The Virtual CISO Podcast

By John Verry

Listen to a podcast, please open Podcast Republic app. Available on Google Play Store and Apple App Store.

Image by John Verry

Category: Technology

Open in Apple Podcasts


Open RSS feed


Open Website


Rate for this podcast

Subscribers: 13
Reviews: 0
Episodes: 138

Description

The Virtual CISO Podcast is a frank discussion that provides the very best information security advice and insights for Security, IT and Business leaders. If you’re looking for the latest strategies, tips, and trends from seasoned information security practitioners, want no-B.S. answers to your biggest security questions, need a perspective on how your peers are addressing the same issues, or just simply want to stay informed and proactive, then welcome to the show. Our moderator, John Verry, chats with industry thought leaders to ensure you have what you need to be confident in your security and compliance. John will keep you informed, and perhaps even mildly entertained, through topics like ISO 27001, breach avoidance, incident response, dealing with pesky security questionnaires, data privacy, and managing vendor risk. Think of it as security… with a smile.

Episode Date
Episode 137: Strategies and Insights w/ Sagi Brody
May 01, 2024
Episode 136: AI Risk Management – Is ISO 42001 the Solution? w/ Ariel Allensworth
Apr 10, 2024
Episode 135: Can Distributed Ledger Technology Simplify Privacy Compliance? W/ Zenobia Godschalk
Mar 28, 2024
Episode 134: Understanding TISAX w/ Alexander Häusler
Mar 11, 2024
Kubernetes Security – Simplified Shauli Rozen, CEO of ARMO
Feb 27, 2024
Episode 132: Optimize Your SOC 2 - Lessons Learned from the 2023 Benchmark Study w/ Scott Woznicki
Feb 09, 2024
Episode 131: The New CMCC Proposed Rule w/ Jeff Carden & Warren Hylton
Feb 02, 2024
Episode 130: Revolutionizing Security Training with Kevin Paige CISO and VP of Product Strategy at Uptycs
Jan 15, 2024
Episode 129: Empowering Diversity in the Cybersecurity Industry with Larry Whiteside Jr.
Jan 04, 2024
Episode 128: Understanding the ISO 27001:2022 Update with Andrew Frost and Leigh Ronczka
Dec 19, 2023
Ep 127: The Future of Security: Unraveling the World of Social Engineering
Dec 19, 2023
Ep 126: Unlocking AI's Potential: Risks, Optimism & Challenges in the Current Wave of AI Technology
Nov 21, 2023
Ep: 125 - Understanding the New FTC Safeguards Rule: Key Changes and Requirements Explained
Nov 08, 2023
An Introduction to AI and its Place in the Work Place with CEO of Private AI Patricia Thaine
Oct 10, 2023
Ep 123: Navigating IT-OT Dynamics: Cybersecurity, Integration, and Collaboration
Sep 22, 2023
Ep 122: Navigating New Horizons: CMMC, NIST 800-171 Updates, and Compliance Insights
Aug 31, 2023
Ep 121: Strategies for Reducing the Cost of Your Cyber Liability Insurance Policy
Jul 11, 2023
Ep 120: A FedRAMP ATO – The Good, The Bad, and the Ugly
Jun 20, 2023
Ep 119: What is a Microservice Architecture and how do I secure it?
May 30, 2023
Ep 118: The Simplest Way to Transition from ISO 27001:2013 to ISO 27001:2022
May 16, 2023
Ep 117: Eight Key Takeaways from the RSA 2023 Conference
May 04, 2023
Ep 116: What is an SBOM & Why Are My Customers Suddenly Asking for One?
Apr 25, 2023
Ep 115: If Your Asset Management Sucks, Your Security Sucks
Apr 11, 2023
Ep 114: 4 Tactical Steps To Implementing DevSecOps In 2023
Mar 28, 2023
Ep 113: Should we be in Microsoft 365 GCC, GCC High, or Commercial?
Mar 14, 2023
Ep 112: When should you move to ISO 27001:2022?
Feb 28, 2023
Ep 111: How to use the Software Assurance Maturity Model (SAMM) to Build Highly Secure Applications
Feb 14, 2023
Ep 110: Understanding TISAX (Trusted Information Security Assessment Exchange)
Jan 31, 2023
Ep 109: Understanding How Cybercriminals Operate Can Protect Your Business
Jan 17, 2023
Ep 108: Understanding the Legalities Around CUI
Jan 03, 2023
Ep 107: An AWS Security Guru’s Recommendation for Securing your AWS Infrastructure
Dec 20, 2022
Ep 106: Strategies to Manage Cybersecurity through an Economic Downturn
