Podcasts about trust officer

  • 81PODCASTS
  • 117EPISODES
  • 37mAVG DURATION
  • ?INFREQUENT EPISODES
  • Aug 13, 2026LATEST

POPULARITY

20192020202120222023202420252026


Best podcasts about trust officer

Latest podcast episodes about trust officer

ChannelBuzz.ca
Logging in, not breaking in: Blackpoint Cyber’s Wil Santiago on the 2026 threat landscape

ChannelBuzz.ca

Play Episode Listen Later Aug 13, 2026 30:07


Wil Santiago, Wil Santiago, chief security and trust officer at Blackpoint Cyber Wil Santiago, chief security and trust officer at Blackpoint Cyber, joins In The Channel to discuss the findings of the company’s 2026 Annual Threat Report – research grounded in thousands of real incidents investigated by Blackpoint’s security operations centre, not surveys. The headline finding: attackers are no longer trying to break in. They’re logging in. Using stolen credentials and commodity remote management tools, threat actors are walking through the front door, hiding in plain sight, and operating with system-level privileges – sometimes for days before anyone notices. Santiago walks through the key trends the SOC identified across 2025: ClickFix and fake CAPTCHA campaigns accounted for more than half of all identifiable incidents, with attackers abusing trusted infrastructure including Azure Blob storage and Cloudflare to deliver payloads. RMM abuse showed up in roughly 30 per cent of triaged incidents – threat actors installing their own version of the same tools MSPs use legitimately, then living off the land with god-mode access. And Adversary-in-the-Middle attacks are now routinely hijacking authenticated sessions even when MFA is in place, by abusing OAuth token handling. The conversation also covers Blackpoint’s detection philosophy: behavioral context over malware signatures. Understanding what normal looks like in an environment – who uses what tool, at what time, from where – is what allows the SOC to catch attackers before they act. It’s a philosophy that is producing results: Blackpoint disrupted 56 per cent of incidents before a payload was ever deployed. Santiago’s closing recommendation for MSPs is straightforward: start with an RMM audit. Know every remote management tool deployed across every endpoint and server you manage. You cannot protect what you don’t know exists. The 2026 Annual Threat Report is available for download on the Blackpoint Cyber website. Read Full Transcript Robert Dutt: Hello and welcome to In The Channel from ChannelBuzz.ca, bringing news and information to the Canadian IT channel community for the last 16 years. I’m Robert Dutt, editor of ChannelBuzz.ca and your host for the show. Wil Santiago is Chief Security and Trust Officer at Blackpoint Cyber, an MDR provider whose SOC monitors and responds to threats in real time across a large base of MSPs and their clients. And unlike a lot of threat research that’s survey-based or derived from external reporting, what Blackpoint publishes comes from live incident data, thousands of actual threat responses they’ve worked through in the SOC. Their 2026 annual threat report has a thesis that cuts right through it. Attackers are no longer trying to break in, they’re logging in, using stolen credentials and legitimate IT tools, the same RMMs, the same cloud platforms that MSPs rely on every day, to walk through the front door, hide in plain sight, and work their way towards payday. It’s a theme we’ve been tracking at ChannelBuzz.ca. If you caught our conversation with Tony Anscombe from ESET, that one dug into the mechanics of how MSP tools are being weaponized against the very clients they’re supposed to protect. This conversation is the data layer behind that story, and the detection philosophy that Wil and the Blackpoint team have built to counter it. Their SOC is disrupting 56% of incidents before a payload even deploys. We talk about how. Let’s get right into it. My chat with Wil Santiago. Wil, thanks for taking the time, I appreciate it. Wil Santiago: Thank you, Robert. Robert Dutt: For people who know Blackpoint primarily as an MDR provider, but maybe haven’t dug into the research side, can you give us a quick sense of what your SOC is actually seeing day to day? When you say this report is based on thousands of real incidents, what does that mean in practical terms, in terms of how you gathered this data? Wil Santiago: That’s a great question, Robert. It really starts at the core of what we focus on at Blackpoint Cyber. In 2025, we focused a lot of our detection efforts in the cloud endpoints, but what we realized is that at the core, at that identity layer, that’s the most important thing. But what we’re protecting at Blackpoint is the identity. What we observed in 2025 is this interesting shift where, yes, there’s vulnerabilities, there will continue to be vulnerabilities. However, threat actors don’t necessarily need to weaponize those vulnerabilities to gain access into an environment. They’re not really targeting customers or companies with any specific new zero-day technology or exploits that are novel. They’re just logging in using stolen passwords. We’re still at that pivotal point, but we’re still talking about the same things we’ve been talking about, password reuse, making sure you’re protecting yourself from phishing emails, so on and so forth. But the reality is that threat actors are getting in. They’re stealing credentials and they’re using legitimate tools to just log in, walking through the front door. Robert Dutt: Yeah, the headline from the report was very catchy with the attackers are no longer trying to break in. They’re just logging in, as you say. And that framing echoes what we’ve seen in other reports elsewhere. People are calling 2025 the year of the abuse of trust in terms of security trends, but your numbers are operational and not survey-based. I’m curious what trusted compromise looks like from where you sit. Is there really a shift away from what you were seeing a couple of years ago or three years ago, or has this always been the playbook and we’re only now measuring it properly? Wil Santiago: Yeah, so if I compare back to, let’s say, 2022, I think we at Blackpoint would still see a trend, the threat actors gaining access into an environment, usually using some type of exploit at that time. You can point to a number of Microsoft Exchange exploits that happened during that time. The Hafnium group was doing a lot of Exchange exploits. The reality is there came a certain time where we were detecting Cobalt Strike, a malware commodity tool, every single day in Blackpoint Cyber’s SOC. And then eventually it became once a week, and then it became once a month. So then we started to think, well, what’s happening with the shift of tactics with the threat actors? And what we found is instead of installing Cobalt Strike, they started to install legitimate IT tools. And that’s the trust component. When they’re installing tools that you use internally, they now can abuse those tools the same way that you use those legitimately. And so we have these threat actors that not only are abusing legitimate tools, but like I said, they’re abusing legitimate identities. So when you have what I call the keys to the kingdom, the passwords, I am you. I am now Robert, for all intents and purposes for this sort of webinar. I think the interesting part that we’ve seen at Blackpoint is that threat actors have really, really focused on leave-behinds. And those leave-behinds are commodity remote management tools. Why do they do that? Because EDRs don’t know how to detect them as malicious, right? These are legitimate IT tools that are being used to service MSPs and their customers. And a threat actor just installs their version of the same exact tool that you’re using legitimately. Right? And so the trust component is you go to review your assets and you see ScreenConnect installed in your environments because you use ScreenConnect, right? But then when you start taking a closer look, you start to realize, wait a second, there’s four different ScreenConnect IDs on this one machine. Now we have a more of a problem, right? And so the attack is a little bit of an invisible signature detection because it’s an authorized tool, right? And so we really have to get to this layer of identifying threat actor activity with behavior context. If you’re an AnyDesk shop, then why do you have TeamViewer installed on your file server that’s publicly facing, right? Let’s start to ask those questions and dig into that a little bit. Robert Dutt: Your SOC found that fake CAPTCHA and ClickFix campaigns accounted for, I think it was 50-odd percent of identifiable incidents. That’s a majority of attacks being driven by a technique that essentially requires the victim to step on the link to execute it themselves. Why is that scaling so fast right now? And especially for an MSP who tends to think, you know, my technicians are too smart to do that. What’s kind of the honest answer for what they need to be looking for and protecting against? Wil Santiago: Yeah. And, you know, ClickFix is such an easy attack when you really get into the root of what it does. But it starts with social engineering. You’re enticing someone, again, just like with phishing, to visit something that you’re going to tell them to do an action. And most of the time, they’re going to do that action. Now, why this is so effective is we’re seeing techniques that really enable the threat actor to deliver the payload. And how do they do that? Search engine optimization, right? These SEO links at the top, when you go look for an OBS installer, because you need your camera to look well, or you get a Google sponsor result. Threat actors are just buying those sponsored results and delivering their payloads on there. You click on it thinking you’re going to download OBS, and then it tells you, hey, wait a second, you have to make sure that you are human. Verify that we’re used to verifying we’re humans to download something. So we go and we click it. But then it says, hey, open up your Windows Run command and maybe run this command on us, on your computer for us. And what happens? Threat actors go and they put the commands on a website. They have this watering hole spread out all throughout infrastructure that’s globally distributed. Google, Microsoft, all these sort of cloud infrastructure hosting providers that exist. Threat actors use those. So when you’re looking at your firewall logs and you’re seeing your internal team going to Microsoft.com, hey, it’s Microsoft, right? But the reality is, it’s likely an Azure Blob site that’s just being hosted on Microsoft, that is a threat actor that’s actually hosting it. And so they’re abusing that trust function to say, hey, you need this OBS installer. You Googled it. I didn’t tell you to go Google that. You were the one that did that. And then they found my link, which I posted a malicious payload there. And so again, that abuse factor is all the things we’ve taught our employees, our customers, our MSPs to do, right? Go to Google, make sure you identify the link. Make sure you look for Microsoft. Make sure you see the end of a URL or domain. Validate that. Well, the adversary goes, okay, they want to play that game. I’m just going to host this on Cloudflare. And now we’re back to this gate where now someone clicks on something. Well, what’s this Cloudflare? That’s a legitimate service. I know that to be true, right? It’s very true. The reality is the infrastructure is very, very easy to set up. And it doesn’t require a lot of action. It just requires someone to take a command and put it on their machine. And all the background work happens in the background, right? And so beyond that, we used to see a lot of threat actors use this sort of technique to download malware onto machines. But again, going back to what I mentioned about RMMs, now they’re just downloading an RMM. And that just looks like a legitimate process to an EDR. Robert Dutt: Right. So for an MSP, especially when training or making sure their technicians are aware, is it just as simple as making sure they’re aware of this threat landscape and this wrinkle in it? Or is there something more that’s sort of the advice there on how to protect yourself as best you can? Wil Santiago: That’s a great question. And really, you know, I would say any MSP watching this show, starting today or tomorrow, the first thing that I always tell people, audit your RMM inventory. Asset inventory is the number one thing that customers should be doing, right? You cannot protect what you don’t know exists. And so every single remote management tool that’s deployed across every endpoint you manage, every server you manage, you need to audit those, right? Like you’re giving direct access to a system. And most of the time, those RMMs run in the system context, which means they have the permissions and privileges of any admin, right? And now you have this adversary that has a foothold. They can deploy tools using admin privileges and permissions. So you have to audit your RMM inventory, right? Making sure that you understand what’s happening across those production servers. And forcing MFA, that’s a big one. We see a lot of incidents that source from RMM abuse because they log into the MSP’s RMM console, the cloud-based consoles. Some of those don’t have MFA involved. Again, keys to the kingdom, MFA everywhere, that needs to be a reality. Then we need to start moving into what I call more resilient engineering, right? Conditional access policies, preventing individuals from logging in from untrusted sources, locations, right? There’s ways that you can lock down access to an RMM and assume a threat actor is able to steal credentials because they maybe installed an info stealer on a user’s machine, stole their browser credentials. They reuse the same credentials for Gmail that they do for their corporate environment. Well, now a threat actor just perusing finds their credentials and says, “Oh, I’ve got IT Glue permissions now. I’m going to go log into this and restore all these configs in IT Glue or whatever tools out there.” Well, now the threat actor has access to that. And so that’s how they’re pivoting across these environments. They’re going from cloud to on-prem, on-prem to cloud. One of the things that we caught at Blackpoint recently, and this was a really cool response, but the threat actor compromised the cloud environment first. They then took that cloud access, deployed an RMM using Intune to the devices, and then they used that on-prem access to go to those machines and do their own work directly from that console. I called it overkill. They didn’t have to do that because they had the cloud environment. But because they did that, that sort of prompted this investigation for this MSP to approach us and say, “Hey, we believe something is happening. We investigated and quickly saw the Intune process was the responsible process for deploying some of this malware. So we told them, “Hey, deploy our cloud response suite. We want to understand what’s happening in your cloud.” And sure enough, seven global admins were compromised. So again, limiting scope is important here, right? Least privilege. Why do we have so many people with admin privileges and permissions? I think there’s 192 admin roles or something like that in Microsoft, but we default to just, you get global admin, you get all the permissions. And so now an adversary compromises a Microsoft 365 tenant. Well, now they have the permissions of a global admin. And unfortunately for us, when we shifted from the on-prem strategy to the cloud strategy, we just started pushing everything in the cloud and we say, “Oh, it’s fine. It’s in SharePoint.” We didn’t realize though that that’s only being protected by a password and an MFA token, both of which can be stolen, right? So the protection is not really there. That’s why we have to move to that resilient engineering. And so it’s moving from that reactive alerting to that posture alerting, right? Why is someone trying to log in from France? We have nobody in France. Robert Dutt: So your report showed almost a third of triaged incidents involved RMM abuse. And that’s something, that kind of trend line is something that we’ve seen in other reports. You know, one of your peers is talking about a 200 plus percent spike in abuse of RMM in attacks. I’m curious, especially since you’re sitting in the SOC there, what does RMM based intrusion actually look like in the SOC here? You know, I’m guessing curious, is there a moment where it’s genuinely hard to tell, you know, is this actually a tech doing a routine task or is this an attacker? And if so, what kind of breaks the tie and causes you to go, “No, no, that’s not right.” Wil Santiago: Yeah. Well, there’s kind of two ways to look at it, right? We have threat actors that are compromising MSP RMM tools. These are tools that are owned, managed by the MSP. They’re usually protected with some