurity be incorporated into Project Management
17:55 Is cybersecurity a business problem or IT problem?
18:49 Has cybersecurity taken a back seat in healthcare?
20:57 Project Management Institute's (PMI) future
23:47 Advise to PMI chapters on providing value
28:32 PMI changes to PMP certifications
30:30 Expectations of Dark Rhino as a PMI hosting provider
33:30 Adding value to PMI Hosted Chapters
34:36 PMI Buffalo April Training Sessions on Remote Workforce and sprinting
The videocast for this episode can be found at https://youtu.be/tOmR5MiIjHI
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
The Microsoft 365 environment is complex to administer from a cybersecurity perspective. There are very expensive options from Microsoft that add advanced security elements to the 365 environment. In addition to cost, ease of use and knowledge can become limiting factors dependant on the capability of the organization when implementing Microsoft's advanced security. Dark Rhino Security and Infocyte partnered to build a managed service offering that dramatically simplifies the evaluation, compilation, and remediation of security gaps present in a companies Microsoft 365 environment. Chris Auger from Infocyte and Tyler Smith, a co-founder of Dark Rhino Security, host this episode of Security Confidential and explain how to benchmark against the CIS standards a Microsoft 365 environment and how to remediate the gaps in a simplified manner. The end result is a highly secure Microsoft 365 environment.
Chapter Markers
00:14 Introduction
03:10 Microsoft 365 Security Overview
04:50 Why Microsoft 365 is difficult
05:30 Why set it and forget is the wrong answer
08:00 Anatomy of an attack, attack chain
13:20 The attack vectors
15:33 Cost structure of M365 tools
20:15 Dark Rhino Security Microsoft 365 Security Assessment
23:48 Security controls analyzed as part of assessment
25:08 Value of Dark Rhino Security in the Process
26:15 Is Tenable used under the hood?
27:15 Does MFA solve the security gaps?
29:35 What is out of domain forwarding and will they block it?
32:47 Does Small Business really have the risk
42:35 Timeline for Assessments
The Video for this episode can be found at https://youtu.be/KWSVZhUFM-Y
To get the free vulnerability scan of up to 10,000 nodes in your network call Dark Rhino Security at 614.401.3025 or visit https://www.darkrhinosecurity.com or email info@darkrhinosecurity.com
This week on Security Confidential host Manoj Tandon has Jordan Graham as his guest. Jordan has been in the cybersecurity business for over 3 years and a six sigma black belt. He is a former Marine with an extensive background in process management. Jordan is an avid Bowhunter and is a participant on the podcast "The Bowhunters Heritage". In this episode of Security Confidential Jordan discusses how his learnings and techniques as a bowhunter apply to cybersecurity. The topics discussed in this episode are
00:10 Introduction
01:44 Why Bowhunting?
07:09 Overcoming a disadvantaged position, Cyber Insurance!
13:32 The objective SWOT analysis to get the highest chance for success
17:39 The hunters mentality for business success
19:50 Be decisive
22:14 Turning a disadvantaged position to an advantaged one
25:47 Addressing unknown-unknowns in cybersecurity
32:01 The role of patience in threat hunting
37:20 Lessons from the Marine Corp
44:32 The Bowhunters Heritage
To learn more about Dark Rhino Security please visit https://www.darkrhinosecurity.com
The videocast for this episode can be found at https://youtu.be/SxCC09iryt8
On this episode of Dark Rhino Security's Security Confidential, hosts Manoj Tandon and Kevin Casey are joined by James Azar.
Some of the topics discussed are:
What changed with Covid for #Cybersecurity
Has Covid accelerated cloud strategy?
What is the cybersecurity risk in moving to the cloud?
What is the cybersecurity risk in small and medium businesses?
How a small innovative cybersecurity company can do business with a big company
Is cybersecurity a business problem or an IT problem?
How Smart CISO's monetize cybersecurity
How to measure cybersecurity awareness
Should the CISO be an independant function?
The Chinese cybersecurity threat
The dangerous precedence of the Equifax settlement
Managed detection and response
Vendors vs partners in cybersecurity
James Azar is a CISO (Chief Information Security Officer) that works, leads, and is dedicated to the security and business mission to ensure the continuity and fluidity of cybersecurity within the business. In his experience, James has served as CTO, CIO, and CISO but his passion is the intersection of Security and Business where innovation and out of box thinking are needed to succeed. James is the host of the cybersecurity podcast The CyberHub and CISO Talk, and a new and noteworthy privacy podcast called Goodbye Privacy.
