08-11-20 - I Need Resources to Free Up My Resources

I Need Resources to Free Up My Resources

CISO | Security Vendor Relationship Series

This week's episode of CISO/Security Vendor Relationship Podcast

I Need Resources to Free Up My Resources

I Need Resources to Free Up My Resources

is hosted by me, David Spark, producer of CISO Series and Mike Johnson. Our sponsored guest is Aaron Ansari, vp, Cloud One, Trend Micro. All three of us discussed:

The automation paradox is real.

Turns out the majority of security teams don't automated because they don't have the expertise to do it. A little less than half believe they need to hire more staff just to be able to automate which appears to negate the value of automation. 

Multiple panes of glass.

Most companies are operating numerous "single panes of glass". The reality is security maintenance just can't be simplified into a single screen. Nor is there one universal screen that works for all customers. Every vendor claims they have the solution. Regardless, if there are APIs each organization can craft their own look and feel which will probably be more than one screen.

Pros and cons of vendor lock-in.

To avoid vendor lock-in you have to plan your exit strategy at the very beginning. What do you need to backup? What's portable? What's not? If there is config-as-code option, use it as there will often be a middleware option that allows for re-porting your data and setup. But there are some situations where you're so eager to work with a vendor you see them as a partner. You want to deepen the relationship and capabilities where both of your successes are intrinsically intertwined.

Special thanks to this week's podcast sponsor, Trend Micro.

Trend Micro

Trend Micro Incorporated, a global leader in cybersecurity solutions, helps to make the world safe for exchanging digital information. Our innovative solutions for consumers, businesses, and governments provide layered security for data centers, cloud environments, networks, and endpoints. For more information, visit 

.

Elliot Lewis, CEO, Keyavi Data on fighting cybercrime

This Friday [8-14-20] We're Hacking Healthcare Security

Join us this Friday, August 14th, 2020 at 10 AM Pacific/1 PM Eastern for

"Hacking Healthcare Security: An hour of critical thinking on reducing risk across the health industry’s unique threat vectors.”.

I'll be leading this discussion with Jon Ehret, vp of strategy & risk, RiskRecon and Errol Weiss, CSO, Health-ISAC 

Watch this

for Friday's event.

Plus, immediately after the video chat (11:00 AM PT/2:00 PM ET) we'll rollover to the CISO Series Friday Meetup. Each participant will be randomly matched up in impromptu 1-on-1 five-minute conversations with fellow cybersecurity professionals. Link to do that will be made available during the video chat.

Huge thanks to

for sponsoring.

All our coverage on API security

Topic Takeover: API Security

When we set out on a “Topic Takeover” program, our goal is to generate a ton of content, across multiple media, in one topic in cybersecurity.

We just finished a program on the topic of API security.

.

Thanks to our "Topic Takeover" sponsor, Salt Security.

Salt Security

protects the APIs at the core of SaaS, web, and mobile applications. By using patented behavioral protection Salt Security automatically and continuously discovers and learns the granular behavior of each unique API and stops attacks. In 2020 Salt Security was named a Gartner Cool Vendor in API Strategy.

Helen Patton, CISO, The Ohio State University on storytelling in cybersecurity

SUBSCRIBE TO BOTH PODCASTS

Go ahead and click on any of these links to subscribe to the podcast feed of your favorite podcast catcher.

If you're already a subscriber, THANK YOU! If you like either or both shows, please tell all your friends on social media and write a review on iTunes.