PODCAST · technology
The SafeHouse
by The SafeHouse Initiative
The SafeHouse Podcast series is presented by The SafeHouse Initiative (safehouseinitiative.org). The SafeHouse Initiative was organized to provide education and awareness to businesses who are inundated with technical concepts, jargon and terms around the concepts of Business Continuity and Cyber Security. The SafeHouse Initiative is a collaborative organization where organizations can turn to gain a holistic view of solutions, education information, and cyber security insights. Reach out to any of the SafeHouse Initiative contributors to learn more. Be sure to rate us and leave some comments!
-
94
What to Do If You Get Hacked: A Practical Survival Guide with Alan Gin
What would you do if you got hacked today?Not in theory. In real life.In this episode of The SafeHouse, Jeff Edwards sits down with Alan Gin to walk through exactly what happens when a cyber incident hits close to home.Based on Alan’s three-part series on what to do if you get hacked, this conversation breaks down the reality most people aren’t prepared for.They cover:The most common ways people get compromisedHow to recognize the early signs of a breachWhat to do in the first 24 hoursHow to contain the damageWhere to go for helpThe mistakes that make things worseHow to prepare before it happensThis is not a technical discussion. It’s a practical one.Because when something goes wrong, there’s no help desk for your personal life.#CyberSecurity #CyberRisk #CyberAwareness#OnlineSafety #CyberAttack #SafeHousePodcast
-
93
Why SMBs Still Don’t Buy Cyber Insurance and What to Do Instead with Kurt Suhs
Most small and mid-sized businesses don’t have a standalone cyber insurance policy. Not because they don’t care. Not because they don’t face risk, but because the system around them isn’t built in a way that’s practical to navigate.In this episode, Jeff Edwards sits down with Kurt Suhs, Founder and CEO of Concierge Cyber, to unpack why adoption remains low, what’s changed in the cyber insurance market, and what businesses are actually doing instead.Kurt brings a rare perspective. From his early days at the FDIC investigating failed financial institutions, to helping shape some of the first cyber insurance policies in the late 90s, to building a “Plan B” model designed for the real world.This conversation goes beyond policy language and into something more useful:How businesses think about risk when they don’t have coverageWhy complexity and policy structure are major barriersWhat happens when something goes wrong and there’s no safety netAnd what a practical, response-first approach actually looks likeIf you’re an SMB owner, advisor, or part of the cyber insurance ecosystem, this is a grounded look at the gap between coverage and reality.#CyberInsurance #CyberRisk #SMB #Ransomware #BusinessContinuity #Resilience #Insurance #SafeHouse #FailureGap
-
92
Cyber Risk: Where Mitigation Meets Insurance With Michael Phillips
Cyber risk management is often framed as a choice between prevention and insurance. In reality, the most resilient organizations combine both.In this episode of The SafeHouse, Jeff Edwards speaks with Michael Phillips, Global Head of Cyber at Coalition, about how insurers evaluate cyber risk and why mitigation and insurance must work together. Building on a previous discussion about the elements of risk management, the conversation explores how underwriters think about cyber exposure, what signals insurers look for when assessing organizations, and why operational resilience is becoming central to modern cyber insurance. The result is a practical discussion about how businesses should approach cyber risk today.#SafeHousePodcast #CyberRisk #CyberSecurity #CyberResilience #RiskManagement #CyberSecurityPodcast #OperationalResilience
-
91
Making Sense of Risk Management with Davis Hake
Cyber risk is no longer just a technical issue. It’s a financial one.In this episode of The SafeHouse Podcast, Jeff Edwards sits down with Davis Hake, leader of Venable’s San Francisco cybersecurity practice, to unpack what risk management actually means in today’s cyber environment.Davis shares his early exposure to national critical infrastructure risk, the moment he saw one of the first comprehensive cyber breach tracking lists, and how Stuxnet changed the public conversation around digital vulnerability. From there, the discussion moves into something most organizations still struggle with: measuring cyber risk in financial terms.You’ll hear:• The five elements of risk explained in plain language• Why most cyber programs fail to quantify exposure• How to think about cyber risk like a CFO• The growing need for financial risk measurement training• Practical resources for professionals who want to level up If you work in cybersecurity, insurance, enterprise risk, or resilience strategy, this conversation will sharpen how you think about exposure, impact, and accountability.Cyber risk isn’t abstract. It’s measurable. And it’s time we treated it that way.#CyberRisk #RiskManagement #CyberSecurity#CyberInsurance #OperationalResilience.#BusinessContinuity
-
90
When Cybersecurity became a state responsibility with James Saunders
Nearly a year after federal cybersecurity policy shifted responsibility and funding to the states, what does that change actually look like in practice?In this episode of The SafeHouse Podcast, host Jeff Edwards sits down with James Saunders, Chief Information Security Officer for the State of Maryland, to unpack how cybersecurity leadership, resilience, and public service are evolving at the state level.James shares his career journey from frontline technical support at Comcast to federal cybersecurity leadership during COVID, and now to safeguarding Maryland’s digital infrastructure. Along the way, he explains Maryland’s IT Master Plan, the state’s five-pillar cybersecurity strategy, and why partnerships, talent development, and resilience matter more than ever.The conversation goes beyond policy and architecture, touching on leadership, empathy, burnout, and what it really takes to sustain a career in cybersecurity.If you work in cybersecurity, IT leadership, government, or risk management, this episode offers a rare, candid look inside how states are adapting to a new national reality.Key topics include:The shift of cybersecurity responsibility from federal to state governmentsMaryland’s IT Master Plan and cybersecurity strategyCyber resilience beyond technology aloneBuilding and retaining cybersecurity talentInformation sharing across statesLeadership lessons from crisis moments like COVIDOne practical thing everyone can do to improve their security posture#SafeHousePodcast #CyberRisk #CyberSecurity #StateCybersecurity#RiskManagement #CyberSecurityPodcast #Resilience #PublicSectorIT
-
89
Why Cyber Warranties Are Not Insurance — and Why That Matters
Most people think warranties and insurance are interchangeable.They’re notInsurance transfers risk after loss. Warranties enforce behavior before loss.In this episode of The SafeHouse Podcast, Jeff Edwards speaks with Kirsten Bay, CEO and co-founder of Cysurance, about why warranties are becoming a critical layer in cyber risk management.We discuss:Why traditional cyber insurance struggles with preventionHow warranties tie security controls to real accountabilityThe role of embedded security and measurable outcomesHow warranties reduce loss severity and support underwritingWhat this shift means for insurers, brokers, CISOs, and boardsThis conversation reframes how cyber risk is reduced, not just insured.If you care about resilience, insurability, and prevention-first models, this episode is for you.#SafeHousePodcast #CyberRisk#CyberInsurance #RiskManagement#CyberSecurityPodcast #Resilience #Cysurance
-
88
Cybersecurity Frameworks Made Practical: From Confusion to Clarity,