cloud login, whether they self-host it or they have the vendor host it for them. Threat actors can log into those systems with a password and a username, right? So we see a lot of brute forcing of those systems, especially if they’re self-hosted systems, they usually don’t have the protections of the vendors. They don’t put a WAF in front of them. And so they’ll try to brute force them and just log in, right? Those are few and far between, to be quite honest. We don’t see those as often, but what we do see often is, again, they gain access into an environment, usually by compromising a VPN. Now they’re on the network. Now they can move throughout that network as they’re on the VPN, and they’ll usually find a foothold. And if they have a credential like a local admin, they’ll take that one foothold and then they’ll distribute their RMM across that entire fleet of the network with one command from that foothold. So for us, when we’re looking at RMM deployments, MSPs deploy RMMs in a certain manner and format. They’re not deploying an RMM at two o’clock in the morning on a Saturday when they’re a US-based company. And oh, by the way, they just logged in from a Chinese-based IP, right? So again, there’s indicators that are very clear cut of like, okay, this deployment of RMM tools absolutely malicious. Most of those cases come to the case of, you know, we have application control within Blackpoint that allows us to alert when someone is installing a new application that’s unauthorized. And so what we tell our MSPs to do is, hey, set up your policies that if you’re a Ninja RMM shop, you cannot have any other installations of any other RMM. ScreenConnect is not going to be involved. And so that allows us and affords us the ability to do is, when we get that alert that says someone’s attempting to install a ScreenConnect, we can go back and sort of recreate the path of how do they get here. And what that allows us to really get into is, again, that response, right? And that response is preventing the installation of the RMM, eradicating the threat actor by isolating the machine, making sure you remove their footholds, getting those SSL VPNs off of the public facing internet, and having that exposure management reduced, right? And so when we look at RMM abuse in practice, once they get that RMM installed, again, they’re living off the land with system privileges. System privileges is something that most people tend to understand, but it’s just keys to the kingdom. You are God mode at that point. You can do whatever you feel to deploy and ultimately spread your access with that level of access, right? And so they’ll use it for backdoors. And oftentimes, they may compromise the environment and say, “You know what? I’m busy.” We’ve actually seen this over the holidays where they go take their breaks. Just like everyone else does. It’s Christmas. I’ve done a lot of hacking. So they leave their leave-behind tools and they come back. That’s their access factor. Again, it’s one of those things where they’re hiding in plain sight. Robert Dutt: You touched on MFA a little while ago and the report flagged the use of adversary-in-the-middle attacks. AiTM attacks that let threat actors hijack authenticated sessions, even when the MFA is there. So I guess what’s the message to MSPs who are thinking, “All right, if we just get MFA everywhere, we’re good, we’re covered.” Wil Santiago: Token protection, right? MFA is great. You have to have it. But understand that there’s flaws in the way that MFA communicates to servers. And so the whole way that an adversary-in-the-middle attack works is by abusing OAuth. And OAuth is a standard protocol of just making sure that we understand how systems should communicate for authentication. And what’s really nice about that is we can take that offensive research and then make defensive practices towards that. And so token protection is really huge there. There are a lot of built-in protections in Microsoft that allow you to invalidate session tokens after a certain period of time. Every hour you could refresh these tokens. You now, again, when you get to this resilient engineering, you start to push the adversary to be a little bit more aggressive. And that’s your detection mechanism. When you allow an adversary to move unfettered throughout a network, they’re going to move unfettered throughout a network. But the moment that you give them that sort of, “Eh, stop here. Let me see your ID.” Then they start to get a little uneasy. They’re like, “Wait a second. I don’t know how to move anymore.” And so specifically in MFA, when we talk about session hijacking and session tokens, the token protection aspect is really important because that’s a conditional access policy that you can implement. And most people do not implement those conditional access policies. Now, there’s a slew of them that work in conjunction with each other. But the idea here is your tokens will likely be compromised at some point. If you are duped into clicking one of these phishing links, it’s very easy to steal a session token. So we have to move past that. Now that we know that’s going to happen, how do we prevent the adversary from actually using those session tokens successfully? And that’s where invalidating the sessions comes in, having the session protection, conditional access policies, protected devices, things of that sort. That prevents them from being able to use those session tokens. Robert Dutt: A stat that I keep looking at in the report was that you guys managed to disrupt in the SOC 55, 56 percent of incidents before a payload was deployed. It’s a real number. That’s pretty significant. I guess what is disrupted before the payload hits mean operationally? And what does it tell us about where the detection opportunity actually lives? Because it sounds like the window isn’t did malware execute? It’s something a lot earlier. Wil Santiago: That’s exactly right. When we look at the cyber kill chain, we want to start pushing our adversaries as far left of boom as possible. Right. And so when you hear about this whole right of boom concept, basically, you’ve met your match. And now boom, you’ve now been impacted. Right. And so there’s a lot of indicators of compromise that we can start to hone in on. That will give us an understanding of whether this is legitimate or illegitimate. Right before an adversary even types the command. And again, that’s the context. And the context is what the SOC is really understanding of a customer. Where do they operate? What are their hours of operation? Where are they globally distributed? What’s the infrastructure they use? What are the tools they use? How did they use those tools? Did they deploy tools every Thursday at 2 p.m.? So there’s this constant checklist that they’re doing every single day to understand this. And so when we talk about living off the land, threat actors are trying to execute commands. Right. They’re just trying to sit there. We’re typing on a keyboard command line. Hey, I’m not going to introduce any new factors to my intrusion. I’m just going to live off the land. Ultimately, they want to deploy a payload at the end of all of that. But if they deploy a payload too early in their kill chain, they risk getting caught. Right. And so what they’ll do is they’ll stage everything. They’ll compromise an endpoint. They’ll add a persistent backdoor user. They’ll deploy some small scripts to enumerate the network. Just to get an understanding of what’s happening. But they’ll usually stage those in like a C:UsersMusic folder. And that’s their staging environment. So you can catch them. And we’ve caught at Blackpoint a number of threat actors where their toolkits are still on the machine because we caught them so early left of boom that legitimately all they did was log into a machine, try to mount a share, but it failed. And then that failed share mount is like, wait a second. They have never tried to mount a share on this file server ever. And then you call the MSP and they’re like, yeah, Monday through Friday, our hours are from eight to three and it’s seven p.m. at Thursday. Right. Well, now the context of the intrusion starts to become a little bit more apparent. And so we have to do this very quickly. The reality is for us, behavioral context, it matters more than ever. That is the true bread and butter for stopping threat adversaries is understanding the behaviors in the context of which they employ to compromise the network or compromise an endpoint. And so we focus a lot of our threat intelligence and our adversarial intrusion analysis based off of what hack or tradecraft is. We always say this internally, you cannot protect what you don’t know how to hack. So we spend a lot of our time recreating these attacks, understanding where do we catch them? And one of the things that we found is in those early development cycles of understanding the behaviors of an adversary, we found key indicators of like, wait, that is a very high fidelity indicator that before an adversary even gets on a keyboard, we’ve already caught them. They don’t know that yet. Right. And so that’s a little bit of our secret sauce there. But the reality is that secret sauce was created because we thought like threat actors and we sort of recreated what they did in controlled environments and testing environments to then to make sure the detection and the efficacy of what they’re doing is caught within our product. Robert Dutt: So this is a bit of a sidebar, but it was a new term, at least to me. You flagged Etherhiding in the report, attackers embedding malicious logic and blockchain smart contracts to manage compromised sites. Can you walk me through that real quick? And how real is this in terms of how widely it’s being deployed today? And why does it matter for detection purposes? Wil Santiago: It’s a newer term. You know, I would like to say that we have way too many terms in security and security, you know, sort of like we’re trying to be cool. The reality is this is a technique that leverages transactions on a public blockchain to basically retrieve malicious payloads. Right. And so this is another sort of trend that an adversary is using where they’re just retrieving a payload from something that is trusted. In this case, cryptocurrency. A lot of people trust cryptocurrency. A lot of people trust public blockchains. And so the idea here is that, you know, threat actors are usually going to utilize some type of social engineering and then that social engineering is going to get you to come to like a WordPress site through that WordPress site. They’re going to basically have scripts that you’re going to download and ultimately run. Innocuously. Now, when that happens, you download something that you think is OBS, like the example I gave earlier, it’s actually a JavaScript payload. Well, that JavaScript payload goes and reaches out and it pulls a malicious payload from the ether blockchain. Right. And so that’s that aspect of there’s function calls that we’ve identified within Blackpoint that are related to that remote management of pulling payloads from that blockchain. My personal opinion of this sort of technique is, you know, it gives a lot of advantage to the threat actors in terms of stealth and flexibility. But it is one of those techniques that is complicated for majority of what we see at Blackpoint. Most threat actors are not getting to that complicated level of compromising. They’re just hosting malware on a compromised WordPress site of a legitimate company that they’ve co-opted the passwords for. Right. And again, we see threat actors from different angles. 90 percent of what we see sort of today is cybercrime related. Right. So you have a lot of the fake CAPTCHA, the ClickFix lures, the Etherhiding stuff. The reality is at the end of that payload, we see everything from Etherhiding to Cobalt Strike to ransomware and compromise. The way that they get to that sort of compromise is kind of the same, though. Robert Dutt: Last one for me, if an MSP is listening to this and they’ve just absorbed that, you know, more than half of the attacks they’re going to see start with legitimate credentials, their own tools are showing up in about a third of incidents. MFA isn’t necessarily a guarantee. Where do you start? You know, what’s the one thing they probably aren’t doing today that would meaningfully move the needle for them in terms of making sure things are as locked down, as protected as is possible? Wil Santiago: That’s a great question. I like to say we should probably be spending most of our time right now really focusing on posture and posture management, reducing the attack surface. Right. How do you how do you start? Where do you start reducing the attack surface? This is where frameworks really come into play. And there’s some really great frameworks that are really prescriptive out there. One of them is the Center for Internet Security Controls, CIS version 8.1. It’s very prescriptive and it starts from the very top, right? External facing assets and applications. How do you lock those down? Cloud assets and applications, internal assets, user accounts, passwords, right? And it gives you a prescriptive way to deal with incidents. Beyond that, there’s kind of this like practical implementation groups that they have, right? And so you can start by implementing the CIS Controls with implementing one Implementation Group, right? You don’t have to implement them all. And so I think there’s a subset of Implementation Groups that can be used, but it’s about identifying, you know, what of these sort of subset groups will really resonate with your organization and your maturity level, right? And so I tell most people, look at IG1, start with the essentials. If you’ve already fit the bill on that, then move to IG2, right? But the reality is IG1 is going to give you that foundational security for organizations. And then IG2 and IG3 are going to be a little bit more advanced for more complex things. Most people are probably in that IG1, but they probably could benefit from some of the things in the IG2, the Implementation Groups there. That’s really going to help you really target your defenses against ransomware. That’s going to help you sort of approach a risk-based approach. That’s another thing that, you know, all risk is not the same, right? Risk is treated differently. And it’s important for anyone running a security team to help understand how should I prioritize my risk, right? Where is my risk going to really give me issues if a threat actor gets into it? And therefore, I always say, start there. We all know what keeps us up at night. So that’s the areas that we need to focus on. Robert Dutt: All right. Some sage advice and some sobering numbers as well. I appreciate your taking the time and walking us through some good stuff. Wil Santiago: Thank you, Robert. I really appreciate it. Robert Dutt: There you have it. Wil Santiago from Blackpoint Cyber. I’d like to thank Wil for his time today and for bringing some real energy to what can sometimes be pretty dense subject matter. And of course, I’d like to thank you for listening. The data in this conversation is worth thinking about. More than half of the attacks Blackpoint’s SOC starts with someone simply logging in, using credentials that were stolen sometimes long ago, and that users are still reusing across platforms. A third of triaged incidents involve RMM tools, the same tools your techs are using right now to manage endpoints. And MFA, as much as we’ve come to rely on it, is no longer the finish line it once appeared to be. The antidote Wil describes is behavioral context, understanding what normal looks like in an environment so you can spot when something legitimate is being done illegitimately. Not “Is this malware?” But “Is this person, using this tool at this hour from this location, doing something they’ve never done before?” That’s a fundamentally different way about thinking of detection, and it’s why the human element in the SOC still matters. And I’ll add one thing that Wil mentioned after we wrapped the recording. It’s a dimension of this fight that doesn’t get talked about often enough. Blackpoint’s work doesn’t stop at detection and response. They’re actively working to identify and disrupt adversary infrastructure, notifying law enforcement, including, he noted, Canadian authorities, with the specific goal of making cybercrime economically painful. The logic is straightforward. If your infrastructure gets taken down every time you try to run a campaign, the math of operating a criminal enterprise starts to change. That’s offense, and it sounds like they’re playing it. If you’re finding the show valuable, I’d encourage you to follow or subscribe to the podcast. You can find us on Apple Podcasts, Spotify, YouTube, all the major directories. A rating review always helps. Until next time, I’m Robert Dutt for ChannelBuzz.ca, and I’ll see you in the channel.