James is a public speaker and event host that hosts the annual CyberHub Summit in Atlanta and has spoken in events across the globe from CyberTech Israel, RSA, Data Connectors, and has been published in Fox, OAN, AJC, ABC, and many more publications James has served on the Board of Advisors for the NTSC and currently serves as Vice President of Programming for AFCEA Atlanta Chapter, IAC (Israeli American Council) Eitanim Mentor, and works with the Veteran community as well as supports several Non-Profits.
To learn more about James Azar visit https://www.linkedin.com/in/james-j-azar/
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
To view the videocast visit https://youtu.be/IWRU0WJzs2E
Karl Sharman is head of cybersecurity of solutions and consultancy for Stott and May in North America. He has helped build and scale teams across multiple types of business including Fortune 500, Pre-IPO late stage ventures, early stage startups, security consultancies and MSSPs. Karl Sharman is often brought on by companies for either extremely difficult hires, mass hires at speed and scale or discreet leadership hires. As a contributor and a consultant to the cybersecurity sector, Karl contributes with regular white papers, podcasts and public speaking, He was was recently featured in the top 1% of Search & Staffing Professionals globally by LinkedIn.
The discussion in this episode covered the following
How to transition to cybersecurity from another profession
Is soccer not a lot more fun than cybersecurity?
Commitment, passion, and perseverance for cybersecurity personnel
Why work at Dark Rhino Security vs Disney, Goldman Sachs, Nike
Do people quit over money?
Diverse voices and personnel engagement and being valued
When a company scales what changes?
Maintaining your values during hypergrowth
The one question that should be asked in every interview
Is it okay to put people under pressure in an interview?
Strategies that work for cybersecurity companies
Rapid advancement-get comfortable with being uncomfortable
Right processes with the right people
2021 outlook for cybersecurity? Detection and Response?
Karl Sharman's upcoming works
Additionally Karl's knowledge and experience cover the following:
Specialities: CISO, Compliance, Risk, Incident Response, Digital Forensics, Ransomware, Architecture & Engineering, Governance, Audit, Security, Cyber, Physical Security, Resilience, Business Continuity, Cyber Insurance, Product Security, Mobile Security, Application Security, IAM, Disaster Recovery, Strategy, Operations.
Frameworks: NIST, ISO, PCI, COBIT, HiTrust & NERC Regulations: NYDFS, GDPR, CCPA, HIPAA, FISMA
To learn more about Karl Sharman visit
To learn more about Dark Rhino Security
The video cast for this episode can be found here
This episode of Dark Rhino Security's, Security Confidential podcast and video cast features Dr. Calvin Nobles as the guest and he discusses how human factors can impact cybersecurity. The topics covered in the discussion are:
How organizations should assess risk
The human factor in cybersecurity
Lessons learned from the aviation industry, the dirty dozen
Risk frameworks in cybersecurity
Cybersecurity and national security, the new underbelly
The cybersecurity threat to small and medium business
Business leveraging the dark web to conduct business
Is cybersecurity a business problem or an IT problem?
Should CISOs report to the CIO?
Change the thinking on cybersecurity to be sustainable
Over reliance on tools in cybersecurity, the unknown unknowns
Findings in cybersecurity involving human factors
You can't stop stupid
Dog tired
The link to the videocast
About Dr. Calvin Nobles
Dr. Calvin Nobles is a cybersecurity professional and human factors practitioner with more than 25 years of experience. Dr. Nobles retired from the U.S. Navy and currently works in the financial services industry as a Cybersecurity / Information Security subject matter expert. He recently earned a Doctor of Philosophy in Human Factors. His previous degrees are Doctor of Philosophy in Management and Engineering, graduate degrees in Information Systems Security, Aeronautical Science, Business Administration, Military Strategy and Operational Art. Additionally, He has completed several certificates in cybersecurity from Harvard University.
