POPULARITY
Get ready to challenge your assumptions about security awareness as Julie Haney, head of Human Centered Cybersecurity at NIST, reveals the hidden struggles and attitudes of security professionals and non-experts. Just when you think you understand the root causes of cybersecurity challenges, a shocking twist leaves everything in doubt. Tune in to find out.Julie Haney, an esteemed leader at the National Institute of Standards and Technology, heads the Human Centered Cybersecurity program. With a wealth of experience in computer science and over two decades in the field, Julie's expertise lies in understanding the human aspect of cybersecurity. She delves into the struggles, experiences, and attitudes of all participants within an organization, aiming to uncover the root causes of security issues rather than just addressing the surface symptoms. Julie's passion for bridging the gap between research and practice makes her a valuable resource for cybersecurity professionals looking to gain deeper insights into the human element of cybersecurity.We need to give our professionals a taste of that so that they're at least thinking about it. They may not be experts in it, but they at least know that they need to think about it.In this episode, you will be hear about:Unveiling the Importance of the Human Element in Cybersecurity: Discover how human behavior impacts cybersecurity and why it's crucial for professionals to understand this dynamic.Empowering People in Cybersecurity: Explore strategies to empower individuals within the cybersecurity landscape, leading to a more robust and secure environment.Addressing Security Fatigue in Cybersecurity: Learn how to combat security fatigue and its detrimental effects on cybersecurity practices, ensuring sustained vigilance and awareness.Developing Skills Needed for Future Cybersecurity Professionals: Uncover the essential skills required for future cybersecurity professionals to thrive in a rapidly evolving digital landscape.Harnessing Non-technical Skills in Cybersecurity: Delve into the significance of non-technical skills in cybersecurity and their pivotal role in fostering a well-rounded approach to security.Connect with Julie HaneyLinkedIn: https://www.linkedin.com/in/julie-haney-037449119/Connect with usWebsite: securitymasterminds.buzzsprout.comKnowBe4 Resources:KnowBe4 Blog: https://blog.knowbe4.comJames McQuiggan - https://www.linkedin.com/in/jmcquigganJacqueline "JJ" Jayne - https://www.linkedin.com/in/jacquelinejayne/Javvad Malik: https://www.linkedin.com/in/javvadMusic Composed by: Brian Sanyshyn - https://www.briansanyshynmusic.comAnnouncer: Sarah McQuiggan - https://www.sarahmcquiggan.comShow Notes created with Capsho - www.capsho.comSound Editing - James McQuigganSound Engineering - Matthew Bliss, MB Podcasts.If you'd like to ask Matt what he can do for your podcast, visit https://www.mbpod.com and schedule a consultation today!
As part of our ongoing coverage on cybercrime and cybersecurity, we recently spoke to several top experts about how they see it. On this episode, Javvad Malik, Lead Security Awareness Advocate at KnowBe4, is joined by Paul Connelly, former Chief Security Officer at HCA Healthcare; Ken Foster, former VP of IT Governance, Risk & Compliance at FLEETCOR; Omar Khawaja, former CISO at Highmark Health; and Susan Koski, CISO at PNC. Sponsored by: https://www.knowbe4.com/
As part of our ongoing coverage on cybercrime and cybersecurity, we recently spoke to several top experts about how they see it. On this episode, Javvad Malik, Lead Security Awareness Advocate at KnowBe4, is joined by Kirsten Davies, former SVP & CISO at Estee Lauder Companies; Craig Froelich, CISO at Bank of America; Jamil Farshchi, EVP & CISO at Equifax; and Laura Deaner, CISO at Northwestern Mutual. Sponsored by: https://www.knowbe4.com/
As part of our ongoing coverage on cybercrime and cybersecurity, we recently spoke to several top experts. On this episode, Javvad Malik, Lead Security Awareness Advocate at KnowBe4, is joined by Adam Keown, CISO at Eastman; Deneen DeFiore, VP & CISO at United Airlines; Cliff Moore, CISO at Wilson Sporting Goods; and Jamil Farshchi, EVP & CISO at Equifax. Sponsored by: https://www.knowbe4.com/
As part of our ongoing coverage on phishing, we recently spoke to several top experts. On this episode, Javvad Malik, Lead Security Awareness Advocate at KnowBe4, is joined by Joanna Huisman, SVP - Strategic Insights & Research at KnowBe4; Mary Rose Martinez, VP and CISO at Marathon Petroleum Corporation; Alissa Abdullah, aka Dr Jay, Deputy CSO and Senior VP of Emerging Corporate Security Solutions at Mastercard; Cliff Moore, CISO at Wilson Sporting Goods. Sponsored by: https://www.knowbe4.com/
As part of our ongoing coverage on cybercrime and cybersecurity, we recently spoke to several top experts about how they see it. On this episode, Javvad Malik, Lead Security Awareness Advocate at KnowBe4, is joined by Paul Connelly, Chief Security Officer at HCA Healthcare; Bret Arsenault, Corporate Vice President and CISO at Microsoft; Ahsan Sheikh, SVP and Chief Information Security Risk Officer at IDB Bank; and Tom Quinn, VP and CISO at T. Rowe Price. Sponsored by: https://www.knowbe4.com/
