Infosec
Cyber Work
Learn how to break into cybersecurity, build new skills and move up the career ladder. Each week on the Cyber Work Podcast, host Chris Sienko sits down with thought leaders from Carbon Black, IBM, CompTIA and others to discuss the latest cybersecurity workforce trends.
Author
Infosec
Category
Podcast website
Latest episode
Aug 18, 2025
Where to listen?
Podcasts in the app Replaio Radio Coming soonPodcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts
Episodes
How SOCs are changing: Location, remote work and more | Guest A.N. Ananth 16.01.2023 35:08
A.N. Ananth of Netsurion joins us to talk about the future of SOCs. Security operations centers used to look more like bunkers crowded with network traffic analysts who rarely got to see the sun. Ananth sees the Covid-induced era of remote SOCs to be a new reality but also a way to bring new professionals in from small towns are far-away locations, making it a partial fix to the security skills ga...
The changing roles of red teaming | Guest Matt Lorentzen 09.01.2023 49:09
Cyberis’ Matt Lorentzen talks all things pentesting, red teaming, the changing roles that red teaming has in fine-tuning and interrogating modern security and why you don’t have to stop doing the fun stuff even when you’re climbing the career ladder. 0:00 - Intelligent pentesting, red teaming and modern security 2:30 - Matt Lorentzen's interest in cybersecurity 3:51 - What is a security cons...
How to keep symmetric and asymmetric cryptography straight | Cyber Work Hacks 05.01.2023 6:03
Whether you’re studying for the CEH, CISSP, Pentest+, or even the Security+, there’s always one question about cryptography, and it’s easy to miss! Want to hear a cool trick to keep symmetric and asymmetric cryptography straight in your head? Keatron Evans has one, and he told it to me — stay tuned and listen closely because it’s a Cyber Work Hacks! 0:00 - Cryptography exam tips 0:23 - Certificati...
U.S. Cyber Games Season II: Behind the scenes with the head coach | Guest Ken Jenkins 12.12.2022 55:32
Returning guest Ken Jenkins stops by to talk about his work as the head coach of the US Cyber Games. If you’re intrigued by this emerging e-sport, you will want to keep it here: Jenkins discusses the selection process for the athletes, the roles of the coaches and mentors, and the intense, real-time collaboration going on during the competitions. – Get your FREE cybersecurity training resources: h...
Connecting cloud security, data privacy and cybersecurity | Guest Ameesh Divatia 05.12.2022 45:00
Ameesh Divatia, CEO of Baffle, Inc., talks about data privacy, data security, cloud security and how a skillset in the middle of that triangle will be your best asset in the years to come. All that, and a little bit of local-focused philanthropy. – Get your FREE cybersecurity training resources: https://www.infosecinstitute.com/free – View Cyber Work Podcast transcripts and additional episodes: ht...
K-12 cybersecurity: Protecting schools from cyber threats | Guest Mike Wilkinson 21.11.2022 37:41
Michael Wilkinson leads the digital forensics and incident response team at Avertium. The team is dedicated to helping clients investigate and recover from IT security incidents daily. Wilkinson talks about threat research, the threat of Vice Society, how K-12 cybersecurity can improve and much more. – Get your FREE cybersecurity training resources: https://www.infosecinstitute.com/free – View Cyb...
Behind the scenes of ransomware negotiation | Guest Tony Cook 14.11.2022 38:45
Tony Cook of GuidePoint Security knows a lot about threat intelligence and incident response. But he’s also used these skills while working in ransomware negotiation! Cook has handled negotiations for all the big threat groups — REvil, Lockbit, Darkside, Conti and more — and he told me about what a ransomware negotiator can realistically accomplish, which threat groups are on the rise, and why neg...
CMMC has changed: Here's what you need to know | Guest Leighton Johnson 07.11.2022 38:36
Infosec instructor and 40-year cybersecurity veteran Leighton Johnson talks to us about all things CMMC. After last year’s attempted rollout, CMMC pulled back and retooled its entire framework. But why? Johnson gives you all the details, including how to train to be a CMMC-certified auditor. – Get your FREE cybersecurity training resources: https://www.infosecinstitute.com/free – View Cyber Work P...
Cybersecurity public speaking techniques | Guest Lisa Tetrault 24.10.2022 39:53
Lisa Tetrault of Arctic Wolf talks about the adhesives that hold cybersecurity together: communication, collaboration and strong teamwork. First, Tetrault discusses how public speaking at conferences and events made her a better cybersecurity professional; second, she talks about how her work mentoring cybersecurity students helps them fast-track their way into the cybersecurity community; and thi...
Digital identity and cybersecurity are inseparable | Guest Susan Morrow 17.10.2022 49:14
Susan Morrow returns for her fourth time on the Cyber Work Podcast and the first since 2019. Morrow, simply put, is plugged into every aspect of digital identity currently being discussed, and she takes us deep into the security, ethical, practical and UX hurdles of current identity practices and gives us both an optimistic and pessimistic version of the digital identity practices in 10 years. – G...
Bad data privacy protocols can become an identity fraud disaster | Guest Stephen Cavey 10.10.2022 43:59
Stephen Cavey, co-founder and chief evangelist of Ground Labs, talks about the jagged jigsaw puzzle of data collection, data privacy and the dozens — if not hundreds — of privacy regulations and frameworks that govern them. Cavey and I talk about the bad old days of indiscriminate data collecting and grossly insecure payment process. We also address the places where the privacy experts of the futu...
Privacy and international business | Guest Noriswadi Ismail 03.10.2022 45:39
Noriswadi Ismail of Breakwater Solutions and the Humanising 2030 campaign joins us to talk about privacy as it pertains to international business, cybersecurity and why it’s important not just to learn the certification variants but also the cultural variants that shape them. And via the Humanising 2030 campaign, Noriswadi and colleagues hope to bring a more ethical and diverse approach to program...