Calvin is an adjunct faculty member at several universities teaching cybersecurity and MBA courses. He authored a book on the integration of technologically advanced aircraft in general aviation. Dr. Nobles’ personal story is featured in the book Black Men Changing the Narrative Through Education. He recently completed a Cybersecurity Policy Fellowship with the New America Think Tank in Washington, DC. Dr. Nobles serves on the Cybersecurity Advisory Board for Stillman College and serves on the Cyber Council for the Intelligence and National Security Alliance.
Dr. Nobles led a global Cyber Intelligence Planning Group to align cybersecurity objectives for multiple international entities. He spearheaded a national-level technology prototype project enabling the U.S. to deploy strategic capabilities around the world, which established precedence of leveraging emerging technologies using agile practices. Dr. Nobles served as an advisor to senior executives to optimize cyber operations, developed business continuity and disaster recovery procedures, enhanced the information security strategies, and provided consultancy on big data analytics, machine learning, the internet of things, and artificial intelligence.
To learn more about Dark Rhino Security
Host: Manoj Tandon
Guest: Calvin Nobles
How the OITA is helping technology companies in Ohio is of relevance to all in the Tri-State Region. Nick York the president of OITA joins Security Confidential in this episode and discusses the many activities OITA is involved with. In addition to being the president of OITA, Nick is an entrepreneur and an attorney with 20 years of practice experience and a strategic advisor to large and small companies, non-profits, and educational institutions. Nick is the co-founder of and serves as the CEO of the Transom Group. Nick has served as Vice Chair of the University of Akron Board of Trustees, focused extensively on Strategic Planning and Student Success initiatives. He has been a champion of entrepreneurship on the national level as a Board Member of the National Small Business Association (NSBA) in Washington, DC, and as Vice Chair of the Council of Smaller Enterprises (COSE) the largest small business member organizations in the country.
Nick is also a Co-founder of the Mindful Nation Foundation (MNF). Inspired by the book, A Mindful Nation, Nick helped launch the organization to bring together the best in cognitive science, community leadership and proven techniques to develop programs to improve the lives of Veterans, Children, Teachers, Healthcare providers and Leaders.
The following topics are discussed in this episode
00:00 Introduction
01:37 What is the OITA
03:10 Environment for startups in Ohio
05:08 DeWine,Husted, and Ervan Rodgers Leadership in Technology
07:11 Innovate Ohio
12:27 Origins of the OITA and Its' mission
15:09 Reforms in Procurement in the State of Ohio
20:44 Cybersecurity focus in the State of Ohio
23:36 Cybersecurity, protecting the infrastructure
28:02 Hot Potato complex in cybersecurity
31:41 2021 OITA policy and initiatives
37:03 OITA membership engagement
39:03 OITA events in 5G, Tech Talent, Tech Disruption, and Smart Mobility
The link to the video cast can be found here
To learn more about the OITA click here
To learn more about Dark Rhino Security
To learn more about Nick York
Why is cybersecurity hard? Why do women make more money? These are just some the questions Karla Reffold discusses on Dark Rhino Security's Security Confidential. Karla is an experienced business owner and business leader. She has large international network in cybersecurity and is well versed on the many topics relevant to the industry. She founded the international recruitment business, BeecherMadden in 2010 before overseeing the acquisition by Nicoll Curtin. In 2020 she joined Orpheus Cyber as the Chief Operating Officer (COO). Orpheus is a threat intelligence company with a SAAS platform that helps organizations manage their own risk, and that of their third parties, with an easy to understand cyber risk score. Karla is the host of industry interviews on the Cyber Talks media platform and the Zero Hour Podcast. She was included in SC Magazine's Top 50 Women in Security in 2019. Karla discusses her transition from a recruiting firm to COO of Orpheus. She discusses gender differences in male dominated cybersecurity and why women in cybersecurity make 30% more money than men, in the field.
TOPICS DISCUSSED
Journey from Recruiting to COO
Advice to startup companies
Gender differences in cybersecurity and how to overcome them
Why women get paid more in cybersecurity?