CiscoChat Podcast
S7 E5: Talking securing legacy networks in the AI era with Anthony Grieco and Eric Wenger

CiscoChat Podcast

Play Episode Listen Later May 5, 2026 22:14


AB chats with Anthony Grieco, Cisco's SVP & Chief Security & Trust Officer, Security and Trust Organization. and Eric Wenger, Cisco's Senior Director, Technology Policy, Global Government Affairs, about how Cisco is revolutionizing product security by removing insecure protocols, updating defaults, and strengthening authentication across our portfolio.

Cisco TechBeat
S7 E4: Talking the vulnerability of legacy equipment, protecting network infrastructure, and ensuring ongoing lifecycle management in the AI era, with Anthony Grieco and Eric Wenger

Cisco TechBeat

Play Episode Listen Later Apr 13, 2026 22:14


AB chats with Anthony Grieco, Cisco's SVP & Chief Security & Trust Officer, Security and Trust Organization, and Eric Wenger, Cisco's Senior Director, Technology Policy, Global Government Affairs, about how Cisco is revolutionizing product security by removing insecure protocols, updating defaults, and strengthening authentication across our portfolio. 

Empowered Patient Podcast
Avoiding Critical Cybersecurity Vulnerabilities in Healthcare Systems with Kory Daniels LevelBlue

Empowered Patient Podcast

Play Episode Listen Later Mar 16, 2026 21:38


Kory Daniels, Chief Security and Trust Officer at LevelBlue, discusses the multifaceted cybersecurity challenges in the healthcare industry and the risks posed by legacy systems not designed for secure internet connectivity. Artificial intelligence is being used successfully to defend against cyber attacks, while threat actors are using AI without ethical constraints to launch sophisticated attacks. Managing cybersecurity includes using digital twins to model vulnerabilities and to develop strategies for identity and access management for human and non-human identities, such as robots and AI agents.  Kory explains, "We must recognize that we're not starting from a clean slate - we have a lot of decades-old systems operating both within the physical footprint of the healthcare and hospital facility and in record retention and data management. Many organizations are looking at how to get ahead in identifying what needs to happen to embrace new technology and much of the innovation. At the same time, being conscious and cognizant of opportunities to retrofit, taking what's there already today and making it internet-connected as an example, making it Internet of Things-connected so that devices that weren't purpose-built to communicate to the internet now can communicate to the internet, but it creates some risks and it poses some challenges."   "We highlighted that some of these legacy systems or initial systems that have been in the organization for years, some 10 years or more, were not necessarily purpose-built or designed at the time of manufacturing, nor with the software needed for those tools to operate with current speed, expectations, and requirements. Healthcare entities are engaging both patients and supporting care doctors and patient care professionals in 2026 and beyond."  #LevelBlue #HealthcareCybersecurity #DigitalTransformation #AIinHealthcare #LegacySystems #PatientSafety #CyberThreats #HealthTech #DataSecurity #MedicalDevices #DigitalHealth #HealthcareIT #CyberDefense #HealthcareInnovation #RiskManagement #ComplianceMatters LevelBlue.com Download the transcript here

Empowered Patient Podcast
Avoiding Critical Cybersecurity Vulnerabilities in Healthcare Systems with Kory Daniels LevelBlue TRANSCRIPT

Empowered Patient Podcast

Play Episode Listen Later Mar 16, 2026


Kory Daniels, Chief Security and Trust Officer at LevelBlue, discusses the multifaceted cybersecurity challenges in the healthcare industry and the risks posed by legacy systems not designed for secure internet connectivity. Artificial intelligence is being used successfully to defend against cyber attacks, while threat actors are using AI without ethical constraints to launch sophisticated attacks. Managing cybersecurity includes using digital twins to model vulnerabilities and to develop strategies for identity and access management for human and non-human identities, such as robots and AI agents.  Kory explains, "We must recognize that we're not starting from a clean slate - we have a lot of decades-old systems operating both within the physical footprint of the healthcare and hospital facility and in record retention and data management. Many organizations are looking at how to get ahead in identifying what needs to happen to embrace new technology and much of the innovation. At the same time, being conscious and cognizant of opportunities to retrofit, taking what's there already today and making it internet-connected as an example, making it Internet of Things-connected so that devices that weren't purpose-built to communicate to the internet now can communicate to the internet, but it creates some risks and it poses some challenges."   "We highlighted that some of these legacy systems or initial systems that have been in the organization for years, some 10 years or more, were not necessarily purpose-built or designed at the time of manufacturing, nor with the software needed for those tools to operate with current speed, expectations, and requirements. Healthcare entities are engaging both patients and supporting care doctors and patient care professionals in 2026 and beyond."  #LevelBlue #HealthcareCybersecurity #DigitalTransformation #AIinHealthcare #LegacySystems #PatientSafety #CyberThreats #HealthTech #DataSecurity #MedicalDevices #DigitalHealth #HealthcareIT #CyberDefense #HealthcareInnovation #RiskManagement #ComplianceMatters LevelBlue.com Listen to the podcast here

The Tech Blog Writer Podcast
Drata And The Rise Of The Chief Trust Officer In The AI Era

The Tech Blog Writer Podcast

Play Episode Listen Later Feb 20, 2026 32:24


Have you ever wondered why "compliance" still gets treated like a slow, spreadsheet-heavy chore, even though the rest of the business is moving at machine speed? In this episode of Tech Talks Daily, I sit down with Matt Hillary, Chief Information Security Officer at Drata, to talk about what actually changes when AI and automation land in the middle of governance, risk, and compliance. Matt brings a rare viewpoint because he lives this day-to-day as "customer zero," running Drata internally while also leading IT, security, GRC, and enterprise apps. We get practical fast. Matt shares how AI-assisted questionnaire workflows can turn a 120-question security assessment from a late-afternoon time sink into something you can complete with confidence in minutes, then still make it upstairs in time for dinner. He also explains how automation flips the audit dynamic by moving from random sampling to continuous, full-population checks, using APIs to validate evidence at scale, without hounding control owners unless something is actually wrong. We also talk about what security leadership really looks like when the stakes rise. Matt reflects on lessons from his time at AWS, why curiosity and adaptability matter when the "canvas" keeps changing, and how customer focus becomes the foundation of trust. That theme runs through the whole conversation, including the idea that the CISO role is steadily turning into a chief trust officer role, where integrity, transparency, and credibility under pressure matter as much as tooling. And because burnout is never far away in security, we dig into the human side too. Matt unpacks how automation can reduce cognitive load, but also warns about swapping one kind of pressure for another, especially when teams get trapped producing endless dashboards and vanity metrics instead of focusing on the few measures that actually reduce risk. To wrap things up, Matt leaves a song for the playlist, Illenium's "You're Alive," plus a book recommendation, "Lessons from the Front Lines, Insights from a Cybersecurity Career" by Asaf Karen, which he says stands out for how it treats the human side of security leadership. If you're thinking about modernizing compliance in 2026 without losing the human element, his parting principle is simple and powerful: be intentional, keep asking why, and spend your limited time on what truly matters. So where do you land on this shift toward continuous trust, do you see it becoming the default expectation for buyers and auditors, and what should leaders do now to make sure automation reduces pressure instead of quietly adding more? Share your thoughts with me, I'd love to hear how you're approaching it.

