show episodes
 
Cyber security focused discussions geared towards students, early professionals and individuals moving into the cyber security profession. I use my ~30 years' experience in industry and provide examples, stories, suggestions and answer questions. This podcast is designed to help listeners learn, grown and advance in the cyber security profession.
 
Loading …
show series
 
Many people are threatened with losing their jobs or violating their conscience. This episode talks about how you are not alone. I talk about standing up for what you believe in. Swim upstream if that's for you. Do not "go along to get along" if that does not comport with your values. Stand up. Be strong. Leave your employer if they force you to vi…
 
Fireside chat with Garrettson Blight, Principal at Booz Allen Hamilton led by Kate Rodgers, Director of Brand at Infosec virtually on October 19, 2021. We discussed learning and development opportunities in our organizations and how important it is for employees. Salary is only a single benefit to employment. Learning and development along with hea…
 
In this episode I talk about high profile cyber-attacks in the Spring and Summer of 2021. I’ll review who was attacked, what the attack involved, it’s impact, the aftermath, and how it affected the economy. Sign up for NewsBits from SANS at https://www.sans.org/newsletters/newsbites/ Review Security Intelligence periodically: https://securityintell…
 
In this episode I talk about incident response plans, what they are, why they are important and how to create one. NIST, the National Institute of Standards and Technology has a fabulous document entitled Computer Security Incident Handling Guide, Special Publication 800-61 Rev. 2. This document prescribes key data for incident response plans. In t…
 
In this episode I talk about real situations I’ve experienced. I won’t name companies, only industry and relative geography so as not to expose any entities. Some of these are more egregious than others, all are good learning experiences, for early as well as experienced professionals. Many look to join Cyber Security and wonder what it’s really li…
 
While this podcast focuses on cyber security professionals, this episode provides general and wide-ranging interviewing and presentation tips. The discussion goes into detail about how and why we communicate and then provides examples and performance tips. Later there are examples, and recommendations for how to interview, present, and speak public…
 
Audio recording of session at MSS Forum LA on June 30th, 2021. Group discussion lead by Phelim Rowe of CTG Intelligence. We review the top "post holder" and go into depth around who has responsibility for cyber security in an organization. I was pleased to join Richard Staynings, Shawn Kohrman, Ashwin Krishnan, and Louis Arul-Doss on this round tab…
 
In this special episode I'm sharing a real-world conversation I had with an early professional at my company. This individual worked for a couple of years in the healthcare field as an administrator and then moved to an extremely large company. He reached out wanting to know what to study and how and where to steer his career. Listen to this real l…
 
Discussion on cyber security certifications. Which make sense. Where to focus. How to proceed. I cover certifications from GIAC, ISC2, ISACA, EC-Council, Amazon, Microsoft, Google, CompTIA, and others. This episode discusses areas to find training and recommendations before taking certification exams. These are recommendations only and based on my …
 
Book reviews of four cyber security books published between 2019-2020. Dark Mirror: Edward Snowden and the American Surveillance State by Barton Gellman 2020, The Hacker and The State by Ben Buchanan, 2020, Sandworm by Andy Greenberg, 2019 and The Coming Cyber War by Marc Crudgington, 2020. These books provide great insight to where we are in the c…
 
Financial guidance based on my 30 years’ experience, economic degree, financial education, and wonderful direction from my father, a 40+ year professional financial advisor. I veer away from my standard cyber security talks in this episode to help students and early professionals learn, grow, and advance their financial well being. I see a critical…
 
Advice and examples on how to own your career. While I focus on cyber security, these tips are valid for any profession. I give examples of my past as well as situations friends have experienced over the years. My advice includes tips such as be strong, be proud, track what you do, toot you own horn, and many more. This is a talk going back to the …
 
What jobs are out there, what jobs interest you and/or fit best with your desires, abilities, and preferences. I talk about eight (8) practices, over a dozen jobs, and 12 markets/industries, for listeners to learn about. This talk came out of a 1:1 I had with an early professional at my company and I believe many listeners can benefit from this con…
 
