Security Insights - Cybersecurity for Real-World Workplaces

Chief Scapegoat Officer: How to Keep "Fighting the Good Fight" for Ethical Security Standards

June 29, 2023 Ivanti: Cybersecurity and Information Technology Solutions Season 3 Episode 38
Chief Scapegoat Officer: How to Keep "Fighting the Good Fight" for Ethical Security Standards
Security Insights - Cybersecurity for Real-World Workplaces
More Info
Security Insights - Cybersecurity for Real-World Workplaces
Chief Scapegoat Officer: How to Keep "Fighting the Good Fight" for Ethical Security Standards
Jun 29, 2023 Season 3 Episode 38
Ivanti: Cybersecurity and Information Technology Solutions

What does CSO stand for at your organization?

Is it short for Chief Security Officer... or Chief Scapegoat Officer?

In this episode, Ivanti CSO Daniel Spicer talks about how he never thought he'd be a CSO, and the unique pressures that security executives face from their own internal leadership teams and external regulations or (worse) insurance companies.

Listen in as Daniel and Ashley dig into:

  • What counts as a "breach" -- legally and ethically -- and the conflicting pressures to either report or not.
  • How hackers try to bluff their way into a breach...
  • ... and how "breach coach" insurance lawyers may or may not try to pressure teams out of reporting incidents they should.
  • Where to find the best internal allies to help you stand up to undue pressures and maintain your ethical high grounds.
  • The #1 thing security leaders should do during their interview process to make sure they're signing on with the right organization
  • How -- if you do get fired due to a breach -- it's not the end of your career as a security professional.


Show Notes

What does CSO stand for at your organization?

Is it short for Chief Security Officer... or Chief Scapegoat Officer?

In this episode, Ivanti CSO Daniel Spicer talks about how he never thought he'd be a CSO, and the unique pressures that security executives face from their own internal leadership teams and external regulations or (worse) insurance companies.

Listen in as Daniel and Ashley dig into:

  • What counts as a "breach" -- legally and ethically -- and the conflicting pressures to either report or not.
  • How hackers try to bluff their way into a breach...
  • ... and how "breach coach" insurance lawyers may or may not try to pressure teams out of reporting incidents they should.
  • Where to find the best internal allies to help you stand up to undue pressures and maintain your ethical high grounds.
  • The #1 thing security leaders should do during their interview process to make sure they're signing on with the right organization
  • How -- if you do get fired due to a breach -- it's not the end of your career as a security professional.