Assessing and managing risk in cybersecurity
The role of threat intelligence
Heavy reliance on cybersecurity tools vs processes
The pyramid of pain and threat hunting
The Solarwinds breach
Changes resulting from the Covid Pandemic
Zero trust
Quantifying risk on cloud platforms
European vs North American differences on cybersecurity and GDPR
IT Hygiene, why cybersecurity is hard
To learn more about Karla Reffold please visit https://www.linkedin.com/in/karlareffold/
To learn more about Dark Rhino Security please visit https://www.darkrhinosecurity.com
To learn more about Orpheus please visit https://orpheus-cyber.com/
To watch the videocast https://youtu.be/sOdy3Ct-uVA
Host: Manoj Tandon
Guest Karla Reffold
Healthcare IT and Innovation at the speed of life is discussed in detail with Chenoa Moss. Chenoa is a gifted Healthcare IT professional who has extensive experience in working with very large health systems on the many of IT and compliance prevalent in large complex environments. The impact of Covid has been extensive on the health systems in the United States and around the world. One of the key items Chenoa points out is the impact of the pandemic on innovation in healthcare. Large health systems are typically very slow to move and Covid forced changes at a large scale across systems resulting in great innovation. This has resulted in a paradigm shift in Healthcare and how services like Telemedicine will become more the norm than the exception going forward. Some changes are going to be permanent in Healthcare with very positive outcomes.
Cybersecurity in healthcare is also discussed with the proliferation of ransomware across health systems which has resulted in denial of service in some instances to patients. Chenoa discusses how healthcare is addressing these threats. SOC2, HIPAA, and Hi-Trust compliances and their applicability to various healthcare entities.
The Video cast for the episode can be found https://youtu.be/YtXpOthARvc
To learn more about Dark Rhino Security please visit https://www.darkrhinosecurity.com
Was it all worth it? Lessons learned. This week on Dark Rhino's Security Confidential Kevin Casey turns the tables and interviews Manoj Tandon, who is the regular host. Kevin presents 9 questions to Manoj. They must be answered in 3 min or less. The questions span critical lessons learned during the course of developing a career and going through life. Questions centered around regrets, failures, successes, family, education, career, and influencers in life. The listeners will find many commonalities with their own paths in life and perhaps gain an alternate perspective on achieving happiness, a concept so central to everyone's pursuit in life.
This conversation is different from the regular cybersecurity discussions on Security Confidential. Both Kevin Casey and Manoj Tandon share with fellow cybersecurity colleagues and entrepreneurs some of their experiences on the journey thus far.
The video for this episode can be found at https://youtu.be/UDyJi7LGqsc
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
Dark Rhino's Security Confidential is honored to have Karen Hough the founder and CEO of ImprovEdge back as a guest. This past year has presented companies and people with severe never before navigated challenges. For many, 2020 could not end soon enough. 2021 is a new beginning. Improvisation and resilience are themes from last year that carry into this year and will be with us well into the future. Cybersecurity is about helping companies become more resilient. Becoming resilient requires us to become more comfortable with improvisation. Karen helps us navigate this. The discussion focuses on improv, overcoming preconceived notions, and being resilient. There is advice and exercises that would benefit all. Karen is a #1 Amazon bestselling author, recipient of the Silver Stevie Award for Most Innovative Business of the Year, and won both the WNBA Inspiring Woman Award and the WBENC PitchPivot Grand Prize. She is a philanthropist, Yale grad, avid hiker and lives in Ohio with her husband and 3 children. Her books include: “The Improvisation Edge: Secrets to Building Trust and Radical Collaboration at Work”, “Be the Best Bad Presenter Ever: Break the Rules, Make Mistakes and Win Them Over”, and “Go With It: Embrace the Unexpected to Drive Change”. We are also joined by Tyler Smith and Jordan Graham in the discussion. Both Tyler and Jordan are former military veterans whose former line of work required the extensive use of their ability to improvise to a situation and make split second decisions. Their insights on managing up are invaluable.
To watch the video of this episode please visit https://youtu.be/nPcUm25GiMA
To learn more about Dark Rhino Security click here
To learn more about ImprovEdge click here
To learn more about Karen Hough click here
Mind the Gap, Avoid the Prevention Paradox
The more focus a company puts on prevention of cyber-attacks, paradoxically, the more unsecure it becomes. In an environment where a heavy prevention strategy is used the dwell time of attackers can be indefinite. This episode of Dark Rhino’s Security Confidential focuses on the Prevention Paradox and how to avoid it. There are three pillars of cybersecurity: prevention, detection, and response. There is a tendency, for companies, to focus extensively on prevention. In the SANS sliding scale of cybersecurity prevention is at the forefront with detection and response more to the right on the scale. Many a company following the SANS Sliding Scale end up with extensive focus on prevention for a host of reasons which are discussed. Prevention can take several forms, one of the most common being the use of endpoint protection tools like Next Generation Anti-Virus (NGAV). The advances made in these tools have been significant over the past many years with the incorporation of artificial intelligence with machine learning into their detection engines. These advanced technologies are not enough. Why?