Attack surface managers and the state of attack surfaces | Guest Dave Monnier 26.09.2022 48:28
Dave Monnier of Team Cymru talks about the state of attack surfaces, the strengths and shortcomings of attack surface managers and why something we refer to as a “soft” skill might be the hardest skill of all! Plus, we touch on shadow IT. – Get your FREE cybersecurity training resources: https://www.infosecinstitute.com/free – View Cyber Work Podcast transcripts and additional episodes: https://ww...
The importance of API security and PII | Guest Giora Engel 19.09.2022 33:38
Today on Cyber Work, Giora Engel of NeoSec talks about securing APIs. Find out why APIs are the new network, why their very nature makes them vulnerable to abuse and how to position yourself as an authority in the ever-growing field of API security. All that and a little entrepreneur talk. – Get your FREE cybersecurity training resources: https://www.infosecinstitute.com/free – View Cyber Work Pod...
Corporate data breaches and security awareness training | Guest Mathieu Gorge 12.09.2022 42:28
Mathieu Gorge of VigiTrust talks about the Marriott Hotel data breach that happened back in June, including the facts of the event and why once-per-year security awareness training isn’t enough when many employees only work seven months of the year. He also offers some privacy tips that will keep your hotel system privacy compliant under a whole host of different compliance frameworks. – Get your...
Overcoming challenges to build a cybersecurity career | Guest Dr. Chanel Suggs 29.08.2022 48:05
Today's Cyber Work Podcast features Dr. Chanel Suggs, the Duchess of Cybersecurity®. Dr. Suggs is a teacher, business owner and thought leader and has appeared on TV and podcast platforms around the world to talk about cybersecurity and the hacker mentality. She also had an incredibly challenging and seemingly insurmountable upbringing. Her tumultuous story can be found in her book, “Against...
What's it like to work in emergency response? | Guest Christopher Tarantino 22.08.2022 44:46
Learn all about emergency response — and the myriad techniques and skills that term implies — in today's episode featuring Christopher Tarantino, CEO of Epicenter Innovation. Is there a physical security component? Yes! Is there a cybersecurity component? Big time! Is there an educational element? Absolutely! Find out how disaster planning, preparation, remediation and post-event rebuilding a...
Securing operational technology: ICS, IoT, AI and more | Guest Francis Cianfrocca 15.08.2022 53:08
If you want to learn more about working with operational technology (OT) and internet-connected devices, then don't miss today's episode with Francis Cianfrocca, CEO of Insight Cyber Group. He discusses security problems around OT and IoT systems and shares some surprising stories of intruders in the electrical grid. He also talks about why it’s so hard to secure a set of machines that o...
Cybersecurity project management: A peek behind the curtain | Cyber Work Live 08.08.2022 1:01:52
Last year, Cyber Work Live brought you into the world of cybersecurity project management — with tips for acquiring your skills, improving your resume and getting your foot in the door. But what does the day-to-day work of cybersecurity project managers look like? Jackie Olshack and Ginny Morton return to answer that question. They’ll also share experiences they’ve gained while working on some of...
OWASP Top 10: What cybersecurity professionals need to know | Guest John Wagnon 01.08.2022 39:08
On today's episode, our old pal John Wagnon, Infosec Skills author and keeper of the secrets of OWASP, joins me to talk about the big changes in the OWASP Top 10 that happened at the end of 2021, his own class teaching the Top 10, and some job tips, study hints and career pivots for people interested in these vulnerabilities. Find out why access managers are going to rule the world someday! –...
Your personal data is everywhere: What can you do about it? | Guest Mark Kapczynski 25.07.2022 44:37
Today on the Cyber Work Podcast, Mark Kapczynski of OneRep reminds us of an awful truth most people either don’t know or don’t like to think about. Your personal information — your address, your phone number, your age — all of these things are on the public internet! Mark talks about OneRep’s mission to scrub personal information from these sites, suggests changes that could help prevent this prob...
Keeping your inbox safe: Real-life BEC attacks and email fraud careers | Guest John Wilson 18.07.2022 42:34
Today's episode is all about email fraud. John Wilson, head of the cyber intelligence division at Agari by HelpSystems, discusses Business Email Compromise (BEC), spearphishing, whaling, romance fraud and more. If you can name it, John’s studied it. And he's likely collected intel that’s managed to freeze cybercriminals’ assets — and even put them away. He gives career tips and advice fo...
Cybersecurity has a marketing problem — and we're going to fix it | Guest Alyssa Miller 27.06.2022 56:22
On today's episode, we're breaking down phrases you've heard a million times: “security is everyone’s job,” “humans are the weakest link in the security chain,” “it’s not if you get breached, but when.” Returning guest Alyssa Miller drills into these comforting nostrums and explains why, even when they’re used for well-intended purposes, they often act to limit the conversation and...
What does a secure coder do? | Cybersecurity Career Series 20.06.2022 20:56
Secure coders are responsible for developing and writing secure code in a way that protects against security vulnerabilities like bugs, defects and logic flaws. They take proactive steps to introduce secure coding methodologies before the application or software is introduced into a production environment, often following recommendations from the Open Web Application Security Project (OWASP) Found...
Cybersecurity jobs: How to better apply, get hired and fill open roles | Guest Diana Kelley 13.06.2022 1:00:37
Diana Kelley returns to the show to discuss her work as a board member of the Cyber Future Foundation and the goings-on at this year’s Cyber Talent Week. Whether you’re a cybersecurity hiring manager who doesn’t know why you’re not getting the applicants you want, a candidate who hears the profession has 0% unemployment but still can’t seem to get a callback or anyone in between, DO. NOT. MISS. TH...
Similar podcasts
Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.