HomePodcastDefense in Depth

Defense in Depth

DEFENSE IN DEPTH

Can You Build a Security Program on Open Source?

What would it take to build your entire security program on open source software, tools, and intelligence? Check out this post for the discussion that is...

Third Party Risk vs. Third Party Trust

Businesses grow based on trust, but they have to operate in a world of risk. Even cybersecurity operates this way, but when it comes...

How Can We Improve the Cyber Sales Cycle?

The cybersecurity sales process is so terribly inefficient. And everyone, the targets and cybersecurity leaders, are losing valuable time because of that inefficiency. Where...

What Leads a Security Program: Risk or Maturity?

When you think about building a plan (and budget!) for your security program, do you lead with risk, maturity, or something else? Check out this...

Limitations of Security Frameworks

Why do strongly supported security frameworks have such severe limitations when building a security program? Check out this post for the discussions that is the basis...

Why Is There a Cybersecurity Skills Gap?

Why is there a cybersecurity skills gap? Practically everyone is looking to hire, and there are ton of people getting training and trying to...

What Can the Cyber Haves Do for the Cyber Have Nots?

Given that your company's security is dependent on the security of your partners and others, what can we do to get more organizations above...

Securing Unmanaged Assets

"When the asset discovery market launched, every single company that offered a solution used the line, “You can’t protect what you don’t know.” Everyone...

Ambulance Chasing Security Vendors

A good high profile security threat seems like a good time to alert potential customers about how your product could help or even prevent...

Do CISOs Have More Stress than Other C-Suite Jobs?

Why do CISOs seem more stressed out than other C-level executives? Check out this post for the discussions that are the basis of our conversation on...

How Should We Discuss Cyber With the C-Suite?

How detailed do we get in our conversation with business leaders? Do we dumb it down? Or is that a recipe for trouble? Check out this...

Can You Be a vCISO If You’ve Never Been a CISO?

Why are there so many vCISOs who have never been a CISO? Isn't it difficult to advise on a role you've never done? Do...

How Should We Gauge a Company’s Cyber Health?

As an outside observer, how can you tell if a company is staying cyber healthy? While there is no financial statement equivalency to let...

Reducing the Attack Surface

The cyber attack surface just keeps growing to the point that it seems endless. Protecting it all is impossible. Is there anything that can...

Do We Need a Marketing Manager for the Security Team?

Those reports on security procedures for the business are falling short. No one is reading them. What good are security controls if your staff...