There are three levels of unknowns as one climbs the Pyramid of Pain. There are: known-knowns, unknown-knowns, and unknown-unknowns. Known-knowns are easy to deal with it. Their signatures are known and their exploits well documented. Unknown-knowns are a bit tricker but with behavior detection through machine learning in NGAV they can be handled with great effectivity. The unknown-unknowns are the most difficult to deal with and they are at the pinnacle of the pyramid of pain. They make use of novel tools, tactics, and procedures (TTPs) that are not yet within the grasp of detection through automation or pattern recognition. The uncovering of attacks based on novel TTPs is not within the domain of a vendor and requires proactive human based threat hunting. This is best evidenced in recent times by the exploitation of the Solarwinds vulnerability with Sunburst. The TTPs used were so advanced that Fireye and the US Federal Government could not detect the attack with the plethora of tools, processes, and technologies they had in place for their cyber defense. It was only detected by human intelligence.
The more focus that is put on prevention the more data becomes available to attackers on the methods of prevention. They keep testing cyber defenses and are able to come up with alternative methods to by-pass those defenses. On the part of the defender, the belief is that they are well protected, and they may not readily realize their methods have been compromised and thus allow indefinite dwell times on the part of the attacker. This is the prevention paradox. The panelists, Manoj Tandon, Chris Gerritz, and Tyler Smith discuss the prevention paradox. Both Chris Gerritz and Tyler Smith are ex US Military. With Chris Gerritz spending his service time in the US Air Force. It was in the US Air Force that the term “The Prevention Paradox” was coined. It has not been extensively talked about till now.
The panelists discuss much an organization can do to avoid the prevention paradox. The first thing that must be done is a distinct separation of the detect and response tools from the endpoint protection tools must be had. It is very tempting to have a single vendor for detection, response, and endpoint protection. Many organizations use one vendor for protection, detection, and response. This causes organizations to fall into the prevention paradox. Layering in the Dark Rhino Security’s Six Sigma based Iπ&r process for detection and response, which utilizes the underlying technology of Infocyte, enables rapid analytics-based hypotheses to be formed and tested rapidly across the entire network further prevention the Prevention Paradox.
The Video Cast of the webinar https://youtu.be/A_3K86tKOxY
Panelists: Manoj Tandon, Chris Gerritz, Tyler Smith
Warner Moore is a strategic executive leader and manager with a background in technology and information security. Warner Moore is the founder of the cybersecurity strategy firm Gamma Force. Through Gamma Force, Warner serves as a virtual CISO for clients that include Deep Lens and Smart Columbus and advises startups. He has focused his career in working with entrepreneurial growth organizations where technology is their business and product, organizations like CoverMyMeds and Bold Penguin. Warner's work has resulted in security and privacy capabilities for them and numerous other organizations across industries. Furthermore, Warner has an accomplished record of building high performing teams who embrace DevOps culture and practices.
In this episode of Dark Rhino Security's Security Confidential discusses the role of the CISO, using risk a guiding factor in build an effective information security program, threat hunting, innovation in cybersecurity, and much more. He is joined by Host Manoj Tandon who is the Chief Sales Strategy Officer and EVP at Dark Rhino Security. Any CISO or cybersecurity practitioner, board member, or CXO would benefit greatly from Warner's thoughts especially in the light of the breach at Fireeye and the US Federal Government involving solarwinds.
The videocast for this episode can be found https://youtu.be/2iI4ziP1Vt8
To learner more about Warner Moore
To learn more about Dark Rhino Security
To learn more about Manoj Tandon
To contact Warner Moore please email kathy@gammaforce.io
Nick Potts is a self made success story. He is the former CEO and founder of ScriptDrop and the current CEO of Gift Health. Nick shares his entrepreneurial journey. He discusses his past and current projects and the uniqueness behind them. Nick took ScriptDrop from zero to a highly successful self sustaining growth company. Nick discusses his latest project, giftHealth, and the potential behind it. He provides insights into the innovation he sees coming in healthcare with AI. Nick also shares some thoughts on cybersecurity in healthcare in this interview.
