エピソード

  • The Future of Automation and AI in Operational Technology with Shane Cox
    2024/11/25
    Podcast: PrOTect It All (LS 24 · TOP 10% what is this?)Episode: The Future of Automation and AI in Operational Technology with Shane CoxPub date: 2024-11-25Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationIn Episode 33, Aaron Crow explores the transformative impact of automation and AI in the Operational Technology (OT) sector, joined by industry expert Shane Cox from Morgan Franklin Cyber. This episode deepens how AI and automation can enhance security operations when balanced with human oversight and strategic implementation. Shane Cox shares insights on Morgan Franklin's flexible and expert-driven approach to Managed Detection and Response (MDR) services, emphasizing the importance of tailored client partnerships and continuous collaboration. The discussion highlights the potential of AI to revolutionize security while addressing the unique challenges and risks of integrating automated solutions. Tune in to learn how the right blend of technology, expertise, and strategy can drive effective security solutions and foster long-term client relationships in today's evolving cybersecurity landscape. Key Moments: 05:15 Flexible, evolving security service, partnership-focused approach. 07:06 Diverse tools are essential for all organizations. 12:58 Weekend setup complete; improved over subsequent months. 15:30 MDR/XDR: Cloud-based threat detection and response. 18:21 Flexible MDR service integrates client environments efficiently. 21:38 Integration speeds up threat detection and response. 24:52 Cautious automation best balances efficiency and control. 29:50 AI assists coding by highlighting potential errors. 32:12 People are crucial for effective security automation. 35:51 Superior team preferred over superior product. 39:06 AI integration risks due to untested promises. 41:46 Adapting security training amidst AI automation challenges. Guest Profile: Shane Cox leads the Cyber Fusion Center at MorganFranklin Cyber where he is responsible for the delivery of managed services such as Orion MDR, Advanced Detection and Response (ADR), Threat Hunting, Adversary Simulation, Cyber Threat Intelligence (CTI), and Incident Response and Management. Shane has over 25 years of experience in IT and Cyber Security, leading the development and optimization of security programs within enterprise and managed services environments. He has deep experience and success providing customized, business-aligned security outcomes for a diverse range of client environments and industry verticals. How to connect with Shane: https://www.linkedin.com/feed/update/urn:li:activity:7264640034891337730 https://www.sdxcentral.com/articles/stringerai-announcements/morganfranklin-consulting-launches-orion-mdr-service-with-stellar-cyber/2024/11/ Connect With Aaron Crow: Website: www.corvosec.com LinkedIn: https://www.linkedin.com/in/aaronccrow Learn more about PrOTect IT All: Email: info@protectitall.co Website: https://protectitall.co/ X: https://twitter.com/protectitall YouTube: https://www.youtube.com/@PrOTectITAll FaceBook: https://facebook.com/protectitallpodcast To be a guest or suggest a guest/episode, please email us at info@protectitall.co Please leave us a review on Apple/Spotify Podcasts: Apple - https://podcasts.apple.com/us/podcast/protect-it-all/id1727211124 Spotify - https://open.spotify.com/show/1Vvi0euj3rE8xObK0yvYi4The podcast and artwork embedded on this page are from Aaron Crow, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.
    続きを読む 一部表示
    48 分
  • OT Security Made Simple | Wie funktioniert OT-Sicherheit im Wassersektor
    2024/11/24
    Podcast: OT Security Made Simple Podcast
    Episode: OT Security Made Simple | Wie funktioniert OT-Sicherheit im Wassersektor
    Pub date: 2024-11-21

    Get Podcast Transcript →
    powered by Listen411 - fast audio-to-text and summarization



    In dieser Episode von OT Security Made Simple begrüßen wir Rainer Stecken vom Deutschen Verein des Gas- und Wasserfaches. Rainer zeigt die Herausforderungen im Wassersektor auf und stellt das Konzept eines Sektor-SOCs vor, das seit Anfang 2024 die Cybersicherheit mehrerer Wasserunternehmen zusammenführt.



    The podcast and artwork embedded on this page are from Klaus Mochalski, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.
    続きを読む 一部表示
    29 分
  • OT Security Data Science - A better vulnerability database [The Industrial Security Podcast]
    2024/11/23
    Podcast: The Industrial Security Podcast (LS 35 · TOP 3% what is this?)
    Episode: OT Security Data Science - A better vulnerability database [The Industrial Security Podcast]
    Pub date: 2024-11-20

    Get Podcast Transcript →
    powered by Listen411 - fast audio-to-text and summarization



    Security automation needs a machine-readable vulnerability database. Carmit Yadin of Device Total joins us to look at limitations of the widely-used National Vulnerability Database (NVD), and explore a new "data science" alternative.

