The Retail & Hospitality ISAC interviews members of the InfoSec community about the latest cybersecurity challenges and best practices unique to the retail and hospitality industry.
In this episode of the Retail & Hospitality ISAC podcast, host Luke Vander Linden is joined by Jay Banks, senior information security analyst of IT risk and compliance at Dick’s Sporting Goods, to talk about Cybersecurity Awareness Month in October. They explore the mechanisms Dick’s Sporting Goods employs to advocate for cybersecurity throughout the month. Then, Luke sits down with Christian Beckner, vice president of retail technology and cybersecurity at the National Retail Federation (NRF), to discuss the recent rules governing cybersecurity released by the U.S. Securities and Exchange Commission (SEC).
In this episode of the Retail & Hospitality ISAC podcast, host Luke Vander Linden is joined by Charles Fedorko, director of IT security at Sage Hospitality Group, to discuss his role, journey leading to his career in cybersecurity, and the current cybersecurity landscape surrounding the hospitality industry. Then, Luke sits down with Ellen Sabin, president of Watering Can Press, to discuss her new book educating children on proper cyber safety, The Super Smart Cyber Guide for Kids. Finally, Lee Clark, cyber threat intelligence analyst & writer at RH-ISAC, provides the latest intel briefing. Thank you to Fortinet for their sponsorship of the Retail & Hospitality ISAC podcast.
In this episode of the Retail & Hospitality ISAC podcast, host Luke Vander Linden is joined by Blake Sobczak, Synack’s head of communications and README’s editor-in-chief, to discuss the latest news impacting the cybersecurity world. Keep an eye out for Synack at the upcoming RH-ISAC Cyber Intelligence Summit. Then, Luke sits down with Natura &Co’s CISO, Jonathan Lloyd White, to expand upon his background, current role, and Natura &Co’s founding principles.
Thank you to Fortinet for their sponsorship of the Retail & Hospitality ISAC podcast.
In this episode of the Retail & Hospitality ISAC podcast, host Luke Vander Linden is joined by Piyush Jain, global managing director of security (retail, consumer goods, life sciences, mobility, and travel) at Accenture, to discuss safeguarding an organization’s security. Then, Luke chats with Suzie Brown, hospitality solutions BISO (Business Information Security Officer) at Sabre Corporation, about her background, the role of a BISO, and provides aspiring and current BISOs with tips for success. Finally, Lee Clark, cyber threat intelligence analyst & writer at RH-ISAC, delivers the latest intel briefing including a full run-down of the ongoing CL0P/MOVEit vulnerability. Thank you to Fortinet for their sponsorship of the Retail & Hospitality ISAC podcast.
In this episode of the Retail & Hospitality ISAC podcast, host Luke Vander Linden is joined by John Scrimsher, chief information security officer (CISO) at Kontoor Brands, Inc., and Marcel Bucsescu, senior director of credentialing and strategic engagement at NACD, to expand upon the NACD Accelerate program. Then Ian Furr, security integration engineer at RH-ISAC, talks about his volunteer work with the Information Technology Disaster Resource Center (ITDRC) and the Fairfax County Fire and Rescue Department. Finally, Luke chats with Bidemi (Bid) Ologunde, intelligence analyst at Expedia Group, about his own podcast, The Bid Picture, background, and the trajectory of cybersecurity. Thank you to Fortinet for their sponsorship of the Retail & Hospitality ISAC podcast.
In this episode of the Retail & Hospitality ISAC podcast, host Luke Vander Linden is joined by Shad Taylor, solution architect for retail & hospitality at Fortinet, to expand upon securing the store of the future. Then, Lee Clark, cyber threat intelligence analyst & writer at RH-ISAC, provides the latest intel briefing. Thank you to Fortinet for their sponsorship of the Retail & Hospitality ISAC podcast.
In this episode of the Retail & Hospitality ISAC podcast, host Luke Vander Linden is joined by Dom Lutz, an information security engineer at URBN, to expand upon a personal research project he is working on, homographs in domain spoofing. Then, Luke sits down with Rafia Noor, an information security engineer in the operation technology division at Colgate-Palmolive, to discuss her career path, intelligence sharing at the RH-ISAC, and the trajectory of cybersecurity. Thank you to Fortinet for their sponsorship of the Retail & Hospitality ISAC podcast.
In this episode of the RH-ISAC podcast, Kristen Dalton, director of strategic cyber engagement, research, and analytics, shares the results of this year's CISO and Practitioner Benchmark Surveys, including CISO priorities, budget, staffing, and skill gaps.
Download the Reports:
Thank you to Fortinet for their sponsorship of the RH-ISAC podcast.
