POPULARITY
In this episode we speak with Kai Roer, a renowned author, security culture coach, and CEO of Praxis Security Labs. Kai shares his career journey in cybersecurity and emphasizes the importance of building a strong security culture within organizations. He identifies the biggest impediments to a good security culture and offers actionable steps that organizations […] The post Building a Healthy Security Culture: Insights from Kai Roer appeared first on Shared Security Podcast.
For this week, we are revisiting a previous episode that first aired as Season 1 Episode 10. In this episode, we discuss the concept of security culture -- specifically, the difficulty that security leaders have in defining what a security culture actually is. Luckily, we can draw on learnings from organizational culture management and culture transformation experts. Guests for this episode include, David Sturt, Executive Vice President of the O.C. Tanner Institute, author of Great Work: How to Make a Difference People Love and Appreciate: Celebrating People, Inspiring Greatness., Dr. Jessica Barker (co-CEO and Co-Founder, Socio-Technical Lead at Cygenta; author of Confident Cyber Security and co-author of Cybersecurity ABCs), Kai Roer, Chief Research Officer at KnowBe4, creator of the Security Culture Framework, author of Build a Security Culture, and Michael Leckie, founding partner at Silverback Partners, LLC and author of The Heart of Transformation: Build the Human Capabilities that Change Organizations for Good. Guests: David Sturt Dr. Jessica Barker Kai Roer Michael Leckie References, Resources & Books: Security ABCs Part 1: Make Awareness Transformational, 8Li Season 1, Episode 9 4 Ways to Build a Thoughtful Security Culture, by Perry Carpenter 7 Tips for Building a Strong Security Culture, by Perry Carpenter Appreciate: Celebrating People, Inspiring Greatness, by David Sturt Build a Security Culture, by Kai Roer Confident Cyber Security: How to Get Started in Cyber Security and Futureproof Your Career, by Jessica Barker Culture Rules! The 10 Core Principles of Corporate Culture, by John R. Childress Cybersecurity ABCs: Delivering awareness, behaviours and culture change, by Jessica Barker, Adrian Davis, and Bruce Hallas Great Work: How to Make a Difference People Love, by David Sturt The Heart of Transformation: Build the Human Capabilities that Change Organizations for Good,, by Michael Leckie The Importance Of A Strong Security Culture And How To Build One, by Perry Carpenter Perry Carpenter's (ISC)2 Info Security Professional Journal 4 episode series on Security Awareness (Episode 1, Episode 2, Episode 3, Episode 4) Security Culture and Credential Sharing, KnowBe4 Research Security Culture Report 2021: A Global Security Culture Perspective During a Pandemic, KnowBe4 Research Seven Dimensions of Security Culture, KnowBe4 Research Perry's Books Transformational Security Awareness: What Neuroscientists, Storytellers, and Marketers Can Teach Us About Driving Secure Behaviors, by Perry Carpenter The Security Culture Playbook: An Executive Guide To Reducing Risk and Developing Your Human Defense Layer by Perry Carpenter & Kai Roer Production Credits: Music and Sound Effects by Blue Dot Sessions, Envato Elements, & Storyblocks. Artwork by Chris Machowski @ https://www.RansomWear.net/ and Mia Rune @ https://www.MiaRune.com. 8th Layer Insights theme music composed and performed by Marcos Moscat @ https://www.GameMusicTown.com/ Want to get in touch with Perry? Here's how: LinkedIn Twitter Instagram Email: perry [at] 8thLayerMedia [dot] com
Kai Roer is the chief research officer for KnowBe4, a security awareness and simulated phishing platform. Kai helps organizations assess their current culture and to develop the desired end state for security and awareness. He created the Security Culture Framework (SCF), is the author of Build a Security Culture and co-author of the The Security Culture Playbook: An Executive Guide to Reducing Risk and Developing Your Human Defense Layer. Kai talks about the role of security and culture assessments, simulated phishing campaigns, how to spot phishing emails, and best practices for security awareness training. https://www.knowbe4.com/ https://www.securityculturebook.com/ Secure Talk Podcast www.securetalkpodcast.com https://securetalkpodcast.com/creating-a-security-oriented-culture-with-kai-roer/
Why do you wear a seatbelt? Is it because of protection, or the penalty for not doing it? Adopt the culture of cybersecurity for both of these reasons. Hear why from our guest, cybersecurity researcher and author, Kai Roer.
