POPULARITY
This week, our guest is Mathieu Gorge from Vigitrust joins to discuss generational attitudes toward privacy and how they will influence business in the future. Ben's got the story of the FBI misusing Section 702 authority to surveil Americans. Dave's got a recap of congressional testimony about AI security. While this show covers legal topics, and Ben is a lawyer, the views expressed do not constitute legal advice. For official legal advice on any of the topics we cover, please contact your attorney. Links to stories: FBI misused surveillance tool on Jan. 6 suspects, BLM arrestees and others OpenAI CEO tells Senate that he fears AI's potential to manipulate views Got a question you'd like us to answer on our show? You can send your audio file to caveat@thecyberwire.com. Hope to hear from you. Learn more about your ad choices. Visit megaphone.fm/adchoices
In this podcast, Mathieu Gorge, CEO and founder of VigiTrust, talks with Sean Martin about GRC (Governance, Risk, and Compliance) software. Gorge's award-winning VigiOne tool enables clients to prepare for, validate, and manage continuous compliance with more than 100 security frameworks worldwide.Gorge also discusses the idea that security is a journey, not a destination, and how risk surfaces change continually. He recommends choosing a GRC platform that allows different stakeholders to view risk from different perspectives. Gorge also discusses his Five Pillars of Security framework, which focuses on physical security, people's security, data security, infrastructure security, and crisis management. Gorge also talks about the VigiTrust Global Advisory Board, a think-tank that brings together people from all over the world to discuss topics such as geopolitical risk, critical infrastructure protection, and diversity and inclusion in cybersecurity.The risk conversation has become a hot topic. Listen in to this episode to think differently about how you approach, analyze, and address the risk your organization faces.Note: This story contains promotional content. Learn more: https://www.itspmagazine.com/their-infosec-storyGuest:Mathieu Gorge, CEO at VigiTrust [@VigiTrust] - Chairman of the VigiTrust Global Advisory BoardOn Linkedin | https://www.linkedin.com/in/mgorge/On Twitter | https://twitter.com/MatGorgeResourcesLearn more about VigiTrust and their offering: https://itspm.ag/vigitrust04e618More about Mathieu Gorge: https://mathieugorge.com/Book | The Cyber Elephant in the Boardroom: Cyber-Accountability with the Five Pillars of Security Framework: https://mathieugorge.com/book/For more RSAC Conference Coverage podcast and video episodes visit: https://www.itspmagazine.com/rsa-conference-usa-2023-rsac-san-francisco-usa-cybersecurity-event-coverageAre you interested in telling your story?https://www.itspmagazine.com/telling-your-story
In this podcast, Mathieu Gorge, CEO and founder of VigiTrust, talks with Sean Martin about GRC (Governance, Risk, and Compliance) software. Gorge's award-winning VigiOne tool enables clients to prepare for, validate, and manage continuous compliance with more than 100 security frameworks worldwide.Gorge also discusses the idea that security is a journey, not a destination, and how risk surfaces change continually. He recommends choosing a GRC platform that allows different stakeholders to view risk from different perspectives. Gorge also discusses his Five Pillars of Security framework, which focuses on physical security, people's security, data security, infrastructure security, and crisis management. Gorge also talks about the VigiTrust Global Advisory Board, a think-tank that brings together people from all over the world to discuss topics such as geopolitical risk, critical infrastructure protection, and diversity and inclusion in cybersecurity.The risk conversation has become a hot topic. Listen in to this episode to think differently about how you approach, analyze, and address the risk your organization faces.Note: This story contains promotional content. Learn more: https://www.itspmagazine.com/their-infosec-storyGuest:Mathieu Gorge, CEO at VigiTrust [@VigiTrust] - Chairman of the VigiTrust Global Advisory BoardOn Linkedin | https://www.linkedin.com/in/mgorge/On Twitter | https://twitter.com/MatGorgeResourcesLearn more about VigiTrust and their offering: https://itspm.ag/vigitrust04e618More about Mathieu Gorge: https://mathieugorge.com/Book | The Cyber Elephant in the Boardroom: Cyber-Accountability with the Five Pillars of Security Framework: https://mathieugorge.com/book/For more RSAC Conference Coverage podcast and video episodes visit: https://www.itspmagazine.com/rsa-conference-usa-2023-rsac-san-francisco-usa-cybersecurity-event-coverageAre you interested in telling your story?https://www.itspmagazine.com/telling-your-story
