Himalaya: Listen. Learn. Grow.

4.8K Ratings
Open In App
title

Information Security Podcast

Information Security Summit

2
Followers
2
Plays
Information Security Podcast

Information Security Podcast

Information Security Summit

2
Followers
2
Plays
OVERVIEWEPISODESYOU MAY ALSO LIKE

Details

About Us

This podcast shines a light on a range of topics regarding Information Security including data security laws, cyber threat detection, driving information technology to leverage your business, and so much more. The podcast is brought to you by the Information Security Summit which is a non-profit organization headquartered in Cleveland, OH. Additional information can be found at www.informationsecuritysummit.org.

Latest Episodes

Migrating to the Public Cloud...so, What’s the Big Deal?

Title: Migrating to the Public Cloud...so, What’s the Big Deal? Description: This episode of the Information Security Podcast features a keynote from the Information Security Summit 2019 by Grant Asplund @gasplund from Check Point Software @CheckPointSW “Migrating to the Public Cloud...so, What’s the Big Deal?”. The presentation is both enlightening and entertaining while examining the many factors an organization should consider when migrating to the Public Cloud. Key Discussion Points and Actionable Items: Parallels between the Mainframe in the past and the Public Cloud today Recognition that knowledge from the past of operating and securing On Premise environments don’t directly translate to the Public Cloud Importance of an organization asking the basic question “Am I using the Public Cloud securely?” The paradigm shift when having an “always connected resource” that must be managed 7x24x365 and the demands it places on IT and Security Teams The requirement to “re-tool...

47 minMAR 3
Comments
Migrating to the Public Cloud...so, What’s the Big Deal?

Top Cyber Security Issues when Migrating to the Cloud

Title: Top Cyber Security Issues when Migrating to the Cloud Description: This episode of the Information Security Podcast features a keynote from the Information Security Summit 2019 by Bob Kalka @bobkalka from IBM @IBM entitled “Top Cyber Security Issues when Migrating to the Cloud”. The presentation examines the many factors that impact an organization as it prepares, migrates, and operates in “the Cloud”. Key Discussion Points and Actionable Items: Recognition that any IT, Security, or Application issues that exist prior to a Cloud migration are going to be further extenuated once migrated to the Cloud The concept of security “For, From, and In” the Cloud Understanding the difference between a Risk vs. Compliance posture by a Security Team Importance of avoiding the pitfalls of “under-deployed” software investments Being aware of the assumptions organizations make regarding the “shared responsibility model” between a customer and a cloud service provider and the potent...

50 minFEB 25
Comments
Top Cyber Security Issues when Migrating to the Cloud

Delivering Trust and Confidence

Title: Delivering Trust and Confidence Description: This episode of the Information Security Podcast features a conversation with Kurt Van Etten @kurtvanetten from RedSeal and host Rob Nettgen (@Robert_Nettgen). This episode discusses the process of enabling a Security Team with the capability of “Delivering Trust and Confidence” within their organizations. Key Discussion Points and Actionable Items: Recognition that a Security Team has a requirement to establish credibility within their respective organizations Requirement to establish metrics, via frameworks, so benchmarks can be used to validate the activities of the Security Team Importance of managing expectations and communicating across the organization Communicating to establish the level of risk, via the Executive Management Team, an organization is willing to assume to guide investments in security How critical it is to establish the threat landscape of your organization Leveraging tabletop exercises to establish the cap...

13 minFEB 18
Comments
Delivering Trust and Confidence

Demystifying Industrial Control System Cyber Risk

Title: Demystifying Industrial Control System Cyber Risk Description: This episode of the Information Security Podcast features a conversation with Mike Radigan @RadiganatBOS from Capgemini @Capgemini and host Rob Nettgen (@Robert_Nettgen). This episode discusses the process of “Demystifying Industrial Control System Cyber Risk”. Key Discussion Points and Actionable Items: Defining the various types of Industrial Control Systems and how they support a Plant’s Operation The inter-relationship of Industrial Control Systems, Information Technology, and Cyber Security How Industrial Control Systems have evolved over time and why integrations exist with the balance of an organization’s Information Technology infrastructure The role of a Plant Manager and how they assess risk in a Plant’s Operation comparing Cyber Risk and Manufacturing Operations The difference between Cyber Risks and Cyber Threats Methods to equate, quantify, and explain Operational Risk to Cyber Risk Importance of...

