今年夏季,絕不能錯過名勝壹號世界郵輪重回基隆啟航!多種優惠方案讓您輕鬆預訂心儀的日本沖繩郵輪行程,同時省下大筆開支!

Cyber Rants - The Refreshingly Real Cybersecurity Podcast

1 年前
-
-
(基於 PinQueue 指標)

Cyber Rants - The Refreshingly Real Cybersecurity Podcast

Join three longtime cybersecurity professionals and their guests as they rant, rave, and tell you the nitty-gritty of cybersecurity that nobody else talks about in their fancy marketing materials and trade show giveaways, all so you can protect your organization from cyber criminals. This cybersecurity podcast even pairs well with the international best-selling book "Cyber Rants: Forbidden Secrets and Slightly Embellished Truths About Corporate Cybersecurity Programs, Frameworks, and Best Practices." Zach Fuller, Mike Rotondo, and Lauro Chavez have fun, try not to take life too seriously, and definitely don't hold anything back when it comes to cybersecurity and compliance!

Episode #79 - Zeroish Trust

As technology's most widespread and trusted vendors are compromised, who can you really trust in today's environment? This week, the guys discuss attacks originating from compromised tech products, how the bad guys gain insider access, multi-factor authentication fatigue, and even a few hints at their love for Rick Astley.


Get the show notes and articles at www.CyberRantsPodcast.com
Pick up your copy of Cyber Rants on Amazon.
Need cybersecurity expertise and support? Visit us at www.SilentSector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2022-10-04 20:00:00

Episode #78 - Dispelling Misconceptions About the Cloud

Cloud services can offer tremendous benefits and cloud computing environments have become a standard across all industries. However, marketing hype leads consumers to believe that "the cloud is secure" by default and that someone else is taking responsibility for their protection. Too many people are quick to adopt cloud services without truly understanding the risks. This week, the guys discuss the risks and considerations around cloud services to help you ask the right questions and make wise decisions when moving to new technology environments.

Get the show notes and articles at www.CyberRantsPodcast.com
Pick up your copy of Cyber Rants on Amazon.
Need cybersecurity expertise and support? Visit us at www.SilentSector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2022-09-27 08:00:00

Episode #77 - It's Ransomware Season!

Ransomware can infect your on-premise or cloud environments at any given time but we've noticed that ransomware attacks seem to spike during certain times of the year. This week, the guys talk about how ransomware can be deployed on your devices, how to prevent ransomware attacks, and even some horror stories from how ransomware has impacted major networks.


Get the show notes and articles at www.CyberRantsPodcast.com
Pick up your copy of Cyber Rants on Amazon.
Need cybersecurity expertise and support? Visit us at www.SilentSector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2022-09-14 00:00:00

Episode #76 - The Almighty Enterprise Cyber Risk Assessment

It's cyber risk assessment season! This is the time of year when many organizations seem to perform their annual cyber risk assessment. Unfortunately, the standard methods often result in limited visibility. This week, the guys discuss a more holistic risk assessment approach to make your cybersecurity program stronger than ever.

Get the show notes and articles at www.CyberRantsPodcast.com
Pick up your copy of Cyber Rants on Amazon.
Need cybersecurity expertise and support? Visit us at www.SilentSector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2022-08-30 04:00:00

Episode #75 - Off the Cuff Rants of The Week!

This week, the guys discuss some cybersecurity trends, tips, and words to the wise that are timely and relevant in today's technology-centric world! They discuss:

Are attacks ramping up and if so, why?The pros and cons of spending your cybersecurity budget on Black Hat and DefConWhy you need specific objectives in your penetration testing, not just the numbersThe wrong and right way to establish vendor relationshipsAnd more!

Get the show notes and articles at www.CyberRantsPodcast.com
Pick up your copy of Cyber Rants on Amazon.
Need cybersecurity expertise and support? Visit us at www.SilentSector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2022-08-16 02:00:00

Episode #74 - An Expert's Approach to Attracting & Retaining the Best Technology Professionals

Does your company recruit IT and cybersecurity staff with the same methods used to fill other positions? If so, don't miss this episode. This week, the guys welcome Cammas Freeman, an expert on finding and retaining the best technology professionals. Cammas shares a unique approach for recruiting the best talent, using a methodology that saves a tremendous amount of time and money. She also shares tips to build a strong culture for less turnover.


