Artwork

Content provided by Raj Krishnamurthy. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Raj Krishnamurthy or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://ppacc.player.fm/legal.
Player FM - Podcast App
Go offline with the Player FM app!

From Compliance to SBOMs: Josh Bressers’ Take on Security

1:05:47
 
Share
 

Manage episode 480132066 series 3660899
Content provided by Raj Krishnamurthy. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Raj Krishnamurthy or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://ppacc.player.fm/legal.

In this episode, Raj Krishnamurthy sits down with Josh Bressers, VP of Security at Anchore and longtime leader in the open source security space. With decades of experience, Josh brings a candid and compelling perspective on everything from the chaos of early cybersecurity days to the nuanced challenges of SBOMs and compliance in today’s world.

Josh reflects on how he entered the security world before there were formal certifications or programs, how community and curiosity fuel innovation in open source, and why the relationships you build are often the most valuable asset in your career. He also dives into exciting new work with the SBOM Everywhere Working Group and shares how GenAI is helping categorize the sprawling ecosystem of SBOM tools.

Key Takeaways:
✅ GRC teams often overburden themselves with audits.

✅ Embracing a product manager mindset helps GRC teams drive security initiatives.

✅ Technical knowledge empowers GRC professionals to enhance security programs.

✅ Changing perceptions of GRC within organizations is crucial for success.

✅ Proactive strategies can elevate GRC’s role and reputation.

✅ Integrating privacy into GRC frameworks strengthens compliance efforts.

✅ High Trust certification is achievable on a budget.

✅ Automation can significantly improve GRC efficiency and reduce redundancy.

✅ Overlapping audit timelines minimizes disruption and streamlines processes.

✅ Discipline from endurance sports fosters focus, resilience, and growth.

🎙️ Security & GRC Decoded is brought to you by ComplianceCow.

Learn More About How ComplianceCow Can Help Your GRC Team Today!

🚀 Enjoying The Show?! 🚀

Make sure to rate and review the show to let us know you're enjoying the content!

Subscribe now for expert insights from industry leaders shaping the future of security & compliance.

Learn More / Connect with Josh Bressers:
If you enjoyed this conversation and want to dive deeper into Josh Bressers’s insights on GRC, cybersecurity, and building effective security programs, connect with him directly:

💼 LinkedIn: https://www.linkedin.com/in/joshbressers/
🌐 Company: https://anchore.com/

  continue reading

9 episodes

Artwork
iconShare
 
Manage episode 480132066 series 3660899
Content provided by Raj Krishnamurthy. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Raj Krishnamurthy or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://ppacc.player.fm/legal.

In this episode, Raj Krishnamurthy sits down with Josh Bressers, VP of Security at Anchore and longtime leader in the open source security space. With decades of experience, Josh brings a candid and compelling perspective on everything from the chaos of early cybersecurity days to the nuanced challenges of SBOMs and compliance in today’s world.

Josh reflects on how he entered the security world before there were formal certifications or programs, how community and curiosity fuel innovation in open source, and why the relationships you build are often the most valuable asset in your career. He also dives into exciting new work with the SBOM Everywhere Working Group and shares how GenAI is helping categorize the sprawling ecosystem of SBOM tools.

Key Takeaways:
✅ GRC teams often overburden themselves with audits.

✅ Embracing a product manager mindset helps GRC teams drive security initiatives.

✅ Technical knowledge empowers GRC professionals to enhance security programs.

✅ Changing perceptions of GRC within organizations is crucial for success.

✅ Proactive strategies can elevate GRC’s role and reputation.

✅ Integrating privacy into GRC frameworks strengthens compliance efforts.

✅ High Trust certification is achievable on a budget.

✅ Automation can significantly improve GRC efficiency and reduce redundancy.

✅ Overlapping audit timelines minimizes disruption and streamlines processes.

✅ Discipline from endurance sports fosters focus, resilience, and growth.

🎙️ Security & GRC Decoded is brought to you by ComplianceCow.

Learn More About How ComplianceCow Can Help Your GRC Team Today!

🚀 Enjoying The Show?! 🚀

Make sure to rate and review the show to let us know you're enjoying the content!

Subscribe now for expert insights from industry leaders shaping the future of security & compliance.

Learn More / Connect with Josh Bressers:
If you enjoyed this conversation and want to dive deeper into Josh Bressers’s insights on GRC, cybersecurity, and building effective security programs, connect with him directly:

💼 LinkedIn: https://www.linkedin.com/in/joshbressers/
🌐 Company: https://anchore.com/

  continue reading

9 episodes

All episodes

×
 
Loading …

Welcome to Player FM!

Player FM is scanning the web for high-quality podcasts for you to enjoy right now. It's the best podcast app and works on Android, iPhone, and the web. Signup to sync subscriptions across devices.

 

Quick Reference Guide

Listen to this show while you explore
Play