In this episode of the RH-ISAC podcast, Lee Clark, RH-ISAC cyber threat intelligence analyst & writer, provides an update on holiday threat trends. Then, Courtney Radke, retail CISO and principal architect at Fortinet, shares predictions for top retail threats in 2023.
Download the Holiday Threat Trends Report. Not a member? Learn more about exclusive member benefits.
Thank you to Fortinet for their sponsorship of the RH-ISAC podcast.
In this episode of the RH-ISAC podcast, RH-ISAC member, Rob Fuller, shares his first-hand experience with vulnerability disclosure, or bug bounty programs, the benefits, the challenges, and some tips for getting your program off the ground.
Thank you to Fortinet for their sponsorship of the RH-ISAC podcast.
In this episode of the RH-ISAC podcast, Matt Tesauro, distinguished engineer at Noname Security, discusses API vulnerabilities and how API testing is shifting left. Then, Kelsey Helms, principal analyst, and Ryan Miller, senior director, cybersecurity, at Target share how they're taking ransomware resiliency beyond the basics and collaborating across their organization.
Thank you to Fortinet for their sponsorship of the RH-ISAC podcast.
In this episode of the RH-ISAC podcast, our intel team shares how members can start taking advantage of the new RH-ISAC community instance of the threat intel platform, MISP. Then, Lee Clark, RH-ISAC cyber threat intelligence analyst and writer, and Sam Crowther, founder & CEO of Kasada, discuss the trends they're seeing in the fraud space, including how bots have become commercialized, lowering the barrier of entry for fraud attacks.
Thank you to Fortinet for their sponsorship of the RH-ISAC podcast.
In this episode of the RH-ISAC podcast, Ira Winkler, author of "You Can Stop Stupid", shares how we can start designing systems with controls in place to limit the damage caused by human error. Then, Mike Britton, CISO of Abnormal Security, shares how they're using automation to stop the next generation of email threats.
Thank you to Fortinet for their sponsorship of the RH-ISAC podcast.
In today's podcast episode, Lee Clark, RH-ISAC's cyber threat intelligence analyst & writer, shares monthly threat trends including information on the recent Lockbit builder code leak and MFA bombing. Then, Idan Cohen from Reflectiz shares how you can prepare for PCI DSS 4.0 to make sure you remain compliant.
Thank you to Fortinet for their sponsorship of the RH-ISAC podcast.
In this episode of the RH-ISAC podcast, Alex Brown, director of events, talks with members of the Summit Working Group about the content at this year's event. Then, Kristen Dalton, director of strategic cyber engagement, research, and analytics, chats with our September Member Spotlight, Christy Elgee, about how she transitioned from business into cybersecurity with the help of the SANS Institute's Women's Immersion Academy.
Not registered for the Summit yet? Register now for next week's event!
Thank you to Fortinet for their sponsorship of the RH-ISAC podcast.
In this episode of the RH-ISAC podcast, Ian Furr, our security integrations engineer, interviews Jordan Bodily, infrastructure security engineer at BigCommerce. Jordan describes his start in cybersecurity, “drinking from a firehose”, and how being a member of the RH-ISAC sharing community has helped him and his team. Then, our president, Suzie Squier, interviews Jim Reavis and Troy Leach from the Cloud Security Alliance who share with us some of the trends they're keeping an eye on, such as blockchain and post-quantum cryptography.
Thank you to Fortinet for their sponsorship of the RH-ISAC Podcast.
In this podcast episode, Nate Kharrl and Anthony Micara from Spec discuss organizational challenges that prevent fraud detection across the customer journey. Then Lee Clark, from RH-ISAC's intel team, shares how RH-ISAC's member community sharing trends compare to those of the broader retail industry.
You can find the Verizon DBIR report referenced in this episode, on the RH-ISAC website.
Thank you to Fortinet for their sponsorship of the RH-ISAC Podcast.
In this episode of the RH-ISAC podcast, Bel Lepe, Co-Founder & CEO of Cerby, shares how security teams can regain control of their shadow IT, or unmanageable applications. Then, Derek Hanson Vice President, Product Evangelist, at Yubico discusses how passwordless authentication and phishing-resistant MFA can help you accomplish business goals and improve the retail and hospitality customer experience.
Thank you to Fortinet for their sponsorship of the RH-ISAC Podcast.
In this episode of the RH-ISAC podcast, RH-ISAC member, Nick Leicht, interviews Tony Hunt and Chris Cox from Operation: Safe Escape, or OSE. They share with us how their volunteers use cybersecurity skills to help victims of domestic abuse, stalking, and harassment, safely escape from their abusers.
