Discussions, tips, and debates from security practitioners and vendors on how to work better together to improve security for themselves and everyone else.
…
continue reading
Defense in Depth promises clear talk on cybersecurity’s most controversial and confusing debates. Once a week we choose one controversial and popular cybersecurity debate and use the InfoSec community’s insights to lead our discussion.
…
continue reading

1
Why Are We Still Struggling to Fix Application Security?
28:14
28:14
Play later
Play later
Lists
Like
Liked
28:14All links and images for this episode can be found on CISO Series. Check out this post for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark, the producer of CISO Series, and Steve Zalewski. Joining us is our sponsored guest, Eric Gold, chief evangelist, BackSlash. In this episode: Start with t…
…
continue reading

1
Data Minimization Means We Don’t Tell You What We’re Collecting
41:53
41:53
Play later
Play later
Lists
Like
Liked
41:53All links and images for this episode can be found on CISO Series. This week’s episode is hosted by me, David Spark, producer of CISO Series, and Andy Ellis, partner, YL Ventures. Joining us is Mandy Huth, svp, CISO, Ultra Clean Technology. In this episode: Start with good defaults Building talent bridges Don’t forget the humans Differentiating wit…
…
continue reading

1
What Can Someone with No Experience Do in Cybersecurity?
26:25
26:25
Play later
Play later
Lists
Like
Liked
26:25All links and images for this episode can be found on CISO Series. Check out this post from Jerich Beason, CISO at WM, for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark, the producer of CISO Series, and Dan Walsh, CISO, Datavant. Joining us is Rinki Sethi, vp and CISO, BILL. In this episode…
…
continue reading

1
Welcome to Cybersecurity: Where Everything Is Made Up and the Points Don’t Matter
40:53
40:53
Play later
Play later
Lists
Like
Liked
40:53All links and images for this episode can be found on CISO Series. This week’s episode is hosted by me, David Spark, producer of CISO Series and Andy Ellis, partner, YL Ventures. Joining us is Mike D’Arezzo, executive director of infosec and GRC, Wellstar Health Systems. In this episode: The shift left myth Reconsidering CISO evaluations The power …
…
continue reading

1
Are New Gartner-Created Categories/Acronyms Helping or Hurting the Cybersecurity Industry?
26:47
26:47
Play later
Play later
Lists
Like
Liked
26:47All links and images for this episode can be found on CISO Series. Check out this post from Caleb Sima of WhiteRabbit for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark, the producer of CISO Series, and Geoff Belknap. Joining us is Alex Hutton, CISO, Atlantic Union Bank. In this episode: The…
…
continue reading

1
With AI, Don’t Think Like a Hacker, Think Like the Whole of Society
39:04
39:04
Play later
Play later
Lists
Like
Liked
39:04All links and images for this episode can be found on CISO Series. This week’s episode is hosted by me, David Spark, producer of CISO Series and Andy Ellis, partner, YL Ventures. Joining us is our sponsored guest Nathan Hunstad, director, security at Vanta. In this episode: Thinking like AI Building off a solid foundation Start with ownership Follo…
…
continue reading

1
Can AI improve Third-Party Risk Management (TPRM)
29:00
29:00
Play later
Play later
Lists
Like
Liked
29:00All links and images for this episode can be found on CISO Series. Check out this post for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark, the producer of CISO Series, and Jason Elrod, CISO, MultiCare Health System. Joining us is our sponsored guest, Nick Muy, CISO, Scrut Automation. In this…
…
continue reading

1
This Security Control Is So Good We Don’t Even Have to Turn It On (LIVE in Clearwater, FL)
45:00
45:00
Play later
Play later
Lists
Like
Liked
45:00All links and images for this episode can be found on CISO Series. This week’s episode is hosted by me, David Spark, producer of CISO Series and Christina Shannon, CIO, KIK Consumer Products. Joining them is Jim Bowie, CISO, Tampa General Hospital. In this episode: A journey, not a destination The difference between pressure and stress Fighting com…
…
continue reading