19 minFEB 11
Comments
Demystifying Industrial Control System Cyber Risk

Building a Cyber Security Team

Title: Building a Cyber Security Team Description: This episode of the Information Security Podcast features a returning guest and alumni of the Information Security Podcast, Kevin Baker, with host Rob Nettgen (@Robert_Nettgen). This episode discusses the approach to “Building a Cyber Security Team”. Key Discussion Points and Actionable Items: The value and importance of maintaining relationships between both the C-Suite and the team executing an organization’s security program Recognizing the role of the CISO / security leader to be the “glue” of an organization’s overall security program by being an effective conduit and facilitator within an organization Leveraging a full “suite” of skills to be an effective leader to deliver value as part of an organization’s investment in security and business The importance of accepting and acknowledging the dependency between Information Technology and Security to complement each other’s respective roles Gaining an understanding of ...

17 minFEB 4
Comments
Building a Cyber Security Team

Incident Response under the Microscope

Title: Incident Response under the Microscope Description: This episode of the Information Security Podcast features an interview with Eric Vanderburg @evanderburg from TCDi @tcdi with host Rob Nettgen (@Robert_Nettgen). This episode discusses the details surrounding effective “Incident Response”. Key Discussion Points and Actionable Items: Benefits an organization can realize with a defined “Incident Response Program” Importance of an organization knowing its environment including IT assets, applications, and where its data resides before an “Incident” takes place Requirements to “train” and prepare employees before an “Incident” takes place so the response is well executed vs. a reaction Awareness of an organization’s contractual or compliance requirements to have a defined “Incident Response Program” Recognizing that “Incident Response” is a cross-organizational responsibility. Sponsored By: ASMGi (@ASMGi_CLE) and https://www.asmgi.com/ Briteskies (@NoBrownCow) and...

14 minJAN 28
Comments
Incident Response under the Microscope

Migrating to the Public Cloud...so what’s the big deal?

Title: Migrating to the Public Cloud...so what’s the big deal? Description: This episode of the Information Security Podcast features an interview with Grant Asplund @gasplund from Check Point Software @CheckPointSW with host Rob Nettgen (@Robert_Nettgen). This episode explores the factors an organization should consider when “Migrating to the Public Cloud”. Key Discussion Points and Actionable Items: The importance of an organization recognizing the difference between a public cloud provider vs. the end customer’s responsibility in both migrating and operating in the public cloud Proper preparation and planning are critical to any cloud migration Acknowledging that a key “hindrance” to public cloud adoption is security and the importance of addressing it before attempting a migration to the public cloud Take advantage of the “free” resources available from the public cloud providers to prepare for a public cloud migration. Sponsored By: ASMGi (@ASMGi_CLE) and https://www.as...

19 minJAN 21
Comments
Migrating to the Public Cloud...so what’s the big deal?

Employee Security Awareness

Title: Employee Security Awareness Description: This episode of the Information Security Podcast features an interview with Lauren Zink from Oportun @Oportun with host Rob Nettgen (@Robert_Nettgen). This episode’s conversation discusses the importance of “Employee Security Awareness” as part of an organization’s overall Cyber Security Strategy. Key Discussion Points and Actionable Items: The importance of understanding the meaning of “Employee Security Awareness” Defining the elements of a “Employee Security Awareness” Program and how it should be orchestrated within an organization Understanding that “Employee Security Awareness” is not a “one-time” event but starts at the time an employee is hired and evolves as they move through an organization The risk organizations assume when technology is the only line of defense and does not incorporate “Employee Security Awareness” Integration of third-party vendors and contractors that are part of an organization into the “E...