To Connect With Cammas:
Cammas Freeman
Founder & Executive Talent Strategist
stackrocktalent.com
cammas@stackrocktalent.com
208.412.6781

Get the show notes and articles at www.CyberRantsPodcast.com
Pick up your copy of Cyber Rants on Amazon.
Need cybersecurity expertise and support? Visit us at www.SilentSector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2022-08-02 02:00:00

Episode #73 - Backup and Recovery with Mr. Backup Himself - W. Curtis Preston

Cyber criminals are heavily focused on compromising backups so their attacks are as crushing and painful as possible for the victims. Good backups and the ability to quickly restore are a critical part of every infosec program but many organizations still treat backups as an afterthought. This week, the guys welcome the recognized authority on data backup W. Curtis Preston (aka. Mr. Backup) to reveal the backup and recovery trends he is noticing, tips organizations can implement to minimize risk, and what to look for in a backup solution.

For More On W. Curtis Preston:
LinkedIn - https://www.linkedin.com/in/mrbackup/
Restore It All Podcast - https://www.backupcentral.com
Free Book by W. Curtis Preston: Modern Data Protection - https://www.druva.com/ebook

Get the show notes and articles at www.CyberRantsPodcast.com
Pick up your copy of Cyber Rants on Amazon.
Need cybersecurity expertise and support? Visit us at www.SilentSector.com.
Be sure to rate the podcast, leave us a review, and subscribe!



2022-07-26 03:00:00

Episode #72 - More Fun with PCI DSS Compliance!

This week, the guys discuss one of their favorite topics, Payment Card Industry Data Security Standards (PCI DSS)! Companies that transmit, process, or store credit card data need to be compliant but PCI has its own nuances. What level of PCI compliance do you need? How do you determine what is in scope? How do you work with auditors? The guys answer these questions and more, plus share some wizard-like tactics to help you maneuver through the PCI requirements.


Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2022-07-12 04:00:00

Episode #71 - Managing Cybersecurity in a Changing Economy

Inflation and other economic factors are affecting companies large and small. Some organizations are cutting budgets but still have security and compliance requirements to maintain. This week, the guys discuss what organizations can do if they need to reduce spending, how to get the most bang for your buck, plus mistakes you don't want to make during turbulent times.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2022-07-06 00:00:00

Episode #70 - Securing Complex Organizations and Subsidiaries

Building and managing a cybersecurity program can be confusing for organizations with multiple product lines, subsidiaries, or industry divisions. How do you manage security across all business units? What can you do to set standards that are followed by the entire organization? How do you control the quality of the cyber risk management practices through different cultures? This week, the guys answer these questions and more, discussing the various aspects of implementing, assessing, managing, and normalizing cybersecurity across a complex organization.

Get the show notes and articles at www.CyberRantsPodcast.com
Pick up your copy of Cyber Rants on Amazon.
Need cybersecurity expertise and support? Visit us at www.SilentSector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2022-06-20 22:00:00

Episode #69 - News, Notes, and... Goodwill Hacking?

This week, the guys reconvene after a mini-hiatus and talk about some topics and tips in the news today such as

Goodwill Ransomware HackingSafe Browsing - the hidden dangers people need to knowA word to the wise about Wordpress (even though they supposedly "don't talk about wordpress")


Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2022-06-07 02:00:00

Episode #68 - Cybersecurity Offense - Can you hack back?

Is there really such a thing as "offense" in cybersecurity? This week, the guys discuss how it's possible to proactively protect organizations against criminals and how to identify potential attacks so you can stop them before it's too late. They share the realities of offensive cybersecurity and "hacking back."

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2022-05-17 00:00:00

Episode #67 - Cybersecurity That Grows Your Revenue!

Think that cybersecurity is all about protecting data and achieving compliance? Think again! This week the guys share real-world examples about companies using cybersecurity to grow revenue, create a competitive advantage, and become market leaders! Learn how to use your cybersecurity program to create an outstanding return on investment!


Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2022-05-10 08:00:00

Episode #66 - Dissecting Cybersecurity Frameworks - Part 2

This week, the guys continue to walk through the NIST Cybersecurity Framework, by discussing the Detect, Respond, and Recover control categories. They rant about logging, SIEMs, and incident response when you're facing a worst case scenario.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!


