
Cyber Risk Management Podcast (Kip Boyle)
Explore every episode of Cyber Risk Management Podcast
Pub. Date | Title | Duration | |
---|---|---|---|
12 Mar 2024 | EP 153: NIST AI Risk Management Framework, part 1 | 00:40:49 | |
What's in the NIST Artificial Intelligence Risk Management Framework (NIST AT-RMF)? And, how do you use it? Let's find out with your hosts Kip Boyle, CISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. | |||
29 Aug 2023 | EP 139: How to Use Cyber Insurance as a Cyber and Privacy Risk Management Tool | 00:39:22 | |
How does an attorney think about using cyber insurance to manage cyber and privacy risks? Let's find out with our guest Jane Petoskey. Your hosts are Kip Boyle, CISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. | |||
05 Dec 2023 | EP 146: Security Metrics | 00:48:20 | |
"How can we measure success with cybersecurity? Let's find out with our guest Jared Pfost. Your hosts are Kip Boyle, CISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. See Jared's ""Security Metrics Reference"" here -- https://www.cr-map.com/metrics" | |||
28 Mar 2023 | EP 128: Secrets of Cyber Risk Management at Non-Profits | 00:33:52 | |
Are non-profits at risk for cyber exploitation? If so, why? And what should they do about it? Let's find out with our guest, Lew Bader, the Finance Director at "Counseling In Schools". Your hosts are Kip Boyle, CISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. | |||
26 Mar 2024 | EP 154: NIST AI Risk Management Framework, part 2 | 00:48:06 | |
Here's part 2 of what's in the NIST Artificial Intelligence Risk Management Framework (NIST AT-RMF)? And, how do you use it? Let's find out with your hosts Kip Boyle, CISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. | |||
01 Aug 2023 | EP 137: How to Make Tabletop Exercises (TTX) Fun! | 00:33:54 | |
Traditional incident response exercises are often boring and awkward. That's why we don't do them, even though we should. Want a new way to get people excited about doing one? Let's learn about a proven innovation with our guest Glen Sorensen. Your hosts are Kip Boyle, CISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. | |||
10 Oct 2023 | EP 142: The 2023 Verizon Data Breach Investigations Report (DBIR) Part 1 | 00:47:32 | |
Have you read the Verizon DBIR report for 2023? Find out what it contains in the first of two episodes on this extremely useful report with your hosts Kip Boyle, vCISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. | |||
28 Feb 2023 | EP 126: Due diligence as a Risk Management Approach | 00:45:41 | |
"Can you “demonstrate due diligence to a defensible standard of care” as your risk management approach? This would replace ""red/yellow/green"" approaches or advanced statistics. Let's find out with our guest, Karen Worstell, who is a “Senior Cybersecurity Strategist” and a “CxO Security Advisor” with VMware. Your hosts are Kip Boyle, CISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. If you want to learn more about DOCRA (The Duty of Care Risk Analysis Standard) check out our previous episode -- https://cr-map.com/59 ""Risk-Based Security is the Emperor's New Clothes"" https://taosecurity.blogspot.com/2006/06/risk-based-security-is-emperors-new.html | |||
13 Sep 2022 | EP 114: Cyber Insurance Drives Security Beyond Your Cyber Policy | 00:37:34 | |
Can small-medium-sized businesses benefit from cyber insurance even if they don't buy a policy? How? Let's find out with my guest Jason Rebholz, CISO at Corvus Insurance. Your host is Kip Boyle, vCISO with Cyber Risk Opportunities. | |||
26 Apr 2022 | EP 104: Easy Target due to Corporate Identity Crisis | 00:36:35 | |
Can an identity crisis make organizations an easy target for cyber-criminals? Let's find out with your hosts Kip Boyle, vCISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. | |||
02 Jul 2024 | EP 161: Cyber Incident Reporting for Critical Infrastructure Act (CIRCIA) | 00:48:16 | |
CIRCIA stands for the "Cyber Incident Reporting for Critical Infrastructure Act". But what does it really mean? Let's find out with your hosts Kip Boyle, CISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. | |||
11 Oct 2022 | EP 116: Update of State Data Security Laws | 00:41:14 | |
Did you know there’s an avalanche of state and federal privacy laws and regulations that are either being actively debated or have been passed and will soon take effect starting in January 2023? Let’s find out which ones matter most with your hosts Kip Boyle, vCISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. | |||
16 Jan 2024 | EP 149: The Tools and Rules of Digital Trust | 00:49:03 | |
How do you take a very important, yet ethereal, idea like digital trust and make it more concrete and actionable? Let's find out with your hosts Kip Boyle, CISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. | |||
11 Apr 2023 | EP 129: Some Other Things I've Made for You | 00:29:42 | |
