I Pity the Fool Who Builds a Homogeneous Cyber A-Team

Published: Sept. 27, 2022, 10 a.m.

All links and images for this episode can be found on CISO Series

If you want to build a successful cybersecurity team, you need to be diverse, mostly in thought. But that diversity in thought usually is the result of people with diverse backgrounds who have had different experiences and have solved problems differently. It's actually really hard to hire a diverse team because what you want to do is simply hire people who look, talk, and sound like you. People who come from the same background as you. While that may work for building friends, it's not necessarily the best solution when building a team to secure your company.

This week\u2019s episode is hosted by me,\xa0David Spark\xa0(@dspark), producer of CISO Series and\xa0Andy Ellis (@csoandy), operating partner, YL Ventures. Our guest is\xa0George Finney\xa0(@wellawaresecure), CISO,\xa0Southern Methodist University\xa0and author of\xa0\u201cWell Aware: The Nine Cybersecurity Habits to Protect Your Future\u201d and "Project Zero Trust."

Thanks to our podcast sponsor, Feroot

Feroot secures client-side web applications so that businesses can deliver a flawless and safe digital user experience to their customers. Our automated, client-side, data protection capabilities increase web application visibility, facilitate threat analysis, and detect and protect from client-side attacks, such as Magecart, XSS, e-skimming, and other threats focused on front-end web applications.

In this episode:

  • What are the personality types you need on your staff?
  • Can you be a vCISO if you're not a CISO first. And if you're a vCISO without ever being a CISO, are you just a cybersecurity consultant?
  • Also, what are some creative uses of honeypots most users don't consider?