In this episode of The SafeHouse Podcast, we’re joined by Ryan Ettridge, CEO of CyberCert, an Australian innovator helping SMBs and enterprises turn compliance into measurable cyber resilience.Titled “Cybersecurity Frameworks Made Practical: From Confusion to Clarity,” this conversation tackles a problem many organizations face: frameworks and standards that look good on paper but feel impossible to implement in the real world.Ryan breaks down how AI-driven cyber certification can help organizations predict where risk is most likely to emerge, prevent disruption before it becomes a claim, and protect both insureds and carriers by creating clear, defensible signals of cyber maturity.We also explore how certification data can bridge the long-standing gap between technology teams and the cyber insurance ecosystem — giving brokers, underwriters, and policyholders a shared language for risk, resilience, and insurability.If you’ve ever wondered how to move from framework fatigue to practical cyber readiness, this episode delivers clarity.Predict. Prevent. Protect.#CyberResilience #AI #CyberInsurance #SafeHousePodcast #PredictPreventProtect #CyberCert
-
87
Cybercrime Is a Human Problem: A Conversation with Charlotte Hooper of The Cyber Helpline
When cybercrime hits, most people don’t know where to turn.In this episode of The SafeHouse Podcast, Jeff Edwards sits down with Charlotte Hooper, Co-Founder and Head of Operations at The Cyber Helpline, a nonprofit providing free, human-led support to victims of cybercrime in the UK, US, and beyond.Charlotte shares how a deeply personal experience with cyberstalking led her from policing into building one of the most practical cyber victim support models in operation today. We unpack how The Cyber Helpline handles more than 600 cases a month across 50+ categories of cybercrime using a mix of self-help tools, machine learning, and a global volunteer network.What we cover:• What actually happens after someone realizes they’ve been hacked, scammed, or stalked• Why most victims fall through the cracks of law enforcement and insurers• How a volunteer-driven model can scale without losing empathy or accuracy• Where AI and chatbots help and where they absolutely don’t• The fastest-growing cyber threats targeting individuals and small organizations• What “cyber victim support done right” should look like in the next five yearsThis is a grounded, honest conversation about cybercrime at the human level and what it really takes to help people recover when prevention fails.If you work in cybersecurity, insurance, IT, incident response, or simply want to understand the reality victims face, this episode is worth your time.🔔 Subscribe for more conversations on cyber resilience, incident response, and building a world without downtime.#TheSafeHousePodcast #CyberHelpline #CyberCrime #CyberVictims#IncidentResponse #CyberResilience #CyberSecurityAwareness#DigitalSafety #OnlineScams #CyberStalking #NonprofitTech #HumanCenteredSecurity#AIandCyber #CyberInsurance #BusinessContinuity
-
86
From Bootcamps to Battlefields: Keith Gologorsky on Modern Cyber Training
In this episode of the Safe House Initiative podcast, host Jeff Edwards welcomes Keith Gologorsky, Head of Public Sector at Hack the Box, for an in-depth conversation about building a successful career in cybersecurity. Keith shares his personal journey from computer science graduate to government analyst, recounting pivotal moments in military operations, threat analysis, and international collaboration. The discussion explores the limitations of traditional certifications, the importance of hands-on training, and the need for regularly updated, gamified learning experiences. Keith also addresses the cybersecurity skills gap, the evolving role of AI, and offers actionable advice for organizations of all sizes: prioritize cross-training and real-world practice to build resilient teams. Tune in for practical insights and strategies to future-proof your cybersecurity workforce.#CyberSecuirty #InfoSec #CyberSkillsGap#ContinuousLearning #HTB #HackTheBox #SafeHousePodcast
-
85
Cyber Decision Diagrams for OT/ICS: Turning Tribal Knowledge into Action w/ Sarah Flukes, CTO, Admeritia
Host Jeff Edwards talks with Sarah Flukes, CTO of Admeritia, about a simple but powerful idea: cyber decision diagrams. Born from real-world work in water utilities and industrial sites, these function-oriented maps turn complex OT/ICS environments into clear, shared understanding—for security, operations, incident response, and design.In this episodeWhy traditional network/asset maps fail engineers—and what “function-first” fixesUsing diagrams for OT/ICS risk, IR restart plans, and security-by-designCognitive effectiveness: diagrams people actually understand and useFree, no-login tool and why data stays local (no tracking)How SMBs and critical infrastructure can start todayResources: Free tools & guides at SafeHouseInitiative.org (no tracking, no fees)Guest: Sarah Flukes • Host: Jeff Edwards🎬 Production Team:Alan Gin – Executive ProducerJen Carpenter – Editor & Post Production SupervisorKeith Fukuhara – Production Manager & Technical DirectorDorian Naveh – Marketing & Social Media Manager#️⃣ Hashtags:#CyberSecurity #OTSecurity #ICS #CriticalInfrastructure #IndustrialSecurity #RiskManagement #IncidentResponse #SecurityByDesign #WaterUtilities #SMB #Admeritia #CyberDecisionDiagrams #SafeHousePodcast
-
84
SMB Cybersecurity in the Age of AI — Practical Defense with Chuck Brooks (Georgetown | Brooks Consulting)
Host Jeff Edwards sitsdown with Chuck Brooks—adjunct professor at Georgetown andpresident of Brooks Consulting—to cut through the noise on SMB cybersecurity.From AI-supercharged phishing and IoT sprawl to zero trust, CMMC/NIST, and why MFAisthe #1 first step, Chuck translates complex threats into clear actions anysmall or midsize business can take today. You’ll learn Resources: Free guides at SafeHouseInitiative.org (notracking, no fees)Guest: Chuck Brooks • Host: JeffEdwards 🎬 Production Team:Alan Gin – Executive ProducerJen Carpenter – Editor & Post ProductionSupervisorKeith Fukuhara – Production Manager &Technical DirectorDorian Naveh – Marketing & Social MediaManager #️⃣ Hashtags:#CyberSecurity #SMB #SmallBusiness #AI#Phishing #MFA #ZeroTrust #CMMC #NIST #IoT #OTSecurity #RiskManagement#BusinessContinuity #IncidentResponse #SafeHousePodcast
-
83
SMB Cyber Insurance: Why Only 4% Buy — Myths, Budgets & Better Options (w/ Eric Cernak)
Why do only ~4% of small and midsize businesses carry a standalone cyber policy? Host Jeff Edwards digs in with returning guest Eric Cernak (Hanover Insurance Group) to separate myth from reality and lay out practical next steps for SMBs, brokers, and MSPs.In this episode:“We’re too small to be a target” — how modern threat actors actually operateBolt-ons vs. standalone: where coverage (and limits) really differBudget tradeoffs in a hard insurance marketWhy early incident reporting helps outcomes (and renewals)Warranties, MSPs, and where to get trustworthy guidanceOne thing you can do today: start asking better questionsWho should listen: SMB owners, CISOs at resource-constrained orgs, MSPs, brokers/agents, and anyone shaping cyber risk decisions.Resources: Free guides & checklists at SafeHouseInitiative.org (no logins, tracking, or fees)Hosts & Guest: Jeff Edwards • with Eric Cernak#️⃣ Hashtags:#CyberInsurance #SMB #SmallBusinessSecurity #BusinessContinuity #Ransomware #RiskManagement #InsuranceBrokers #MSP #SupplyChainRisk #GenerativeAI #DataBreach #SafeHousePodcast
-
82
Thoughtful Reflection: Cyber Insurance Summer Series Conclusion with Tawana Johnson