"Beyond this podcast, I've made a lot of resources (most are free) to help you. In fact, you can now download a six page list of them all. Let me quickly skim through that list with you in this episode. I'm your host, Kip Boyle, CISO with Cyber Risk Opportunities. You can download ""the list"" here -- https://www.cr-map.com/thelist " | |||
10 Sep 2024 | EP 166: The 2024 Verizon Data Breach Investigations Report (DBIR) Part 2 | 00:58:29 | |
Let's conclude our look at the 2024 Verizon DBIR report. Today we'll review the data by industry and some other tidbits with your hosts Kip Boyle, vCISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. | |||
18 Jul 2023 | EP 136: Why Cyber Resilience is a Business Advantage | 00:45:43 | |
"An $8 billion company was hit by ransomware and then was sued in court by one of its best customers. What's the connection with cyber resilience? Let's find out with your hosts Kip Boyle, CISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. ""Case Study for Cyber as a Material Business Risk"" -- https://www.cr-map.com/124" | |||
17 Jan 2023 | EP 123: How to Really Reduce the Risk of People Falling for Phishing | 00:41:18 | |
What can we learn from a recently released research report called “Phishing in Organizations: Findings from a Large-Scale and Long-Term Study”? Let’s find out with our guest, Jason Rebholz, the CISO of Corvus Insurance. Your hosts are Kip Boyle, CISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. Jason Rebholz prior guest appearance–https://cr-map.com/podcast/114/ “Some Workgroups Deserve More Protection Against Malware”–https://cr-map.com/podcast/108/ “How to Really Make Sure that Cybersecurity is Everyone’s Job” (pt 1 & 2) | |||
25 Oct 2022 | EP 117: Cyber Risk Management During Company Acquisition | 00:44:10 | |
How can Deal Teams and M&A Teams understand and manage cyber risk so they can make better business decisions during the company acquisition process? Let's find out with our guest, Shay Colson, the Managing Partner at Coastal Cyber Risk Advisors, LLC. Your hosts Kip Boyle, vCISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. | |||
14 Mar 2023 | EP 127: Proactively Protect Your Reputation (#1 digital asset) | 00:40:54 | |
"How do you proactively protect your #1 digital asset, which is your reputation? Let's find out with our guest, Sameer Somal, the CEO of Blue Ocean Global Technology. Your hosts are Kip Boyle, CISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. Mentioned during this episode: ""The effects of cyberattacks on corporate reputation and consumer confidence with Casey Boggs"" -- https://www.cr-map.com/48 ""Normalizing Greater Accountability For Cybersecurity Fraud"" -- https://www.cr-map.com/96 | |||
25 Apr 2023 | EP 130: How To Assess Cyber Risk | 00:49:19 | |
"What's the definitive method for assessing cyber risk? Does it exist? How do you do it? Let's find out with your hosts Kip Boyle, CISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. If you want to know more, Kip has a course on LinkedIn Learning you can check out: ""IT and Cybersecurity Risk Management Essential Training"" -- https://www.linkedin.com/learning/it-and-cybersecurity-risk-management- essential-training/ Kip also has a Udemy course that describes our semi-quantitative approach: ""Implementing NIST Cybersecurity Framework"" -- https://www.udemy.com/course/nist-cybersecurity-framework/ " | |||
20 Feb 2022 | EP 99: Metamorphic Malware Called Tardigrade | 00:31:28 | |
Here’s the latest in the evolution of dynamic cyber risks: A metamorphic malware called Tardigrade. What does it mean? How do you deal with it? Let’s find out with your hosts Kip Boyle, vCISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. Join us for our next CLE at noon Pacific time on Wednesday, March 30th where we’ll explore the impact of the Pandora Papers on the legal industry and the practical, cybersecurity lessons for attorneys and their clients. https://www.eventbrite.com/e/anatomy-of-a-hack-pandora-papers-tickets-255528421387 | |||
20 Jun 2023 | EP 134: The Business Value of Business Continuity | 00:44:48 | |
"Is there any business value in “business continuity”? If so, how can we explain it so anyone can understand? Our guest is Erika Andresen, the Founder and Owner of EaaS Consulting, LLC. Your hosts are Kip Boyle, CISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. Erika's Book, ""How to Not Kill Your Business"" -- https://www.amazon.com/gp/product/199018538X Website -- https://www.eaasc.com/ LinkedIn Profile -- https://www.linkedin.com/in/erika-andresen/" | |||
07 Jun 2022 | EP 107: Response Side of Vendor Due Diligence | 00:43:11 | |
What are the challenges of smaller vendors responding to due diligence requests from their large customers? And what can they do about them? Let's find out with our guest Caroline McCaffery of ClearOPS. Your hosts are Kip Boyle, vCISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. <https://www.clearops.io/> | |||
