Podcasts about it governance

  • 61PODCASTS
  • 89EPISODES
  • 32mAVG DURATION
  • 1MONTHLY NEW EPISODE
  • Apr 20, 2025LATEST

POPULARITY

20172018201920202021202220232024


Best podcasts about it governance

Latest podcast episodes about it governance

Manager Memo podcast
Get Out of the Office

Manager Memo podcast

Play Episode Listen Later Apr 20, 2025 41:14


Brad Englert - advisor, technologist and author of the Spheres of Influence offers insights on ways to develop and maximize a corporate IT strategy.  Along the way we discuss – the University of Texas (1:15), IT Governance (3:20), three types of decision making (12:30), multi-modal contact (21:25), and the Art of Apology (37:25). Access Brad's customized link @ Brad Englert book link. This podcast is teamed with LukeLeaders1248, a nonprofit that provides scholarships for the children of military Veterans. Help us reach our 3-scholarship goal for 2025. Send a donation, large or small, through our website @ www.lukeleaders1248.com, PayPal, or Venmo @LukeLeaders1248.  Music intro and outro from the creative brilliance of Kenny Kilgore. Lowriders and Beautiful Rainy Day. 

Versicherungsfunk
Versicherungsfunk Update 14.03.2025

Versicherungsfunk

Play Episode Listen Later Mar 14, 2025 4:16


Die Themen im heutigen Versicherungsfunk Update sind: Generali übertrifft Wachstumsziele und erzielt Rekordergebnisse Die Generali Gruppe hat 2024 ihre Wachstumsziele aus dem Plan „Lifetime Partner 24: Driving Growth“ übertroffen und Rekordergebnisse erzielt. Die gebuchten Brutto-Beiträge stiegen um 14,9 % auf 95,2 Milliarden Euro, insbesondere durch starkes Wachstum in der Lebensversicherung (+19,2 %) sowie der Schaden- und Unfallversicherung (+7,7 %). Das Operating Result erreichte mit 7,3 Milliarden Euro (+8,2 %) einen Höchstwert, während das bereinigte Konzernergebnis auf 3,8 Milliarden Euro (+5,4 %) anstieg. Der Vorstand schlägt eine Dividende von 1,43 Euro je Aktie vor (+11,7 %). MLP überschreitet Milliardengrenze Die MLP Gruppe hat im Geschäftsjahr 2024 ihre Gesamterlöse um 10 % auf 1,067 Milliarden Euro gesteigert und damit erstmals die Milliardengrenze überschritten. Das EBIT erreichte mit 95 Millionen Euro das obere Ende der Prognose und lag deutlich über den Vorjahreswerten. Besonders der Bereich Vermögensverwaltung trug zum starken Ergebnis bei. Der Vorstand schlägt eine Dividendenerhöhung um 20 % auf 36 Cent pro Aktie vor. Für 2025 erwartet MLP ein EBIT von 100 bis 110 Millionen Euro und plant bis 2028 eine weitere Steigerung auf bis zu 150 Millionen Euro bei Gesamterlösen von 1,3 bis 1,4 Milliarden Euro. Ecclesia Gruppe stellt IT-Organisation neu auf Die Ecclesia Gruppe richtet ihre IT-Organisation neu aus: Unter der Leitung von Dr. Andrea Weierich, gruppenweite CIO und Mitglied der Geschäftsleitung, arbeiten IT-Verantwortliche nun als Segment-CIOs, die eng mit den Geschäftsbereichen zusammenarbeiten. Die Segment-CIOs formulieren strategische IT-Prioritäten, leiten zentrale IT-Funktionen und steuern gruppenweite IT-Projekte. Dr. Weierich übernimmt die Segmente Industrie und Vorsorge sowie IT-Governance, während Dirk Borsetzky, Daniel Ahrend und Don Rorlach weitere Segmente und zentrale IT-Bereiche verantworten. Ziel ist eine stärkere Kundenorientierung und effizientere Nutzung digitaler Ressourcen. cpit comparit erweitert Vergleichsrechner um Altersvorsorge-Produkte Der Vergleichsrechner-Anbieter cpit comparit hat seinen cpit.LV-Rechner um den Bereich Altersvorsorge erweitert. Neben Risikolebens- und Berufsunfähigkeitsversicherungen können nun auch Produkte der Basis-Rente (1. Schicht) und der privaten Rente (3. Schicht) direkt verglichen werden. Die Erweiterung umfasst Tarife von 15 Versicherern, darunter Allianz, Alte Leipziger, Swiss Life und Volkswohl Bund. Zudem ist eine Geeignetheitsprüfung nach IDD vollständig integriert, um die Beratung effizienter zu gestalten. Weitere Anbieter sollen in den kommenden Monaten folgen. Versicherer verbessern hybriden Vertrieb Die großen Erstversicherer in Deutschland optimieren weiter ihre Vertriebsstrategie und vernetzen digitale und stationäre Kanäle zunehmend besser. Der Hybrid Sales Index (HSI©) 2024 des Beratungsunternehmens Wavestone zeigt, dass Versicherer ihre hybride Kundenansprache verbessern konnten: Der durchschnittliche HSI©-Score stieg von 50 % im Vorjahr auf 53 %. Die Allianz führt das Ranking mit 72 % an, gefolgt von Axa (63 %) und ERGO (60 %). HUK-Coburg (45 %), Provinzial (43 %) und HDI (39 %) belegen die letzten Plätze. BarmeniaGothaer Asset Management AG beruft neuen Vorstandssprecher Gerrit Heine tritt im Sommer 2025 in den Vorstand der BarmeniaGothaer Asset Management AG ein und übernimmt die Nachfolge von Christof Kessler als Vorstandssprecher, der zum 30. Juni 2025 in den Ruhestand geht. Heine wird zudem für das Middle- und Back-Office verantwortlich sein. Derzeit ist er Managing Director und Head of Northern Europe bei der Munich Re Group.

IIoT Use Case Podcast | Industrie
#157 | IT/OT-Integration bei Liebherr: Wie eine Plattformstrategie die Digitalisierung in der Produktion beschleunigt | Cybus & Liebherr-Hydraulik GmbH

IIoT Use Case Podcast | Industrie

Play Episode Listen Later Feb 19, 2025 37:51


www.iotusecase.com#UNIFIEDNAMESPACE #CHANGEMANAGEMENT #SHOPFLOORIn der 157. Folge des IoT Use Case Podcasts spricht Gastgeberin Ing. Madeleine Mickeleit mit Peter Sorowka, CEO von Cybus, einem Anbieter für Smart Factory Integrationsplattformen, und Lukas Scholze von der Liebherr-Hydraulikbagger GmbH, der als Technical Solution Architect an der Digitalisierung der Produktion arbeitet. Gemeinsam sprechen wir über die Herausforderungen und Best Practices beim Aufbau einer skalierbaren IoT-Infrastruktur – von der IT/OT-Integration bis hin zur Umsetzung konkreter Use Cases in der Fertigung.Folge 157 auf einen Blick (und Klick):(07:25) Herausforderungen, Potenziale und Status quo – So sieht der Use Case in der Praxis aus(30:15) Übertragbarkeit, Skalierung und nächste Schritte – So könnt ihr diesen Use Case nutzenZusammenfassung der PodcastfolgeDie Digitalisierung in der Fertigungsindustrie schreitet voran – doch wie gelingt eine skalierbare IoT-Integration, ohne in Datensilos zu enden? In dieser Folge sprechen wir über die Herausforderungen bei der Shopfloor-Vernetzung und den Übergang von einer projektbasierten zu einer plattformbasierten Digitalisierung. Liebherr startete mit einer Liste von 78 Use Cases und erkannte schnell, dass eine schrittweise Umsetzung Jahrzehnte dauern würde. Die Lösung: Eine zentrale IoT-Integrationsplattform, die datenbasierte Entscheidungen in Echtzeit ermöglicht und den Weg für zukünftige Automatisierung ebnet. Peter gibt Einblicke in die Architektur der Cybus Connectware, die als Middleware OT- und IT-Systeme verbindet, Daten standardisiert und eine effiziente, sichere Skalierung ermöglicht. Lukas berichtet aus der Praxis, wie Liebherr eine unternehmensweite Strategie entwickelt hat, um Use Cases schnell und effizient zu realisieren, und welche Rolle Organisationsstruktur, Change-Management und IT-Governance dabei spielen. Ein Muss für alle, die ihre Smart Factory-Strategie optimieren wollen – mit echten Learnings aus einem erfolgreichen Digitalisierungsprojekt!-----Relevante Folgenlinks:Madeleine (https://www.linkedin.com/in/madeleine-mickeleit/)Peter(https://www.linkedin.com/in/psorowka/)Cybus Connectware (https://www.cybus.io/en/product/cybus-connectware/)Cybus Partnerprofil (https://iotusecase.com/de/unternehmen/cybus/)Jetzt IoT Use Case auf LinkedIn folgen

Auto Supply Chain Prophets
Embracing Ethical AI for Future-Ready Automotive Supply Chains

Auto Supply Chain Prophets

Play Episode Listen Later Dec 2, 2024 28:01 Transcription Available


At the heart of The Prophets' vision are “The 24 Essential Supply Chain Processes.” What are they? Find out, and see the future yourself. Click here AI is revolutionizing the automotive supply chain, but how do leaders harness its potential while staying true to ethical principles? In this episode, hosts Terry Onica and Jan Griffiths dive deep into the transformative power of AI with Dr. Charlotte de Brabandt, Head of IT Partner Management at ZF and a global thought leader on ethical AI. Charlotte's impressive career—spanning roles at Porsche, Volkswagen, Johnson & Johnson, and Amazon—gives her a unique perspective on how ethical AI is transforming the industry.Charlotte introduces ethical AI as the development of systems that prioritize fairness, transparency, and accountability. She explains how addressing challenges such as bias and privacy during development ensures these systems align with ethical standards. This approach, she explains, not only fosters trust with suppliers and partners but also gives businesses a competitive edge.For supply chain leaders, Charlotte offers practical insights on integrating AI into procurement and supply chain processes. She explains how AI can automate repetitive tasks, optimize decision-making, and strengthen supplier relationships. Through examples from industry leaders like IBM and Unilever, she shares the benefits of adopting ethical AI, from improving efficiency to meeting sustainability goals.This transformation, however, requires more than just technology—it demands a cultural shift. How do you ensure AI-driven decisions are fair? How do you build a governance framework to guide ethical AI integration? Most importantly, how do leaders move from the outdated command-and-control approach to a collaborative, trust-based supply chain?Charlotte's message is clear: The time to start embracing AI is now. The future is here, and the companies that embrace ethical AI today will lead the industry tomorrow. Don't miss this deep dive into the future of ethical AI in the automotive industry!Themes discussed in this episode:The role of ethical AI in fostering fairness, transparency, and accountability in the automotive supply chainWhy addressing bias and privacy concerns is essential to building trust with suppliers and partnersHow ethical AI can streamline repetitive tasks and enhance decision-making in procurement and supply chain processesExamples of successful AI integration in companies like IBM and UnileverThe cultural shift required to move from command-and-control leadership to collaborative, trust-based partnershipsThe importance of establishing governance frameworks to ensure responsible and ethical use of AIWhy adopting ethical AI now is critical for gaining a competitive edge and preparing for the industry's futureFeatured on this episode: Name: Dr. Charlotte Anabelle de BrabandtTitle: Head of IT Partner Management (with Procurement) & Deputy Head of IT Governance and Compliance, ZF GroupAbout: Dr. Charlotte Anabelle de Brabandt is a recognized digital futurist and procurement expert with over a decade of international experience across industries such as automotive, technology, and pharmaceuticals. She's a published author, TEDx speaker, ISM 30 under 30 Megawatt Winner, a key member of the (ISM®) Thought Leadership Council, Executive Board member of Global Women Procurement Professionals (GWPP), and Advisory Board member of the Global Council for Diversity and Inclusion in Procurement (and Supply Chain). Charlotte is passionate about fostering collaboration, building high-performing teams, and aligning procurement strategies with...

