Greg Schaffer
The Virtual CISO Moment
The Virtual CISO Moment dives into the stories of information security, information technology, and risk management pros; what drives them and what makes them successful while helping small and midsized business (SMB) security needs. No frills, no glamour, no transparent whiteboard text, no complex graphics, and no script - just honest discussion of SMB information security risk issues. Brought to you by vCISO Services, LLC, a leading provider of vCISO and information security risk management services. Visit https://vcisoservices.com to learn more. A Second Chance Publishing, LLC podcast.
Author
Greg Schaffer
Category
Podcast website
Latest episode
Jun 30, 2026
Where to listen?
Podcasts in the app Replaio Radio Coming soonPodcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts
Episodes
The Virtual CISO Moment S4E47 - A Conversation with David Leech 11.10.2022 26:26
David Leech is a vCISO using his global, operational, program management, and security experience together with leadership skills to drive digital transformation, product innovation, and risk reduction for business growth, involving work across Risk Management, Technical Architecture, Control Frame Works, HIPAA, FFIEC, PCI, HITRUST, FedRamp, and SOC compliance. He has supported clients in multiple...
VCM Quick Strike for Monday, October 10, 2022 10.10.2022 11:54
Uber trial a lost opportunity to promote cyber governance, hacked IP scanning tool, leak of Alder Lake BIOS, LilithBot Malware as a Service, and healthcare provider IT incident likely malware - plus thoughts on the importance of business continuity table top exercises. https://www.forbes.com/sites/jodywestby/2022/10/08/uber-trial-a-lost-opportunity-for-cyber-governance/amp/ https://www.scmagazine....
The Virtual CISO Moment Wrap Up for Friday, October 7, 2022 07.10.2022 12:50
Threat actors may influence US midterm elections, DIB org attached with APT, an interesting approach to password expiration policies, an updated primer and review on cyber insurance, and Uber's CISO convicted on two counts related to breach actions - plus more thoughts on ethics. https://www.ic3.gov/Media/PDF/Y2022/PSA221006.pdf https://www.bleepingcomputer.com/news/security/hackers-stole-data-fro...
Throwback Thursday for October 6, 2022 - A Conversation with Nick Santora 06.10.2022 22:28
From June 21, 2022 - Nick Santora, CEO of Curricula ( curricula.com ), discusses information security awareness and how Curricula uses storytelling to make both short term and long term impressions, resulting in increased security across the organization. He also discusses his path to entrepreneur, challenges in the SMB infosec awareness space, and "wisdom walks"!
VCMS4E46 - The RETR3AT Sessions - A Conversation with Joe Jakubielski 05.10.2022 10:10
Joe Jakubielski is a Cyber Defense Analyst with the Carolina Cyber Center. He discusses his recent pivot to a new career in cyber, including challenges and opportunities ahead. Recorded at RETR3AT Cyber Conference Montreat College September 23, 2022.
The Virtual CISO Moment S4E45 - A Conversation with Gary Chan 04.10.2022 23:02
Gary Chan of Alfizo LLC helps businesses stay secure from hackers and insider threats, meet legal and regulatory compliance, and enable sales by meeting their customers' expectations for security. He is also a "security mentalist", and if you're like me and have never heard of this term, you need to check out this episode - it's fascinating! Gary's websites: • Creating memorable experiences for co...
VCM Quick Strike for Monday, October 3, 2022 03.10.2022 11:43
ICO fines privacy-invading firms, disgruntled former admin does damage with unrevoked access, healthcare fraud results in fines and jail time, Comm100 supply chain attach, banks fined $1.8B for using unauthorized apps to communicate, and a few thoughts on shadow IT. https://www.infosecurity-magazine.com/news/ico-fines-four-predatory/ https://www.bleepingcomputer.com/news/security/fired-admin-cripp...