The video cast can be watched at https://youtu.be/v3abJKPMRWM
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
To learn more about Nick Potts visit https://www.linkedin.com/in/pottsnicholas/
Host: Manoj Tandon
Guest: Nick Potts
Master networker, entrepreneur, and currently the Executive Director of Business and Economic Development at Slippery Rock University, Ethan Nicholas, joins us on this episode of Security Confidential. As an entrepreneur Ethan founded the Pittsburgh Business Exchange which is the largest and fastest growing professional business networking group in the Northeastern USA. The organization has grown to over 35,000 members and subscribers and Ethan has cracked the code when it comes to bringing business owners of all sizes together for the purpose of professional development and viable community outreach. Ethan's talk is "Business Networking Explained". He shares the concept of using FORM (Family, Occupation, Recreation, and Message) and unique outreach techniques to create a unique relationship with people who you are interested in and can further your business interests. Ethan also shares many stories of how he has successfully applied his approach to network his way into some very difficult to penetrate organizations. In the unprecedented times we live in, Ethan's approach is of value to anyone who is looking to advance their career, business, or personal relationships.
The videocast for this episode can be found at https://youtu.be/C6BDPCc6y0U
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
To learn more about Ethan Nicholas visit https://www.linkedin.com/in/ethannicholas/
To learn more about Slippery Rock University visit https://sru.edu
To learn more about the Pittsburgh Business Exchange visit https://https://www.pittsburghbusinessexchange.com/
Dark Rhino Security is joined by Jay Sheehan and Jordie Kern of the 7 Eagle Group. Jay and Jordie discuss their work in helping US Military Veterans and their spouses transition from military life to jobs in the civilian world. Military Veterans are extensively trained and have many desirable soft skills. Skills like making difficult decisions with minimal information, communication, providing direction, taking responsibility, and being a team player. Despite having desirable skills many face an uphill climb in the civilian job market.7 Eagle Group is providing much needed direction and training in collaboration with industry to get our military veterans into good career developing roles.
The topics discussed in this episode are:
Mission of the 7 Eagle Group
Challenges faced by veterans
Misconceptions veterans have
Military training and missing elements needed for the civilian job market
Dark Rhino Security's principles personal experience in transitioning
Economic advantages for businesses in hiring military veterans
The video log of this episode can be found https://youtu.be/oh9fhIoa7qM
To learn more about Dark Rhino Security visit https://www.darkrhinosecurity.com
To learn more about 7 Eagle Group visit https://7eagle.com/
On this episode we are joined by Matt Castonguay, VP of Business Development, at Dark Rhino Security. Matt has been gamer, developer, an entrepreneur who successfully sold his software company, MG2 Media, and is now a principle at Dark Rhino Security. Matt has developed millions of lines of code, making him a millionaire in this regard. Matt discusses his journey from being a gamer to developing a CMS platform at MG2 Media which now supports a large number of the Project Management Institute(PMI) chapters globally. Along this journey he learned many lessons on selling, building a company, commercializing an application, characteristics of products that succeed, and how to have a successful exist with your creation. Matt shares his thoughts and lessons. He also describes what an MVP (Minimally Viable Product) is and unless you have that don’t bother launching into the market.
Host: Manoj Tandon
Guest: Matt Castonguay
To watch the video of the episode, visit https://youtu.be/H0TfqIvKv1s.
To learn more about Dark Rhino Security go to https://www.darkrhinosecurity.com
To learn more about Matt go to https://www.linkedin.com/in/mathieucastonguay
We are joined by Jordan Graham, the head of the Project Management and Compliance at Dark Rhino Security, Inc. Jordan discusses SOC2 compliance, what it is? what it is not? the new SOC2 Plus compliance attestation, and tips on the journey to getting the certification from a practical perspective.