Paul's Security Weekly
Emergence of the Chief Trust Officer as CISOs Earn Business Respect and Agenda Shifts - Jeff Pollard - BSW #419

Paul's Security Weekly

Play Episode Listen Later Oct 29, 2025 60:15


Organizations that successfully earn and keep the trust of their customers, employees, and partners experience better business outcomes, more engagement, and competitive differentiation. But what does that trust look like and who's responsible for building and maintaining that trust? Jeff Pollard, Vice-President, Principal Analyst on the Security and Risk Team at Forrester Research, joins Business Security Weekly to discuss the emergence of the Chief Trust Officer. For organizations that refuse to leave trust to chance, chief trust officers have emerged as the role responsible for shaping their firm's destiny. Jeff will explain why the role has emerged and details its responsibilities, organizational structures, and measures for success. In the leadership and communications segment, Why must CISOs slay a cyber dragon to earn business respect?, Simon Sinek says the most successful people in the world ‘hit zero' or came close to it: Failure is ‘the gift', The Remote Leadership Paradox: Why Your Team Feels Micromanaged AND Abandoned (And How to Fix It), and more! Visit https://www.securityweekly.com/bsw for all the latest episodes! Show Notes: https://securityweekly.com/bsw-419

Paul's Security Weekly TV
Emergence of the Chief Trust Officer as CISOs Earn Business Respect and Agenda Shifts - Jeff Pollard - BSW #419

Paul's Security Weekly TV

Play Episode Listen Later Oct 29, 2025 60:15


Organizations that successfully earn and keep the trust of their customers, employees, and partners experience better business outcomes, more engagement, and competitive differentiation. But what does that trust look like and who's responsible for building and maintaining that trust? Jeff Pollard, Vice-President, Principal Analyst on the Security and Risk Team at Forrester Research, joins Business Security Weekly to discuss the emergence of the Chief Trust Officer. For organizations that refuse to leave trust to chance, chief trust officers have emerged as the role responsible for shaping their firm's destiny. Jeff will explain why the role has emerged and details its responsibilities, organizational structures, and measures for success. In the leadership and communications segment, Why must CISOs slay a cyber dragon to earn business respect?, Simon Sinek says the most successful people in the world 'hit zero' or came close to it: Failure is 'the gift', The Remote Leadership Paradox: Why Your Team Feels Micromanaged AND Abandoned (And How to Fix It), and more! Show Notes: https://securityweekly.com/bsw-419

Business Security Weekly (Audio)
Emergence of the Chief Trust Officer as CISOs Earn Business Respect and Agenda Shifts - Jeff Pollard - BSW #419

Business Security Weekly (Audio)

Play Episode Listen Later Oct 29, 2025 60:15


Organizations that successfully earn and keep the trust of their customers, employees, and partners experience better business outcomes, more engagement, and competitive differentiation. But what does that trust look like and who's responsible for building and maintaining that trust? Jeff Pollard, Vice-President, Principal Analyst on the Security and Risk Team at Forrester Research, joins Business Security Weekly to discuss the emergence of the Chief Trust Officer. For organizations that refuse to leave trust to chance, chief trust officers have emerged as the role responsible for shaping their firm's destiny. Jeff will explain why the role has emerged and details its responsibilities, organizational structures, and measures for success. In the leadership and communications segment, Why must CISOs slay a cyber dragon to earn business respect?, Simon Sinek says the most successful people in the world 'hit zero' or came close to it: Failure is 'the gift', The Remote Leadership Paradox: Why Your Team Feels Micromanaged AND Abandoned (And How to Fix It), and more! Visit https://www.securityweekly.com/bsw for all the latest episodes! Show Notes: https://securityweekly.com/bsw-419

Business Security Weekly (Video)
Emergence of the Chief Trust Officer as CISOs Earn Business Respect and Agenda Shifts - Jeff Pollard - BSW #419

Business Security Weekly (Video)

Play Episode Listen Later Oct 29, 2025 60:15


Organizations that successfully earn and keep the trust of their customers, employees, and partners experience better business outcomes, more engagement, and competitive differentiation. But what does that trust look like and who's responsible for building and maintaining that trust? Jeff Pollard, Vice-President, Principal Analyst on the Security and Risk Team at Forrester Research, joins Business Security Weekly to discuss the emergence of the Chief Trust Officer. For organizations that refuse to leave trust to chance, chief trust officers have emerged as the role responsible for shaping their firm's destiny. Jeff will explain why the role has emerged and details its responsibilities, organizational structures, and measures for success. In the leadership and communications segment, Why must CISOs slay a cyber dragon to earn business respect?, Simon Sinek says the most successful people in the world 'hit zero' or came close to it: Failure is 'the gift', The Remote Leadership Paradox: Why Your Team Feels Micromanaged AND Abandoned (And How to Fix It), and more! Show Notes: https://securityweekly.com/bsw-419

ITSPmagazine | Technology. Cybersecurity. Society
Your Business Apps Are Bringing Friends You Didn't Invite | A Brand Story with Saša Zdjelar, Chief Trust Officer at ReversingLabs and Operating Partner at Crosspoint Capital | A Black Hat USA 2025 Conference On Location Brand Story

ITSPmagazine | Technology. Cybersecurity. Society

Play Episode Listen Later Aug 14, 2025 28:03


In an era where organizations depend heavily on commercial applications to run their operations, the integrity of those applications has become a top security concern. Saša Zdjelar, Chief Trust Officer at ReversingLabs and Operating Partner at Crosspoint Capital, shares how protecting the software supply chain now extends far beyond open source risk.Zdjelar outlines how modern applications are built from a mix of first-party, contracted, open source, and proprietary third-party components. By the time software reaches production, its lineage spans geographies, development teams, and sometimes even AI-generated code. Incidents like SolarWinds, Kaseya, and CircleCI demonstrate that trusted vendors are no longer immune to compromise, and commercial software can introduce critical vulnerabilities or malicious payloads deep into enterprise systems.Regulatory drivers are increasing scrutiny. Executive Order 14028, Europe's Cyber Resilience Act, DORA, and U.S. Department of Defense software sourcing restrictions all require greater transparency, such as a Software Bill of Materials (SBOM). However, Zdjelar cautions that SBOMs—while valuable—are like ingredient lists without recipes: they don't reveal if a product is secure, just what's in it.ReversingLabs addresses this gap with a no-compromise analysis engine capable of deconstructing any file, of any size or complexity, to assess its safety. This capability enables organizations to make risk-based decisions, continuously monitor for unexpected changes between software versions, and operationalize controls at points such as procurement, SCCM deployments, or file transfers into critical environments.For CISOs, this represents a true technical control where previously only contractual clauses, questionnaires, or insurance policies existed. By placing analysis at the front of the software lifecycle, organizations can reduce reliance on costly manual testing and sandboxing, improve detection of tampering or hidden behavior, and even influence cyber insurance rates.The takeaway is clear: software supply chain security is a board-level concern, and the focus must expand beyond open source. With the right controls, organizations can avoid becoming the next headline-making breach and maintain trust with customers, partners, and regulators.Learn more about ReversingLabs: https://itspm.ag/reversinglabs-v57bNote: This story contains promotional content. Learn more.Guest: Saša Zdjelar, Chief Trust Officer at ReversingLabs and Operating Partner at Crosspoint Capital | On Linkedin: https://www.linkedin.com/in/sasazdjelar/ResourcesLearn more and catch more stories from ReversingLabs: https://www.itspmagazine.com/directory/reversinglabsLearn more about ITSPmagazine Brand Story Podcasts: https://www.itspmagazine.com/purchase-programsNewsletter Archive: https://www.linkedin.com/newsletters/tune-into-the-latest-podcasts-7109347022809309184/Business Newsletter Signup: https://www.itspmagazine.com/itspmagazine-business-updates-sign-upAre you interested in telling your story?https://www.itspmagazine.com/telling-your-storyKeywords: Black Hat 2025, Black Hat USA, sean martin, saša zdjelar, software supply chain security, commercial software risk, binary analysis, software bill of materials, sbom security, malicious code detection, ciso strategies, third party software risk, software tampering detection, malware analysis tools, devsecops security, application security testing, cybersecurity compliance

IBM Analytics Insights Podcasts
{Replay} AI Risks, Ethics & Law — with Christina Montgomery Chief Privacy Officer, General Motors and former IBMer

IBM Analytics Insights Podcasts

Play Episode Listen Later Jul 23, 2025 44:35


Send us a textShe's the legal powerhouse behind IBM's AI ethics strategy — and she makes law fun. In this encore episode, we revisit a fan favorite: Christina Montgomery, formerly IBM's Chief Privacy and Trust Officer, now Chief Privacy and Trust Officer, GM. From guarding the gates of generative AI risk to advising on global regulation, Christina gives us a front-row seat to what's now, what's next, and what needs rethinking when it comes to trust, synthetic data, and the future of AI law.

Making Data Simple
{Replay} AI Risks, Ethics & Law — with Christina Montgomery Chief Privacy Officer, General Motors and former IBMer

Making Data Simple

Play Episode Listen Later Jul 23, 2025 44:35


Send us a textShe's the legal powerhouse behind IBM's AI ethics strategy — and she makes law fun. In this encore episode, we revisit a fan favorite: Christina Montgomery, formerly IBM's Chief Privacy and Trust Officer, now Chief Privacy and Trust Officer, GM. From guarding the gates of generative AI risk to advising on global regulation, Christina gives us a front-row seat to what's now, what's next, and what needs rethinking when it comes to trust, synthetic data, and the future of AI law.

Crucial Tech
Episode 20.26 - The rise of NHI and the impact of Predatory Sparrow

Crucial Tech

Play Episode Listen Later Jul 9, 2025 22:44


If you are one of the smart people who have a subscription to Cyber Protection Magazine you will soon receive our next special issue focused on the rise of non-human identities (NHI) and their impact on society. If not, you get just this podcast with a hint of what is in the issue.We talk with Mike Towers, Chief Security & Trust Officer at Veza, about the meteoric increase of NHI. As a bonus, we also look into the theft of $90 million in cryptocurrency by the Israeli hacktivist group Predatory Sparrow. This represents a new area of asymmetric warfare.

israelis sparrow predatory nhi trust officer chief security veza
The FIT4PRIVACY Podcast - For those who care about privacy
Chief Digital Trust Officer with Marc Vael and Punit Bhatia in the FIT4PRIVACY Podcast E136 S06

The FIT4PRIVACY Podcast - For those who care about privacy

Play Episode Listen Later Apr 10, 2025 40:53


Every company—whether a global enterprise or a small startup—relies on trust. Customers need to believe their data is safe. Partners want assurance that compliance standards are met. But who ensures that trust is built and maintained? Enter the Chief Digital Trust Officer (CDTO)—a new role that is rapidly becoming essential.In this episode, Punit Bhatia sits down with Marc Vael, one of the world's first-ever Chief Digital Trust Officers, to explore what digital trust really means and why it matters more than ever.Whether you're a privacy professional, security expert, compliance officer, business leader, or someone looking to grow into the Chief Digital Trust Officer role, this episode is packed with practical insights that will change how you think about digital trust.

The FIT4PRIVACY Podcast - For those who care about privacy
The Chief Digital Trust Officer Role

The FIT4PRIVACY Podcast - For those who care about privacy

Play Episode Listen Later Apr 3, 2025 10:33


What does a Chief Digital Trust Officer do? Why do you need one when you have dedicated staff in privacy, risk, security, and other areas? This and more in the short conversation with Marc Vael.

