Logo

    Cybersecurity and the C-Suite

    enJanuary 31, 2020
    What was the main topic of the podcast episode?
    Summarise the key points discussed in the episode?
    Were there any notable quotes or insights from the speakers?
    Which popular books were mentioned in this episode?
    Were there any points particularly controversial or thought-provoking discussed in the episode?
    Were any current events or trending topics addressed in the episode?

    About this Episode

    During Cyber Florida Conference 2019, a panel of respected cybersecurity experts gathered to share their insights on how cybersecurity impacts the C-level professional, changes in accountability and business models, and what it means to build a cyber-strong workforce. The panel was moderated by Mark Clancy, Chief Information Security Officer (CISO) for Sprint. The esteemed guests on the panel were Diane Janosek, NSA Commandant of the National Cryptologic School; Andy Zolper, SVP, CISO, and Head of Technology Infrastructure for Raymond James Financial; and Terry Roberts, Founder and President of WhiteHawk, Inc.

    C-level professionals have been a driving force in developing business and securing infrastructures. Recent breaches resulting in CEO firings and similar repercussions are impacting the way many C-level leaders are engaging with technology and their workforce’s cyber culture. Cyber Florida took the opportunity at the conference to help both the C-level professionals and stakeholders who are part of their decision-making process with a discussion titled “Cybersecurity and the C-Suite.” The panelists discussed why it is vital for C-level executives to embrace cybersecurity education and innovation. The experts spoke to what factors C-level leadership face in their organization and workforce in relation to security, networking, and data fundamentals. A large portion of the conversation focused on identifying what it takes to onboard a workforce in this computer-centric modern life (with the phrase “cyberize” being coined to discuss the process), and understanding the crossover that is occurring because of the inter-connectivity of roles and risks.

    Panelists discussed case studies and resources, such as cyber executive programs, where C-level professionals can:

    • learn the basics of cybersecurity,
    • embrace accountability at the C-level,
    • identify the risks and opportunities of current infrastructure and future tech,
    • learn how certain business models are changing as a response to technology,
    • establish pillars for a robust cyber culture,
    • understand independent cyber risk ratings as a commodity,
    • develop a cyber-strong workforce, and
    • create a constructive response plan to cybersecurity attacks and cybercrimes.

    This is a two-part edition with the second part discussing the personnel gap in cybersecurity and what can be done about it. You can find parts 1 and 2, as well as other episodes of No Password Required podcast, on our website at https://cyberflorida.org/podcast/. This special edition was recorded at Cyber Florida Conference 2019 in Tampa, Florida. Learn about upcoming Cyber Florida events, including the annual conference, at cyberflorida.org or follow us on social media.

    TIME STAMPS

    00:42 Who is Diane Janosek, Cybersecurity Expert, Cyber Security Woman of the Year

    02:03 Who is Andy Zolper, CISO at Raymond James Financial

    02:45 Who is Terry Roberts, Cybersecurity Exchange

    03:58 How to Communicate Cybersecurity to Leadership

    07:25 C-Level Accountability, Cyber Risk Ratings are a Commodity, Cyber Executive Program

    09:53 Hiring a Cybersecurity Workforce and Training a Cybersecurity Culture

    15:55 Innovation in Education for Cybersecurity and Cyber Risk Training

    18:50 Identifying, Leading and Managing Critical Skills

    21:54 Cyberize Your Team, Workforce Crossovers, and Cyber Defense Ecosystem

    26:07 Business Interruption and Constructive Actions to Address Cyber Crimes

    27:35 Cyber Executive Programs and Case Management

    Recent Episodes from No Password Required

    No Password Required Podcast Episode 47 — Jo Anna Parker Martin

    No Password Required Podcast Episode 47 — Jo Anna Parker Martin

    Summary

    In this episode, Jo Anna joins Carlton Fields P.A. Jack Clabby and KnowBe4’s VP of Remote Publishing Teams Kayley Melton to tell the story of how her career has changed since starting at Rice University 17 years ago. From her early days as a receptionist at a hair salon to her current role as a security analyst, Jo Anna shares her journey in the cyber world and her fascination with artificial intelligence, stemming from her compliance-related responsibilities. Emphasizing a realism-based view on AI, she passionately advocates for a comprehensive understanding of AI, emphasizing that it’s neither inherently good nor bad.

