Jessica Hoffman
CISO Stories Podcast (Audio)
SC Media is proud to present this month's CISO Stories program, where CISOs share tales from the trenches and unpack leadership lessons learned along the way. Hosted by Jessica Hoffman.
Author
Jessica Hoffman
Category
Podcast website
Latest episode
Jun 8, 2026
Where to listen?
Podcasts in the app Replaio Radio Coming soonPodcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts
Episodes
Security Top of Mind: Key Learnings from 2022 & Thoughts on 2023 - Ryan Kazanciyan - CSP #101 20.12.2022 25:21
Join Ryan Kazanciyan, CISO at Wiz (previously Meta, Tanium, Mandiant), and Raaz Herzberg from Wiz for a discussion on core security challenges we saw in 2022 and what should be top of mind for companies and security teams as they head into 2023. This segment is sponsored by Wiz. Visit https://securityweekly.com/wiz to learn more about them! Visit https://securityweekly.com/csp for all the latest e...
Cybersecurity Myths & Misconceptions: Avoiding the Pitfalls - Eugene Spafford - CSP #100 13.12.2022 26:02
Many people working in cybersecurity fall victim to myths, advertising hype, and misconceptions about fundamental concepts. The speaker has recently coauthored, with two distinguished colleagues, a book that is intended to dispel some of the common myths and provide information about how to better copy with the changing environment of cybersecurity. Spafford, E. et al. 2022. Cybersecurity Myths an...
Build a Cybersecurity Vision and Strategy They Can Visualize - Jason Clark - CSP #99 06.12.2022 25:06
Cybersecurity leaders are evaluated by their ability to build and sell a strategy that meets the needs of the organization. Listen to Jason's experience in creating an impactful vision and cybersecurity strategy executive management can embrace! To view the article from the CISO COMPASS Book that sparked this interview, please visit: https://files.scmagazine.com/wp-content/uploads/2022/11/CISOSTOR...
What is a vCISO? What Do They Do? Does Having One Make Sense? - Michael Phillips & Matthew DeChant - CSP #98 29.11.2022 30:34
Gartner says, "Organizations who recognize the value of a security leader but can't afford a traditional CISO should consider virtual options. "With a current total cash compensation ranging from $208K to $337K, hiring a chief information security officer (CISO) may not be in the budget for small or midsize organizations, especially those that aren't heavily regulated. Join 2 CISOS that have taken...
SMB vs Large Infosec: Different Approaches Required! - Dane Sandersen - CSP #97 22.11.2022 24:42
Are you a Small or Medium Business (SMB) or a Large Business grappling with infosec challenges? Dane moved from a large, well-funded organization to a smaller organization which accelerated global business growth during his tenure! Join us as we discuss these differences and how to adapt to the different environments. To view the article from the CISO COMPASS Book that sparked this interview, plea...
How the CISO can Make the Biggest Impact for the Company - Tim Callahan - CSP #96 15.11.2022 28:31
Information Security is often seen as a cost center and drain on the revenue of a company. It may be seen as necessary to protect the company, but the value is not always understood by leadership and peers to the CISO. Taken from personal experience, in this talk, we will explore some suggestions on how CISOs can bring and show value to their companies. Visit https://securityweekly.com/csp for all...
The Value of Cyber Defense Competitions in Building a Strong SOC - Brian Wickenhauser - CSP #95 08.11.2022 22:08
The Security Operations Center is often the first line of engagement for security incidents. It's essential that SOC teams are planned, practiced, and prepared to act. One of the best ways to do that? Cyber Defense Exercises. Join us as we discuss how these work and the value to the program. Visit https://securityweekly.com/csp for all the latest episodes! Follow us on Twitter: https://www.twitter...
Surviving and Thriving in the CISO Role for the Long Run - Jim Cameli - CSP #94 01.11.2022 31:22
The average tenure of a CISO is 18 Months to 5 years, depending upon the research. Learn from a CISO who has been employed by the same organization for almost 4 decades! Learn as Jim shares some of his key learnings as he has worked with an organization that has gone through many changes during his tenure, and some ideas to add to your own CISO career strategy. Visit https://securityweekly.com/csp...
Approaching Cloud Security from a Cloud-Native Perspective - Josh Dreyfuss - CSP #93 25.10.2022 20:57
What is the best way to approach cloud security as the cloud environment evolves and what should security leaders consider as they think about scaling their security? Join us to learn about how CISO of Wiz, Ryan Kazanciyan thinks about cloud security from a cloud-native perspective, what makes securing your cloud infrastructure so challenging, and what makes your cloud security posture "good"? Thi...
NIST Privacy Framework 101 - Dylan Gilbert - CSP #92 18.10.2022 31:08
The NIST Privacy Framework is a voluntary tool developed in collaboration with stakeholders intended to help organizations identify and manage privacy risk to build innovative products and services while protecting individuals' privacy. Join the leader of the NIST development team to learn about why the framework was created, how it can be used, and the resources available. NIST Privacy Framework,...
Cybersecurity Leadership Through Adversity - Marc Varner - CSP #91 11.10.2022 26:40
The Covid-19 pandemic caused many organizations to quickly pivot to a remote environment, while for others, this was more business as usual and simply acquiring more VPN licenses. Marc has led technology risk management/security for several large companies, experiencing even more impactful changes. How do you lead through this adversity? How do you get the organization to change? Join us as Marc s...
2022 DBIR Trends: Ransomware, Remote Work, Threat Actors...Oh My! - Chris Novak - CSP #90 04.10.2022 32:33
Chris has been a contributing author to the industry-recognized Verizon Data Breach Investigations Report (DBIR) since its inception (2008), a report which provides valuable information for CISOs on current trends and mitigation approaches. Join Chris as he reviews this year's (2022-2023) key trends with Ransomware, COVID-19 Remote Working impacts, threat actors, and risk mitigation. 2022 Data Bre...
