Cyber Kumite

Follow Cyber Kumite
Share on
Copy link to clipboard

Cyber Kumite is a discussion of today's cybersecurity challenges. Our hosts are seasoned cybersecurity executives with hands-on, technical backgrounds. They aren't afraid to question "best practices" or emerging trends that may be overrated fads. Gain insights from guest CISOs and other experts. Cyber Kumite is presented by Security Risk Advisors, a cybersecurity consulting firm. Disclaimer: The views and opinions expressed in this production are those of the participants and do not necessarily reflect the official policies or positions of any other agency, organization, employer, or company.

Security Risk Advisors

  • Aug 25, 2020 LATEST EPISODE
  • monthly NEW EPISODES
  • 20m AVG DURATION
  • 16 EPISODES


Search for episodes from Cyber Kumite with a specific topic:

Latest episodes from Cyber Kumite

Cyber Kumite - Ep. 16 - Dredd feat. Evan Perotti

Play Episode Listen Later Aug 25, 2020 13:01


Evan Perotti has created Dredd to help automate the process of analyzing detection rules. This is a free tool downloadable from Github. Chris and Evan discuss its inspiration and many use cases.

Cyber Kumite - Ep. 15 - Cloud Security feat. Owen Zacharias

Play Episode Listen Later Aug 18, 2020 25:15


Owen Zacharias discusses the benefits and challenges of cloud security. There are many tools and applications available to help secure your cloud environment but it is still up to you to configure and maintain the controls properly.

Cyber Kumite - Ep. 14 - SIEM vs. UBA feat. Nick Ascoli

Play Episode Listen Later Aug 11, 2020 21:36


Nick Ascoli discusses differences between SIEM and UBA platforms, and debunks common misconceptions about UBA tools.

Cyber Kumite - Ep. 13 - Table Top Exercises

Play Episode Listen Later Aug 4, 2020 18:23


Tim and Chris discuss the usefulness of cybersecurity TTX and how to keep the exercises fresh. Find out how to make the most of these simulations, who should be there, and how frequenly they should be performed.

Cyber Kumite - Ep. 12 - Election Security feat. Mick Baccio

Play Episode Listen Later Jul 28, 2020 24:00


Mick Baccio, former CISO for Pete Buttigieg, talks about how he became the first Presidential Election Campaign CISO and what security challenges will be faced in the upcoming 2020 election. Disclaimer: The views and opinions expressed in this production are those of the participants and do not necessarily reflect the official policies or positions of any other agency, organization, employer, or company.

Cyber Kumite - Ep. 11 - Security Operations Metrics

Play Episode Listen Later Jul 21, 2020 17:16


Blue Teams specialist John Fung joins us to discuss Security Operations Metrics. Are they useful for measuring the security program? Which metrics are actually good? Learn how to avoid hyperbole and instead focus on manageable metrics that you can control. Disclaimer: The views and opinions expressed in this production are those of the participants and do not necessarily reflect the official policies or positions of any other agency, organization, employer, or company.

Cyber Kumite - Ep. 10 - Culture, Talent & Skills part 1: Racial Diversity and Allyship in Cybersecurity feat. Nicole Ford

Play Episode Listen Later Jul 14, 2020 21:46


Cybersecurity’s recruiting, development, and retention playbook sucks. This Culture, Talent, and Skills mini-series will discuss moving away from tired ideas to gutsy practices that yield high-performing and sustainable capabilities. Please enjoy these discussions with a few of our favorite security leaders, with tips to help you shape your team’s culture and resilience in the face of numbers and skills shortages.

Cyber Kumite - Ep. 9 - Reinventing the Wheel feat. Mamani Older

Play Episode Listen Later Jul 7, 2020 23:56


Special guest Mamani Older joins us for this episode. We discuss building custom strategies and technologies vs. using templated or commercial resources. Are custom technologies just making more work for us? Which parts of your cyber program should be custom and which can be commercially bought?

Cyber Kumite - Ep. 8 - CASB vs. DLP feat. Matt McHugh

Play Episode Listen Later Jun 30, 2020 21:29


Special guest Matt McHugh drops knowledge on CASB technology, and discusses how it compares to DLP, where the technology is limited, and if it delivers on everything the vendors have promised.

Cyber Kumite - Ep. 7 - NIST CSF vs. MITRE ATT&CK

Play Episode Listen Later Jun 23, 2020 21:39


Tim & Chris discuss the differences between NIST CSF and MITRE ATT&CK frameworks, common misconceptions about each, and how companies should use the frameworks as part of their cybersecurity program.

Cyber Kumite - Ep. 6 - Zero Trust

Play Episode Listen Later Jun 9, 2020 25:01


Special guest Mike Pinch talks about Zero Trust security. He presents various ways companies are implementing Zero Trust, how it actually affects a company's security posture, and common misconceptions about the concept.

Cyber Kumite - Ep. 5 - Are Supplier Risk Programs Working?

Play Episode Listen Later Jun 2, 2020 22:01


Do Supplier Risk programs actually reduce risk? If done correctly then possibly but most of the time they are just a burden on vendors. Tim and Chris talk about what's wrong with the current process and how Supplier Risk programs should change.

Cyber Kumite - Ep. 4 - Defend Your Top 3 Controls

Play Episode Listen Later May 26, 2020 16:25


If you could only have 3 security controls in place, what would they be? Tim and Chris present their top three choices.

Cyber Kumite - Ep. 3 - Security Awareness: Are We Over Phishing Our Users?

Play Episode Listen Later May 19, 2020 17:58


Companies love to test their employees' security awareness by spear phishing them and tracking whether or not the employee fell for it. But what does this prove? Tim and Chris discuss whether it's effective, and if we are over phishing our employees.

Cyber Kumite - Ep. 2 - Talent & Recruitment Search Firms

Play Episode Listen Later May 19, 2020 26:32


Special guest Anahi Santiago, CISO of Christiana Care Health System discusses her experience using recruitment agencies for hiring security employees. Tim does not agree with using them.

Cyber Kumite - Ep. 1 - Pen Testing vs. Red Teams vs. Purple Teams

Play Episode Listen Later May 18, 2020 15:20


Tim and Chris discuss the differences between Penetration Testing, Red Teams, and Purple Teams. Learn how these security testing exercises have evolved, and why you would perform one over the other.

Claim Cyber Kumite

In order to claim this podcast we'll send an email to with a verification link. Simply click the link and you will be able to edit tags, request a refresh, and other features to take control of your podcast page!

Claim Cancel