Tech Beyond Gender Talks
Episode 16 - Women in Tech: Breaking the Barriers with Sandra Whitehead

Tech Beyond Gender Talks

Play Episode Listen Later Oct 8, 2024 67:48


In this episode of Tech Beyond Gender, Sandra Whitehead, Senior Manager for IT Governance at Partners Life, dives deep into the challenges women face in technical leadership roles. Sandra shares insights on why there's a significant drop in women in tech as they climb the corporate ladder and discusses the societal norms that continue to shape this imbalance. She highlights the need for structural changes, flexible working environments, and the importance of women supporting each other in the tech industry. Tune in to discover how visibility and mentorship can make tech a more inclusive space for all. #WomenInTech #TechLeadership #GenderDiversity #BreakingBarriers #WomenSupportingWomen #TechCareers #InclusiveWorkplace #FlexibleWorking #Mentorship #TechBeyondGender

Irish Tech News Audio Articles
Neglect NIS2 at your own risk

Irish Tech News Audio Articles

Play Episode Listen Later Oct 2, 2024 5:25


Guest post by Conall O'Kane, Modern Workplace Practice Manager, Storm Technology It's just over two weeks away. It's too risky to ignore. Organisations need to move quickly. That is, if they are going to comply with NIS2 which will see many businesses having to review and update their existing policies and systems to ensure data compliance. Data compliance refers to adherence to laws, regulations, standards, and policies that govern the collection, storage, use, and protection of data. It ensures that data is handled in a manner that meets legal and regulatory requirements to protect privacy, ensure data security, and uphold the rights of data subjects. Effective data management and compliance is therefore crucial to avoid penalties, protect information and reputation, and build trust with customers and stakeholders. The data compliance imperative has been thrust even more into the spotlight following a series of high-profile incidents and looks set to remain there with upcoming changes to legislation - namely, the revision of the Network and Information Security Directive (NIS2). Higher stakes The evolution of the NIS2 directive, introduced by the European Commission, broadens the range of sectors required to comply with data compliance regulations. It will expand to include sectors such as postal and courier services, data centre services, wastewater and waste management, pharmaceuticals, medical devices, and chemicals. Furthermore, it will see stricter incident reporting requirements which puts the onus on businesses to adopt robust data compliance practices to adequately manage and report security incidents. It also establishes a comprehensive list of technical and process measures for companies to implement, including basic cyber hygiene practices, cybersecurity training, cryptography, encryption, and multi-factor authentication. Due to these heightened standards, NIS2 will also see sizeable fines for those organisations who do not comply and whose data compliance strategies are not up to standard. In other words, those who neglect NIS2 do so at their own risk, not only in terms of potential financial and legal penalties but also the security of their own data and systems - something which could be catastrophic in the event of a breach. Better strategies Being data compliant is not just one element or area. Organisations must confirm with legal and regulatory requirements including international, local and industry-specific data protection laws and regulations. They must also have policies and procedures for data management and governance - spanning data quality, data lifecycle management, and data access controls. From a privacy and security perspective, measures like encryption and access controls need to be implemented to safeguard personal data from unauthorised access, breaches, and security threats. On the topic of personal information, companies have a responsibility to ensure that individuals can exercise their rights over their personal data, including the right to access, rectify, delete, or restrict the processing of their data. As is the case with the rollout of NIS2, these requirements and processes are continually evolving. Therefore, businesses need to continually review, monitor and audit their data handling practices to ensure ongoing compliance. Training of and awareness among employees is also vital to ensure that best practices are adhered to for data management and security. Greater strides While great strides have been made in terms of cybersecurity, more progress is needed and something simple like knowledge gaps can significantly increase an organisation's exposure in the event of an accidental or malicious data breach. In fact, an IT Governance report revealed that some 2,289,599,662 known record breaches in 556 publicly disclosed incidents were reported in Europe between January and June 2024. This shows that if data governance is overlooked - for instance, holding personal data pertaining to ...

Ars Boni
Ars Boni 504 Hacking a University (Prof. Dr. Fabian Schmieder)

Ars Boni

Play Episode Listen Later Jun 11, 2024 57:43


Wir sprechen mit Prof. Dr. Fabian Schmieder. Er ist Jurist und Vizepräsident IT- und Informationsmanagement, Digitalisierung der Hochschule Hannover. Seine Hochschule erlebte im Oktober 2023 einen schwerwiegenden Ransomware-Angriff, Wir unterhalten uns über den Angriff und was man daraus über die IT-Governance an Hochschulen lernen kann. Links: https://www.hs-hannover.de/ueber-uns/organe-und-gremien/praesidium/vizepraesident-vpdit https://www.heise.de/news/Hochschule-Hannover-Ransomware-Angriff-grosse-Teile-der-IT-Infrastruktur-down-9350254.html https://www.riffreporter.de/de/technik/hacking-datenschutz-ransomware-hochschulen-universitaeten-daten-im-netz-it-sicherheit

Colorado = Security Podcast
261 - 4/8 - Newscast

Colorado = Security Podcast

Play Episode Listen Later Apr 7, 2024 25:25


News from Stanley Hotel, Boom Supersonic, Ibotta, Red Canary, Optiv, LogRhythm, Webroot and a lot more. Support us on Patreon! Fun swag available - all proceeds will directly support the Colorado = Security infrastructure. Come join us on the new Colorado = Security Slack channel to meet old and new friends. Sign up for our mailing list on the main site to receive weekly updates - https://www.colorado-security.com/. If you have any questions or comments, or any organizations or events we should highlight, contact Alex and Robb at info@colorado-security.com This week's news: Join the Colorado = Security Slack channel A new plan for the Stanley Hotel in Estes Park: Sell it to Colorado Boom Announces Successful Flight of XB-1 Demonstrator Aircraft Techstars Boulder kicks off ‘grand finale' with 5 local companies Colorado Inno Madness bracket down to last 4 companies Ibotta's expansion into enterprise should set it up for a successful IPO Best practices for securing Azure Active Directory Crafting a Successful Vulnerability Management Process Framework Key Components of a Robust Cloud Security Maturity Strategy Understanding Brute Force Attacks: The Persistent Threat in Cybersecurity Cyber Future Foundation and National Cybersecurity Center Announce the 9th Annual Cyber Future Summit in Colorado Springs, CO Job Openings: Cologix - Security Engineer II US Army Corps of Engineers - IT Specialist (Infosec/Network) City and County of Denver - Senior IT Security Analyst – Denver International Airport FirstBank Holding Company - IAM Systems Admin CableLabs - Principal IoT Security Architect US Bank - Information Security/Technology Risk Manager B of A - Information Security Identity and Access Management (IAM) Architect Prologis - Senior Analyst, IT Governance, Risk, and Compliance (GRC) Replicant - Staff Cloud Security Engineer Janus Henderson - Sr. IT Audit Manager Upcoming Events: This Week and Next: ISSA Denver - April Meeting (DTC and Downtown) - 4/10 ISSA Denver - Veterans SIG - 4/17 Denver OWASP - AppSec 2.0: Reimagine AppSec With Runtime Analysis - 4/17 ISACA Denver - Annual Meeting - 4/18 CSA Colorado - AWS token theft: Stolen identities and what to do about them - 4/18 Let's Talk Software Security - How can OffSec enhance your AppSec game? - 4/23 ISC2 Pikes Peak - April Meeting - 4/24 CO = Security - Security Leader Summit 1 - 4/26 ISACA Denver - Empowering Women in Tech: CISM Bootcamp by SheLeadsTech - 4/26-28 ISACA Denver - ISACA Technical Training: Alteryx Exploration (A Beginner Workshop) - 5/2 ISC2 Denver - Navigating the Cyber Landscape in Operational Technology (OT): Challenges, Threats, and Solutions - 5/8 View our events page for a full list of upcoming events * Thanks to CJ Adams for our intro and exit! If you need any voiceover work, you can contact him here at carrrladams@gmail.com. Check out his other voice work here. * Intro and exit song: "The Language of Blame" by The Agrarians is licensed under CC BY 2.0

Scale Your Sales Podcast
#224: Michelle Accardi – Sales Success through Customer Relationship Building

Scale Your Sales Podcast

Play Episode Listen Later Jan 15, 2024 25:20


In this week's Scale Your Sales Podcast episode, my guest is Michelle Accardi, the CEO of Liongard. Liongard is the global leader in configuration change detection and response, providing MSPs and IT executives with the most effective way to provide IT Governance and Cyber risk mitigation. Michelle Accardi is an innovative leader with over two decades of experience growing MSPs and technology companies with an excellent track record of success. Previously to joining Liongard, Michelle was CEO of the nation's largest cybersecurity-focused MSPs, Logically. She also spent roughly nine years leading Star2Star Communications and ultimately selling that business to Sangoma Technologies in 2021. In this episode, Michelle shares her journey from sales to CEO, emphasizing the importance of relationship selling in cybersecurity. She discusses the value of being customer-centric, channel sales strategies, and the role of customer feedback in shaping business strategies. Michelle also touches on the concept of enhanced security posture, stressing the vital role of understanding customer needs in effective sales strategies. Tune in for concise insights into the cybersecurity landscape and strategic considerations for success. Welcome to Scale Your Sales Podcast, Michelle Accardi. Timestamps: 03:06 – Transactional sales for quick solutions; relationship sales essential for tailored customer needs. 09:07 – Mapping security controls to get cyber insurance. 11:54 – Tech industry journey: from startup to CEO. 15:33 – Establishing parameters, priority explanation, ongoing training, dynamic conversations. 19:28 – Key to success: customer-centric approach and product-led growth. 21:13 – Understanding customer needs, community involvement as foundation of Liongard. https://www.instagram.com/liongardhq/    https://www.facebook.com/liongardhq/    https://www.linkedin.com/in/michelleaccardi/    Janice B Gordon is the award-winning Customer Growth Expert and Scale Your Sales Framework founder. She is by LinkedIn Sales 15 Innovating Sales Influencers to Follow 2021, the Top 50 Global Thought Leaders and Influencers on Customer Experience Nov 2020 and 150 Women B2B Thought Leaders You Should Follow in 2021. Janice helps companies worldwide to reimagine revenue growth through customer experience and sales.   Book Janice to speak virtually at your next event:  https://janicebgordon.com    LinkedIn: https://www.linkedin.com/in/janice-b-gordon/       Twitter: https://twitter.com/JaniceBGordon   Scale Your Sales Podcast: https://scaleyoursales.co.uk/podcast    More on the blog: https://scaleyoursales.co.uk/blog   Instagram: https://www.instagram.com/janicebgordon      Facebook: https://www.facebook.com/ScaleYourSal... 

Cybercrime Magazine Podcast
CISO Show. Ransomware Defense. Sponsored by KnowBe4.

Cybercrime Magazine Podcast

Play Episode Listen Later Dec 19, 2023 5:12


As part of our ongoing coverage on cybercrime and cybersecurity, we recently spoke to several top experts about how they see it. On this episode, Javvad Malik, Lead Security Awareness Advocate at KnowBe4, is joined by Paul Connelly, former Chief Security Officer at HCA Healthcare; Ken Foster, former VP of IT Governance, Risk & Compliance at FLEETCOR; Omar Khawaja, former CISO at Highmark Health; and Susan Koski, CISO at PNC. Sponsored by: https://www.knowbe4.com/

Cybercrime Magazine Podcast
How CIOs & CISOs Collaborate. Working Together In The Fight Against Cybercrime. Sponsored By Conceal

Cybercrime Magazine Podcast

Play Episode Listen Later Nov 29, 2023 19:48


Ken Foster, VP of IT Governance, Risk & Compliance at FLEETCOR, joins Gordon Lawson, CEO at Conceal, and Steve Morgan, founder of Cybersecurity Ventures and editor-in-chief at Cybercrime Magazine, for a discussion on the CIO / CISO dynamic. To learn more about our sponsor, visit https://conceal.io

Colorado = Security Podcast
254 - 11/6 - Douglas Brush, Founder @ Accel Consulting

Colorado = Security Podcast

Play Episode Listen Later Nov 5, 2023 91:53


Douglas Brush, Founder and Court Appointed Neutral of Accel Consulting is our feature interview this week, interviewed by Frank Victory. News from Xcel Energy, Guild Education, National Cybersecurity Center, Coalfire, Red Canary, Zvelo and a lot more. Support us on Patreon! Fun swag available - all proceeds will directly support the Colorado = Security infrastructure. Come join us on the new Colorado = Security Slack channel to meet old and new friends. Sign up for our mailing list on the main site to receive weekly updates - https://www.colorado-security.com/. If you have any questions or comments, or any organizations or events we should highlight, contact Alex and Robb at info@colorado-security.com This week's news: Colorado has the four most expensive housing markets in U.S. not on a coast Ten Reasons Why Denver Is a “Bastion of Geekdom” Colorado designated as official tech hub for quantum industry Aurora data center to become one of Xcel Energy's biggest customers, rivaling mines and steel mills Denver-area tech unicorn Guild just made a big investment in AI education National Cybersecurity Center Hosts Project Pisces Training And Onboarding - National Cybersecurity Center Maximizing the value of threat modeling Guardians of IoT: Strengthening the security of IoT-connected medical devices in the healthcare industry Validating detection for Gootloader with Atomic Red Team Cyber Insurance Tightens the Reins to Lower Risk Job Openings: Tiktok - Converged Security Technology Security Specialist Maximus - VP - Business Information Security Officer Tanium - Senior Cloud Cybersecurity Engineer, CCS Advanced Energy - Manager, IT Governance, Risk & Compliance Western Union - Cyber Security Governance Business Manager US Bank - Risk Framework Professional Datavant - Head of Information Security Governance Kroll - Vice President, Policy Writer, Cyber Risk Modivcare - Sr. IT Governance Analyst Meta - Security Partner - Infrastructure Upcoming Events: Let's Talk Software Security - What's Your Biggest Security Challenge? - 11/8 ISSA Denver - November Chapter Meeting, Asset Management - 11/8 CISO Debate Series: Will more government regulation help drive better security? - 11/9 ISSA Denver - The New SEC Reporting Rule and the End Cybersecurity as We Know It - 11/9 ISSA COS - November Mini Seminar - 11/11 CSA Colorado - Security Insights With James Condon - 11/14 ISSA COS - November Chapter Meeting - 11/14 ISC2 Pikes Peak - November Meeting - 11/15 ISSA Denver - Inaugural Veterans Special Interest Group meeting - 11/16 ISACA Denver - SEC Cybersecurity Disclosure - 11/16 ISSA COS - Mentoring Mixer and Log Wars - 11/30 Colorado Cyber Security - Cyber First Friday - 12/1 View our events page for a full list of upcoming events * Thanks to CJ Adams for our intro and exit! If you need any voiceover work, you can contact him here at carrrladams@gmail.com. * Intro and exit song: "The Language of Blame" by The Agrarians is licensed under CC BY 2.0

Getting Things Done
Ep. 227: Slice of GTD Life - Melissa Garner

Getting Things Done

Play Episode Listen Later Oct 4, 2023 35:40


Melissa Garner has a big job as the Director of IT Governance, Policy & Strategy at the Oregon Department of Education. She also has a busy family life and makes time for her creative pursuits. In this interview, she talks about her longtime enthusiasm for GTD, and how she supports her staff to be their best. One of the highlights is her detailed walk-through of her GTD system in OneNote. You can listen to the entire conversation from November 2021 at GTD Connect®. -- This audio is one of many available at GTD Connect, a learning space and community hub for all things GTD. Join GTD practitioners from around the world in learning, sharing, and developing the skills for stress-free productivity. Sign up for a free guest pass Learn about membership options Knowing how to get the right things done is a key to success. It's easy to get distracted and overwhelmed. Stay focused and increase productivity with GTD Connect—a subscription-based online learning center from the David Allen Company. GTD Connect gives you access to a wealth of multimedia content designed to help you stay on track and deepen your awareness of principles you can also learn in GTD courses, coaching, and by reading the Getting Things Done book. You'll also get the support and encouragement of a thriving global community of people you won't find anywhere else. If you already know you'd like to join, click here to choose from monthly or annual options. If you'd like to try GTD Connect free for 14 days, read on for what's included and how to get your free trial. During your 14-day free trial, you will have access to: Recorded webinars with David Allen & the certified coaches and trainers on a wide range of productivity topics GTD Getting Started & Refresher Series to reinforce the fundamentals you may have learned in a GTD course, coaching, or book Extensive audio, video, and document library Slice of GTD Life series to see how others are making GTD stick David Allen's exclusive interviews with people in his network all over the world Lively members-only discussion forums sharing ideas, tips, and tricks Note: GTD Connect is designed to reinforce your learning, and we also recommend that you take a course, get individual coaching, or read the Getting Things Done book. Ready to start your free trial?

