11-24-20 - We're 90% Confident We've Lost All Confidence

We're 90% Confident We've Lost All Confidence

CISO Series

This week's episode of CISO/Security Vendor Relationship Podcast

We're 90% Confident We've Lost All Confidence

We're 90% Confident We've Lost All Confidence

is hosted by me, David Spark, producer of CISO Series and Mike Johnson. Our sponsored guest is Stephen Boyer, co-founder and CTO, BitSight. All three of us discussed:

Don't let your employees lose confidence in your cybersecurity efforts.

 We often talk about how important employees are to the security of a company. Research shows that 1 in 3 employees think their company's cybersecurity is a moderate or major problem. Your staff's ability to protect themselves and the company is key. if you loose them entirely, you've lost a significant part of your security capability.  Don't be non-responsive to security concerns. 

Focus on improving metrics that are highly critical and you can control.

Such metrics could be how well do you know your assets and networks. What's your MFA coverage? What's your mean time to detect, respond, and recover? Ultimately you want to look at areas specific to your organization that need improvement.

Third party risk management needs to speed up for the sake of business

. Our efforts to manage third party risk are based on questionnaires that no one wants to fill out or read. And worse, once you start working with a vendor, those questionnaires, even if accurately filled out are now useless as your vendor has probably grown and made significant changes to their network, now introducing new risks to your company.

Special thanks to this week's podcast sponsor, BitSight.

BitSight

is the most widely used Security Ratings service with a mission to change the way the world addresses cyber risk. Learn how BitSight for Third-Party Risk Management helps you efficiently mitigate the growing risk across your vendor ecosystem by taking an automated, data-driven approach.

Cyber Security Headlines

Cyber Security Headlines - November 24, 2020

This week's sponsor of

Cyber Security Headlines

is Dtex.

Dtex

NEXT Friday [12-4-20] We're Hacking User Access

Please join us on Friday, December 4th, 2020 at 10 AM PT/1 PM ET for “Hacking User Access: An hour of critical thinking on managing initial and ongoing access to network and data”.I'll be leading this discussion with Chris Hatter, CISO, Nielsen and Corey Marshall, director of solutions engineering, F5.REGISTER

STICK AROUND FOR THE CYBERSECURITY SPEED DATING!

Immediately after the video chat (11:00 AM PT/2:00 PM ET) we'll rollover to our meetup where we'll match everyone who shows up with another cybersecurity professional. And we'll do it five times in less than 30 minutes.

Thanks to our sponsor F5

Subscribe to all our podcasts

Click any of the podcasts below to get access to the subscription feeds. If you're already a subscriber, thank you!