2022-05-03 02:00:00

Episode #65 - Dissecting Cybersecurity Frameworks - Part 1

A cybersecurity framework is the foundation of any good cyber risk management program but many people are not familiar with what a framework really is and what they include. This week the guys reveal the importance of following an industry-recognized cybersecurity framework and begin walking through the National Institute of Standards & Technology Cybersecurity Framework (NIST CSF) as an example. You'll understand why cyber risk management is not a mystical "make it up as you go" approach but a methodical process with easy to access, readily available guidance.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2022-04-19 23:00:00

Episode #64 - Healthcare Cybersecurity and the Wonders of HIPAA Compliance

This week, the guys discuss cybersecurity for healthcare companies. From medical facilities and laboratories, to MedTech, benefits companies, and healthcare services firms, the medical world faces its own set of challenges. The guys share thoughts and strategies around HIPAA compliance, dealing with deprecated medical technologies, and assessment practices to protect your healthcare company.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!


2022-04-12 03:00:00

Episode #63 - Physical Security Controls for Data Protection & Compliance

This week the guys discuss physical security controls (and lasers) to ensure that your organization is both secure and compliant! Cybersecurity doesn't stop at technology implementation. If you follow NIST 800-171, CMMC, PCI-DSS, or a number of other compliance requirements, you'll need to physically secure your premises to protect systems and data. Hear what the guys have to say about implementing physical security controls.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2022-04-05 06:00:00

Episode #62 - Eric Adams, FedRAMP Expert

This week, the guys are joined by Eric Adams, experienced CISO and FedRAMP Strategist discuss what precisely is FedRAMP, why should organizations consider it for their structure, and the steps to make it happen.


Follow Eric on LinkedIn Here - https://www.linkedin.com/in/eadams2/
Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2022-03-29 05:00:00

Episode #61 - Wild and Wacky Headlines

This week, the guys deviate a little from the usual format and discuss some of the latest trends in Cybersecurity, and rant on what's on their minds, no matter how off-topic it may be!

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2022-03-15 20:00:00

Episode #60 MSSP vs. vCISO vs. Cybersecurity Program Development

It's a wild market for cybersecurity services, often confusing buyers and selling companies less than ideal solutions. The question is, what cybersecurity services are the best fit for your organization's needs? This week, the guys discuss the pros and cons of the common services to help you understand the best fit. From Managed Security Services Providers (MSSP) and Virtual Chief Information Security Officers (vCISO), to remote security teams and tailored Cybersecurity Program Development solutions, this episode covers the critical considerations for selecting the right cybersecurity service partner.


Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe

2022-03-08 05:00:00

Episode #59 - Getting The Most from Your Cyber Security Provider

It is important to know what you're getting into when you invest in a cybersecurity services firm to help with security and compliance! There are critical considerations and points you must know in order to get the most from your cybersecurity services company.

This week, the guys discuss how to properly engage your cybersecurity firm to make sure your initiatives are met. They also share insights about what a cybersecurity company cannot do for you, plus how much time you or your team should expect to spend.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2022-03-01 06:00:00

Episode #58 - Red Team Testing & Other Colorful Methods

What do you think of when you hear "Red Team vs. Blue Team"? Board or video games, military exercises, or cybersecurity terms? This week the guys discuss Red Teaming as it relates to cybersecurity and penetration tests, when Red Team Testing is an appropriate method and when other colors are better, plus the critical considerations you need to think through before engaging a cybersecurity firm to perform a Red Team Penetration Test.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2022-02-22 00:00:00

Episode #57 - People > Robots

In today's Cybersecurity Gold Rush, we see so many new technology products claiming to solve the world's problems and companies promoting the newest trend of the week. However, are the new tools and products really measuring up? What can technologies really do for you and when do you need the human element? This week, the guys discuss where tools provide great benefits and where they come up short, requiring the hands-on work of a cyber professional.


Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2022-02-15 06:00:00

Episode #56 - Compliance and Security with a Remote Workforce

The transition to a remote workforce has left many companies wondering how they'll achieve compliance with various requirements like CMMC, ISO 27001, and SOC 2. Meanwhile, remote workers have made it easier than ever for cyber criminals to attack. This week, the guys discuss securing a remote workforce and meeting compliance requirements, sharing principles that work across companies of all sizes.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2022-02-01 05:00:00

Episode #55 - The Joys of IR Plans & Security Questionnaires

This week the guys discuss some of the bigger cybersecurity struggles for mid-market and emerging companies. Developing an effective incident response plan is a major challenge and when done incorrectly, can cause a lot of damage. The guys also share struggles SaaS companies face when they're inundated with cybersecurity questionnaires that are holding up the sales process.


Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2022-01-18 02:00:00

Episode #54 - What Our Crystal Ball Says About 2022

This week the guys reunite for the first episode of 2022 by taking a look into the future. With their crystal ball of predictions, the guys look into the future of cybersecurity, ranting about potential trends, exploits, and tips for you to stay ahead in the new year! Plus, they share some housekeeping tips and how to "tidy up" your cyber risk management program in the new year.


Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2022-01-11 00:00:00

Episode #53 - Cyber Insurance - Can I Be Protected?

Cyber insurance is a critical part of any risk management program and something that every company must have. Finding the right policy with the proper coverage can be tricky and the major insurance companies are not always the best fit. This week the guys talk with cyber insurance expert, Tony Robbins, about the fundamentals you must know to properly protect your organization. They cover how to identify a good insurer, what questions to ask when getting your policy, and how cyber insurance must correspond with your incident response plan.

Contact Tony Robbins at robbinsinsurancegrp@gmail.com


Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2021-12-21 00:00:00

Episode #52: The Vast Capabilities of Open Source Intelligence

Cyber criminals can learn more about you than you ever realized. Open Source Intelligence (OSINT) often exposes information that you didn't realize was available to the public. Cyber criminals use OSINT to find weak spots in cybersecurity and exploit employees through social engineering. This week, the guys unwrap the fact that while Open Source Intelligence can be detrimental in the wrong hands, there are tools and methodologies that can be used to better protect your organization.


Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2021-12-14 04:00:00

Episode #51 - The Who's Who of Cybersecurity

If your organization is growing and is getting ready to build its own InfoSec team, this week's episode is for you. The guys discuss the "Who's Who" of cybersecurity, explaining the key players that growing organizations need when maturing their cybersecurity programs. From Chief Information Security Officers to Architects, Engineers, and Project Managers, the guys share who's who in each position, plus the required skill sets, responsibilities, and proper staffing models.


Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2021-12-07 05:00:00

Episode #50 - Compliance Vs. Security

Is being compliant the same as being secure? If you're meeting all the requirements, are you adequately protected? This week, the guys discuss the differences, nuances and overlaps between cybersecurity and compliance, plus how you can simplify alignment to multiple compliance requirements.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2021-11-23 00:00:00

Episode #49 - Translating Cyber Risk to Dollars and Cents

Are your executives and board members struggling to understand cyber risk? This week, the guys are joined by David Moon of Arx Nimbus, a company that turns cyber risk into the language that all business leaders understand. David shares how they translate cybersecurity into financial metrics that allow organizations to make better risk management decisions. The guys discuss how companies can create tremendous clarity around cyber risk, resulting in better support and resource allocation.

For more information on Arx Nimbus, visit https://www.arxnimbus.com

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2021-11-16 03:00:00

Episode #48: What's Going Well in Cybersecurity Today? More than you might think...

This week the guys discuss the good steps forward that are making the cybersecurity industry strong, from awareness to technologies, education to growing the workforce. They share the silver linings in the turmoil, plus some areas for improvement in the industry.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2021-11-09 03:00:00

Episode #47 - Small Business Cybersecurity with David Baker

This week, the guys welcome a new member to the team, longtime technology professional, David Baker! They discuss his experience in helping small businesses with IT and security, plus the challenges SMBs are facing with new cybersecurity and compliance requirements. This episode is perfect for any businesses struggling with stepping into today's IT and cybersecurity standards.


Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2021-11-02 03:00:00

Episode #46 - Wireless Pen Testing is both Awesome and Revealing

This week, the guys discuss wireless penetration testing and explain many of the common findings that are revealed through the testing process. They provide an indepth look at how wireless penetration testing works and why certain organizations should make it a part of their annual cyber risk assessment process. If you're wondering about the risks associated with your wireless environment, this is not an episode to miss!


Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2021-10-26 22:00:00

Episode #45 - Cyber Crime - Do People Care?