Herein I talk about where I've been for the past 8 months, what's been going on, and what this season entails. I go over 7 specific topics I will cover and ask the audience for input on guest speakers and other topics. This is an exciting talk about the future and what to expect upcoming from Cyber Security Grey Beard.…
 
How are businesses, with focus on managed security service providers, dealing with remote working in a distributed work environment? This recording comes from a half hour panel discussion on this topic. Session from Third Annual MSS Forum Denver put on by CTG Intelligence and sponsored by KnowBe4, Hackdefnet, Fishtech Group and Stellar Cyber. Title…
 
Discussion around my professional journey with ties into what cyber security jobs exist for students and early professionals. I talk about specific jobs including network operations, security operations, forensic analysis and others. The class I spoke to was a Networking I class so I spend a bit of time discussing network technologies. I go over sp…
 
45 minute presentation delivered to the Long Island ISC2 chapter on October 20, 2020. I created this content for IIA/ISACA Chicago and launched for ISC2 as the content has wide appeal throughout the Cyber Security spectrum. This talk focuses on leadership and the need for engagement throughout organizations. We are, in many ways, the same in Cyber …
 
NOTE: THIS INFORMATION IS FOR EDUCATIONAL PURPOSES ONLY! I DO NOT CONDONE OR ENDORSE USING THIS INFORMATION FOR ILLEGAL OR NEFARIOUS PURPOSES. Herein I provide key offensive testing tools along with clear description of what they do, when and why to use them and the impact these tools have on target systems. I discuss or mention the following produ…
 
NOTE: THIS INFORMATION IS FOR EDUCATIONAL PURPOSES ONLY! I DO NOT CONDONE OR ENDORSE USING THIS INFORMATION FOR ILLEGAL OR NEFARIOUS PURPOSES. Ethical hacking discussion on offensive actions. I go through standard hacker methodology and actions performed in a breach. I mention jobs associated with these skills and discuss defensive mechanism in ass…
 
Interview on my background and journey along with discussion on the cyber security profession. Chris Seinko of Cyber Work hosts the Infosec Institute cyber security podcast and we discuss how to help students and early professionals grow in Cyber Security. Catch the video version recorded on YouTube at: https://www.youtube.com/watch?v=iis7WCWV4Z4 R…
 
Episode responding to Greybeardian questions. I’ve heard from a number of listeners and want to share their experiences along with my suggestions and recommendations to their common situations. I know many listeners find themselves in the same position as these individuals, let’s all learn from one another and grow together. Examples of questions a…
 
Discussion surrounding critical defensive actions all information security users must utilize. I talk about managing and maintaining personal devices and how this directly relates to professions involving cyber security. Network security, system administration, endpoint protection, identity and access management as well as other jobs deal with dail…
 
Tools and recommendations to enhance personal and understand corporate cyber security defense. I go over endpoint protection including anti-virus, anti-spyware, and anti-malware discussing how this ties into a SIEM in the corporate world. I spend a bit of time on VPN's and what the network sees and how these enhance privacy and security. I discuss …
 
Today's remote work and school environments enhance cyber security risks. I discuss real attacks and technologies now bypassed due to work at home policies. With so many new devices, and millions of additional individuals working and going to school remotely, there are increased and enhanced threats impacting anyone utilizing devices to access the …
 
Discussion around cyber security governance and compliance. What they are, the professions that perform these roles and what they do and how they differ. I go over key regulations including SOX, HIPAA, GDPR and others explaining what they cover and why it matters to cyber security professionals. cybergreybeard@gmail.com Sarbanes Oxley: https://www.…
 
Detailed talk around cyber security and privacy. I provide examples around IOT devices such as RING and Echo as well as GPS, social media and other areas involving privacy today. I give real world stories involving court cases and tales where people had and /or could have their privacy violated by others using certain technologies. I provide corpor…
 
Discussion around a handful of key cyber security trends including IOT/IOMT, AI/ML, Mobile, Social Engineering and Threat Hunting. Back to the roots of Cyber Security Grey Beard, I take 13 minutes to help students, early professionals and job changers understand a handful of areas requiring knowledge and skill based on today's trends. I provide exa…
 
