
Advertise on podcast: Security Stories
Rating
4.8from
This podcast has
55 episodes
Language
EnglishPublisher
Cisco SecureExplicit
No
Date created
2020/03/11
Latest episode
2022/06/20
Average duration
52 min.
Release period
14 days
Description
Discover the unique, inspiring, and often amusing stories behind what it takes to lead cybersecurity efforts in an organization. The Security Stories podcast features interviews with a diverse range of guests, each sharing their leadership experiences for the benefit of others in the cybersecurity industry. Discover more at https://www.cisco.com/c/en/us/products/security/securitystories.html
Unlock Security Stories podcast Email contact info,
Listeners & Audience details
Email contact information
Direct podcast contact details

Listeners
Audience numbers & engagement insights

Audience details
Podcast Insights

Podcast episodes
Check latest episodes from Security Stories podcast
52: Securing the Super Bowl, with Tomás Maldonado and Brad Garnett
2022/06/20
Today’s episode, recorded live at RSA 2022, features a great conversation with Tomás Maldonado, NFL Chief Information Security Officer, and Brad Garnett, Director of Cisco Talos Incident Response. The dialogue is led by none other than the brilliant Tazin Khan.
Taz talks to Tomás about his early life and career (“I didn’t want to be another statistic”) and how he approaches new opportunities. He talks about how he communicates his vision for a cybersecurity strategy, as well as how he ‘blends the tracks’ between a technical and managerial style of leadership.
Tomás then goes into details about how he builds steering committees across the NFL so that people have a voting stake in technology and security decisions. Together with Brad, they discuss how Cisco and the NFL worked together to secure the most recent Super Bowl (“This sounds like a movie script”), and how they created a playbook based on learned threat intelligence, to proactively secure future major events.
For more details about the work Cisco has been doing to help secure the NFL, visit this blog https://blogs.cisco.com/security/nfl-teams-up-with-cisco-to-secure-super-bowl-lvi
51: Infosec Court Live, with Wendy Nather, Helen Patton, Dave Lewis and Dennis Fisher
2022/06/07
All rise, all rise, for the inaugural episode of Infosec Court, brought to you live from RSA Conference.
Judge Wendy Nather presides, and three infosec experts (Helen Patton, Dave Lewis and Dennis Fisher) all have a ‘hot take’ that they want to be more widely accepted in the infosec industry.
Their task as plaintiffs is to try to persuade Judge Wendy and a jury of their peers that their hot take deserves to become infosec canon.
Come for the chance to hear Wendy in her element. Stay for the outrageous objections ("What even is Non Zero Trust?) and the unexpected turn of events when Wendy introduces an Amicus Curiae, handed to her shortly before proceedings began...
50: How can we actually, really, take care of our mental health?
2022/05/27
For our 50th episode, we invited our friends from Cisco Talos to join us for an authentic, truthful conversation about mental health and burnout.
Amy Henderson, Ashlee Benge, Matt Olney, and Mitch Neff, joined Hazel and Taz to share some experiences. We start by talking about the work that Talos has been doing in Ukraine and the mental health effects of that work. That also includes that weird, disconnected feeling that can develop when we're doing as much as we can to help, but we also go home to a warm and comfortable bed, i.e not in a war zone.
This takes us to conversations about other global events, and how hard it can be to prioritize self care when everything feels...a lot....
We also share our own practices and techniques that have helped us manage our mental health, and how we can give ourselves permission to be kind to ourselves.
Further resources:
Creating safe spaces in cybersecurity ebook
Ryan K. Louie’s presentation at RSA: The mental health impact of cyberattacks
Black Hat community: A place to engage with Black Hat attendees on topics specific to the InfoSec community, including health and well-being.
Cisco Gateway: A global online community where Cisco customers share their professional and personal challenges and stories.
CALM (Campaign Against Living Miserably):Leading a movement against suicide.
49: Moving toward security resilience, with Liz Waddell, Accidental CISO, and Christos Syngelakis
2022/05/20
Today's episode features a chat between Hazel and three security leaders - Accidental CISO (yes, the anonymity intrigues us too!), Liz Waddell, Incident Response Practice Lead for Cisco Talos, and Christos Syngelakis, CISO and Data Privacy Officer at Motor Oil Group.
They talk about their experiences of building security resilience – so we got into the key elements of an Incident Response plan, how to achieve company wide buy in, the best ways to go about training your people and trying to avoid burnout, how to use threat intelligence and all the things that go into running a SOC, what to do in the case of a Zero Day attack, how to build a security design program...and so much more.
For more stories on how to build security resilience, check out our new ebook here.
This episode was originally recorded as a live Cisco Chat event. You can watch the original video here
48: Entering the metaverse, with Jaeson Schultz
2022/04/29