Dec 13, 2022
Ep 105: Solving the Problems of Cloud Native Apps.
Nov 29, 2022
Ep 104: Is Digital Business Risk Mgt. The Future of ASM
Nov 15, 2022
Ep 103: The Complexity of Deploying a Secure Application in the Cloud
Nov 01, 2022
Ep 102: The Intersection of Privacy and Security
Oct 25, 2022
Ep 101: Most Asked CMMC Questions
Oct 14, 2022
Ep 100: The Two Audiences For Privacy & How They Drive Data Collection
Sep 13, 2022
Unpacking Critical Elements of Supply Chain Risk Management
Aug 30, 2022
Breaking Down the Latest in Software Security Standards & the Impact on SaaS Businesses
Aug 16, 2022
What You Need to Know about APIs and API Security
Aug 09, 2022
How to Measure the Value of Information Security
Aug 02, 2022
Understanding NIST’s Secure Software Development Framework
Jul 26, 2022
US Gov. Cybersecurity Roadmap: Where it came from and Where is it Going?
Jul 19, 2022
Confronting the Wild West of Database Security
Jul 12, 2022
Bridging the Gap Between Cybersecurity and the Business World
Jun 28, 2022
Legal and Infosec strategies to deal with exploding Cyber Liability Insurance premiums
Jun 21, 2022
Important Clarifications on CMMC v2 from CMMC Day May 9, 2022
Jun 14, 2022
The Past, Present and Future of Cybersecurity From the Viewpoint of a Venture Capitalist
Jun 07, 2022
Understanding Attack Surface Management and How It Applies to Your Cyber Security Strategy
May 24, 2022
The Convergence of Physical & Cyber Security and the Impact to Cyber Security Professionals
May 17, 2022
What CMMC 2 Guidance Means for Managed Service Providers (MSPs)
May 10, 2022
8 Ingredients for Baking Inclusivity into Your Culture
May 03, 2022
Becoming More Efficient w/ a Cloud-Native Approach
Apr 19, 2022
Use the CSA Cloud Controls to Maximize Your Security & Reduce Your Risk of Breach
Apr 05, 2022
Ongoing Challenges in CMMC
Mar 29, 2022
Is Open Source the Future of Endpoint Security
Mar 22, 2022
The AWS Approach to Provable Security
Mar 15, 2022
What Does the New ISO 27002 Update Mean for You?
Mar 01, 2022
CMMC 2.0 & Continuous Compliance w/ Andrea Willis
Feb 15, 2022
8 Information Security Predictions for 2022
Feb 04, 2022
Government Security Guidance: How We Got Here
Jan 28, 2022
How Hardware Hackers Exploit IoT Vulnerabilities w/ Joe Grand
Dec 16, 2021
Bridging the Gap Between Security & Development Teams w/ Harshil Parikh
Dec 09, 2021
Why Cloud Is More Secure Than Your Average On-Prem Solution w/ Mark Richman
Dec 02, 2021
How Configuration Management Makes Security Simple w/ Brian Hajost
Nov 23, 2021
CMMC 2.0 is Here! Find Out What It Really Means for DIB and Non-DIB USG
Nov 12, 2021
How Simply Cyber Helps People Pivot to a Cybersecurity Career w/ Gerald Auger
Nov 10, 2021
Can You Benefit from Attack Surface Management? w/ Steve Ginty
Oct 29, 2021
Why Continuous Compliance Matters More than Ever w/ Mosi Platt
Oct 21, 2021
How HIPAA Compliant Email is Revolutionizing Healthcare w/ Hoala Greevy
Oct 06, 2021
Private Practices: How to Prioritize Privacy in Your Organization w/ Jason Powell
Sep 27, 2021
Why Information Security Is Key to Business Strategy w/ Chris Dorr
Sep 16, 2021
Head in the Clouds: Multi-Cloud Security & Governance w/ John Grange
Sep 10, 2021
Can We Predict Security Threats w/ Machine Learning? w/ Johnna Verry
Sep 02, 2021
What People Get Wrong About ISO 27001 Compliance
Aug 26, 2021
Bridging the Gap Between Traditional Compliance & DevOPs w/ Raj Krishnamurthy
Aug 18, 2021
A Guide for Validating Your Security Process w/ John Verry
Aug 11, 2021
Governing Cybersecurity: A Process for Becoming Provably Secure & Compliant w/ John Verry
Aug 04, 2021
The Cybersecurity Executive Order: What You Need to Know w/ Scott Sarris
Jul 27, 2021
Your Passwords Are Failing You w/Josh Amishav-Zlatin
Jul 20, 2021
Information Governance w/David Gould
Jul 08, 2021
DIBCAC & CMMC Audit Prep w/ George Perezdiaz & Caleb Leidy
Jul 01, 2021
Trust Is a Vulnerability: 5 Steps on the Path to Zero Trust with John Kindervag
Jun 25, 2021