To learn more about Dark Rhino Security, Inc visit https://www.darkrhinosecurity.com
To view the video of this episode please visit https://youtu.be/c4XYOk5pTMg
Starting a high technology company poses many challenges. The Cofounders of Dark Rhino Security and Lead House discuss the challenges and the pathway to being successful entrepreneurs. The discussion is unscripted, real, and emotional. Dark Rhino Security is a purpose built cybersecurity managed services provider, cybersecurity consultancy, and risk management firm. Leadhouse is a digital innovator helping customers build their digital fronts, services, and underlying technologies. Please take a listen and provide your comments and feedback.
To learn more about Dark Rhino Security please visit https://www.darkrhinosecurity.com
To learn more about Lead House please visit https://www.leadhouse.ca
To learn more Kevin Swift visit linkedin.com/in/iamkvins
To learn more about Phil Rich visit linkedin.com/in/phil-rich-aa124729
To learn more about Kevin Casey visit linkedin.com/in/kevin-casey-985a422
To learn more about Manoj Tandon visit linkedin.com/in/manoj-tandon-0864a23
Ida Abdalkhani discusses her transition from the corporate world to Entrepreneur and the lessons learned on the journey on this episode of Security Confidential. Ida is a former global brand manager from Proctor & Gamble and the CEO of Ability to Engage and a Laughter Yoga Coach. Her ideas can be applied by anyone looking to grow their professional and personal selves or have a change in career, in any field, including cybersecurity. Ida also discusses teaching innovation with lateral thinking and how Laughter Yoga can be a great aid.
The video for this episode is available at https://youtu.be/5zhY0peWwHI
To learn more about Dark Rhino Security please visit www.darkrhinosecurity.com
To learn more about Ida please visity the following links:
1) TEDx: https://youtu.be/-HJG63EXCmw
2) Premiere Speakers Bureau (To Book Ida for Speaking Engagements): https://premierespeakers.com/ida-abdalkhani
3) 100 Conversation Changers Workbook: https://www.amazon.com/100-Conversation-Changers-Journal-Conversations/dp/1547103051
4) Ohio State Alumni Magazine Cover Story: https://www.osu.edu/alumni/news/ohio-state-alumni-magazine/issues/winter-2017/laughter-yoga.html
DRS Security Confidential is starting a series a on becoming successful with Okta. This is the first episode in that series. The episode explores the topics of how to gain knowledge to administer Okta, pathways to certifications in Okta, and educating end users on the changing experience with MFA.
To learn more about Dark Rhino Security and more cyber security topics please visit DRS
Come listen to our discussion on tips for implementing EDR (Endpoint Detection and Response). #EDR #EDRImplementation #CyberSecurity
Dark Rhino Security - https://darkrhinosecurity.com/
Follow us on LinkedIn - https://www.linkedin.com/company/dark-rhino-security/
Follow us on Twitter - https://twitter.com/DarkRhinoSec
Dark Rhino Security's podcast and vlog "Security Confidential" is honored to have Dakota Rae as the guest on this weeks episode (October 12,2020). We talk about women and millennials achieving professional success in the field of cybersecurity. We explore the hunter vs farmer sales mentality as well. Dakota Rae began her sales and marketing career as the youngest employee at the now #1 IT Security firm in North America, The Herjavec Group. Dakota was later published in Robert Herjavec's best selling Novel "The Will to Win." Many know Robert Herjavec as one of the sharks on shark tank. Dakota later moved on to a mid-size tech integrator as Director of Strategic Accounts where she sold the largest deal in the company's 15-year history. Dakota started EQ (Equation Sales) in 2017 as she recognized a major gap in the industry for salespeople of the "hunter mentality." EQ focuses on lighting revenue and reputation on fire for tech companies globally. Visit Dark Rhino Security for more information on cybersecurity or email us at info@darkrhinosecurity.com or visit our media page for blogs and other articles on cybersecurity.
Visit us on twitch at: https://www.twitch.tv/darkrhinosecurity
Dark Rhino's Security Confidential Podcast is honored to have Karen Hough the founder and CEO of ImprovEdge as a guest. Karen will be discussing "How to Build Resilience, Adapt to Obstacles, and Thrive." Guidance very much needed in the current time.