Today we're going full steam into the metaverse and Web 3.0. Joining us to discuss his research on this topic is Jaeson Schultz, Technical Leader for Cisco Talos Security Intelligence & Research Group.
Taz and Hazel have a great conversation with Jason about the evolution of the metaverse, as well as the security implications, such as rising numbers of scams going after people’s cryptowallets, and the ethical concerns that are potentially popping up.
For more on this topic, have a read of Jason's in depth research on the metaverse and Web 3.0 here.
Jason has over 20 years specialising in thwarting abuse of security protocols like SMTP, HTTP/S, and DNS. He's a former manager of the SpamCop DNSBL which has been taking the fight to the spammers for over a decade.
He's also assisted in design and development of the Cisco IronPort Anti-Spam content scanner and he’s also developed some of the architecture & content detection for Cisco’s Web Security Appliance, Cloud Web Security, and Next Generation Firewall products.
Most recently as Technical Leader for Talos, he conducts security research, speaks at conferences, and authors blogs and whitepaper publications.
47: Getting into offensive security, with Shannon Lietz
2022/04/20
Today's guest is Shannon Lietz, VP of Vulnerability Labs at Adobe. Shannon joined Hazel to talk about how she first got into offensive security and the lessons she’s learned along the way, as well as the kind of work she and her team undertake at Adobe to test defenses.
We also talk about measurement, and how security was never set up to be measured properly, which is something Shannon is trying to change. She also has some thoughts on risk management and tackling that in a different way.
And at one of the most poignant parts of the interview, Shannon talks about the moment she decided to change her leadership style.
If you're interested in the book Shannon mentioned, "Humanocracy" here's a link to the website www.humanocracy.com
Finally, if you're free at 10am PT on April 26th, be sure to join Hazel plus special guests Accidental CISO, Liz Waddell and Christos Syngelakis, to discuss stories of how to build security resilience. Sign up to be reminded here - CiscoChat Live: Detect, Respond, Recover
46: Experimenting outside of the job description, with Jerry Gamblin
2022/04/04
Today we welcome two guests to the Security Stories pod. Firstly Martin Lee from Talos drops by to give us an update on wiper malware, and how it’s been playing a part in cyber attacks on Ukrainian organizations and infrastructure.
We talk about the history of wiper malware, where it’s cropped up before, it’s role in the kill chain and possible threat actor motivations, as well as what organizations can be doing to prevent this type of attack.
Secondly, we welcome Jerry Gamblin, Director of Security Research at Kenna Security to join us for an in depth chat about his career. Jerry’s story is a really interesting one, from starting out on the IT helpdesk, to working on security networks at the Misouri House of Representatives, and onto his role at Kenna where he has built several tools to help people understand the different types of vulnerabilities and how to mitigate them.
We discuss Jerry’s approach – how he inspires his team to think differently, and how personally he’s driven a sense of thinking outside of the job description. We also discuss how organizations can deal with the ever growing list of new vulnerabilities, and how you can prirotise them.
Head here for Kenna's Prioritization to Prediction report
Head here for Jerry's vulnerability analysis and graphing CVE.ICU
Bonus: Time to secure hybrid work for 2022, not 2002
2022/04/01
A short bonus episode for your feeds today, as Hazel got the opportunity to sit down with Cisco Talos' Head of Outreach, Nick Biasini, and chat all things hybrid work.
Nick recently published the research, "Time to secure hybrid work for 2022, not 2002" and in this episode, we explore some of the malicious activities from state-sponsored actors and criminal organizations, which have made being a defender an increasingly difficult task in recent months.
Cisco Secure Threat Alert: A Talos Ukraine Briefing
2022/03/14
Join Hazel for a threat alert event for guidance on current cyberattacks and insight into internet activity in Ukraine. This event was originally broadcast live, featuring members of the Cisco Talos threat intelligence team, and Cisco ThousandEyes.
Both teams are actively monitoring the digital landscape and openly sharing essential findings to contribute to the safety of our customers globally.
Speakers:
JJ Cummings, Principal, Threat Intelligence & Interdiction, Cisco Talos
Amy Henderson - Leader, Strategic Planning and Communications, Cisco Talos
Angelique Medina, Head of Internet Intelligence, Cisco ThousandEyes
For the latest information on Talos' research into the current situation in Ukraine, check here for continual updates: cs.co/TalosUA
45: Building resilience, with Goher Mohammad
2022/03/07
In today's Security Stories episode we meet Goher Mohammad, Head of Infosec at L & Q Group, one of the UK’s largest charitable housing associations which houses over a quarter of a million people.
Goher’s is a story of resilience, geeking out over technology, and the challenges and rewards of building a brand new security team from scratch. We also talk about the power of community and how Goher is bringing together fellow non-profit security professionals.
