Justin Fimlaid
Pwned: The Information Security Podcast
Pwned is a weekly information and cyber security podcast addressing real-world security challenges. Occasionally funny, always informational, and driven by those who live and breathe security. Each episode we dive into the latest and greatest in technology, security frameworks, best practices, and how-tos. We’ll chat with industry leaders to learn how they got to where they are, what they see coming, and how they learned from their mistakes.
Autor
Justin Fimlaid
Kategorie
Podcast-Website
Neueste Folge
3. Apr 2024
Wo hören?
Podcasts in der App Replaio Radio Bald verfügbarPodcasts kommen bald in die App. Installiere sie jetzt und erlebe als Erster einen ganz neuen Blick auf Podcasts
Folgen
Episode 200 - Reflections of Pwned...Until Next Time 03.04.2024 36:43
In this episode of Pwned, Justin and Jack celebrate their milestone 200th episodes the best way they can…with some good old Ransomware Rye. Join the duo offsite at Mad River Distillers tasting room in Burlington, Vermont, as they review podcast excerpts from the last few years and respond with fresh takes, all while guessing who actually said it. Check out the links below on people we reference in...
Episode 199 - When a BlackCat Crosses Your Path... 21.03.2024 24:28
In this episode of Pwned, BlackCat rises from the grave for another life full of ransomware attacks; this time targeting a healthcare organization, Change Healthcare, for a whopping $22 million. Join Justin and Jack as they look through the facts and speculate that BlackCat may not be who they say they are. If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. F...
Episode 198 - Heard it Through the Grapevine - Beyond the Beltway, 2024 08.03.2024 16:25
It’s a first, with Jack going solo, and the subject is a set of 8 recent recommendations from senior IT and security leaders at the recent e. Republic/Center for Digital Democracy Beyond the Beltway show. Panels of executives described their experience with successful security and technology communications, and Jack interprets and applies these for our Pwned cybersecurity audience. It’s a rare vie...
Episode 197 - Curt Wood, CISA, and the Cavalry 21.02.2024 30:36
Well-known public sector executive advisor, Curt Wood , joins the team to talk about the role of the Cybersecurity and Infrastructure Security Agency (CISA), statewide cybersecurity, and the complex responsibilities of leaders as they understand and integrate multiple communities in their cybersecurity planning. As former executive secretary and CIO for the Commonwealth of Massachusetts and the cu...
Episode 196 - The Recent MOAB Event -- Mother or Just Another? 14.02.2024 20:17
Justin Fimlaid and Jack Danahy are talking about the recent 26.6B records found exposed. While the records are mainly old, the Pwned perspective is always new. Listen in for some history, some discussion of other expert views like Troy Hunt and others, and a perspective on whether this Mother of All Breaches may in fact be more of a news story and less of a new story. View Troy's article: Troy Hun...
Episode 195 - Reflections on Election Security 09.02.2024 26:14
In a discussion covering election issues from disinformation to voter access, Justin Fimlaid and Jack Danahy are both dispelling and reinforcing listener concerns about the impact of technology and cyber threats on the upcoming elections. Tune in for an in-depth discussion on disinformation, newly proposed government/social media contact restrictions, and a look into what may come (or that the tea...
Episode 194 - Pulling MXDR Out of the Pit of Despair 31.01.2024 23:46
It’s been over two years since the team examined the overuse and increased malleability of the term “XDR” and were forced to sentence that term to the Pwned terminology dungeon, the “Pit of Despair”. Well, times change, and our intrepid topical explorers are seeing signs that a reexamination is deserved, as XDR is becoming more understood, and Managed XDR (MXDR) is now a reality. Join Justin Fimla...
