305 episodes

Formerly named CISO/Security Vendor Relationship Podcast. Discussions, tips, and debates from security practitioners and vendors on how to work better together to improve security for themselves and everyone else.

CISO Series Podcast David Spark, Mike Johnson, and Andy Ellis

    • Technology
    • 4.9 • 13 Ratings

Formerly named CISO/Security Vendor Relationship Podcast. Discussions, tips, and debates from security practitioners and vendors on how to work better together to improve security for themselves and everyone else.

    Our Help Desk Plaque Reads “Over 100,000 Threat Actors Served”

    Our Help Desk Plaque Reads “Over 100,000 Threat Actors Served”

    All links and images for this episode can be found on CISO Series.
    This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Andy Ellis (@csoandy), operating partner, YL Ventures. Joining us is our guest, Martin Mazor, vp and CISO, onsemi.
    In this episode:
    Has the shine worn off the cybersecurity promise of MFA?
    Why are threat actors increasingly finding ways to get around it?
    Given the high profile attacks we've seen getting around MFA, how much security stock should we put into it going forward?
    Thanks to our podcast sponsor, Material Security

    Material Security is a multi-layered email threat detection & response toolkit designed to stop attacks and reduce the threat surface across all of Microsoft 365 and Google Workspace. Learn more at material.security.

    • 35 min
    Can’t Talk, I’m Onboarding My Kids To Their First Soccer Practice (Live in Mountain View, CA)

    Can’t Talk, I’m Onboarding My Kids To Their First Soccer Practice (Live in Mountain View, CA)

    All links and images for this episode can be found on CISO Series.
    This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Mike Johnson, CISO, Rivian. Joining us is our guest, TC Niedzialkowski, CISO, Nextdoor.
    In this episode:
    Has the line between work and personal devices blurred?
    Why are we seeing signs that that line no longer exists for employees?
    What is the path of cybersecurity to keep company data secured when its continually commingling with personal devices?
    Thanks to our podcast sponsors, Eclypsium and Normalyze

    Eclypsium is helping enterprises and government agencies mitigate risks to their infrastructure from complex technology supply chains. Our cloud-based and on-premises platform provides digital supply chain security for software, firmware and hardware in enterprise infrastructure. Get started today at eclypsium.com/spark

    Where is my data? Is it sensitive? Who has access to the data? What are the risks? What is the cost of exposure? Am I compliant now? Enter Normalyze.

    Normalyze’s agentless, machine-learning scanning platform continuously discovers sensitive data, resources, and access paths in all cloud environments. Learn more.

    • 44 min
    I Really Shouldn’t Have Agreed to Variable Rate Technical Debt

    I Really Shouldn’t Have Agreed to Variable Rate Technical Debt

    All links and images for this episode can be found on CISO Series.
    This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Mike Johnson, CISO, Rivian. Joining me is our sponsored guest, Aaron Shaha, CISO, CyberMaxx.
    In this episode:
    Is technical debt an inevitability in any organization?
    How do you go about "paying it down?"
    How do you decide when you need a systematic refresh and when can you kick the can down the road a little longer?
    Thanks to our podcast sponsor, CyberMaxx

    CyberMaxx offers MaxxMDR, our next-generation managed detection and response (MDR) solution that helps customers assess, monitor, and manage their cyber risks. MaxxMDR fuels defensive capabilities with insights from offensive security, DFIR, and threat hunting, on top of a technology-agnostic deployment model. We think like an adversary but defend like a guardian.

    • 35 min
    We’ll Invest in Resilience as Soon as the Ransom Payment Clears

    We’ll Invest in Resilience as Soon as the Ransom Payment Clears

    All links and images for this episode can be found on CISO Series.
    This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Andy Ellis (@csoandy), operating partner, YL Ventures. Joining us is my guest, Thom Langford, CISO, Velonetic.
    In this episode:
    Why do lots of businesses pledge to never pay ransomware demands?
    And why do their priorities quickly change when they need to get the business back to normal after an attack occurs?
    What good is a pledge like that without the infrastructure and organizational commitment to make it possible?
    Thanks to our podcast sponsor, CyberMaxx

    CyberMaxx offers MaxxMDR, our next-generation managed detection and response (MDR) solution that helps customers assess, monitor, and manage their cyber risks. MaxxMDR fuels defensive capabilities with insights from offensive security, DFIR, and threat hunting, on top of a technology-agnostic deployment model. We think like an adversary but defend like a guardian.