Ideagen Insights
S2EP7 - AI

Ideagen Insights

Play Episode Listen Later Sep 19, 2023 41:02


Welcome to Ideagen Insights, Ideagen's official audit and risk management podcast. In this episode, Stephanie Jones is joined by Blazej Jedras, Head of IT Governance at CompliancePath, and together they explore the topic of AI, how can tools like ChatGPT be used by Internal Auditors and how organizations can stay AI safe.

Her Hypesquad with Bosstrack
42. Nikki Jones on change management, confronting fears, embracing change, and being awesome

Her Hypesquad with Bosstrack

Play Episode Listen Later Sep 6, 2023 54:09


It's our 1 year anniversary! I can't believe I've had the privilege to talk with so many inspiring women over the last year. And this week is no exception. In this episode of Her HypeSquad with Bosstrack, I sit down with Nikki Jones, CEO and Founder of Changility, to talk about change management, confronting fears, embracing change, and being awesome! About Nikki Jones Nikki Jones (she/they) is the CEO & Founder of Changility. There, she focuses on the humanity of change management and its effect on people first, and her vision is to change the way the world thinks about change, one human at a time. With this unique approach, she creates a new way of working for her clients and their employees, shifting mindsets on strategy design and planning, change and program management, process improvements, and enterprise goal management. Prior to Changility, Nikki was NPR's Vice President of Change Management and Transformation. In this role, she worked to ensure NPR delivered on its business and cultural aspirations, developed more inclusive decision-making and transparent ways of setting project plans and accountabilities and built stronger support systems for cross-departmental collaboration. Prior to NPR, she was the Director of Program Management with SiriusXMRadio, where she coached product teams responsible for digital campaign execution on SiriusXM.com and content management, sales flows, and marketing promotion optimization. As Senior Technical Program Manager with National Geographic Digital Media, she launched the official online experience for the U2 3D film for  NatGeo's Cinema Ventures Entertainment Division and led cross-functional teams for all online programs for NatGeo and NatGeo Magazine. As a consultant with Secured Sciences Group, she re-engineered the IT Governance process for the United States Marine Corps' Manpower Information Systems Division. Nikki earned her BS in Social Science/Political Science from Coppin State University and her Master of Science in Information Systems Technologies and Advanced Business Technologies from George Washington University. She served on the board of the National Association for Multi-Ethnicity in Communications in 2015 and served on the Technology and Innovation Committee for the Emma Bowen Foundation from 2019 to 2023. In 2021, she was a fellow for Public Media Women in Leadership's CEO/COOBootcamp. She currently serves on the Leadership Council for the National Small Business Association. Nikki was introduced to tech at a young age through video games. Her love for technology led her through database administration and front-end development and grew exponentially when she became a project manager. Her passion for servant-leadership, program management, and transformation drives her to help minorities confront and embrace the challenges that they face in the technology industry. Contact Nikki LinkedIn: @nikjjones Email: embracechange@thechangility.com Website: www.thechangility.com

Leaders In Tech
Methodology and Communication: Pillars of Leadership in Technology

Leaders In Tech

Play Episode Listen Later Aug 4, 2023 33:24


Effective leadership in the fast-paced and dynamic world of technology requires a strategic and adaptable approach. One powerful tool that can significantly enhance leadership skills for a tech leader is a well-defined methodology. By employing a structured and systematic approach to decision-making, problem-solving, and team management, tech leaders can navigate complex challenges with confidence and efficiency. A prime example of how methodology can propel a tech professional's career to great heights is Trevor Wood's remarkable journey at CIBC FirstCaribbean International Bank. Starting as an intern, Trevor demonstrated a keen understanding of the importance of methodical thinking in technology projects. Through continuous learning and application of best practices, he ascended through the ranks and now holds the prestigious position of Director - Data, Wealth & Corporate Centre Technology. Trevor's success story underscores the transformative potential of methodology in shaping a tech leader's career trajectory and impact within their organization.Here's more about Trevor WoodSpecialties: Data Science, Analytics, Data Warehousing, Business Intelligence, Reporting, ETL Development, Database Development, IT Governance, IT Architecture, IT Systems Design, Service Oriented Architecture, Master Data Management, Data Governance, Agile Methodologies.http://www.cibcfcib.com/

Fintech Focus
A Conversation on Cybersecurity Insurance and Compliance

Fintech Focus

Play Episode Listen Later Jul 12, 2023 30:14 Transcription Available


Increasing cyber risks mean financial institutions must up their game to protect their data, reputation and bottom line. How are institutions that want to innovate doing so with a strategic risk-based approach? And how does technology fit into it? We invited two industry experts to share their perspectives as well as the most significant trends and challenges in Cybersecurity Insurance and IT Governance. All this and more in this insightful episode of Fintech Focus.

The FIT4PRIVACY Podcast - For those who care about privacy
Privacy in wake of emerging trends like AI & ChatGPT with Patrick Soenen and Punit Bhatia THE FIT4Privacy Podcast E89 S4

The FIT4PRIVACY Podcast - For those who care about privacy

Play Episode Listen Later Jun 21, 2023 37:49


Privacy challenges continue to emerge. If we thought GDPR implementation was complex, then we had AI and when we thought AI was challenging, now we have chat GPT. It continues to evolve. There is no end to it. Now, this is exactly what we are going to talk about with our guest Patrick Soenen today. In this episode, the host PunitBhatia holds a conversation with Patrick Soenen, a member of DPO Pro and certified auditor, about the emerging trends in privacy, specifically AI and chat GPT. Patrick explains how he got started in the privacy field 10 years ago when his customer asked him to help them improve their privacy. Patrick further explains his experience with DPO Pro and how he has been a trainer for IIA in Paris, discussing the GDPR in order to help organizations put in place the requirements to avoid sanctions. He then talks about big tech having all the data and how it is too late to protect it. However, he is optimistic and believes Europeans should invest more money in research and come up with alternative solutions that are compliant with the GDPR. Lastly, he talks about AI and chat GPT, explaining how it can be used for good, but also how it could lead to people abusing it if a framework is not created for its correct usage. A fascinating conversation between two privacy enthusiasts Patrick Soenen and Punit Bhatia. Take a listen to this open conversation. About Patrick Soenen Patrick is an expert in assessing, governing, and guiding organizational and technological transformation; experience in IT and project audit, implementation of IT and project governance, GDRP Assessment, and Info Security coaching. Outsourcing coaching and implementation. Extensive experience in ICT management, project management, IT audit, IT Governance, and Business Performance. IT audits are based on CobiT 5 and IT Service Management ITIL v3. IT Risk Management. Accredited training provider on COBIT 5. About Punit Bhatia Punit Bhatia is one of the leading privacy experts who works independently and has worked with professionals in over 30 countries. Punit works with business and privacy leaders to create an organizational culture with high privacy awareness and compliance as a business priority. Selectively, Punit is open to mentoring and coaching privacy professionals. Punit is the author of books “Be Ready for GDPR” which was rated as the best GDPR Book, “AI & Privacy – How to Find Balance”, “Intro To GDPR”, and “Be an Effective DPO”. Punit is a global speaker who has spoken at over 30 global events. Punit is the creator and host of the FIT4PRIVACY Podcast. This podcast has been featured among the top GDPR and privacy podcasts. As a person, Punit is an avid thinker and believes in thinking, believing, and acting in line with one's values to have joy in life. He has developed the philosophy named ‘ABC for the joy of life' which passionately shares. Punit is based out of Belgium, the heart of Europe. RESOURCES Websites: www.fit4privacy.com, www.punitbhatia.com, www.dpopro.be Podcast: https://www.fit4privacy.com/podcast   Blog: https://www.fit4privacy.com/blog   YouTube: http://youtube.com/fit4privacy --- Send in a voice message: https://podcasters.spotify.com/pod/show/fit4privacy/message

Security-Insider Podcast
#67 So managen Sie das unbekannte Risiko

Security-Insider Podcast

Play Episode Listen Later Feb 6, 2023 34:44


Security-Insider Podcast - Folge 67: So managen Sie das unbekannte RisikoTipps zum IT-RisikomanagementWelche Gefahren Unternehmen bewerten, begleiten und absichern sollen – genau das diskutieren wir im aktuellen Themenpodcast mit Bernhard Otter, einem ausgewiesenen Experten für IT-Risikomanagement, Informationssicherheit sowie IT-Governance- und Prozessmanagement. Hören Sie jetzt rein, um Ihr individuelles Risikoakzeptanzniveau herauszufinden. Weitere Anregungen für Checklisten und Praxisbeispiele wappnen Sie auch für unbekannte Bedrohungen.Weiterführende Informationen und Links zu dieser Episode gibt es im Artikel auf Security-Insider!Bosch CyberCompare macht Cybersecurity einfacher, verständlicher und bezahlbarer. Transparent und anbieterunabhängig unterstützen sie Sie dabei, die richtige Lösung für Ihren Bedarf zu finden. Erfahren Sie mehr auf cybercompare.com/security-insider und überzeugen Sie sich selbst!

Colorado = Security Podcast
243 - 1/16 - Happy New Years Newscast

Colorado = Security Podcast

Play Episode Listen Later Jan 15, 2023 35:22


2023 is already here? This seems impossible. News from Casa Bonita, CommonSpirit, Red Canary, LogRhythm and a lot more. Support us on Patreon! Fun swag available - all proceeds will directly support the Colorado = Security infrastructure. Come join us on the new Colorado = Security Slack channel to meet old and new friends. Sign up for our mailing list on the main site to receive weekly updates - https://www.colorado-security.com/. If you have any questions or comments, or any organizations or events we should highlight, contact Alex and Robb at info@colorado-security.com This week's news: Join the Colorado = Security Slack channel Netflix's “Inside Job” exposes naked truths of Blucifer and DIA conspiracy theories Casa Bonita to open in May What's in a domain name? Colorado may spend $2 million to switch to .gov. Colorado startups raised $5.7B in 2022. Here were the largest deals. There's a shortage of cybersecurity workers, and these girls aspire to fill the gap Colorado Releases Revised Privacy Rules CommonSpirit Health ransomware attack exposed data of 623,000 patients Google Workspace account takeover protection Capture the flag - February 21st - National Cybersecurity Center 2023 Cybersecurity Predictions - LogRhythm Job Openings: Colorado Secretary of State - Chief Information Security Officer Frontier Airlines - Sr Manager, IT Governance, Risk & Compliance Denver Health - IS Security Analyst III Ibotta - Senior Information Security Analyst DISH - GRC Information Security Business Partner Western Union - Group Leader, Cyber Security Engineering Degreed - Information Security Officer Spectrum - Director, Identity & Security Sierra Space - Cybersecurity Analyst III Upcoming Events: This Week and Next: CSA Colorado - January Meeting, Where are you today in the email maturity model curve? - 1/17 ISSA C.Springs - January Chapter Meeting - 1/17 ISACA Denver - January Meeting (Virtual) - 1/19 Let's Talk Software Security - AppSec Regulation, Frameworks, and Compliance - 1/20 ISSA C.Springs - January Mini Seminar - 1/21 ISC2 Pikes Peak - January Meeting - 1/25 Colorado Springs - Cybersecurity First Friday - 2/3 View our events page for a full list of upcoming events * Thanks to CJ Adams for our intro and exit! If you need any voiceover work, you can contact him here at carrrladams@gmail.com. Check out his other voice work here. * Intro and exit song: "The Language of Blame" by The Agrarians is licensed under CC BY 2.0

The Humans of DevOps Podcast Series
S4 Ep91: Navigating the Hot Labor Market from Both Sides, the Employers and Employees with Jeff Weber

The Humans of DevOps Podcast Series

Play Episode Listen Later Dec 7, 2022 32:03


In this episode, Eveline Oehrlich is joined by Jeff Weber to find out how to best navigate the recruiting world from both the employer and employee perspective. Jeff has over 30 years of experience in IT and business consulting and over 15 years with Protiviti. Jeff, currently the Executive Director at Robert Half, serves clients across industries and company sizes. His core skills are in the areas of IT Strategy, IT Governance, information security, Business Continuity and IT operational improvement. Special thanks to our sponsor Range! Enjoy the Humans of DevOps Podcast? We're incredibly grateful to be voted one of the Best 25 DevOps Podcasts by Feedspot. Want access to more DevOps-focused content and learning? When you join SKILup IT Learning you gain the tools, resources and knowledge to help your organization adapt and respond to the challenges of today.  Have questions, feedback or just want to chat about the podcast? Send us an email at podcast@devopsinstitute.com

Risk Management Show
Cyber Resilience with Fene Osakwe

Risk Management Show

Play Episode Listen Later Nov 21, 2022 10:14


In this episode you will hear Fene's insights on cyber resilience, how it differs from cyber security and how can organisations get more resilient against potential cyber attacks or other risks. Fene Osakwe is an award winning Technology professional, writer and author. His core competence is in Cyber security, IT Governance, IT Strategy, Risk Management, and Sarbanes–Oxley implementations. If you want to be our guest, or you know some one who would be a great guest on our show, just send your email to info@globalriskconsult.com with a subject line “Global Risk Community Show” and give a brief explanation of what topic you would like to to talk about and we will be in touch with you asap.