TechStuff
Smart Talks with IBM: Responsible AI - Why Businesses Need Reliable AI Governance

TechStuff

Play Episode Listen Later Dec 10, 2024 28:39 Transcription Available


To deploy responsible AI and build trust with customers, businesses need to prioritize AI governance. In this episode of Smart Talks with IBM, Malcolm Gladwell and Laurie Santos discuss AI accountability with Christina Montgomery, Chief Privacy and Trust Officer at IBM. They chat about AI regulation, what compliance means in the AI age, and why transparent AI governance is good for business. Visit us at: ibm.com/smarttalks Explore watsonx.governance: https://www.ibm.com/products/watsonx-governance This is a paid advertisement from IBM. See omnystudio.com/listener for privacy information.

Lessons I Learned in Law
Building Trust in Tech: Lessons from Trustpilot's Chief Trust Officer, Anoop Joshi

Lessons I Learned in Law

Play Episode Listen Later Nov 14, 2024 49:00


In this episode of Lessons I Learned in Law, Scott Brown is joined by Anoop Joshi, Chief Trust Officer at Trustpilot. Anoop's unique career journey from private practice to leading trust, transparency, and legal operations for one of the world's leading review platforms offers insights for any lawyer looking to break new ground. With a background that blends law, tech, and business, Anoop shares the key lessons that have shaped his approach to legal practice, leadership, and career growth.Listen in as Anoop discusses:Why project management is a powerful skill for any in-house lawyer, and his approach to making complex projects succeed.The importance of broadening one's perspective and looking beyond traditional legal disciplines.The value of defining and sticking to personal principles, even when navigating the complex intersection of law and ethics in tech.Whether you're curious about the evolving role of legal leadership in the digital age or seeking practical advice on career management, Anoop's journey is filled with valuable takeaways for any legal professional.Key Takeaways:Project Management as a Career Supercharger: Anoop shares how developing project management skills can set lawyers apart in in-house roles and why empathy and understanding stakeholder needs are vital.Keep Your Eyes on the Horizon: The impact of exposure to various disciplines is a recurring theme, as Anoop reflects on how his non-traditional career path has shaped his approach to law.Stick to Your Principles: Learn why Anoop believes defining and adhering to personal values and professional "red lines" is essential, particularly in high-stakes roles that blend legal and ethical considerations.Bringing Tech to Law: From his days in software engineering to leading Trustpilot's legal operations, Anoop discusses the benefit of blending tech with legal for greater impact.The Chief Trust Officer Role: Dive into what it means to head up trust and transparency for a platform like Trustpilot, managing everything from content integrity to compliance.Links Mentioned in the Episode:Connect with Anoop Joshi on LinkedInThe Personal MBA by Josh KaufmanLex Fridman Podcast

Risky Business
Risky Business #768 -- CSRB will investigate China's Wiretap Hacks

Risky Business

Play Episode Listen Later Oct 30, 2024 51:37


On this week's show Patrick Gray and Adam Boileau discuss the week's cybersecurity news, including: CSRB to investigate China's telco-wiretapping hacks Euro law enforcement takes down the Redline infostealer Someone steals Fed crypto… and then tries to quietly sneak it back in Russia sentences REvil guys to … jail? Really? Apple private cloud compute gets a proper bug bounty program And much, much more. This week's episode is sponsored by Material Security, who help navigate the mess of cloud productivity data security. Daniel Ayala - Chief Security and Trust Officer at Dotmatics - is a Material customer, and joins Pat and Material Security's Rajan Kapoor to talk about how to wrangle securing data that ends up in corporate cloud email and file stores. This episode is also available on Youtube. Show notes Apple 10 day certificates Chinese hackers said to have collected audio of American calls U.S. Panel to Probe Cyber Failures in Massive Chinese Hack of Telecoms How a series of opsec failures led US authorities to the alleged developer of the Redline password-stealing malware Operation Magnus Hacker Returns $19.3 Million to Drained US Government Crypto Wallet Meet ZachXBT, the Masked Vigilante Tracking Down Billions in Crypto Scams and Thefts | WIRED Radar systems in Iran breached prior to Israel's Saturday counter-strike - report Delta sues CrowdStrike after widespread IT outage that caused thousands of cancellations Tens of thousands of taxpayer accounts hacked as CRA repeatedly paid out millions in bogus refunds Microsoft CEO asked board to cut pay in connection with security overhaul | Cybersecurity Dive Four REvil members sentenced to more than four years in prison Russia says it might build its own Linux community after removal of several kernel maintainers Nigerian court drops charges against detained Binance executive Tigran Gambaryan Apple will pay security researchers up to $1 million to hack its private AI cloud | TechCrunch SonicWall firewalls the common access point in spreading ransomware campaign | Cybersecurity Dive Fortinet zero-day attack spree hits at least 50 customers | Cybersecurity Dive Cisco warns actively exploited CVE can lead to DoS attacks against VPN services | Cybersecurity Dive Chinese influence operation targets US down-ballot races, Microsoft says | Reuters Exclusive: Accused Iranian hackers successfully peddle stolen Trump emails | Reuters Viral video of ripped-up Pennsylvania ballots is fake and Russian-made, intelligence agencies say Product Demo: Securing M365 and Google Workspace with Material Security

The Quill & Sword
The Quill & Sword | NSL Unscripted | Episode 21 – Big Tech in Armed Conflict Part 2

The Quill & Sword

Play Episode Listen Later Oct 30, 2024


This episode is part two of a two-part series which captures the live recording of a panel held at the 1st Emerging Technologies in the Law Course. In this episode, LTC(R) Laura West, Former Chair of the National Security Law Department, wraps up her conversation with the panelists and ends by fielding questions from the audience. Tune is as the esteemed panelists, Professor Gary Corn, Director of the Technology, Law & Security Program at American University Washington College of Law, Mr. Jonathan Horowitz, Legal Advisor at International Committee of the Red Cross-ICRC, and Mr. Matt Fussa, Trust Officer at Cisco Systems, finish the fascinating conversation they started last episode! NSL Practitioners interested in reviewing resources and scholarship produced by ADN should check out the Operational Law Handbook and LOAC Documentary Supplement and other significant military legal resources available at The Judge Advocate General's Legal Center and School website under publications - https://tjaglcs.army.mil/. Learn more about The Quill & Sword series of podcasts by visiting our podcast page at https://tjaglcs.army.mil/thequillandsword. The Quill & Sword show includes featured episodes from across the JAGC, plus all episodes from our four separate shows: “Criminal Law Department Presents” (Criminal Law Department), “NSL Unscripted” (National Security Law Department), “The FAR and Beyond” (Contract & Fiscal Law Department) and “Hold My Reg” (Administrative & Civil Law Department). Connect with The Judge Advocate General's Legal Center and School by visiting our website at https://tjaglcs.army.mil/ or on Facebook (tjaglcs), Instagram (tjaglcs), or LinkedIn (school/tjaglcs).

The Quill & Sword
The Quill & Sword | NSL Unscripted | Episode 20 – Big Tech in Armed Conflict Part 1

The Quill & Sword

Play Episode Listen Later Sep 25, 2024


This episode is part one of a two-part series which captures the live recording of a panel held at the 1st Emerging Technologies in the Law Course. Moder-ated by, LTC(R) Laura West, Former Chair of the National Security Law De-partment, the panel discusses the private sector's emerging role in current and future conflict, as well as how government practitioners should consider working alongside big tech companies in future warfare. The esteemed panel-ists, Professor Gary Corn, Director of the Technology, Law & Security Pro-gram at American University Washington College of Law, Mr. Jonathan Hor-owitz, Legal Advisor at International Committee of the Red Cross-ICRC, and Mr. Matt Fussa, Trust Officer at Cisco Systems, all provide different, expert perspectives on the increasing and complex role of big tech in conflict. NSL Practitioners interested in reviewing resources and scholarship produced by ADN should check out the Operational Law Handbook and LOAC Documentary Supplement and other significant military legal resources available at The Judge Advocate General's Legal Center and School website under publications - https://tjaglcs.army.mil/. Learn more about The Quill & Sword series of podcasts by visiting our podcast page at https://tjaglcs.army.mil/thequillandsword. The Quill & Sword show includes featured episodes from across the JAGC, plus all episodes from our four separate shows: “Criminal Law Department Presents” (Criminal Law Department), “NSL Unscripted” (National Security Law Department), “The FAR and Beyond” (Contract & Fiscal Law Department) and “Hold My Reg” (Administrative & Civil Law Department). Connect with The Judge Advocate General's Legal Center and School by visiting our website at https://tjaglcs.army.mil/ or on Facebook (tjaglcs), Instagram (tjaglcs), or LinkedIn (school/tjaglcs).

IBM Analytics Insights Podcasts
Learn AI Ethics, Risks, and Regulation! Christina Montgomery, IBM's Chief Privacy and Trust Officer. Yes, Law can be fun AND very interesting.

IBM Analytics Insights Podcasts

Play Episode Listen Later Jul 31, 2024 44:35


Send us a Text Message.Learn AI Ethics, Risks, and Regulation with Christina Montgomery, IBM's Chief Privacy and Trust Officer.  Yes, Law can be fun AND very interesting.   01:00 Christina Montgomery!04:36 My Daughter and the Bar08:36 Chief Privacy and Trust Officer11:37 Keeping IBM Out of Trouble13:34 Client Conversations16:23 Where to Be Bullish and Bearish20:52 The Risks of LLMs24:21 NIST and AI Alliance28:26 AI Regulation36:13 Synthetic Data38:00 Misconceptions40:07 Worries41:27 The Path to AI43:13 Aspiring Lawyers Linkedin: linkedin.com/in/christina-montgomery-8776b1a Website: https://www.ibm.com/impact/ai-ethicsWant to be featured as a guest on Making Data Simple?  Reach out to us at almartintalksdata@gmail.com and tell us why you should be next.  The Making Data Simple Podcast is hosted by Al Martin, WW VP Technical Sales, IBM, where we explore trending technologies, business innovation, and leadership ... while keeping it simple & fun. Want to be featured as a guest on Making Data Simple? Reach out to us at almartintalksdata@gmail.com and tell us why you should be next. The Making Data Simple Podcast is hosted by Al Martin, WW VP Technical Sales, IBM, where we explore trending technologies, business innovation, and leadership ... while keeping it simple & fun.

Making Data Simple
Learn AI Ethics, Risks, and Regulation! Christina Montgomery, IBM's Chief Privacy and Trust Officer. Yes, Law can be fun AND very interesting.

Making Data Simple

Play Episode Listen Later Jul 31, 2024 44:35


Send us a Text Message.Learn AI Ethics, Risks, and Regulation with Christina Montgomery, IBM's Chief Privacy and Trust Officer.  Yes, Law can be fun AND very interesting.   01:00 Christina Montgomery!04:36 My Daughter and the Bar08:36 Chief Privacy and Trust Officer11:37 Keeping IBM Out of Trouble13:34 Client Conversations16:23 Where to Be Bullish and Bearish20:52 The Risks of LLMs24:21 NIST and AI Alliance28:26 AI Regulation36:13 Synthetic Data38:00 Misconceptions40:07 Worries41:27 The Path to AI43:13 Aspiring Lawyers Linkedin: linkedin.com/in/christina-montgomery-8776b1a Website: https://www.ibm.com/impact/ai-ethicsWant to be featured as a guest on Making Data Simple?  Reach out to us at almartintalksdata@gmail.com and tell us why you should be next.  The Making Data Simple Podcast is hosted by Al Martin, WW VP Technical Sales, IBM, where we explore trending technologies, business innovation, and leadership ... while keeping it simple & fun. Want to be featured as a guest on Making Data Simple? Reach out to us at almartintalksdata@gmail.com and tell us why you should be next. The Making Data Simple Podcast is hosted by Al Martin, WW VP Technical Sales, IBM, where we explore trending technologies, business innovation, and leadership ... while keeping it simple & fun.

