The Security Detail-logo

The Security Detail

Technology Podcasts

The Security Detail is a podcast series by SURGe, Splunk’s strategic security research team. Every other week, co-hosts Audra Streetman and Madeleine Tauber interview security experts about the top cyber threats in different industries. Episodes will examine the cyber threat landscape in healthcare, education, manufacturing, the technology sector, retail and hospitality, telecommunications, and the public sector.

Location:

United States

Description:

The Security Detail is a podcast series by SURGe, Splunk’s strategic security research team. Every other week, co-hosts Audra Streetman and Madeleine Tauber interview security experts about the top cyber threats in different industries. Episodes will examine the cyber threat landscape in healthcare, education, manufacturing, the technology sector, retail and hospitality, telecommunications, and the public sector.

Language:

English


Episodes
Ask host to enable sharing for playback control

Ep. 9: Top Cybersecurity Skills According to Past Interview Guests

4/24/2024
In episode 9 of The Security Detail, hear from past interview guests about what they consider to be the most important cybersecurity skill for future practitioners.

Duration:00:10:06

Ask host to enable sharing for playback control

Ep. 8: Emerging Technology Predictions from Past Interview Guests

4/10/2024
In episode 8 of The Security Detail, hear from past interview guests about their predictions for emerging technology, like artificial intelligence and quantum computing. Resources: Cipher Brief article: https://www.thecipherbrief.com/how-ai-is-helping-the-u-s-unravel-chinas-dangerous-hacking-operation

Duration:00:14:14

Ask host to enable sharing for playback control

Ep. 7: MITRE ATT&CK framework featuring Adam Pennington, MITRE ATT&CK Lead

3/27/2024
The MITRE ATT&CK framework provides a standardized taxonomy and knowledge base of adversary tactics, techniques, and procedures (TTPs), enabling organizations to enhance threat detection, response, and mitigation strategies effectively. In this episode, Adam Pennington tells us about the origins of the ATT&CK project, how organizations can effectively leverage it, and the journey that led Adam to his current role as the project's leader. Resources: https://attack.mitre.org/https://conf.splunk.com/https://attack.mitre.org/resources/learn-more-about-attack/https://mitre-engenuity.org/cybersecurity/attack-evaluations/https://www.youtube.com/watch?v=eL4iLUw1ee8https://www.youtube.com/watch?v=cXlWY3OnjO0https://www.youtube.com/watch?v=3Xrl6ICxKxI https://www.splunk.com/en_us/blog/security/revisiting-the-big-picture-macro-level-att-ck-updates-for-2023.html

Duration:00:36:58

Ask host to enable sharing for playback control

Ep. 6: Electric featuring Robert M. Lee, CEO and Co-Founder of Dragos

3/13/2024
Cybersecurity is crucial for the electric sector to safeguard critical infrastructure from cyber threats and potential disruptions, ensuring the reliable and secure delivery of electricity to homes, businesses, and essential services. In episode 6, Robert M. Lee, CEO and Co-Founder of Dragos provides an overview of the top cyber threats facing electric utilities and the role that Dragos plays in strengthening ICS and OT resilience. Resources: https://www.dragos.com/community/community-defense-program/https://www.dragos.com/ot-cybersecurity-year-in-review/https://www.sans.org/profiles/robert-m-lee/https://www.amazon.com/Sandworm-Cyberwar-Kremlins-Dangerous-Hackers/dp/0385544405https://www.justice.gov/opa/pr/us-government-disrupts-botnet-peoples-republic-china-used-conceal-hacking-criticalhttps://www.justice.gov/opa/pr/justice-department-conducts-court-authorized-disruption-botnet-controlled-russianhttps://www.wired.com/story/lockbit-ransomware-takedown-website-nca-fbi/https://www.mandiant.com/resources/blog/sandworm-disrupts-power-ukraine-operational-technologyhttps://www.sans.org/white-papers/five-ics-cybersecurity-critical-controls/https://homeland.house.gov/hearing/securing-operational-technology-a-deep-dive-into-the-water-sector/

Duration:00:54:26

Ask host to enable sharing for playback control

Ep. 5: Food and Agriculture featuring Jonathan Braley, director of the Food and Ag-ISAC