Mathieu Gorge from VigiTrust sits down to discuss the different ways that online attackers target younger and older generations, and what the cybersecurity industry can and should do to protect them. Dave and Joe share some listener follow up from Greg who writes in regarding porch pirates possibly finding a new way to steal packages. In Joe's story this week, we learn that while ransomware was down last year, more and more people are clicking on phishing emails. Dave's story follows Ahad Shams, the co-founder of Web3 metaverse gaming engine startup Webaverse, who ended up getting $4 million of his cryptocurrency stolen. Our catch of the day comes from listener Rodney who writes in about an email he received. The scammers were trying to collect information from him after saying he was already scammed out of money, when in fact he was not. Links to stories: New cybersecurity data reveals persistent social engineering vulnerabilities Scammers steal $4 million in crypto during face-to-face meeting Have a Catch of the Day you'd like to share? Email it to us at hackinghumans@thecyberwire.com or hit us up on Twitter.
There are only two kinds of companies: the one that has been hacked… and the one that hasn't yet. To find out how to keep your hospitality business secure, tune in to this episode as we are joined by Mathieu Gorge, CEO and founder of VigiTrust. The award-winning provider of Integrated Risk Management (IRM) SaaS solutions helps companies around the world in the hospitality, retail, transportation, higher education, government, healthcare, and eCommerce industries.This is a fascinating episode as it affects us all. We take a deep dive into what cyber security is – and why it is important for the C-suite to be heavily involved in this and what the impact can be if you get hacked. We also delve into Mathieu's Five Pillars of Security framework, what to train your staff, and what to be aware of when collecting sensitive data.Links:‘The Cyber Elephant In The Boardroom' by Mathieu Gorge: https://www.amazon.co.uk/dp/1950863417VigiTrust: https://vigitrust.com/ Mathieu Gorge's website: https://mathieugorge.com/ Mathieu Gorge's LinkedIn: https://ie.linkedin.com/in/mgorge Hospitality Mavericks Reading List: https://www.hospitalitymavericks.com/p/reading-list/ Connect with the podcast:Join the Hospitality Mavericks newsletter: https://rb.gy/5rqyeq A big thank you to our sponsor Bizimply who are helping progressive leaders and operators making every shift run like clockwork. Head to our website at www.bizimply.com or email them directly at advice@bizimply.com.This podcast uses the following third-party services for analysis: Podcorn - https://podcorn.com/privacyChartable - https://chartable.com/privacy
In this episode I talk with Mathieu Gorge the CEO of Vigitrust about emerging threats in the world and how Vigitrust can help prepare an organization to better prepare and respond to those threats. We had a fantastic conversation and I hope everyone enjoys it! If you enjoy the podcast please go leave a review on the platform you listen, like it & share the podcast. You can also follow the podcast on social media at the links below.Follow the Podcast on Social Media!Instagram: https://www.instagram.com/secunfpodcast/Twitter: https://twitter.com/SecUnfPodcastPatreon: https://www.patreon.com/SecurityUnfilteredPodcastMathieu Social Media:https://www.linkedin.com/in/mgorge/https://vigitrust.com/https://amzn.to/3wHsrsMThe Fren ZoneThe Fren Zone brings you the brightest technical minds in crypto and Web3. Join our...Listen on: Apple Podcasts SpotifySupport the show
Everyday organizations are constantly managing risk and as cybersecurity professionals, there's a struggle to get the board to understand that risk. Our guest today shares his insights of his 5 pillars of security framework to increase the effectiveness of the risk conversation to the board and engaging them to reduce risk and secure the organization."I'm very passionate about the topic, and specifically very passionate about building a culture of cybersecurity within enterprises. Anything that has to do with security awareness, making people more cyber aware, is something that's really close to my heart."Mathieu Gorge is the CEO and founder of VigiTrust, a cybersecurity company with clients in 120 countries. Mathieu has over 20 years of IT security and risk management experience and is much-sought after for his expertise. As an authority on cybersecurity solutions, he has been asked to speak at conferences including RSA, ISSA and ISACA. Mathieu is a prominent member of the international cybersecurity