Episode 193 - Nostra-BlameUs: The 2022 Predictions Revisited 24.01.2024 16:28
In honor of releasing the 2023-2024 SLED CPR, Justin and Jack take a walk down memory lane and discuss their predictions from the 2022 CPR, and how they fared in 2023. Have all 5 predictions panned out the way the duo thought, or did some fall short? Tune in to find out. Check out our annual SLED CPR . Key Takeaways: 00:00 – Title sequence 00:27 – Introduction to topic 01:15 – Prediction 1: Back t...
Episode 192 - It's Back! Pwned Previews the 2023-2024 SLED CPR 17.01.2024 24:25
In this episode, Justin and Jack are giving a sneak preview of this year’s SLED Cybersecurity Priorities Report. It’s all fresh off the presses and the team is giving a birds-eye view of the process, focus, and conclusions that the CPR is bringing to (and from) State, Local, and Higher Education leaders. If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com . For...
Episode 191 - Leaving 2023: Time for Defense in Breadth 10.01.2024 19:55
The Pwned podcast leaps into 2024 with Justin Fimlaid and Jack Danahy talking about what they've were seeing at the end of 2023, some ideas on improving for 2024, and some new ideas around understanding more about predicting breach impact and exposure. The guys are looking at some new ideas like improving attack simulation, increasing visibility, and the potential application of new approaches lik...
Episode 190 - Bonus: Top 3 of '23 Video 27.12.2023 1:02
To wrap up 2023, we would like to take the chance to reflect on what we’ve all seen this year, and what has headlined our coverage here at Pwned. Come on along and relive three of our past episodes that created the most activity, and join us in seeing how far we’ve all come. Our top 3 episodes from this year are: Episode 170 - Staying on Course When You've Got Headwinds - a mailbag episode dedic...
Episode 189 - Shaky Plans - Pwned Takes on the President's Blueprint for an AI Bill of Rights 20.12.2023 27:35
In the second part of our series on Federal AI proclamations, Justin and Jack make a point-by-point assessment of the Federal view on inalienable protections from AI misbehavior. If you’re concerned with AI’s incursions into everyday life or are interested in understanding whether our leaders have a grasp on the issues, this is an episode you can’t miss. AI is complicated. Cybersecurity is complic...
Episode 188 - Safe, Secure, and Trustworthy. Pwned on the President's AI Executive Order 05.12.2023 29:03
In this episode, Justin and Jack are reviewing the recent presidential executive order on AI. While there are plenty of good ideas in the mix, the team is taking some time to examine their feasibility, their value, and their likelihood of execution in our current, fast-paced, AI environment. Stay tuned for part two on the Blueprint for an AI Bill of Rights! Check out the resources we referenced...
Episode 187 - Pwned Making the Case for Judicial Security 22.11.2023 18:17
Following Justin 's work with members of the press on the recent Kansas City court system ransomware shutdown, he and Jack are talking about the potential impacts and repercussions of increasing cyberattacks against the judiciary. There are issues of timely judgements, sealed records, even courts paying criminals, as the Pwned team judges the situation and brings some new evidence to the discussio...
Episode 186 - The Acquisition of Revelstoke 01.11.2023 20:56
In this episode of Pwned, Justin and Jack discuss the recent acquisition of automation firm Revelstoke by managed security vendor Arctic Wolf. With a lot of cash on the line, is this deal a right swipe, or do they think Arctic Wolf will be left in the dark when the lights come up? Tune in for the details. Key Takeaways: 00:00 – Title sequence 00:28 – Introduction to acquisition 02:04 – Financial d...
Episode 185 - An Unconventional Take on Cybersecurity Awareness 26.10.2023 20:51
In this episode of Pwned, Justin and Jack tackle Cybersecurity Awareness Month 2023. Coming at you with three unconventional tips to keep in the back of your mind, the duo dive into the world of security for vendors, purchasers, and members of the public. Key takeaways 00:00 – Title Sequence 00:34 – Introduction to Cybersecurity Awareness Month 01:36 – What does security awareness mean? 02:40 –...