11 minJAN 15
Comments
Employee Security Awareness

Cyber Incident Response and Business

Title: Cyber Incident Response and Business Description: This episode of the Information Security Podcast features an interview with Tom Hardin from the Franciscan Alliance @MyFranciscan with host Rob Nettgen (@Robert_Nettgen). The conversation discusses the correlation between “Cyber Incident Response and Business” and the importance of preparing for Cyber Incidents within an organization. Key Discussion Points and Actionable Items: The correlation between Cyber Incident Response and Overall Business Incident Response The importance of adopting a Cyber Incident Response Framework such as NIST or ISO The process of engaging government resources, such as the FBI or other organizations, that can provide assistance as part of an Incident Response Alignment of a Cyber Incident Response to Cyber Insurance Policies Leveraging Industry Association resources to define a Cyber Incident Response Plan Sponsored By: ASMGi (@ASMGi_CLE) and https://www.asmgi.com/ Briteskies (@NoBrownCow) and ht...

13 minJAN 7
Comments
Cyber Incident Response and Business

Security Friends

Title: Security Friends Description: This is a “special” Holiday episode of the Information Security Podcast which features host Rob Nettgen (@Robert_Nettgen) along with a special group of “Security Friends”. The conversation is lively and entertaining with commentary on a number of recent cyber security news events. Please join the Security Friends as the Information Security Podcast celebrates the end of 2019 and looks forward to the start of 2020. Following this episode, we will be taking a short break for the Holidays and will return with a new episode of the Information Security Podcast on Tuesday, January 7, 2020. Happy Holidays from the Information Security Podcast! Sponsored By: ASMGi (@ASMGi_CLE) and https://www.asmgi.com/ Briteskies (@NoBrownCow) and https://www.briteskies.com/ Recorded and Production By: Evergreen Podcasts (@StreamEvergreen) at https://evergreenpodcasts.com/ and production assistance provided by Frank Yako (@fyako). Additional Information and Resource...

34 min2019 DEC 24
Comments
Security Friends

Latest Episodes

Migrating to the Public Cloud...so, What’s the Big Deal?

Title: Migrating to the Public Cloud...so, What’s the Big Deal? Description: This episode of the Information Security Podcast features a keynote from the Information Security Summit 2019 by Grant Asplund @gasplund from Check Point Software @CheckPointSW “Migrating to the Public Cloud...so, What’s the Big Deal?”. The presentation is both enlightening and entertaining while examining the many factors an organization should consider when migrating to the Public Cloud. Key Discussion Points and Actionable Items: Parallels between the Mainframe in the past and the Public Cloud today Recognition that knowledge from the past of operating and securing On Premise environments don’t directly translate to the Public Cloud Importance of an organization asking the basic question “Am I using the Public Cloud securely?” The paradigm shift when having an “always connected resource” that must be managed 7x24x365 and the demands it places on IT and Security Teams The requirement to “re-tool...

47 minMAR 3
Comments
Migrating to the Public Cloud...so, What’s the Big Deal?

Top Cyber Security Issues when Migrating to the Cloud

Title: Top Cyber Security Issues when Migrating to the Cloud Description: This episode of the Information Security Podcast features a keynote from the Information Security Summit 2019 by Bob Kalka @bobkalka from IBM @IBM entitled “Top Cyber Security Issues when Migrating to the Cloud”. The presentation examines the many factors that impact an organization as it prepares, migrates, and operates in “the Cloud”. Key Discussion Points and Actionable Items: Recognition that any IT, Security, or Application issues that exist prior to a Cloud migration are going to be further extenuated once migrated to the Cloud The concept of security “For, From, and In” the Cloud Understanding the difference between a Risk vs. Compliance posture by a Security Team Importance of avoiding the pitfalls of “under-deployed” software investments Being aware of the assumptions organizations make regarding the “shared responsibility model” between a customer and a cloud service provider and the potent...