And that's a wrap on our Cyber Insurance Summer Series! 🎬 In this must-watch conclusion, series co-host Tawana Johnson joins Jeff Edwards to distill the biggest lessons, surprising insights, and actionable advice from our expert guests.If you're a small to mid-size business owner trying to navigate the complexities of cyber insurance, this episode ties everything together. Tawana walks us through the entire lifecycle—from quantifying risk and applying for a policy to handling a claim and dealing with potential litigation. Find out the key themes that every single expert agreed on and the concrete steps you can take today to protect your business.-------------Key Takeaways from the SeriesThroughout the series, our experts consistently highlighted several crucial themes:🔑 Know Your Data: Understanding what data you have and where it's stored is the foundation of your entire security and insurance strategy.🤝 A Good Broker is Essential: An educated broker is your guide through the application, risk quantification, and claims process.⏰ Timely Notification is Critical: Report incidents to your broker and insurance carrier immediately to ensure coverage.⚖️ An Emerging Area of Law: There isn't much case law for cyber claims, making settlements common and expert guidance vital.🎯 "It's Not If, But When": Every organization, regardless of size, is a target.-------------Top 4 Action Items You Can Do TodayWant to improve your cybersecurity posture right now? Our guests recommend focusing on these four things:Know Your Data: Identify and classify all the data you handle.Enable Multi-Factor Authentication (MFA): Enforce it for every user on every application.Maintain Good Backups: Ensure you are backing up frequently and that your backups are secure. This is your best defense against paying a ransom.Have an Incident Response Plan: Create a plan and have a team in place before an incident occurs. Important: Keep a printed copy offline!-------------About The Safe HouseThe Safe House podcast is brought to you by The Safe House Initiative. We're dedicated to providing insights and practical advice to help organizations become more secure and resilient.Connect with us:📧 Email: [email protected]💻 Website: https://safehouseinitiative.orgThanks for joining us! Remember to be safe, be resilient, and be kind.#CyberInsurance #SmallBusiness #Cybersecurity #RiskManagement #DataBreach #IncidentResponse
-
81
When Business Stops: Coverage Litigation and the Fight for Recovery with Ted Brown
In this episode of the Safe House Initiative, hosts Jeff Edwards and Tawana Johnson are joined by Ted Brown, a partner at Lavin Rindner Duffield. Ted provides an expert legal perspective on cyber claims, discussing how they are far more complex than traditional insurance claims due to a multitude of moving pieces. He highlights common coverage disputes, such as late reporting and application issues, and stresses that cyber insurance is meant to bring a business back to where it was, not to "make them better." Ted advises that the single most important step for any business is to work with their insurer and legal counsel as soon as an incident occurs, as this can prevent massive headaches and ensure a smooth recovery.#CyberClaims #LegalPerspective #InsuranceLaw #CyberResilience #SMBs #IncidentResponse #RiskManagement #LegalCounsel #SafeHouseInitiative
-
80
When Business Stops: BI Litigation and the Fight for Recovery with Jane Warring
In this episode of the Safe House Initiative, host Jeff Edwards and Tawana speak with Jane Warring, a partner at Zel Law, who specializes in handling business interruption (BI) claims. She shares her expertise on the complexities of these claims for small and midsize businesses, emphasizing the importance of documentation and proving causation.Jane also reveals how the cyber insurance market is shifting to favor buyers, offering more competitive and broader policies. Don't get caught unprepared. Learn why your business needs to have the right team in place, including forensic accountants, and how a prompt claim submission can make all the difference in your recovery.#CyberInsurance #BusinessInterruption #Cybersecurity #SMB #LegalAdvice #RiskManagement #ZelLaw
-
79
Breach to Bench: How Class Actions Are Born From Cyber Incidents with Chris Wood
In this episode of the Safe House Initiative, host Jeff Edwards and Tawana Johnson speak with Chris Wood, a partner at Lewis Brisbois law firm, on the complexities of data breach litigation. He reveals that class action lawsuits have surged sixfold and are now targeting small and midsize businesses, not just large corporations. The litigation process often begins with regulatory breach disclosures, with plaintiffs' attorneys focusing on claims of negligence and breach of contract.Wood emphasizes that businesses can mitigate risk by implementing strong cybersecurity policies, conducting penetration tests, and adhering to standards like NIST and ISO. He also stresses that cyber insurance is essential for covering the high costs of legal defense and settlements.#DataBreach #Cybersecurity #CyberLiability #LegalRisk #ClassAction #SMBs #CyberInsurance #NIST #Compliance #LewisBrisbois
-
78
Cradle to the Grave: The Full Lifecycle of a Cyber Claim with Toni Sukhan
In this podcast episode, we feature cyber claims examiner Toni Sukhan as she outlines the critical steps businesses must take when facing a cyber incident. Sukhan, with over 20 years of experience, stresses the immediate need to notify an insurance carrier to ensure coverage and proper handling. She details a multi-disciplinary process involving breach counsel, forensic IT experts, and forensic accountants, explaining how this team manages incidents from initial notification to investigation and recovery. Sukhan also highlights the careful and highly-regulated decision-making process involved in ransom payments, which are treated as a last resort and require thorough assessment, legal compliance, and expert negotiation to mitigate risk and ensure a safe recovery of data.The episode particularly emphasizes the vulnerability of small to medium-sized businesses, which are disproportionately targeted by cybercriminals. According to Sukhan, the most crucial preventive measure for these businesses is maintaining viable and frequent data backups. She likens the cyber claims process to emergency room triage—stabilizing the situation, restoring systems, and then reconciling losses. This structured approach, combined with the expert management of ransom negotiations, underscores the complexity of modern cyber claims and the necessity of proactive preparation and a clear incident response plan.#CyberClaims #Ransomware #Cybersecurity #DataBreach #SmallBusinessSecurity #Insurance #IncidentResponse
-
77
Lost in Translation: Bridging the Cyber Policy Communication Gap with Brandy Vargas
Brandy Vargas, Senior Manager of Cyber Solutions at Crum & Forster, offers crucial insights for small to midsize businesses (SMBs) on cyber insurance. She emphasizes that these policies are not like traditional insurance and require proactive engagement. Brandy stresses the importance of thoroughly understanding your policy's nuances, like sublimits and exclusions, to avoid being caught off guard. She also highlights the immense value of the free resources often included with policies, such as phishing simulations and incident response templates, which can dramatically improve an SMB's cyber defenses at little to no cost.The episode also focuses on proper incident response. Brandy warns against the common mistake of reacting to a cyber event by acting alone, as it can jeopardize legal protections and insurance coverage. She strongly advises that SMBs immediately engage their insurer's emergency response teams to ensure the incident is managed correctly and privileged communications are preserved. Her core message is that SMBs must build strong relationships with their brokers and carriers to access expert support, prevent recurring attacks, and ultimately strengthen their cyber resilience.#CyberInsurance #SMBs #RiskManagement #Cybersecurity #IncidentResponse #SmallBusinessTips #CrumAndForster #CyberResilience #BusinessSecurity
-
76
What Underwriters Really See: From Application Pitfalls to Threat Intel with Heather Mongeau