As part of our ongoing coverage on cybercrime and cybersecurity, we recently spoke to several top experts about how they see it. On this episode, Javvad Malik, Lead Security Awareness Advocate at KnowBe4, is joined by Deneen DeFiore, Vice President & Chief Information Security Officer at United Airlines; Keith O'Sullivan, former CISO at Standard Industries; Ahsan Sheikh, SVP and Chief Information Security Risk Officer at IDB Bank; and Devon Bryan, Global CISO at Carnival Corporation. Sponsored by: https://www.knowbe4.com/
Joining us this week is Javvad Malik, Security Awareness Advocate at KnowBe4. We cover an array of themes including the need to “protect the seams”, understanding where risks are moving, how small interventions can deliver quick security wins, understanding people in the security equation and the importance of cybersecurity training, the AI debate, smishing attacks, and more! Javvad Malik is a Security Awareness Advocate at KnowBe4, a blogger event speaker and industry commentator who is possibly best known as one of the industry's most prolific video bloggers with his signature fresh and light-hearted perspective on security that speak to both technical and non-technical audiences alike. Prior to joining KnowBe4, Javvad was security advocate at AlienVault. Before then, he was a Senior Analyst at 451's Enterprise Security Practice (ESP), providing in-depth, timely perspective on the state of enterprise security and emerging trends in addition to competitive research, new product and go-to-market positioning, investment due diligence and M&A strategy to technology vendors, private equity firms, venture capitalists and end users. Prior to joining 451 Research, he was an independent security consultant, with a career spanning 12+ years working for some of the largest companies across the financial and energy sectors. As well as being an author and co-author on several books, Javvad was one of the co-founders of the Security B-Sides London conference. For links and resources discussed in this episode, please visit our show notes at https://www.forcepoint.com/govpodcast/e233
In this episode I talk with Javvad Malik about what it is like to work at one of the most well known security companies in the world. We had a fantastic conversation and when you enjoy the episode please leave a review and share the podcast!Javvad's Links:LinkedIn: https://www.linkedin.com/in/javvad/Website: https://www.knowbe4.com/Dev InterruptedWhat the smartest minds in engineering are thinking about, working on and investing in.Listen on: Apple Podcasts Spotify The Objective JERKJERK is a "Liberal hearted with a Conservative mind" Army veteran, with 15 years of law...Listen on: Apple Podcasts SpotifySupport the showFollow the Podcast on Social Media!Instagram: https://www.instagram.com/secunfpodcast/Twitter: https://twitter.com/SecUnfPodcastPatreon: https://www.patreon.com/SecurityUnfilteredPodcastTikTok: Not today China! Not today
GuestsJavvad MalikLead Security Awareness Advocate at KnowBe4 [@KnowBe4]On LinkedIn | https://www.linkedin.com/in/javvad/On Mastodon | https://infosec.exchange/@JavvadOn Twitter | https://twitter.com/J4vv4DOn TikTok | https://www.tiktok.com/@j4vv4dOn YouTube | https://www.youtube.com/infoseccynicMarco CiappelliCo-Founder at ITSPmagazine [@ITSPmagazine] and Host of Redefining Society PodcastOn ITSPmagazine | https://www.itspmagazine.com/itspmagazine-podcast-radio-hosts/marco-ciappelliHostSean MartinCo-Founder at ITSPmagazine [@ITSPmagazine] and Host of Redefining CyberSecurity Podcast [@RedefiningCyber]On ITSPmagazine | https://www.itspmagazine.com/itspmagazine-podcast-radio-hosts/sean-martin____________________________This Episode's SponsorsAsgardeo | https://itspm.ag/asgardeo-by-wso2-u8vcPentera | https://itspm.ag/penteri67a___________________________Episode NotesSecurity awareness and security culture are talked about a lot in the community. In this episode, we get into the nitty gritty of both of these topics, hearing about them via real-world stories and discussing them in the context of real-life analogies. A program is just a program unless it can be understood, measured, and defended from all angles.As one example discussed in this episode, there's no point in just teaching people to spot a phishing email because phishing now comes in text messages, on social media, direct messages on Twitter or Instagram, on Discord channels, even in your WhatsApp messages. There's no way you can train everyone on every single channel out there. A better option is to teach them about the red flags, give them knowledge about how the bad actors will approach their targets, and what some of the signs are to look out for. Help them understand that if you're careful, then you won't fall victim to it. One analogy used to help illustrate this point comes in the form of the crosswalks in London where information is shared with the street crosser at the point when/where they are crossing as opposed to trying to train the traveler weeks in advance of visiting London.This is one of the many, many points that our guest, Javvad Malik, shares with us during this episode.Enjoy and learn!____________________________Resources____________________________To see and hear more Redefining CyberSecurity content on ITSPmagazine, visit:https://www.itspmagazine.com/redefining-cybersecurity-podcastAre you interested in sponsoring an ITSPmagazine Channel?