12 Apr 2022 | EP 103: SEC's Proposed Rules for Cyber Risk Management | 00:40:35 | |
What's in the Security Exchange Commission’s proposal for new cybersecurity risk management rules for investment advisers and investment companies? Let's find out with your hosts Kip Boyle, vCISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. You can find the SEC's Fact Sheet and proposed Rules here -- https://www.sec.gov/news/press-release/2022-20 | |||
24 Oct 2023 | EP 143: The 2023 Verizon Data Breach Investigations Report (DBIR) Part 2 | 00:50:11 | |
Let's conclude our look at the 2023 Verizon DBIR report. Today we'll review the data by industry and some other tidbits with your hosts Kip Boyle, vCISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. | |||
30 Aug 2022 | EP 113: Self-Insuring for Cyber Risks | 00:38:13 | |
Cybersecurity is intertwining with D&O litigation and more companies are self-insuring for cyber risks. Why? Our guest is Rachel Jenkins, the Managing Director for Customer Success at Founder Shield. Your hosts Kip Boyle, vCISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. | |||
03 Mar 2022 | EP 100: Celebrating our One Hundredth Episode! | 00:51:59 | |
When we first started this podcast, we weren't thinking about 50 episodes, let alone 100. How did we make it this far? What's next? Let's find out with your hosts Kip Boyle, vCISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. Join us for our next CLE at noon Pacific time on Wednesday, March 30th where we'll explore the impact of the Pandora Papers on the legal industry and the practical, cybersecurity lessons for attorneys and their clients. https://www.eventbrite.com/e/anatomy-of-a-hack-pandora-papers-tickets-255528421387 | |||
04 Jun 2024 | EP 159: FTC 2023 Privacy and Data Security Update | 00:50:05 | |
What kinds of unfair trade practices does the FTC look for when it comes to privacy and data security? Let's find out with your hosts Kip Boyle, CISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. | |||
12 Aug 2024 | EP 164: Why are we so bad at vulnerability management? | 00:36:00 | |
"Vulnerability management is really difficult, especially at scale. And after 20+ years that's still true. Our guest Alex Wood, who's the CISO of Uplight, will help us understand why and consider practical suggestions for getting better. Your hosts are Kip Boyle, CISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. Alex Wood's LinkedIn Profile -- https://www.linkedin.com/in/alexbwood/ Colorado = Security -- https://www.colorado-security.com/ " | |||
15 Aug 2023 | EP 138: What's With NIST Special Publication 800-171, Revision 3 and CMMC | 00:43:31 | |
How is Revision 3 of NIST Special Publication 800-171 and the Cybersecurity Maturity Model Certification (CMMC) related to each other? Let's find out with our guest Jacob Horne. Your hosts are Kip Boyle, CISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. | |||
18 Jun 2024 | EP 160: How to Find Your Top 5 Cyber Risks | 00:46:22 | |
"You can find your top 5 cyber risks using a “top down” approach with the NIST Cybersecurity Framework. Along the way, you can shift your organization towards better practice of reasonable cybersecurity. Know how? Let's find out with your hosts Kip Boyle, CISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. You can see our ""zero through ten"" scale scorecard here -- https://b.link/scorekey You can watch our interview prep video here -- https://b.link/interview" | |||
22 Nov 2022 | EP 119: The 2022 Verizon Data Breach Investigations Report (DBIR) Part 1 | 00:50:40 | |
Have you read the Verizon DBIR report for 2022? Find out what it contains in the first of two episodes on this extremely useful report with your hosts Kip Boyle, vCISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. | |||
31 Jan 2023 | EP 124: Case Study for Cyber as a Material Business Risk | 00:46:20 | |
"A $100 million Texas company called “United Structures of America” got struck by ransomware in 2019. You'll be surprised at what happened next. Your hosts are Kip Boyle, CISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. “Cyber Extortion of Patients”--https://cr-map.com/podcast/51/ “Quick Look at the ‘Essential Eight’ mitigations”--https://cr-map.com/podcast/63/ ""How to Really Make Sure that Cybersecurity is Everyone’s Job"" (pt 1 & 2) https://cr-map.com/podcast/88/ https://cr-map.com/podcast/89/ | |||
06 Jun 2023 | EP 133: ChatGPT and Cyber Risk Management | 00:42:54 | |
"Can ChatGPT help us manage Cyber Risk? Can any generative artificial intelligence be helpful? If so, how? And are there any limitations? Let's find out with your hosts Kip Boyle, CISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. Suggested ""ChatGPT Prompt Engineering"" course by Sean Melis: https://www.udemy.com/course/chatgpt-101-supercharge-your-work-life-500-prompts-inc/" | |||
