PODCAST · business
The Rook
by David Shaw
Most security podcasts are built for practitioners. The Rook is built for the people who have to make decisions about security without being security experts.Hosted by David Shaw — CISSP, fractional vCISO, and GRC consultant with 20 years in the seat — The Rook delivers board-ready intelligence for founders, PE operating partners, M&A attorneys, and executives who own security risk when security isn’t their day job.Every episode covers one topic in depth with examples from a real incident, a regulatory development, a threat pattern, or a market shift. No vendor hype. No practitioner jargon. Just what it means for the business you're running or the deal you're working on — and what to do about it.New episodes every other Tuesday.
-
1
The Deal You Didn’t Know You Made: Cyber Risk in M&A
Send us Fan MailIn this episode of The Rook, David Shaw, founder of Corvus Cybersecurity and principal vCISO, examines the most consistently overlooked risk in M&A transactions: inherited cyber exposure. From Yahoo's misrepresentation of its breach history during the Verizon acquisition to the Marriott-Starwood breach that went undetected for four years, the pattern is the same. Cybersecurity due diligence gets a questionnaire, while financial and legal diligence get exhaustive scrutiny. The result is that acquirers close deals and inherit compromised environments, undisclosed incidents, and compliance gaps that carry real remediation costs.In this episode:How Yahoo's misrepresentations to Verizon held through signing, and what saved Verizon wasn't diligenceHow Marriott bought a four-year-old, undetected breach when it acquired StarwoodWhy the standard M&A cybersecurity questionnaire fails to catch material riskHow R&W insurance carve-outs and cyber insurance pre-existing condition exclusions are changing the stakes for deal teamsThe four-stage cyber due diligence process used on the buy side, and the three-bucket model for translating findings into deal team decisionsWhat sellers should be doing now to protect deal valueThree artifacts every buyer should require, not just three questions to askThe Rook · Corvus Cybersecurity · corvus-cyber.com · David Shaw, CISSP, GLEG
No matches for "" in this podcast's transcripts.
No topics indexed yet for this podcast.
Loading reviews...
ABOUT THIS SHOW
Most security podcasts are built for practitioners. The Rook is built for the people who have to make decisions about security without being security experts.Hosted by David Shaw — CISSP, fractional vCISO, and GRC consultant with 20 years in the seat — The Rook delivers board-ready intelligence for founders, PE operating partners, M&A attorneys, and executives who own security risk when security isn’t their day job.Every episode covers one topic in depth with examples from a real incident, a regulatory development, a threat pattern, or a market shift. No vendor hype. No practitioner jargon. Just what it means for the business you're running or the deal you're working on — and what to do about it.New episodes every other Tuesday.
HOSTED BY
David Shaw
CATEGORIES
Loading similar podcasts...