Risk Management Show
  Importance of End User Cybersecurity Awareness with Jacob Mathew

Risk Management Show

Play Episode Listen Later Nov 11, 2022 12:31


In this episode you will hear Jacob's insights importance of having a good understanding of cybersecurity as well as how to generate cybersecurity awareness for companies and private people alike. Jacob Mathew is the executive Head of IT at Government of Abu Dhabi Entity with more than 20 years of Middle East work experience in delivering innovative, high quality, and responsive technology-based solutions. He is an expert in IT Governance; Strategy, Centralising and management of IT function across multiple countries, Migration to Cloud technologies and cloud-based solutions and more. If you want to be our guest, or you know some one who would be a great guest on our show, just send your email to info@globalriskconsult.com with a subject line “Global Risk Community Show” and give a brief explanation of what topic you would like to to talk about and we will be in touch with you asap.

The Virtual CISO Moment
Throwback Thursday for November 10, 2022 - A Conversation with Anthony Scarola

The Virtual CISO Moment

Play Episode Listen Later Nov 10, 2022 22:55


From July 26, 2022 - Anthony Scarola is an IT Governance, Risk, and Compliance (GRC) expert; has many years in cybersecurity; is a U.S. Army veteran; holds the CISSP; and is a virtual CISO. And he's writing a security book! Listen to his wisdom as it pertains to risk management and learn one mistake many may make when discussing risk with the c suite and board of directors. --- Send in a voice message: https://anchor.fm/virtual-ciso-moment/message Support this podcast: https://anchor.fm/virtual-ciso-moment/support

The Boomer Briefing
E104 - Better Understanding IT Governance

The Boomer Briefing

Play Episode Listen Later Nov 1, 2022 15:51


Welcome to the Boomer Briefing Podcast, where we help you solve a critical business issue in 20 minutes or less.   This episode, host Jon Hubbard, Consultant/Shareholder at Boomer Consulting has a conversation with Marc Staut, Chief Innovation and Technology Officer at Boomer Consulting. They discuss IT and firm vision/strategy, IT steering committee, speaker of hard truths, elevating client experience, surveying clients, having a seat at the table, technology as a strategic asset, and how to reach out to Marc.   Jon on Social Media:  Twitter: @Jon_Hubbard  LinkedIn: @jonhubbard  Email: jon.hubbard@boomer.com  Marc on Social Media: Twitter: @CPATechGeek  LinkedIn: @mstaut  Look out for new episodes every Tuesday, involving The Boomer Advantage 5 Pillars of a Successful Firm: leadership, process, technology, talent, and growth. For more information about Boomer Consulting, visit boomer.com 

The Virtual CISO Moment
The Virtual CISO Moment S4E30 - A Conversation with Anthony Scarola

The Virtual CISO Moment

Play Episode Listen Later Jul 26, 2022 23:27


Anthony Scarola is an IT Governance, Risk, and Compliance (GRC) expert; has many years in cybersecurity; is a U.S. Army veteran; holds the CISSP; and is a virtual CISO. And he's writing a security book! Listen to his wisdom as it pertains to risk management and learn one mistake may make when discussing risk with the c suite and board of directors. --- This episode is sponsored by · Anchor: The easiest way to make a podcast. https://anchor.fm/app --- Send in a voice message: https://anchor.fm/virtual-ciso-moment/message Support this podcast: https://anchor.fm/virtual-ciso-moment/support

Interne Revision – souverän, kollegial und wirksam
Folge 213: Agilität für IT-Governance, Prüfung & Revision - Teil 2 (34:54 Min.)

Interne Revision – souverän, kollegial und wirksam

Play Episode Listen Later Apr 24, 2022 34:54


In diesem Interview stellen die beiden Autoren Herr Prof. Dr. Urs Andelfinger und Frau Dr. Petra Haferkorn ihr neues Buch "Agilität für IT-Governance, Prüfung & Revision" vor. Wir sprechen u.a. über - die Kernthesen des Buches - klassische und agile Ansätze der IT-Governance - das Spannungsfeld Kontrollorientierung vs. Möglichkeitsorientierung - nützliche Prüfungstechniken - Indikatoren für agiles Theater - die Prüfung agiler Projekte und skalierter agiler Projektorganisationen Ich wünsche Ihnen viel Spaß beim Zuhören und erfolgreiche Prüfungsprozesse!

Interne Revision – souverän, kollegial und wirksam
Folge 212: Agilität für IT-Governance, Prüfung & Revision - Teil 1 (53:15 Min.)

Interne Revision – souverän, kollegial und wirksam

Play Episode Listen Later Apr 24, 2022 53:15


In diesem Interview stellen die beiden Autoren Herr Prof. Dr. Urs Andelfinger und Frau Dr. Petra Haferkorn ihr neues Buch "Agilität für IT-Governance, Prüfung & Revision" vor. Wir sprechen u.a. über - die Kernthesen des Buches - klassische und agile Ansätze der IT-Governance - das Spannungsfeld Kontrollorientierung vs. Möglichkeitsorientierung - nützliche Prüfungstechniken - Indikatoren für agiles Theater - die Prüfung agiler Projekte und skalierter agiler Projektorganisationen Ich wünsche Ihnen viel Spaß beim Zuhören und erfolgreiche Prüfungsprozesse!

Speaking From Our Hearts
My Passionate Love Affair With Music! - Sarthak Patnaik

Speaking From Our Hearts

Play Episode Listen Later Apr 5, 2022 30:25


Paul is joined by Sarthak Patnaik, CEO of Creative Xchange to talk about music and how it has shaped his life, how he got into the music industry and why he wants to help artists. KEY TAKEAWAYS I'm a computer science engineer. I learned computer science by using it as a tool to solve a problem. Music happens to be one industry where this can happen. There was a big problem in the music industry is that there's not a fair chance to make a living as an artist, despite being trained in the profession, unlike a plumber. I use my tools to solve this. Sound and smell are two powerful reminders of times we've gone through, I clearly associate times of my life with songs, for example, Lady Antebellum when I was in New York and those things are associated with Lady Antebellum. All the emotions of working during the great recession, the sadness and joy are associated with that. What we see in the world right now, with digital tools, there's nothing like that for musicians and that's what we're trying to solve, how you fundamentally address the problem of making a living as a musician and sell what you create If you stay away from the problem, you stay shielded from the problem and you're shielded from what the problem is. There shouldn't be a ‘top' and ‘bottom' of talent, everyone should be able to exist in the middle ground, it's a lovely place to be for people to share and evolve creatively. BEST MOMENTS ‘I started listening to country music for the sheer pleasure of the lyrics, this brought me to ballads, then rock and metal and now I listen to everything. Music is still evolving.' ‘Bob Dylan is a favourite of mine, Blood On The Tracks is a heartbreak album and my favourite.' ‘Anyone can sing.' ‘We relentlessly try to create opportunities for musicians.' VALUABLE RESOURCES Paul's Story: Emerging From The Forest (UK): https://www.amazon.co.uk/Emerging-Forest-Pain-Purpose-Mastering/dp/1719373272 Paul's Story: Emerging From The Forest (USA): https://www.amazon.com/Emerging-Forest-Pain-Purpose-Mastering/dp/1719373272 Mastering The Game Of Life Book (UK): https://www.amazon.co.uk/Mastering-Game-Life-Paul-Lowe/dp/1782227679 Mastering The Game Of Life Book (USA): https://www.amazon.com/Mastering-Game-Life-Paul-Lowe/dp/1782227679 Speaking From Our Hearts Books: Volumes 1-3 (Available on Amazon) World Game-Changers Group ABOUT THE GUEST Sarthak Patnaik is reinventing music industry by automating booking & promotion and bringing real ROI for events by booking bands and musicians. Background in strategic Business oriented IT in the areas of IT Strategy, IT Transformation, IT Governance and IT Portfolio Management. Sarthak is an MBA from a top European University and uses a structured analytical collaborative approach to problem solving. Worked with Fortune 500 companies like Morgan Stanley, Citigroup, Wells Fargo, PwC, Nokia, Wachovia Bank, CapitalOne on IT transformation and post merger integration projects. Specialties: IT Strategy, Post Merger Integration, Governance, Portfolio Management, Transformation, Budget & Financials, Quality Management, Project Management. Worked with multiple vendors like Fiserv(Payment Solutions), Metavante(Payment Solutions), Unica (Marketing Campaign), Autonomy (Search) and outsourcing vendors like TCS, Infosys, Wipro. Industry Knowledge: Banking, Banking and Financial regulations, Investment Vehicles like Commodities, FOREX, Securities, ETF's and trading methodologies like Technical and Fundamental analysis. Written 2 books for books24x7.com Website:https://www.creativexchange.io/ ABOUT THE HOST Paul has made a remarkable transformation from existing for many years in dark, desperate despair; to now living a really healthy, happy and fulfilling life. From an early age, he was in the vice-like clutches of the demon drink and constantly embroiled within a dark cocktail of toxic beliefs, self-hate and destructive violence. Along with his empathetic and dedicated team of world-class coaches and mentors, Paul's purpose is deeply transformational: Creating New Life Stories… He is extremely passionate about helping others to find their purpose, have a voice and ultimately, make a real difference.   This has been built on a long and distinguished history of heart-centred coaching and mentoring.  He has also been responsible for raising significant amounts of funds for many charities and good causes around the world; positively impacting and inspiring thousands of children – mainly from challenging backgrounds – within the UK & worldwide. Through this World Game-Changers podcast and books, he has been involved in – including being a best-selling co-author – Paul also helps others to get their own inspirational messages and stories out into the world; as well as offering support to many charitable organisations, in their development & fund-raising. CONTACT METHODS Tel: +44 (0) 7958 042 155 E-mail: Paul@Paul-Lowe.com Web: https://www.Paul-Lowe.com Web: https://www.worldgamechangers.org/ Facebook: https://www.facebook.com/IamPaulLowe/ LinkedIn: https://www.linkedin.com/in/paul-d-lowe-7a78332a/ See omnystudio.com/listener for privacy information.

#Meglerperspektiv
#Meglerperspektiv | Cybersikkerhet er mer enn en IT greie

#Meglerperspektiv

Play Episode Listen Later Mar 11, 2022 28:33


#Meglerperspektiv | Cybersikkerhet er mer enn en IT greie I denne episoden snakker Bendik Mjaaland fra Transcendent Group og Frederik Fossum fra Aon om hvordan Cyber sikkerhet påvirker de norske bedriftene, samt mulige løsninger. Vi er innom følgende temaer: - cybersikkerhet er mer enn en IT-greie - strategisk fokus på cybersikkerhet - hvordan kommunisere risiko til ledelsen - kvalitativ eller kvantitativ risikostyring? - Fra nerd til CISO - Hvordan og hvor mye investeres Gjester: Bendik Mjaaland - Head of IT Governance and Security - Transcendent Group Frederik Fossum - Risk Consultatnt -Aon Norway Host: Linn Jeanette Johansen - Sales & Market Leader - Aon Norway Per-Øivind Andreassen - Commercial Director - Aon Norway

CIORadio
Folge 34: Die Zukunft der IT-Governance

CIORadio

Play Episode Listen Later Mar 11, 2022


Folge 34: Die Zukunft der IT-Governance

Privacy League Danmark
DPO-rollen: Hvordan bliver den en succes?

