Dr. Dave Chatterjee
The Cybersecurity Readiness Podcast Series
The Cybersecurity Readiness Podcast Series provides a reflective, thought-provoking, and jargon-free discussion on how to enhance the state of cybersecurity at an individual, organizational, and national level. As of September 2, 2024, the podcast series has produced over 70 episodes, been downloaded over 10K times, and has listeners in 105 countries. The podcast episodes are used in classrooms and for corporate training and serve as insight sources in research and publications. Host Dr. Dave Chatterjee converses with subject matter experts, business and technology leaders, trainers and educat...
Author
Dr. Dave Chatterjee
Category
Podcast website
Latest episode
Jul 8, 2026
Where to listen?
Podcasts in the app Replaio Radio Coming soonPodcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts
Episodes
Unraveling the Positive and Negative Impacts of Generative AI 22.11.2023 41:56
In a very thought-provoking discussion, Artificial Intelligence (AI) expert Tony Hoang, Ph. D ., traced the evolution of Gen AI, highlighted the many benefits, and also shared his concerns about the irresponsible and abusive use of this technology. What got my attention were the following realities: Innovators often prioritize speed over responsible AI development, leading to potential negat...
Best Practices for Overcoming Troublesome Vulnerability Management Trends 01.11.2023 48:58
A 2023 State of Vulnerability Management Report finds that only half of the surveyed organizations (51%) have, at best, a moderate level of visibility into vulnerabilities. Several other vulnerability management metrics, such as maturity levels, frequency of vulnerability scans, and patch deployment speed, reveal an alarming and troublesome trend. In this episode, Ashley Leonard, CEO at Syxsense ,...
Streamlining and Improving Security by Standardizing Identity Management 18.10.2023 32:06
While cloud computing has become a great digitization enabler to enterprises, multiple clouds—especially when intersecting with on-premises systems and one another—can produce some challenges. Many organizations can end up with an "identity gridlock" of competing identity systems and protocols since each cloud platform cannot exchange access policy data with other cloud providers. It was an absolu...
How Informed is the Board of Directors on Cybersecurity Risks? 03.10.2023 52:18
With the global cost of cybercrime expected to reach $10.5 trillion by 2025, cybersecurity has become a board-level imperative. According to the Diligent Institute survey 'What Directors Think ,' board members ranked cybersecurity as the most challenging issue to oversee. Even though boards say cybersecurity is a priority, they have a long way to go to help their organizations become resilie...
Enhancing Incident Response Effectiveness 06.09.2023 55:01
According to a 2023 IBM report, companies take 197 days to identify a breach and 69 days to contain one on average. The delay between infection, detection, and containment can cost businesses millions of dollars. Only 45% of the companies polled had an incident response plan in place. In this episode, Markus Lassfolk , VP of Incident Response, Truesec , and Morten von Seelen, Vice President of the...
Cybersecurity in the Age of AI 12.07.2023 38:36
While large language models such as ChatGPT can be used to write malicious code, AI tools are increasingly used to proactively detect and thwart cyber-attacks. There is growing recognition of AI’s potential to fight cybercrime. Ian L. Paterson, CEO, Plurilock , sheds light on how AI has impacted the cybersecurity industry, especially how Generative AI is changing the industry. Describing the role...
Identity Orchestration Strategies and Best Practices 28.06.2023 42:39
Cloud migration and remote work requirements are forcing organizations to modernize their applications and identity systems. Making the transition is both time-consuming and expensive using traditional software development practices. By decoupling applications from identity, orchestration can alleviate the burden while allowing companies to seamlessly mix and match different cloud providers as wel...
Creating a Diverse Cybersecurity Workforce and Solving the Talent Shortage 14.06.2023 56:51
Recent cybersecurity workforce study reports reveal that a) there’s still a global shortage of 3.4 million workers in this field, and b) only 25% of the global cybersecurity workforce are women. In this episode, I had an engaging discussion with panelists Ashley Podhradsky, Vice President of Research and Economic Development at Dakota State University , and Kriti Arora, Security Global black belt,...
Countering Insider Threats: Seven Science-Based Commandments 26.04.2023 45:55
Research finds that there was a 44% increase in insider threat incidents across all types of organizations, and 56% of the reported incidents were due to negligence. Equally alarming is that the average annual cost to remediate a negligence incident was $6.6 million. Dr. Eric Lang, Ph. D., Director, Personnel and Security Research Center (PERSEREC), United States Department of Defense , draws upon...
Mitigating Risks from Unmonitored Communication Channels 14.04.2023 56:39
Significant fines in excess of $2 billion have been levied on organizations in the financial services sector for failing to capture, retain and supervise communications. This crackdown on non-compliant communications is the clearest indicator yet that regulators have lost patience with firms that still haven't addressed supervision and record-keeping risks that were exacerbated by the pandemic. I...
Implementing Secure and Fast Authentication Processes 30.03.2023 41:51
Traditional authentication methods are outdated and need many layers of code, which can take time and resources away from developer teams. If developments like FIDO2, WebAuthn, and passkeys are to be the cornerstones of a passwordless future, then every application (not just Apple, Google, and Microsoft) needs an easy way to adopt these methods and weave them into current user authentication flow...
Proactive Resilient Approach to Cybersecurity 15.03.2023 49:40
It is well known that a proactive intelligence-driven approach to cyber governance is the way to go. But it is easier said than done. Embracing and sustaining such an approach requires high commitment, preparedness, and discipline. Kriti Arora, Security Global Black Belt, Threat Intelligence and Enterprise Attack Surface Management, Microsoft , shares her experiences guiding clients to adopt an in...