    Takeaways

    • Stolen recordings from popular artists can sell for high prices on the black market.
    • Cyber criminals are involved in various illegal activities, including stealing cryptocurrency and trading stolen, unreleased rap recordings.
    • Law enforcement plays a crucial role in investigating and apprehending cyber criminals, and these crimes can have real-life consequences.
    • The intersection of cybersecurity and AI presents challenges in assessing the risks associated with AI technologies.
    • Community outreach and education are important in promoting cybersecurity awareness and encouraging more people to pursue careers in the field.

    Chapters

    00:00 Stolen Recordings and Cyber Criminals

    01:29 Arrest of a Florida Man and Stolen Rap Recordings

    02:27 The Allegations and Nicknames

    03:26 The Connection Between Cyber Crime and Rap Music

    04:23 Real-Life Consequences of Cybersecurity Crimes

    05:52 The Role of Law Enforcement in Cybersecurity Crimes

    06:50 Introduction of Guest Joanna Parker-Martin

    07:18 Joanna's Role at Rice University

    08:15 Protecting Data at Rice University

    09:08 Joanna's Journey into Cybersecurity

    10:04 Overcoming Challenges and Changing Career Paths

    18:14 Joanna's Interest in Artificial Intelligence

    19:22 The Intersection of Cybersecurity and AI

    20:46 The Challenges of Assessing AI Risk

    21:13 The Inevitability of AI

    22:37 The Risks of Facial Recognition Technology

    27:26 Joanna's Involvement with WiCys

    29:48 Community Outreach and Cybersecurity Education

    30:10 Misconceptions About Cybersecurity Professionals

    32:32 The Lifestyle Polygraph

    43:35 Joanna's Preference for Sponge Cake in Strawberry Shortcake

    No Password Required Podcast Episode 46 — Dr. Diana Burley

    No Password Required Podcast Episode 46 — Dr. Diana Burley

    SummaryThe conversation discusses the arrest of Ola Segun Simpson Adagorin, a Nigerian national facing US federal charges for a business email compromise scheme. The collaboration between the FBI and Ghana is highlighted, along with the role of the legal attache job in solving crimes with international impact. The scheme and indictment details are explored, emphasizing the sophistication of the attack. Dr. Diana Burley, Vice Provost for Research and Innovation at American University, shares insights on cybersecurity education and workforce readiness. The importance of understanding human behavior in cybersecurity is discussed, along with strategies for engaging in conversations and addressing the search for cyber unicorns. In this episode, the importance of password security and the various methods to enhance it are discussed. The conversation covers common password mistakes, the use of password managers, multi-factor authentication, biometric authentication, and the future of password security.

    Takeaways

    • Collaboration between law enforcement agencies is crucial in solving cybercrime cases with international implications.
    • Understanding human behavior is essential in addressing cybersecurity challenges and shaping effective policies.
    • Digital literacy and foundational cybersecurity skills should be integrated into education across disciplines.
    • Creating a culture of cybersecurity requires a balance between rules and creativity, and a focus on psychological safety.
    • Engaging in conversations with strangers can be facilitated by finding common interests and making personal connections. Create strong and unique passwords for each online account.
    • Avoid common password mistakes such as using personal information or easily guessable patterns.
    • Consider using a password manager to securely store and generate passwords.
    • Enable multi-factor authentication whenever possible for an added layer of security.
    • Biometric authentication, such as fingerprint or facial recognition, can provide convenient and secure access to devices and accounts.
    • Passwordless authentication methods, such as biometrics or hardware tokens, may become more prevalent in the future.
    • Stay informed about emerging technologies and best practices in password security.