Privacy League Danmark

Play Episode Listen Later Mar 11, 2022 54:13


Denne gang dykker vi ned i rollen som DPO sammen med Michael Nielsen fra DPO Danmark. Michael har lang erfaring med IT Governance, informationssikkerhed og it-ledelse. Compliance, rådgivning og modning. Han har fungeret som ekstern DPO for en lang række af virksomheder.Vi kommer til at tale om:1. Hvornår man skal have en DPO, og hvornår det måske bare er en god ide2. Skal det være en intern eller en ekstern ressource?3. DPO'en opgaver4. Samspillet mellem DPO'en og det øvrige GDPR team5. DPO'ens forhold til ledelsen, og hvordan man i praksis håndterer den balance6. Hvordan man bliver en succes i rollen som DPOMichael Nielsen er partner og DPO i DPO Danmark. Han har lang erfaring med IT ledelse, IT-sikkerhed, IT-Governance, og er uddannet (DPO).Michael har hjulpet mange virksomheder med at gennemføre processen – at overholde EU dataforordningen, med fokusset ”at gøre det indviklede nemt” for virksomhederne. Derudover fungerer han som DPO for flere organisationer, små som store.Privacy League Danmark er en podcast fra Wired Relations om GDPR og informationssikkerhed. Se mere om Wired Relations på www.wiredrelations.com

I lavori di domani
Francesco Amendola, la formazione Chief Information Officer

I lavori di domani

Play Episode Listen Later Jan 30, 2022


Francesco Amendola, laureato con lode in Ingegneria Elettronica, ha conseguito un Master in Ingegneria ed Economia dell'Ambiente e Territorio, ed un Executive MBA. Appassionato di informatica e tecnologia, lavora da oltre 20 anni in ambito IT (Information Technology), dove ha ricoperto incarichi manageriali in contesti pubblici e privati, con una forte esposizione internazionale. Esperto di IT Governance, di strategie Data-Driven e di Open Innovation, è specializzato nella realizzazione di soluzioni tecnologiche evolute e nella reingegnerizzazione ed ottimizzazione dei processi in ottica di Trasformazione Digitale, con l'obiettivo di generare valore per il business. Docente e relatore in convegni e seminari, Guest Speaker in corsi universitari e post-universitari, è Program Director del Master in Data Science presso la Rome Business School. Attualmente lavora come Direttore del Dipartimento ICT nella più grande azienda di trasporto pubblico locale in Italia, e una delle più grandi in Europa. È stato CIO (Chief Information Officer, IT Operations Manager) per quasi 10 anni presso uno dei maggiori fornitori di servizi tecnologici specializzato in soluzioni per il mercato globale dei giochi. La sua esperienza più rilevante è nell'IT Service Management e nell'IT Governance, in cui è anche certificato da ITILv3 Foundation e Green Belt Six Sigma. Siti app e link utili careers glassdoor indeed romebusinessschool La formazione del Chief Information Officer Il CIO, o Direttore dei Sistemi Informativi, è la figura responsabile della gestione e dello sviluppo dei sistemi tecnologici ed informatici di un'azienda. Tra le principali responsabilità rientrano quelle di: governance, definizione ed attuazione della strategia in ambito IT (Information Technology), allineata alla vision dell'azienda ed alla strategia di business; esercizio, sviluppo ed evoluzione dei sistemi informativi e delle reti di comunicazione; gestione dei progetti di innovazione, sviluppo tecnologico e trasformazione digitale aziendale. Il tutto coordinando, ispirando e motivando le risorse che operano all'interno della struttura IT, tipicamente analisti e sviluppatori software, o esperti di infrastrutture, reti ed applicativi informatici a cui, per adeguarsi alle evoluzioni tecnologiche e di business, si stanno aggiungendo nuove figure professionali, quali quelle del cloud specialist o del data scientist.

Colorado = Security Podcast
231 - 1/10 - Happy New Year!

Colorado = Security Podcast

Play Episode Listen Later Jan 9, 2022 30:17


Happy new year to you all from your favorite podcast hosts. News from MoonBike, Delta-Montrose Electric Association, CyberUp, Lares, Red Canary, Coalfire, Swimlane and a lot more. Support us on Patreon! Fun swag available - all proceeds will directly support the Colorado = Security infrastructure. Come join us on the new Colorado = Security Slack channel to meet old and new friends. Sign up for our mailing list on the main site to receive weekly updates - https://www.colorado-security.com/. If you have any questions or comments, or any organizations or events we should highlight, contact Alex and Robb at info@colorado-security.com This week's news: Join the Colorado = Security Slack channel Colorado pay equity law is 1 year old. Here's how many complaints it's produced. French 'snowbike' startup opens Boulder HQ to expand US access Colorado ranked top state for women-led startups for the second consecutive year Colorado energy company loses 25 years of data after cyberattack while still rebuilding network | ZDNet Nonprofit that provides cybersecurity apprenticeships expands to Denver area The Top 3 Security Program Tasks to Tackle in the New Year Trust Issues: Proactive transparency drives good business The Secure Development Lifecycle Introducing Atomic Operator: a cross-platform Atomic Red Team execution framework Kubernetes Hunting & Visibility Job Openings: Red Canary - Business Solutions Analyst State of Colorado - CISO Bonusly - IT Security Engineer City of Colorado Springs - Cyber Security Analyst II Yugabyte - Senior Security Program Manager DISH - Wireless CI/CD Engineer The Trade Desk - Information Security Analyst Prologis - Senior Analyst, IT Governance, Risk, and Compliance (GRC) Woodward - Manager - Information Security & Compliance DenverWater - IT Security Architecture and Operations Manager Upcoming Events: This Week and Next: ISSA C.Springs - Open House at Whirlyball - 1/11 Denver ISSA - January Chapter Meeting: Annual CISO Panel - 1/12 ASIS Denver - Coffee Chat with Kami Dukes - 1/13 Denver ISACA - January Meeting: The Intersection of Cyber Insurance, Breaches, and the Colorado Privacy Act - 1/13 ISSA C.Springs - January Meeting - 1/18 CSA Colorado - January Meeting In Person - 1/18 Let's Talk Software Security! - Software Security Program Strategy - 1/21 ISSA C.Springs - January Mini Seminar - 1/22 View our events page for a full list of upcoming events * Thanks to CJ Adams for our intro and exit! If you need any voiceover work, you can contact him here at carrrladams@gmail.com. Check out his other voice work here. * Intro and exit song: "The Language of Blame" by The Agrarians is licensed under CC BY 2.0

Global 500 CEOs and Board of Directors Corporate Governance by GBAC CEO Yusuf Azizullah
Taxes, Artificial Intelligence Loop holes -Fortune CEOs telling me

Global 500 CEOs and Board of Directors Corporate Governance by GBAC CEO Yusuf Azizullah

Play Episode Listen Later Oct 21, 2021 3:16


Taxes G20 countries, close tax Loopholes next month, Artificial intelligence has Opportunities. Taxes will be harmonized across the planet next month 15% in Rome at the G 20 meeting what should the board Chairman do?  Unfortunately,  CEOs & Chairs telling me Q4 levels International Markets, Supply Chain. CEOs and Board Chairs worried about Q4 growth & levels nowhere near Pre Covid

The AXELOS Best Practice Podcast
Who watches the watchmen?

The AXELOS Best Practice Podcast

Play Episode Listen Later Oct 6, 2021 57:05


In this episode, AXELOS' Akshay Anand is reinterpreting the Latin watchmen quote “Quis custodiet ipsos custodes?” and asks, who manages the managers? In modern business this is the field of governance, which to many practitioners is a necessary organizational component, while to others is the cause of numerous and often infuriating blockers. Akshay explores these contradictions and attempts to reconcile them with the help of Mark Thomas (President, Escoute Consulting) and Shane Carlson (Director of Enterprise Architecture, ServiceNow).Mark Thomas: Twitter @escoute1Shane Carlson: Twitter @ITSMPunditVisit www.AXELOS.com to find out more about our best practice guidance.Follow us on Social Media:LinkedIn: [www.linkedin.com/company/4999764]Facebook: [www.facebook.com/AXELOSGBP]Twitter: [www.twitter.com/axelos_gbp]YouTube: [www.youtube.com/user/AXELOSBestPractice]

CIORadio
CR034 Die Zukunft der IT-Governance

CIORadio

Play Episode Listen Later Aug 29, 2021 17:26


IT-Governance ist in unseren Unternehmen seit vielen Jahren gelebte Praxis. Aber Themen, wie die Divisionalisierung von Unternehmen oder die zunehmende Bedeutung der Cyber Security führen dazu, dass die damit verbundenen Strukturen, Prozesse und Führungsmodelle nicht mehr funktionieren. Robert Bornträger hat sich als CIO, IT-Vorstand und Berater intensiv mit dem Thema auseinandergesetzt und viele Governance Modelle erfolgreich implementiert. Er weiß, was Unternehmen tun müssen, um ihre IT-Governance an die aktuellen Marktentwicklungen anzupassen.

CIORadio
CR034 Die Zukunft der IT-Governance

CIORadio

Play Episode Listen Later Jul 25, 2021


CR034 Die Zukunft der IT-Governance

Cracking Cyber Security Podcast from TEISS
teissTalk: Does Cyber Insurance Incentivise Ransomware?

Cracking Cyber Security Podcast from TEISS

Play Episode Listen Later Jul 14, 2021 50:09


Introducing the audio edition of our teissTalk series. Each week we dive into the latest cybersecurity news with our expert panel and then a deep dive into an issue that is vital to the cybersecurity industry. On this episode: Will making ransomware payments “unclaimable” change how organisations respond?Are your cyber exclusion clauses fit for purpose, especially in an age of supply chain attacks?Quantifying and communicating your cyber risk from remote and hybrid workingHost: Jenny RadcliffeJenny Radcliffe, also known as “The People Hacker,” is a world renowned Social Engineer, hired to bypass security systems through a no-tech mixture of psychology, con-artistry, cunning and guile. Guests: Troels Oerting, Chairman, NED, award-winning CSOThroughout career, Troels has been working with governments and corporations to advise on how they react to the increasing international cyber threats, and worked closely with law enforcement, intelligence services and cyber security businesses.Ian Hill, Global Director of Cybersecurity, Royal BAM GroupAn Information & Cyber Security Professional with over 25 years' experience. Ian is also an accomplished technical writer, published author, lecturer & international conference speaker in Information & Cyber Security.Riyad Jazmawi, Head of Information Security and IT Governance, INVESTBANKRiyad is highly skilled information security and cybersecurity professional with remarkable experience in the banking sector.Mike Campfield, VP, GM International Operations and Global Security Programs, ExtraHopMIke has spent the last two decades in Security and Compliance advising public and private sector organizations on their information governance and cyber security operations while at companies such as FireEye, Documentum, and EMC. Attend a live teissTalk, for free, by visiting https://www.teiss.co.uk/talk/

Reboot IT - 501(c) Technology
Getting Worked Up About IT Governance

Reboot IT - 501(c) Technology

Play Episode Listen Later May 11, 2021 15:42


He's all worked up again, this time about IT governance! Join Dave for a solo podcast on this important topic.

Tech Lead Journal
#32 - CIO Leadership Lessons from Singapore's First CIO - Alex Siow

Tech Lead Journal

Play Episode Listen Later Mar 29, 2021 53:43


“The CIO is a person who uses IT to facilitate and enable a company so that it becomes more competitive, and it becomes more profitable." Alex Siow is currently a Professor in the School of Computing at the National University of Singapore (NUS) and Director of NUS’s Advanced Computing for Executives. With a career that spans over four decades, Alex Siow is well-known as Singapore’s first CIO in the 1990s. He recently published a book, “Leading with IT: Lessons from Singapore’s First CIO”, which is written for the next generation of CIOs, CTOs, and other executives who work closely with technology that offers practical tips, case studies, and personal insights that shed light on the central competencies required of CIOs. In this episode, Alex shared with me his insights on the important role of a CIO, the traits of a good CIO, and how a CIO manages priority, risk and governance. Alex also shared with me his inspiring leadership philosophy and the true essence of servant leadership. Towards the end, Alex shared his views on the future of technology and remote working. Listen out for: Career Journey - [00:04:52] “Leading with IT“ Book - [00:09:43] Role of CIO - [00:12:57] CIO and Other Title Variants - [00:14:46] CIO’s Job of Supporting the Business - [00:16:50] Good CIO Traits - [00:18:41] Aligning Business Vision, Mission, and Values - [00:21:48] Keeping Up With Technologies and Talents - [00:24:49] CIO Time Organization - [00:28:47] On Prioritization - [00:32:13] Managing Governance - [00:33:51] Outsourcing - [00:36:35] On Grooming Technical Leadership - [00:39:49] Leadership Philosophy - [00:42:24] Servant Leadership - [00:44:07] Future of Technology - [00:45:04] Remote Work - [00:48:44] 3 Tech Lead Wisdom - [00:50:31] _____ Alex Siow’s Bio Prof Alex Siow is currently Professor (Practice) in the School of Computing, NUS and concurrently Director of the Advanced Computing for Executives Centre, the Strategic Technology Management Institute (STMI) and the Centre for Health Informatics. Prof Alex’s expertise is in IT Governance, Project and Portfolio Management, Enterprise Risk Management, Management of Emerging Technology, Technology Roadmap Planning and Cloud Security. Alex recently published a best-selling book, “Leading with IT: Lessons from Singapore’s First CIO”, which was released in January 2021 by John Wiley and Sons. Follow Alex: LinkedIn – https://www.linkedin.com/in/alex-siow-5213b4/ Our Sponsor Are you looking for a new cool swag? Tech Lead Journal now offers you some swags that you can purchase online. These swags are printed on-demand based on your preference, and will be delivered safely to you all over the world where shipping is available. Check out all the cool swags by visiting https://techleadjournal.dev/shop. Like this episode? Subscribe on your favorite podcast app and submit your feedback. Follow @techleadjournal on LinkedIn, Twitter, and Instagram. Pledge your support by becoming a patron. For more info about the episode (including quotes and transcript), visit techleadjournal.dev/episodes/32.

Albuquerque Business Podcast
The #1 Threat to Your Business: CyberSecurity

Albuquerque Business Podcast

Play Episode Listen Later Mar 25, 2021 58:43


Another round of cyber security for this new world we are living in. Business owners - how do you pay for this much needed service? What about budgets? Why is it the last thing you think of until there is an attack? If a company would take a cost effective, proactive approach to cyber security, it could save you from a lot of time and money being wasted. As CRI’s Director of CyberAdvantage Services, Leo Cuellar, provides cybersecurity services from Assessment to Training, Managed Services to Consulting. We are familiar with government- and industry-related cybersecurity controls and associated services. Leo is an experienced Information Security professional focused in IT Security Operations, IT Governance, Secure Development, Compliance, Risk and Privacy.  His experience blends a diverse mix of small and Fortune 100 companies and a real-world understanding of the challenges and opportunities of ISO 27001, PCI, SOC1/2, HIPAA, NIST, and International regulatory requirements.