GuestsJavvad MalikLead Security Awareness Advocate at KnowBe4 [@KnowBe4]On LinkedIn | https://www.linkedin.com/in/javvad/On Mastodon | https://infosec.exchange/@JavvadOn Twitter | https://twitter.com/J4vv4DOn TikTok | https://www.tiktok.com/@j4vv4dOn YouTube | https://www.youtube.com/infoseccynicMarco CiappelliCo-Founder at ITSPmagazine [@ITSPmagazine] and Host of Redefining Society PodcastOn ITSPmagazine | https://www.itspmagazine.com/itspmagazine-podcast-radio-hosts/marco-ciappelliHostSean MartinCo-Founder at ITSPmagazine [@ITSPmagazine] and Host of Redefining CyberSecurity Podcast [@RedefiningCyber]On ITSPmagazine | https://www.itspmagazine.com/itspmagazine-podcast-radio-hosts/sean-martin____________________________This Episode's SponsorsAsgardeo | https://itspm.ag/asgardeo-by-wso2-u8vcPentera | https://itspm.ag/penteri67a___________________________Episode NotesSecurity awareness and security culture are talked about a lot in the community. In this episode, we get into the nitty gritty of both of these topics, hearing about them via real-world stories and discussing them in the context of real-life analogies. A program is just a program unless it can be understood, measured, and defended from all angles.As one example discussed in this episode, there's no point in just teaching people to spot a phishing email because phishing now comes in text messages, on social media, direct messages on Twitter or Instagram, on Discord channels, even in your WhatsApp messages. There's no way you can train everyone on every single channel out there. A better option is to teach them about the red flags, give them knowledge about how the bad actors will approach their targets, and what some of the signs are to look out for. Help them understand that if you're careful, then you won't fall victim to it. One analogy used to help illustrate this point comes in the form of the crosswalks in London where information is shared with the street crosser at the point when/where they are crossing as opposed to trying to train the traveler weeks in advance of visiting London.This is one of the many, many points that our guest, Javvad Malik, shares with us during this episode.Enjoy and learn!____________________________Resources____________________________To see and hear more Redefining CyberSecurity content on ITSPmagazine, visit:https://www.itspmagazine.com/redefining-cybersecurity-podcastAre you interested in sponsoring an ITSPmagazine Channel?
In this episode, host Bidemi Ologunde had an insightful conversation with Javvad Malik, a lead security awareness advocate at KnowBe4, the world's largest provider of simulated phishing and security awareness training to corporate organizations. We talked about security awareness, behavioural analytics, social engineering, insider threat detection, personal security, social media, red flags to look out for in email messages, how to effectively manage our digital footprint, open-source intelligence (OSINT), security incentives, and much more.Check out host Bidemi Ologunde's other creative outlets on LinkTree.Buzzsprout - Let's get your podcast launched! Start for FREEDisclaimer: This post contains affiliate links. If you make a purchase, I may receive a commission at no extra cost to you.Support the show
Javvad Malik is the Lead Security Awareness Advocate at KnowBe4, a provider of security awareness training. Javvad talks about how to select a cyber security and security training partner and shares some best practices to deploying effective training programs. KnowBe4 www.knowbe4.com/
As the lead security advocate for KnowBe4, Javvad has had a cyber security career spanning over 20 years. A blogger, event speaker and industry commentator Javvad is best known as one of the industry's most prolific video bloggers. Javvad describes how he has observed cybersecurity attacks evolve and converge over time from his personal perspective.Tim and Javvad also talk about the human element of cybersecurity training, technological limits, and how the two interact. Javvad discusses his strong opinions on how businesses can create robust programs against sophisticated cyberattacks.Love what you hear? You can subscribe to the Tessian newsletter to stay up to date with all new episodes and developments in cybersecurity.
In this week's episode, the cybersecurity experts Bryan Hornung, Reginald Andre, Randy Bryan, and Ryan O'Hara with special guest Javvad Malik at J4vv4D discuss the topic of phishing & what Javvad notices is going on with these types of attacks. Next, the team disucsses 4 tips security experts are saying will help protect thier IT employees from clicking on a link. Tune in to learn how to mitigate this human error! Then, the crew review some of the top phishing scams this week relating to Costco, Ace Hardware, PayPal, Netflix, Truist, cPanel, and Microsoft. Would you have been able to spot these scams? Lastly, the security experts discuss an article about a 65-year women who was scammed on Instagram because she was in love. Make sure to tune in! Like and Share the show! Articles used: https://unfspinnaker.com/98214/news/phishing-is-organized-crime-unf-chief-information-officer-says/ https://www.constructiondive.com/news/cybersecurity-spear-phishing-tech/634408/ https://news.trendmicro.com/2022/10/21/costco-ace-hardware-paypal-netflix-truist-cpanel-microsoft-phishing-scam/ https://gizmodo.com/astronaut-iss-instagram-1849638814
Hackers stole Samsung's customer data from a US-based facility. Were you affected? What sis Samsung disclose? What should you do? With guest Javvad Malik, Lead Security Awareness Advocate at KnowBe4.
In today's episode, James talks to Javvad Malik, a Security Awareness Advocate at KnowBe4 and Co-Founder of Security B-Sides London, to talk about his most memorable cybersecurity tales inside some of the largest financial & energy companies, how a single spreadsheet (with a giant security flaw) defiled an entire organization, and the inspiration behind Javvad's ridiculously hilarious cybersecurity YouTube parody “Accepted the Risk”. All this and more on this week's episode of Adventures of Alice & Bob!