In this episode of the Safe House Initiative, we're joined by Heather Mongeau, VP and Director of Cyber Product Solutions at Allied World Insurance Company. Heather takes us deep into the world of cyber underwriting and its critical role.She clarifies that cyber insurance is more than just financial aid post-incident; it's about proactive risk management, including services like penetration testing and vulnerability assessments. Heather stresses the vital importance of accurately completing cyber insurance applications, especially for SMBs, and highlights how essential Multi-Factor Authentication (MFA) and other strong security controls are for securing coverage.Key insights you'll gain:Underwriting is risk evaluation: It bridges the financial gap and enables business continuity.Applications are complex: Accurate details and knowledgeable brokers are crucial to avoid coverage denials.Security controls are prerequisites: Lack of MFA and other basics can lead to declined coverage.Cyber incidents are inevitable: Preparation is key to minimizing damage and downtime.Insurers offer more than just money: They provide valuable pre-breach risk management services and immediate access to incident response teams ("breach coaches") during an attack.Heather emphasizes that cyber insurance is an evolving field, urging businesses to partner closely with brokers and carriers to find tailored coverage. Don't face cyber threats alone – leverage these resources to strengthen your security posture.What's one security control your business uses that you think is absolutely crucial for cyber insurance? Let us know in the comments!#CyberInsurance #Underwriting #Cybersecurity #RiskManagement #SMBs #MFA #IncidentResponse #CyberAttacks #BusinessSecurity #AlliedWorld
-
75
The Broker Disconnect: Why Isn't Cyber Being Pitched with Ryan Mercer
In this episode of the Safe House Cyber Insurance Summer Series, we dive deep with Ryan Mercer, VP of Cyber at McGriff brokerage. With over a decade of experience, Ryan pulls back the curtain on the evolving world of cyber insurance.He explains why many small to medium-sized businesses (SMBs) still aren't getting cyber coverage, shedding light on challenges like broker education and the increasingly detailed application process.Here's what you'll learn:✅ The crucial role of brokers: How they're becoming consultative advisors, guiding clients on cybersecurity best practices (like MFA and EDR) to help them get better insurance terms.✅ Why prompt incident notification is key: Why you must immediately tell your broker and insurer if a cyber incident occurs for smooth claims and recovery.✅ The truth about cyber insurance: It's not a magic shield that prevents attacks. It primarily helps with the aftermath—think legal fees and recovery services—but it doesn't protect your reputation or guarantee business continuity.✅ A dynamic market: Understand how this relatively young market is rapidly changing, with new tools like automated underwriting emerging.This conversation bridges the gap between insurance and effective cybersecurity, highlighting how well-informed brokers are essential partners in navigating today's complex cyber risk landscape.What's your biggest takeaway about cyber insurance? Share your thoughts in the comments below!#cyberinsurance #SMBsecurity #Cybersecurity #RiskManagement #BrokerAdvice #MFA
-
74
Cyber Insurance Summer Series: Quantifying Risk with Safe Security's Steven Schwartz
In this episode, Jeff Edwards and Tawana Johnson from the Safe House Initiative podcast are joined by Steven Schwartz, Chief Insurance Officer at Safe Security, to kick off their cyber insurance summer series. Steven emphasizes that cyber risk quantification (CRQ) is essential for making informed decisions about cyber insurance.He explains that CRQ translates technical cybersecurity metrics into business-relevant financial terms, moving beyond inaccurate methods like basing limits on revenue. Every organization has a unique risk profile, making a data-driven approach crucial for balancing risk mitigation, transfer, and acceptance.Steven highlights the FAIR Institute's methodology as the global standard for CRQ, stressing the need to understand asset values and the business context, including often-overlooked business interruption risks. For practical CRQ, he suggests starting with basic metrics like sensitive data volume and revenue, using public breach cost data to estimate potential losses.The conversation also covers common overlooked risks, such as third-party vendor vulnerabilities and social engineering, with the human element remaining the weakest link, now amplified by AI tool usage. Steven then introduces emerging security warranties as alternatives to traditional insurance, offering faster payouts embedded within cybersecurity products. He also discusses how insurtech MGAs are simplifying cyber insurance for SMBs, providing quick, affordable policies and incident response services.Steven concludes by advising security leaders to quantify cyber risk in financial terms to better communicate with executives and boards, enabling smarter decisions and stronger cybersecurity.Key Takeaways: Cyber Risk Quantification (CRQ) is vital for understanding your actual risk and making informed cyber insurance decisions.Traditional methods of setting insurance limits are often flawed; every organization's risk profile is unique.The human element remains a significant vulnerability, exacerbated by new technologies like AI.Emerging security warranties and insurtech MGAs are changing the landscape of cyber risk financing.Translating cyber risk into financial terms is key for effective communication and strategic cybersecurity.#CyberInsurance #CyberRisk #Cybersecurity #RiskManagement #CRQ #SafeSecurity #Podcast #TechTalk #DataSecurity #BusinessInterruption #FAIRMethodology #Cybercrime #Insurtech #SMBsecurity #RiskQuantification #StevenSchwarz #SafeHouseInitiative
-
73
From Risk to Recovery-Every Stop: The Cyber Insurance Journey with Tawana Johnson
The Safe House Initiative podcast, hosted by Jeff Edwards and co-hosted by Tawana Johnson, delves into cyber insurance for small to mid-sized businesses. This series builds on previous discussions about incident response flaws, now focusing on the lifecycle of cyber insurance from risk assessment to claims and litigation.Tawana Johnson, a former litigator and current cyber breach coach at Lewis Brisbois, shares her expertise in handling cyber incidents like ransomware attacks, emphasizing cyber insurance's role in mitigating damage. A key point is the alarmingly low adoption rate (around 4%) of standalone cyber insurance policies among SMBs, attributed to a lack of understanding or perceived complexity.Tawana explains her role as a breach coach: supporting clients in crisis, ensuring attorney-client privilege during investigations, and coordinating with insurance carriers, forensic teams, and vendors to navigate legal obligations and recovery.The upcoming series will cover risk quantification, the role of brokers, underwriting, the claims process, class-action litigation, coverage disputes, and business interruption claims. Tawana highlights the evolving nature of cyber insurance, with carriers now using threat intelligence and penetration testing. She stresses the vital importance of standalone cyber insurance, as standard property and casualty policies often fall short in cyber coverage.Overall, the episode introduces the complexities of cyber insurance, addressing long-term risks beyond immediate incident response. The goal is to raise awareness, boost adoption, and offer practical guidance for SMBs to better protect themselves from cyber threats.Highlights:🔹 Low Adoption: Only ~4% of SMBs have standalone cyber insurance.🔹Breach Coach Expertise: Tawana Johnson offers unique insights from her legal and breach coaching background.🔹Privilege & Coordination: Breach coaches are key to maintaining attorney-client privilege and managing incident response.🔹Risk Quantification: Essential first step before purchasing insurance.🔹Educated Brokers: Crucial for proper cyber insurance advice.🔹Comprehensive Series: Covers claims, litigation, and disputes.🔹Standalone Policies: Provide critical, specialized cyber protections.Key Insights:🔹Awareness Gap: Low adoption indicates a lack of understanding and accessibility of cyber insurance.🔹Breach Coach Role: Provides crucial legal and emotional support, ensuring privileged communication.🔹Evolving Market: Requires greater due diligence due to sophisticated underwriting (e.g., pen testing).🔹Broker's Pivotal Role: Knowledgeable brokers are essential for appropriate policy selection.🔹Incident Response Coordination: Multi-stakeholder collaboration, often led by a breach coach, is vital.🔹Litigation Risk: Increasing class action lawsuits and coverage disputes necessitate preparedness.🔹Standalone Benefits: Offer unique services (breach coaches, negotiation support) beyond financial coverage.This episode aims to empower businesses with knowledge and strategies for managing and mitigating cyber risks in the digital world.#CyberInsurance #SMBsecurity #Ransomware #Cybersecurity #BusinessProtection