Episode 184 - 4 Steps to a Security Strategy 04.10.2023 32:03
In this episode of Pwned, Justin and Jack are evaluating a four-step process for developing a cybersecurity strategy and end up creating one of their own. If you’re looking for some ideas or a blueprint for your own planning, it’s probably worth a listen. Stay tuned for our upcoming blog: 4 Steps to a Rock-Solid Cybersecurity Strategy for an in-depth look at what we came up with! As a recap, here...
Episode 183 – Making a New Cybersecurity Job Work 06.09.2023 12:47
In this mailbag episode of Pwned, Justin and Jack respond to a listener question that has all the earmarks of a well-known security problem: a new leader starting in an organization with what feels like a random mix of products and problems. By talking through the different elements of the situation, the team offers proven and straightforward suggestions for making the transition more action-orien...
Episode 182 – The Next AI Episode – With Diana Kelley! 23.08.2023 33:44
This week, Justin and Jack are talking AI with one of the security industry’s most well-known experts and influencers, Diana Kelley of Protect AI. The topics, like the growth of AI, are all over the place, from the impacts of AI on security teams to secure AI development, and even a quick mention of the rights of sentient AI. Come hear what’s new in ML SecOps and high-integrity AI, and some well-i...
Episode 181 – Breached Trust: Lazarus Making Friends 16.08.2023 18:13
In this breach of the week episode, Justin and Jack look into the recent attacks targeting the GitHub developer community. Developers are increasingly being targeted by North Korean state-sponsored threat actors to use and execute poison code. Tune in to get the scoop. The DarkReading article can be found here: North Korean Cyberspies Target GitHub Developers (darkreading.com) CISA’s request for c...
Episode 180 – Thales Not Impervious to Imperva’s Charm 02.08.2023 17:47
Multifaceted French security and defense firm, Thales, has acquired longtime application and availability cybersecurity pioneer, Imperva, in a major acquisition from U.S. cybersecurity private equity leader, Thoma Bravo. In this RightSwipes episode of Pwned, Justin and Jack review the histories of both Imperva and Thales, adding valuable context to the market analysis. There’s plenty to talk about...
Episode 179 – Collaboration Celebration 20.07.2023 13:10
In Massachusetts, a group of communities are banding together to improve IT acquisition effectiveness. In this episode of Pwned, Justin and Jack explore the benefits of this alliance, ideas on the cybersecurity impact, and the relationship between this effort and other regional and whole-of-state strategies. It’s a feel-good episode of Pwned, and the team is bringing positive vibes. Learn more abo...
Episode 178 – SOC Talk 13.07.2023 17:14
In this episode Justin and Jack are taking a question from the mailbag on choosing regional or private security operations centers (SOCs). The conversation quickly turns to finding the best SOC for your needs, the most beneficial preparation before engaging with vendors, and the right of any organization to demand answers in language they can understand and apply. Watch this week’s video: If you h...
Episode 177 – The Obligatory AI Episode: Prevail or Fail? Can’t Spell Either Without AI 06.07.2023 16:41
From ChatGPT to predictive analytics, AI techniques are changing all industries and knocking on the door of cybersecurity. Justin and Jack are answering with an episode examining potential advancements and limitations that we’ll likely encounter over the next few years. If you’re interested in an experienced, optimistic, but grounded view on what AI can do for your security operation, this is an...
Episode 176 – Outcomes, Prescriptions, and Presidential Policy 28.06.2023 21:37
The White House has released another statement on their National Cybersecurity Strategy. This time Justin and Jack are supportive of the tone and some of the content. In this episode, hear about the new approach to improving cybersecurity with an emphasis on vendor responsibility, liability, opportunities, and outcomes. Do you think the President’s directive is helpful, or do you think it lacks t...
Ähnliche Podcasts
Replaio ist kein Herausgeber von Podcasts; die Namen der Sendungen, Cover und Audioinhalte gehören ihren Autoren und werden über öffentliche RSS-Feeds verbreitet