50 minFEB 25
Comments
Top Cyber Security Issues when Migrating to the Cloud

Delivering Trust and Confidence

Title: Delivering Trust and Confidence Description: This episode of the Information Security Podcast features a conversation with Kurt Van Etten @kurtvanetten from RedSeal and host Rob Nettgen (@Robert_Nettgen). This episode discusses the process of enabling a Security Team with the capability of “Delivering Trust and Confidence” within their organizations. Key Discussion Points and Actionable Items: Recognition that a Security Team has a requirement to establish credibility within their respective organizations Requirement to establish metrics, via frameworks, so benchmarks can be used to validate the activities of the Security Team Importance of managing expectations and communicating across the organization Communicating to establish the level of risk, via the Executive Management Team, an organization is willing to assume to guide investments in security How critical it is to establish the threat landscape of your organization Leveraging tabletop exercises to establish the cap...

13 minFEB 18
Comments
Delivering Trust and Confidence

Demystifying Industrial Control System Cyber Risk

Title: Demystifying Industrial Control System Cyber Risk Description: This episode of the Information Security Podcast features a conversation with Mike Radigan @RadiganatBOS from Capgemini @Capgemini and host Rob Nettgen (@Robert_Nettgen). This episode discusses the process of “Demystifying Industrial Control System Cyber Risk”. Key Discussion Points and Actionable Items: Defining the various types of Industrial Control Systems and how they support a Plant’s Operation The inter-relationship of Industrial Control Systems, Information Technology, and Cyber Security How Industrial Control Systems have evolved over time and why integrations exist with the balance of an organization’s Information Technology infrastructure The role of a Plant Manager and how they assess risk in a Plant’s Operation comparing Cyber Risk and Manufacturing Operations The difference between Cyber Risks and Cyber Threats Methods to equate, quantify, and explain Operational Risk to Cyber Risk Importance of...

19 minFEB 11
Comments
Demystifying Industrial Control System Cyber Risk

Building a Cyber Security Team

Title: Building a Cyber Security Team Description: This episode of the Information Security Podcast features a returning guest and alumni of the Information Security Podcast, Kevin Baker, with host Rob Nettgen (@Robert_Nettgen). This episode discusses the approach to “Building a Cyber Security Team”. Key Discussion Points and Actionable Items: The value and importance of maintaining relationships between both the C-Suite and the team executing an organization’s security program Recognizing the role of the CISO / security leader to be the “glue” of an organization’s overall security program by being an effective conduit and facilitator within an organization Leveraging a full “suite” of skills to be an effective leader to deliver value as part of an organization’s investment in security and business The importance of accepting and acknowledging the dependency between Information Technology and Security to complement each other’s respective roles Gaining an understanding of ...

17 minFEB 4
Comments
Building a Cyber Security Team

Incident Response under the Microscope

Title: Incident Response under the Microscope Description: This episode of the Information Security Podcast features an interview with Eric Vanderburg @evanderburg from TCDi @tcdi with host Rob Nettgen (@Robert_Nettgen). This episode discusses the details surrounding effective “Incident Response”. Key Discussion Points and Actionable Items: Benefits an organization can realize with a defined “Incident Response Program” Importance of an organization knowing its environment including IT assets, applications, and where its data resides before an “Incident” takes place Requirements to “train” and prepare employees before an “Incident” takes place so the response is well executed vs. a reaction Awareness of an organization’s contractual or compliance requirements to have a defined “Incident Response Program” Recognizing that “Incident Response” is a cross-organizational responsibility. Sponsored By: ASMGi (@ASMGi_CLE) and https://www.asmgi.com/ Briteskies (@NoBrownCow) and...