community—due to VigiTrust's continued success as well as its 5 Pillars of Security Framework™— and serves as president and chief security officer of the French Irish Chamber of Commerce. Mathieu has more than 15 years of experience in payment security, and works closely with the PCI Council in the US and EU. He is a renowned expert in PCI DSS, GDPR, CCPA, HIPAA, VRM, and ISO 27001.Mathieu GorgeLinkedIn: https://www.linkedin.com/in/mgorgeWebsite: https://mathieugorge.comThe Cyber Elephant in the Boardroom (Amazon)In this episode, you will learn the following:The challenges of communicating cyber risk to the boardroom The importance of understanding how cyber security measures fit into the financial side of things The human impact of being a CSO, including the challenges of maintaining a work-life balance.Show LinksNIS2 - https://www.nis-2-directive.com/ENISA - https://www.enisa.europa.eu/Privacy Laws - CCPA - https://oag.ca.gov/privacy/ccpaPrivacy Laws - GDPR - https://gdpr-info.eu/Follow Me Printing Hacking Story - ForbesKnowBe4 ResourcesKnowBe4 Blog: https://blog.knowbe4.comErich Kron - https://www.linkedin.com/in/erichkronJelle Wieringa - https://www.linkedin.com/in/jellewieringaJames McQuiggan - https://www.linkedin.com/in/jmcquigganJavvad Malik: https://www.linkedin.com/in/javvadMusic Composed by: Brian Sanyshyn - https://www.briansanyshynmusic.comAnnouncer: Sarah McQuiggan - https://www.sarahmcquiggan.com
Nuisance-level DDoS and cyberespionage continue to mark Russia's cyber campaign in the hybrid war. There's a US Presidential memorandum on software supply chain security. Webworm repurposes older RATs. Trends in cyber insurance claims. OriginLogger may be the new Agent Tesla. The SparklingGoblin APT described. Mathieu Gorge of VigiTrust describes cyber vulnerabilities in the hospitality industry. Dinah Davis from Arctic Wolf explains a PayPal phishing attack. And Royal funeral phishbait. For links to all of today's stories check out our CyberWire daily news briefing: https://thecyberwire.com/newsletters/daily-briefing/11/178 Selected reading. Pro-Russia hackers claim to have temporarily brought down Japanese govt websites (Asia News Network) Gamaredon APT targets Ukrainian government agencies in new campaign (Cisco Talos) Russia-linked Gamaredon APT target Ukraine with a new info-stealer (Security Affairs) Fears grow of Russian spies turning to industrial espionage (The Record by Recorded Future) Enhancing the Security of the Software Supply Chain through Secure Software Development Practices (The White House) Enhancing the Security of the Software Supply Chain to Deliver a Secure Government Experience (The White House) White House releases post-SolarWinds federal software security requirements (Federal News Network) Webworm: Espionage Attackers Testing and Using Older Modified RATs (Threat Hunter Team Symantec) Coalition Releases 2022 Cyber Claims Report: Mid-year Update (GlobeNewswire News Room) OriginLogger: A Look at Agent Tesla's Successor (Unit 42) You never walk alone: The SideWalk backdoor gets a Linux variant (WeLiveSecurity) [Scam site harvests credentials] (Proofpoint) Current, former social media execs address national security issues at Senate hearing (Fox Business) Senators Have Stopped Embarrassing Themselves at Tech Hearings (Slate Magazine)
Mathieu Gorge of VigiTrust talks about the Marriott Hotel data breach that happened back in June, including the facts of the event and why once-per-year security awareness training isn't enough when many employees only work seven months of the year. He also offers some privacy tips that will keep your hotel system privacy compliant under a whole host of different compliance frameworks. – Get your FREE cybersecurity training resources: https://www.infosecinstitute.com/free – View Cyber Work Podcast transcripts and additional episodes: https://www.infosecinstitute.com/podcast0:00 - Security awareness and data breaches2:50 - Elephant in the boardroom book5:42 - Gorge's latest projects and book9:38 - Hacking of the Marriott Hotel19:22 - Marriott's privacy and data collection policies23:20 - Ensuring data privacy worldwide 30:13 - How hotel franchises handle security34:32 - Skills needed for securing the hotel industry38:12 - What is DigiTrust?41:20 - OutroAbout InfosecInfosec believes knowledge is power when fighting cybercrime. We help IT and security professionals advance their careers with skills development and certifications while empowering all employees with security awareness and privacy training to stay cyber-safe at work and home. It's our mission to equip all organizations and individuals with the know-how and confidence to outsmart cybercrime. Learn more at infosecinstitute.com.