Karen Hough is the Founder & CEO of ImprovEdge, which creates business training with an improv twist, and is in the Top 1% of woman-owned businesses in the US. She is a #1 Amazon bestselling author, recipient of the Silver Stevie Award for Most Innovative Business of the Year, and won both the WNBA Inspiring Woman Award and the WBENC PitchPivot Grand Prize. She is a philanthropist, Yale grad, avid hiker and lives in Ohio with her husband and 3 children. Her books include: “The Improvisation Edge: Secrets to Building Trust and Radical Collaboration at Work”, “Be the Best Bad Presenter Ever: Break the Rules, Make Mistakes and Win Them Over”, and “Go With It: Embrace the Unexpected to Drive Change”. She is also the creator of the “Yes! Deck”, a deck of cards packed with business tips.
Visit Dark Rhino Security for more information on cybersecurity
Visit improvedge for more information on using improv to grow your company
In this week’s episode of Security Confidential, we dive into the different ways our Rhinos have stumbled into the world of cybersecurity.
For more information, you can check out the resources we have listed below or visit our website. For episode requests, please email media@darkrhinosecurity.com
Don't forget to like, comment and subscribe! Thank you!
From December to March, Zoom gained 190 million users. With this many privacy concerns have risen, such as “Zoombombing,” in which malicious users join a Zoom meeting and show inappropriate images.
In this week’s episode of Security Confidential, we dive into the ways in which remote workers can maintain their privacy while working from home.
For more information, you can check out the resources we have listed below or visit our website. For episode requests, please email media@darkrhinosecurity.com
Don't forget to like, comment and subscribe! Thank you!
Resources:
FBI Warns Companies About Hackers Increasingly Abusing RDP Connections
Security and Privacy Implications of Zoom
Zoom 101: Securing your Meetings & Virtual Classrooms
Today we spoke with Jordan Fulk, a TopTal talent recruiter. We learned more about the process of finding talent in cybersecurity while drinking some bourbon.
To get in contact with Jordan, you can email him at Jordan.Fulk@toptal.com.
Today we share our thoughts on ways you can make your C-Suite fall in love with cybersecurity.
For more information visit our website www.darkrhinosecurity.com and follow us on Twitter @DarkRhinoSec!
To send in your questions/topic suggestions email us at media@darkrhinosecurity.com. We look forward to hearing from you!
This is part of Dark Rhino Security's Declassified Cyber Security Survival Guide. Today we are talking about cloud security.
For more information visit our website www.darkrhinosecurity.com and follow us on Twitter @DarkRhinoSec!
To send in your questions/topic suggestions email us at media@darkrhinosecurity.com. We look forward to hearing from you!
This is part of Dark Rhino Security's Declassified Cyber Security Survival Guide. Today we are talking about training the end-user.
For more information visit our website www.darkrhinosecurity.com and follow us on Twitter @DarkRhinoSec!
To send in your questions/topic suggestions email us at media@darkrhinosecurity.com. We look forward to hearing from you!
Should you pay ransomware if you are attacked? How can you prevent from being attacked? We have all the answers on this week's episode of Security Confidential.
To send in your questions/topic suggestions email us at media@darkrhinosecurity.com. We look forward to hearing from you!
Visit our website www.darkrhinosecurity.com and follow us on Twitter @DarkRhinoSec!
We discuss the stigma of IT security being a bottomless money pit, as well as some cost effective solutions to help secure your network.
This week I sat down with our project manager at Dark Rhino Security to discuss Lean Six-Sigma and ways that it can be applied within cybersecurity.
In this episode, members of the Dark Rhino Security team discuss data loss prevention and how it can affect an organization taking it on.
In this episode Manoj speaks with Stefan Ludlow, director of technology at Cerity Partners, a wealth management firm. They discuss the levels of personal responsibility that go into your cybersecurity practices and what you can do to better keep your personal networks secure.
https://www.darkrhinosecurity.com/
https://ceritypartners.com/
In this episode four members of the Dark Rhino Security team sit down to talk about some recent cybersecurity conferences that we have had the pleasure of participating in, and what we took away from them.
Video link mentioned in the podcast: http://www.irongeek.com/i.php?page=videos/bsidescolumbus2019/mainlist
darkrhinosecurity.com
This week we sit back down with Luis Martin, AI architect and designer, to talk about the very beginnings of artificial intelligence and how far it has come since then.
The Dark Rhino Podcast is a weekly source of interviews and insights into the world of cybersecurity. Produced entirely in-house by MSSP and risk management firm Dark Rhino Security.