    • 35 min
    We Could Lower Risk If We Shrunk Our Business

    We Could Lower Risk If We Shrunk Our Business

    All links and images for this episode can be found on CISO Series.
    This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Mike Johnson, CISO, Rivian. Joining me is our sponsored guest, Matt Radolec, vp, incident response and cloud operations, Varonis.
    In this episode:
    Why is retaining cyber talent so hard?
    How can organizations keep an employee from going elsewhere?
    Why do organizations often not prioritize the factors to keep key employees?
    Thanks to our podcast sponsor, Varonis

    Ready to reduce your risk without taking any? Try Varonis’ free data risk assessment. It takes minutes to set up and in 24 hours you’ll have a clear, risk-based view of the data that matters most and a clear path to automated remediation. Get started for free today.

    • 38 min
    Our Benefits Include Medical, Dental, and Burnout

    Our Benefits Include Medical, Dental, and Burnout

    All links and images for this episode can be found on CISO Series.
    This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Andy Ellis (@csoandy), operating partner, YL Ventures. Joining us is our guest, Joshua Brown, vp and global CISO, H&R Block.
    In this episode:
    Why is retaining cyber talent so hard?
    How can organizations keep an employee from going elsewhere?
    Why do organizations often not prioritize the factors to keep key employees?
    Thanks to our podcast sponsor, CyberMaxx

    CyberMaxx offers MaxxMDR, our next-generation managed detection and response (MDR) solution that helps customers assess, monitor, and manage their cyber risks. MaxxMDR fuels defensive capabilities with insights from offensive security, DFIR, and threat hunting, on top of a technology-agnostic deployment model. We think like an adversary but defend like a guardian.

    • 43 min

Customer Reviews

4.9 out of 5
13 Ratings

13 Ratings

JVo12 ,

awesome

make more podcasts

FSM_Toronto ,

A must listen for anyone in infosec sales!

David Spark, an experienced broadcaster, partners with Mike Johnson, a savvy CISO with a firm grasp on modern technology trends, to take on the dysfunctional aspects of infosec sales in this weekly podcast. The shows last approximately 30 minutes and cover a variety of topics including commentary on recent industry news, buzzwords, conferences, poor experiences, misunderstandings between sales and clients, and even the occasional best practice ;-) The hosts are usually joined by a guest from the industry, including other CISOs, analysts, venture capitalists, the occasional sales executive, and others. The show is funny, the participants have great on-air chemistry, and the topics are quite relevant to anyone involved in sales: vendors and clients alike can learn useful lessons in what works and what doesn't.
In a world of so many choices for podcasts, this one is well worth your time if you work in Infosec, particularly so if you are - or aim to be - on either side of the table when it comes to infosec sales.

Daniel West - cyber evangelist ,

Very great listen...

David and Mike are very engaging and really interesting content. Being on the vendor side, the advice provided and the conversations help make me better and my customers trust me more. Thank you David and Mike, really am grateful to you and the work that you're doing! Look forward to hearing more!

Top Podcasts In Technology

Acquired
Ben Gilbert and David Rosenthal
Lex Fridman Podcast
Lex Fridman
All-In with Chamath, Jason, Sacks & Friedberg
All-In Podcast, LLC
Hard Fork
The New York Times
TED Radio Hour
NPR
Darknet Diaries
Jack Rhysider

You Might Also Like

Defense in Depth
David Spark
Cyber Security Headlines
CISO Series
Cybersecurity Today
ITWC
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
Johannes B. Ullrich
CyberWire Daily
N2K Networks
Hacking Humans
N2K Networks