There is a lot of news about cyber attacks but the big question is, "Do people actually care?" This week the guys rant about cyber crime and how it affects people and companies who often don't care until it's too late. Through real-life examples, horror stories, and tips to help you stay protected, this episode is not one to miss!

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2021-10-20 01:00:00

Episode #44: What Is Silent Sector?

This week the guys share what Silent Sector is all about, from the origins of the company to what makes the services and methodologies stand apart. The guys share their "why" behind what they do and what they are working to change in the world of cybersecurity. This episode is perfect for anyone wanting to know about Silent Sector at a deeper level.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2021-10-12 05:00:00

Episode #43 - Top 5 Tips for Personal Cyber Protection

This week, the guys share simple tips that individuals and very small businesses can use to protect themselves and their data from cyber criminals, even without any technical background or experience! These are the basic cybersecurity measures that everyone should follow.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2021-09-28 03:00:00

Episode #42 - Lessons and Silver Linings of the COVID Pandemic

This week the guys share what they saw in the cybersecurity and IT industries from the start of COVID to the current day. They share what went poorly as well as lessons learned and why our Nation's cybersecurity will come out stronger than pre-COVID.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2021-09-14 05:00:00

Episode #41 - Both Sides of the Vendor Vetting Process

For some organizations, vendor vetting for cyber risk management is a process that runs like a well-oiled machine. For most, it's a tedious and challenging nightmare. This week, the guys discuss the vendor vetting process from both sides, vetting your vendors and navigating the vetting process of your prospects. They share how organizations of all sizes can use the vetting process to their advantage.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2021-09-03 03:00:00

Episode #40 - Protect Your People From Themselves

This week, the guys discuss technical controls to protect your employees and protect your company from its own employees. From honest mistakes to gross negligence and malicious activity, proper protections minimize employee related cyber risk. The guys also share tips for configuring and issuing devices to your team members, which is especially critical for those working from home.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2021-08-31 02:00:00

Episode #39 - Combining Passion and Career with Heather Monthie, PhD

This week, the guys welcome Heather Monthie, PhD, who's illustrious career has blended her passions for cybersecurity, aviation, and education. She has been an integral part of K-12 and university education systems, developing STEM programs that build a stronger technology workforce.

Heather shares her insight about the world of cybersecurity education, plus valuable advice and resources for anyone looking to work toward a career in technology.


Learn more about Heather: www.heathermonthie.com.

Find her podcast: www.CyberCoffeeTalk.com

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2021-08-17 04:00:00

Episode #38 - The Joy of Cybersecurity Policies!

Nobody loves cybersecurity governance documentation like we do! This week, the guys discuss cybersecurity policies and why the proper policies make all the difference for security, compliance, and audits. Plus, learn what documents are most important, why the "one size fits all" cybersecurity policy templates don't work, and how to build documentation to your exact needs.


Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2021-08-10 20:00:00

Episode #37 Keeping Your Data... Your Data

From PII and PHI to intellectual property and sensitive business information, the guys talk about how to keep your sensitive data from leaking to the outside world.
While there is no single answer, they cover both technology and governance tips to keep your data where it belongs. Plus they rant to everyone, "Don't be a data hoarder!"


Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2021-08-03 02:00:00

Episode #36 - Covering the "What Ifs" with Incident Response Planning

What's the difference between having an Incident Response Plan and just "winging it"? This week the guys talk about their real world cybersecurity incidents and share their knowledge about proper planning and preparation. Learn what goes into incident response planning, who should be involved, and how to ensure everyone is on the same page for quick response and minimizing damage during a cyber attack.


Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2021-07-26 18:00:00

Episode #35 - Cyber Risk Assessments: Everything You Never Thought You Wanted To Know!

This week, the guys take a deep dive into the intricate world of Cyber Risk Assessments. They cover best practices from choosing an industry recognized cybersecurity framework, to scoping and preparing for your cyber risk assessment, plus how to make cybersecurity standards like NIST, CSF, and CIS Controls work for your company.

They discuss how these assessments work for different purposes and what to expect when you're planning for your first Cyber Risk Assessment.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2021-07-13 04:00:00

Episode #34 - Cybersecurity for Credit Unions, Banks, Insurance, and FinTech

Cybersecurity is critical for financial services organizations but many mid-market and emerging companies struggle tremendously with their cyber risk management programs.