1
Cybersecurity Is NOT an Entry-Level Position
31:46
31:46
Play later
Play later
Lists
Like
Liked
31:46All links and images for this episode can be found on CISO Series. Check out this post by Tallis Jordan of the U.S. Army Cyber Command for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark, the producer of CISO Series, and Steve Zalewski. Joining us is Montez Fitzpatrick, CISO, Navvis. In this …
…
continue reading

1
The Security Incident Has Been Upgraded From “Ouch” to “Boiiiing” (LIVE in Orlando, FL)
42:01
42:01
Play later
Play later
Lists
Like
Liked
42:01All links and images for this episode can be found on CISO Series. This week’s episode is hosted by me, David Spark, producer of CISO Series and Trina Ford, CISO, iHeartMedia. Joining us is our sponsored guest Rob Allen, chief product officer, ThreatLocker. This episode was recorded in front of a live audience at Zero Trust World in Orlando, Florid…
…
continue reading

1
Hey Vendors, What Problem Is Your Product Solving?
28:22
28:22
Play later
Play later
Lists
Like
Liked
28:22All links and images for this episode can be found on CISO Series. Check out this post from Yaron Levi for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark, the producer of CISO Series, and Mike Johnson, CISO, Rivian. Joining us is Yaron Levi, CISO, Dolby. In this episode: A knowledge deficit …
…
continue reading

1
How to Best Maintain a Healthy Work-Work Balance in Cybersecurity
40:56
40:56
Play later
Play later
Lists
Like
Liked
40:56All links and images for this episode can be found on CISO Series. This week’s episode is hosted by me, David Spark, producer of CISO Series and Andy Ellis, partner, YL Ventures. Joining us is Edward Contreras, senior evp and CISO, Frost Bank. In this episode: A gradual language shift Don’t reflexively rise and grind Lean into focus Gauging the unm…
…
continue reading

1
We've Been Fooled. There Is No Talent Shortage.
26:18
26:18
Play later
Play later
Lists
Like
Liked
26:18All links and images for this episode can be found on CISO Series. Check out this post by Rachel Bicknell of Dell Technologies quoting Mic Merritt of Merritt Collective for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark, the producer of CISO Series, and Jimmy Sanders, president, ISSA Interna…
…
continue reading

1
Our CISO Might Be Virtual, But the Lack of Respect Is Genuine
34:16
34:16
Play later
Play later
Lists
Like
Liked
34:16All links and images for this episode can be found on CISO Series. This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Andy Ellis (@csoandy), partner, YL Ventures. Joining us is Mike Wilkes, former CISO, Major League Soccer. In this episode: Are we misusing vCISOs? Cybersecurity is out to sea Planning for your ex…
…
continue reading

1
Is There an Increasing Consolidation of Vendors in the SOC?
32:28
32:28
Play later
Play later
Lists
Like
Liked
32:28All links and images for this episode can be found on CISO Series. Check out this post for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark (@dspark), the producer of CISO Series, and Howard Holton, CTO, GigaOm. Joining us is Francis Odum, founder, Software Analyst Cybersecurity Research. In t…
…
continue reading

1
All Cybersecurity Problems Are Easy to Fix… With Unlimited Time and Budget
39:09
39:09
Play later
Play later
Lists
Like
Liked
39:09All links and images for this episode can be found on CISO Series. This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Andy Ellis (@csoandy), partner, YL Ventures. Joining us is Adam Holland, former CISO, the Wendy’s Company, now CISO of Ascension Healthcare. In this episode: The long road to influence The effort…
…
continue reading
All links and images for this episode can be found on CISO Series. Check out this post for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark (@dspark), the producer of CISO Series, and Lee Parrish, CISO, Newell Brands. Joining us is David Tyburski, vp of information security and CISO, Wynn Reso…
…
continue reading

1
Every Failed Startup Starts as a Dream for a Single Pane of Glass
37:11
37:11
Play later
Play later
Lists
Like
Liked
37:11All links and images for this episode can be found on CISO Series. This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Andy Ellis (@csoandy), partner, YL Ventures. Joining us is Shaun Marion, vp, CSO, Xcel Energy. In this episode: Setting policy The hard thing about soft skills Never let a good crisis go to waste…
…
continue reading