The Virtual CISO Moment Wrap Up for Friday, September 30, 2022 30.09.2022 14:03
Microsoft Exchange zero days, Optus update, Brute Ratel cracked, 60% of cyber pros report "losing ground", more on the risk of deepfakes, and cyber insurance providers pivoting to requiring adherence to frameworks and risk management. https://thehackernews.com/2022/09/microsoft-confirms-2-new-exchange-zero.html https://www.bbc.com/news/world-australia-63056838 https://www.bleepingcomputer.com/news...
Throwback Thursday for September 29, 2022 - A Conversation with Matt Santill 29.09.2022 21:46
From June 14, 2022: Matt Santill, Founder and CEO of Cyber Security Services https://www.cybersecurityservices.com/ discusses the challenges of a vCISO, what is the most significant business risk, how he became interested in information security, and his career progression to CISO and on to business owner.
The Virtual CISO Moment S4E44 - A Conversation with Mark Burnette 28.09.2022 26:28
In this month's special end of month Wednesday episode Mark Burnette, Shareholder-In-Charge at LBMC Information Security, discusses his path from Senior IT Auditor to overseeing and directing LBMC’s Risk Services practice nationwide. He is very active in the information security community, including as co-founder and past president of the Middle Tennessee ISSA chapter (one of the largest in the wo...
The Virtual CISO Moment S4E43 - A Conversation with Cy Sturdivant 27.09.2022 24:32
Cy Sturdivant, Director at Forvis (Cybersecurity Division), joins us to discuss his path from accounting and finance to cybersecurity and the audit field. We dive into controls, the Three Line of Defense model, and how audit as the third line helps organizations achieve and maintain a solid information security posture.
VCM Quick Strike for Monday, September 26, 2022 26.09.2022 12:43
Anonymous injects into the Iranian protests, ChromeLoader injecting ransomware, Optus extortion, 543,000 added to ECL breach, IHG disruption for "fun", and thoughts about the need for ethics in cybersecurity. https://cybernews.com/cyber-war/anonymous-takes-iran-in-support-of-women/ https://www.theregister.com/2022/09/21/vmware_microsoft_chromeloader_threat/ https://www.bankinfosecurity.com/optus-u...
The Virtual CISO Moment Wrap Up for Friday, September 23, 2022 23.09.2022 2:53
A little different today - we are recording live from the RETR3AT conference at Montreat College! Look for discussions to drop Wednesdays.
Throwback Thursday for September 22, 2022 - A Conversation with James Farley 23.09.2022 21:44
From June 7, 2022: James Farley, Partner Development Manager, Cybersecurity at ConnectWise (connectwise.com), discusses migrating from insurance to IT sales to supporting Managed Service Providers, as well as running to beat the stress, including reaching a goal many never achieve!
The Virtual CISO Moment S4E42 - The Secret to Success in Cybersecurity (2022 Middle Tennessee Cyber Conference) 21.09.2022 50:18
Recorded at the Middle Tennessee Cyber Conference September 13, 2022 - host Greg Schaffer walks through his 33 year career in information technology and security, providing lessons learned and what he has determined is, for him, the secret for success in cyber security. We had technical issues with the primary video and audio recording so this recording is not quite up to our standards, but we sti...
The Virtual CISO Moment S4E41 - A Conversation with Adam Bricker 20.09.2022 25:15
Adam Bricker has led many career lives, from working on Tomahawk missiles to cofounding the Carolina Cyber Center, focused on hardening community resources and continuing education to address the nation's critical cybersecurity talent shortfall. He currently provides consulting services for businesses in high tech, IT-enabled and emerging markets as the founder of ePower Learning, and his testimon...
VCM Quick Strike for Monday, September 19, 2022 19.09.2022 11:10
Criminals had internal access to LastPass for four days, Microsoft gaming click fraud, cyberattack costs increase, SaaS sprawl risks, and the necessity of collaboration in security and privacy. https://www.bleepingcomputer.com/news/security/lastpass-says-hackers-had-internal-access-for-four-days/ https://thehackernews.com/2022/09/microsoft-warns-of-large-scale-click.html https://www.darkreading.co...