    Chapters

    00:00 Introduction and Arrest of Ola Segun Simpson Adagorin

    01:24 Collaboration between FBI and Ghana

    03:15 Scheme and Indictment Details

    04:44 Legal Attache Job and Collaboration

    06:10 Deterrence and Sealed Indictments

    07:36 Introduction of Dr. Diana Burley

    08:31 Dr. Burley's Background and Role at American University

    09:23 Interest in Cybersecurity and Technology

    10:21 American University's Role in Educating Policymakers

    12:15 Engaging with Leaders and Shaping Policy

    13:36 Engaging with Students and Future Leaders

    14:28 American University's Focus on Policy and Research

    15:27 Misconceptions about the Cybersecurity Workforce

    16:23 Digital Literacy and Foundational Cybersecurity Skills

    18:45 Retaining Skilled Members in the Academic Environment

    19:43 Benefits of Engaging as a University Faculty Member

    20:37 Understanding Human Behavior in Cybersecurity

    22:05 Insights from Research on Human Behavior

    23:25 Understanding Employee Behavior in Cybersecurity

    24:47 Creating a Culture of Cybersecurity

    27:08 Strategies for Initiating Conversations with Strangers

    31:50 The Cyber Unicorn Project

    35:08 Addressing the Search for Cyber Unicorns

    41:45 Lifestyle Polygraph

    50:57 Understanding Irrational Behavior and Self-Awareness

    53:37 Engaging in Conversations with Strangers

    02:30 The Importance of Password Security

    10:15 Common Password Mistakes

    18:45 Password Managers

    27:10 Multi-Factor Authentication

    35:40 Biometric Authentication

    44:20 Passwordless Authentication

    52:30 Future of Password Security

    58:21 Conclusion

    No Password Required Podcast Episode 45 — Lisa Plaggemier

    No Password Required Podcast Episode 45 — Lisa Plaggemier

    Summary

    In this episode, Jack Clabby and Kayley Melton discuss the upcoming Sunshine Cyber Conference and their collaboration with Winn Schwartau. They also talk about the importance of diverse cybersecurity talent and their plans for a joint session at the conference. The hosts then interview Lisa Plaggemier, the executive director at the National Cybersecurity Alliance, who shares her career journey and the role of creativity and curiosity in cybersecurity. They also discuss the impact of COVID-19 on the cybersecurity industry and the importance of humor and satire in cybersecurity training. The episode concludes with a lifestyle polygraph segment. In this episode, the conversation covers various topics related to comedy, storytelling, and implementing change in organizations. The power of the internet is discussed, highlighting the potential consequences of online content. The guest shares her favorite comedy movies, emphasizing the comedic element in her expertise. The use of humor in training and awareness programs is explored, along with the challenges of implementing change in organizations. Dealing with roadblocks in security and the passion for security awareness are also discussed. The episode concludes with information on how to get in touch with the guest and a recap of what was learned.

     

    Takeaways

    • The Sunshine Cyber Conference features keynote speakers from the No Password Required podcast, including Winn Schwartau.
    • The hosts will be doing their first on-site remote recording at the Sunshine Cyber Conference, featuring keynote speaker Tamiko Fletcher.
    • The National Cybersecurity Alliance focuses on training and awareness, using creativity and humor to engage and educate people.
    • Comedy movies, such as Monty Python and the Holy Grail, can be a source of expertise and inspiration.
    • Humor can be effectively used in training and awareness programs to engage and educate participants.
    • Implementing change in organizations can be challenging, but finding allies and overcoming roadblocks is essential.