1
Is Platformization Vs Best-of-Breed a False Dichotomy?
29:00
29:00
Play later
Play later
Lists
Like
Liked
29:00All links and images for this episode can be found on CISO Series. Check out this post for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark (@dspark), the producer of CISO Series, and Geoff Belknap (@geoffbelknap). Joining us is Elad Koren, vp, product management, Cortex Cloud, Palo Alto Netwo…
…
continue reading
All links and images for this episode can be found on CISO Series. This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Andy Ellis (@csoandy), partner, YL Ventures. Joining us is our sponsored guest, Danny Jenkins, CEO, ThreatLocker. In this episode: A zero-day upgrade Don’t let a pentest go bad Improving user tra…
…
continue reading
All links and images for this episode can be found on CISO Series. Check out this post for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark (@dspark), the producer of CISO Series, and DJ Schleen, former distinguished security architect, Yahoo. Joining us is our sponsored guest Heath Renfrow, c…
…
continue reading

1
Zero Trust Purple Team DevSecOps Mesh: A CASB Journey Through the Identity Fabric
37:33
37:33
Play later
Play later
Lists
Like
Liked
37:33All links and images for this episode can be found on CISO Series. This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Steve Zalewski. Joining us is our sponsored guest, Matt Muller, field CISO, Tines. In this episode: Seeking the early AI adopters Taking the SOC back to basics Changing our automation expectation…
…
continue reading

1
Can a Security Program Ever Reach Maintenance Mode?
25:12
25:12
Play later
Play later
Lists
Like
Liked
25:12All links and images for this episode can be found on CISO Series. Check out this post for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark (@dspark), the producer of CISO Series, and Geoff Belknap (@geoffbelknap). Joining us is Andrew Wilder, CISO, Vetcor. In this episode: It comes down to gr…
…
continue reading

1
Our Developers’ New Motto is “LLM Take the Wheel”
37:09
37:09
Play later
Play later
Lists
Like
Liked
37:09All links and images for this episode can be found on CISO Series. This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Andy Ellis (@csoandy), partner, YL Ventures. Joining us is Deneen DeFiore, Vice President & Chief Information Security Officer, United Airlines. In this episode: Minding the gap Copilot overrelia…
…
continue reading

1
The Hardest Problems in Security Aren't "Security Problems"
25:52
25:52
Play later
Play later
Lists
Like
Liked
25:52All links and images for this episode can be found on CISO Series. Check out this post for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark (@dspark), the producer of CISO Series, and Geoff Belknap (@geoffbelknap). Joining us Sneha Parmar, information security officer, Lufthansa Group Digital …
…
continue reading

1
As Long as We Keep Moving the Goalposts, We Have a Great Security Culture (LIVE in Dallas, TX)
42:18
42:18
Play later
Play later
Lists
Like
Liked
42:18All links and images for this episode can be found on CISO Series. This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Rinki Sethi, vp and CISO, BILL. Joining us is our sponsored guest, Lamont Orange, CISO, Cyera. This episode was recorded in front of a live audience at Cyera’s first DataSec conference (November …
…
continue reading

1
If and When Should a CISO Have a Long Term Security Plan?
29:20
29:20
Play later
Play later
Lists
Like
Liked
29:20All links and images for this episode can be found on CISO Series. Check out this post for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark (@dspark), the producer of CISO Series, and Mike Johnson, CISO, Rivian. Joining us is Gaurav Kapil, CISO, Bread Financial. In this episode: It helps to ha…
…
continue reading

1
4th Party Data Breach? We Can Barely Catch the 1st Party Ones!
37:51
37:51
Play later
Play later
Lists
Like
Liked
37:51All links and images for this episode can be found on CISO Series. This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Mike Johnson, CISO, Rivian. Joining us is George Finney, CISO, The University of Texas System and author of Project Zero Trust. In this episode: Aligning on privacy Bringing Zero Trust to OT Rest…
…
continue reading