-
72
The Federal Cyber Enterprise: A New Way Forward with Craig Bowman
In this episode of the Safe House Initiative, host Jeff Edwards welcomes Craig Bowman, Vice President at Trellix and the visionary co-founder of the Redwood Project. Their conversation dives deep into the urgent need for a federal cyber enterprise that seamlessly integrates public and private sector efforts to fortify national cybersecurity.Craig shares his unique journey, from his early days in business and computers to pivotal roles within the Department of Defense, Adobe, Verizon, VMware, and now Trellix. His extensive background in both offensive and defensive cyber operations has shaped his profound understanding of the industry's collaborative needs.Discover the origin story of the Redwood Project, born from the recognized gap in government-private sector cyber collaboration, particularly post-Snowden. Craig unveils the project's five key workstreams, designed to bridge this divide: expanding the Special Government Employee Program, creating proactive disruption strategies, fostering voluntary partnerships through "Operation Dynamo," introducing vital legal protections, and bolstering cybersecurity for smaller companies.The discussion also explores navigating legislative challenges, the current administration's approach to deregulation and AI in cybersecurity, and the critical role of Information Sharing and Analysis Centers (ISACs). Craig emphasizes empowering small and medium businesses, advocating for democratized access to cybersecurity resources through grants and incentives.This episode offers invaluable insights into creating a more resilient cybersecurity landscape for the United States, highlighting the power of collaboration and strategic foresight.Key Takeaways:🔹 The essential role of a unified federal cyber enterprise.🔹 Challenges and strategies for enhancing public-private cybersecurity collaboration.🔹 The Redwood Project's five key initiatives for national cyber security.🔹 The impact of legislative changes and the current administration's focus on AI.🔹 How to empower small and medium businesses in national security efforts.Tune in now to understand how leaders like Craig Bowman are shaping the future of cybersecurity collaboration and protecting our digital infrastructure!Don't forget to like, subscribe, and follow the Safe House Initiative for more critical discussions on national security and cyber defense!#SafeHouseInitiative #Cybersecurity #NationalSecurity #RedwoodProject #CraigBowman #Trellix #PublicPrivatePartnership #CyberDefense #CyberThreats #Podcast #JeffEdwards
-
71
Navigating the Future: Federal Enterprise Prototypes in Threat Pursuit Part 2 with Daron Hartvigsen
In this episode of the Safehouse Initiative, host Jeff Edwards sits down with Daron Hartvigsen, a former technical services agent and cyber program manager for the Air Force Office of Special Investigations (OSI). Now a leader in the commercial cybersecurity sector, Darren shares his incredible career journey, offering invaluable insights into the evolving world of cybercrime and defense.From traditional surveillance in the late 90s to pioneering cybercrime investigations, Darren reveals how the digitization of everything transformed his roles. Discover the pivotal shift from reactive incident response to proactive threat pursuit, and how government cyber operations have increasingly converged with commercial cyber intelligence.Darren sheds light on his move from military and government into the private sector, driven by the expanding monetization of cyber threats like ransomware and extortion. Learn why cyber threat intelligence and active countermeasures gained prominence around 2019-2020, reshaping the landscape for everyone involved.The conversation delves into the inevitable integration of government and commercial cybersecurity efforts, highlighting how even core government functions like the Common Vulnerabilities and Exposures (CVE) process are now influenced by commercial entities. Darren envisions a hybrid cyber ecosystem where seasoned government professionals leverage their expertise in commercial roles to fill critical gaps.For anyone considering a transition from government service to the private sector, Darren offers essential advice: seek mentorship, embrace optimism, and project confidence. He emphasizes the crucial role of networking and believing in your value to thrive in a new environment.Darren Hartmixson's story is a practical and hopeful roadmap for cyber professionals navigating career transitions, reflecting the broader trends of collaboration, evolution, and resilience in cybersecurity.Key Highlights:✅ Darren's career evolution from traditional surveillance to cybercrime investigation with Air Force OSI.✅ The strategic shift from reactive incident response to proactive threat pursuit in cyber operations.✅ Why the expanding monetization of cyber threats fueled his transition from government to commercial cybersecurity.✅ The increasing integration and hybridization of government and commercial cybersecurity sectors.✅ Critical advice for career transition: mentorship, optimism, confidence, and networking.Tune in now to gain a deeper understanding of the future of cybersecurity and how expertise from both government and commercial sectors is shaping our digital defense.Follow the Safehouse Initiative for more in-depth discussions with leading experts in national security and cyber defense!#SafehouseInitiative #Cybersecurity #CareerTransition #GovernmentToCommercial #CyberThreatIntelligence
-
70
Navigating the Future: Federal Enterprise Prototypes in Threat Pursuit Part 1 with Luke Tenery
What does it take to defend national infrastructure in a rapidly evolving threat landscape? In this episode of the SafeHouse podcast, host Jeff Edwards sits down with Luke Tenery, Partner at StoneTurn and former cybersecurity leader at Kroll, to unpack the human and technical layers of building a federal threat pursuit model.With experience rooted in digital forensics, incident response, and working alongside former federal agents, Luke shares how blending public-private talent is reshaping how agencies and vendors approach threat defense. From cyber leadership and culture to the future of enterprise-wide visibility, this episode takes you inside the evolution of cyber strategy at the national level.💡 Why public-private collaboration is vital for modern threat pursuit🔍 How the government is aligning with commercial best practices🔐 The role of mission clarity and culture in building cyber resilience#Cybersecurity #FederalIT #ThreatPursuit #DigitalTrust #RiskManagement🎧 Watch now and learn how federal cybersecurity is becoming more proactive, agile, and integrated than ever.
-
69
Backup: Cybersecurity’s Silent Partner with W. Curtis Preston
System Backup operations are often viewed as separate from the Cybersecurity policies and procedures. But listen to W. Curtis Preston, known in the industry as "Mr. Backup” & host of "The Backup Wrap-up" podcast, discuss with Jeff Edwards, Co-Chairman of the SafeHouse Initiative, the importance of Backup as part of your cybersecurity and operational resilience plan.
-
68
When Cyber Security collides with AI with Jeff Crume
Jeff Crume, IBM Distinguished Engineer, CTO IBM Security Americas, and Cybersecurity Architect joins Jeff Edwards, Co-Chair of the SafeHouse Initiative as they discusses how AI is disrupting Cybersecurity and what to expect in the future.