This week, the guys talk about cybersecurity programs for financial institutions, sharing specific considerations for the industry including staffing, risk assessment, penetration testing, and compliance. Financial services companies are an attractive and highly targeted sector for cyber criminals. It is also an industry where Zach, Mike, and Lauro have a deep history


Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2021-07-07 00:00:00

Episode #33: PCI Compliance - Do's and Don'ts

This week, the guys talk about a topic that everyone loves, PCI (Payment Card Industry) Compliance! They rant about PCI-DSS compliance levels and standards, plus what first timers need to consider when preparing for a PCI audit. They share tips about how to make your PCI compliance process simpler throughout the year and how to deal with the QSA (auditor), especially when the auditor doesn't understand your environment.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2021-06-29 01:00:00

Episode #32 - Healthcare Cybersecurity

This week, the guys discuss cybersecurity for healthcare organizations. They dispel the myth that healthcare cybersecurity is completely unique while also sharing the healthcare nuances that don't apply as frequently in other industries. From healthcare risk assessment to policies, HIPAA compliance, and even physical intrusion testing, the guys share their experience and points of view on healthcare cyber risk management.


Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2021-06-22 01:00:00

Episode #31: How to start a career in cybersecurity.

There's no "right way" to get started in cybersecurity but there are a lot of different paths. This week, the guys talk about their career paths starting from the ancient IT world and moving into modern day cybersecurity disciplines. They share some of the most important skill sets that you rarely hear about, plus tips and tricks to succeed.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!



2021-06-15 04:00:00

Episode 30 - Beware of these Top 10 Cybersecurity Myths

Zach and Lauro discuss 10 common cybersecurity myths that are causing business leaders to make poor decisions and making companies an easy target for cyber criminals. They clear up these myths and share how you can be better informed if you hear something that doesn't sound quite right.


Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2021-06-02 04:00:00

Episode #29 - Social Engineering: Minimize the Exposure of Human Error

This week, the guys discuss Social Engineering - the most common way cyber criminals get access to their targets. They discuss the controls smart companies are implementing to prevent their staff from falling for cyber criminal scams and how to minimize exposure resulting from human error.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2021-05-18 02:00:00

Episode #28: Moving CISOs from Good to Great - with Ed Escobedo

This week, the guys welcome back Ed Escobedo, former Head of Technology Risk Management for PayPal, CIO of Apollo Education Group, VP for DHL and Charles Schwab, and currently Silent Sector's Chief Strategy Officer. They share how to bust through the growth roadblocks that CISOs hit when improving their organizations' cybersecurity programs. They also share the unique Organizational Adoption Framework and Methodology(TM) that Silent Sector uses to bring established cybersecurity programs to the next level.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!


2021-05-11 04:00:00

Episode #27: The Joy of SOC 2 Audits

This week, the guys dive into the rapidly growing topic of SOC 2 Audits. The SOC 2 Audit is widely becoming a requirement for B2B technology companies serving large enterprise clients. As both SOC 2 auditors and the guys who help companies prepare for audits, they cover common misconceptions such as the SOC 2 being all about IT security. They talk about the important factors to consider when undergoing the audit for the first time such as scope, timeline, and even auditor selection.


Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2021-05-04 20:00:00

Episode 26: Defense Contractors and CMMC Requirements

This week, the guys dive into all the "fun" requirements that U.S. Government defense contractors are facing when working with Controlled Unclassified Information (CUI), including the NIST 800-171 Self-Assessment and getting CMMC certificatied. They share their insights and experience about how organizations align to these requirements and what's involved.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2021-04-27 05:00:00

Episode #25 - CISO As A Service

Companies are turning to Virtual CISO and CISO as a Service providers for help as cybersecurity requirements continue to grow. Is hiring a vCISO always the right option?
What are the pros and cons? How do you find a good one? This week the guys answer these common vCISO questions and more.


Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2021-04-20 04:00:00

Episode #24 - To Cloud or Not to Cloud?