     

    Chapters

    00:00 Introduction

    01:28 Fishing for Potential, the RTFM Guide to Diverse Cybersecurity Talent

    02:25 Live On-Site Remote Recording and Keynote Speakers

    03:51 Sunshine Cyber Conference and Registration

    04:46 Interview with Lisa Plaggemier

    05:15 Background and Role at the National Cybersecurity Alliance

    05:53 Transition to Security and Marketing Collaboration

    06:22 Incident Response and Training and Awareness

    07:20 Leadership and Skills in Cybersecurity

    08:18 Kubikle Series and Creativity in Security

    09:17 Curiosity and Creativity in Cybersecurity

    10:48 Naming and Shaming in Pen Tests and Phishing Testing

    11:41 DDoS Attack and Incident Response

    12:38 Neurodiversity and Cybersecurity

    13:21 Leading a Team During COVID-19

    14:21 Creating Engaging Training Content

    15:19 Global Data and Data Privacy Laws

    16:18 Humor and Satire in Cybersecurity Training

    18:47 Kubikle Series and Satire in Cybersecurity

    20:41 Creating Kubikle Series and Future Plans

    23:03Trust in Password Managers

    24:22 The Importance of Curiosity in Cybersecurity

    25:52 The Oh Behave Report and Behavioral Science

    26:50 Communicating Security Information Effectively

    28:44 Naming and Shaming in Phishing Testing

    29:39 Accepting Risk and Escalation Plans

    30:38 The Role of Security Teams and HR

    32:35 Building Trust in Password Managers

    33:32 Global Data and Cybersecurity Awareness

    36:51 The Importance of Curiosity in Cybersecurity Hiring

    40:03 The Underground Student-Led Newspaper

    41:12 The Significance of Curiosity and Creativity in Career

    50:44 The Power of the Internet

    51:14 Favorite Comedy Movies

    52:12 Using Humor in Training and Awareness

    53:38 Implementing Change in Organizations

    54:55 Dealing with Roadblocks in Security

    55:45 Passion for Security Awareness

    56:06 How to Get in Touch

    56:37 What Was Learned

    57:11 Closing Remarks

    No Password Required Podcast Episode 44 — Jayson Street

    No Password Required Podcast Episode 44 — Jayson Street
    Jayson Street — Chief Adversarial Officer at Secure Yeti, a DEF CON Groups Global Ambassador, and a world-class awkward hugger Jayson Street, the dynamic Chief Adversarial Officer at Secure Yeti, has worn many masks throughout his life and career. He was once named a “World-Class Hacker” on the National Geographic series "Breakthrough Cyber-Terror," but he prefers the simpler title of Hacker, Helper, and Human. In this episode, Jayson joins Carlton Fields P.A.’s Jack Clabby and KnowBe4’s VP of Remote Publishing Teams Kayley Melton to talk about his journey of self-discovery that led him from being an award-winning janitor at McDonald's to one of the world’s most infamous ethical hackers. From his early childhood, Jayson has embraced hacking as a way of life, embodying the spirit of relentless exploration, innovation, and resilience. Like our favorite co-host Kayley, Jayson uncovered a new layer of his identity in his adulthood when he discovered that he is neurodivergent. He dives deep into how this new understanding altered his perception of himself, allowed him to embrace the various “masks” he wears throughout life, and discovered that his unique mind is actually his superpower. He also shares extraordinary stories of how he gained entry into some of the hardest-to-access cyber targets in the world. To start off the show, Jack and Kayley talk about the celebrity that’s topping the Hacker Celebrity Hot List as the celeb whose name is used most by cybercriminals when creating online scams. Hint: he’s just Ken… You can follow Jayson on LinkedIn here: https://www.linkedin.com/in/jstreet/ You can follow Jayson on Twitter here: @jaysonstreet You can learn more about Jayson here: https://jaysonestreet.com You can learn more about Secure Yeti here: https://www.secureyeti.com/