CyberHub Podcast Digital Identity & Passwordless Feb 11th, 2022 Hey Security Gang, Lets talk digital identity and passwordless with special Javvad Malik from KnowBe4. Tune in as we discuss the latest trends in how the security world is addressing digital identity and what the move to passwordless means to end users. CyberHub Podcast is supported by these great partners please make sure to check them out: KnowBe4: https://info.knowbe4.com/phishing-security-test-cyberhub **** Find James Azar Host of CyberHub Podcast, CISO Talk, Goodbye Privacy, Tech Town Square, Other Side of Cyber James on Linkedin: https://www.linkedin.com/in/james-azar-a1655316/ James on Parler: @realjamesazar Telegram: CyberHub Podcast ****** Sign up for our newsletter with the best of CyberHub Podcast delivered to your inbox once a month: http://bit.ly/cyberhubengage-newsletter ****** Website: https://www.cyberhubpodcast.com Youtube: https://www.youtube.com/c/TheCyberHubPodcast Rumble: https://rumble.com/c/c-1353861 Facebook: https://www.facebook.com/CyberHubpodcast/ Linkedin: https://www.linkedin.com/company/cyberhubpodcast/ Twitter: https://twitter.com/cyberhubpodcast Instagram: https://www.instagram.com/cyberhubpodcast Listen here: https://linktr.ee/cyberhubpodcast The Hub of the Infosec Community. Our mission is to provide substantive and quality content that's more than headlines or sales pitches. We want to be a valuable source to assist those cybersecurity practitioners in their mission to keep their organizations secure. #Privacy #cybersecurity #dataprivacy
In this episode, Erich Kron and Javvad Malik chat about the weekly #infosec and #cybersecurity stories, including how Russia is cracking down on carders, infotainment system crashes and more. Stories from the show: Tech bug keeps Mazda radios locked in to NPR https://www.bbc.com/news/technology-60333765 Intuit users warned over tax scam threatening to disable your account – here's the fake email to look out for https://www.the-sun.com/money/4620318/intuit-scam-phishing-fake-email-tax/ Russia arrests third hacking group, seizes carding forums https://www.bleepingcomputer.com/news/security/russia-arrests-third-hacking-group-seizes-carding-forums/ Lazarus hackers target defense industry with fake Lockheed Martin job offers https://www.bleepingcomputer.com/news/security/lazarus-hackers-target-cryptocurrency-orgs-with-fake-job-offers/ The Lazarus Heist Podcast (an amazing podcast, really. Trust us!): https://podcasts.apple.com/au/podcast/the-lazarus-heist/id1561990291
“The Microsoft Doctrine” by James Azar now on Substack https://jamesazar.substack.com/p/the-microsoft-doctrine The Practitioner Brief is sponsored by: KnowBe4: https://info.knowbe4.com/phishing-security-test-cyberhub **** Find James Azar Host of CyberHub Podcast, CISO Talk, Goodbye Privacy, Digital Debate, Other Side of Cyber James on Linkedin: https://www.linkedin.com/in/james-azar-a1655316/ James on Parler: @realjamesazar Telegram: CyberHub Podcast ****** Sign up for our newsletter with the best of CyberHub Podcast delivered to your inbox once a month: http://bit.ly/cyberhubengage-newsletter ****** Website: https://www.cyberhubpodcast.com Youtube: https://www.youtube.com/channel/UCPoU8iZfKFIsJ1gk0UrvGFw Facebook: https://www.facebook.com/CyberHubpodcast/ Linkedin: https://www.linkedin.com/company/cyberhubpodcast/ Twitter: https://twitter.com/cyberhubpodcast Instagram: https://www.instagram.com/cyberhubpodcast Listen here: https://linktr.ee/cyberhubpodcast The Hub of the Infosec Community. Our mission is to provide substantive and quality content that's more than headlines or sales pitches. We want to be a valuable source to assist those cybersecurity practitioners in their mission to keep their organizations secure.
A game about Squid Game pulls the rug under cryptocurrency investors in what appears to be a scam, PayPal hackers use a devious trick to break into 2FA-protected accounts, and have you received a job offer that's too good to be true? All this and much much more is discussed in this celebratory edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, joined this week by Dr Jessica Barker. Plus don't miss our featured interview with the CEO and president of Qualys, Sumedh Thakar. Oh, and huge thanks to Darknet Diaries' Jack Rhysider, F-Secure's Mikko Hyppönen, The Cyberwire's Dave Bittner, and Host Unknown's Andrew Agnês, Thom Langford, and Javvad Malik for their special contributions to this episode. Visit https://www.smashingsecurity.com/250 to check out this episode's show notes and episode links. Follow the show on Twitter at @SmashinSecurity, or on the Smashing Security subreddit, or visit our website for more episodes. Remember: Follow us on Apple Podcasts, or your favourite podcast app, to catch all of the episodes as they go live. Thanks for listening! Warning: This podcast may contain nuts, adult themes, and rude language. Theme tune: "Vinyl Memories" by Mikael Manvelyan. Assorted sound effects: AudioBlocks. Special Guests: Andrew Agnês, Dave Bittner, Jack Rhysider, Javvad Malik, Jessica Barker, Mikko Hyppönen, Sumdeh Thakar, and Thom Langford.
Topic: Hybrid Security Culture Javvad Malik joins to discuss the hybrid security culture, ransomware and the hit TV show Inside Man Tech Corner is supported by these great partners please make sure to check them out: KnowBe4: https://info.knowbe4.com/phishing-security-test-cyberhub Attivo Networks: www.attivonetworks.com **** Find James Azar Host of CyberHub Podcast, CISO Talk, Goodbye Privacy, Tech Town Square, Other Side of Cyber James on Linkedin: https://www.linkedin.com/in/james-j-azar/ James on Parler: @realjamesazar Telegram: CyberHub Podcast Locals: https://cyberhubpodcast.locals.com ****** Sign up for our newsletter with the best of CyberHub Podcast delivered to your inbox once a month: http://bit.ly/cyberhubengage-newsletter ****** Website: https://www.cyberhubpodcast.com Youtube: https://www.youtube.com/channel/UCPoU8iZfKFIsJ1gk0UrvGFw Facebook: https://www.facebook.com/CyberHubpodcast/ Linkedin: https://www.linkedin.com/company/cyberhubpodcast/ Twitter: https://twitter.com/cyberhubpodcast Instagram: https://www.instagram.com/cyberhubpodcast Listen here: https://linktr.ee/cyberhubpodcast The Hub of the Infosec Community. Our mission is to provide substantive and quality content that's more than headlines or sales pitches. We want to be a valuable source to assist those cybersecurity practitioners in their mission to keep their organizations secure.