The "cloud" is arguably one of the most common topics of discussion in technology today, primarily for its cost savings and accessibility benefits. However, it's also a hot topic for cybersecurity professionals and not always for the best reasons. This week, the guys discuss cloud considerations for organizations of all sizes, providing recommendations for transitioning to the cloud, safely storing information, and avoiding data loss nightmares.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2021-04-13 05:00:00

Episode #23 - Penetration Tests: What You Need to Know (Part 4)

This week in the final part of our Penetration Test Mini-Series, the guys discuss the realities of automated vs. manual penetration tests and what those terms actually mean. They also talk about timeframes, approaches, and situations that seem to cause some confusion for companies undergoing their first penetration test.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2021-04-06 05:00:00

Episode #22 - Penetration Testing: What You Need to Know (Part 3)

This week, the guys continue their penetration testing discussion, covering the following common questions:

How often should your organization conduct a penetration test?
What's the right approach, red team or purple team?
What should you see in your penetration test reports?

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2021-03-30 05:00:00

Episode #21 - Penetration Testing: What You Need To Know (Part 2)

This week we take a deeper dive into penetration testing. The guys discuss why it's important to consider the reason behind a penetration test and some different methods of testing to consider. In addition, they cover options that companies can take in their testing initiatives, along with providing best practices for companies getting their first pen test.


Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2021-03-25 14:00:00

Episode #20 - Penetration Tests: What You Need to Know (Part 1)

Penetration tests are vital for nearly every organization to see how secure they really can be. While the demand for them is higher than ever, it can be a bit tricky on deciding what test which penetration test provider is best for you, along with figuring out if a penetration test is right for you. This week, the guys answer these questions and give their own advice on how to guide yourself through the world of Penetration Tests.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2021-03-23 05:00:00

Episode #19 - Diagram Delight!

This week the guys discuss why it's vital for an organization to have Network Architecture Diagrams, discuss best practices for building them (scotch can help), and explain why a little effort now will make your work life so much better.


Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2021-03-09 06:00:00

Episode 18 - Proactive vs. Reactive Cybersecurity

There is a lot of talk about "proactive cybersecurity" but what does that really mean and is it better than reactive security? On this week's show, the guys discuss proactive versus reactive cybersecurity considerations and where to focus.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2021-03-02 23:00:00

Episode 17 - Starting a Cybersecurity Career plus Insight for Employers

The guys talk with Haidon Storro, who brings a different point of view to the conversation. Haidon is an exceptionally motivated cybersecurity professional who recently graduated college and started her career. She shares her journey from finding a passion in technology, to getting educated and finding her first full time role in the industry. It's a highly competitive market for finding talent and Haidon insights are critical for employers to understand when trying to recruit junior team members.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2021-02-23 15:00:00

Episode 16 - Everybody Loves Cybersecurity Compliance!

Compliance. It's not the most attractive topic to discuss but for most organizations, it's a necessity. This week, the guys discuss compliance obstacles and pitfalls, how to overcome them, plus the investment that provides the biggest returns when it comes to cybersecurity compliance. Whether you're faced with PCI, CMMC, SOC 2 audits, GDPR, CCPA, or any other set of requirements, the fundamentals are the same and this episode is for you.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!




2021-02-16 06:00:00

Episode 15 - Are we losing the Cyber War?

Are we losing the war against cyber crime? What does winning look like? Where does the U.S. stand on a global spectrum of cyber protection? This week the guys discuss these alarming yet valid concerns.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!




2021-02-09 06:00:00

Episode 14 - Building and Keeping your Cybersecurity Team

How do you find the right people when other companies can pay them more? How do you make your rock stars want to stay? Does it make sense to hire a Senior VP of IT when they will also be handling the help desk function? What about entry-level staff running critical functions?

This week, the guys discuss the importance of finding and hiring the best talent for your company's cybersecurity program, along with sharing best practices to make your team the best in the industry!

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2021-02-02 06:00:00

Episode 13 - Frameworks Vs. Compliance

This week, the guys discuss one of their favorite topics the comes up frequently in the CyberSecurity World: The difference between companies reaching out to meet compliance, rather than aligning to a secure Cybersecurity Framework, and how being compliant does not always mean being secure.
They give tips and tricks on which framework would be best for your company, along with their own experience on the struggles in this topic.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!


2021-01-26 23:00:00

Episode 12 - Disconnects and Redundancies

This week, the guys discuss a disconnect between employees working remotely and their corporate IT departments hindering productivity for both parties, along with how the debate between IT providers leaning towards a self-service model for IT help.