    No Password Required Podcast Episode 43 — Kristin Demoranville

    No Password Required Podcast Episode 43 — Kristin Demoranville
    Kristin Demoranville — CEO and Founder of AnzenSage, defender of the food sector, and friend to primates What is the role of cybersecurity in food safety? Kristin Demoranville, CEO and Founder of AnzenSage, is committed to shielding the food sector from potential cybersecurity threats and ensuring the resilience of the entire food supply chain. Her dedication is not just a professional pursuit; it's a mission to prevent any compromise to public health. In this episode, Carlton Fields Cybersecurity Attorney Jack Clabby and No Password Required producer Rex Wilson speak with Kristin about everything from the deployment of autonomous tractors to the secure refrigeration of airport food, and Kristin sheds light on the other facets of daily life that are linked to the food supply chain. Kristen also shares how her love for wildlife led to her working with primates at the Louisville Zoo before making the transition into cybersecurity, and the value that podcasting has brought to her life. Kristen’s podcast, the Bites & Bytes Podcast, is her platform for discussing cybersecurity and food safety, and is recommended listening for fans of No Password Required. Bites & Bytes has fast become a medium for Kristin to share insights, connect with audiences, and explore the intersections of her diverse interests. Jack and Rex also delve into the intricacies of the Environmental Protection Agency's recent decision not to include cybersecurity in water system audits, and the questions this may raise about the security of water utility infrastructure. You can follow Kristin on LinkedIn here: https://www.linkedin.com/in/demoranvillekristin/ You can follow Kristin on Twitter here: @demokris You can learn more about AnzenSage here: https://www.anzensage.com/

    No Password Required Podcast Episode 42 — Jessica Gulick

    No Password Required Podcast Episode 42 — Jessica Gulick
    Jessica Gulick — Founder and Commissioner of the US Cyber Games, CEO of the cyber marketing firm Katzcy, and someone who values perseverance over perfection Jessica Gulick is a woman of many trades. She is the Founder and CEO of the cyber marketing firm Katzcy, the Founder and Commissioner of the US Cyber Games, and a trailblazer who is working to make cybersecurity a sport that thrives. In this episode, Jessica joins Carlton Fields P.A.’s Jack Clabby and KnowBe4’s Kayley Melton to share her experiences as a female entrepreneur and the role that perseverance has played throughout her career. She also talks about the inception of the US Cyber Games, its commitment to bringing together elite cyber athletes, coaches, and industry leaders, and the purpose she hopes it will serve in the cyber world. Jack and Kayley also discuss the recent developments of Droidish, which may sound like a new Star Trek language but is actually the language being developed by the US military to allow AI drones to communicate with one another to become useful “tools” for many different purposes. You can follow Jessica on LinkedIn here: https://www.linkedin.com/in/jessicagulick/ You can follow Jessica on Twitter here: @CyberRiskLady You can learn more about US Cyber Games here: https://www.playcyber.com/

    No Password Required Podcast Episode 41 — Allan Liska

    No Password Required Podcast Episode 41 — Allan Liska
    Allan Liska —Threat Intelligence Analyst at Recorded Future, the Ransomware Sommelier, and a guy with a mildly exciting expense account Allan Liska is a Threat Intelligence Analyst at Recorded Future. In this episode, Allan returns to No Password Required to talk with Carlton Fields Attorney Jack Clabby and KnowBe4’s Kayley Melton about his experiences in the ever-evolving battlefield of cyber threats, what has changed in ransomware since his first time on the show, and his perspective on the power of AI in the battle against cyber threats. He also updates us on his passion project: the upcoming release of the Yours Truly, Johnny Dollar comic book. In this thrilling new venture, Allan breathes new life into iconic insurance investigator Johnny Dollar by casting him in a role that hits close to home: a ransomware investigator. The best part was that he gifted the No Password Required team the chance to act out a scene from the comic. Jack and Kayley also talk about the dismantling of Qakbot, marking one of the largest-ever U.S.-led enforcement actions against a botnet (and also marking one of the best U.S. mission titles - Operation Duck Hunt.) You can follow Allan on LinkedIn here: https://www.linkedin.com/in/allan2/ You can follow Allan on Twitter here: @uuallan You can learn more about Recorded Future here: https://www.recordedfuture.com/

