Mike Krass

What's The Problem?

On this podcast, Mike Krass interviews Cyber Security professionals to understand what problems they face in today's connected world. From security practitioners to folks working on the business side of security, Mike explores their qualifications, asks them to name and explore a key security problem before wrapping up each episode with a fun question ("Tell us about the worst haircut you've ever had"). These punchy, 10-to-15 minute episodes are meant to educate and inspire those working in the world of cybersecurity.

No dejes de visitar la web del podcast y apoyar a su creador: mkgmarketinginc.com

Autor

Mike Krass

Categoría

Business

Web del podcast

mkgmarketinginc.com

Último episodio

6 de jun. de 2024

¿Dónde escuchar?

Podcasts en la app Replaio Radio Muy pronto

Los podcasts llegarán muy pronto a la app. Instálala ahora y sé el primero en descubrir una forma totalmente nueva de vivir los podcasts

Descárgala en Google Play Instálala gratis Android casi 10 M de descargas · valoración de 4,8 iOS muy pronto

Episodios

Episode 25 - Derek Ireifej - The Journey from Line Cook to the Security Operations Center 19.08.2022

Dereik Ireifej of CyberConvoy and I are going to discuss his journey of breaking into the world of cybersecurity as a Security Operations Center (SOC) Analyst. There are four key pain points that Derek shared on his journey from line cook to IT manager to SOC analyst. HR Job postings being disconnected from the actual requirements of the job. Case in point: a CISSP certification is required for a...

Episode 24 - Menekse Saglam - Security Operation Center (SOC) Analysts = Puzzle Makers 12.08.2022

In this episode,   Menekse Saglam , a Security Operations Analyst at CyberNow Labs, joins us today to talk about the life of a SOC analyst. A few highlights include. (1 emoji)  Defining the Security Operation Center (SOC) environment (2 emoji)  Stepping into the mindset of a SOC analyst. They are puzzle makers. Which pieces go where? This episode presents listeners with the opportun...

Episode 23 Warner Moore - The Year(s) Long Process of Building a Security Program for your Business 05.08.2022

Welcome to episode 23 of What’s the Problem #podcast. In today’s episode,   Warner Moore from Gamma Force joins the podcast to discuss the art of building a cybersecurity program for your business. First up: where do we start? “Start with the security strategy,” says Moore. Another question: How long will this take to build within our business? “Plan for at least 12 months at a minimum,” advi...

Episode 22 - Oscar Ruiz - Operational Technology (OT): Which Industries & Regions Lead the Way 29.07.2022

Tune in as Accenture’s Oscar Ruiz tells listeners which global regions and industries are the leaders versus the laggards in the world of Operational Technology (OT). Curious to learn from Oscar but don’t have the time to tune in? Well in that case… The industries that  have more mature OT environments are: Oil & Gas Utility companies: In the USA, think meter readers for electricity as we...

Episode 21 - Ambuj Kumar - 3 States Of Data: In use, In Motion, At Rest 22.07.2022

Data comes in 3 states: data in use, data in motion, data at rest In this episode of the What’s the Problem, we speak with Ambuj Kumar , the CEO of Fortanix, about how to secure data in use. This opens the door to discuss the concept of confidential computing, or the act of securing data in use that is vulnerable/in an unencrypted state. Join us to learn about the advances in protection for data i...

Episode 20 - Graham Smith - Endpoint Security's Biggest Issue: Claiming Compliance "Out Of The Box" 15.07.2022

In EPISODE 20, we dive into one of Endpoint Security's biggest problems: claiming compliance "out of the box" (or, as out of the box as possible with a dash of professional services on top). Graham will talk us through what this looks like in the #Education #Cybersecurity space, referencing the CJIS Security Policy that is enforced by the FBI, as well as HIPAA compliance out of the box in the heal...