In this episode of Cyber Security Inside, Tom and Camille sit down with Mathieu Gorge, CEO & Founder of VigiTrust, Forbes Featured Author. They discuss the benefits and challenges of talking with higher ups and board members about cyber security needs, and how you can approach that conversation more effectively. Mathieu shares his 5 Stages of Cyber Security Grief and stories from his experiences on this episode. Check it out! To find more episodes of Cyber Security Inside, video interviews, and blogs on cybersecurity topics, visit our website at https://cybersecurityinside.com. The views and opinions expressed are those of the guests and author and do not necessarily reflect the official policy or position of Intel Corporation.
More cyberespionage targets Russian networks. Lincoln Project veterans visit Ukraine with advice on conducting an influence campaign against President Putin. A politically motivated DDoS attack hits the Port of London Authority website. Is REvil back and looking into new criminal techniques, or is a recent DDoS campaign the work of impostors? RansomHouse may be operated by frustrated bounty hunters. Kevin Magee from Microsoft sets his security sights toward space. Our guest is Mathieu Gorge of VigiTrust to discuss the threat of printer hacks. Operation Delilah trims SilverTerrier's locks. For links to all of today's stories check out our CyberWire daily news briefing: https://thecyberwire.com/newsletters/daily-briefing/11/101 Selected reading. Unknown APT group has targeted Russia repeatedly since Ukraine invasion (Malwarebytes Labs) Hackers target Russian govt with fake Windows updates pushing RATs (BleepingComputer) Researchers Find New Malware Attacks Targeting Russian Government Entities (The Hacker News) Ukraine May Use Lincoln Project's Anti-Trump Tactics Against Putin (Newsweek) Pro-Iran Group ALtahrea Hits Port of London Website by DDoS Attack (HackRead) REvil Resurgence? Or a Copycat? (Akamai) RansomHouse: Bug bounty hunters gone rogue? (Help Net Security) Data theft gang RansomHouse might be 'frustrated' white hat hackers, researchers claim (Tech Monitor) CISA Adds 20 Known Exploited Vulnerabilities to Catalog (CISA) CISA adds 41 flaws to its Known Exploited Vulnerabilities Catalog (Security Affairs) Rockwell Automation Logix Controllers (CISA) Matrikon OPC Server (CISA) Mitsubishi Electric FA Engineering Software Products (Update D) (CISA) Mitsubishi Electric Factory Automation Engineering Products (Update F) (CISA) Suspected head of cybercrime gang arrested in Nigeria (Interpol) Interpol arrests alleged leader of the SilverTerrier BEC gang (BleepingComputer) INTERPOL hauls in alleged Nigerian cybercrime ringleader (CyberScoop) Operation Delilah: Unit 42 Helps INTERPOL Identify Nigerian Business Email Compromise Actor (Unit42)
In this episode I talk with Mathieu Gorge the CEO of Vigitrust about the Russia Ukraine Conflict and much more. As always if you enjoy the episode please leave a review of this podcast on Apple Podcasts. Below is the social media links for the podcast and Mathieu's social media links. Thanks everyone!Follow the Podcast on Social Media! Instagram: https://www.instagram.com/secunfpodcast/Twitter: https://twitter.com/SecUnfPodcastPatreon: https://www.patreon.com/SecurityUnfilteredPodcastMathieu Social Media:https://www.linkedin.com/in/mgorge/Support the show (https://www.patreon.com/SecurityUnfilteredPodcast)
The triumphant homecoming of Huawei's CFO. Microsoft describes the FoggyWeb backdoor, a significant cyberespionage tool. Kaspersky looks at the BloodyStealer Trojan and finds it especially risky to gamers. A novel approach to distributed denial-of-service. Apple looks into those iPhone zero-days. Joe Carrigan looks at the latest offerings in passwordless authentication. Our guest is Mathieu Gorge of VigiTrust on how law enforcement and executives can work together to fight cyber threats. And a look at doings in cybercrime: the US arrests more than thirty members of the Black Axe gang, a Russian convict is deported back to face Russian justice, and a blockchain maven pleads guilty to helping Pyongyang. For links to all of today's stories check out our CyberWire daily news briefing: https://www.thecyberwire.com/newsletters/daily-briefing/10/187