1
Do We Want CISOs Dictating How Salespeople Should Engage?
33:45
33:45
Play later
Play later
Lists
Like
Liked
33:45All links and images for this episode can be found on CISO Series. Check out this post by Marc Ashworth, CISO at First Bank for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark (@dspark), the producer of CISO Series, and Shawn Bowen, vp, deputy CISO - Gaming, Microsoft. Joining us is Ken Athan…
…
continue reading

1
I Support Open Source as Long as I Don't Have to Invest in It
37:20
37:20
Play later
Play later
Lists
Like
Liked
37:20All links and images for this episode can be found on CISO Series. This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Steve Zalewski. Joining us is our guest, Brett Perry, CISO, Dot Foods. In this episode: A new MDR policy Staying on top of the technical debt cycle Beating retention struggles In the gully of SOA…
…
continue reading
All links and images for this episode can be found on CISO Series. Check out this post for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark (@dspark), the producer of CISO Series, and Geoff Belknap (@geoffbelknap). Joining us is our sponsored guest, Rob Allen, chief product officer, ThreatLock…
…
continue reading

1
Ewww! How Long Has This Router Been in the Fridge?
38:52
38:52
Play later
Play later
Lists
Like
Liked
38:52All links and images for this episode can be found on CISO Series. This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Andy Ellis (@csoandy), partner, YL Ventures. Joining us is Yabing Wang, VP and CISO, Justworks. In this episode: Building a path to action Cracking the EOL conundrum The burning platform question…
…
continue reading
All links and images for this episode can be found on CISO Series. Check out this post for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark (@dspark), the producer of CISO Series, and Ross Young, CISO-in-residence, Team8, and Jeroen Schipper, CISO, Gemeente Den Haag. In this episode: Creating …
…
continue reading

1
Why Bother Helping Users When We Can Complain About Them?
37:33
37:33
Play later
Play later
Lists
Like
Liked
37:33All links and images for this episode can be found on CISO Series. This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Mike Johnson, CISO, Rivian. Joining us is our sponsored guest Daniel Daraban, senior director of product management, Bitdefender. In this episode: Practice makes perfect Shaming doesn’t help anyo…
…
continue reading
All links and images for this episode can be found on CISO Series. Check out this post for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark (@dspark), the producer of CISO Series, and Steve Zalewski. Joining us is our sponsored guest, Itai Tevet, CEO, Intezer. In this episode: Build for what y…
…
continue reading

1
Can’t Our Employees Just Go Back to Stealing Pens?
38:06
38:06
Play later
Play later
Lists
Like
Liked
38:06All links and images for this episode can be found on CISO Series. This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Mike Johnson, CISO, Rivian. Joining us is our sponsored guest, Itzik Alvas, co-founder and CEO, Entro. In this episode: What to expect when you’re offboarding The threats are coming from inside t…
…
continue reading

1
Vulnerability Management ≠ Vulnerability Discovery
28:39
28:39
Play later
Play later
Lists
Like
Liked
28:39All links and images for this episode can be found on CISO Series. Check out this post for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark (@dspark), the producer of CISO Series, and Mike Johnson, CISO, Rivian. Joining us is Yaron Levi, CISO, Dolby. In this episode: You can’t manage what you …
…
continue reading

1
We Take Software Security Seriously, As Long As It Ships on Time
34:34
34:34
Play later
Play later
Lists
Like
Liked
34:34All links and images for this episode can be found on CISO Series. This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Mike Johnson, CISO, Rivian. Joining us is our sponsored guest Jeremy Epling, chief product officer, Vanta. In this episode: What is the future of cybersecurity? Designing the outcomes we want The…
…
continue reading

1
Aww, Your Cybersecurity Concerns Are So Adorable (LIVE in La Jolla)
40:38
40:38
Play later
Play later
Lists
Like
Liked
40:38All links and images for this episode can be found on CISO Series. This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Gary Hayslip, CISO, Softbank Investment Advisors. Joining us is Keith McCartney, VP, Security and IT, DNAnexus. In this episode: Closing the Credibility Gap Clarifying the Role of Security Engine…
…
continue reading