-
67
The Human Nature of AI with Alastair Paterson
AI: Friend or Foe in Business? Unpacking the Human ElementAre companies truly ready for the AI revolution? In this episode of the SafeHouse podcast, host Jeff Edwards sits down with Alastair Patterson, CEO and co-founder of Harmonic Security and a veteran of the cybersecurity world. From his early days in the UK to navigating Silicon Valley and the wake-up call of ChatGPT, Alistair shares his unique perspective on how AI is transforming industries at an unprecedented pace.We dive deep into the corporate tug-of-war: the drive to innovate with AI versus the need for strict security in regulated sectors. Alistair reveals the hidden risks of "Shadow AI" – employees using tools without company knowledge – and why simply blocking AI isn't the answer. Learn why clear policies, visibility, and leveraging frameworks like NIST are crucial for navigating the human nature of AI adoption responsibly.#AI #Cybersecurity #DataSecurity #RiskManagement #BusinessInnovationWatch the full episode to understand how to embrace AI's power while protecting your organization!
-
66
Beyond Cyber Security: Risk Management with AJ Dharma Wardana
Join us in this enlightening episode of Beyond Cyber Security, as Jeff Edwards welcomes AJ Dharma Wardana, a seasoned portfolio manager at Envelop Risk, to dive deep into the intricate world of risk management. In today’s fast-paced digital landscape, understanding the expansiveness of risk is more crucial than ever. AJ shares her extensive journey from engineering to actuarial science, revealing her insights into the critical importance of a holistic approach to risk management that transcends traditional cyber insurance.In this podcast, we explore key themes such as:The Evolution of Risk Management: AJ discusses how the perception of risk has transformed, especially with the rise of cyber threats that can disrupt businesses of all sizes. She emphasizes that risk management is not just about purchasing a policy, but encompasses a diverse array of strategies, including proactive employee training and technological preparedness.The Role of AI in Cyber Risk: With advancements in artificial intelligence, AJ elucidates how companies can utilize AI not only to fend off threats but also to better understand risk landscapes. She underlines the importance of leveraging AI tools for real-time threat detection and risk assessment, as well as working in tandem with human expertise.Understanding Tail Risk: Tail risks, those low-probability but high-impact events, are a focal point of AJ’s discussion. She clarifies what tail risk means in the context of cyber incidents and how organizations can prepare for unpredictable events that could have catastrophic effects.Advice for Small Businesses: AJ offers crucial advice for small to medium-sized businesses, stressing that they must not overlook cyber threats simply because of their size. She provides actionable strategies for building a comprehensive risk management framework, tailored to the unique challenges they face.This episode is a treasure trove of insights for business owners and anyone interested in mastering the complexities of risk management beyond the cyber realm. Whether you’re a seasoned professional or new to the discussion, AJ’s expertise will help you navigate these challenges with confidence. Tune in to understand how you can fortify your approach to risk management in an age where threats are ever-evolving.For more detailed insights, be sure to listen to the full episode, and remember: risk management is about preparing for the unknown and safeguarding your future.#RiskManagement #CyberSecurity #CyberInsurance #TailRisk #BusinessContinuity #SmallBusinessSafety #CyberThreats #DataProtection #DigitalTransformation
-
65
The Federal Cyber Enterprise: Protecting U.S. Business From Cybersecurity Threats with Alex Green
Current cyber defenses are often fragmented, leaving U.S. businesses vulnerable to increasingly sophisticated attacks. Discover the transformative concept of a Federal Cyber Enterprise in this episode of The Safehouse Podcast, hosted by Jeff Edwards with guest Alex Green of the Redwood Project. They discuss how unifying government agency efforts and fostering genuine collaboration with the private sector – overcoming operational silos and improving vital intelligence sharing – can create a much stronger shield against escalating cyber threats. Tune in to understand this bold vision for national cybersecurity. Subscribe to The Safehouse Initiative wherever you get your podcasts and never miss an episode.#redwoodproject #smb #publicprivatepartnership #phishing#ai #ISAC #CriticalInfrastructure #healthcare #banking #finance #cisa #safeharbor
-
64
The Rise and Importance of InsureSec for SMBs with Gordon Malin - Part 2
In this second part of the 2-part podcast episode, host Jeff Edwards continues his conversation with Gordon Malin, co-founder and CEO of Elpha Secure, to explore the evolving world of cyber insurance and its critical role in bridging cybersecurity and risk management for businesses, especially small and mid-sized enterprises (SMBs). 🛡️💼They break down:✅ How reinsurance works and why it’s essential for cyber insurance.✅ The InsurSec model—combining cyber hygiene with insurance to reduce risk.✅ Why SMBs are the primary beneficiaries of bundled cybersecurity and insurance solutions.✅ The future of cyber insurance and how it’s shaping cybersecurity spending.Plus, Gordon shares why multi-factor authentication (MFA) and strong password policies are non-negotiable for protecting your business. 🔐Whether you're a business owner or just curious about the intersection of cybersecurity and insurance, this conversation is packed with insights to help you stay ahead of cyber threats. 💡📌 Key Takeaways:Cyber insurance is no longer optional—it’s a necessity.Insurers are now offering real-time security monitoring and bundled solutions.Data-driven insights are helping insurers identify the most effective security tools.Don’t miss out on this deep dive into how cyber insurance is transforming risk management for businesses of all sizes. If you missed Part 1, be sure to check it out! Hit Like, Subscribe, and let us know your thoughts in the comments! 💬Listen now on YouTube, Spotify, Apple Podcasts, and all major streaming platforms!#InsurSec #CyberInsurance #Cybersecurity #SMB #RiskManagement #SmallBusiness #AlphaSecure #Podcast #DataProtection #MFA #CyberHygiene #JeffEdwards #GordonMalin #ElphaSecure
-
63
The Rise and Importance of InsureSec for SMBs with Gordon Malin - Part 1
In this thought-provoking first of the two-part episode, host Jeff Edwards is joined by Gordon Malin, co-founder and CEO of Elpha Secure, to unpack the critical role of cyber insurance in today’s digital-first world. As cyber threats continue to rise, small and medium-sized businesses (SMBs) are increasingly vulnerable—yet less than 10% have standalone cyber insurance policies. Why is that, and what can be done to close the gap?Gordon shares his journey into the insurance industry, the pivotal moments that shaped his focus on cyber risk, and how events like Hurricane Katrina reshaped the way we think about systemic risks. Together, Jeff and Gordon explore the evolution of cyber insurance from a niche product to a business necessity, the challenges of underwriting cyber risk, and the growing importance of integrating cybersecurity measures into insurance products—a concept known as InsurSec.Key highlights from this episode include:✅ Why cyber insurance is essential for SMBs in an era of escalating cyber threats.✅ The alarming low penetration rates of cyber insurance among small businesses.✅ How cyber hygiene (like multi-factor authentication and regular backups) is becoming a prerequisite for coverage.✅ The looming supply-demand imbalance in the cyber insurance market and its potential impact on premiums and coverage.✅ The role of technology and InsurSec in reducing risks and creating a more sustainable insurance ecosystem.Gordon also sheds light on the misconceptions SMBs have about cyber risk, the difference between attritional and systemic losses, and how innovations in insurtech are helping businesses stay ahead of the curve.Whether you’re a small business owner, IT professional, or simply curious about the future of cyber insurance, this episode is packed with actionable insights and expert advice. Tune in to learn how to protect your business, navigate the complexities of cyber insurance, and understand why InsurSec is the way forward.Subscribe to The Safehouse Initiative for more expert discussions on cybersecurity, insurance, and how SMBs can thrive in an increasingly digital world.Listen now on YouTube, Spotify, Apple Podcasts, and all major streaming platforms!#InsurSec #CyberInsurance #Cybersecurity #SMB #RiskManagement #SmallBusiness #CyberHygiene #AlphaSecure #Podcast
-
62
Now What? How to Pay Your Ransom with Marc Grens
In this episode of the Safe House Initiative Podcast, host Jeff Edwards and Marc Grens, co-founder of Digital Mint, explore the intricate world of ransomware attacks and the critical steps organizations must take after a breach. They discuss the evolution of ransomware payments, from unregulated practices to a more structured, compliance-driven process, including navigating OFAC sanctions and legal risks. Mark emphasizes the importance of proactive cybersecurity measures, such as two-factor authentication and employee training, to prevent phishing attacks, which are a leading cause of ransomware incidents. The conversation also highlights the psychological impact of ransomware and why many organizations only prioritize cybersecurity after an attack. Looking ahead, Mark underscores the need for ongoing vigilance as ransomware threats continue to evolve.Don’t miss essential conversation like this! Follow the Safe House Initiative Podcast for more expert insights on cybersecurity, and tune in to stay informed and prepared in the face of ever-growing digital threats.#Ransomware #Cybersecurity #Compliance #OFAC #DigitalMint #CyberHygiene #TwoFactorAuthentication #SafeHouseInitiative------Edited and Produced by Trustbridge Communications.