Moscow wants attention to be paid to its messengers. Western support for Ukraine in cyberspace. US remains on alert for Russian cyberattacks. Iran: anti-government hacktivism and Tehran-sponsored cyber ops. Rebranding as sanctions evasion. A gangland threat to firmware. Johannes Ullrich from SANS on security of browsers caching passwords. Dave Bittner sits down with Perry Carpenter to discuss his new book, "The Security Culture Playbook: An Executive Guide To Reducing Risk and Developing Your Human Defense Layer,''co-author was Kai Roer.. And CISA adds an Atlassian issue to its Known Exploited Vulnerabilities Catalog. For links to all of today's stories check out our CyberWire daily news briefing: https://thecyberwire.com/newsletters/daily-briefing/11/107 Selected reading. Russia summons heads of U.S. media outlets, warns of 'stringent measures' (Reuters) US confirms military hackers have conducted cyber operations in support of Ukraine (CNN) Advancing security across Central and Eastern Europe (Google) US Justice Department Braces for More Russian Cyberattacks (VOA) Russia, backed by ransomware gangs, actively targeting US, FBI director says (Cybersecurity Dive) Exiled Iran Group Claims Tehran Hacking Attack (SecurityWeek) Exposing POLONIUM activity and infrastructure targeting Israeli organizations (Microsoft Security) To HADES and Back: UNC2165 Shifts to LOCKBIT to Evade Sanctions (Mandiant) Russia-Linked Ransomware Groups Are Changing Tactics to Dodge Crackdowns (Wall Street Journal) Conti Targets Critical Firmware (Eclypsium) Atlassian: Unpatched critical Confluence flaw under attack (Register) CISA Adds One Known Exploited Vulnerability (CVE-2022-26134) to Catalog (CISA)
In this episode, Kai Roer, Chief Research Officer at KnowBe4, explains how human factors will always play a role in how secure our technology is.
Did you know that organizations with a poor security culture demonstrate a 52-time higher risk of employees sharing account credentials? This week, Tim Sadler welcomes Kai Roer to the show - a renowned Security Culture Researcher with over 25 years of experience in cybersecurity and the recently appointed Chief Research Officer at KnowBe4. He defines what a security culture actually is, why leaders should care and what you can do to build a good security culture in your business. If you want to access even more Human Layer Security insights? You can sign up to the Tessian newsletter by clicking that link.
This is the second of a two part series covering Cybersecurity's ABCs: Security Awareness, Behavior, and Culture. This episode discusses the difficulty that security leaders have in defining what a security culture actually is. Luckily, we can draw on learnings from organizational culture management and culture transformation experts. Guests for this episode include, David Sturt, Executive Vice President of the O.C. Tanner Institute, author of Great Work: How to Make a Difference People Love and Appreciate: Celebrating People, Inspiring Greatness., Dr. Jessica Barker (co-CEO and Co-Founder, Socio-Technical Lead at Cygenta; author of Confident Cyber Security and co-author of Cybersecurity ABCs), Kai Roer, Chief Research Officer at KnowBe4, creator of the Security Culture Framework, author of Build a Security Culture, and Michael Leckie, founding partner at Silverback Partners, LLC and author of The Heart of Transformation: Build the Human Capabilities that Change Organizations for Good. Guests: David Sturt Dr. Jessica Barker Kai Roer Michael Leckie References, Resources & Books: 4 Ways to Build a Thoughtful Security Culture, by Perry Carpenter 7 Tips for Building a Strong Security Culture, by Perry Carpenter Appreciate: Celebrating People, Inspiring Greatness, by David Sturt Build a Security Culture, by Kai Roer Confident Cyber Security: How to Get Started in Cyber Security and Futureproof Your Career, by Jessica Barker Culture Rules! The 10 Core Principles of Corporate Culture, by John R. Childress Cybersecurity ABCs: Delivering awareness, behaviours and culture change, by Jessica Barker, Adrian Davis, and Bruce Hallas Great Work: How to Make a Difference People Love, by David Sturt The Heart of Transformation: Build the Human Capabilities that Change Organizations for Good,, by Michael Leckie The Importance Of A Strong Security Culture And How To Build One, by Perry Carpenter Perry Carpenter's (ISC)2 Info Security Professional Journal 4 episode series on Security Awareness (Episode 1, Episode 2, Episode 3, Episode 4) Security Culture and Credential Sharing, KnowBe4 Research Security Culture Report 2021: A Global Security Culture Perspective During a Pandemic, KnowBe4 Research Seven Dimensions of Security Culture, KnowBe4 Research Transformational Security Awareness: What Neuroscientists, Storytellers, and Marketers Can Teach Us About Driving Secure Behaviors, by Perry Carpenter Music and Sound Effects by Blue Dot Sessions, Envato Elements, & Storyblocks. Artwork by Chris Machowski.