Episode 19 - Graham Smith - How Long Does it Take to Train a Cybersecurity Salesperson? 08.07.2022

How do you take someone brand new to the world of cybersecurity and turn them into a knowledgeable seller with practical, hands-on experience? Answer: training. In this episode: the IBM Summit program. Join Graham Smith of IBM as he talks through the Summit program. 6 months of training. No client contact allowed. Broken into regional cohorts of new IBM employees who have to be able to sell to sen...

Episode 18 - James Williams - Incident Response Plans (IRPs). The good, the bad, the ugly. 30.06.2022

Incident Response Plans (IRPs). The good, the bad, the ugly. Learn about IRP's from the perspective of someone with James Williams's cybersecurity background. In this episode, James shares his experience working in the federal space (helped secure the 2020 census), discusses MSSPs with private businesses, and also dives into how he got into security as a cryptography analyst in the US Air Force.

Episode 17 - Chandra Pandey - To Demand a Ransomware Payment Or Siphon Off Your Intellectual Property? 23.06.2022

In this episode, Chandra Pandey of Seceon joins Mike to discuss ransomware with respect to Intellectual Property (IP). Specifically, they discuss that bad actor have two choices. To demand a ransomware payment … or to lurk in your network or other confidential systems to siphon off Intellectual Property over time? Chandra goes in-depth on the topic using the Nvidia hack as well as the Microsoft so...

Episode 16 - Tom Johnson - Deploy and De-provision Identity/Access Management Controls for a 5,000 Employee Hospital Group 17.06.2022

In this episode, we are going to focus on the topics of Identity and Access Management. Specifically, how do you deploy and de-provision identity/access management controls without it being painful. Or as painless as possible :) If you’re in the #healtchare #IT space, Tom Johnson provides an excellent example of what this looks like for a 5,000-person hospital system. Tune in now to hear that one!

Episode 15 - Aaron Rosenmund - Where Are All the People to Staff your Security Operations Center (SOC)? 09.06.2022

Join Aaron Rosenmund from PluralSight to discuss a critical cybersecurity topic: The people involved in Security Operations Centers (SOC). We cover three specific angles on this topic. First: There is a shortage of qualified cybersecurity professionals in the job marketplace here in 2022. No duh, I think we all know that :) Second: While there is a shortage, we need MORE professionals entering the...

Episode 14 - Bob Zinga - When Will Quantum Computing Break 256-bit Encryption? 02.06.2022

According to Bob Zinga , vCISO and Head of Information Security at Directly, we are less than 5 years away from quantum computing being able to crack 256-bit encryption in 20 seconds (or less!). So, where does that leave us? What can we do about this? How will the public and private sectors work together to create the next standard of encryption? Tune in to this episode to hear Bob share his exper...

Episode 13 - Ravina Joshi - Ransomware Threat Vectors: The Danger of Open Ports 26.05.2022

In this episode, Ravina Joshi explores the importance of closing up port access to both internal as well as external ports on your network. Additionally, Ravina tells us not just about the technical damage of leaving ports open. She goes deeper into the economic consequences associated with open ports, citing the WannaCry ransomware attack that grossed ”$100 billion USD” in ransomware payments acc...

Episode 12 - David Cornish - Identity Breaches: It’s Your Partners, Customers or Vendors Leaking Your Information! 19.05.2022

In this episode, David Cornish of Upguard explores the topic of identity breaches. A few fun bits from the episode include: More often than not, an identity breach is the result of a partner, customer, or vendor breach. Your identity information becomes a casualty of someone else's breach. “If you are doing business with somebody, you are doing data with them."

Episode 11 - Steve Fisher - Cybersecurity in the Education System 12.05.2022

In this episode, Steve Fisher of IMS goes into great detail around the security concerns that school systems have to face in the world of cybersecurity. Specifically, Steve explains how high turnover environments produce opportunities for bad actors as schools onboard or offboard both full-time as well as part-time or contract staff. If you’re interested in keeping the data safe at your own child'...