This week we step out of the SOC and into the Board room to discuss how to communicate much needed cybersecurity issues to C-Suite executives. Talking points: Words that Work Not using Fear International Communication C-Suite Scenario Guest: Mathieu Gorge (founder/CEO of VigiTrust and author of the new ForbesBooks title The Cyber-Elephant in the Boardroom) Cyber Elephant in the Room: https://vigitrust.com/news/the-cyber-elephant-in-the-boardroom-is-available-on-rsa-conferences-digitalguru-technical-bookshop/
Cybercrime has been with us for a while, but the business world saw it as a minor annoyance. Luckily, the criminal world kept the cost low, requiring small ransom amounts and cash cards as a delivery mechanism. #Cryptocurrency kicked the demands up because it was easier to demand more money and easier to hide the money trail. Big ransomware demands hit the news and infrastructure was threatened. But in 2020 and 2021, law enforcement figured out some ways to track those criminals down. Extraditions began and ransoms were recovered. The gloves are coming off and CEOs find themselves squarely in the crosshairs of regulators and stakeholders along with the criminals. In September 2020, Gartner Research predicted that CEOs would be held criminally and fiscally liable for cyberattacks that harmed people physically if the company had not taken basic precautions to prevent it. We talk with Mathieu Gorge, CEO of VigiTrust and author of the Cyber Elephant in the Boardroom, about what CEOs need to be investing in to keep themselves out of jail. --- Send in a voice message: https://anchor.fm/crucialtech/message Support this podcast: https://anchor.fm/crucialtech/support
Updates on the DarkSide ransomware attack on Colonial Pipeline. Other ransomware strains, including Avaddon and Babuk are out, and dangerous. Guidelines on 5G threat vectors. Lemon Duck cryptojackers are looking for vulnerable Exchange Server instances. A bogus, malicious Chrome app is circulating by smishing. Ben Yelin examines an online facial recognition platform. Our guest is Mathieu Gorge of VigiTrust on the privacy risks of video and audio recordings. And an update on an espionage trial. For links to all of today's stories check out our CyberWire daily news brief: https://www.thecyberwire.com/newsletters/daily-briefing/10/90
Cyber accountability is often overlooked by Board of Directors and the C-Suite. They tend to turn a blind eye to their cyber security mandates or avoid the issue. But as Solarwinds, MS Exchange and many other security incidents prove it, it’s not a strategy. In the Leadership and Communications section, Outgunned CISOs navigate complex obstacles to keep rising attacks from turning into breaches, How to write a cyberthreat report executives can really use, Creating and rolling out an effective cyber security strategy, and more! Show Notes: https://securityweekly.com/bsw214 Visit https://www.securityweekly.com/bsw for all the latest episodes! Segment Resources: www.VigiTrust.com https://forbesbooks.com/mathieu-gorge/ Follow us on Twitter: https://www.twitter.com/securityweekly Like us on Facebook: https://www.facebook.com/secweekly
Cyber accountability is often overlooked by Board of Directors and the C-Suite. They tend to turn a blind eye to their cyber security mandates or avoid the issue. But as Solarwinds, MS Exchange and many other security incidents prove it, it’s not a strategy. In the Leadership and Communications section, Outgunned CISOs navigate complex obstacles to keep rising attacks from turning into breaches, How to write a cyberthreat report executives can really use, Creating and rolling out an effective cyber security strategy, and more! Show Notes: https://securityweekly.com/bsw214 Visit https://www.securityweekly.com/bsw for all the latest episodes! Segment Resources: www.VigiTrust.com https://forbesbooks.com/mathieu-gorge/ Follow us on Twitter: https://www.twitter.com/securityweekly Like us on Facebook: https://www.facebook.com/secweekly