-
61
Origins: Cybersecurity and Beyond with Matthew Cullina - Part 2
In this second part of our conversation with Matthew Cullina, head of the Global Cyber Insurance Group at TransUnion, Jeff Edwards dives deeper into the rapidly evolving world of cyber insurance and its critical role in today’s digital landscape.📈 Explore how the $10-12 billion cyber insurance market is growing at 25% annually, yet small to mid-sized businesses (SMBs) and families remain significantly underinsured.⚠️ Unpack the challenges of systemic risks and how the industry is addressing potential catastrophic cyber events.🔐 Learn why proactive cyber hygiene is essential and how the insurance application process can act as a cybersecurity audit for businesses.Matthew also emphasizes the importance of education in helping SMBs understand their vulnerabilities and the long-term value of cyber insurance in building resilience.🎧 Tune in now to gain actionable insights and discover how businesses of all sizes can navigate the complexities of cybersecurity and beyond.------Edited and Produced by Trustbridge Communications.
-
60
Origins: Cybersecurity and Beyond with Matthew Cullina - Part 1
In this insightful first episode of a two-part series, Jeff Edwards and Matt Cullina, head of TransUnion’s Global Cyber Insurance Group, explore the evolving world of cyber insurance in the age of AI and digital threats. Tracing Matt's career from history major to cyber insurance leader, they discuss the historical context of risk management and insurance, revealing how past events like the Great Fire of London shaped modern insurance practices, including the crucial development of cyber insurance. The conversation delves into the etymology of key terms like "crisis" (a decision point) and "cyber" (from the Greek for steering, highlighting the need for human control), emphasizing how understanding these origins empowers individuals and businesses to navigate today's complex digital landscape. They examine the evolution of identity theft from simple scams to sophisticated cyber threats, the impact of data breach laws, and the dual role of AI in both enhancing security and creating new risks. Matt underscores the importance of continuous education and adaptation to stay ahead of cyber criminals, highlighting that cyber risks are fundamentally people problems, not just technological ones. Join Jeff and Matt as they discuss how we can responsibly steer the future of technology and effectively manage emerging threats. ------ Edited and Produced by Trustbridge Communications.
-
59
The Ever Expanding Cyber Insurance Ecosystem with Mark Greisiger
Welcome to this episode of The Safe House, hosted by Jeff Edwards, co-chair of the Safe House Initiative. Join us as we dive into the evolving world of cyber insurance with Mark Greisiger, CEO of NetDiligence. Discover Mark’s journey from the early days of cyber risk to today’s sophisticated landscape, exploring the critical balance between insurance and cybersecurity. Learn about the growing emphasis on resiliency, the impact of ransomware, and the importance of understanding vendor relationships. This episode is packed with insights for business owners, cybersecurity professionals, and anyone interested in navigating the complexities of cyber risk management. Tune in and empower your organization to be safer and more resilient in the face of cyber threats! Don’t miss this opportunity to learn from industry experts and enhance your understanding of how to protect your business in today’s digital age! ------ Edited and Produced by Trustbridge Communications.
-
58
ABCs of MDR with Mark Sangster - Part 2
In this second part of a two-part series, Mark dives deep into the role of MDR in cybersecurity, and discusses real-world implications of different cyber threats and the need for effective MDR strategies as well as continuous awareness and education. Mark and Jeff also address the need for businesses to adapt to the evolving cybersecurity landscape, ensuring that even organizations with limited budgets can access robust security measures. Viewers will gain actionable insights, including the importance of conducting executive-level threat assessments and understanding their obligations regarding cybersecurity. This episode is a must-watch for anyone looking to bolster their cybersecurity posture and foster a culture of security within their organization. Don’t miss this opportunity to learn from industry experts and enhance your understanding of how to protect your business in today’s digital age! ------ Edited and Produced by Trustbridge Communications.
-
57
Data-Driven Research Approach to Cyber Risk with Wade Baker
In this episode of The Safe House, host Jeff Edwards sits down with Wade Baker, co-founder of the Scientia Institute, to delve into the world of cybersecurity data analysis. Wade shares his journey from aspiring baseball player to leading a groundbreaking data science firm focused on cybersecurity insights. They discuss the evolution of risk management, the importance of empirical data in understanding security incidents, and how organizations can utilize this information to enhance their resilience against threats. Tune in to discover Wade’s invaluable advice on identifying key questions and measuring effectiveness in cybersecurity practices. Join us as we shine a light on the complexities of data-driven security strategies and empower you to make informed decisions in an ever-changing digital landscape. Don’t miss out on this opportunity to enhance your understanding of cybersecurity strategies—tune in now and empower yourself to navigate the digital landscape with confidence! ------Edited and Produced by Trustbridge Communications.
-
56
ABCs of MDR with Mark Sangster - Part 1
Join us in this enlightening episode hosted by Jeff Edwards, as we navigate the complex world of cybersecurity acronyms and concepts like MDR (Managed Detection and Response). In this informative discussion, we welcome Mark Sangster, Chief of Strategy at Adlumin, who shares his extensive 25+ years of experience in cybersecurity. Together, they demystify the alphabet soup of cybersecurity, including EDR, XDR, and more, providing clarity on how these technologies can protect small to midsize businesses against cyber threats. In this first part of a two-part series, the episode dives deep into the practicalities of MDR services, explaining how they operate in real-time to detect and respond to threats effectively. Mark and Jeff also address the need for businesses to adapt to the evolving cybersecurity landscape, ensuring that even organizations with limited budgets can access robust security measures. Viewers will gain actionable insights, including the importance of conducting executive-level threat assessments and understanding their obligations regarding cybersecurity. This episode is a must-watch for anyone looking to bolster their cybersecurity posture and foster a culture of security within their organization. Don’t miss this opportunity to learn from industry experts and enhance your understanding of how to protect your business in today’s digital age! ------ Edited and Produced by Trustbridge Communications.