Security awareness training is a common requirement in most businesses, but oftentimes it can be difficult to effectively teach employees how to recognise and respond to security risks. In this episode, we speak with Javvad Malik – Security Awareness Advocate at KnowBe4, co-founder of Security B-Sides London and cybersecurity blogger – about the variety of risks out there, the challenges of security awareness training, and how best to promote it. 00:28 What is a Security Awareness Advocate? 02:45 Challenges 11:14 Messaging 16:20 Importance of Security Champions 19:25 Minimising risk 21:45 Lesser-known types of phishing attacks 29:20 Promotion 38:10 The fear of embarrassment 40:40 Bias and the role of marketing Listening time: 46 minutes Host: Holly Grace Williams, MD at Secarma Guests: Javvad Malik, Security Awareness Advocate at KnowBe4 KnowBe4: www.knowbe4.com Connect with Javvad: www.linkedin.com/in/javvad/ Javvad on Twitter: www.twitter.com/J4vv4d Resources: Daniel Kahneman's Ted Talk: https://www.ted.com/talks/daniel_kahneman_the_riddle_of_experience_vs_memory Our website: www.secarma.com Tweet us: www.twitter.com/Secarma Events: www.eventbrite.co.uk/o/secarma-ltd-31129456455
VENDOR SPOTLIGHT:KnowBe4In another of our sub-series where we focus on a particular vendor in our portfolio, we welcome Javvad Malik, a Security Awareness Advocate from KnowBe4.It's a given that the majority of successful cybersecurity breaches start with a social engineering attack; the majority of them being a Phishing email. So, how do we help people avoid being caught out? Training, testing, training, testing, training, repeat....But: not all users are alike and not all user-awareness training schemes are alike and so a carefully designed and deployed program is the only way to really make a difference.Javvad does a great job of trying to use more analogies than Richard in the pursuit of bringing the KnowBe4 capabilities to life, but it's safe to say: this is the podcast for you if you ever needed help to justify a program of awareness training in your organisation!
A big cheese ends up in jail, a Japanese dating site spills the dirt after a hack, and we learn all about the right to repair. All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, joined this week by Paul Roberts from The Security Ledger. Plus don't miss our featured interview with Javvad Malik from KnowBe4. Visit https://www.smashingsecurity.com/229 to check out this episode’s show notes and episode links. Follow the show on Twitter at @SmashinSecurity, or on the Smashing Security subreddit, or visit our website for more episodes. Remember: Follow us on Apple Podcasts, or your favourite podcast app, to catch all of the episodes as they go live. Thanks for listening! Warning: This podcast may contain nuts, adult themes, and rude language. Theme tune: "Vinyl Memories" by Mikael Manvelyan. Assorted sound effects: AudioBlocks. Special Guests: Javvad Malik and Paul F Roberts.
In this episode of What The Hack?!, I am joined by Javvad Malik from KnowBe4 to discuss Understanding Your Digital Footprint. Javvad Malik is a security awareness advocate for EMEA at KnowBe4. A security professional of 20 years, Malik has began his career as an IT security administrator. He's since worked as a consultant, an industry analyst, and a security advocate. Malik is well-known within the information security industry, having spoken at many events and conferences around the world in addition to being a YouTuber, podcaster, blogger, and researcher. With a distinctive style, he takes a fresh and often innovative look at even mundane topics and presents them in an entertaining and informative light. Tackling the most complex issues with ease in this witty style is Malik's forte. To contact Javvad, please email - info@opensourceguardian.com Our Website Our LinkedIn Our Facebook Please like and subscribe if you enjoyed this episode.
Our guest today is one of the security industry's most prolific video bloggers, Javvad Malik. Javvad has a signature fresh and light hearted take on security, and during this interview he talks about how he found his own voice. He also has plenty of advice for our audience on how to put a great presentation together to keep your audience engaged.In addition, Javvad's story on how he got into the security industry, and the people who helped him along the way, is well worth a listen to. Plus, we discuss the "Zombieland" rules for Security, and find out what kind of movie Javvad would make if he was put in charge of such a thing.Also in this episode, we bid a fond farewell to Noureen who is moving on to an incredibly exciting new adventure. Before she goes however, she has some wonderful words of inspiration and wisdom for our listeners.And finally Ben has some brand new threat research for us. He's here to tell us all about Remote Desktop Protocols. We examine the ways in which RDP has been a target of bad actors over the years, covering unauthorized logins, man-in-the-middle attacks, and vulnerabilities, including the ‘wormable’ BlueKeep exploit. You can learn more about this research at https://blogs.cisco.com/security/rdp-and-the-remote-desktop Episode time stamps:0.00 - 14.16: Intro and saying goodbye to Noureen14.17 - 54.50: Interview with Javvad Malik54.51 - 67.54: Threat of the month (RDP attacks) with Ben67.55 - 69.09: Closing words