The Virtual CISO Moment Wrap Up for Friday, September 16, 2022 16.09.2022 11:10
Uber cybersecurity "incident", Teams critical vuln, Lorenz ransomware exploits Mitel, Meta and Google fined for violating privacy laws, White House releases software security requirements, and the one piece of career advice I would tell my 19 year-old self. https://www.digitaltrends.com/mobile/uber-investigating-cybersecurity-incident/ https://www.bleepingcomputer.com/news/security/microsoft-teams...
Throwback Thursday for September 16, 2022 - A Conversation with Rob Black 15.09.2022 25:57
On this week's Throwback Thursday, from May 31, 2022, Rob Black, Founder and CEO of Fractional CISO (https://fractionalciso.com) talks about providing fractional/virtual CISO services to midsized SaaS technical organizations as well as other businesses, his story of starting Fractional CISO, and how he sees the SMB threat environment.
The Virtual CISO Moment S4E40 - A Conversation with Elvis Huff 13.09.2022 28:19
Elvis Huff is the Vice President - Director of Security/Information Security Officer for Wilson Bank and Trust. His path to bank ISO is not typical but is inspirational, with 12 years as a police officer prior to entering the world of banking. His reason for the transition involves faith and following a calling. He also produces an awesome security newsletter, Security Stuff with Elvis Huff - chec...
VCM Quick Strike for Monday, September 12, 2022 12.09.2022 10:47
Americans lost nearly $7B to cybercrime in 2021, ports at risk of breach, FBI alert about Vice Society, Wordpress plugin BackupBuddy zero-day vuln, HP notebook high severity flaws remain wihtout a patch, and a few thoughts about 9/11 21 years later. https://www.cbsnews.com/miami/news/fbi-americans-lost-nearly-7-billion-to-cybercrime-last-year/ https://www.darkreading.com/attacks-breaches/why...
The Virtual CISO Moment Wrap Up for Friday, September 9, 2022 09.09.2022 9:48
IHG cyberattack disrupts booking systems, Tik-Tok-Hak, North Face credential stuffing attack, fake Android AV and cleaner apps install malware, posting photos and the information security risks they bring, and thoughts about technology debt. https://www.bleepingcomputer.com/news/security/intercontinental-hotels-group-cyberattack-disrupts-booking-systems/ https://www.msn.com/en-in/money/news/tiktok...
Throwback Thursday for September 8, 2022 - A Conversation with Kyle Cravens 08.09.2022 23:47
From May 24, 2022 - Kyle Cravens, Founder/Managing Principal of the staffing and recruiting firm Key Resource Group, LLC (https://www.krgnow.com/), joins us to discuss the IT and Information Security recruiting environment including tips on how a candidate can improve their chances of landing the position; how COVID and remote work has changed the environment, and how his faith guides his journey.
The Virtual CISO Moment S4E39 - A Conversation with Donna Gallaher 06.09.2022 28:30
Donna Gallaher, President and CEO of New Oceans Enterprises, LLC, is a seasoned IT and information security pro providing virtual CISO and risk management services. She is a FAIR (Factor Analysis of Information Risk) evangelist and is passionate about growing the virtual CISO community, including serving on the Board of Directors for vCISO Catalyst, a Public Benefit Corporation supporting the impr...
VCM Quick Strike for Monday, September 5, 2022 05.09.2022 8:23
IRS leaks taxpayer info, student loan breach, breach affects KeyBank and possibly others, REvil hits Fortune 500 company, phishing scam for American Express customers, and what I did on Labor Day, and how it ties in to information security. https://www.theepochtimes.com/mkt_app/irs-mistakenly-published-confidential-info-of-120000-taxpayers_4708384.html https://threatpost.com/student-loan-breach-ex...
Similar podcasts
Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.