14 minJAN 28
Comments
Incident Response under the Microscope

Migrating to the Public Cloud...so what’s the big deal?

Title: Migrating to the Public Cloud...so what’s the big deal? Description: This episode of the Information Security Podcast features an interview with Grant Asplund @gasplund from Check Point Software @CheckPointSW with host Rob Nettgen (@Robert_Nettgen). This episode explores the factors an organization should consider when “Migrating to the Public Cloud”. Key Discussion Points and Actionable Items: The importance of an organization recognizing the difference between a public cloud provider vs. the end customer’s responsibility in both migrating and operating in the public cloud Proper preparation and planning are critical to any cloud migration Acknowledging that a key “hindrance” to public cloud adoption is security and the importance of addressing it before attempting a migration to the public cloud Take advantage of the “free” resources available from the public cloud providers to prepare for a public cloud migration. Sponsored By: ASMGi (@ASMGi_CLE) and https://www.as...

19 minJAN 21
Comments
Migrating to the Public Cloud...so what’s the big deal?

Employee Security Awareness

Title: Employee Security Awareness Description: This episode of the Information Security Podcast features an interview with Lauren Zink from Oportun @Oportun with host Rob Nettgen (@Robert_Nettgen). This episode’s conversation discusses the importance of “Employee Security Awareness” as part of an organization’s overall Cyber Security Strategy. Key Discussion Points and Actionable Items: The importance of understanding the meaning of “Employee Security Awareness” Defining the elements of a “Employee Security Awareness” Program and how it should be orchestrated within an organization Understanding that “Employee Security Awareness” is not a “one-time” event but starts at the time an employee is hired and evolves as they move through an organization The risk organizations assume when technology is the only line of defense and does not incorporate “Employee Security Awareness” Integration of third-party vendors and contractors that are part of an organization into the “E...

11 minJAN 15
Comments
Employee Security Awareness

Cyber Incident Response and Business

Title: Cyber Incident Response and Business Description: This episode of the Information Security Podcast features an interview with Tom Hardin from the Franciscan Alliance @MyFranciscan with host Rob Nettgen (@Robert_Nettgen). The conversation discusses the correlation between “Cyber Incident Response and Business” and the importance of preparing for Cyber Incidents within an organization. Key Discussion Points and Actionable Items: The correlation between Cyber Incident Response and Overall Business Incident Response The importance of adopting a Cyber Incident Response Framework such as NIST or ISO The process of engaging government resources, such as the FBI or other organizations, that can provide assistance as part of an Incident Response Alignment of a Cyber Incident Response to Cyber Insurance Policies Leveraging Industry Association resources to define a Cyber Incident Response Plan Sponsored By: ASMGi (@ASMGi_CLE) and https://www.asmgi.com/ Briteskies (@NoBrownCow) and ht...

13 minJAN 7
Comments
Cyber Incident Response and Business

Security Friends

Title: Security Friends Description: This is a “special” Holiday episode of the Information Security Podcast which features host Rob Nettgen (@Robert_Nettgen) along with a special group of “Security Friends”. The conversation is lively and entertaining with commentary on a number of recent cyber security news events. Please join the Security Friends as the Information Security Podcast celebrates the end of 2019 and looks forward to the start of 2020. Following this episode, we will be taking a short break for the Holidays and will return with a new episode of the Information Security Podcast on Tuesday, January 7, 2020. Happy Holidays from the Information Security Podcast! Sponsored By: ASMGi (@ASMGi_CLE) and https://www.asmgi.com/ Briteskies (@NoBrownCow) and https://www.briteskies.com/ Recorded and Production By: Evergreen Podcasts (@StreamEvergreen) at https://evergreenpodcasts.com/ and production assistance provided by Frank Yako (@fyako). Additional Information and Resource...

34 min2019 DEC 24
Comments
Security Friends
success toast
Welcome to Himalaya LearningDozens of podcourses featuring over 100 experts are waiting for you.