Topic: Security Culture Report Kai Roer joined host James Azar to talk cybersecurity culture in organizations and its evolution. Kai shares so much about security culture and how its evolved over time and what are the winning tactics to create a winning cybersecurity culture and awareness within your organization. Guest Bio: An engaging and award-winning specialist on security behaviors and security culture, I provide organizations around the world with advice on assessing, building and maintaining good security culture using the Security Culture Framework. I am working with researchers and practitioners worldwide to bring insights on human behavior from a security perspective, thus creating better products, services and organizations. Connect with Kai: https://www.linkedin.com/in/kairoer/ Tech Corner is supported by these great partners please make sure to check them out: KnowBe4: https://info.knowbe4.com/phishing-security-test-cyberhub Whistic: www.whistic.com/cyberhub Attivo Networks: www.attivonetworks.com CISOTalk Webinar Series: Modernizing the Vendor Risk Management with Airbnb and Whistic Webinar on May 25th, 2021 register here: https://zoom.us/webinar/register/WN_Frugj1ehRbOa3v05tTP7Qw CISOTalk Paisley Shirt Challenge Donate now to support the wounded warrior project and get James to wear an ugly paisley shirt for one or all of his shows: https://tiltify.com/@cisotalk/ciso-talk-paisley-shirt-challenge “The Microsoft Doctrine” by James Azar now on Substack https://jamesazar.substack.com/p/the-microsoft-doctrine **** Find James Azar Host of CyberHub Podcast, CISO Talk, Goodbye Privacy, Tech Town Square, Other Side of Cyber and CISOs Secrets James on Linkedin: https://www.linkedin.com/in/james-azar-a1655316/ James on Parler: @realjamesazar Telegram: CyberHub Podcast ****** Sign up for our newsletter with the best of CyberHub Podcast delivered to your inbox once a month: http://bit.ly/cyberhubengage-newsletter ****** Website: https://www.cyberhubpodcast.com Youtube: https://www.youtube.com/channel/UCPoU8iZfKFIsJ1gk0UrvGFw Facebook: https://www.facebook.com/CyberHubpodcast/ Linkedin: https://www.linkedin.com/company/cyberhubpodcast/ Twitter: https://twitter.com/cyberhubpodcast Instagram: https://www.instagram.com/cyberhubpodcast Listen here: https://linktr.ee/cyberhubpodcast The Hub of the Infosec Community. Our mission is to provide substantive and quality content that's more than headlines or sales pitches. We want to be a valuable source to assist those cybersecurity practitioners in their mission to keep their organizations secure.
