CERT's Podcast Series: Security for Business Leaders

0 Likes     0 Followers     1 Subscribers

Sign up / Log in to like, follow, recommend and subscribe!

Recommendations


Episodes

Date Title & Description Contributors
2016-10-19

  Becoming a CISO: Formal and Informal Requirements

In this podcast, Darrell Keeling, Vice President of Information Security and HIPAA Security Officer at Parkview Health, discusses the knowledge, skills, and abilities needed to become a CISO in today’s fast-paced cybersecurity field.
  Darrell Keeling (Parkview Health) author
2016-07-18

  Global Value Chain – An Expanded View of the ICT Supply Chain

In this podcast, Edna Conway and John Haller discuss the global value chain for organizations and critical infrastructures and how this expanded view can be used to improve ICT supply chain management, including risks to the supply chain.
  Edna M. Conway (Cisco Systems, Inc.) author
2016-06-21

  Intelligence Preparation for Operational Resilience

In this podcast, Douglas Gray, a member of the CERT Cyber Risk Management team, discusses how to operationalize intelligence products to build operational resilience of organizational assets and services using IPOR.
  Douglas Gray author
2016-02-03

  Build Security In Maturity Model (BSIMM) – Practices from Seventy Eight Organizations

In this podcast, Gary McGraw, the Chief Technology Officer for Cigital, discusses the latest version of BSIMM and how to take advantage of observed practices from high-performing organizations.
  Gary McGraw author
2015-12-23

  Structuring the Chief Information Security Officer Organization

In this podcast, Nader Mehravari and Julia Allen, members of the CERT Cyber Risk Management team, discuss an effective approach for defining a CISO team structure and functions for large, diverse organizations.
  Nader Mehravari author
2015-11-09

  How Cyber Insurance Is Driving Risk and Technology Management

In this podcast, Chip Block, Vice President at Evolver, discusses the growth of the cyber insurance industry and how it is beginning to drive the way that organizations manage risk and invest in technologies.
  Chip Block author
2015-10-01

  How the University of Pittsburgh Is Using the NIST Cybersecurity Framework

In this podcast, Sean Sweeney, Information Security Officer (ISO) for the University of Pittsburgh (PITT), discusses their use of the NIST (National Institute of Standards and Technology) CSF (Cybersecurity Framework).
  Sean Sweeney (University of Pittsburgh) author
2015-08-27

  Capturing the Expertise of Cybersecurity Incident Handlers

In this podcast, Dr. Richard Young, a professor with CMU, and Sam Perl, a member of the CERT Division, discuss their research on how expert cybersecurity incident handlers react when faced with an incident.
  Samuel J. Perl author
2015-03-26

  Supply Chain Risk Management: Managing Third Party and External Dependency Risk

In this podcast, Matt Butkovic and John Haller discuss approaches for more effectively managing supply chain risks, focusing on risks arising from “external entities that provide, sustain, or operate Information and Communications Technology (ICT)."
  John Haller author
2015-02-20

  A Workshop on Measuring What Matters

This podcast summarizes the inaugural Measuring What Matters Workshop conducted in November 2014, and the team's experiences planning and executing the workshop and identifying improvements for future offerings.
  Lisa R. Young author