Thank you to Fortinet for their sponsorship of the RH-ISAC Podcast.
https://safeescape.org/
info@safeescape.org
In this episode of the RH-ISAC podcast, Bryon Hundley, VP of intel operations at RH-ISAC and Courtney Radke, Retail CISO and principal architect at Fortinet, discuss zero trust, what it is, what it isn't, and how organizations can work towards implementing zero trust policies.
Thank you to Fortinet for their sponsorship of the RH-ISAC Podcast.
In this episode, Luke Vander Linden, RH-ISAC's VP of membership and marketing, interviews the intel team who provide an update on the threat landscape in Asia and how MISP, a threat intel platform heavily used overseas, has grown in popularity among RH-ISAC members in the US. Then, Fred Kneip from CyberGRX shares with Suzie Squier, RH-ISAC president, how their risk assessment tools can be used to benchmark your security posture.
Thank you to Fortinet for their sponsorship of the RH-ISAC Podcast.
In this episode, RH-ISAC member, Nick Leicht, interviews Tom Hocker, director of Trace Labs, an organization dedicated to using open source intelligence to assist law enforcement in the search for missing persons. Then, Andrew Dolan, director, cybersecurity strategic engagement, research & analytics sits down with Bob Burda, chief strategy officer for the Cybercrime Support Network. Bob shares with us CSN's mission and the top four things they advise everyone include in their security awareness training programs.
To learn more about these organizations, visit:
Trace Labs: https://www.tracelabs.org/
Cybercrime Support Network: https://cybercrimesupport.org/
Thank you to Fortinet for their sponsorship of the RH-ISAC Podcast.
In this episode of the RH-ISAC Podcast, former Cybersecurity Coordinator for President Obama, and current CEO of the Cyber Threat Alliance, Michael Daniel, shares the work CTA is doing to help CISA implement new cyber incident reporting legislation. Then, Justin Huff, security managing director at Accenture, provides tips for lowering your cyber insurance premium.
Thank you to Fortinet for their sponsorship of the RH-ISAC Podcast.
In this episode, two members of RH-ISAC's Incident Response Working Group, Jeff Mercer from Kontoor Brands and Logan Johnson from Discount Tire, discuss what defines a "playbook". Then, Dan Holden from BigCommerce gives us a preview of the content in his upcoming Cyber Thursday session, Client-Side Security Challenges Caused by the Usage of Third-Party Applications.
To learn more and register for Dan's session visit https://rhis.ac/appsec_podcast
Thank you to Fortinet for their sponsorship of the RH-ISAC Podcast.
This episode features an interview with Kelly White, founder of RiskRecon, sharing the risk factors that have the highest correlation with successful ransomware attacks. Plus, RH-ISAC's intel team shares the work that was done to confirm the proof of concept of the Spring4Shell vulnerability.
Thank you to Fortinet for their sponsorship of the RH-ISAC Podcast.
In this episode of the RH-ISAC podcast, two female CISOs, Lauren Dana Rosenblatt, vice president & CISO at International Flavors & Fragrance and Chandra McMahon, senior vice president & CISO at CVS Health discuss how conversations about diversity have changed over the course of their careers. Then, RH-ISAC's director of events, Alex Brown, shares exciting news about the return to live events, kicking off in May with regional workshops.
Thank you to Fortinet for their sponsorship of the RH-ISAC Podcast.
March is Women's History Month, and to celebrate, we're dedicating this month's episodes to highlighting some of the amazing women in our cybersecurity community. In this episode of the RH-ISAC podcast, RH-ISAC's president, Suzie Squier talks to Lynn Dohm, executive director of Women in Cybersecurity (WiCyS) about their workforce development programs for students and how your organization can implement gender neutral hiring practices. Then, RH-ISAC's VP of intelligence operations, Bryon Hundley, sits down with Ashley Allocca of Flashpoint to discuss her research on the 2021 holiday season's retail fraud trends and the continued importance of security awareness for both customers and employees.
Thank you to Fortinet for their sponsorship of the RH-ISAC Podcast.
In this episode of the RH-ISAC Podcast, moderator Julia Hare, editor in chief of RETHINK Retail and panelists Courtney Radke, retail CISO, principal architect at Fortinet, Bryon Hundley, RH-ISAC VP of intelligence, and Diane Brown, vice president of IT risk management and CISO, discuss top initiatives for CISOs in 2022. The panelists discuss how their organizations are prioritizing critical projects like ransomware planning and implementation of multi-cloud environments, as well as limitations, such as lack of security awareness across company staff.
Thank you to Fortinet for their sponsorship of the RH-ISAC Podcast.