This Week in Health IT
The CIO Role Building on Operational Excellence

This Week in Health IT

Play Episode Listen Later Mar 24, 2021 47:34


March 24, 2021: How do you attract major IT talent to paradise? AKA Florida? How does someone from a military background quickly scale the CIO world and also wear the hat of pseudo COO? William Walders, CIO and SVP of Operations Support at Health First gives us insights into his operations and IT roadmap including ITSM, Data Analytics, Security, IT Governance, IT Automation and App Rat. How do you measure productivity? Are your staff evolving? Do you think about succession planning? What is Digital Enablement? How do we get things into IT? How is that governed? How do we report out? Have you adjusted your hiring practices post COVID? How do you approach interoperability? And for people early on in their career, what would you tell them prepares them to be a CIO?Key Points:Some CIOs are going in a digital direction. Some are going in an operational direction. Both make sense. [00:13:00] In health systems worth 8 to 10 billion, CIOs can do a lot more than just their traditional role [00:15:40] I used to hire military people and the reason is because they're so well-prepared and so well-trained [00:26:59] We’re looking for things that stitch IT together. Digital enablement. [00:37:18] What is a health village? [00:38:15] For tonsil removal in my zip code the prices range from $259 to $49,660! [00:44:00] Shhhhh don't tell anyone, unless they want to come work here and change the world of healthcare - William Walders LinkedIn post Health First 

InfoSec Weekly Podcast
The First Steps Towards GDPR Compliance

InfoSec Weekly Podcast

Play Episode Listen Later Mar 16, 2021 64:24


Alan Calder, Founder and CEO of IT Governance discusses the first steps towards GDPR compliance in this webinar recording.

CIORadio
CR026 Adaptive Governance

CIORadio

Play Episode Listen Later Feb 26, 2021 22:52


Die Ausprägung einer IT-Governance muss dynamisch den Veränderungen der Unternehmensrealität folgen. Im Gespräch mit Olaf Röper detailliert Christopher Rentrop sein Konzept der adaptiven Governance und erläutert, warum gerade heute ein Umdenken erforderlich ist und welche die wesentlichen Komponenten und Objekte einer erfolgreichen IT Governance sind. Es geht des Weiteren um die typischen Symptome einer defizitären Governance und der Notwendigkeit, ein organisationsübergreifendes Wertesystem zu schaffen. Wie finden Unternehmen die „richtige“ Ausprägung?

CISO Tradecraft
CISO Tradecraft: IT Governance

CISO Tradecraft

Play Episode Listen Later Feb 5, 2021 46:08


As a CISO, one of the key functions you will be responsible for is IT Governance.  On this episode we discuss what the intent is for a wide variety of cybersecurity documentation that you can leverage, influence, and enforce. Examples include:PoliciesControl ObjectivesStandardsGuidelinesControlsProcedures...Helpful visual from ComplianceForge which shows how various documentation standards can be integrated Link

Albuquerque Business Podcast
Cyber Security Threats for Your Business in 2021

Albuquerque Business Podcast

Play Episode Listen Later Jan 28, 2021 51:15


As CRI’s Director of CyberAdvantage Services, Leo Cuellar, provides  cybersecurity services from Assessment to Training, Managed Services to Consulting. We are familiar with government- and industry-related cybersecurity controls and associated services. Leo is an experienced Information Security professional focused in IT Security Operations, IT Governance, Secure Development, Compliance, Risk and Privacy.  His experience blends a diverse mix of small and Fortune 100 companies and a real-world understanding of the challenges and opportunities of ISO 27001, PCI, SOC1/2, HIPAA, NIST, and International regulatory requirements.

The FIT4PRIVACY Podcast - For those who care about privacy
018 Georges Ataya on DPO role (Trailer)

The FIT4PRIVACY Podcast - For those who care about privacy

Play Episode Listen Later Nov 25, 2020 8:37


In full episode, Georges and Punit talk about privacy challenges for organizations, DPOs and small businesses. Georges shares that DPO is a catalyst, should not decide and needs to take a wholistic perspective but need not learn technology. Georges Ataya is Academic Director of IT Management Education at Solvay Brussels School of Economics and management. He is professor at the Master in Management delivering Enterprise Consulting workshop since 2006 and in charge of IT Governance from 2011. He is past International Vice President of ISACA from 2006 to 2010, past Chair of the External Relations Committee and co-founder of the Value Governance framework and the VALIT publications, directing the International Web project oversight, revamping COBIT and initiating the activities since 2002 of the IT Governance Institute. Georges acted as President of the Belux/Belgium Chapter and served in the Benelux Chapter since 1986. He is a judiciary expert since 1992. Listen to this conversation and share your comments on what you think. You can subscribe to FIT4PRIVACY podcast so that you are notified about new episodes. --- Send in a voice message: https://anchor.fm/fit4privacy/message

Einsen & Nullen
Workplace Management - Einrichten im neuen Zuhause

Einsen & Nullen

Play Episode Listen Later Nov 24, 2020 15:55


Nach einem Umzug ist das neue Zuhause oftmals noch nicht optimal eingerichtet. Die Geschirrspülmaschine fehlt, die Lampe ist noch nicht montiert. Ähnlich verhält es sich auch beim Umzug zum hybriden intelligenten Arbeitsplatz. Automatismen müssen eingerichtet werden, Einstellungen an das Nutzerverhalten angepasst werden, usw. Die IT-Governance muss sicherstellen, dass sicher und effizient gearbeitet werden kann. Welche weiteren Punkte beachtet werden müssen und welche Rolle Change Management in diesem Zusammenhang spielt, erklären wieder Ragnar Heil und Bert Skorupski von Quest.

Das ist alles nur gecloud
Folge 08b - Experttalk Recap - CISO vs Cloud

Das ist alles nur gecloud

Play Episode Listen Later Nov 24, 2020 44:11


Unsere Nachbesprechung des Experttalks anlässlich des Controlware vSecurity Days. Da wir in nur 30 min natürlich nicht genug ansprechen konnten, nehmen wir uns in diesem Podcast nochmal ausführlich Zeit, das Thema aus unserer Sicht zu beleuchten

The FIT4PRIVACY Podcast - For those who care about privacy

In this episode of The FIT4PRIVACY episode, Punit Bhatia has a conversation with Georges Ataya. Georges and Punit talk about privacy challenges for organizations, DPOs and small businesses. Georges shares that DPO is a catalyst, should not decide and needs to take a wholistic perspective but need not learn technology. Georges Ataya is Academic Director of IT Management Education at Solvay Brussels School of Economics and management. He is professor at the Master in Management delivering Enterprise Consulting workshop since 2006 and in charge of IT Governance from 2011. He is past International Vice President of ISACA from 2006 to 2010, past Chair of the External Relations Committee and co-founder of the Value Governance framework and the VALIT publications, directing the International Web project oversight, revamping COBIT and initiating the activities since 2002 of the IT Governance Institute. Georges acted as President of the Belux/Belgium Chapter and served in the Benelux Chapter since 1986. He is a judiciary expert since 1992. Listen to this conversation and share your comments on what you think. You can subscribe to FIT4PRIVACY podcast so that you are notified about new episodes. --- Send in a voice message: https://anchor.fm/fit4privacy/message

Chwila Dla Admina
[018] Zespoły wsparcia/ helpdesk/ servicedesk - Robert Gontkiewicz

Chwila Dla Admina

Play Episode Listen Later Oct 7, 2020 59:49


Robert Gontkiewicz: Prezes Zarządu firmy Optimatis, którą zakładał 5 lat temu. Wcześniej przez kilkanaście lat związany z firmą CTPartners gdzie przechodził wszystkie ścieżki kariery od konsultanta przez kieownika, dyrektora operacyjnego aż po prezesa firmy. Wieloletni partner i coach managerów IT oraz pasjonat nowoczesnych rozwiązań w obszarze zarządzania. Umiejętnie łączy dwa odrębne światy: biznes i skomplikowane procesy informatyczne, tak aby sprostać oczekiwaniom dynamicznie zmieniających się realiów biznesowych. Od prawie 20 lat doradca biznesowy zarządów oraz kadry kierowniczej polskich i zagranicznych firm. Lider zespołów odpowiedzialnych za doradztwo strategiczne, optymalizację procesów i implementację efektywnych rozwiązań informatycznych, wspierających funkcjonowanie kluczowych pionów organizacyjnych w firmie. Z sukcesem wdraża i zarządza złożonymi projektami związanymi z transformacją IT, rozwiązaniami wspierającymi budowanie wartości firm, optymalizacją procesów, zarządzaniem usługami. Doradza i szkoli w zakresie podnoszenia efektywności działów biznesowych, strategicznych i wsparciowych. W trakcie wieloletniej kariery zawodowej zrealizował ponad 60 projektów z obszaru optymalizacji procesów informatycznych w tym, zarządzania usługami IT, bezpieczeństwa IT oraz IT Governance. Członek Zarządu w IT Service Management Forum Polska (itSMF Polska). Ponadto, członek międzynarodowych stowarzyszeń ISACA oraz Help Desk Institute Central Europe Poland (HDI CE Poland). W latach 2010-2014 Członek Rady Programowej Forum Wsparcia IT oraz współtwórca i członek Jury Konkursu Lider Wsparcia IT. Prywatnie - Starożytny Egipt, świat fantasy, animowane bajki i dobry stary NeedForSpeed

RadioAchab: l’IT per te.
Il metodo Manakel

RadioAchab: l’IT per te.

Play Episode Listen Later Oct 2, 2020 42:59


Marco Castellano faceva il responsabile IT in una media azienda quando ha avuto modo di conseguire un Master universitario in IT Governance and Compliance. Dall’unione di esperienza sul campo e formazione accademica è nata l’idea di un approccio che consentisse di lavorare in modo strutturato e professionale senza introdurre complessità non sostenibili da una piccola realtà. Nell’idea di Marco, l’IT dei piccoli sarebbe dovuta essere gestita come quella dei grandi. E così è nato il metodo Manakel, creato per gestire IT delle PMI.  

SALESCAST
O papel da governança de dados em Salesforce.

SALESCAST

Play Episode Listen Later Sep 8, 2020 30:55


Qual é o papel da Governança em Salesforce? Confira esta super entrevista com o Marcos Valeriano que é Coordenador de TI na SulAmérica Seguros, falando sobre Governança de TI com Salesforce e o quão fundamental é ter este processo existente nas organizações! #salesforce #governança #entrevista ___ EN: Please, turn on both the automatic subtitles and translation provided by YouTube! What is the role of Governance in Salesforce? Check out this super interview with Marcos Valeriano who is IT Coordinator at SulAmérica Seguros, talking about IT Governance with Salesforce and how fundamental this process is in the companies! ___ AntiMedo Autor: Pablo Marçal Começe pelo Porquê: Autor: Simon Sinek O Homem Mais Rico da Babilônia Autor: George Samuel A Bíblia Sagrada Decifre e Influencie Pessoas Autores: Paulo Vieira e Deibson Silva Entrevista Carlos Siqueira - Tudo sobre DevOps https://youtu.be/E0wxcfi8J9U Entrevista Rodolfo Noviski - Boas Práticas de Integração https://youtu.be/Rw12Usl4R6M Entrevista Alessandra Teixeira - O papel da Gestão de Mudança nos projetos Salesforce https://youtu.be/hKzj4kURJ1w Entrevista Marcela Pessutto - O papel do administrador Salesforce https://youtu.be/tpsOR5FjiOA ___ Gostou do vídeo? Se inscreva, curta e compartilhe nossas redes sociais para não perder todas as novidades! Canal Salesforce Brasil: https://campsite.bio/canalsalesforcebrasil SalesCast Podcast: https://campsite.bio/salescast --- Send in a voice message: https://anchor.fm/podcastsalescast/message

CXO Underground with Joe Topinka & Mike Charobee
Episode 14 with James Kidwell Director of IT Governance at Novolex

CXO Underground with Joe Topinka & Mike Charobee

Play Episode Listen Later Aug 11, 2020 64:31


CXO Underground Podcast with Joe Topinka and Mike Charobee Episode 14 with James Kidwell - Director of IT Governance at Novolex Website: https://www.cxounderground.com/ Joe Topinka: https://www.linkedin.com/in/joetopinka/ Mike Charobee: https://www.linkedin.com/in/mikecharobee/ Jame Kidwell: https://www.linkedin.com/in/james-kidwell-j-d-cisa-a8a0832/

LEAD Podcast
Our Job To Be Done: LinkedIn - Vom Powernutzer zum Social Exit - mit Philipp Schneidenbach

LEAD Podcast

Play Episode Listen Later Jun 16, 2020 55:56


Philipp Schneidenbach, Principal bei Ventum Consulting, war LinkedIn-Powernutzer. Dann entschied er sich zu radikalen Ausstieg. Warum er schlagartig seinen Account gelöscht hat, erzählt er im Podcast. Schluss. Aus. Vorbei. Es gibt Momente im Leben, da ist alles zu viel. Nichts passt mehr. Einfach weg. Ein solcher Moment war im Frühjahr 2020. Philipp Schneidenbach war einer der sichtbarsten und engagiertesten Nutzer des Berufnetzwerkes LinkedIn. Mit großer Leidenschaft optimierte er fortlaufend seine Posts, um den Nutzern noch besser die Erkenntnisse seiner Forschungen zu vermitteln. Schneidenbachens egagierte Videos wurden so intensiv diskutiert, dass jeder LinkedIn-Nutzer Philipps Videos automatisch in den Newsfeed gespielt bekam. Ein Powernutzer. Er generierte damit eine Vielzahl an Keynotes. Alles schien perfekt. Doch dann stieg Philipp aus. Warf alles hin. Account gelöscht. Was bewegte ihn dazu? Auf den ersten Blick war das für viele unerklärlich. Philipp Schneidenbach arbeitet als Principal bei Ventum Consulting in München. Seine Spezialgebiete sind IT Governance, Compliance, Enterprise Architecture und IT Service Management. Zuvor war Philipp Schneidenbach als Chief Technology Officer bei der 3wGroup in München für Großprojekte im Bereich Enterprise Integration Management verantwortlich, wo er Konzernarchitekturentwicklung, strategisches Change Management und Konzepte der Dienstleistungserbringung betreute. Dieser Podcast behandelt folgende Fragen: - Was bewegt einen Nutzer einer Social Plattform zum Powernutzer zu werden? Wie ging es Philipp Schneidenbach mit dieser exponierten Stellung? Was bewegte ihn zu einem radikalen Ausstieg? Hat er diesen bereut? - Wie hat sich LinkedIn die vergangenen Monate entwickelt? Von den Funktionen? Für die Nutzer? Welche Nutzer sind dazu gekommen? - Welche Rolle spielt Sichtbarkeit? Welche Rolle Meinung? Diskurs? Hate? Verschwörungen?