Are CISOs Experiencing a Mental Health Crisis? - Shamla Naidoo - CSP #89 27.09.2022 29:32
CISOs have a stressful job, due to the many threats, unknowns and high expectations. How does this impact mental health? Is this different from other leadership roles? Should you discuss with your company? Join Shamla who has held several Fortune 100 CISO roles, as she discusses several approaches to this real issue. Naidoo, S. 2022. The Looming CISO Mental Health Crisis – and What to Do About it...
The NIST Cybersecurity Framework Explained - From Its Leader - Matthew Smith - CSP #88 20.09.2022 24:19
The NIST Cybersecurity Framework simplifies the language of Cybersecurity across the organization. Learn from the person who led the contracting team for the development of the NIST Cybersecurity Framework what the framework is all about and how it can reduce risk to the organization. To view the article from the CISO COMPASS Book that sparked this interview, please visit: https://securityweekly.c...
Should we be Concerned About Quantum Computing and Cybersecurity Now? - Richard Rushing - CSP #87 13.09.2022 29:13
There has been much discussion lately about Quantum Computing and the future threats to encryption and authentication it could cause. Should CISOs be worried? Are there steps that should be taken now? Join us as we discuss Quantum computing and the implications for the CISO – today. This segment is sponsored by Wiz. Visit https://securityweekly.com/wiz to learn more about them! Visit https://secur...
Are Cryptocurrencies to Blame for the Increase in Ransomware Attacks? - Bob Seeman - CSP #86 06.09.2022 30:19
Fortunes have been gained and lost through Bitcoin and other cryptocurrency purchases. Ransomware paid in cryptocurrency is rarely recovered. Should the CISOs get involved in promoting regulation of the cryptocurrency? Would this reduce the number and amounts paid in ransomware attacks? Join the author of "The COiNMEN", who has extensively researched cryptocurrencies and promoted policy changes as...
Cyberinsurance & the CISO: What You Need to Know - Bryan E. Hurd - CSP #85 30.08.2022 31:03
As ransomware wreaks havoc on our systems and information, more companies are transferring some of the risk through Cyber Insurance. What technologies are cyber insurance companies looking to have in place? How are insurance companies setting the premiums? Join Bryan as he shares his extensive cyber counterintelligence and forensic experience in supporting CISOs to navigate cyberinsurance carriers...
The Positive Power of Community Engagement - Ron Hale - CSP #84 23.08.2022 23:14
Ron has seen the CISO role emerge over as a senior executive at ISACA. Join us as Ron shares the necessity of the CISO getting out of the office and the types of forums that are most beneficial to the CISO, based upon his decades experience in enhancing the CISO profession. To view the article from the CISO COMPASS Book that sparked this interview, please visit: https://securityweekly.com/wp-conte...
The CEO Won't Wear a Security Badge? Try This! - John Ceraolo - CSP #83 19.08.2022 24:55
What do you do if the most senior person in your organization, the CEO, refuses to wear security badges- an essential control for identifying associates and restricting physical entry? Listen as John uses creativity to win the heart and mind of the CEO and embrace and become a strong advocate of the security awareness program! To view the article from the CISO COMPASS Book that sparked this interv...
Have we Forgotten About the Basics? - Benjamin Corll - CSP #82 09.08.2022 27:20
Go to any security conference today and there is a plethora of new products to prevent, detect and respond to the current threat environment. But are we missing something? Is there a less expensive and more tactical way to approach security? Join Benjamin as we review what some are the key basics are that should be in place before investing in higher-end technology. Visit https://securityweekly.co...
Using MindMaps to Strengthen Cybersecurity - Michael Wilcox - CSP #81 02.08.2022 30:09
CISOs, security leaders and their teams must consume a large amount of information from many sources to remain effective. How does the CISO organize unstructured information? How does the CISO brainstorm? How does the CISO collaborate? Mind Mapping is a very effective tool to generate ideas quickly and was also used to create the CISO COMPASS book! Learn from a CISO who uses Mind Maps™ for just ab...
How to Talk With Your Lawyer - Mark Daryl Rasch - CSP #80 26.07.2022 24:15
A Lawyer can be the CISOs best friend and advocate for cybersecurity investments. Are you frustrated with a lawyers answer of, "it depends?" Lawyers have a different thought process than many CISOs when apply the law. Join this session from a notable cybersecurity lawyer as to the differences in language and how to best take advantage of the legal expertise available to support the mission. To vie...
Insider's View of the CISO Search - Joyce Brocaglia - CSP #79 19.07.2022 31:35
Companies clearly want to hire the best candidate for the CISO Role. Where best to learn, but from someone who has been successfully recruiting Security Leaders for over 35 years? Learn from the guidance Joyce provides to her clients when hiring for the CISO role. Joyce also discusses salaries, reporting relationships, and skills necessary today. To view the article from the CISO COMPASS Book that...
Solarwinds From the Inside: The Breach and the Aftermath - Tim Brown - CSP #78 12.07.2022 29:54
The Solarwinds breach raised the visibility of Software supply chain risks, as many organizations employ third party software with potential access to sensitive information. Join the CISO of Solarwinds as he discusses what happened during the attack, the lessons learned, the mitigations employed after the attack, and excellent, transparent actions for organizations to manage software development a...
Protecting Your Intellectual Property - Michael Boucher - CSP #77 05.07.2022 23:16
As CISOs embark on implementing an Intellectual Property protection effort, they are often met with resistance, being challenged as to the necessity of the effort. Join Michael as he shares his experience in winning the support for his efforts to properly classify and secure the information and systems. To view the article from the CISO COMPASS Book that sparked this interview, please visit: htt...
Similar podcasts
Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.