16 Jul 2024 | EP 162: Cyber Incident Reporting for Critical Infrastructure Act (CIRCIA), part 2 | 00:47:59 | |
Let's continue unpacking the "Cyber Incident Reporting for Critical Infrastructure Act". What else do you need to know? Let's find out with your hosts Kip Boyle, CISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. | |||
21 Nov 2023 | EP 145: Why Do Employees Keep Ignoring Workplace Cybersecurity Rules? | 00:38:50 | |
Why do employees keep ignoring workplace cybersecurity rules? And, what should cyber risk managers to do about it? Let's find out with your hosts Kip Boyle, CISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. | |||
19 Dec 2023 | EP 147: SEC Complaint against SolarWinds Corporation | 00:49:02 | |
"What can we learn about the SEC Complaint against SolarWinds Corporation and Timothy G. Brown? Let's find out with your hosts Kip Boyle, CISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. EP 96: ""Normalizing Greater Accountability For Cybersecurity Fraud"" <https://cr-map.com/podcast/96/> EP 109: ""FTC’s Strange Action Against Cafe Press"" <https://cr-map.com/podcast/109/>" | |||
14 Feb 2023 | EP 125: Applied Security Design Principles | 00:50:45 | |
There are many security design principles we can use to build and evaluate products and services. Can we use them to understand the LastPass incidents from late 2022? Let's find out with your hosts Kip Boyle, CISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. | |||
12 Sep 2023 | EP 140: Entry Level IT & Cybersecurity Certifications Are Broken | 00:36:42 | |
Entry level IT and Cybersecurity certifications cost too much and produce too many "paper tigers". How do we fix that? Let's find out with your hosts Kip Boyle, CISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. | |||
02 Aug 2022 | EP 111: Ethical Phisheries | 00:41:08 | |
How do you run a successful anti-phishing program that will actually reduce your risk without sacrificing employee goodwill? Our guest, Ean Meyer, knows how. Ean is Associate Director of Security Testing and Assurance at Marriott Vacations Worldwide. Your hosts Kip Boyle, vCISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. "How to Really Make Sure that Cybersecurity is Everyone’s Job" (pt 1 & 2) <https://cr-map.com/podcast/88/> <https://cr-map.com/podcast/89/> | |||
08 Nov 2022 | EP 118: Chief Operating Officer is also CISO | 00:36:33 | |
What if your Chief Operating Officer was also your Chief Information Security Officer? What would that be like? And, who would do it? Let's find out with our guest, Peter Hitschler the COO of Tri Tech Manufacturing. Your hosts Kip Boyle, vCISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. | |||
24 May 2022 | EP 106: Anatomy of a Hack: Pandora Papers | 00:52:08 | |
What are the Pandora Papers? Where did they come from? What's the impact of the Pandora Papers on the legal industry? What are the practical cybersecurity lessons for everyone? Let's find out with your hosts Kip Boyle, vCISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. | |||
21 Jun 2022 | EP 108: Some Workgroups Deserve More Protection Against Malware | 00:37:41 | |
Due to the way some workgroups must work, they deserve more protection against malware. But how can you do that in a minimum viable way? Let's find out with your hosts Kip Boyle, vCISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. EP 63: Quick look at the “Essential Eight” mitigations <https://cr-map.com/podcast/63/> "Implementing the NIST Cybersecurity Framework" <https://www.udemy.com/course/nist-cybersecurity-framework/> | |||
26 Sep 2023 | EP 141: What's New in NIST CSF v2 | 00:39:36 | |
What’s going to be in version 2 of the NIST Cybersecurity Framework? Let's find out with your hosts Kip Boyle, CISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. | |||
23 May 2023 | EP 132: Helping Activists Operating Under a Repressive Regime | 00:41:00 | |
How would you help political and human rights activists stay safe while using digital communications as they live under a repressive regime? One of us has been doing it for almost a year and he'll tell you. Your hosts are Kip Boyle, CISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. | |||
30 Jan 2024 | EP 150: Privacy Laws Driving Demand for Cybersecurity | 00:40:31 | |
Twelve US states now have major privacy laws, up from only five last year. How is that driving demand for cybersecurity? Let's find out with your hosts Kip Boyle, CISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. | |||
09 Apr 2024 | EP 155: Cybersecurity and data privacy in M&A transactions | 00:42:25 | |
The role of cybersecurity and data privacy due diligence when buying or selling a company has gone way up compared to five years ago. Why? And, what's at stake? Let's find out with our guest Brian Levine. Your hosts are Kip Boyle, CISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. | |||