Aging in Place Strategies and Answers
The role of the trust officer/trust company in my aging life plan

Aging in Place Strategies and Answers

Play Episode Listen Later May 29, 2024 25:51


Send us a Text Message.Mary Schmidt, Sr. Vice President from TI-Trust joins me to help us learn how a trust company can help you develop and execute an aging life plan while representing your interests and serving your beneficiaries. Support the Show.

Data Protection Breakfast Club
“Didn't you guys invent the Barcode?” w/ Christina Montgomery - Chief Privacy & Trust Officer @ IBM

Data Protection Breakfast Club

Play Episode Listen Later Mar 13, 2024 46:11


Christina Montgomery is IBM's Chief Privacy & Trust  Officer and has spent over 29 years at the company! In that time Christina has just about done it all from a legal perspective.  Prior to her current role, she was Secretary to IBM's Board of Directors, was Managing Attorney, overseeing the IBM law department's strategic and transformational initiatives, hiring and recruiting, professional development, budget management, and other projects on a worldwide basis.Now Christina is leading the charge on IBM's AI Ethics Board speaking publicly about the challenges and benefits of emerging AI technologies.

The Six Five with Patrick Moorhead and Daniel Newman
The Six Five Insider with Christina Montgomery, VP and Chief Privacy & Trust Officer at IBM

The Six Five with Patrick Moorhead and Daniel Newman

Play Episode Listen Later Jan 23, 2024 21:24


On this episode of The Six Five – Insider, hosts Daniel Newman and Patrick Moorhead welcome Christina Montgomery, Vice President and Chief Privacy & Trust Officer from IBM for a conversation on AI and the importance of her role in AI as Chief Privacy and Trust Officer. Their discussion covers: An introduction from Christina Montgomery about her role and what it entails at IBM What role, as the Chief Privacy Officer, did she play in the development of IBM's AI platform, watsonx What concerns clients have about AI and how is IBM addressing them Her recommendations on where organizations can begin when looking to adopt AI Learn more about IBM's AI platform, watsonx, on the company's website.  

Hey Amarillo
Rep. Four Price

Hey Amarillo

Play Episode Listen Later Dec 22, 2023 51:32


A conversation with State Representative Walter Thomas "Four" Price IV, who has decided not to run again after he completes his 7th term representing Texas House District 87, which includes Potter County. Price is from Amarillo and has been instrumental in creating significant legislation related to telemedicine, telehealth, mental health and more. A former practicing attorney and current Trust Officer with Amarillo National Bank, Price shares with host Jason Boyett about his legal career, his path into state politics, and the characteristics he hopes his eventual successor will bring to the task of representing Panhandle people. This episode is sponsored by SKP Creative and Shemen Dental.

price amarillo panhandle trust officer texas house district potter county jason boyett
SHIFT
Live: Understanding AI Governance

SHIFT

Play Episode Listen Later Nov 8, 2023 47:34


Privacy officers from Google, Microsoft, Meta and IBM discuss how they approach AI governance before a live audience at the general meeting of the IAPP (International Association of Privacy Professionals) on November 3, 2023 in Boston, Massachusetts.  We Meet: Julie Brill, Chief Privacy Officer, Corporate Vice President, Global Privacy & Regulatory Affairs, Microsoft Keith Enright, Global Chief Privacy Officer, Google Christina Montgomery, Chief Privacy and Trust Officer, IBM Rob Sherman, Vice President and Deputy Chief Privacy Officer, Policy, Meta Credits: SHIFT is produced by Jennifer Strong and Anthony Green, with help from Emma Cillekens. It's mixed by Garret Lang, with original music from him and Jacob Gorski.

Stuff To Blow Your Mind
Smart Talks with IBM: Responsible AI: Why Businesses Need Reliable AI Governance

Stuff To Blow Your Mind

Play Episode Listen Later Oct 18, 2023 27:52 Transcription Available


To deploy responsible AI and build trust with customers, businesses need to prioritize AI governance. In this episode of Smart Talks with IBM, Malcolm Gladwell and Laurie Santos discuss AI accountability with Christina Montgomery, Chief Privacy and Trust Officer at IBM. They chat about AI regulation, what compliance means in the AI age, and why transparent AI governance is good for business. Visit us at: ibm.com/smarttalks Explore watsonx.governance: https://www.ibm.com/products/watsonx-governance This is a paid advertisement from IBM.See omnystudio.com/listener for privacy information.

Revisionist History
Responsible AI: Why Businesses Need Reliable AI Governance

Revisionist History

Play Episode Listen Later Oct 17, 2023 26:57 Transcription Available


To deploy responsible AI and build trust with customers, businesses need to prioritize AI governance. In this episode of Smart Talks with IBM, Malcolm Gladwell and Laurie Santos discuss AI accountability with Christina Montgomery, Chief Privacy and Trust Officer at IBM. They chat about AI regulation, what compliance means in the AI age, and why transparent AI governance is good for business. Visit us at: https://www.ibm.com/smarttalks/ Explore watsonx.governance: https://www.ibm.com/products/watsonx-governance This is a paid advertisement from IBM.See omnystudio.com/listener for privacy information.

The Steve Harvey Morning Show
Responsible AI: Why Businesses Need Reliable AI Governance

The Steve Harvey Morning Show

Play Episode Listen Later Oct 17, 2023 26:57 Transcription Available


To deploy responsible AI and build trust with customers, businesses need to prioritize AI governance. In this episode of Smart Talks with IBM, Malcolm Gladwell and Laurie Santos discuss AI accountability with Christina Montgomery, Chief Privacy and Trust Officer at IBM. They chat about AI regulation, what compliance means in the AI age, and why transparent AI governance is good for business. Visit us at: https://www.ibm.com/smarttalks/ Explore watsonx.governance: https://www.ibm.com/products/watsonx-governance This is a paid advertisement from IBM.Support the show: https://www.steveharveyfm.com/See omnystudio.com/listener for privacy information.

TechStuff
Smart Talks with IBM - Responsible AI: Why Businesses Need Reliable AI Governance

TechStuff

Play Episode Listen Later Oct 17, 2023 28:00 Transcription Available


To deploy responsible AI and build trust with customers, businesses need to prioritize AI governance. In this episode of Smart Talks with IBM, Malcolm Gladwell and Laurie Santos discuss AI accountability with Christina Montgomery, Chief Privacy and Trust Officer at IBM. They chat about AI regulation, what compliance means in the AI age, and why transparent AI governance is good for business. Visit us at: ibm.com/smarttalks Explore watsonx.governance: https://www.ibm.com/products/watsonx-governance This is a paid advertisement from IBM.See omnystudio.com/listener for privacy information.

Into the Zone
Responsible AI: Why Businesses Need Reliable AI Governance

Into the Zone

Play Episode Listen Later Oct 17, 2023 26:57 Transcription Available


To deploy responsible AI and build trust with customers, businesses need to prioritize AI governance. In this episode of Smart Talks with IBM, Malcolm Gladwell and Laurie Santos discuss AI accountability with Christina Montgomery, Chief Privacy and Trust Officer at IBM. They chat about AI regulation, what compliance means in the AI age, and why transparent AI governance is good for business. Visit us at: https://www.ibm.com/smarttalks/ Explore watsonx.governance: https://www.ibm.com/products/watsonx-governance This is a paid advertisement from IBM.See omnystudio.com/listener for privacy information.

Deep Background with Noah Feldman
Responsible AI: Why Businesses Need Reliable AI Governance

Deep Background with Noah Feldman

Play Episode Listen Later Oct 17, 2023 26:57 Transcription Available


To deploy responsible AI and build trust with customers, businesses need to prioritize AI governance. In this episode of Smart Talks with IBM, Malcolm Gladwell and Laurie Santos discuss AI accountability with Christina Montgomery, Chief Privacy and Trust Officer at IBM. They chat about AI regulation, what compliance means in the AI age, and why transparent AI governance is good for business. Visit us at: https://www.ibm.com/smarttalks/ Explore watsonx.governance: https://www.ibm.com/products/watsonx-governance This is a paid advertisement from IBM.See omnystudio.com/listener for privacy information.

Story of the Week with Joel Stein
Responsible AI: Why Businesses Need Reliable AI Governance

Story of the Week with Joel Stein

Play Episode Listen Later Oct 17, 2023 26:57 Transcription Available


To deploy responsible AI and build trust with customers, businesses need to prioritize AI governance. In this episode of Smart Talks with IBM, Malcolm Gladwell and Laurie Santos discuss AI accountability with Christina Montgomery, Chief Privacy and Trust Officer at IBM. They chat about AI regulation, what compliance means in the AI age, and why transparent AI governance is good for business. Visit us at: https://www.ibm.com/smarttalks/ Explore watsonx.governance: https://www.ibm.com/products/watsonx-governance This is a paid advertisement from IBM.See omnystudio.com/listener for privacy information.

Solvable
Responsible AI: Why Businesses Need Reliable AI Governance

Solvable

Play Episode Listen Later Oct 17, 2023 26:57 Transcription Available


To deploy responsible AI and build trust with customers, businesses need to prioritize AI governance. In this episode of Smart Talks with IBM, Malcolm Gladwell and Laurie Santos discuss AI accountability with Christina Montgomery, Chief Privacy and Trust Officer at IBM. They chat about AI regulation, what compliance means in the AI age, and why transparent AI governance is good for business. Visit us at: https://www.ibm.com/smarttalks/ Explore watsonx.governance: https://www.ibm.com/products/watsonx-governance This is a paid advertisement from IBM.See omnystudio.com/listener for privacy information.

Smart Talks with IBM
Responsible AI: Why Businesses Need Reliable AI Governance

Smart Talks with IBM

Play Episode Listen Later Oct 17, 2023 26:57 Transcription Available


To deploy responsible AI and build trust with customers, businesses need to prioritize AI governance. In this episode of Smart Talks with IBM, Malcolm Gladwell and Laurie Santos discuss AI accountability with Christina Montgomery, Chief Privacy and Trust Officer at IBM. They chat about AI regulation, what compliance means in the AI age, and why transparent AI governance is good for business. Visit us at: https://www.ibm.com/smarttalks/ Explore watsonx.governance: https://www.ibm.com/products/watsonx-governance This is a paid advertisement from IBM.See omnystudio.com/listener for privacy information.

