All Episodes
Cybersecurity Where You Are (audio) — 185 episodes
Episode 187: The Role of a CISO as a Strategic Storyteller
Episode 186: Strong Cyber Defense Starts with IT Operations
Episode 185: AI Prompt Injection from a Risk Perspective
Episode 182: Striking a Balance on an AI Adoption Journey
Episode 181: Supply and Demand of Cybersecurity Ecosystems
Episode 180: Secure by Design Fused to Operational Practices
Episode 179: 2026 Cybersecurity Predictions from CIS — Pt 3
Episode 178: Appropriate Defense to Iranian Threat Activity
Episode 177: Power of Community-Developed Security Content
Episode 176: A Cybersecurity Journey of Incremental Wins
Episode 175: Practically Solving Cyber Problems at Scale
Episode 174: 2026 Cybersecurity Predictions from CIS — Pt 2
Episode 173: Scammer Jousting as Human Risk Management
Episode 172: Helping CISOs as a CIS Controls Ambassador
Episode 171: Securing CNI in U.S. SLTTs through AI Adoption
Episode 170: Visibility for SLTTs in Blocking Typhoon APTs
Episode 169: 2026 Cybersecurity Predictions from CIS — Pt 1
Episode 168: Institutionalizing Good Cybersecurity Ideas
Episode 167: Volunteers as a Critical Cybersecurity Resource
Episode 166: Foundations of Actuarial Science in Cyber Risk
Episode 165: An In-Depth Look at CIS Controls Implementation
Episode 164: Secure by Design in Software Development
Episode 163: K-12 Cybersecurity Made Practical
Episode 162: A Managed Approach to a Managed Attack Surface
Episode 161: An Ecosystem-Wide Approach to CNI Resilience
Episode 160: Championing SME Security with the CIS Controls
Episode 159: The Scariest Malware of 2025
Episode 158: Scaling CMMC Compliance with Nerdio
Episode 157: How a Modern, Mission-Driven CIRT Operates
Episode 156: How CIS Uses CIS Products and Services
Episode 155: The Story of CIS 2.0 and Adapting to a New Era
Episode 154: Integration of Incident Response into DevSecOps
Episode 153: Advice for Newcomers to IT and Cybersecurity
Episode 152: Driving Response Time While Enriching Telemetry
Episode 151: 2025 Cybersecurity Predictions H2 Review — Pt 2
Episode 150: A Roundtable Chat to Celebrate 150 Episodes
Episode 149: Human Error, AI Missteps, and Other VM Risks
Episode 148: How MDR Helps Shine a Light on Zero-Day Attacks
Episode 147: Actualizing Threat Intel for Effective Defense
Episode 146: What Security Looks Like for a Security Company
Episode 145: 2025 Cybersecurity Predictions H2 Review — Pt 1
Episode 144: Carrying on the MS-ISAC's Character and Culture
Episode 143: Iran's Growing Multidimensional Threat Activity
Episode 142: SLTTs and Their Nuanced Cybersecurity Needs
Episode 141: A Human-Centered Take on Password Policies
Episode 140: Threat-Informed Travel Safety Tips
Episode 139: Community Building for the Cyber-Underserved
Episode 138: The Use of GenAI to Refine Your TTX Development
Episode 137: National Cybersecurity Through SLTT Resilience
Episode 136: How WiCyS Advances Women in Cybersecurity
Episode 135: Five Lightning Chats at RSAC Conference 2025
Episode 134: How GenAI Lowers Bar for Cyber Threat Actors
Episode 133: DieNet's DDoS Hacktivism and Evolving TTPs
Episode 132: Day One, Step One, Dollar One for Cybersecurity
Episode 131: It Takes a Village to 'Reasonably' Secure SoCal
Episode 130: The Story and Future of CIS Thought Leadership
Episode 129: Embedding Cybersecurity in Project Management
Episode 128: How Cryptocurrency Is Used for Financial Fraud
Episode 127: Visible Ops as a Cybersecurity Foundation
Episode 126: A Day in the Life of a CTI Analyst
Episode 125: How Leadership Principles Influence CIS Culture
Episode 124: The Many Layers of a Malware Takedown Operation
Episode 123: An Operational Playbook for Security Impact
Episode 122: DeepSeek AI Security and Utility Considerations