Topic: Research Stats and Cyber research Javvad Malik joins the show to discuss how cybersecurity research isnt really given the right facts as it should. We discuss the culture of picking the stats that support a narrative and why we need to make those adjustments to provide an even picture and we discuss so much more… Tune in now Guest Bio: I am a security awareness advocate at KnowBe4, a blogger and a co-founder of Security B-Sides London. An active blogger, event speaker and industry commentator I'm probably better-known as one of the industry's most prolific video bloggers with a signature fresh and light-hearted perspective on security. I previously worked as a security advocate at AlienVault (AT&T Cybersecurity) for four years working with media, research, and community outreach. Prior to joining AlienVault, I was a senior analyst with 451 Research providing technology vendors, investors and end users with strategic advisory services, including competitive research and go-to-market positioning. Prior to that I was an independent security consultant, with a career spanning 12+ years working for some of the largest companies across the financial and energy sectors. Specialties: Information security, Information Risk Management, IT Risk Advisory, IT Security, web application penetration testing, 3rd party management, divestments, integrations, presenting, filming & editing, James Azar Host of CyberHub Podcast James on Twitter: https://twitter.com/james_azar1 James on Linkedin: https://www.linkedin.com/in/james-azar-a1655316/ ****** Sign up for our newsletter with the best of CyberHub Podcast delivered to your inbox once a month: http://bit.ly/cyberhubengage-newsletter ****** Website: https://www.cyberhubpodcast.com Youtube: https://www.youtube.com/channel/UCPoU8iZfKFIsJ1gk0UrvGFw Facebook: https://www.facebook.com/CyberHubpodcast/ Linkedin: https://www.linkedin.com/company/cyberhubpodcast/ Twitter: https://twitter.com/cyberhubpodcast Instagram: https://www.instagram.com/cyberhubpodcast Listen here: https://linktr.ee/cyberhubpodcast CISO Talk Podcast: https://linktr.ee/CISOtalk
Thank you for joining us at the intersection of technology, cybersecurity, and society. In this episode, Sean and Marco are coming to you from the RSA Conference in San Francisco and are joined by Thom Langford, Andrea Frost, Javvad Malik, and Chris Pierson. It’s the third day and things are really kicking in with conversations focused on the human element. Here are a few of the highlights: - View of RSAC as a first-timer - Who inspired us at the conference - Success in the Engagement Zone - Diverse roles in the industry - The value of connecting and networking with people Be sure to join us each day for a new update from RSA Conference. We'll have different guests and different topics -- we will always bring the human element. We'd like to take a moment to thank our RSAC 2020 coverage sponsors for their belief in what we do and their support - we are ever so grateful and would encourage you to check out their company listings on ITSPmagazine to learn more about their offerings. - ReversingLabs: https://www.itspmagazine.com/company-directory/reversinglabs - Devo: https://www.itspmagazine.com/company-directory/devo - BlackCloak: https://www.itspmagazine.com/company-directory/blackcloak - WeSecureApp: https://www.itspmagazine.com/company-directory/wesecureapp - SecureStack: https://www.itspmagazine.com/company-directory/securestack For more stories from RSA Conference 2020, be sure to visit https://www.itspmagazine.com/rsa-conference-usa-2020-rsac-san-francisco-coverage
On this week’s teiss Security Leaders Roundtable Podcast - Thom Langford, Founder of (TL)2 Security Ltd and Javvad Malik, Security Awareness Advocate at KnowBe4, discuss cyber security news stories such as organisations failing to maximize use of Microsoft 365 security, the “people” element in a cyber security strategy, and fake voicemail alerts in suspected whaling campaigns.I hope you enjoy the themes and the all-round bantz.Music: Light the Fuze, Audio Network and Natural Duality, Joseph McDade
An In The News Podcast on ITSPmagazine With Sean Martin and Marco Ciappelli Guests: - Jenny Radcliffe - Javvad Malik Movies, TV shows, radio shows, magazines, newspapers and now the Internet have always delivered some stories based on reality and others that are imaginary. Before that, books, painters, and storytellers of all sorts have done precisely the same. As humans, we need both to thrive, develop our minds, our culture, and our society. Here's the problem: when we are not able to distinguish between fiction and reality—when we are deceived or confused—all of a sudden we do not know who is who and which is which. Yes! We are quoting Pink Floyd__ good job! This is nothing new. Scammers, spammers, con-artists, politicians, lawyers, and big brother, in general, have always tried to alternate reality to achieve their own goals. The lies were not always as believable, not as significant in scale, and not as easy to fabricate. Then technology came along and, inevitably, the never-ending battle between good and evil right alongside it. For today’s episode of In The News, we explore this world of fake stories, taking a deep (yes, pun intended) look at digital elements floating around the Internet and are referred to as “Deepfakes.” As with most technology—yes, let’s not forget that this is technology—it often gets invented for commercial purposes (such as the media and entertainment space to create movies and games) or for public service purposes (such as for government or military use to help and protect citizens and fight wars) and from there, criminals and thieves are sitting in the shadows waiting to use the technology to their advantage. Deepfakes are certainly the latest, and arguably, the most fascinating and astonishing of them all. Well, at least until now. During this conversation with Jenny and Javvad, we try to look at the issue from several different perspectives. As the fascination of such a fantastic technology may seem cool and fun, there are several scenarios where the audio and visual aspects of this technology could trick individuals, groups of individuals, and even entire societies to: Believe something that isn’t true Disbelieve something that is true Make a different decision or take an alternative action than they usually would in the absence of the deepfake There are two main areas to consider: the public consequences and the private ones. They both must be taken seriously and carefully considered when analyzing the problem as dismissing the risk on a large scale might have terrible consequences at the individual level—and vice versa. So, while it’s no joke that deepfakes are real, the question is: how and where will you (we) be impacted today, tomorrow, and in the future? OK, one more question: at what scale will this affect us, and for how long? To answer these questions, Jenny and Javvad provide us with some real-world examples where cybercriminals are taking advantage of such technologies. While providing some analysis, tips, and advice, we also agreed on some theories. Have a listen and see if you will agree with us. Or let us know if you think about other angles that we might have missed.