The Propaganda Report
Bank of America Scandal Exposes Toxic Progressivism & "Chief Trust Officer" (DNB)

The Propaganda Report

Play Episode Listen Later Jul 14, 2023 36:41


Bank of America Scandal Exposes Toxic Progressivism & "Chief Trust Officer" (DNB) To Support The Show & Get Exclusive XR Content, DNB Ad Free, Check Out The Links Below Propaganda Report is creating Podcasts | Patreon Propaganda Report Community (locals.com) Propaganda Report | Rokfin Help keep the show afloat with a one-time donation PayPal.Me Follow me on Twitter, Youtube, & Rumble (12) Binkley (@freedomactradio) / Twitter Brad Binkley - YouTube The Propaganda Report (rumble.com) The Propaganda Report (propagandafight.com) Learn more about your ad choices. Visit megaphone.fm/adchoices

Shift: Rethinking Business
Building trust in telecom with a human-led, tech enabled approach

Shift: Rethinking Business

Play Episode Listen Later Apr 26, 2023 21:52


In this episode, host Jon Finkelstein, Executive Creative Director at PwC Canada sits down with Pamela Snively, Chief Data and Trust Officer at TELUS, and Ojas Rege, SVP and GM of Privacy and Data Governance at OneTrust. Together, they discuss the trending topics of trust and privacy, and why they're so essential to a company's revenue, reputation and overall success.Show Notes: (00:02)- Jon's introduction to CEO Viewpoints, Pamela Snively and Ojas Rege(02:03)- Pamela and Ojas provide a brief overview of their careers and backgrounds so far(03:35)- Ojas explains the difference between privacy and trust(04:16)- Pamela describes some of the recent changes she's seen in the data trust and privacy world(06:45)- Ojas shares his advice for organizations hoping to make their programs successful(09:24)- Pamela describes the meaning of “human-led, tech-powered”(11:28)- Ojas shares more about the work they're doing at OneTrust, and how tech is powering trust(13:49)- Pamela explains why it's important to encourage data literacy across the entire organization(16:34)- Pamela explains how businesses can think about trust holistically instead of as just another a compliance check box(20:40)- Jon shares his closing thoughts and conclusions

The Former Lawyer Podcast
How The Guided Track Supported Marquel Stuedemann in Transitioning from Lawyer to Trust Officer

The Former Lawyer Podcast

Play Episode Listen Later Jan 9, 2023 43:42


This episode features Marquel Stuedemann, who joined the Former Lawyer Collaborative in the Fall 2021 cohort of Guided Track.  Marquel discusses her experiences before and after joining The Collaborative. In this episode, you will see what being in The Collaborative looks like and how the support can help you leave the law by identifying an alternative career that is a great fit for you.  If you would love to have the same experience as Marquel Stuedemann, you can join the next Guided Track cohort that starts in February. The Guided Track is a ten-week support program that gives you access to all the resources in The Collaborative, including weekly support calls with five other lawyers that get into the program. You also get a 30-minute one-on-one call with Sarah Cottrell, which you can use during the ten weeks.  Now, let's get into the conversation with Marquel.

Your Best Lifestyles
Beverly Neal -Clinton, Senior Executive Trust Officer, Director Of American American Trust. Sponsored By PIPS CABO TAKEOVER . CABOTAKEOVER.COM

Your Best Lifestyles

Play Episode Listen Later Nov 19, 2022 124:15


Another great interview with brilliant professionals such as Beverly Neal -Clinton, Senior Executive Trust Officer, Director Of American American Trust. We talked about the importance of money, understanding money, using money as a tool, understanding taxes ,the codes, benefits, investments, generational wealth, financial wellness, and more! Did you know The IRS Codes has over 73,000 pages and only 522 of them are relevant to personal income taxes? There are 143 million people who find themselves receiving a 1099 or who are small business owners or who are in the medical profession. She would like to share how economic empowerment is a choice. You can do better when you know better. It is our intent to show that we can all do better. Questions to ASK yourself... Do you or anyone you know like paying taxes? What could you do with an extra $74,458, if you are single or $94,645 if you are married? What if inflation is actually a gift? Use the US Internal Revenue Codes to legally pay only what you owe, and not a penny more. What would you do if you thought you were failing only to find out that you were actually succeeding? They are having a drop in for every who receives a 1099 on FBLive: Upcoming event on FB, Wednesday, 16 November 2022 @ 3:00 MT: use this link to attend: https://fb.me/e/5WIPNlqZG Show hosted by: Terrance Hutchinson www.yourbestlifestyles.com 404-3122748 --- Send in a voice message: https://anchor.fm/yourbestlifestyles/message

The Tech Trek
Empathy-driven process development

The Tech Trek

Play Episode Listen Later Nov 17, 2022 27:50


In this episode, Ty Sbano, an Information Security executive with over 17 years of experience heavily focused on empowering end users securely, talks about “Empathy-Driven Process Development.” He speaks about driving change and how we are changed by empathy. Key takeaways: What is empathy-driven process development Taking yourself out of the equation when changing processes How fast do you want to drive change Understand the impact of change on people The larger the scale of the impact, the more time you might need Understanding your change curve and having your champions Avoiding thrash by making only a finite number of touches to your process Intentional process development Thinking about the process, so your successor is set up for success About today's guest: Ty Sbano is an Information Security executive with over 17 years of experience heavily focused on empowering end users securely. Ty currently serves as Vercel's Chief Information Security Officer (CISO). Previously, Ty was the Chief Security & Trust Officer at Sisense. Ty's career has been focused on developing application and product security programs for Capital One, JPMorgan Chase, LendingClub, and Target. Key areas of knowledge include developing security champions, threat modeling, secure code training, static code analysis, component analysis, dynamic analysis, penetration testing, and red teaming. Outside of being a CISO, Ty is an active angel investor in Silicon Valley CISO Investment Groups (SVCI) and advisor to Cider Security, Nightfall.ai, and Identify Security. Ty's security mentality has been concentrated on enabling engineering and product teams to move securely at the speed of the business to make it a competitive advantage. Ty graduated from Penn State University with a B.S. in Information Science & Technology and from Norwich University with a M.S. in Information Assurance. He currently holds a CISSP, CEH, CCSK, and CPT. LinkedIn: https://www.linkedin.com/in/tysbano/ Thank you so much for checking out this episode of The Tech Trek, and we would appreciate it if you would take a minute to rate and review us on your favorite podcast player. Want to learn more about us? Head over at https://www.elevano.com Have questions or want to cover specific topics with our future guests? Please message me at https://www.linkedin.com/in/amirbormand (Amir Bormand)

Data Protection Breakfast Club
"Horse Photography, Synthetic Data, and the Rise of the Machines" w/ Alexandra Ebert, Chief Trust Officer @ Mostly AI

Data Protection Breakfast Club

Play Episode Listen Later Oct 5, 2022 47:03


Andy & Pedro speak with Alexandra Ebert, a Responsible AI, synthetic data & privacy expert who serves as Chief Trust Officer at MOSTLY AI. As a member of the company's executive leadership team, she is engaged in public policy issues in the emerging field of synthetic data and Ethical AI and is responsible for engaging with the privacy community, with regulators, the media, and with customers. The DPBC podcast is a TechGC production.  Learn more about the TechGC's thriving in-house legal community at https://www.techgc.co/ Follow Andy on LinkedIn: https://www.linkedin.com/in/andy-dale-7705b83/  Follow TechGC on LinkedIn: https://www.linkedin.com/company/techgc

The ManDate Podcast
Homelessness w/ Crypto Kyle Pickner

The ManDate Podcast

Play Episode Listen Later Jul 13, 2022 57:45


Before all of his accomplishments, Kyle was homeless....a little by choice and a little by circumstance. Listen now. Meet Kyle Pickner. Kyle recently joined Plains Commerce Bank as Chief Trust Officer. Kyle began working in the trust industry in 2013 and gained a wealth of experience working with various organizations in roles such as Trust Officer, Chief Compliance Officer, and Director of Trust Operations. Kyle most recently led the financial operations for one of the world's largest digital asset custodians, taking them from a start-up to a multi-billion-dollar institution. Thriving on a challenge, Kyle was tasked with the idea of combining Silicon Valley tech and Wall Street finance. Kyle's goal at Plains Commerce Bank is to bridge the gap between traditional finance and cryptocurrency. He understands that conventional banking is changing right before our eyes. With his extensive expertise in blockchain technology and digital assets, Kyle will lead the Plains Commerce team in bringing to market industry-first digital asset solutions to be offered for the first time through the traditional banking environment. Kyle aims to instill a mainstream public confidence in cryptocurrency and to ultimately help usher in a new era of innovation and efficiency for the bank. Kyle's clear vision will take Plains Commerce into the future as they pave their way into the age of digitization. Find out more about Kyle at www.plainscommerce.com or find him on LinkedIn (linkedin.com/in/kyle-pickner-759777205) Instagram @mandatepod Patreon - www.patreon.com/mandatepodcast Email - mandate.pod@gmail.com Website - www.anchor.fm/mandate --- Send in a voice message: https://anchor.fm/mandate/message

ITSPmagazine | Technology. Cybersecurity. Society
A Conversation With Chief Security & Trust Officer, Malcolm W Harkins | Securing Bridges With Alyssa Miller | Episode 11

ITSPmagazine | Technology. Cybersecurity. Society

Play Episode Listen Later Jun 2, 2022 41:45


In this episode, Alyssa talks to Malcolm Harkins, Chief Security & Trust Officer.________________________________It is a podcast, yes, but you can join us as we record each episode live on Twitter, LinkedIn, Facebook, and Youtube.Live, Every Wednesday at 1pm PDT | 4pm EDT (USA) | The Recorded Podcast version is published a few days later.Our ability to improve the security posture of our organizations depends heavily on connecting the security function with the various aspects of the business. Join our host, Alyssa Miller, as she and her guests examine key ways to build and secure the bridges between security, product development, the executive suite, and beyond.Listen in as Alyssa sits down with senior and executive security leaders from various industries to share stories of successes and failures we experience working across business teams. Explore practical strategies for building sponsorship and gaining buy-in for security initiatives.It's time to build and secure the bridge to the business.________________________________GuestMalcolm M HarkinsChief Security & Trust Officer at Epiphany Systems [@EpipSys]On LinkedIn | https://www.linkedin.com/in/malcolmharkins/On Twitter | https://twitter.com/ProtectToEnable________________________________HostAlyssa MillerOn ITSPmagazine  

The ManDate Podcast
Kyle Pickner - Cryptocurrency 101 - Plains Commerce Bank

The ManDate Podcast

Play Episode Listen Later Apr 26, 2022 48:54


Meet Kyle Pickner. Kyle recently joined Plains Commerce Bank as Chief Trust Officer. Kyle began working in the trust industry in 2013 and gained a wealth of experience working with various organizations in roles such as Trust Officer, Chief Compliance Officer, and Director of Trust Operations. Kyle most recently led the financial operations for one of the world's largest digital asset custodians, taking them from a start-up to a multi-billion-dollar institution. Thriving on a challenge, Kyle was tasked with the idea of combining Silicon Valley tech and Wall Street finance. Kyle's goal at Plains Commerce Bank is to bridge the gap between traditional finance and cryptocurrency. He understands that conventional banking is changing right before our eyes. With his extensive expertise in blockchain technology and digital assets, Kyle will lead the Plains Commerce team in bringing to market industry-first digital asset solutions to be offered for the first time through the traditional banking environment. Kyle aims to instill a mainstream public confidence in cryptocurrency and to ultimately help usher in a new era of innovation and efficiency for the bank. Kyle's clear vision will take Plains Commerce into the future as they pave their way into the age of digitization. Main Takeaway: Read credible resources and invest in bitcoin now before it blows up. Key Takeaways: Who gives teenagers money to start a storage business (5:00) From startup to $40 billion dollar custodian. Kyle's journey leading a company to the future. (10:00) What is BitGo? (12:00) What is cryptocurrency? (17:00) What is bitcoin mining? GIANT computers and not for the hobby investor (25:00) Public key vs. Private key (30:30) Why is Kyle so passionate about crypto? (36:30) Where to buy your FIRST cryptocurrency & why? (45:00) Find out more about Kyle at www.plainscommerce.com or find him on LinkedIn (linkedin.com/in/kyle-pickner-759777205) Instagram @mandatepod Patreon - www.patreon.com/mandatepodcast Email - mandate.pod@gmail.com Website - www.anchor.fm/mandate --- Send in a voice message: https://anchor.fm/mandate/message

