YouAttest

#AuditTuesday GRC Podcast

Every Tuesday we're sharing valuable content for you with the leading authorities in GRC, Compliance and Identity Security. 

Author

YouAttest

Category

Technology

Podcast website

www.buzzsprout.com

Latest episode

Jun 24, 2026

Where to listen?

Podcasts in the app Replaio Radio Coming soon

Podcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts

Get it on Google Play Install for free Android 5M+ downloads · 4.8 rating iOS soon

Episodes

#AuditTuesday - AI Governance and Model Risk Management w/ James Sayles 30.04.2025

As artificial intelligence reshapes business, compliance, and security landscapes, organizations are under pressure to implement clear governance strategies. Yet, many lack a roadmap for ethical, secure, and compliant AI deployment. In this special edition of the #AuditTuesday GRC podcast series, we welcome James Sayles, author of Principles of the Governance Model for Risk Management, to explore...

MSPs and GRC (Governance Risk and Compliance) w/ Shannon Noonan and Daniel Morrison 25.03.2025

Governance Risk and Compliance is a $45.6B market - a market the Managed Service Providers (MPSs) need to be in they want to grow. But GRC, the concept of helping enterprises obtain not only compliance but be able to show proper governance is out of the comfort zone of many MSPs.    How to start?  How do MSPs get into this much needed space that benefits both the MSP and their clients.      That’s...

Automating AWS Entitlement Reviews - with CloudArmee 12.03.2025

AWS is the premier cloud vendor - AWS is the basis of most enterprises cloud strategy.    To help us understand the importance of AWS and AWS entitlements, YouAttest has partnered with CloudArmee, prominent AWS experts. CloudArmee and YouAttest have partnered together to help enterprises determine what their access entitlements are for their AWS deployments. E.G. for your AWS deployment: What role...

EU's DORA and Identity Governance - with Ralph Menegatti from concedro 12.03.2025

Huge regulatory changes face the EU nations and the companies that work w/ the EU: Digital Operational Resilience ACT (DORA).   The Digital Operational Resilience Act (Regulation (EU) 2022/2554) solves an important problem in the EU financial regulation. DORA mandates that enterprises augment their protection, detection, containment, recovery and repair capabilities against ICT-related incidents. ...

Reviewing Privileged Accounts - with Synoptek MSP 12.03.2025

Privileged users are the source of most enterprise problems:  from outsider attacks, insider threads and compliance - the focus usually involves admin accounts. These accounts have to be reviewed - and on a regular basis.   How? This webinar addresses: Why privileged accounts need to be reviewed? When do these accounts become stale and dangerous? How to build best practices around these accounts?...

Shared Signals - What They Mean for Authorization 12.03.2025

Shared Signals - for those in the identity know - it’s a subject that time has come. Shared Signals refers to a standardized system where organizations can exchange real-time security information about users across different platforms. What we cover, here: Why do we need shared signals? How can we use shared signals? Where will WE get these signals? And what will consume them? To delve into this k...

CMMC 2.0 Ruling - What Does this Mean? With ShortArm Solutions 12.03.2025

The U.S. Department of Defense (DoD) on October 15th, 2024 published its long-anticipating first part of the final rule (32 CFR) for the Cybersecurity Maturity Model Certification (CMMC) program.  The program will require third-party verification for contractors working with controlled unclassified information (CUI) confirming that contractors are meeting existing DoD cybersecurity standards and a...

The Trump Administration and Cyber Regulations - Karen Klever, Mike Andrewes and Stacey Cameron 17.01.2025

 New administration - new attitude, regulations, priorities on cyber governance? No question. But what will it be?   What about CISA? What about NIST? What about the SEC? What about CMMC? All of these and more will be discussed. To answer these questions - YouAttest invites authorities in compliance and security matters, Stacey Cameron, CEO of Cycam Strategies, Karina Klever of Klever Compliance,...

Okta “No Password Flaw” - What Is It? How to Secure? - Featuring Greg Kutzbach 16.01.2025

Okta announced that they had a flaw in their authentication - where under “specific circumstances” a user could gain access w/o inputting the password associated with the account. How is this possible? What does this mean? And most importantly… How to secure That’s what will be discussed this very important #AuditTuesday w/ Greg Kutzbach,  Cyber Security and Digital Forensic Expert of Exhib A Cybe...

GRC Fatigue and What Can Be Done - Featuring Stacey Cameron 16.01.2025

Practically all enterprises are under some sort of IT compliance and regulations.   Holding any data that is classified as sensitive - puts the enterprise under the watchful eye of of the regulators. But with all this compliance and regulatory guidances - comes the fatigue.   What is the genesis of this fatigue - and what can be done to alleviate the grind of regulatory compliance. To answer these...

CMMC 2.0 Final Ruling - What Does This Mean? Featuring Michael Andrewes, Yastis 16.01.2025

The U.S. Department of Defense (DoD) on October 15th, 2024 published its long-anticipating first part of the final rule (the Final Rule) for the Cybersecurity Maturity Model Ceritficat (CMMC) program. The program will require third-party verification for contractors working with controlled unclassified information (CUI) confirming that contractors are meeting existing DoD cybersecurity standards a...

Mentoring the Next-Generation of Cyber Professionals - Featuring Ted Alben 16.01.2025

You can’t talk about cyber security with a professional today without the conversation turning to the topic of the next generation. Namely our youth - with questions coming up, Are they ready for jobs in cyber security? Are they capable of taking the reins of responsibility for cyber security? At what level? And what needs to be done to get them more ready.  But how AI is created is not longer a s...