Why do we go to conferences? To meet fantastic people, create great content, and tell entertaining stories. Sometimes it all happens at the same time. This was one of those occasions. Our first podcast from the Olympia show floor was with one of those people that you have known for a while, but you actually (probably) never met in person. In this digital age, it happens quite a bit. You follow each other on social media, you share some common connections and exchange some thought-provoking comments, you see what they post and care about, and all of a sudden you feel like you have known this person forever. Well, at least it works like this for me. But, the best part is when you finally get to meet them at one of the many industry conferences you make it to, and you realize you are not that much of a weirdo, as there are many like you and magically we all hang out and get to talk, for real! Anyway, one of these ‘finally we got to meet each other’ moments happened on the first day of Infosecurity Europe 2019, in London. The PR team got us together, and we started the conference with a pleasant conversation which, of course, we recorded on a podcast and are now sharing with you here. The guest in question is Javvad Malik and the hosts are Sean Martin and I. We hope you enjoy listening to this chat as much as we enjoyed having it. First, we asked Javvad to tell us how he got involved in CyberSecurity and he walked us back in time to the days when in information technology, everything was secure. Oh, wait__ was it that, or maybe nobody really worried about it? Anyway, we scratched that, and we quickly traveled back to a time — today — where everybody is afraid and does worry about cybersecurity; but only a few know enough to transform that worry into prevention and safe behavior. Today Javvad is a well-known and respected CyberSecurity Advocate that raises awareness, educates, and gets people to understand CyberSecurity and Cyber Risk. As you will hear in this conversation, the concept of risk is not exactly easy to define. It is not a binary concept that you can mark as yes or no, good or bad, or black or white. It is about knowledge and understanding what is in between those two extremes and the variables that affect certain situations that both qualify and quantify risk itself. What is needed to manage cyber risk nowadays is not rules to follow but a real a cultural shift. We spoke about these things and about the differences between the perception of cybersecurity in Europe vs. the USA. If you haven’t figured it out yet this is a topic that I am very interested in; so wait for me to get to RSA Conference APJ in Singapore, and you will see this obsession with CyberSecurity in different culture going to a whole new level. Stay tuned for that coverage, then we’re off to Black Hat and DEFCON USA. It is going to provide some interesting conversations. But first, enjoy this one. Cheers! ___________________ We'd like to thank our conference coverage sponsors for their support. Visit their directory pages on ITSPmagazine. Bugcrowd: https://www.itspmagazine.com/company-directory/bugcrowd CyberCyte: https://www.itspmagazine.com/company-directory/cybercyte Devo: https://www.itspmagazine.com/company-directory/devo Nintex: https://www.itspmagazine.com/company-directory/nintex STEALTHbits: https://www.itspmagazine.com/company-directory/stealthbits ________ Want more from InfoSec Europe in London? https://www.itspmagazine.com/infosec-europe-2019-event-coverage-london-uk-cybersecurity-news-coverage-and-podcasts
ZOMG haggis chops is back on the news, Javvad Malik comes back to FTW too!!!!
Security, security, security! Everyone wants security, at least they say so. How it's actually managed and even conceptualized in organizations is a lot more than just patching software and using CAPTCHA's. In this discussion, Coté talks with Javvad Malik who's been in the security business for countless years. In addition to talking about how security is done well and poorly, they discuss controversies in the space and establishing a good baseline for securing organizations. Also, there's talk of being an industry analyst, British patriotism (or lack thereof?) and webinars, among many other topics. Relevant to your interests Russel Crowe is actually a Kiwi (https://en.wikipedia.org/wiki/Russell_Crowe#Early_life), apologies. AlienVault (https://www.alienvault.com/) - unified security for threat detection, incident response, and compliance. More Javvad in Twitter: @j4vv4d (https://twitter.com/j4vv4d). Javvad over at AlienVault (https://www.alienvault.com/blogs/author/jmalik). Javvad's fantastically funny and informative YouTube videos (https://www.youtube.com/channel/UCTHq8hLs9gIPbazI32Eq2AA). J4vv4ad.com (https://www.j4vv4d.com/) - all Javvad, all the time. Javvad's 451 work (https://451research.com/analyst-team/analyst/Javvad+Malik). Special Guest: Javvad Malik.
Security, security, security! Everyone wants security, at least they say so. How it’s actually managed and even conceptualized in organizations is a lot more than just patching software and using CAPTCHA’s. In this discussion, Coté talks with Javvad Malik who’s been in the security business for countless years. In addition to talking about how security is done well and poorly, they discuss controversies in the space and establishing a good baseline for securing organizations. Also, there’s talk of being an industry analyst, British patriotism (or lack thereof?) and webinars, among many other topics. Relevant to your interests Russel Crowe is actually a Kiwi (https://en.wikipedia.org/wiki/Russell_Crowe#Early_life), apologies. AlienVault (https://www.alienvault.com/) - unified security for threat detection, incident response, and compliance. More Javvad in Twitter: @j4vv4d (https://twitter.com/j4vv4d). Javvad over at AlienVault (https://www.alienvault.com/blogs/author/jmalik). Javvad’s fantastically funny and informative YouTube videos (https://www.youtube.com/channel/UCTHq8hLs9gIPbazI32Eq2AA). J4vv4ad.com (https://www.j4vv4d.com/) - all Javvad, all the time. Javvad’s 451 work (https://451research.com/analyst-team/analyst/Javvad+Malik). Special Guest: Javvad Malik.