Before that, Taz and Ben are back to join Hazel in the pod booth for a really interesting discussion on data privacy - more specifically online tracking, and some recent developments made there. You can also check out Cisco's new Data Privacy Report: Privacy becomes mission critical.
Please note that this episode was recorded before the events in Ukraine. For analysis on what Cisco Talos is observing, which includes a variety of cyber attacks targeting Ukraine, including disinformation, defacements, DDoS, and wiper malware please check out the Talos threat advisory blog.
Cisco stands guard with our customers in Ukraine. You can read here about Talos’ efforts to-date in information gathering, threat hunting and the assigning of dedicated Cisco engineers to Ukrainian organizations seeking to secure their operations, and how we have taken the extraordinary step of directly operating security products 24/7 for critical customers in Ukraine while over 500 employees at Cisco have joined them to assist in collecting open-source intelligence.
44: Case Study: How to practically implement XDR, with Enric Cuixeres and Jessica Bair
2022/02/07
Since there’s been a lot of discussion and debate about Extended Detection and Response (XDR) at the moment, we thought we would bring on two experts to talk about it.
Enric Cuixeres is a Cisco Secure customer who has implemented an XDR strategy within his organization Leng D'Or. Our other expert is former US army CID special agent and computer forensic examiner Jessica Bair. Jessica is the Director of Technical Alliances at Cisco, who has been helping many of our customers with their XDR strategies.
We discuss the practical implications of implementing XDR, as told by people who have been there and done it – and also what benefits will it really bring, including how it can help overburdened security staff.
For more on this topic, take a look at our ebook "Extended Detection and Response for Dummies."
Learn more about the Cisco Gateway community as mentioned in the episode.
Before that, Lindsey O’Donnell Welch, executive editor of Decipher, is back with us for the second week in a row. Lindsey discusses the just-announced Cyber Safety Review Board and its role in assessing “significant cybersecurity events”. For more information about this check out Decipher's report.
And finally, you can view the on-demand broadcast "Defending Against Critical Threats" in which six experts from across Cisco Secure came together to analyze what's been happening in the realms of ransomware, supply chain attacks, vulnerabilities, log4J, Emotet and the rise in Mac OS malware.
43: The right brain thinkers, with Jane Frankland
2022/01/21
Today's guest is Jane Frankland, owner and CEO of Knewstart, and founder of the IN Security movement. Jane has been in the cybersecurity industry for 24 years and is an award winning entrepreneur and best selling author of "IN Security: How a failure to attract and retain more women in cybersecurity is making is all less safe’. She was also named as the third most influential person in cybersecurity in the UK.
We discuss Jane's start in cybersecurity and her entrepreneurial career, including how she built a seven-figure business within two years. She has held senior executive roles and been actively involved in OWASP, CREST and Cyber Essentials. We discuss her activism around attracting and retaining women in the industry, and why we need more right brain thinkers.
Plus, Jane talks about her latest venture, "The Source", a platform for women in cybersecurity and businesses who value them. Find out more.
Before that, for our opening topic we are delighted to welcome Decipher's Executive Editor Lindsey O-Donnell Welch, and Editor-in-Chief Dennis Fisher to discuss what we know about the cybersecurity situation currently in Ukraine (note we recorded this on 20th January and it's a very fluid situation).
Decipher is an independent editorial website covering security news, exploring the impact of the latest risks and providing informative and educational material for readers intent on understanding how security affects our world.
Episode timings:
0.00 - 13.46: Opening topic with Decipher
13.47 - 69.24: Interview with Jane Frankland
69.25 - 70.16: Closing thoughts
Podcast reviews
Read Security Stories podcast reviews
Xusmee 2021/07/09
Enjoy learning about security landscape and trends
The podcast is a great platform to listen to industry luminaries share insights on what is happening in the world in regards to cyber security challen...
csecurity 2020/05/12
Insightful and entertaining security stories
Fantastic line up of cybersecurity movers and shakers. Their stories are inspiring and focus on how they overcame challenges, seized the day or leaned...
Podcast sponsorship advertising
Start advertising on Security Stories relevant audience podcasts
You may also like to advertise on these Podcasts

4.8396835
Christian Meditation Podcast
Chaplain Jared

4.8254697
SCP Reel to Reel
Levi Schultz

4.9147505
Combo's Court
Andrew "Combo" Salop

5335225
Talk Dirt to Me
Logan Hanks

4.5268443
The LRB Podcast
The London Review of Books

4.819588
THIS IS REVOLUTION >podcast
bitterlake

4.72157403
FBI Case File Review
Jerri Williams

4.64759588
Taste of Taylor
Dear Media

4.9444205
Business Lunch
Roland Frasier

4.934075
Tony Evans' Radio
Tony Evans