With the dreariness of the world today between COVID-19, riots, lock downs, and increased crime in certain areas, I thought it would be nice to have a positive pep talk for my listeners. Herein I discuss focusing on a North Star and driving to success. Take responsibility for yourself, don't blame others. Understand that everyone falls down and tha…
 
Times are tough and layoffs are imminent. Here I talk about my experiences getting laid off and having to lay off employees (friends). I spend a substantial amount of time discussing signs to watch for and actions companies take that precede layoffs. I explain that it's a scary time filled with a lock of control and unknowns. You are not alone and …
 
Many people want it all right now. Life is a journey, both personally and professionally. This 10-minute podcast discusses that it's okay to be where you are and finding happiness along the journey should take precedence over everything else. Plan, prepare, progress, patience, these factors enable success and happiness throughout the journey. Under…
 
A replay of the presentation I delivered on October 29,2019, at the Swissotel in Chicago, IL for the IIA/ISACA 6th Annual Cyber Security and Hacking Conference. The topic covers a handful of well-known hacks, how they happened and what could've and should've been done to prevent them. I continue talking about people, processes and technologies that…
 
A serious conversation about the difficulty of being 18-27 and that finding a path is hard. You are not alone. I talk about the "fog of war," what it is and how it impacts life, business, and family. I continue discussing our inner self vs. outer self and how what we do today matters for the next job we set out to get. Send comments, questions and …
 
Details on the complexity of cyber security projects including talks about cloud, on-premise and hybrid deployments. Examples of basic to complex real-world cyber security implementations. Discussion regarding teams and staff involved with cyber security deployments. Some talk around requests for proposal, quotes, and information (RFP, RFI, RFQ, RF…
 
Cyber Security Job information for students, early professionals, and experienced staff retraining or switching roles. Herein I cover what the following technologies are and what professionals use them: Web Application Firewall (WAF), Identity and Access Management (IAM), Forensics, Intrusion Detection System (IDS) and Intrusion Prevention System (…
 
Talk around key cyber security technologies. Detailed explanations on each with job descriptions and roles helping prospects decide how and where to apply these technologies in the cyber security field. In part 2, I talk about Proxy/NAT, Multi-Factor Authentication (MFA), Mobile Device Management (MDM), Asset Management and Patch Management. Cyber …
 
Talk around key cyber security technologies. Detailed explanations on each with job descriptions and roles helping prospects decide how and where to apply these technologies in the cyber security field. This is part 1 where I talk about encryption, anti-virus, anti-malware/spyware, spam protection and firewalls. Cyber Security Job guidance for stud…
 
Talk explaining how to start in cyber security. I go into detail on parts of cyber and technologies and jobs to focus on. I give different paths depending on background and educational desire and ability. Not all cyber security professionals need four-year degrees. Cyber Security Job guidance for students, early professionals and experienced indivi…
 
Suggestions and examples surrounding professionalism and social media. Discussion on Facebook, LinkedIn, Instagram and Twitter, primarily. Cyber Security Job guidance for students, early professionals and experienced individuals looking for a new profession in Cyber Security or retraining. Send comments, questions and episode ideas to: cybergreybea…
 
Tips, tricks, suggestions and ideas on how to find a job as quickly as possible. Sites to visit, methods to find a job and suggestions on how to make job hunting easier. Cyber Security Job guidance for students, early professionals and experienced individuals looking for a new profession in Cyber Security or retraining. Send comments, questions and…
 
Response to cyber security analyst starting a new role and wanting advice on how to gain the trust and respect of his boss and colleagues. Discuss ways to learn, grow and share successes with his peers. Cyber Security Job guidance for students, early professionals and experienced individuals looking for a new profession in Cyber Security or retrain…
 
Loading …

Quick Reference Guide

Copyright 2021 | Sitemap | Privacy Policy | Terms of Service
Google login Twitter login Classic login