Security, security, security! Everyone wants security, at least they say so. How it’s actually managed and even conceptualized in organizations is a lot more than just patching software and using CAPTCHA’s. In this discussion, Coté talks with Javvad Malik who’s been in the security business for countless years. In addition to talking about how security is done well and poorly, they discuss controversies in the space and establishing a good baseline for securing organizations. Also, there’s talk of being an industry analyst, British patriotism (or lack thereof?) and webinars, among many other topics. Relevant to your interests Russel Crowe is actually a Kiwi (https://en.wikipedia.org/wiki/Russell_Crowe#Early_life), apologies. AlienVault (https://www.alienvault.com/) - unified security for threat detection, incident response, and compliance. More Javvad in Twitter: @j4vv4d (https://twitter.com/j4vv4d). Javvad over at AlienVault (https://www.alienvault.com/blogs/author/jmalik). Javvad’s fantastically funny and informative YouTube videos (https://www.youtube.com/channel/UCTHq8hLs9gIPbazI32Eq2AA). J4vv4ad.com (https://www.j4vv4d.com/) - all Javvad, all the time. Javvad’s 451 work (https://451research.com/analyst-team/analyst/Javvad+Malik). Special Guest: Javvad Malik.
Equifax's shambolic response to its huge data breach, a scary-sounding Bluetooth exploit, and Apple's iPhone X comes with Face ID. All this and more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, joined this week by special guest Javvad Malik of AlienVault. Follow the show on Twitter at @SmashinSecurity, or visit our website for more episodes. Remember: Subscribe on Apple Podcasts, or your favourite podcast app, to catch all of the episodes as they go live. Thanks for listening! Warning: This podcast may contain nuts, adult themes, and rude language. Special Guest: Javvad Malik.
Microsoft gives us a Patch Tuesday shock, malware grows up for the Mac, and your mouse movements might reveal if you're an identity thief. All this and more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, joined this week by special guest Javvad Malik of AlienVault. Follow the show on Twitter at @SmashinSecurity, or visit our website for more episodes. Remember: Subscribe on Apple Podcasts, or your favourite podcast app, to catch all of the episodes as they go live. Thanks for listening! Warning: This podcast may contain nuts, adult themes, and rude language. Special Guest: Javvad Malik.
This episode we're joined by Peter Wood, Javvad Malik, Jenny Radcliffe, and Marion Marschalek to discuss their experience, tips, and advice for BSidesLondon rookies, and first time speakers doing their first security talk
Javvad Malik is a Security Advocate at AlienVault, a blogger event speaker, and industry commentator. Prior to joining AlienVault, Javvad was a Senior Analyst at 451’s Enterprise Security Practice (ESP), providing research, new product and go-to-market positioning, and M&A strategy for technology vendors, private equity firms, venture capitalists, and end users. Full Show Notes: http://wiki.securityweekly.com/wiki/index.php/Episode512 Subscribe to YouTube Channel: https://www.youtube.com/channel/UCg--XBjJ50a9tUhTKXVPiqg Security Weekly Website: http://securityweekly.com Follow us on Twitter: @securityweekly
Javvad Malik of AlienVault joins us, Ferruh Mavituna of Netsparker delivers a demo on second order attacks, and we discuss the security news for the week! Full Show Notes: http://wiki.securityweekly.com/wiki/index.php/Episode512 Visit http://www.securityweekly.com for all the latest episodes!
Javvad Malik is a Security Advocate at AlienVault, a blogger event speaker, and industry commentator. Prior to joining AlienVault, Javvad was a Senior Analyst at 451’s Enterprise Security Practice (ESP), providing research, new product and go-to-market positioning, and M&A strategy for technology vendors, private equity firms, venture capitalists, and end users. Full Show Notes: http://wiki.securityweekly.com/wiki/index.php/Episode512 Subscribe to YouTube Channel: https://www.youtube.com/channel/UCg--XBjJ50a9tUhTKXVPiqg Security Weekly Website: http://securityweekly.com Follow us on Twitter: @securityweekly
Javvad Malik of AlienVault joins us, Ferruh Mavituna of Netsparker delivers a demo on second order attacks, and we discuss the security news for the week! Full Show Notes: http://wiki.securityweekly.com/wiki/index.php/Episode512 Visit http://www.securityweekly.com for all the latest episodes!
In this episode we're joined by Javvad Malik (@j4vv4d), Jayson E. Street (@jaysonstreet), and Chris Sumner (@TheSuggmeister) to discuss, does InfoSec eat its own, or is it just a competitve industry?
Donate to Breast Cancer Research at http://securityweekly.com/300, Panel: End User Security Awareness: Hot or Not with Dave Aitel, Lance Spitzner, Javvad Malik, Dameon Welch-Abernathy (aka "Phoneboy"), SpaceRogue.
So today’s show is going to be a little different from normal. As you may have noticed we haven't actually released a show since the end of January. Real life got in the way sorry folks, but the good news is we're due to get back on track by next week. Which left us with sort of dilemma. All though we hadn't managed to get some of the shows out, we had recorded some segments. We had two interviews and a a new segment with Tom Mackenzie in the can. So we decided to bundle them together, and ship as is. So we start with a interview taken about 2 weeks ago with Javvad Malik one of the organisers of BSidesLondon; Then we'll have UpSploits Vuln of the Week segment Followed by an interview with the boys from the seccubus development team. Ending with me and Ryan discussing some news from a few weeks ago. So we hope you enjoy finux signing off.