    The podcast and artwork embedded on this page are from PI Media, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.
    続きを読む 一部表示
    35 分
  • EP 50: Keeping The Lights On In Ukraine
    2024/11/22
    Podcast: Error Code (LS 25 · TOP 10% what is this?)
    Episode: EP 50: Keeping The Lights On In Ukraine
    Pub date: 2024-11-19

    Get Podcast Transcript →
    powered by Listen411 - fast audio-to-text and summarization



    What would happen if your GPS signal were jammed? It would impact more than just navigation – you'd also lose access to financial data and power. Joe Marshall, Senior IoT Strategist and Threat Researcher at Cisco Talos, discusses an innovative solution to maintain the country's power grid operations in the event of GPS jamming, whether it's a precautionary measure or an act of war.



    The podcast and artwork embedded on this page are from Robert Vamosi, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.
    続きを読む 一部表示
    44 分
  • The Future Looks Bright : Building a Career in OT Cybersecurity
    2024/11/21
    Podcast: Industrial Cybersecurity Insider
    Episode: The Future Looks Bright : Building a Career in OT Cybersecurity
    Pub date: 2024-11-19

    Get Podcast Transcript →
    powered by Listen411 - fast audio-to-text and summarization



    Explore the fast-evolving field of OT cybersecurity with Emma Duckworth, a professional whose journey from chemical engineering to securing operational technologies highlights the growing need for cross-functional collaboration in industrial environments.

    Emma shares her experiences working on the plant floor, the challenges of uniting IT and OT teams, and the role of emerging technologies like intrusion detection and prevention systems in safeguarding manufacturing processes.

    Gain practical insights into career paths, mentorship, and the critical importance of hands-on learning in this dynamic industry.

    Chapters:

    • 00:00:00 - A Fresh Look at OT Cybersecurity
    • 00:01:29 - From Chemical Engineering to Cybersecurity: Emma's Path
    • 00:02:36 - Thriving in a Rapidly Evolving Industry
    • 00:04:35 - Tools of the Trade: Technologies Transforming OT Security
    • 00:05:21 - Bridging the Gap: IT and OT Collaboration Challenges
    • 00:08:25 - The Cutting Edge: Emerging Trends and Remote Access
    • 00:10:20 - Building a Cybersecurity Career: Emma’s Advice
    • 00:15:03 - Looking Ahead: Emma’s Vision for the Future
    • 00:18:08 - Key Takeaways and Parting Insights

    Links And Resources:

    • Velta Technology
    • Dino Busalachi on LinkedIn
    • Jim Cook on LinkedIn
    • Craig Duckworth on LinkedIn

    Thanks so much for joining us this week. Want to subscribe to Industrial Cybersecurity Insider? Have some feedback you’d like to share? Connect with us on Spotify, Apple Podcasts, and YouTube to leave us a review!



    The podcast and artwork embedded on this page are from Velta Technology, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.
    続きを読む 一部表示
    19 分
  • Cyber Informed Engineering: Protecting Critical Infrastructure with Ginger Wright
    2024/11/20
    Podcast: (CS)²AI Podcast Show: Control System Cyber Security
    Episode: Cyber Informed Engineering: Protecting Critical Infrastructure with Ginger Wright
    Pub date: 2024-11-19

    Get Podcast Transcript →
    powered by Listen411 - fast audio-to-text and summarization



    Derek Harp hosts Virginia "Ginger" Wright, a program manager at Idaho National Laboratory, known for her pioneering work in cybersecurity for critical infrastructure. Ginger shares the history and importance of Cyber Informed Engineering (CIE) and how this engineering philosophy integrates safety protocols directly into the design of industrial systems, making them resilient against cyber threats. They discuss the origins of CIE in nuclear energy safety, the unique assets of Idaho National Laboratory, and the vital role engineers play in safeguarding critical infrastructure. Ginger also dives into practical resources like the Cyber Informed Engineering Implementation Guide, sharing how organizations and educators can adopt this methodology. Join us for insights into CIE’s impact on the future of OT and ICS cybersecurity.