Episode 121: The Economics of Cybersecurity Decision-Making
Episode 120: How Contextual Awareness Drives AI Governance
Episode 119: Multidimensional Threat Defense at Large Events
Episode 118: Preparing for Post-Quantum Cryptography
Episode 117: 2025 Cybersecurity Predictions from CIS Experts
Episode 116: AI-Enhanced Ransomware and Defending Against It
Episode 115: Continuous Feedback as CIS Employee Culture
Episode 114: 3 Board Chairs Reflect on 25 Years of Community
Episode 113: Cyber Risk Prioritization as Ransomware Defense
Episode 112: How SANS Fosters Action on Cybersecurity Trends
Episode 111: Distilling a First Principle of Cybersecurity
Episode 110: How Security Culture and Corporate Culture Mesh
Episode 109: The Scariest Malware of 2024
Episode 108: Gaming and Competition in Cybersecurity
Episode 107: Continuous Improvement via Secure by Design
Episode 106: How to Avoid Falling for a Donation Scam
Episode 105: Context in Cyber Risk Quantification
Episode 104: Inside the First Year of a Cybersecurity Career
Episode 103: Education vs. Experience in Cybersecurity
Episode 102: The Sporty Rigor of CIS Controls Accreditation
Episode 101: Visualizing Attack Paths in Active Directory
Episode 100: Celebrating 100 Episodes and Looking Ahead
Episode 99: How Cyber-Informed Engineering Builds Resilience
Episode 98: Transparency as a Tool to Combat Insider Threats
Episode 97: How Far We've Come preceding CIS's 25th Birthday
Episode 96: Making Continuous Compliance Actionable for SMBs
Episode 95: AI Augmentation and Its Impact on Cyber Defense
Episode 94: Community Defense at the ISAC Annual Meeting
Episode 93: Keeping Societal Confidence in a Connected World
Episode 92: A Framework to Counter Evolving Cyber Threats
Episode 91: What You Need to Know about CIS Controls v8.1
Episode 90: Migrating to the Cloud with Control Continuity
Episode 89: How Threat Actors Are Using GenAI as an Enabler
Episode 88: The Evolution of the Role of a CISO
Episode 87: Marking 11 Years as a Verizon DBIR Contributor
Episode 86 Evangelizing CIS's Message at RSAC 2024
Episode 85: Reenergizing Collective Action at RSAC 2024
Episode 84: Why We Need to Define Reasonable Cybersecurity
Episode 83: Why Meeting in Person Matters to CIS Employees
Episode 82: How CIS Leadership Values Team Building Events
Episode 81: Exploring IAM for Identity Management Day 2024
Episode 80: Advancing Common Good in Cybersecurity – Part 2
Episode 79: Advancing Common Good in Cybersecurity – Part 1
Episode 78: Conductors of Risk Building Harmony in Ambiguity
Episode 77: How to Use Data to Make Cybersecurity Decisions
Episode 76: The Role of Thought Leadership in Cybersecurity
Episode 75: How GenAI Continues to Reshape Cybersecurity
Episode 74: The Nexus of Cybersecurity & Privacy Legislation
Episode 73: A YIR for Our 2023 Cybersecurity Predictions
Episode 72: Cybersecurity in Education as a Balancing Act
Episode 71: Advancing K-12 Cybersecurity Through Community
Episode 70: How the Media Molds Public Perception of Infosec
Episode 69: How the NCSR Assessment Sows SLTT Cyber Maturity
Episode 68: Designing Cyber Defense as a Partnership Effort
Episode 67: Seizing the Moment after a Cybersecurity Audit
Episode 66: How RABET-V Verifies Non-Voting Election Tech
Episode 65: Making Cyber Risk Analysis Practical with QRA
Episode 64: Defining Your Data Management Standards
Episode 63: Building Capability and Integration with SBOMs
Episode 62: Inside the 'Spidey Sense' of a Pentester
Episode 61: Overcoming Pre-Audit Scaries Through Governance
Episode 60: Guiding Vendors to IoT Security by Design
Episode 59: Probing the Modern Role of the Pentest
Episode 58: Inside CIS's Award-Winning Workplace Culture
Episode 57: Celebrating the 20th Anniversary of the MS-ISAC!