The Challenges and Best Practices of Cyber Security in Emerging Markets 01.03.2023 48:44
“While developed markets may today bear the brunt of cyber breaches, emerging markets are no less vulnerable. Their risks arise from weak processes and governance, the complexity of global supply chains, the need to remain low cost to attract investment, and the rapid adoption of technology without adequate cyber defenses.” Andre Keartland, Solutions Architect at Netsurit, Johannesburg, South Afri...
Cybersecurity Perspectives of a Community College President 15.02.2023 44:14
In this episode, Pamela Senegal, President, Piedmont Community College , shares several best practices, including having an information technology presence in each of the college-wide committees. I had the pleasure of meeting Pamela at a cybersecurity symposium organized by the World View Program at the University of North Carolina-Chapel Hill. Charle LaMonica, the Director of UNC's World View Pro...
From Law Enforcement Officer to Chief Information Security Officer 01.02.2023 33:59
In this episode, Brian Penders, Chief Information Security Officer, at the University of North Carolina Chapel Hill Medical School , shares his exciting but challenging journey from working as an engineering lab technician in the US nuclear submarine to being a law enforcement officer with the Vermont State Police and then gravitating to his current role of Chief Information Security Officer at a...
To trust or not to trust: the overwhelming challenge 18.01.2023 40:42
Clinical psychologist Beatrice Cadet, Scientist Integrator at Netherland's Organization for Applied Scientific Research (TNO) , draws upon multiple concepts such as 'learned helplessness' to explain why people still fall for phishing attacks despite the training. Beatrice emphasizes the need to factor in human behavioral traits and motivational triggers when developing social engineering solutions...
Useful Technology Should Be Attack Agnostic 04.01.2023 43:29
In this episode, Patricia Muoio, Ph. D., Partner at SineWave Ventures and Former Chief of Trusted Systems Research Group, National Security Agency , sheds light on the cybersecurity technology landscape and emphasizes the need to develop technologies that are attack agnostic. Some of the questions driving the discussion include: a) what progress has been made in the development and use of cybersec...
Do you see what attackers see? Threat modeling done right 21.12.2022 35:37
Threat modeling is an intrinsic part of information security governance and needs to be done well. However, research finds that many organizations don't do it well, some are pretty haphazard or chaotic in their approach. In this episode, Marcos Lira, Lead Solutions Engineer at Halo Security , sheds light on how to do threat modeling the right way. The key questions driving the discussion were: a)...
Implementing Phishing Resistant Multifactor Authentication 07.12.2022 40:08
The Cybersecurity and Infrastructure Security Agency (CISA) recently (Oct 31, 2022) released fact sheets urging all organizations to implement phishing-resistant multi-factor authentication (MFA). In this episode, George Gerchow, Chief Security Officer and Senior Vice President of IT, Sumo Logic , and I have an in-depth discussion on this very important security subject matter. The scope of covera...
How do SMBs protect themselves from ransomware attacks? 23.11.2022 39:50
A recent Global SMB Ransomware survey finds that nearly half of small and medium-sized businesses (SMBs) have experienced a ransomware attack, yet the majority aren't sure they are a target, and most are not confident they can fend off such an attack. Since 60% of SMBs are known to go out of business within six months of being hacked, it is a very troubling state of affairs. In this episode, Grays...
Cybersecurity As A Strategic Opportunity 09.11.2022 38:15
In this episode, Kal Sambhangi, Senior Vice President, Cybersecurity Strategy and Architecture at Truist , shares his vision of the future of cyber governance. According to him, the leadership mindset needs to change whereby they are optimistic and opportunistic about cybersecurity and view developing cybersecurity capabilities as a source of competitive advantage. Kal also emphasized the importan...
Comprehensive Asset Discovery 26.10.2022 38:24
Comprehensive asset discovery is foundational to robust and proactive cybersecurity governance. The Cybersecurity and Infrastructure Security Agency recently issued a directive (BOD 23-01) requiring federal enterprises (civilian executive branch) to perform automated asset discovery every 7 days. Among other things, the directive also requires federal enterprises to initiate vulnerability enumerat...
Is Cybersecurity A Moving Target at Academic Institutions? 12.10.2022 44:05
In a highly engrossing and in-depth discussion, Tej Patel, Vice President, and CIO at Stevens Institute of Technology sheds light on the various information security challenges that plague academic institutions and how best to deal with them. He talks about establishing a highly collaborative and security-centric culture, structuring an ideal CIO-CISO relationship, effective execution strategies,...
Securely Migrating to the Cloud -- Insights from the American Cancer Society Experience 28.09.2022 43:31
As more organizations embrace cloud-based services, securely migrating to the cloud is becoming an important capability. Keith Weller , former Vice President, Enterprise Technology Services, American Cancer Society (ACS), spearheaded a highly successful migration initiative where they transitioned a 5000-square-foot donation processing on-premise data center to the cloud. Keith and his team compl...
Detecting Malicious Insider Threats by Monitoring User Journeys 14.09.2022 27:24
Insider threats are often considered the biggest risk for organizations because they can cause the most destruction. Survey reports, and studies, have found that organizations have spent millions of dollars to recover from insider threat attacks. Proactively detecting and thwarting such threats is a critical aspect of robust information security governance. Doron Hendler, CEO, and Co-Founder at...
Similar podcasts
Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.