­
Continuous Security Validation: How to Improve Your Organization's Cybersecurity Maturity By Brad La Porte and Bikash Barai - All Articles - CISO Platform

Continuous%20Security%20Validation%20How%20to%20Improve%20Your%20Organizations%20Cybersecurity%20Maturity.png?profile=RESIZE_710x

 

Discover how security training and preparedness initiatives play a pivotal role in equipping individuals to recognize and respond to cyber threats effectively. Brad emphasizes the importance of instilling a cybersecurity mindset across all levels of an organization.

 

 

Here is the verbatim discussion:

You know that's the the biggest area the other area is uh security training overall just making people aware it's a mindset it's a it's a culture and and identifying if I see a fishing email I need to report it and having a process around that and then and then building it over time um so maybe uh doing a simulated fishing exercise that turns into a uh ransomware exercise so in the you and and just running that for a couple hours um a day for a month or or you whatever period and kind of like a good example that I've have come up over the years is um getting a kind of like an elementary school or or grade school um a grade school get getting a bunch of children ready for um a fire drill so if you remember when you you younger and going through that um you know the fire alarm goes off and then everybody kind of freaks out and don't know what to do and then you know basically as you go through these rehearsals you identify okay well when the alarm goes off we get single file we go outside and then we do we make sure everyone's safe.

 

Highlights:

Security Training: Brad underscores the need for comprehensive security training programs aimed at raising awareness and educating employees about potential cyber threats. By fostering a culture of vigilance and accountability, organizations can empower individuals to identify and report suspicious activities, such as phishing emails.

Simulated Exercises: Explore the value of conducting simulated security exercises, akin to fire drills, to prepare employees for real-world cyber incidents. Brad highlights the benefits of running simulated phishing exercises that evolve into ransomware scenarios, allowing organizations to assess their readiness and response capabilities.

Building Preparedness Over Time: Drawing parallels to emergency preparedness drills in schools, Brad emphasizes the importance of regular practice and refinement of security protocols. By continuously running simulated exercises and refining response procedures, organizations can enhance their ability to mitigate cyber threats effectively.

 

Brad underscores the importance of cultivating a proactive cybersecurity mindset through training and preparedness initiatives. By investing in comprehensive security training, conducting simulated exercises, and fostering a culture of awareness, organizations can strengthen their defenses against cyber threats and minimize the risk of security incidents.

 

Speakers:

Brad LaPorte a former army officer with extensive experience in cybersecurity, provides invaluable insights into the evolving landscape of digital threats. With a background in military operations, LaPorte witnessed firsthand the early stages of nation-state cyber attacks, laying the groundwork for his deep understanding of cybersecurity challenges. Through his journey, he has observed the transformation of defense tactics from traditional, labor-intensive methods to modern, cloud-based solutions. LaPorte's expertise offers a unique perspective on the intersection of technology, security, and the underground economy of cybercrime. In this discussion, he shares his experiences and analysis, shedding light on the complexities of cybersecurity in the digital age.

 
 
 
 

Bikash Barai is credited for several innovations in the domain of Network Security and Anti-Spam Technologies and has multiple patents in USPTO. Fortune recognized Bikash among India’s Top 40 Business Leaders under the age of 40 (Fortune 40-under-40).Bikash is also an active speaker and has spoken at various forums like TiE, RSA Conference USA, TEDx etc.

Earlier he founded iViZ an IDG Ventures-backed company that was later acquired by Cigital and now Synopsys. iViZ was the first company in the world to take Ethical Hacking (or Penetration Testing) to the cloud.

 

https://twitter.com/bikashbarai1

https://www.linkedin.com/in/bikashbarai/ 

E-mail me when people leave their comments –

You need to be a member of CISO Platform to add comments!

Join CISO Platform

CISO Platform

A global community of 5K+ Senior IT Security executives and 40K+ subscribers with the vision of meaningful collaboration, knowledge, and intelligence sharing to fight the growing cyber security threats.

Join CISO Community Share Your Knowledge (Post A Blog)
 

 

 

City Round Table Meetup - Mumbai, Bangalore, Delhi, Chennai, Pune, Kolkata

  • Description:
    CISO Playbook Round Table Overview : 
    Our round tables are designed to bring together top CISOs and IT leaders in intimate, focused sessions. These closed-door discussions will provide a platform to explore key security challenges and solutions. These sessions aim to create a focused, closed-door environment where 08-10 CISOs will dive deeply into the practicalities of implementing specific technologies.
    • Technology Implementation: From…
  • Created by: Biswajit Banerjee
  • Tags: ciso, playbook, round table

CISO Cocktail Reception At RSAConference USA, San Francisco 2025 !

  • Description:

    We are excited to invite you to the CISO Cocktail Reception if you are there at the RSA Conference USA, San Francisco 2025. It will be hosted aboard a private yacht, so that our CISO's can enjoy the beautiful San Francisco skyline while cruising the Bay Area! This event is organized by EC-Council with CISOPlatform and FireCompass as proud community partners. 

    Yacht Party…

  • Created by: Biswajit Banerjee
  • Tags: ciso, usa, san francisco, rsaconference 2025

Round Table Dubai 2025 | GISEC

  • Description:
    CISO Playbook Round Table Overview : 

    Our round tables are designed to bring together top CISOs and IT leaders in intimate, focused sessions. These closed-door discussions will provide a platform to explore key security challenges and solutions. These sessions aim to create a focused, closed-door environment where 08-10 CISOs will dive deeply into the practicalities of implementing specific technologies.
    • Technology…
  • Created by: Biswajit Banerjee

Fireside Chat With Dan Bowden (Global Business CISO, Marsh McLennan (Marsh, Guy Carpenter, Mercer, Oliver Wyman))

  • Description:

    We’re excited to bring you an insightful fireside chat on "Navigating the Cyber Insurance Landscape: Key Considerations for CISOs" with Dan Bowden (Global Business CISO, Marsh McLennan) and Erik Laird (Vice President - North America, FireCompass). In this fireside chat, we'll decode the complexities of cyber insurance from a CISO’s lens and uncover how to make smarter, security-aligned decisions when it comes to policy design, claims, and ROI.

    As cyberattacks grow in…

  • Created by: Biswajit Banerjee
  • Tags: ciso, cyber insurance, dan bowden