In the episode, Javvad and Erich welcome Kai Roer to the show to talk about a Twitter account takeover, a big potential data leak, responsibility in a phishing click and of course, about security culture. About Kai: Twitter: @kairoer LinkedIn: https://www.linkedin.com/in/kairoer/ Stories From the Show: Phish Leads to Breach at Calif. State Controller https://krebsonsecurity.com/2021/03/phish-leads-to-breach-at-calif-state-controller/ NHS boss's Twitter accounts hacked by PS5 scammers: https://www.bbc.co.uk/news/technology-56456002 Forex Broker Leaks Billions of Customer Records Online: https://www.infosecurity-magazine.com/news/forex-leaks-millions-customer/
KnowBe4’s Security Culture Report is the result of data collected from 120,000 global employees in the following industries: Banking, Financial Services, Insurance, Consulting, Business Services, Technology, Healthcare & Pharmaceuticals, Consumer Services, Not for Profit, Other, Retail & Wholesale, Legal, Manufacturing, Government, Construction, Energy & Utilities, Transportation & Education. Learn more at https://www.knowbe4.com/organizational-cyber-security-culture-research-report
For this episode, Kai returns to the podcast so we can discuss his fascinating 2018 Security Culture Report. Kai is an engaging and award-winning specialist on security behaviors and security culture, he provides organisations around the world with advice on assessing, building and maintaining good security culture using the Security Culture Framework. Kai is also working with researchers and practitioners worldwide to bring insights on human behavior from a security perspective, thus creating better products, services and organisations. Episode 50: Kai Roer Link to the 2018 Security Culture Report Link to the CTLRe website Link to the Robber's Cave Experiment Link to Kai's LinkedIn profile Link to Kai's Twitter profile Don't forget, to get in touch with me either try the contact page of the site or follow me on Twitter, where I can be found at @Jenny_Radcliffe
In this book, Kai Roer presents his Security Culture Framework, and addresses the human and cultural factors in organisational security. The author uses clear, everyday examples and analogies to reveal social and cultural triggers that drive human behaviour. He explains how to manage these threats by implementing an effective framework for an organisational culture, ensuring that your organisation is set up to repel malicious intrusions and threats based on common human vulnerabilities. Create a culture that promotes cyber security within your workplace. ow.ly/4qVr50ieNgr
http://ow.ly/4qVr50ieNgr In this book, Kai Roer presents his Security Culture Framework, and addresses the human and cultural factors in organisational security. The author uses clear, everyday examples and analogies to reveal social and cultural triggers that drive human behaviour. He explains how to manage these threats by implementing an effective framework for an organisational culture, ensuring that your organisation is set up to repel malicious intrusions and threats based on common human vulnerabilities. Create a culture that promotes cyber security within your workplace.
To understand security culture and its constant threats, first we need to look at sociology and work our human behavioural patterns. In this introduction to Kai Roer's book 'Build a Security Culture' we begin with this outlook. itgovernancepublishing.co.uk/product/build-a-security-culture
For the month of August we are kicking off with a live interview with Build a Security Culture author Kai Roer. Back in June we caught up with our author Kair Roer this year at Infosecurity Europe, held at London Olympia. As well as interviewing Kai, we attended some really fantastic industry talks as well as helping out the free ice-cream stand by taking one or two! To purchase Build a Security Culture, a book based on a security framework that comes recommended by ENISA (The European Union Agency for Network and Information Security), please visit the site IT Governance Publishing and use AUG15 for 15% off. https://www.itgovernancepublishing.co.uk/product/build-a-security-culture
Kai is an engaging and award-winning specialist on security behaviors and security culture, he provides organisations around the world with advice on assessing, building and maintaining good security culture using the Security Culture Framework. Kai is also working with researchers and practitioners worldwide to bring insights on human behavior from a security perspective, thus creating better products, services and organisations. Build a Security Culture (Fundamentals) Kai on LinkedIn - Kai Roer Kai on Twitter - @kairoer Don't forget, to get in touch with me either try the contact page of the site or follow me on Twitter, where I can be found at @Jenny_Radcliffe
Welcome to Episode 20 of the Digital Guardian Podcast! On this episode our hosts Will Gragido and Chris Brook chat with Kai Roer, co-founder and CEO of CLTRe, a Norwegian security culture research company, about building a security culture, whether or not there’s a way to measure success when it comes to security cultures, and how human factors, like gender and attitudes, can shape risk.
Despite a plethora of training programs on ‘security awareness,' people are often the weakest link for organizations. Often overlooked, security culture is an important and efficient mechanism to influence employee behavior. In this episode of the InSecurity Podcast, host Shaun Walsh is joined by special guest Kai Roer, who is a pioneer in creating robust and holistic security awareness programs that bring together policies, technology, and people to create a strong and dynamic security culture.
You know whatsup, when FTW rolls up! We talk some security news shizzle with Sweet Cheeks! Talk some security culture with Kai Roer and Sultan Riley!