In addition, the guys discuss the recent shutdown of Parler and the issue of companies relying on a cloud-based server, instead of relying on its own hardware.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2021-01-19 06:00:00

Episode 11 - Implementation Models

Zach, Lauro, and Mike welcome 2021 by diving into one of their favorite topics, Cybersecurity Implementation Models. They discuss the different ways companies build cybersecurity programs and considerations to find right method for your organization. Whether you're considering a DIY approach, hiring a cybersecurity firm, or getting a vCISO, this episode rants about the pros and cons of each.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!


2021-01-12 06:00:00

Episode 10 - Goodbye 2020, Hello 2021!

In the last episode of the year, Zach, Mike, and Lauro discuss the benefits of performing certain cybersecurity tasks earlier in the year rather than waiting for the last quarter. They also discuss tips and tricks to avoid cyber criminals around the holiday season, along with what they liked and loathed in the year of cybersecurity news and blunders, plus their holiday wish lists.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2020-12-22 02:00:00

Episode 9 - The Cybersecurity Gold Rush

This week Zach, Mike, and Lauro rant about the pitfalls of the "arms race" of new cybersecurity tools. In addition, they propose strategies for evaluating and implementing cybersecurity tools with a holistic approach instead of chasing the shiny new products that promise to answer all problems.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2020-12-15 05:00:00

Episode 8: The War on Cybersecurity

This week, Zach, Mike, and Lauro discuss the misperception of the critical points on what can happen if companies choose to not take Cybersecurity seriously, how it can affect more than a bottom line for a businesses, and what steps businesses can take to thwart initial attacks and protect themselves from Cyber Criminals.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!



2020-12-09 04:00:00

Episode 7: Cybersecurity as an Asset, Not an Obligatory Cost.

Zach, Mike, and Lauro discuss using cybersecurity as an asset and competitive advantage to drive revenue, rather than just a necessary cost. They cover the ins and outs of cybersecurity questionnaires that all B2B tech companies get when they're trying to land enterprise clients. The team discusses the proper precautions and steps needed to align your company with the best cybersecurity framework, plus navigating potential audits and avoiding security pitfalls.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!





2020-11-24 06:00:00

Episode 6: Educating and Encouraging CyberSecurity

This Week: Zach, Lauro, and Mike discuss how Cybersecurity professionals can be active with organizations in their cybersecurity approach, along with encouraging continuing education and participation by other employees in the workforce.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2020-11-10 06:00:00

Episode 5: Defining Proactive Security Posture

This Week, Zach, Lauro, and Mike discuss the steps needed to create a proactive security posture, especially when creating a cybersecurity program for the first time. In addition, we also provide tips on how to create a plan of action when implementing your cybersecurity program to make it the right fit for your company.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2020-11-05 01:00:00

Episode 3 - Building a Security-Conscious Culture

This week - The guys discuss how to build a Security-Conscious Culture in your organization, along with some of the successes and failures that occur in the process. In addition, they talk steps to implement your your security program, beginning with leadership support.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2020-10-22 03:00:00

Episode 4 - Ed Escobedo: Translating the value of CyberSecurity

This week - Ed Escobedo joins the podcast to discuss his journey to joining the Silent Sector team as Chief Strategy Officer and what lesson’s he’s learned while implementing programs for companies like PayPal and Apollo Education Group, plus the importance of translating the value of cybersecurity to CFO’s and other organizational leaders.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2020-10-22 03:00:00

Episode 2 - Make the Right Decision - Implement a Program!

Episode 2: Lauro, Mike, and Zach reveal the biggest failure that companies make when it comes to cybersecurity. We discuss what steps leaders can take to implement a program within their organization. The team also provides ideas for companies to use additional incentives with staff in order to help minimize cyber risk related to the human element.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2020-10-21 05:00:00

Episode 1 - Why Cybersecurity Education Matters

Episode 1: In our introduction episode, we discuss our book “Cyber Rants: Forbidden Secrets and Slightly Embellished Truths About Corporate Cybersecurity Programs, Frameworks, and Best Practices.” We discuss reasons why corporate cybersecurity programs fail and how some organizations do not receive the right guidance or education to get the best cybersecurity protection for their needs.

Pick up your copy of Cyber Rants on Amazon.
Looking to take your Cyber Security to the next level? Visit us at www.silentsector.com.
Be sure to rate the podcast, leave us a review, and subscribe!

2020-10-21 05:00:00

-
-
(基於 PinQueue 指標)
0 則留言