087. Michael Ranaldo: Your Security Policy Needs to Make Sense

Published: April 9, 2021, 8:30 a.m.

b'In this episode, Holly and Michael have an in-depth discussion - okay, maybe it\'s a little bit of a rant - about security policies. Many organisations\' cybersecurity policies are rarely given the attention they deserve, despite them being such an important part of protecting your business.\\n\\nOver the course of this conversation, Holly and Michael take a look at policy building and reviewing, common mistakes that organisations tend to make, and why you should be worried if no one on your team has any questions after "reading" through the policy...\\n\\n0:15 Policy review\\n3:20 Rethink your security policy\\n11:00 Exceptions to the rule(s)\\n14:30 Does everyone in your organisation understand your security policy?\\n22:30 Are your rules made to be broken?\\n24:20 Our recommendations\\n27:00 What counts as a major system change?\\n31:35 Vulnerabilities and hardening\\n38:20 What, where, when, and why\\n43:10 A security policy rant\\n45:00 Don\'t restrict your staff\\n52:50 To be continued...\\n\\nListening time: 55 minutes\\nHost: Holly Grace Williams, MD at Secarma\\nGuest: Michael Ranaldo, vISM & CSMA Security Consultant at Secarma\\n\\nOur website: www.secarma.com\\nTweet us: www.twitter.com/Secarma\\nEvents: www.eventbrite.co.uk/o/secarma-ltd-31129456455\\nSecurity Awareness Training: www.secarma.com/cybersecurity-services/security-training/security-awareness-training'