1
Are Security Awareness Training Platforms Effective?
26:50
26:50
Play later
Play later
Lists
Like
Liked
26:50All links and images for this episode can be found on CISO Series. Check out this post for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark (@dspark), the producer of CISO Series, and Dan Walsh, CISO, Paxos. Joining us is Sharon Milz, CISO, Time. In this episode: A vicious cycle Not all traini…
…
continue reading

1
Once You Show Me Your Diploma, I’ll Explain Why We Don’t Gatekeep
39:47
39:47
Play later
Play later
Lists
Like
Liked
39:47All links and images for this episode can be found on CISO Series. This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Andy Ellis (@csoandy), partner, YL Ventures. Joining us is Jimmy Benoit, vp, cybersecurity, PBS. In this episode: Starting early on security awareness The limits of gamification Technically quali…
…
continue reading

1
The Argument For More Cybersecurity Startups
32:07
32:07
Play later
Play later
Lists
Like
Liked
32:07All links and images for this episode can be found on CISO Series. Check out these posts for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark (@dspark), the producer of CISO Series, and Ross Haleliuk, author, Venture in Security. Be sure to check out Ross's podcast, Inside the Network, and his…
…
continue reading

1
Wait, We Can Prioritize Data Privacy Before an Incident? (LIVE at Stanford University)
45:44
45:44
Play later
Play later
Lists
Like
Liked
45:44All links and images for this episode can be found on CISO Series. This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Amy-Steagall-Hess, CISO, Stanford University. Joining us is Michael Tran Duff, CISO, data privacy officer, Harvard University. In this episode: Turning a mirror on zero trust Is AI coming for our…
…
continue reading
All links and images for this episode can be found on CISO Series. Check out these posts for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark (@dspark), the producer of CISO Series, and Steve Zalewski. Joining us is Allan Cockriel, group CISO, Shell. In this episode: Striking a balance Will we…
…
continue reading

1
Luckily, We Haven’t Had to Adapt to Any New Technologies Before AI
40:40
40:40
Play later
Play later
Lists
Like
Liked
40:40All links and images for this episode can be found on CISO Series. This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Andy Ellis (@csoandy), partner, YL Ventures. Joining us is our sponsored guest Jadee Hanson, CISO, Vanta. In this episode: Embracing BYOAI The changing government contractor landscape Creating be…
…
continue reading
All links and images for this episode can be found on CISO Series. Check out this post for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark (@dspark), the producer of CISO Series, and Steve Zalewski. Joining us is our sponsored guest Karthik Krishnan, founder and CEO, Concentric AI. In this ep…
…
continue reading

1
We Need to Hire a Unicorn But We Only Have Budget for a Donkey
35:16
35:16
Play later
Play later
Lists
Like
Liked
35:16All links and images for this episode can be found on CISO Series. This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Andy Ellis (@csoandy), partner, YL Ventures. Joining us is Jason Shockey, CISO, Cenlar FSB. In this episode: Ground the SOC in communication Training and mentoring talent Nailing a first security…
…
continue reading

1
Defending Against What Criminals Know About You
31:35
31:35
Play later
Play later
Lists
Like
Liked
31:35All links and images for this episode can be found on CISO Series. Check out this post for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark (@dspark), the producer of CISO Series, and Steve Zalewski. Joining us is our sponsored guest, Damon Fleury, chief product officer, SpyCloud. In this epis…
…
continue reading

1
Who Knows What Evil Lurks in the Heart of Low Code/No Code? (LIVE in Los Angeles)
41:52
41:52
Play later
Play later
Lists
Like
Liked
41:52All links and images for this episode can be found on CISO Series. This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Sasha Pereira, CISO, WASH. Joining us is Cyrus Tibbs, CISO, PennyMac. This episode was recorded live at ISSA-LA. In this episode: Building the foundation for data minimization No-code needs to be…
…
continue reading

1
Will We Ever Go Back From Work From Home?
32:59
32:59
Play later
Play later
Lists
Like
Liked
32:59All links and images for this episode can be found on CISO Series. Check out this post for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark (@dspark), the producer of CISO Series, and Geoff Belknap (@geoffbelknap). Joining us is Joe Lewis, CISO, CDC. In this episode: Don’t underestimate the qu…
…
continue reading