Candid CISO Podcast

Auteur(s): Steve Tout and John Donovan
  • Résumé

  • Welcome to the Candid CISO podcast. Your path to impact. Illuminated.
    © 2024 Nonconformist Innovation Media, LLC
    Voir plus Voir moins
activate_Holiday_promo_in_buybox_DT_T2
Épisodes
  • The CISO Who Rebuilt Giants with Rinki Sethi
    Oct 25 2024

    In this episode of The Candid CISO, Rinki Sethi, a trailblazing cybersecurity leader, shares her incredible journey from an unexpected start in the industry to her rise as a prominent figure in security leadership with host John Donovan. Rinki opens up about the challenges she faced, the importance of mentorship, and how vulnerability and communication have been crucial to her success. She provides insightful guidance on building strong security teams, navigating crisis management, and fostering a supportive cybersecurity community. Tune in for practical advice and inspiration for advancing your own cybersecurity career.

    Key topics include

    1. Discovering your specific passion within the broad field of cybersecurity is crucial for a fulfilling career, as Rinki Sethi’s own journey from compliance to developer training demonstrates.
    2. Mentorship can be found in unexpected places, from peers to senior leaders, and actively seeking guidance from those around you can significantly shape your career path.
    3. Securing executive buy-in is essential for building a strong security culture, and aligning security goals with business objectives helps demonstrate the value of security initiatives.
    4. To effectively advocate for security investments, it is crucial to present security as a business enabler, highlighting its ability to improve efficiency, reduce friction, and even create a competitive advantage.
    5. Sharing real-world examples of how security programs have reduced business friction, such as streamlining compliance processes or shortening sales cycles, can help garner support for future security initiatives.
    6. Transparency and clear communication are vital when implementing security programs, especially those that may be perceived as intrusive, to ensure understanding and minimize resistance.
    7. Prioritizing mental health in the demanding field of cybersecurity is crucial, and creating a supportive environment where team members feel comfortable seeking help and addressing mental well-being is essential.
    8. Crisis management exercises, including surprise breach simulations, can be invaluable for preparing executive teams and other stakeholders to effectively navigate real-world security incidents.
    9. Networking outside of your immediate professional circle can lead to unexpected mentorship opportunities, board positions, and valuable connections that can benefit your career in the long run.
    10. Giving back to the cybersecurity community by mentoring others, sharing your experiences, and encouraging newcomers is crucial for fostering a strong and inclusive industry.

    IdRamp is a sponsor of the Candid CISO podcast. Visit their website at: https://www.idramp.com/candidciso

    TrustLogix is a sponsor of the Candid CISO podcast. Visit their website at: https://www.trustlogix.io/candidciso

    For show notes, transcripts, links, and more episodes visit https://www.candidciso.com

    The Candid CISO podcast is produced by Nonconformist Innovation Media.

    Voir plus Voir moins
    54 min
  • Resilience On The Trails And In Cybersecurity: A Journey with Jason Elrod
    Oct 25 2024

    In this episode of the Candid CISO, Co-Host John Donovan sits down with Jason Elrod, CISO of MultiCare Health Systems, who shares how getting lost on a trail run and running barefoot for 19 miles became a metaphor for leadership in cybersecurity. Jason dives into the tough realities of protecting critical infrastructure, balancing security and compliance, and tackling imposter syndrome head-on. He also reveals why being fiercely dangerous (ethically, of course) is essential for a successful cybersecurity career. From personal lessons on resilience to high-candor takes on navigating boardrooms, Jason keeps it real—and a bit ironic—by showing how getting off track can sometimes lead to the best insights. Follow along for an unexpected and entertaining ride!