2/28/2024
The food and agriculture industry is a critical sector that represents nearly a fifth of US economic activity. Businesses in this sector also rely on other important industries such as water, transportation, and energy. In this episode, Jonathan Braley, director of the Food and Ag-ISAC shares the top cyber threats facing the industry, as well as the various services offered through the ISAC. Resources: https://www.foodandag-isac.org/https://www.foodandag-isac.org/resourceshttps://www.cisa.gov/resources-tools/resources/cybersecurity-guidance-chinese-manufactured-uas

Duration:00:20:52

Ask host to enable sharing for playback control

Ep. 4: Elections with Marci Andino, senior director, Election Infrastructure Information Sharing and Analysis Center (EI-ISAC)

2/14/2024
In this episode of The Security Detail, we explore the complex domain of election cybersecurity with Marci Andino, senior director of the Election Infrastructure Information Sharing and Analysis Center (EI-ISAC). From international interference threats to localized phishing attacks, discover the varied challenges election offices face and the strategies deployed to safeguard the integrity of electoral processes. Resources: https://www.cisecurity.org/ei-isachttps://safeelections.org/marci-andino/https://essentialguide.docs.cisecurity.org/en/latest/index.htmlhttps://www.bloomberg.com/news/newsletters/2024-02-07/how-investigators-solved-the-biden-deepfake-robocall-mysteryhttps://www.splunk.com/en_us/blog/security/old-school-vs-new-school.html

Duration:00:23:29

Ask host to enable sharing for playback control

Ep. 3: Media with Runa Sandvik, security researcher and founder of Granitt

1/31/2024
Cybersecurity is crucial for journalists and newsrooms to safeguard sensitive information, protect sources, and ensure the integrity of their reporting in an increasingly digital and interconnected media landscape. Episode 3 of The Security Detail features an interview with Runa Sandvik, a security researcher and founder of Granitt, a consulting firm that focuses on digital security for journalists and other at-risk people. Resources: Granitt WebsiteRuna's WebsiteFollow Runa on XRuna's blog postsTor ProjectGoogle Summer of CodeSecurity Expert: Apple's Lockdown Mode Still Defeats Commercial SpywareColumbia Journalism Review profile on RunaCitizen LabAmnesty International

Duration:00:21:03

Ask host to enable sharing for playback control

Ep. 2: Water with CISA's Amy Thomas, cyber risk analyst and Noah Powers, RVA program lead, penetration testing capabilities

1/17/2024
Water treatment facilities are part of the critical infrastructure that supports essential services. A cyberattack on these facilities could disrupt the supply of clean water, leading to severe consequences for public health, safety, and the economy. In this episode, two representatives from the US Cybersecurity and Infrastructure Security Agency, or CISA, share strategies to defend the water sector from cyberattacks. They also provide an update on CISA's investigation into an Iranian-linked campaign targeting Israeli-made Programmable Logic Controllers (PLCs) at a number of US water utilities. Resources: CISA Risk and Vulnerability Assessments programCISA Security AdvisorsTop Ten Cybersecurity Misconfigurations IRGC-Affiliated Cyber Actors Exploit PLCs in Multiple Sectors, Including U.S. Water and Wastewater Systems FacilitiesCISA and Partners Release Joint Advisory on IRGC-Affiliated Cyber Actors Exploiting PLCsCISA Secure by Design Alert Urges Manufacturers to Eliminate Default PasswordsStates and Congress wrestle with cybersecurity after Iran attacks small town water utilitiesCVE-2023-6448CISA's Known Exploited Vulnerabilities Catalog Report a cyber issue to CISAWater and Wastewater Cybersecurity toolkit China’s cyber army is invading critical U.S. servicesVolt Typhoon targets US critical infrastructure with living-off-the-land techniquesStop Ransomware websiteThe Dragos Community Defense Program Helps Secure Industrial Infrastructure for Small UtilitiesCybersecurity for Rural Water Systems ActEnergy Circuit Riders Act

Duration:00:21:28

Ask host to enable sharing for playback control

Ep. 1: Tour of Cyber Coalition 2023, NATO’s flagship cyber defence exercise

1/3/2024
Season 2 of The Security Detail kicks off with an inside look at Cyber Coalition 2023, NATO's flagship cyber defence exercise. Audra Streetman traveled to Tallinn, Estonia to tour the exercise and interview creators and participants about the knowledge and collaboration needed to defend the Alliance from cyber threats. Links: Cyber Coalition 2023 NATO Blog