    No Password Required Podcast Episode 40 - Courtney H. Jackson

    No Password Required Podcast Episode 40 - Courtney H. Jackson
    Courtney H. Jackson — CEO of Paragon Cyber Solutions, family-night game champion, and calculated-risk taker Courtney H. Jackson is the CEO of Paragon Cyber Solutions, a Tampa-based cybersecurity solutions provider. If Courtney’s name sounds familiar, that may be because she was awarded the Global 2022 Cybersecurity Woman Entrepreneur of the Year! In addition, Courtney is a 2023 Business Woman of the Year Honoree and a veteran of the U.S. Navy, where she was introduced to the world of cyber and IT. In this episode of No Password Required, Courtney joins Carlton Fields P.A. Jack Clabby and KnowBe4’s Kayley Melton to talk about her path to becoming a CEO, the resources that she wished she’d had when starting her career in this industry, how she uses a Cybersecurity Apprenticeship program approved by the Department of Education and Department of Veterans Affairs and SkillBridge to fill her growing team with talent, and the “one” family-night game that brings out her family’s competitive spirit. Jack and Kayley also talk about the unlikely duo behind the 2016 Bitfinex hack - one of whom is most known by her persona as the aspiring rapper “Razzlekhan.” You can follow Courtney on LinkedIn here: https://www.linkedin.com/in/courtneyhjackson/ You can follow Courtney on Twitter here: @mrschjackson You can learn more about Paragon Cyber Solutions here: https://paragoncybersolutions.com/

    No Password Required Podcast Episode 39 - Lisa Ventura MBE

    No Password Required Podcast Episode 39 - Lisa Ventura MBE
    Lisa Ventura — founder of Cyber Security Unity, Member of the Order of the British Empire, and appreciator of 80s soap operas Lisa Ventura MBE is the founder of Cyber Security Unity, a UK-based organization seeking to unite the cyber security industry globally. Lisa is also a proud neurodivergent person; after being diagnosed in her adulthood with autism and ADHD, she gained a wider understanding of who she is, how she can use her unique traits to make the world better, and how she can advocate for neurodivergent talent in the cyber industry. In this episode of No Password Required, Lisa joins Carlton Fields, P.A.’s Jack Clabby and KnowBe4’s Kayley Melton to share how she went from working on the UK version of “Who Wants to be a Millionaire?” to becoming an award-winning leader in the cybersecurity industry. She also tells us about receiving her honorary award from the British Parliament, her love of 1980s U.S. soap operas, and the sci-fi world she’d most want to live in. Jack and Kayley discuss the drastic increase in the amount of cash Americans lost to text-messaging scams in recent years. Why is this type of attack showing so much growth? How can consumers continue moving forward? They talk about all of that and more. A special thanks to the great Sarina Gandy for producing this episode. You can connect with Lisa on Twitter here: @cybergeekgirl You can connect with Lisa on her personal website here: https://lisaventura.co.uk/ You can learn more about Cyber Security Unity here: https://csu.org.uk/

    No Password Required Podcast Episode 38 - Nick Biasini

    No Password Required Podcast Episode 38 - Nick Biasini
    Nick Biasini - Threat researcher at Cisco Talos and a veteran of the highest profile cyber incidents who roasts his own coffee beans Nick Biasini leads a team of threat researchers at Cisco Talos who patrol the cutting edge of the threat landscape. Not only has he investigated some of the most significant cyberattacks in history, but he also has hands-on experience with the 1980 Olympic bobsled track. In this episode of No Password Required, Nick joins Carlton Fields’s Jack Clabby and KnowBe4’s Kayley Melton to talk about his start as an FAA security analyst, some of his top discoveries during his threat research days, and the value of getting comfortable with failure. He shares his story of investigating the SamSam ransomware and his predictions for how AI might be able to support businesses in the future. Kayley and Jack break down the $10 million reward for information leading to the arrest or conviction of alleged Russian ransomware affiliate Mikhail Matveev. You can connect with Nick on Twitter here: @infosec_nick Check it out on YouTube here: https://tinyurl.com/4mtbd4ed