    Key topics include

    • How getting lost on a trail run turned into a lesson on leadership and staying present.
    • Why facing your fears and doing what scares you leads to growth—both on trails and in cybersecurity
    • The power of fierce, mission-driven cybersecurity professionals and why being 'ethically dangerous' matters
    • How imposter syndrome is universal—and why accepting it can make you a more confident leader
    • Balancing security and compliance: How to prioritize safety without getting lost in the checkbox mentality
    • Jason's candid take on communicating cybersecurity risks to executives and boards in a way they’ll understand
    • How ultra-running teaches resilience, focus, and mindfulness—and how that applies to a high-stress CISO role
    • The importance of finding a restorative practice to reset and thrive in high-pressure leadership positions
    • Why being both the smartest and 'dumbest' in the room drives better teamwork and collaboration
    • How showing vulnerability and high candor can help you lead more authentically and inspire your team

    Thanks to our season sponsors

    IdRamp is a sponsor of the Candid CISO podcast. Visit their website at: https://www.idramp.com/candidciso

    TrustLogix is a sponsor of the Candid CISO podcast. Visit their website at: https://www.trustlogix.io/candidciso

    For show notes, transcripts, links, and more episodes visit https://www.candidciso.com

    The Candid CISO podcast is produced by Nonconformist Innovation Media.

    Voir plus Voir moins
    57 min
  • Innovating in Cybersecurity with AI and Inclusive Leadership
    Oct 11 2024

    In this episode of the Candid CISO podcast, host John Donovan sits down with Mandy Andress, an experienced CISO, investor, and board member, to explore her career journey in the cybersecurity industry. Mandy discusses how her diverse roles have shaped her perspective on implementing security measures tailored to different organizations, taking into account their culture, communication styles, and technological infrastructure. She also opens up about her personal experiences as a gay woman working in tech, offering insight into how diversity has influenced her leadership approach and decision-making processes.

    The conversation touches on the evolving responsibilities of a CISO, especially in the context of remote work and the rise of AI-driven cyberattacks. Mandy reflects on her experiences balancing compliance and security in both traditional and tech-forward industries, sharing her strategies for building effective security teams and fostering collaboration.

    Key Takeaways

    • Mandy emphasizes the importance of aligning security strategies with an organization's unique culture, communication style, and tech stack to ensure they are effective and sustainable.

    • She talks about how her experience as a gay woman in cybersecurity shows that diversity enhances problem-solving, fosters collaboration, and strengthens team performance.

    • Mandy believes in creating a safe and supportive environment for team members by being a good listener, sharing personal experiences, and being open to vulnerability.

    • The role of a CISO continues to evolve, and while it has become more defined in terms of business impact, it still requires constant adaptation due to the fast-paced changes in technology and cyber threats.

    • Remote work presents unique challenges for leadership and team cohesion, but it also offers opportunities to redefine communication and collaboration through virtual means.

    • Mandy advocates for taking on lateral career moves, as they can provide valuable learning experiences that contribute to broader skill sets, particularly in leadership and security roles.

    • Building trust and rapport within an organization is crucial for a CISO, especially when influencing security decisions and balancing the organization's risk appetite with technical considerations.

    • Mandy underscores the importance of balancing compliance and security, recognizing that they do not always align perfectly, and making informed decisions on when to prioritize one over the other.

    • The rise of AI-driven cyberattacks is a growing concern, and security teams need to rethink their approach, focusing on speed, adaptability, and leveraging AI tools for defense.

    • Lastly, Mandy encourages cybersecurity professionals to stay curious, remain open to learning, and take calculated risks in their careers, always keeping an eye on long-term growth and opportunities.

    IdRamp is a sponsor of the Candid CISO podcast. Visit their website at: https://www.idramp.com/candidciso

    TrustLogix is a sponsor of the Candid CISO podcast. Visit their website at: https://www.trustlogix.io/candidciso

    For show notes, transcripts, links, and more episodes visit https://www.candidciso.com

    The Candid CISO podcast is produced by Nonconformist Innovation Media.

    Voir plus Voir moins
    53 min

Ce que les auditeurs disent de Candid CISO Podcast

Moyenne des évaluations de clients

Évaluations – Cliquez sur les onglets pour changer la source des évaluations.