HomePodcastDefense in Depth

Defense in Depth

Defense In Depth

Defense in Depth: Should CISOs Be Licensed Professionals?

Many professionals are required to obtain a license before they can do their job legally. The demands of cybersecurity professionals, especially CISOs, has become...

Defense in Depth: Inherently Vulnerable By Design

Much of what we do as practitioners is to prevent inadvertent security problems - oversights, zero-days, etc. What about inherent and unavoidable problems? When...

Defense in Depth: Imposter Syndrome

For CISOs and other security leaders, suffering from imposter syndrome seems inevitable. How can you ever be really confident when there's an endless stream...

Defense in Depth: Why Don’t More Companies Take Cybersecurity Seriously?

With every cybersecurity breach, we still don't seem to be getting through. Many companies don't seem to be taking cybersecurity seriously. What does it...

Defense in Depth: Data Protection and Visibility

Where is your data? Who's accessing it? You may know if you have an identity access management solution, but what happens when that data...

Defense in Depth: What’s an Entry Level Cybersecurity Job?

Naomi Buckwalter, director of information security at Energage analyzed one thousand random information security job posts on LinkedIn. The most notable trend she found...

Defense in Depth: Securing Digital Transformations

Digital transformation. It's definition is broad and so are the mechanisms to secure it. Check out this post for the basis for our conversation on this week’s...

Defense in Depth: Leaked Secrets in Code Repositories

Secrets, such as passwords and credentials, are out in the open just sitting there in code repositories. Why do these secrets even exist in...

Defense in Depth: Measuring the Success of Your Security Program

How does a CISO measure the performance of their security program? Sure, there are metrics, but what are you measuring against? Is it a...

Defense in Depth: Privacy Is An Uphill Battle

Privacy is an uphill battle. The problem is those gathering the data aren't the ones tasked with protecting the privacy of those users for...

CISO Series Turns Two!

Today is officially the anniversary of the CISO Series. The concept of the CISO/Security Vendor Relationship Series started back in January 2018, and then...

Defense in Depth: Legal Protection for CISOs

What's the legal responsibility of a CISO? New cases are placing the liability for certain aspects of security incidents squarely on the CISO. And...

Defense in Depth: XDR: Extended Detection and Response

Is XDR changing the investigative landscape for security professionals? The "X" in XDR extends traditional endpoint detection and response or EDR to also include...

Defense in Depth: Calling Users Stupid

Many cybersecurity professionals use derogatory terms towards their users, like calling them "dumb" because they fell for a phish or some type of online...

Defense in Depth: Is College Necessary for a Job in Cybersecurity?

Where is the best education for our cyber staff of the future? Where does college fit in or not fit in? Check out this post for...