Artwork

Content provided by Distilled Security, Justin Leapline, Joe Wynn, and Rick Yocum. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Distilled Security, Justin Leapline, Joe Wynn, and Rick Yocum or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://ppacc.player.fm/legal.
Player FM - Podcast App
Go offline with the Player FM app!

Episode 13: Insider Threats, the CISO's Role, and Reporting Lines

1:22:42
 
Share
 

Manage episode 488525969 series 3577687
Content provided by Distilled Security, Justin Leapline, Joe Wynn, and Rick Yocum. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Distilled Security, Justin Leapline, Joe Wynn, and Rick Yocum or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://ppacc.player.fm/legal.

Episode 13 of the Distilled Security Podcast is here!

Join us as we explore:

  • The Coinbase Breach: A breakdown of Coinbase’s recent insider-driven breach, including social engineering, bribery of offshore contractors, and how the company responded publicly and operationally.
  • Building Insider Threat Programs: The crew shares practical approaches to detecting insider misuse, behavioral monitoring, and the potential for "job descriptions as code."
  • CISO Liability and Insurance: Discussion on the evolving legal exposure for CISOs, personal liability, and whether directors and officers (D&O) insurance is a must-have.
  • Board-Level Cyber Risk: Should cybersecurity roll up to the audit committee or its own risk committee? The team explores where security leadership best fits in organizational governance.
  • Communication and Legal Risk: How careless comments—public or internal—can be used against organizations, and why CISOs and leaders must strike a balance between transparency and caution.
  • Modern Risk Management: Turning technical issues into business risk conversations, why documentation matters, and how strong risk communication can help CISOs avoid being scapegoated.
  • BSides Pittsburgh Update: With over 600 tickets already sold, the team gives updates on ticket tiers, t-shirts, speaker schedules, and why you should register by June 13.
  • Bourbon Review – Widow Jane Lucky 13: To celebrate episode 13, the crew samples Widow Jane Lucky 13—a smooth, toffee-forward bourbon aged 13 years.
  • Reporting Lines: Where and how security should be structured within the organization, from effectiveness to liability and more.

Hosts

Connect with Us

  continue reading

15 episodes

Artwork
iconShare
 
Manage episode 488525969 series 3577687
Content provided by Distilled Security, Justin Leapline, Joe Wynn, and Rick Yocum. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Distilled Security, Justin Leapline, Joe Wynn, and Rick Yocum or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://ppacc.player.fm/legal.

Episode 13 of the Distilled Security Podcast is here!

Join us as we explore:

  • The Coinbase Breach: A breakdown of Coinbase’s recent insider-driven breach, including social engineering, bribery of offshore contractors, and how the company responded publicly and operationally.
  • Building Insider Threat Programs: The crew shares practical approaches to detecting insider misuse, behavioral monitoring, and the potential for "job descriptions as code."
  • CISO Liability and Insurance: Discussion on the evolving legal exposure for CISOs, personal liability, and whether directors and officers (D&O) insurance is a must-have.
  • Board-Level Cyber Risk: Should cybersecurity roll up to the audit committee or its own risk committee? The team explores where security leadership best fits in organizational governance.
  • Communication and Legal Risk: How careless comments—public or internal—can be used against organizations, and why CISOs and leaders must strike a balance between transparency and caution.
  • Modern Risk Management: Turning technical issues into business risk conversations, why documentation matters, and how strong risk communication can help CISOs avoid being scapegoated.
  • BSides Pittsburgh Update: With over 600 tickets already sold, the team gives updates on ticket tiers, t-shirts, speaker schedules, and why you should register by June 13.
  • Bourbon Review – Widow Jane Lucky 13: To celebrate episode 13, the crew samples Widow Jane Lucky 13—a smooth, toffee-forward bourbon aged 13 years.
  • Reporting Lines: Where and how security should be structured within the organization, from effectiveness to liability and more.

Hosts

Connect with Us

  continue reading

15 episodes

All episodes

×
 
Loading …

Welcome to Player FM!

Player FM is scanning the web for high-quality podcasts for you to enjoy right now. It's the best podcast app and works on Android, iPhone, and the web. Signup to sync subscriptions across devices.

 

Quick Reference Guide

Copyright 2025 | Privacy Policy | Terms of Service | | Copyright
Listen to this show while you explore
Play