05 Jul 2022 | EP 109: FTC’s Strange Action Against Cafe Press | 00:35:28 | |
The Federal Trade Commission unusually took action against the current AND former owners of CafePress over the February 2019 customer data breach. Why and what does it mean? Also, an update on the False Claims Act from Episode 96. Let's find out with your hosts Kip Boyle, vCISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. EP 96: "Normalizing Greater Accountability For Cybersecurity Fraud" <https://cr-map.com/podcast/96/> | |||
04 Jul 2023 | EP 135: Measuring Cyber Risk | 00:49:27 | |
"Is the idea of measuring cyber risk ""hooey!"" as one of the InfoSec godfathers once said? Let's find out with our guest Ryan Leirvik. Your hosts are Kip Boyle, CISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. Ryan's book ""Understand, Manage, and Measure Cyber Risk: Practical Solutions for Creating a Sustainable Cyber Program"" -- https://www.amazon.com/Understand-Manage-Measure-Cyber-Risk/dp/1484278208/ Website -- https://www.neuvik.com/ LinkedIn Profile -- https://www.linkedin.com/in/leirvik/" | |||
27 Aug 2024 | EP 165: The 2024 Verizon Data Breach Investigations Report (DBIR) Part 1 | 00:54:16 | |
"Have you read the Verizon DBIR report for 2024? Find out what it contains in the first of two episodes on this extremely useful report with your hosts Kip Boyle, vCISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. ""Can you trust the Verizon Data Breach Investigations Report (DBIR) to help you run your Cyber Risk Program?"" -- https://www.cr-map.com/91" | |||
21 May 2024 | EP 158: Business Continuity as a Revenue Generator? | 00:47:07 | |
"Is overnight viral success is a kind of disruption that the business continuity (BC) discipline can help preapre you for? Let's find out with our guest Erika Andresen, the Founder and Owner of EaaS Consulting, LLC. Your hosts are Kip Boyle, CISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. Erika's Book, ""How to Not Kill Your Business"" -- https://www.amazon.com/gp/product/199018538X Website -- https://www.eaasc.com/ LinkedIn Profile -- https://www.linkedin.com/in/erika-andresen/" | |||
30 Jul 2024 | EP 163: Self-Care | 00:39:44 | |
"Self-care is a crucial yet seldom discussed topic. Why is that? How should we be taking care of ourselves and why? Let's find out with our guest Chris Roberts, who most recently was the CISO of Boom Supersonic. Your hosts are Kip Boyle, CISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. Chris Roberts' LinkedIn Profile -- https://www.linkedin.com/in/sidragon1/" | |||
27 Sep 2022 | EP 115: Insurance Companies as Cybersecurity Leaders | 00:43:18 | |
Can the insurance industry find a way to reduce the rate of major cyber incidents like it did by promoting airbags to reduce highway death rates or sprinklers for buildings reducing fires deaths? Let's find out with our guest Andy Anderson, CEO of DataStream Cyber Insurance. Your hosts Kip Boyle, vCISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. Andy's podcast "The Cyber Crime Lab" -- <https://www.thecybercrimelab.com/> | |||
19 Jul 2022 | EP 110: Thriving in this Crazy Cyber Insurance Market | 00:45:31 | |
Cyber insurance, once so easy to get, is now scarce and expensive. Why did this happen? How long will it last? What can you do until sanity returns? Find out with our guest Jennifer Cohen, the Cyber & Governance Director at HUB International. Your hosts are Kip Boyle, vCISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. | |||
09 May 2023 | EP 131: How Identity Really Works on the Internet Today | 00:45:14 | |
"What does identity on the Internet mean? What does the failure of identity cost us? Do we need to make any changes to the way we do digital identity? Let's find out with our guest our guest, Jeff Reich, Executive Director of the Identity Defined Security Alliance (IDSA). Your hosts are Kip Boyle, CISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. https://www.linkedin.com/in/jreich/" | |||
07 Nov 2023 | EP 144: SecureWorld | 00:40:11 | |
Have you heard of a regional cybersecurity conference in the US called SecureWorld? We really like it. So we invited Brad Graver, who’s the president of SecureWorld, to tell us what makes them different from all the other conferences we could go to. Your hosts are Kip Boyle, vCISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. | |||
06 Dec 2022 | EP 120: The 2022 Verizon Data Breach Investigations Report (DBIR) Part 2 | 00:37:30 | |
Let's conclude our look at the 2022 Verizon DBIR report. Today we'll review the data by industry and some other tidbits with your hosts Kip Boyle, vCISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. | |||
02 Jan 2024 | EP 148: SEC Disclosure Rules on Cybersecurity | 00:38:59 | |