MSPs: Automate Your Identity Audits 16.01.2025

This YouAttest podcast highlights the YouAttest offering for Identity security and compliance for managed service providers (MSPs.) Automating and simplifying user access reviews.

German Cyber Hacks and EU DORA - Featuring Ralf Mennegatti 16.01.2025

Cyber Attacks are worldwide. Germany is not immune to these attacks.  In fact Deutsche Bank in September 2024, stated that “Cyber-attacks alone cost the German economy an enormous 148 billion euros every year.” At the same time Germany and the rest of EU is struggling to enact the Digital Operational Resilience Act (Regulation (EU) 2022/2554) solves an important problem in the EU financial regulat...

CMMC 2.0 Final Ruling Update - Yastis, Micahel Andrewes 10.12.2024

The U.S. Department of Defense (DoD) on October 15th, 2024 published its long-anticipating first part of the final rule (the Final Rule) for the Cybersecurity Maturity Model Ceritficat (CMMC) program. The program will require third-party verification for contractors working with controlled unclassified information (CUI) confirming that contractors are meeting existing DoD cybersecurity standards a...

HR-IAM Variance - Detecting Orphan Users and Privileges w/ YouAttest 10.12.2024

HR systems for many enterprises is the identity store of record (ISoR). This is where identities are created, roles are assigned, and privileges are entitled.   But these HR systems (HRS) are NOT enforcement points – they are the container of entitlements. The enforcement of these entitlements usually falls to identity and access management (IAM) systems.    Hence comes the identity variance betwe...

MSPs: Automate Your Identity Audits w/ YouAttest "User Access Reviews" (UARs) 10.12.2024

Welcome to today’s AuditTuesday - this YouAttest podcast highlights the YouAttest offering for Identity security and compliance for managed service providers To help with the discussion we have  Bill Lauterbach , YouAttest Channel Director   Kashif Mehmood , YouAttest Field Services Director To learn more about YouAttest and how we can help secure your identities, contact us at info@youattest.com...

German Cyber Hack and EU DORA w/ Ralf Mennegatti 10.12.2024

Cyber Attacks are world-wide.   Germany is not immune to these attacks.  In fact Deutsche Bank in Sept 2024, stated that “Cyber-attacks alone cost the German economy an enormous 148 billion euros every year.” At the same time Germany and the rest of EU is struggling to enact the Digital Operational Resilience Act (Regulation (EU) 2022/2554) solves an important problem in the EU financial regulatio...

GRC Fatigue and What Can Be Done w/ Stacey Cameron (CyCam Strategies) 10.12.2024

Practically all enterprises are under some sort of IT compliance and regulations.   Holding any data that is classified as sensitive - puts the enterprise under the watchful eye of of the regulators. But with all this compliance and regulatory guidance - comes the fatigue.   What is the genesis of this fatigue - and what can be done to alleviate the grind of regulatory compliance. To answer these...

AWS - In-Depth Entitlement Audit by YouAttest w/ Raj Sawhney (CDW) 10.12.2024

AWS is the premier IAAS vendor - AWS is the basis of most enterprise cloud strategy.    To help us understand the important of AWS and AWS entitlements the video has Raj Sawhney , Managing Director, IT and Internal Audit, Cybersecurity and Business Process at CDW.  But what roles have been created?  Who has access?   What is the identity security posture of the enterprise AWS server and services?...

The Change Healthcare Hack - A Game Changer in Health Risk Management w/ Greg Kutzbach 10.12.2024

Change Healthcare announced Thursday, Feb 29th  that a ransomware group that had claimed responsibility for the attack was at fault Health care providers across the country are reeling from a cyberattack on a massive U.S. health care technology company that has threatened the security of patients’ information and is delaying some prescriptions and paychecks for medical worker. What was the hack? ...

YouAttest ITS (Identity Trust Score) - For Managed Service Providers (MSPs) w/ Eldon Sprickerhoff 10.12.2024

The Managed Service Provider (MSP) space is experiencing significant growth, with the global market currently valued at around $299 billion and projected to expand at a compound annual growth rate (CAGR) of 13.6% through 2030, indicating a substantial increase in demand for MSP services across various industries. But with this growth - comes responsibility. MSPs are expected to be able to manage t...

NIST Frameworks and CMMC for Federal Contractors - Short Arm Solutions, Jeff Chao and Rick Mischka 10.12.2024

In fiscal year 2023, the federal government spent around $759 billion on contracts with outside companies and organizations. In 2024 there are over 200,000 government contractor firms that generate $1.1 trillion in annual revenue. But the U.S. government wants the supply chain secured - and to this end has asked these suppliers especially those in the defense industrial base (DIB) to know and foll...

YouAttest Next-Gen IGA on AWS Marketplace w/ Cloud Armee (Chris Kesik) 10.12.2024

AWS is the predominant cloud service for most enterprises w/ over $90B a year and growing. Which warrant security products that are not only designed to work in the AWS marketplace, but could be sold on the AWS marketplace. That’s why YouAttest, the fastest time-to-value next-gen identity governance tool, with dedicated functionality to AWS - is now offered on the AWS marketplace. So let’s learn:...

Getting Started w/ Your Compliance Project - Karina Klever and Cloud PSO 10.12.2024

Most enterprises are under compliance, be it in healthcare, finance, insurance, government, education or defense. And most of the enterprises have compliance projects that need to be started or re-started. And thus the quandary... how to get these projects under way! YouAttest is fortunate to have Karina Klever, GRC expert and the team at CloudPSO to help out on how to get your GRC project started...

Listen to the #AuditTuesday GRC Podcast podcast in Replaio

Radio and podcasts in one app - free, with no sign-up. Install today and do not miss the launch

Get it on Google Play

Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.