-
55
5 Ws of Cybersecurity Maturity Model Certification
In this episode of the Safehouse podcast, Jeff Edwards welcomes Jody Stoehr, Co-founder & Chief Revenue Officer of SMPL-C, to discuss the critical topic of Cybersecurity Maturity Model Certification (CMMC). Jody breaks down the who, what, when, where, and why of CMMC, highlighting its importance for defense contractors and Department of Defense partners in safeguarding sensitive information. With the new mandate in effect, Jody provides insights on navigating the compliance process, addressing common challenges, and emphasizing the need for proactive measures to protect our national security. Tune in for valuable information that could be essential for your business’ future in the defense industry. Edited and Produced by Trustbridge Communications.
-
54
Global Cybersecurity Perspective: A Quick History Lesson
In this episode of the Safe House Initiative podcast, host Jeff Edwards welcomes Jude Sunderbruch, the managing director at Cyber Defense Lab, to discuss his extensive career in cybersecurity and national defense. Jude shares invaluable insights into the evolution of cyber defense strategies post-9/11, his experiences with the FBI and DHS, and the importance of building relationships with government agencies for small and medium-sized businesses. He provides practical advice on securing digital assets, emphasizes the significance of proactive communication with law enforcement, and highlights various resources available for companies to enhance their cybersecurity measures. Tune in for an engaging conversation that sheds light on navigating the complex landscape of cybersecurity in today’s world. Don’t miss out on these essential tips for safeguarding your business Edited and Produced by Trustbridge Communications.
-
53
Using Frameworks Effectively to Plot Your Cybersecurity Journey
Cybersecurity is a journey and navigating it can often feel overwhelming. With numerous frameworks available, many organizations grapple with questions like, "Am I maturing fast enough?" or "Have I done enough?" In this episode, we dive deep into the value of frameworks in cybersecurity with insights from Kelly Hood, Executive Vice President and Cybersecurity Engineer at Optic Cyber Solutions. She emphasizes that frameworks help define what cybersecurity means to each organization. She also added that the first step for many organizations is simply to figure out what they have. Understanding existing assets and vulnerabilities sets the stage for effective cybersecurity planning. Edited and Produced by Trustbridge Communications.
-
52
Anatomy of Incident Response, Part 2
Join us for this second part of a two-part series entitled ‘𝘛𝘩𝘦 𝘈𝘯𝘢𝘵𝘰𝘮𝘺 𝘰𝘧 𝘐𝘯𝘤𝘪𝘥𝘦𝘯𝘵 𝘙𝘦𝘴𝘱𝘰𝘯𝘴𝘦’ with Eder Ribeiro, Director of Global Incident Response at TransUnion, and host Jeff Edwards, Co-chair of the SafeHouse Initiative. Giving real-world examples of the consequences of not having an Incident Response Plan, Eder encourages both businesses and individuals to proactively address their cybersecurity vulnerabilities. He gives very practical guidance in laying out the crucial elements of an effective plan: risk analysis, resource allocation, stakeholder involvement, and regular plan testing through tabletop exercises.
-
51
Anatomy of Incident Response, Part 1
What is the best way for you to reduce the impact of cyber incidents? Every business has a ‘digital footprint.’ We rely on digital systems that can be leveraged against us by cyber criminals. In this first part of a two-part series of The SafeHouse Podcast with Eder Ribeiro, Director of Global Incident Response at TransUnion, and host Jeff Edwards, Co-chair of the SafeHouse Initiative, they discuss how to lower your cyber risk by having an Incident Response Plan. In today’s digital world, incident response planning is a critical part of doing business. Edited and Produced by Trustbridge Communications.
-
50
The Summer of Ransomware
Iranga Kahangama, Assistant Secretary for Cyber, Infrastructure, Risk and Resilience at the US Department of Homeland Security, joins Jeff Edwards, Co-chair of the SafeHouse Initiative, on this episode of The SafeHouse Podcast. Iranga and Jeff explore the ransomware attacks that took place in the summer of 2021 and discuss lessons-learned from these attacks. If you're a small or medium-sized business, you'll want to listen and learn how to better protect your organization from ransomware attacks. Edited and Produced by Trustbridge Communications.
-
49
Crisis Response: Protecting Your Reputation
Stephanie Craig, President of Kith.co joins Jeff Edwards, Co-Chair of the SafeHouse Initiative to learn how your personal and company reputation are at risk in a cyber event. Learn how to protect your reputation and minimize damage in the event of a cyber breach or cyber outage. Edited by Amy Scott. Produced by David Lewis.
-
48
The NIST NCCOE: The Hub of Cybersecurity Collaboration
Cherilyn Pascoe, Director of the National Cybersecurity Center of Excellence (NCCOE) at the National Institute of Standards and Technology (NIST) joins Jeff Edwards, Co-Chair of the SafeHouse Initiative, to discuss the mission and role of the NCCOE. Learn what the NCCOE is and how they impact business in the ever changing landscape of cybersecurity. Edited by Amy Scott. Produced by David Lewis.
-
47
Addressing the Cybersecurity Shortage Through Internships
Mike Battistella, President & CTO of Solutions cubed, and Director of Government Solutions at the DVMS Institute joins Jeff Edwards, Co-Chair of the SafeHouse Initiative as they explore how to setup, run and use a cybersecurity Internship program. Learn how Mike runs what is now a very successful internship program that helps develop deep cybersecurity expertise and experience in new consultants. Edited by Amy Smith. Produced by David Lewis.
-
46
Addressing the Cybersecurity Shortage Through Internships
Mike Battistella, President & CTO of Solutions cubed, and Director of Government Solutions at the DVMS Institute joins Jeff Edwards, Co-Chair of the SafeHouse Initiative as they explore how to setup, run and use a cybersecurity Internship program. Learn how Mike runs what is now a very successful internship program that helps develop deep cybersecurity expertise and experience in new consultants. Edited by Amy Smith. Produced by David Lewis.
-
45
What is a vCISO and why you need one
Greg Schaffer, SMB Advisory CISO, Founder vCISO Services, Author, Podcast Host, and Cybersecurity Subject Matter Expert joins Jeff Edwards, Co-Chair of the SafeHouse Initiative to introduce, define and explore what a Virtual CISO (Chief Information Security Officer) is, what they can do for your business, why you need one, and what to look for if you're looking to engage a vCISO. Edited by Amy Scott. Produced by David Lewis.
We're indexing this podcast's transcripts for the first time — this can take a minute or two. We'll show results as soon as they're ready.
No matches for "" in this podcast's transcripts.
No topics indexed yet for this podcast.
Loading reviews...
ABOUT THIS SHOW
The SafeHouse Podcast series is presented by The SafeHouse Initiative (safehouseinitiative.org). The SafeHouse Initiative was organized to provide education and awareness to businesses who are inundated with technical concepts, jargon and terms around the concepts of Business Continuity and Cyber Security. The SafeHouse Initiative is a collaborative organization where organizations can turn to gain a holistic view of solutions, education information, and cyber security insights. Reach out to any of the SafeHouse Initiative contributors to learn more. Be sure to rate us and leave some comments!
HOSTED BY
The SafeHouse Initiative
CATEGORIES
Loading similar podcasts...