Cyber accountability is often overlooked by Board of Directors and the C-Suite. They tend to turn a blind eye to their cyber security mandates or avoid the issue. But as Solarwinds, MS Exchange and many other security incidents prove it, it’s not a strategy. Segment Resources: www.VigiTrust.com https://forbesbooks.com/mathieu-gorge/ Visit https://www.securityweekly.com/bsw for all the latest episodes! Show Notes: https://securityweekly.com/bsw214
Cyber accountability is often overlooked by Board of Directors and the C-Suite. They tend to turn a blind eye to their cyber security mandates or avoid the issue. But as Solarwinds, MS Exchange and many other security incidents prove it, it’s not a strategy. Segment Resources: www.VigiTrust.com https://forbesbooks.com/mathieu-gorge/ Visit https://www.securityweekly.com/bsw for all the latest episodes! Show Notes: https://securityweekly.com/bsw214
Mathieu Gorge, Founder & CEO; Rowan Fogarty, Chief Operating Officer, VigitrustData security and compliance are just a couple of the issues that may get more complicated for UK and European firms in the wake of Brexit. Robin Amlot of IBS Intelligence discussed the potential stumbling blocks and how to address them with Mathieu Gorge and Rowan Fogarty of Vigitrust. Gorge is the author of The Cyber Elephant in the Boardroom: Cyber-Accountability With The Five Pillars Of Security Framework. The book looks at cybersecurity through the lens of a simple, proven and industry-agnostic methodology that enables businesses of all sizes to map cybersecurity risks, implement a cybersecurity strategy, and demonstrate cyber accountability to regulators, government bodies and law enforcement agencies.
Help your C-suite get serious about cybersecurity with today's episode, featuring Mathieu Gorge. Using his Five Pillars of Security Framework and his book, The Cyber Elephant in the Boardroom, Mathieu takes complex, confusing regulatory frameworks and maps them in a language that non tech-fluent board members can understand. We're also excited to share the new hands-on Cyber Work training series, Cyber Work Applied. Each week on Cyber Work Applied, expert Infosec instructors teach a new cybersecurity skill and show you how that skill applies to real-world scenarios. Get demos of different cyberattacks, learn how to use common cybersecurity tools, explore how major breaches occurred and more. Check out the link below to start learning, for free!– Learn cybersecurity with our FREE Cyber Work Applied training series: https://www.infosecinstitute.com/learn/ – View Cyber Work Podcast transcripts and additional episodes: https://www.infosecinstitute.com/podcastMathieu Gorge is the author of the new ForbesBooks release, The Cyber Elephant in the Boardroom: Cyber-Accountability with the Five Pillars of Security Framework. He is also the CEO and founder of VigiTrust, a cybersecurity company with clients in 120 countries. Mathieu has over 20 years of IT security and risk management experience and is much-sought after for his expertise. As an authority on cybersecurity solutions, he has been asked to speak at conferences including RSA, ISSA and ISACA. About InfosecInfosec believes knowledge is power when fighting cybercrime. We help IT and security professionals advance their careers with skills development and certifications while empowering all employees with security awareness and privacy training to stay cyber-safe at work and home. It's our mission to equip all organizations and individuals with the know-how and confidence to outsmart cybercrime. Learn more at infosecinstitute.com.
October is Cybersecurity Awareness Month, and since cyber-attacks have shown that no one is safe, this week Joe is joined by Mathieu Gorge, a security management expert and founder of VigiTrust. Mathieu talks about his upcoming book, "The Cyber-Elephant in the Boardroom", the security issues that companies face today and if smart home devices really are safe.