    The podcast and artwork embedded on this page are from Derek Harp, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.
    続きを読む 一部表示
    24 分
  • Critical Infrastructure Security: From Awareness to Action with Khris Woodring
    2024/11/20
    Podcast: IoT Security Podcast
    Episode: Critical Infrastructure Security: From Awareness to Action with Khris Woodring
    Pub date: 2024-11-19

    Get Podcast Transcript →
    powered by Listen411 - fast audio-to-text and summarization



    Recent years have seen a growing awareness of the vulnerabilities in our critical infrastructure to cyberattacks, particularly from nation-states like Russia, Iran, and China. In this episode of the IoT Security Podcast, host John Vecchi welcomes Khris Woodring, Senior Cybersecurity Architect at Syngenta, to explore the evolving challenges and opportunities in securing critical infrastructure. From his serendipitous journey into the field to actionable insights on workforce development, Khris shares how industries can overcome the persistent talent gap and drive proactive change in OT security.

    Key topics include:

    • The unique challenges of bridging IT and OT security.
    • Why workforce shortages hinder progress and how industry and academia can collaborate.
    • The importance of standardizing roles, frameworks, and terminology.
    • Stories of how early curiosity sparked a career in cybersecurity.

    Tune in for a passionate discussion on how to protect the systems that make modern life possible—and the steps we can take to secure a resilient future.



    Let’s connect about IoT Security!

    Follow John Vecchi at https://www.linkedin.com/in/johnvecchi

    The IoT Security Podcast is powered by Phosphorus Cybersecurity. Join the conversation for the IoT Security Podcast — where xIoT meets Security. Learn more at https://phosphorus.io/podcast



    The podcast and artwork embedded on this page are from Phosphorus Cybersecurity, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.
    続きを読む 一部表示
    54 分
  • Enhancing OT Cybersecurity: From Legacy Systems to Cloud Solutions with Paul Shaver
    2024/11/19
    Podcast: PrOTect It All (LS 24 · TOP 10% what is this?)Episode: Enhancing OT Cybersecurity: From Legacy Systems to Cloud Solutions with Paul ShaverPub date: 2024-11-18Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationIn this episode, Aaron is joined by Paul Shaver, an experienced OT security consultant from Mandiant, part of Google Cloud. Together, they navigate the nuanced landscape of operational technology (OT) cybersecurity. The episode begins with Aaron recalling a critical incident at a power plant that underscores the potential pitfalls in OT environments. This sets the stage for a rich discussion on the evolution of OT technology, with Aaron and Paul reminiscing about primary domain controllers and early NT workstations. The conversation shifts to the future of OT in the cloud, where Paul highlights the benefits of cloud solutions, including enhanced resiliency, security, and data optimization through AI. A compelling customer case study illustrates modern technology adoption with web-based HMIs and Chromeboxes. Paul offers a detailed analysis of the current OT cybersecurity landscape, addressing the persistent legacy system challenges and the need for a cohesive IT-OT security strategy. He discusses the evolving threat landscape influenced by global geopolitical tensions and the rise of zero-day vulnerabilities. Listeners will gain practical insights into foundational cybersecurity measures, such as network segmentation, asset inventory management, and robust access control.. Key Moments: 04:14 Connecting IT and OT optimizes processes securely. 09:54 Lost production severely impacts manufacturing revenue recovery. 14:06 Ensure network notifications; control access, separate credentials. 17:10 Engineers need secure access to adjust parameters. 21:55 Endpoint detection on older systems is critical. 28:47 Resilience is crucial in CrowdStrike incident response effectiveness. 32:11 Limited resources for global incident response efforts.= 39:22 Rebuilt domain controller caused authentication issues. 42:37 Focus on resiliency and cloud opportunities, leveraging multi-cloud. 44:59 Improve grid operations using cloud and hyper-converged technology. 48:38 Local cloud provides redundancy for remote sites. 51:15 Critical for acquisition process and problem-solving. About the guest : Paul Shaver has dedicated more than two decades to various roles in Operational Technology (OT), primarily within the oil and gas industry. His expertise spans OT architecture, design, and build, along with run and maintaining responsibilities as an asset owner. Before transitioning into cybersecurity, Paul served as a Technology Director for an oil and gas company in California. Driven by a burgeoning interest in security, he joined Mandiant nearly five years ago. At Mandiant, now part of Google, Paul relishes the mission of enhancing security postures in OT and critical infrastructure, contributing to significant advancements in the field. How to connect Paul: https://www.linkedin.com/in/pbshaver/ Connect With Aaron Crow: Website: www.corvosec.com LinkedIn: https://www.linkedin.com/in/aaronccrow Learn more about PrOTect IT All: Email: info@protectitall.co Website: https://protectitall.co/ X: https://twitter.com/protectitall YouTube: https://www.youtube.com/@PrOTectITAll FaceBook: https://facebook.com/protectitallpodcast To be a guest or suggest a guest/episode, please email us at info@protectitall.coThe podcast and artwork embedded on this page are from Aaron Crow, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.
    続きを読む 一部表示
    57 分