You Are a Target: Assessing Cybersecurity Risk with Dr. Eric Cole
Jun 16, 2021
CMMC Assessments Are Here: What You Need to Know with Stacy High-Brinkley
Jun 10, 2021
Everything You Need to Know About StateRAMP with Leah McGrath
Jun 03, 2021
How EDR & NDR Help You Make Better Security Decisions with Chris Neyhuis
May 26, 2021
How PreVeil Drive Makes Storing and Sharing Data More Secure with Sanjeev Verma
May 20, 2021
Lessons Learned in Our Initial 27701 Certification Audits
May 10, 2021
Using your ISO 9001 Management System to Simplify CMMC Certification
Apr 28, 2021
How to Communicate Across Departmental Divides
Apr 20, 2021
MSPs, MSSPs & Validation: What You Need to Know
Apr 13, 2021
Why CMMC Is the Most Significant Standard of all Time
Apr 09, 2021
CMMC Level 1: An Overview
Apr 01, 2021
Solutions to Security, Compliance, and Technology Challenges in Aerospace
Mar 16, 2021
CMMC Level 3: What Government Staffing Agencies Need to Know
Mar 09, 2021
The ISVS: What You Need to Know
Mar 04, 2021
FedRAMP: What You Need to Know
Feb 26, 2021
How Data Privacy Standards Affect Your Business
Feb 02, 2021
Should You Invest in a GRC Tool for Security & Compliance?
Jan 21, 2021
CMMC Compliance: The Nuances You Should Know
Jan 12, 2021
GCC High Demystified: What CMMC Compliance Means for DIB Firms
Dec 18, 2020
What DIB Firms Need to Know About the CMMC Interim Rule
Dec 15, 2020
The Secrets to Keeping Your SaaS Secure
Nov 16, 2020
32. How IoT Is Shaping the Future of Cybersecurity
Nov 05, 2020
31. A Brief History of NIST Guidance
Oct 22, 2020
30. How to Beat the 6 Most Challenging CMMC L3 Requirements
Oct 06, 2020
29. How COVID-19 Is Shaping Security’s Future w/Reg Harnish
Sep 29, 2020
28. Why 800-171 Compliance Isn’t Going Away Any Time Soon w/John Ellis
Sep 22, 2020
27. How DevOps Took Over (& Why You Should Care) w/Jon Bass
Sep 11, 2020
26: How to Optimize Your ISMS w/Rich Stever
Aug 25, 2020
25: CMMC Compliance & Continuous Monitoring Made Simple w/Chris Lank
Aug 17, 2020
24: Everything You Need to Know About ISO 27001 Audits w/ Ryan Mackie
Aug 11, 2020
23. Why Security Is So Important for a Growing SaaS w/ Jesse Nash
Aug 04, 2020
22. CMMC Training & Assessments: Rollout, Certification & Competition w/ Ben Tchoubineh
Jul 24, 2020
21. CMMC Compliance Doesn’t Have to Be Hard (or Pricey) w/ Sanjeev Verma
Jul 17, 2020
20. Faster, Better & Cheaper Vendor Due Diligence Reviews w/ Kevin Hermosura
Jul 08, 2020
19. Why Application Security is a Team Sport and How Your Team Can Win w/ Joe Manico
Jun 30, 2020
18. IT & Security: How to Do More with Less w/ Jose Ciriaco
Jun 24, 2020
17. CMMC Certification Audits—Can You Leverage ISO 27001? w/ Thomas Price
Jun 17, 2020
16. Why Buyers of Security Services Need to Leverage CREST w/ Ian Glover
Jun 09, 2020
15. The OWASP Top Ten is Great, but is it Enough? w/ Andrew van der Stock
Jun 02, 2020
14. How Computer Forensics Protects Your Data During Litigation w/ Brian Dykstra
May 26, 2020
13. Why ISO 27701 is the Answer to Privacy Compliance w/ Debbie Zaller
May 19, 2020
12. Disaster Recovery, Business Continuity, and Data Resilience w/ Cosmo Gazzani
May 12, 2020
11. OWASP ASVS: The Go-To Standard for Application Security w/ Daniel Cuthbert
May 05, 2020
10. Exostar and Their Role in Your CMMC Certification w/ Stuart Itkin
Apr 28, 2020
9. When an SMB Should Implement a SIEM w/ Danielle Russell
Apr 21, 2020
8. Resilience Guidance and the SCA w/ Tom Garrubba
Apr 14, 2020
7: Dead CISO's Don't Get Bonuses w/ Dr. Joel Kahn
Apr 07, 2020
6. The Virtual CIO: What it Is and What it Isn’t w/ Darek Hahn
Mar 31, 2020
5. Staying Secure in a COVID-19 World w/ John Verry
Mar 23, 2020
4. True Confessions of a Real Virtual CISO w/ Andrew Farkas
Mar 17, 2020
3. ISO 27001 vs. SOC 2 – Which Attestation is Right For You? w/ Dan Schroeder
Mar 10, 2020
2. How to Attract and Retain Cyber Talent w/ Deidre Diamond
Mar 03, 2020
1. CMMC: What You Need to Know About DoD Cybersecurity Regulation w/ Katie Arrington
Feb 25, 2020
Welcome to The Virtual CISO Podcast
Feb 12, 2020