What are the SEC’s new rules for cybersecurity disclosures, including cyber incidents AND annually about cybersecurity risk management and governance? Let's find out with your hosts Kip Boyle, CISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. | |||
03 Jan 2023 | EP 122: Best Episode of 2022 | 00:42:35 | |
What's our "best episode" of 2022? This one had the highest number of downloads. Let's find out which one it was with your hosts Kip Boyle, CISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. | |||
20 Dec 2022 | EP 121: The Myth Busters Episode | 00:43:40 | |
What are the biggest, yet wrong, ideas that float around all the time and often cause senior decision makers to make poor decisions? Let's find out with your hosts Kip Boyle, vCISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. “Compliance Versus Practicing Cybersecurity” https://www.cr-map.com/12 “Busted: The Truth about Cloud Security” https://www.cr-map.com/77 “Your IT Person is Not Your Cybersecurity Person” https://www.cr-map.com/105 | |||
27 Feb 2024 | EP 152: Boards of Directors and Cybersecurity | 00:47:14 | |
The SEC says that Boards of Directors need cybersecurity expertise. But how exactly does that work? Let's find out with our guest Vanessa Pegueros, former CISO of DocuSign. Your hosts are Kip Boyle, CISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. | |||
10 May 2022 | EP 105: Your IT Person is Not Your Cybersecurity Person | 00:42:43 | |
IT and cybersecurity actually have very little overlap. The people performing them have similar skills but they have very different goals and very different ways of thinking. Let's find out how different with your hosts Kip Boyle, vCISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. | |||
07 May 2024 | EP 157: How To Assess Cyber Risk (REPLAY) | 00:49:30 | |
"What's the definitive method for assessing cyber risk? Does it exist? How do you do it? Let's find out with your hosts Kip Boyle, CISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. If you want to know more, Kip has a course on LinkedIn Learning you can check out: ""IT and Cybersecurity Risk Management Essential Training"" -- https://www.linkedin.com/learning/it-and-cybersecurity-risk-management- essential-training/ Kip also has a Udemy course that describes our semi-quantitative approach: ""Implementing NIST Cybersecurity Framework"" -- https://www.udemy.com/course/nist-cybersecurity-framework/ " | |||
23 Apr 2024 | EP 156: Change Healthcare | 00:42:41 | |
What happened in the Change Healthcare cyberattack? What are the impacts and how can cyber resilience be a competitive advantage? Let's find out with your hosts Kip Boyle, CISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. | |||
29 Mar 2022 | EP 102: Cybersecurity Hiring Manager Handbook | 00:35:18 | |
Do you want to attract and retain top tier talent for your InfoSec team? To work “on your program” instead of working “in your program”? Learn how with your hosts Kip Boyle, vCISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. Get the Handbook for free here -- https://b.link/hiring-handbook Register for training here -- https://www.antisyphontraining.com/hiring-handbook-how-to-build-an-infosec-team-that-gets-stuff-done-w-kip-boyle/ | |||
13 Feb 2024 | EP 151: Does Ransomware Kill Sick People? | 00:41:36 | |
"Is there any reliable evidence that sick people die at a higher rate when their hospital is disabled by ransomware? Let's find out with your hosts Kip Boyle, CISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. “Hacked to Pieces? The Effects of Ransomware Attacks on Hospitals and Patients” University of Minnesota - Twin Cities - School of Public Health https://papers.ssrn.com/sol3/papers.cfm?abstract_id=4579292 ""Killware"" -- https://www.cr-map.com/97" | |||
16 Aug 2022 | EP112: How to Work With CFOs on Cyber Risk Management | 00:30:26 | |
You’re going to need the CFO’s support to be successful managing cybersecurity. Why? If for no other reason than the CFO controls the purse strings! So how do you do it? Let's find out with your host Kip Boyle, vCISO with Cyber Risk Opportunities. | |||
15 Mar 2022 | EP 101: FTC's Major Updates to GLBA Safeguards Rule | 00:35:27 | |
Is your business “significantly engaged” in providing financial products or services of any kind? Then you need to know about the updates to the Safeguards Rule. Let's see what they are with your hosts Kip Boyle, vCISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates. Join us for our next CLE at noon Pacific time on Wednesday, March 30th where we'll explore the impact of the Pandora Papers on the legal industry and the practical, cybersecurity lessons for attorneys and their clients. https://www.eventbrite.com/e/anatomy-of-a-hack-pandora-papers-tickets-255528421387 | |||
07 Jun 2018 | EP 1: Introducing Cyber Risk Management Podcast | 00:17:26 | |