Duration:00:10:48

Ask host to enable sharing for playback control

Ep. 14: Cybersecurity Career Advice from Past Interview Guests

12/13/2023
Wrapping up Season 1 of The Security Detail, episode 14 features interviews with a number of past guests about the best advice they've received in their career along with the failures they've learned the most from. Stay tuned for Season 2 of The Security Detail, which kicks off on January 3, 2024 with an episode about Cyber Coalition 2023, NATO's flagship cyber defense exercise. Audra Streetman traveled to Tallinn, Estonia to tour the exercise and interview creators and participants about the knowledge and collaboration needed to defend the Alliance from cyber threats.

Duration:00:22:13

Ask host to enable sharing for playback control

Ep. 13: Energy featuring Joe Slowik, threat intelligence manager at Huntress

11/29/2023
Cybersecurity in the energy sector is crucial for safeguarding critical infrastructure, preventing potential disruptions to power grids, and mitigating the risk of cyberattacks that could have severe economic, environmental, and societal consequences. In this episode, Joe Slowik, threat intelligence manager at Huntress, discusses the top cyber threats to the energy sector. Resources: Sandworm Disrupts Power in Ukraine Using a Novel Attack Against Operational Technology (Mandiant) Attaining Focus: Evaluating Vulnerabilities In The Current Threat Environment Exorcising the Ghost in the Machine: Debunking Myths Around Supply Chain Intrusions Assessing The Balance Between Visibility & Confidentiality In ICS Network Traffic E-ISAC Cybersecurity Risk Information Sharing Program (CRISP)

Duration:00:21:14

Ask host to enable sharing for playback control

Ep. 12: Defence with Luke O’Brien, principal engineer for cyber defence at NATO

11/15/2023
Cybersecurity is crucial for the defence industry as it safeguards sensitive information, intellectual property, and critical infrastructure from cyber threats, ensuring the integrity and resilience of military technologies. In this episode, Luke O’Brien, NATO's principal engineer for cyber defence explains NATO’s unique approach to cybersecurity. Resources: NATO Cyber Defence NATO Malware Information Sharing Platform (MISP) NATO Crisis Management Exercise 2023 (CMX23) 2023 NATO Summit in Vilnius NATO Rapid Reaction Team Albania weighed invoking NATO’s Article 5 over Iranian cyberattack (Politico)

Duration:00:17:32

Ask host to enable sharing for playback control

Ep. 11: Geopolitics with Dmitri Alperovitch, executive chairman at Silverado Policy Accelerator

11/1/2023
Cybersecurity has become a critical element in geopolitics, shaping international relations as nations grapple with the challenges of protecting their digital infrastructures and safeguarding national security in an interconnected world. In this episode, Dmitri Alperovitch, Executive Chairman at Silverado Policy Accelerator, discusses the intersection between cybersecurity and geopolitics and the evolving role of cyber in modern conflict. Resources: World on the Brink: How America Can Beat China in the Race for the Twenty-First Century Geopolitics Decanted podcast by Silverado Follow Dmitri on X Infamous Chisel report Storm-0558 Report Volt Typhoon Report The Alperovitch Institute Silverado Policy Accelerator

Duration:00:35:49

Ask host to enable sharing for playback control

Ep. 10: Aviation featuring Richard Waine, head of SecOps at easyJet

10/18/2023
Cybersecurity in aviation is paramount as it safeguards critical systems, ensuring the safety of passengers and the integrity of flight operations. In this episode, Richard Waine, head of SecOps at easyJet, discusses the aviation cyber threat landscape and how easyJet is tackling a range of technical and policy issues. Resources: easyJet.com Aviation ISAC

Duration:00:17:06

Ask host to enable sharing for playback control

Ep. 9: Education featuring Brett Callow, threat analyst at Emsisoft

10/4/2023
The cyber threat landscape for education has evolved rapidly, with ransomware attacks and data breaches targeting schools and universities, highlighting the critical need for robust cybersecurity measures in the sector. In this episode, Brett Callow, threat analyst at Emsisoft, shares his observations about the cybercrime ecosystem and how schools and universities can best defend against these attacks. Resources: Unpacking the MOVEit Breach: Statistics and Analysis (Emsisoft) The State of Ransomware in the US: Report and Statistics 2022 (Emsisoft) Protecting Our Future: Partnering to Safeguard K-12 Organizations from Cybersecurity (CISA)

