• From Hacker to CISO: Carlos De Leon's Journey and Career Advice

  • Aug 16 2024
  • Durée: 55 min
  • Podcast

From Hacker to CISO: Carlos De Leon's Journey and Career Advice

  • Résumé

  • In this episode of the Candid CISO podcast, Co-Host John Donovan interviews Carlos de Leon, CISO at the Washington State Department of Revenue. They discuss various topics related to cybersecurity leadership and strategy, including the challenges and rewards of the CISO role, the importance of compliance, and the need for strong communication and people skills. They also touch on incident response and threat management, highlighting the lessons learned from the CrowdStrike incident and a cloning incident at Carlos' agency. The conversation concludes with a discussion on the impact of technology and organizational factors on the CISO role, as well as Carlos' personal career journey. Also in this conversation, Carlos shares insights and advice on thinking creatively, his early hacker days, and career development in cybersecurity. He emphasizes the importance of an adversarial mindset and thinking outside the box to solve problems. Carlos provides advice for those looking to enter the cybersecurity field and become a CISO. The conversation concludes with a discussion on Hacker Summer Camp and the importance of networking and community in the cybersecurity industry. Segments 00:00 - Introduction and Background 03:03 - CISO Role: Challenges and Rewards 07:02 - Compliance in the CISO Role 09:57 - Lessons from Incident Response and Threat Management 13:24 - Balancing Technology and Organizational Factors as a CISO 20:30 - Insights from a Personal Career Journey 29:19 - Thinking Creatively and Developing an Adversarial Mindset 31:34 - Career Development in Cybersecurity 35:27 - The Importance of Networking and Community in Cybersecurity 45:36 - Hacker Summer Camp: Networking and Learning Opportunities Insights - Prioritize ethical reporting over legal loopholes when managing security breaches. - Leverage security incidents to drive and strengthen your cybersecurity initiatives. - Implement layered security architectures to ensure robust protection against failures. - Balance technology and organizational factors when shaping cybersecurity policies. - Be transparent during incident recovery to quickly rebuild user trust. - Adopt cloud solutions while mitigating risks with mature security practices. - Encourage an adversarial mindset within your cybersecurity team for better defenses. - Foster community and transparency to enhance cybersecurity collaboration. - Plan ahead for incidents by coordinating multi-agency responses effectively. - Invest in apprenticeship models to develop well-rounded cybersecurity professionals. - Embrace cutting-edge technology to stay ahead, despite inherent risks. IdRamp is a sponsor of the Candid CISO podcast. Visit their website at: https://www.idramp.com/candidciso TrustLogix is a sponsor of the Candid CISO podcast. Visit their website at: https://www.trustlogix.io/candidciso Candid CISO is produced by Nonconformist Innovation Media For show notes, links, and more episodes visit https://www.candidciso.com
    Voir plus Voir moins
activate_Holiday_promo_in_buybox_DT_T2

Ce que les auditeurs disent de From Hacker to CISO: Carlos De Leon's Journey and Career Advice

Moyenne des évaluations de clients

Évaluations – Cliquez sur les onglets pour changer la source des évaluations.