Our Job to be done
Social Exit mit Philipp Schneidenbach

Our Job to be done

Play Episode Listen Later Jun 16, 2020 55:57


Warum er als einer der sichtbarsten Nutzer von LinkedIn schlagartig seinen Account gelöscht hat erklärt Philipp Schneidenbach Schluss. Aus. Vorbei. Es gibt Momente im Leben, da ist alles zu viel. Nichts passt mehr. Einfach weg. Ein solcher Moment war im Frühjahr 2020. Philipp Schneidenbach war einer der sichtbarsten und engagiertesten Nutzer des Berufnetzwerkes LinkedIn. Mit großer Leidenschaft optimierte er fortlaufend seine Posts, um den Nutzer noch besser mit den Erkenntnissen seiner Forschungen vermitteln. Philips engagierte Videos wurden intensiv von den Nutzern diskutiert, daß jeder LinkedIn Nutzer Philipps Videos automatisch in den Newsfeed gespielt bekam. Ein Powernutzer. Phillipp generierte damit eine Vielzahl an Keynotes. Alles schien perfekt. Doch dann stieg Philipp aus. Warf alles hin. Account gelöscht. Nix wie weg. Was bewegte ihn dazu? Auf den ersten Blick unerklärlich. Philipp Schneidenbach arbeitet als Principal bei Ventum Consulting in München. Seine Spezialgebiete sind IT Governance, Compliance, Enterprise Architecture und IT Service Management. Zuvor war Philipp Schneidenbach als Chief Technology Officer bei der 3wGroup in München für Großprojekte im Bereich Enterprise Integration Management verantwortlich, wo er Konzernarchitekturentwicklung, strategisches Change Management und Konzepte der Dienstleistungserbringung betreute Dieser Podcast behandelt folgende Fragen: - Was bewegt einen Nutzer einer Social Plattform zum Powernutzer zu werden? Wie ging es Philipp Schneidenbach mit dieser exponierten Stellung? Was bewegte ihn zu einem radikalen Ausstieg? Hat er diesen bereut? - Wie hat sich LinkedIn die vergangenen Monate entwickelt? Von den Funktionen? Für die Nutzer? Welche Nutzer sind dazu gekommen? - Welche Rolle spielt Sichtbarkeit? Welche Rolle Meinung? Diskurs? Hate? Verschwörungen?

Becker’s Healthcare Virtual Events presents Standing Room Only
7. How Technology Impacts Patient Experience, Satisfaction and Quality Care

Becker’s Healthcare Virtual Events presents Standing Room Only

Play Episode Listen Later Jun 8, 2020 39:06


This episode features a session from Becker's Healthcare Health IT + Clinical Leadership + Pharmacy Virtual Event: How Technology Impacts Patient Experience, Satisfaction and Quality CareThe conversation include insight from the following speakers:- Jonathan Perlin, President, Clinical Services and Chief Medical Officer, HCA Healthcare- Alpa Vyas, Vice President, Patient Experience, Stanford Health Care- Adam Myers, MD, MHCM, FACHE, CHCQM, CPHRM, Chief of Population Health and Director, Cleveland Clinic Community Care, Cleveland Clinic- Matthew Grob, CPHIMS, FHIMSS, Senior Director, IT Governance, Mount Sinai Health System

Enterprise Tech India - Unplugged
ETI-Unplugged: Episode 10: What is IT Governance?

Enterprise Tech India - Unplugged

Play Episode Listen Later Mar 8, 2020 29:05


Kumaran and Deepak demystify IT Governance in a discussion using examples of what IT teams can relate to. What happens when an IT person walks into the meeting room with business departments - can a simple test get you an answer to "is your governance working?" Don't forget to check-out the book recommendation in the episode. Audio Version: https://www.podomatic.com/podcasts/etindiaunplugged/episodes/2020-03-08T07_19_11-07_00 Follow us on: https://etiunplugged.in https://fb.com/etiunplugged https://www.linkedin.com/company/etiunplugged

Transaction Trending, a podcast by ETA
Payments Security in 2020 and Beyond, with Stacy Hughes, Global Payments

Transaction Trending, a podcast by ETA

Play Episode Listen Later Jan 28, 2020 23:41


Stacy Hughes, SVP of IT Governance, Risk and Compliance at Global Payments joins Amy to discuss PCI, payments security and data.

Opportunity in America - Events by the Aspen Institute Economic Opportunities Program
Success Stories: Graduates Share Their Stories - Five Years of UpSkill America: What's Next?

Opportunity in America - Events by the Aspen Institute Economic Opportunities Program

Play Episode Listen Later Jan 21, 2020 44:19


Upskilling program graduates from across the country and industries will share their personal experiences, how their program helped them, and what advice they would have for other participants and employers who are considering such programs. This clip features Yenis Blanco (Training Manager, McDonald's), Lisa Gauthier (City Council Member, East Palo Alto, California), Kimberly Vaughn (IT Project Manager, IT Governance, Federal Reserve Bank of St. Louis), and Amanda Newman (Senior Project Manager, The Aspen Institute Economic Opportunities Program). The fifth anniversary of UpSkill America is here! At this special event, we look both back at what we have learned about upskilling the last five years and forward to what the upskilling movement needs to achieve in the years ahead. Since our founding, momentum for upskilling has continued to grow, with businesses large and small across the country creating new programs and developing innovative approaches to make it easier for employees to access training and education that can help advance their careers. These new strategies for upskilling represent a sea change in businesses' approach to education, as they see the value of advancing the skills of employees at all levels in supporting opportunity and helping their bottom lines. To celebrate this anniversary, we bring together leaders in business, researchers, policymakers, and upskilling program graduates to share what we've learned over the past five years, highlight innovative approaches to upskilling, discuss solutions to common challenges, and explore the future of the upskilling movement. We're thankful to Accenture, Lumina Foundation, Pearson, Strada Education Network, Study.com, and Walmart for their support of our work and this event. For others looking to support the work of UpSkill America, please contact Jaime Fall: jaime.fall@aspeninst.org.

KI in der Industrie
KI und IT Security

KI in der Industrie

Play Episode Listen Later Aug 15, 2019 41:34


Unsere Gesprächspartner in dieser Folge: Philipp Schneidenbach arbeitet als Principal bei Ventum Consulting in München. Seine Spezialgebiete sind IT Governance, Compliance, Enterprise Architecture und IT Service Management. Christopher Bleckmann-Dreher ist unabhängiger Sicherheitsforscher und Penetrationtester. Peter Kämper - Pre Crime-Experte - er sagt von sich: Den ersten Hacker habe ich 1986 im militärischen Netzwerk entdeckt. Seit 1986 verfolge ich die Aktivitäten von Angreifern, deren Spuren, deren Wirkung und Vermeidung.

CIO Podcast - IT-Strategie und digitale Transformation
CIO 052 – Data Governance Strukturen ermöglichen digitale Geschäftsmodelle

CIO Podcast - IT-Strategie und digitale Transformation

Play Episode Listen Later Apr 17, 2019 22:02


Data Governance Strukturen zu etablieren ist die Basis, um digitale Geschäftsmodelle aufzubauen und ein professionelles Datenmanagement zu betreiben. In vielen Unternehmen gibt es diese Strukturen derzeit teilweise oder noch gar nicht, daher zeigt Petra Koch in dieser Podcast Folge auf, was Data Governance ausmacht und wie Sie als CIO und IT-Manager dazu beitragen können, dass diese in Ihrem Unternehmen aufgebaut wird. Folgende Aspekte werden in der Podcast-Folge besprochen: * Was ist Data Governance? [00:00:30] * Data Governance und Digitalisierung [00:02:30] * IT-Governance vs. Data Governance [00:05:00] * Kern-Datenobjekte eines jeden Unternehmens (Kunden, Lieferanten, Produkte) [00:06:30] * Mögliche Auswirkungen ohne Data Governance Strukturen [00:09:30] * Verbesserung durch gutes Datenmanagement [00:12:00] * Konzeption und Aufbau von Data Governance Strukturen [00:13:30] Alle Shownotes und Details finden Sie unter www.cio-podcast.de/cio052

The T2 Tech Talk Podcast
Kerfluffles, Dolly Parton & What You Need To Know About IT Governance

The T2 Tech Talk Podcast

Play Episode Listen Later Feb 20, 2019 18:30


Tom & Tom break down IT Governance, Matthew, our audio engineer, proclaims his love for Dolly Parton, and we help you setup an IT committee to help your organization be smooth like butter.

InfoSec Weekly Podcast
31 January Weekly Podcast: Facebook VPN, FaceTime bug, and Internet Explorer 10

InfoSec Weekly Podcast

Play Episode Listen Later Jan 31, 2019 5:51


31 January Weekly Podcast: Facebook VPN, FaceTime bug, and Internet Explorer 10 by IT Governance

Radio Innovazione
2_18 IT Governance

Radio Innovazione

Play Episode Listen Later Jan 13, 2019 37:32


Oggi voglio festeggiare la "Platinum" membership di ISACA, il massimo livello di seniority, parlando di IT Governance, qualcosa di cui si dice così poco ma che è un tassello fondamentale in azienda e lo sarà sempre più nelle aziende fortemente digitalizzate.Quali sono le regole necessarie affinché il management non possa andare in direzioni diverse dall'interesse degli azionisti? Come fare in modo che l'azienda sia allineata ai suoi obiettivi? Che i rischi a cui va in contro siano ridotti il più possibile, nonché gestiti?A queste domande risponde la governance aziendale, l'IT Governance ne risponde per la parte IT che, oggi che l'IT ha assunto un ruolo centrale in azienda, diventa sempre più importante.Per chi voglia approfondire consiglio il sito di www.isaca.org, per i percorsi di formazione consiglio CISA e CGEIT, sempre ISACA.Buon ascolto!

Radio Innovazione
2_18 IT Governance

Radio Innovazione

Play Episode Listen Later Jan 12, 2019 37:32


Oggi voglio festeggiare la "Platinum" membership di ISACA, il massimo livello di seniority, parlando di IT Governance, qualcosa di cui si dice così poco ma che è un tassello fondamentale in azienda e lo sarà sempre più nelle aziende fortemente digitalizzate.Quali sono le regole necessarie affinché il management non possa andare in direzioni diverse dall'interesse degli azionisti? Come fare in modo che l'azienda sia allineata ai suoi obiettivi? Che i rischi a cui va in contro siano ridotti il più possibile, nonché gestiti?A queste domande risponde la governance aziendale, l'IT Governance ne risponde per la parte IT che, oggi che l'IT ha assunto un ruolo centrale in azienda, diventa sempre più importante.Per chi voglia approfondire consiglio il sito di www.isaca.org, per i percorsi di formazione consiglio CISA e CGEIT, sempre ISACA.Buon ascolto!

InfoSec Weekly Podcast
19 October Weekly podcast: US Defense Department, MOD and NHS

InfoSec Weekly Podcast

Play Episode Listen Later Oct 18, 2018 6:08


19 October Weekly podcast: US Defense Department, MOD and NHS by IT Governance

InfoSec Weekly Podcast
The Periscope Podcast

InfoSec Weekly Podcast

Play Episode Listen Later Aug 20, 2018 11:57


Welcome to the IT Governance Periscope Podcast: This week’s episode is an investigation into reporting on staff training, awareness and IT Governance products and solutions for organisations that suffer a data breach

InfoSec Weekly Podcast
The IT Governance Periscope Podcast #1

InfoSec Weekly Podcast

Play Episode Listen Later Aug 2, 2018 22:17


Welcome to the IT Governance Periscope Podcast: This week’s episode is an investigation into cyber incident response management and IT Governance products and solutions for organisations which suffer a data breach.

InfoSec Weekly Podcast
Client X #2: Physical Technology – Hardware

InfoSec Weekly Podcast

Play Episode Listen Later Jul 20, 2018 18:29


Welcome to the IT Governance Technology & Media Podcast: Client X. Account Manager Zak Rush joins us again for our second episode. Zak is a Technology & Media sector specialist at IT Governance. It’s his job to identify client obligations, discuss project scope and generally facilitate any and all client needs in the Technology & Media sector.

InfoSec Weekly Podcast
Client X #1: The Information Technology Sector

InfoSec Weekly Podcast

Play Episode Listen Later Jul 12, 2018 12:52


Welcome to the IT Governance Technology & Media Podcast: Client X. Account Manager Zak Rush joins us for our first episode. Zak is a Technology & Media sector specialist at IT Governance. It’s his job to identify client obligations, discuss project scope and generally facilitate any and all client needs in the Technology & Media sector.

Softwareforen Podcast
IT-Governance, -Risk, -Compliance bei Evonik

Softwareforen Podcast

Play Episode Listen Later Nov 21, 2017 5:11


Prof. Dr. Kütz interviewt Detlef Guski und Matthias Seidel zum Thema Automatisierung von IT-Governance, -Risk, und -Compliance bei der Evonik Industries AG. Dabei gehen die Befragten auch auf die wichtigsten Schritte vom „Excel-Exzess“ hin zu einem integrierten IT-Risk- & IT-Compliance-Management ein.