Kip Boyle, CEO of Cyber Risk Opportunities, talks with Jake Bernstein, JD and CyberSecurity Practice Lead at Newman DuWors LLP, about who we are, what we do, and why we do it. | |||
15 Jun 2018 | EP 2: Your Newest Competitor Creates Most of Your Cyber Risk | 00:36:59 | |
Kip Boyle, CEO of Cyber Risk Opportunities, talks with Jake Bernstein, JD and CyberSecurity Practice Lead at Newman DuWors LLP, about who is really driving the over $6 trillion in damage expected in 2021 due to cyber failures. | |||
15 Jun 2018 | EP 3: Why Your Company Needs Cyber Risk Management | 00:27:19 | |
Kip Boyle, CEO of Cyber Risk Opportunities, talks with Jake Bernstein, JD and CyberSecurity Practice Lead at Newman DuWors LLP, about why every company needs good cyber risk management. | |||
10 Jul 2018 | EP 4: The “Reasonable Cybersecurity” Standard | 00:30:35 | |
Kip Boyle, CEO of Cyber Risk Opportunities, talks with Jake Bernstein, JD and CyberSecurity Practice Lead at Newman DuWors LLP, about the emerging "Reasonable Cybersecurity" standard: Where it's coming from and what how it should affect the decisions made by cyber risk managers. | |||
24 Jul 2018 | EP 5: How the FTC Defines “Reasonable Cybersecurity” | 00:37:41 | |
Kip Boyle, CEO of Cyber Risk Opportunities, talks with Jake Bernstein, JD and CyberSecurity Practice Lead at Newman DuWors LLP, about how the FTC has been working since 2010 to define "Reasonable Cybersecurity" standard. | |||
04 Sep 2018 | EP 6: Cyber Risk Management and Attorney Client Privilege | 00:28:50 | |
Kip Boyle, CEO of Cyber Risk Opportunities, and Jake Bernstein, JD and CyberSecurity Practice Lead at Newman DuWors LLP, describe how Attorney Client Privilege (ACP) and Attorney Work Product (AWP) doctrine can increase the quality of your cyber risk management practices. | |||
08 Aug 2018 | EP 7: What is GDPR? | 00:30:51 | |
Kip Boyle, CEO of Cyber Risk Opportunities, and Jake Bernstein, JD and CyberSecurity Practice Lead at Newman DuWors LLP, summarize the European Union's General Data Protection Regulation or, GDPR. | |||
18 Sep 2018 | EP 8: How to deal with Ransomware | 00:24:28 | |
Kip Boyle and Jake Bernstein discuss whether organizations should pay a ransom to regain control over their data and systems. | |||
21 Aug 2018 | EP 15: California Consumer Privacy Act (CCPA) | 00:34:09 | |
Kip Boyle, CEO of Cyber Risk Opportunities, talks with Jake Bernstein, JD and CyberSecurity Practice Lead at Newman DuWors LLP, about talk about the new California Consumer Privacy Act or CCPA and how executives should be thinking about this new cyber risk. | |||
16 Oct 2018 | EP 10: Methods and Legality of “Active Defense” | 00:31:58 | |
Kip Boyle and Jake Bernstein describe "active defense" as an emerging technique for dealing with cyber-attackers and the legality of the various methods. | |||
02 Oct 2018 | EP 9: Non-Technical Ways to Manage Cyber Risk | 00:29:19 | |
Kip Boyle and Jake Bernstein explain how you need to use people, process, and management (in addition to technology) in order to have reasonable cybersecurity. | |||
13 Nov 2018 | EP 11: Cyber Risk and Law Firms | 00:22:44 | |
Kip Boyle talks with Jake Bernstein on the need for law firms to have reasonable cyber security. They also discuss how law firms can provide Attorney Client Privilege (ACP) to their clients who conduct Cyber Risk Assessments. | |||
30 Oct 2018 | EP 20: New book: “Fire Doesn’t Innovate” | 00:25:13 | |
Kip Boyle, CEO of Cyber Risk Opportunities, and Jake Bernstein, JD and CyberSecurity Practice Lead at Newman DuWors LLP, provide a preview of a new book to help executives thrive as cyber risk managers. | |||
27 Nov 2018 | EP 21: What germs can teach us about dealing with cyber-attacks | 00:31:42 | |
Kip Boyle, CEO of Cyber Risk Opportunities, talks with Jake Bernstein, JD and CyberSecurity Practice Lead at Newman DuWors LLP, today we talked about how germs can teach us a lot about how to deal with cyber-attacks. | |||
11 Dec 2018 | EP 12: Compliance Versus Practicing Cybersecurity | 00:25:56 | |
Kip Boyle, CEO of Cyber Risk Opportunities, talks with Jake Bernstein, JD and CyberSecurity Practice Lead at Newman DuWors LLP, on the difference between focusing on compliance with cybersecurity laws and regulations versus practicing cybersecurity. | |||
26 Dec 2018 | EP 13: Small Companies Struggle with Big Company Cybersecurity Questionnaires | 00:27:17 | |
Kip Boyle, CEO of Cyber Risk Opportunities, talks with Jake Bernstein, JD and CyberSecurity Practice Lead at Newman DuWors LLP, about how smaller companies struggle to respond to cybersecurity questionnaires from bigger customers. | |||
08 Jan 2019 | EP 14: Contractual Firewalls | 00:33:30 | |
Kip Boyle, CEO of Cyber Risk Opportunities, talks with Jake Bernstein, JD and CyberSecurity Practice Lead at Newman DuWors LLP, about how executives can create strong contractual firewalls between themselves and their vendors and customers to guard against excessive financial loss due to cybersecurity failures. | |||