Duration:00:27:29

Ask host to enable sharing for playback control

Ep. 8: Cloud Security featuring Sean Heide, technical research director at Cloud Security Alliance

9/20/2023
Cloud security is essential to safeguarding sensitive data and ensuring the reliability of digital services in an increasingly interconnected and data-driven world. In this episode, Sean Heide shares some of the top threats to cloud computing that he's seeing as technical research director at the Cloud Security Alliance. Resources: CSA's 2022 Top Threats to Cloud Computing report CIS Critical Security Controls Shared Responsibility Model in the Age of Cloud

Duration:00:23:15

Ask host to enable sharing for playback control

Ep. 7: Financial Services featuring Paul Trueman, executive VP of segments in cyber and intelligence at Mastercard

9/6/2023
Cybersecurity in the financial sector is of paramount importance due to the highly sensitive and valuable nature of the data and transactions involved. In this episode, Paul Trueman, the executive vice president of segments in cyber and intelligence at Mastercard, shares insights from his extensive experience in the industry and provides advice on navigating challenges. Resources: FS-ISAC's Navigating Cyber 2023 report Digital Intelligence Index Digital Trust at the World Economic Forum Oxford Cyber Security for Business Leaders Programme

Duration:00:21:57

Ask host to enable sharing for playback control

Ep. 6: Retail and Hospitality featuring Suzie Squier, president of RH-ISAC

8/22/2023
The cyber threat landscape for the retail and hospitality sector is marked by persistent and sophisticated attacks, targeting both customer data and financial information. With the widespread adoption of e-commerce and digital payment systems, threat actors exploit vulnerabilities in online platforms and point-of-sale systems to steal sensitive data and execute financial fraud. Additionally, the interconnected nature of supply chains in these industries presents further risks, demanding heightened cybersecurity measures to safeguard customer trust and protect against potential disruptions to business operations. In this episode, Suzie Squier, president of the Retail and Hospitality ISAC, shares the top concerns she's hearing from ISAC members and her recommendations to better defend against these threats. Resources: RH-ISAC website MISP threat sharing platform RH-ISAC Benchmark Survey 2022 Zscaler ThreatLabz - State of Phishing Report Bluenomicon: The Network Defender's Compendium

Duration:00:18:25

Ask host to enable sharing for playback control

Ep. 5: Healthcare featuring Zach Nelson, assistant VP of Health-ISAC’s Threat Operations Center

8/9/2023
Threat actors continue to exploit vulnerabilities in healthcare systems, leading to data breaches, ransomware incidents, and disruptions in critical medical services. The sector's increased reliance on interconnected devices and electronic health records has amplified the risks, necessitating robust cybersecurity measures and constant vigilance to safeguard patient information and maintain the integrity of healthcare operations. In this episode, Zach Nelson, Assistant Vice President of Health-ISAC's Threat Operations Center, shares his insight on the top cyber threats to the healthcare sector. Resources: H-ISAC website FDA Guidance regarding cybersecurity in medical devices MSFT Blog on court order regarding cracked copies of Cobalt Strike

Duration:00:20:58

Ask host to enable sharing for playback control

Ep. 4: The Public Sector featuring Dan Tripovich, assistant director-general standards, technical advice & research at the Australian Cyber Security Centre

7/26/2023
In this episode of The Security Detail, Kirsty and Audra take a look at the cyber threat landscape for the public sector from an Australian perspective. The episode features an interview with Dan Tripovich, who is currently the Assistant Director-General Standards, Technical Advice and Research (STAR) within the Australian Signals Directorate’s Australian Cyber Security Centre Group. STAR Branch delivers ACSC’s flagship publications, including the Australian Government Information Security Manual, the Essential Eight and Protective Cyber Security guidance to the Australian public. Dan is also responsible for the delivery of the ACSC’s Research, International Standards and Technical Advice capabilities to support the secure operation of Critical, Emerging and Operational Technologies. Resources: - Australian Cyber Security Centre - An Introduction to Securing Smart Places - Essential Eight - REDSPICE investment

Duration:00:29:44