InfoSec Weekly Podcast
29 September Weekly podcast: Deloitte and Equifax breaches

InfoSec Weekly Podcast

Play Episode Listen Later Sep 28, 2017 4:28


29 September Weekly podcast: Deloitte and Equifax breaches by IT Governance

Fifth Step Podcast
Episode 23 - Holistic IT Governance

Fifth Step Podcast

Play Episode Listen Later Aug 14, 2017 24:38


In this podcast Darren Wray (CEO of Fifth Step) is interviewed by Chris Don about the importance of a holistic approach to IT Governance. Read more on this topic and others on the Fifth Step Blog: https://www.fifthstep.com/blog Please subscribe to our podcast on iTunes, or add us to your favourite podcast player (our favourite is Pocket Casts which is available for all popular mobile platforms http://www.shiftyjelly.com/pocketcasts/) by searching for Fifth Step Podcast within the app, or add our feed address: http://fifthstepltd.podbean.com/feed/. Find this and other podcasts from Fifth Step on our website, along with supporting material for the Podcast at https://www.fifthstep.com/Podcasts If you would like to ask a question to be answered during the podcast, then please email podcast@fifthstep.com, or Tweet your question to @FifthStep using #Podcast. Thank you for downloading this Fifth Step Podcast, to learn more about Fifth Step and our thinkings please visit https://www.fifthstep.com.  

CIO Podcast - IT-Strategie und digitale Transformation
CIO 029 – Verantwortlichkeiten in der IT-Organisation festlegen

CIO Podcast - IT-Strategie und digitale Transformation

Play Episode Listen Later Apr 5, 2017 15:55


Es geht darum Verantwortlichkeiten für die IT-Organisation und IT-Prozesse zu definieren, festzulegen und zu kommunizieren. Eine RACI-Matrix kann dabei helfen die Verantwortlichkeiten zu visualisieren und übersichtlich darzustellen. Folgende Aspekte werden in der Podcast-Folge besprochen: * Verantwortlichkeiten in der IT [00:00:30] * Was versteht man unter IT-Governance und IT-Steuerung? [00:01:00] * Organisatorische Verantwortlichkeiten in der IT definieren[00:03:00] * Prozessverantwortung in Ende-zu-Ende IT-Prozessen [00:05:30] * Verantwortlichkeiten strukturiert darstellen mit Hilfe einer RACI-Matrix [00:07:30] * Entscheidungsrechte und Leitplanken für die Mitarbeiter festlegen und kommunizieren [00:09:00] Alle Shownotes mit Details zu dieser Podcast Folge und dem Transkript, sowie weiterführende Links finden Sie unter www.cio-podcast.de/cio029.

IT Governance
IT Governance Episode 2 – Live Stream Recording from Kickstarter event

IT Governance

Play Episode Listen Later Dec 10, 2016


This video was recorded from the 1st Kickstarter live stream event at the Dec 8 2016 8:00 PM CET. The book author Helmut Schinldwick is presenting his Kickstarter book publishing project – IT Governance. During this recording you will be guided through the current progress of the funding campaign, showing the current status of the book and also present some… The post IT Governance Episode 2 – Live Stream Recording from Kickstarter event appeared first on Helmut Schindlwick.

IT Governance
IT Governance Episode 3 – Margo is interviewing Helmut on IT Governance

IT Governance

Play Episode Listen Later Dec 10, 2016


Within this interview Margo is interviewing Helmut about his new book IT Governance and about his current Kickstarter campaign. (visit Kickstarter Campaign).     The post IT Governance Episode 3 – Margo is interviewing Helmut on IT Governance appeared first on Helmut Schindlwick.

IT Governance
IT Governance Episode 0 – How it all began

IT Governance

Play Episode Listen Later Dec 8, 2016


This video explains the reason for publishing the book IT Governance. It’s necessary for enterprises nowadays to collect massive amounts of data for their business—data concerning everything from products and services to market conditions and customer demographics. With so much information at your fingertips, it’s difficult to find the pieces that are accurate and relevant. This problem is exacerbated by… The post IT Governance Episode 0 – How it all began appeared first on Helmut Schindlwick.

InfoSec Weekly Podcast
Author Podcast | Nine Steps To Success: An ISO 27001 Implementation Overview with Alan Calder

InfoSec Weekly Podcast

Play Episode Listen Later Jun 2, 2016 7:26


Author Podcast | Nine Steps To Success: An ISO 27001 Implementation Overview with Alan Calder by IT Governance

InfoSec Weekly Podcast
The Security Consultant’s Handbook

InfoSec Weekly Podcast

Play Episode Listen Later Jan 29, 2016 17:18


The Security Consultant’s Handbook by IT Governance

DEF CON 22 [Materials] Speeches from the Hacker Convention.
Mark Stanislav & Zach Lanier - The Internet of Fails - Where IoT Has Gone Wrong and How We're Making It Right

DEF CON 22 [Materials] Speeches from the Hacker Convention.

Play Episode Listen Later Dec 13, 2014


The Internet of Fails: Where IoT Has Gone Wrong and How We're Making It Right Mark Stanislav Security Evangelist, Duo Security Zach Lanier Sr. Security Researcher, Duo Security This presentation will dive into research, outcomes, and recommendations regarding information security for the "Internet of Things". Mark and Zach will discuss IoT security failures both from their own research as well as the work of people they admire. Attendees are invited to laugh/cringe at concerning examples of improper access control, a complete lack of transport security, hardcoded-everything, and ways to bypass paying for stuff. Mark and Zach will also discuss the progress that their initiative, BuildItSecure.ly, has made since it was announced this past February at B-Sides San Francisco. Based on their own struggles with approaching smaller technology vendors with bugs and trying to handle coordinated disclosure, Mark and Zach decided to change the process and dialog that was occurring into one that is inclusive, friendly, researcher-centric. They will provide results and key learnings about the establishment of this loose organization of security-minded vendors, partners, and researchers who have decided to focus on improving information security for bootstrapped/crowd-funded IoT products and platforms. If you're a researcher who wants to know more about attacking this space, an IoT vendor trying to refine your security processes, or just a consumer who cares about their own safety and privacy, this talk will provide some great insights to all of those ends. Mark Stanislav is the Security Evangelist for Duo Security. With a career spanning over a decade, Mark has worked within small business, academia, startup and corporate environments, primarily focused on Linux architecture, information security, and web application development. He has presented at over 70 events internationally including RSA, ShmooCon, SOURCE Boston, and THOTCON. His security research has been featured on web sites including CSO Online, Security Ledger, and Slashdot. Mark holds a B.S. in Networking & IT Administration and an M.S. in Information Assurance, both from Eastern Michigan University. Mark is currently writing a book titled, "Two-Factor Authentication" (published by IT Governance). Twitter: @markstanislav Web: https://www.duosecurity.com ; http://www.uncompiled.com; http://builditsecure.ly Zach Lanier is a Senior Security Researcher at Duo Security. Though an old net/web/app pen tester type, he has been researching mobile and embedded device security since 2009, ranging from app security, to platform security (especially Android); to device, network, and carrier security. He has presented at various public and private industry conferences, such as BlackHat, DEFCON, INFILTRATE, ShmooCon, RSA, Amazon ZonCon, and more. He is also a co-author of the "Android Hacker's Handbook" (published by Wiley). Twitter: @quine Web: https://www.duosecurity.com ; https://n0where.org ; http://builditsecure.ly

DEF CON 22 [Materials] Speeches from the Hacker Convention.
Jake Kouns and Carsten Eiram - Screw Becoming A Pentester - When I Grow Up I Want To Be A Bug Bounty Hunter!

DEF CON 22 [Materials] Speeches from the Hacker Convention.

Play Episode Listen Later Dec 13, 2014


Slides Here: https://www.defcon.org/images/defcon-22/dc-22-presentations/Kouns-Eiram/DEFCON-22-Kouns-Eiram-Screw-Becoming-A-Pentester-Bug-Bounty-Hunter-UPDATED.pdf Screw Becoming A Pentester - When I Grow Up I Want To Be A Bug Bounty Hunter! Jake Kouns CISO, RISK BASED SECURITY Carsten Eiram CHIEF RESEARCH OFFICER, RISK BASED SECURITY Everywhere you turn it seems that companies are having serious problems with security, and they desperately need help. Getting into information security provides an incredible career path with what appears to be no end in sight. There are so many disciplines that you can choose in InfoSec with the fundamental argument being whether you join Team Red or Team Blue. Most people tend to decide on the Red team and that becoming a professional pentester is the way to go, as it is the most sexy (and typically pays well). However, with bug bounties currently being all the rage and providing a legal and legitimate way to profit off vulnerability research, who really wants to be a pentester, when you can have so much more fun being a bug bounty hunter! Researcher motivation in the old days and options for making money off of vulnerabilities were much different than today. This talk analyzes the history of selling vulnerabilities, the introduction of bug bounties, and their evolution. We cover many facets including the different types of programs and the ranges of money that can be made. We then focus on researchers, who have currently chosen the bug bounty hunter lifestyle and provide details on how to get involved in bug bounty programs, which likely pay the best, and which vendors you may want to avoid. What constitutes a good bug bounty program that makes it worth your time? What do you need to know to make sure that you keep yourself out of legal trouble? Ultimately, we’ll provide thoughts on the value of bug bounties, their future, and if they can be a full-time career choice instead of a more traditional position such as pentesting. Jake Kouns is the CISO for Risk Based Security and the CEO of the Open Security Foundation, that oversees the operations of the OSVDB.org and DataLossDB.org. Mr. Kouns has presented at many well-known security conferences including RSA, DEF CON, CISO Executive Summit, EntNet IEEE GlobeCom, FIRST, CanSecWest, SOURCE and SyScan. He is the co-author of the book Information Technology Risk Management in Enterprise Environments, Wiley, 2010 and The Chief Information Security Officer, IT Governance, 2011. He holds both a Bachelor of Business Administration and a Master of Business Administration with a concentration in Information Security from James Madison University. In addition, he holds a number of certifications including ISC2's CISSP, and ISACA's CISM, CISA and CGEIT. Twitter: @jkouns Carsten Eiram is the Chief Research Officer of Risk Based Security and previously worked 10 years for Secunia, managing the Research team. Carsten has a reverse engineering background and extensive experience in the field of Vulnerability Intelligence, referring to himself as a vulnerability connoisseur. He has deep insights into vulnerabilities, root causes, and trends, and is also an avid vulnerability researcher, having discovered critical vulnerabilities in high-profile products from major vendors including: Microsoft, Adobe, Symantec, IBM, Apple, Novell, SAP, Blue Coat, and Trend Micro. Carsten has been interviewed for numerous news articles about software security and has presented at conferences such as FIRST Conference, RSA Conference, DEF CON, RVAsec, as well as keynoting Defcamp 2013. He is also a regular contributor to the "Threat of the Month" column in SC Magazine, a credited contributor for the "CWE/SANS Top 25 Most Dangerous Software Errors" list, and member of the CVE Editorial Board and FIRST VRDX-SIG. Twitter: @CarstenEiram

5 Minutes Podcast with Ricardo Vargas
Directly from the Gartner PPM & IT Governance Summit 2012 in London

5 Minutes Podcast with Ricardo Vargas

Play Episode Listen Later Jun 20, 2012 6:01


In this podcast, Ricardo, directly from London, talks about the Gartner PPM & IT Governance Summit 2012, meeting to address Portfolio Management and IT Governance. He talks about the main topics discussed at the Summit, especially the strategic value and benefits of selecting the projects aligned with the company's strategy. About the Summit - Europe's premier gathering of program and portfolio management executives charged with improving how organizations select, implement and manage IT projects and investments. More information: http://www.gartner.com/technology/summits/emea/program-management/about.jsp

TEKNOLOJİNİN KARANLIK YÜZÜ
Bankalarda BT Yönetişimi

TEKNOLOJİNİN KARANLIK YÜZÜ

Play Episode Listen Later Aug 22, 2010


Bu programda konuğumuz Sn. Necdet Almaç ile birlikte bankalar ve büyük kurumlarda bilgi teknolojileri yönetişimi (IT Governance) kavramı ve bu kavramı oluşturan parçalar ile standartlar üzerine konuştuk.Bu bölümü buradan indirebilirsiniz.

Today in Security / TodayinSecurity.com / produced by TechJives.net
TiS 009 Today In Security Niko DePofi Chris Pope

Today in Security / TodayinSecurity.com / produced by TechJives.net

Play Episode Listen Later May 24, 2010 11:10


How Could A New ATM Rootkit Turn The World Of Banking On It’s Head? Where in the World is xn--mgberp4a5d4ar? Rogue Facebook apps launch ‘beach babes’ attack Debate Heating Up: Cybersecurity Act of 2010 S. 773 IT Governance, Risk, and Compliance – Part II The Case for Endpoint Operations and Endpoint Security Convergence Do you […]

CIO Talk Network Podcast
Re/Designing An Effective IT Governance Model

CIO Talk Network Podcast

Play Episode Listen Later Jun 25, 2008 55:05


While there's a lot of emphasis on IT Governance, organizations have been building silo IT governance mechanisms to solve problems in isolation. This is a reactionary and prevents IT from making a strategic impact. How about proactively designing IT governance around an organization's overall objectives and performance goals and continually redesigning whenever these objectives and goals change?

CIO Talk Network Podcast
Executive Oversight of the IT Portfolio

CIO Talk Network Podcast

Play Episode Listen Later Sep 24, 2004 58:22


Successful IT Portfolio management requires risk management, program and project level supervision as well as IT Governance. What role can and should the technology leadership play in these areas?