The Family Biz Show
Ep 54. The World Saving Power of Family Philanthropy with Guests Yale Levey, Scott Farnsworth & Ryan Ponsford

The Family Biz Show

Play Episode Listen Later Apr 5, 2022 58:14


Listen into this exciting new episode with guests Yale Levey*, Ryan Ponsford* and Scott Farnsworth* as we discuss the world-saving power of family philanthropy!   The beauty of philanthropy is that there's no financial skill you can't learn through it.  We will cover how philanthropy can look very different between families & how the grandparents handle the public image of it (positive or negative) and how philanthropy can bring family members who may not generally have interest in the family business together, simply because of the type of philanthropy they're doing. OUR GUESTS Yale Levey*  Co-Founder and President - Gateway for Good  Yale's professional background and experience originates from the wealth management space.  In that role, he stands out as someone who has ascended to a place of expertise where wealth management intersects philanthropic activities, helping his clients, fellow advisors and youth build philanthropy and giving into their activities and behaviors.  Understanding that true wealth is much more than just dollars and cents, it was this awareness that led Yale to pioneer the formation of one of the country's first holistic wealth consulting firms.  Through his years of intentionally building philanthropy and giving into the work he does for families and business leaders, Yale has led the way in igniting conversations beyond wealth and profitability into a conversation about impact and significance.  He understands that philanthropy and giving is perhaps one of the best tools we have available to reunite a divided world.  Yale is the thought leader and innovator you want in the room when you're looking to design something new that aligns your purpose and passion with profits and impact. Ryan Ponsford*  Co-Founder and Board Chair – Gateway for Good  Ryan's professional background and experience originates in the private banking world.  In that role, as an advisor to affluent families, over time, Ryan saw the challenges and dangers surrounding wealth preservation and wealth accumulation in families and businesses.  He saw that even the best financial planning didn't necessarily lead to happy, functional and successful people, families or businesses.  He came to know that the place planning breaks down is often around communication, trust, purpose, mission and vision.  This realization served as the catalyst that led him to begin focusing on how he could help his clients experience success and continuity not only in terms of financial success, but life success. Scott Farnsworth*  Scott Farnsworth, J.D., is a nationally-recognized speaker, author, and practitioner in the fields of wills, living trusts, tax-free retirement, charitable giving, and values-based estate planning.  Over the years, he has poured his innovation and creativity into a wide range of enterprises designed to connect families, change lives, and inspire clients to preserve and pass on their legacies.  These include Family Heritage International; the Cerus Company; SunBridge, Inc.; Legacy Planning Associates, LLC; Main Street Philanthropy; and Personal Asset Advisors.  Most recently, Scott founded Will & Trust Express because he believes high-quality legal services should be available and affordable for middle-income individuals and families. He has developed tools and processes that simplify the creation of professional-grade living trusts, wills, living wills, and powers of attorney for Florida residents.  In addition to his four decades of professional experience as a will and trust attorney, he was Vice President & Trust Officer at Trustmark National Bank and professor of business law at the University of Southern Mississippi.    Scott has designed and presented hundreds of speeches, seminars, and professional workshops to a wide range of client organizations, and estate planning, financial planning, and philanthropic groups over the past 42 years.  In addition to this collection of essays, he is the author of four other books: Closing the Gap: A Revolutionary Approach to Client Services; Like a Library Burning: Sharing and Saving a Lifetime of Stories; Puzzling Questions for Middle Income Families; and Double Your Sales: An Honest and Authentic Approach to Professional Selling.  He grew up on a small dairy farm in Fruitland, New Mexico, one of thirteen children in a “yours, mine, and ours” family. He earned his undergraduate degree magna cum laude at Brigham Young University in Portuguese and Political Science, with a minor in Philosophy.  He earned his law degree magna cum laude at Brigham Young University Law School, where he was Managing Editor of BYU Law Review and the author of two professionally published legal articles.  Following graduation, he served as Judicial Clerk for Judge Paul H. Roney of the United States Court of Appeals for the Fifth Circuit, who was based in St. Petersburg, Florida.  He and his wife Marcie live in Orlando, Florida.  They are the proud parents of six children and the grandparents of eight grandchildren  -----  *not affiliated with Lincoln Financial Group  Michael Palumbos is a registered representative of Lincoln Financial Advisors Corp. Securities and investment advisory services offered through Lincoln Financial Advisors Corp., a broker/dealer (member SIPC) and registered investment advisor. Insurance offered through Lincoln affiliates and other fine companies. Family Wealth & Legacy, LLC is not an affiliate of Lincoln Financial Advisors Corp. Lincoln Financial Advisors Corp. and its representatives do not provide legal or tax advice. You may want to consult a legal or tax advisor regarding any legal or tax information as it relates to your personal circumstances.  CRN-4559712-031722

The Whinypaluza Podcast
096: Financial Empowerment for Women

The Whinypaluza Podcast

Play Episode Listen Later Nov 12, 2021 29:14


Adrienne GraceThe Whinypaluza Podcast with Rebecca Greene Episode 096 Financial Empowerment for WomenAdrienne Grace is committed to women's financial freedom. Author of the best-selling book, Going from We to Me: A Financial Guide to Divorce, Adrienne provides sophisticated yet compassionate financial guidance to women contemplating divorce, in process, and post-divorce. Widows and women in a wealth transition (inheritance, sale of business, retirement) engage Adrienne to organize, manage, grow, and protect their assets and loved ones. Adrienne uses the wide knowledge and experience gained over an outstanding career in financial services as Bank Manager, Trust Officer, Investment Advisor Representative, Insurance Manager, Financial Planner and Divorce Financial Analyst, to help women as they pass through their transitions to achieve their goals. She has been featured on Impact Radio, on podcasts, and is a popular speaker. Both divorced and widowed herself, Adrienne has walked this difficult path and found joy on the other side. You can, too. Listen to this insightful Whinypaluza episode with Adrienne Grace about financial empowerment for women.Here is what to expect on this week's show: Why many women are not financially literate and how they can become more confident about money. How many marriages still have divisions of labor, so women don't ask about finances. Why knowing how money runs through the house makes you a better financial partner. Why you need to know what the financial picture of your life is and how to do that. How money isn't pink or blue, it's green, and we all have the capacity to learn about it.  Connect with Adrienne:adriennegrace.comPurchase Adrienne's book:https://bit.ly/FinancialGuideDivorceInstagram@womenswealthadvocateFacebookhttps://www.facebook.com/adriennerothsteingrace Follow Rebecca GreeneBlogwhinypaluza.comBookbit.ly/WhinypaluzaBookFacebookfacebook.com/whinypaluzaparentingInstagram@becgreene5 Learn more about your ad choices. Visit megaphone.fm/adchoices

The Whinypaluza Podcast
096: Financial Empowerment for Women

The Whinypaluza Podcast

Play Episode Listen Later Nov 12, 2021 28:49


Adrienne Grace The Whinypaluza Podcast with Rebecca Greene Episode 096 Financial Empowerment for Women Adrienne Grace is committed to women's financial freedom. Author of the best-selling book, Going from We to Me: A Financial Guide to Divorce, Adrienne provides sophisticated yet compassionate financial guidance to women contemplating divorce, in process, and post-divorce. Widows and women in a wealth transition (inheritance, sale of business, retirement) engage Adrienne to organize, manage, grow, and protect their assets and loved ones.   Adrienne uses the wide knowledge and experience gained over an outstanding career in financial services as Bank Manager, Trust Officer, Investment Advisor Representative, Insurance Manager, Financial Planner and Divorce Financial Analyst, to help women as they pass through their transitions to achieve their goals. She has been featured on Impact Radio, on podcasts, and is a popular speaker. Both divorced and widowed herself, Adrienne has walked this difficult path and found joy on the other side. You can, too.   Listen to this insightful Whinypaluza episode with Adrienne Grace about financial empowerment for women. Here is what to expect on this week's show: Why many women are not financially literate and how they can become more confident about money. How many marriages still have divisions of labor, so women don't ask about finances. Why knowing how money runs through the house makes you a better financial partner. Why you need to know what the financial picture of your life is and how to do that. How money isn't pink or blue, it's green, and we all have the capacity to learn about it.   Connect with Adrienne: adriennegrace.com Purchase Adrienne's book: https://bit.ly/FinancialGuideDivorce Instagram @womenswealthadvocate Facebook https://www.facebook.com/adriennerothsteingrace Follow Rebecca Greene Blog whinypaluza.com Book bit.ly/WhinypaluzaBook Facebook facebook.com/whinypaluzaparenting Instagram @becgreene5 Learn more about your ad choices. Visit megaphone.fm/adchoices

Changing The Sales Game
048. Dawn Mullarney & Jane Simon - Podcast, Sales and Wealth

Changing The Sales Game

Play Episode Listen Later Sep 20, 2021 39:26


Connie's motivational quote for today is by – Benjamin Franklin, “Beware of little expenses.  A small leak will sink a ship.” YouTube: https://youtu.be/TGHHloyIMK8 Check Out These Highlights: Money, kind of an important thing in your life…right?  So why does it feel like sometimes you just never have enough?  What are the right habits that you may need to do to improve your savings and decrease your spending? About Dawn Mullarney & Jane Simon: Today my guests are Dawn Mullarney and Jane Simon.  Dawn is a Trust Officer and Trust Marketing Specialist in the Wealth Management Division at State Bank of Cross Plains in Wisconsin. Jane Simon has extensive experience in private banking, Jane coordinates and manages all aspects of her client's banking services. Her goal is to create a unified vision and strategy for your finances. Private banking is for those who utilize a wide variety of banking services, have complex banking needs, or simply need someone they can trust. Our clients can benefit from having one main contact—a private banker—who coordinates all their services.  How to Get in Touch With Website: www.sbcp.bank   Dawn's Email:  dmullarney@sbcp.bank Jane's Email:  jsimon@sbcp.bank Podcast: https://blog.sbcp.bank/introducing-our-new-podcast-wealthways Stalk me online! Heart-Centered Sales Leader Facebook group: tinyurl.com/HSCLFacebookGroup Website:  https://whitmanassoc.com/ Apple Podcast:  https://podcasts.apple.com/us/podcast/heart-centered-sales-leader/id1543243616 Connie's #1 International Bestseller Book - ESP (Easy Sales Process): 7-Step to Sales Success:  https://whitmanassoc.com/resources/ Download Free Communication Style Assessment:  www.whitmanassoc.com/csa Connie's ESP (Easy Sales Process) MasterClass:  https://whitmanassoc.com/espmasterclass/   Subscribe and listen to the Heart-Centered Sales Leader Podcast on your favorite podcast streaming service or on YouTube.  New episodes post every Monday on webtalkradio.net - listen to Connie dive into new sales and business topics or problems you may have in your business.