Episode 56: Cybersecurity Risks and Rewards of LLMs
Episode 55: Live at RSA Conference 2023
Episode 54: How to Get Started in Cybersecurity
Episode 53: Fostering a Neurodiverse Cybersecurity Industry
Episode 52: Back in the Buzz of RSA Conference
Episode 51: Making a Roadmap for Your Cybersecurity Journey
Episode 50: The Best of Cybersecurity Where You Are
Episode 49: Artificial Intelligence and Cybersecurity
Episode 48: 3 Trends to Watch in the Cybersecurity Industry
Episode 47: How Security and Compliance Support Each Other
Episode 46: Integration as a Theme for 2023
Episode 45: The Importance of Mentorship
Episode 44: A Zero Trust Framework Knows No End
Episode 43: Giving Back Through CIS CARES
Episode 42: Advocacy for the Underserved
Episode 41: A Blueprint for Ransomware Defense
Episode 40 See Yourself in Cyber to Be Cyber Smart
Episode 39: Cybersecurity at Scale
Episode 38: How the Cyber Threat Landscape Is Changing
Episode 37: Collaboration at the 15th Annual MS-ISAC Meeting
Episode 36: Strong Elections are Cyber STRONG
Episode 35: Remembering the Late Alan Paller
Episode 34: A Survey of Hacking in Hollywood
Episode 33" The Shift-Left of IoT Security to Vendors
Episode 32: What You Need to Know Ahead of RSA 2022
Episode 31: To Achieve ICS Security Today, Look to Yesterday
Episode 30: Solving Cybersecurity at Scale with Nonprofits
Episode 29: Conceptualizing Reasonableness for Risk Analysis
Episode 28: The Convergence of Cybersecurity and Public Policy
Episode 27: Cyber Scams
Episode 26: Automating the Secure Configuration Management Process
Episode 25: Building an Internal Incident Response Team
Episode 24: How Do I Start a Career in Cybersecurity?
Episode 23: Cybersecurity Predictions for 2022
Episode 22: CIS Behind the Veil: Log4j
Episode 21: Year In Review; A List of our Favorite Episodes
Episode 20: The State of Election Cybersecurity
Episode 19: For Data Compliance, Automation is Key
Episode 18: Top 5 Scariest Malware
Episode 17: Cybersecurity Awareness Month: It's All About the Big Picture
Episode 16: Cybersecurity: Think INSIDE the Box
Episode 15: Cybersecurity Success Takes Soft Skills
Episode 14: The Top 5 Cybersecurity Tips for the Family
Episode 13: What's Important to You in Cybersecurity? A Host Q&A
Episode 12: Cybersecurity and Government: Less Wizardry, More Policy
Episode 11: Remote Attestation Helps Zero Trust
Episode 10: Hospitals in Need of Cybersecurity STAT!
Episode 9: Mitigating Risk: Information Security Governance
Episode 8: CIS Controls v8...First Impressions
Episode 7: CIS Controls v8...It’s Not About the List
Episode 6: 2020 Elections Year in Review
Episode 5: The Tools of Cyber Defense...an Ongoing, Repetitive Process
Episode 4: Dynamics of Cyber Defense...an Ongoing, Repetitive Process
Episode 3: Third-party Risk Management – Beyond the Questionnaire
Episode 2: Trends: Then, Now, and Into the Future
Episode 1: Welcome to the Basics