Episode 10 - Jack Borchgrevink - How to Secure Your Organization During Employee Turnover 06.05.2022

In this episode, Jack Borchgrevink of VMware joins Mike Krass to discuss two important issues: vendor responsibility to provide support in advance of a breach (service partners, playbooks, tabletop games) as well as how to secure your organization during times of employee turnover (both in and out of the organization). If these topics are of interest to you, get those ears ready to listen!

Episode 9 - Fares Mohammed - Case Study: An 85% Compromise Rate through Social Engineering 28.04.2022

In this episode, Fares Mohammed joins What’s the Problem to discuss social engineering in the world of #cybersecurity. Based on his experience, Fares discusses email phishing scams about bitcoin or NFT projects all the way down to dropping flash drives in random places in corporate offices to see who would plug them into company networked devices. Which oh, by the way, 17 out of 20 dropped USB fla...

Episode 8 - Christopher Gibbons - Creating A New Cybersecurity Category: Phishing Detection & Response (PDR) 21.04.2022

In this episode, Mike Krass chats with Christopher Gibbons to discuss the fact that in 2022 secure email gateways (SEG’s) don’t statistically provide any more protection than you already receive with Microsoft Office 365 or Google Business applications. So, what other options are out there on the market? There’s a new category of them: Phishing Detection & Response (PDR).

Episode 7 - Fatma Candas - Speaking to “Technical” versus "Manager" cybersecurity buyers 01.04.2022

This episode explores a key topic for security vendors to consider: how do I speak to a person in a Technical role versus a Business Manager role? Based on her years of experience on the buyer side of security vendor pitches, Fatma Candas details why the concept of 'less is more' is important to avoid overloading buyers with unnecessary information. Additionally, Fatma makes it crystal clear that...

Episode 6 - Adil Ahmed - Unwrap the Layers of Password Cracking Attacks 30.03.2022

Passwords, passwords, passwords being used everywhere and still we have breaches. Join security specialist Adil Ahmed as he discusses the issues with insecure passwords (did you know people still use 123456 for passwords these days?). Specific password  cracking attacks such as brute force, password spraying as well as spear phishing when a hacker has gained access to 1 (or more) of your syst...

Episode 5 - Dani Woolf - How to Avoid Pressure to Achieve Short Term Results at the Sacrifice of Long Term Strategy in Cyber Security 25.03.2022

In this episode, Dani Woolf and Mike Krass dive into the big H word: Honesty. More specifically, Dani explores how honesty and transparency around what your security product can or cannot do for the buyer's organization should be a mandatory requirement for all security sales or marketing leaders.

Episode 4 - Matt Buhler - Open Source Cyber Security to Support Finding Missing Persons 22.03.2022

Join our host Mike Krass as he brings Matt Buhler on to the What’s the Problem podcast. During this episode, they discuss Matthew’s participation in open source security analysis competitions such as Trace Labs CTF and MetaCTF. Learn how these open source competitions locate data for law enforcement to find missing persons across the "Clear" and "Dark" web as well as remove CSAM (Child Sexual Abus...

Episode 3 - Marcela Denniston - Cyber Security for SMBs 16.03.2022

Marcela Denniston joins What’s the Problem to discuss how Small-to-Mid sized businesses (SMBs) are low-hanging fruit targets for bad actors as well as what they can do to protect their organizations on a budget.

Episode 2 - Ebony Hall - Phishing 10.03.2022

Join our conversation with Ebony Hall, a Systems Engineer with Cambium Learning who also has an IT background in the military (U.S. Army), as we discussed phishing attacks in the public sector.

Episode 1 - Andy Smith - The Convergence of Cloud and Data 22.02.2022

Andy Smith the Chief Marketing Officer at Laminar joins to discuss the problems of security buyers: the convergence of cloud transformation and data democratization.

Escucha el podcast What's The Problem? en Replaio

Radio y podcasts en una sola app - gratis y sin registro. Instálala hoy y no te pierdas el estreno

Descárgala en Google Play

Replaio no es editor de podcasts; los nombres de los programas, las portadas y el audio pertenecen a sus autores y se distribuyen a través de canales RSS públicos