14 Jan 2019 | EP 25: BONUS: New book: “Fire Doesn’t Innovate” on sale now | 00:32:10 | |
Kip Boyle, CEO of Cyber Risk Opportunities, talks with Jake Bernstein, JD and CyberSecurity Practice Lead at Newman DuWors LLP, about his new book, Fire Doesn’t Innovate, on sale January 15, 2019. It includes a free, online Cyber Risk Workbook that automates Part 2 of the book: The creation of your Cyber Risk Management Game Plan. | |||
23 Jan 2019 | EP 16: Threat Intelligence | 00:29:40 | |
Kip Boyle, CEO of Cyber Risk Opportunities, talks with Jake Bernstein, JD and CyberSecurity Practice Lead at Newman DuWors LLP, about how executives should think about threat intelligence: What it is, where to get it, how to use it, and how to get started. They also discuss how artificial intelligence and machine learning can help make threat intelligence more useful. | |||
05 Feb 2019 | EP 17: The golden age for cyber-criminals | 00:33:38 | |
Kip Boyle, CEO of Cyber Risk Opportunities, talks with Jake Bernstein, JD and CyberSecurity Practice Lead at Newman DuWors LLP, about why this is a golden age for cyber criminals. | |||
20 Feb 2019 | EP 18: Six “must read” non-technical books for cyber risk managers | 00:36:09 | |
Kip Boyle, CEO of Cyber Risk Opportunities, talks with Jake Bernstein, JD and CyberSecurity Practice Lead at Newman DuWors LLP, discuss six "must read" non-technical books for cyber risk managers. | |||
05 Mar 2019 | EP 19: Business Judgment Rule | 00:30:19 | |
Kip Boyle, CEO of Cyber Risk Opportunities, talks with Jake Bernstein, JD and CyberSecurity Practice Lead at Newman DuWors LLP, discuss how cyber risk management is actually a fiduciary duty of corporate directors and officers. | |||
19 Mar 2019 | EP 22: Cyber risks of autonomous vehicles | 00:38:39 | |
Kip Boyle, CEO of Cyber Risk Opportunities, talks with Jake Bernstein, JD and CyberSecurity Practice Lead at Newman DuWors LLP, about the cyber risks of autonomous vehicles. | |||
02 Apr 2019 | EP 23: What the last 30 years of cyber risks tells us about what’s ahead | 00:37:23 | |
Kip Boyle, CEO of Cyber Risk Opportunities, talks with Jake Bernstein, JD and CyberSecurity Practice Lead at Newman DuWors LLP, about what the next 30 years of cyber risks will look like. | |||
16 Apr 2019 | EP 24: How fake advertising fuels other cybercrimes | 00:32:10 | |
Kip Boyle, CEO of Cyber Risk Opportunities, talks with Jake Bernstein, JD and CyberSecurity Practice Lead at Newman DuWors LLP, about how new techniques for automating ad fraud will probably lead to other types of cybercrime. | |||
30 Apr 2019 | EP 26: Computer Fraud and Abuse Act (Revisited) | 00:28:15 | |
Kip Boyle, CEO of Cyber Risk Opportunities, talks with Jake Bernstein, JD and CyberSecurity Practice Lead at Newman DuWors LLP, about how the 35-year-old Computer Fraud and Abuse Act (CFAA) is a useful tool for today's cyber risk managers. | |||
14 May 2019 | EP 27: What’s at the intersection of AI and cybersecurity? | 00:29:19 | |
Kip Boyle, CEO of Cyber Risk Opportunities, talks with Jake Bernstein, JD and CyberSecurity Practice Lead at Newman DuWors LLP, about three things that cyber risk managers will find at the intersection of artificial intelligence and cybersecurity. | |||
28 May 2019 | EP 28: The Rise of WebApps and Their Impact on Cybersecurity | 00:31:12 | |
Kip Boyle, CEO of Cyber Risk Opportunities, talks with Jake Bernstein, JD and CyberSecurity Practice Lead at Newman DuWors LLP, about how some people believe that by using webapps, they are more secure than when using traditional software. | |||
11 Jun 2019 | EP 29: What the Private Sector Can Learn about Incident Response from the Military | 00:32:30 | |
Kip Boyle, CEO of Cyber Risk Opportunities, and Jake Bernstein, JD and CyberSecurity Practice Lead at Newman DuWors LLP, talk with guest Melissa Van Buhler about what the military can teach the private sector about incident response. | |||
25 Jun 2019 | EP 30: Company Sues Employee For Being Phished | 00:31:39 | |
Kip Boyle, CEO of Cyber Risk Opportunities, talks with Jake Bernstein, JD and CyberSecurity Practice Lead at Newman DuWors LLP, about a company that sued its employee for being phished out of $260,000. | |||
09 Jul 2019 | EP 31: Protecting your accounts payable function from cyberattack | 00:34:49 | |
Kip Boyle, CEO of Cyber Risk Opportunities, and Jake Bernstein, JD and CyberSecurity Practice Lead at Newman DuWors LLP, talk with guest Debra Richarson about how finance professionals should protect their company from common financial cyber fraud. | |||
23 Jul 2019 | EP 32: Independent broker’s perspective on cyber insurance | 00:32:03 | |
Kip Boyle, CEO of Cyber Risk Opportunities, and Jake Bernstein, JD and CyberSecurity Practice Lead at Newman DuWors LLP, talk with guest Chris Brumfield about the current state of the cyber insurance market. |