Ep. 154 - Security Awareness Series - Whispering Sweet Security Nothings with Ed Skoudis

Published: Sept. 20, 2021, 6 a.m.

b'

In this episode, Chris Hadnagy and Ryan MacDougall are joined by\\u202fEd Skoudis.\\u202f Ed is a SANS Institute Fellow, Instructor, and Director of Cyber Ranges. \\u202fHe is the founder of Counter Hack, an innovative cyber security company that works as trusted information security advisors to\\u202fgovernment, military, and commercial enterprises by providing\\u202fin-depth security architecture, penetration testing, red teaming, incident\\u202fresponse, and\\u202fdigital forensics expertise.\\u202fEd frequently presents industry keynotes based\\u202fon the\\u202flatest attack vectors he identifies during his team\\u2019s penetration\\u202ftesting projects, expert witness work on large-scale breaches, security\\u202fresearch into late-breaking malware and exploits, and incident response\\u202fengagements.\\u202fOver his\\u202fcareer, Ed has taught over 20,000 students in computer incident response and penetration testing. \\u202fEd and his team are also the creators of the SANS Holiday Hack Challenge,\\u202fa free gift\\u202fto the community every December challenging tens of thousands of people to build their cyber security skills in a fun, quirky adventure to save the holiday season.\\u202fSeptember 20, 2021\\xa0

00:00 \\u2013 Intro\\xa0

www.social-engineer.com\\u202f\\u202f

Managed Voice Phishing\\u202f\\u202f\\u202f\\u202f

Managed Email Phishing\\u202f\\u202f\\u202f\\u202f

Adversarial\\u202fSimulations\\u202f\\u202f\\u202f\\u202f

Social-Engineer channel on SLACK\\u202f\\u202f\\u202f\\u202f

CLUTCH\\u202f\\u202f\\u202f\\u202f

03:26 \\u2013 Ed Skoudis Intro\\xa0

05:26 \\u2013 How did you get started, how did you get into this field?\\xa0

09:18 \\u2013 What do you looking for when building your team?\\xa0

10:47 \\u2013 How long will you observe a person to determine if they have the integrity or skill that you want?\\xa0

12:44 \\u2013 What advice would you give for companies to find people with the skill and integrity they need more quickly than observing them for 2-4 years?\\xa0

22:00 \\u2013 \\u201cNothing new\\u201d in social engineering vs infosec, which is constantly changing\\xa0

23:45 \\u2013 Why do you feel experience like participating in CTF\\u2019s are so valuable for people in this community?

28:57 \\u2013 What is your advice for people on how to find quality CTF\\u2019s?\\xa0

32:04 \\u2013 How long does it take your team to construct these challenges?\\xa0

35:54 \\u2013 If someone wants to sponsor this event, where can they go?\\xa0

36:42 \\u2013 Who are the colleagues or mentors that have been most influential to you, people you wouldn\\u2019t be where you are today if not for them?\\xa0

Ed\\u2019s Nana \\u2013 Evelyn Hiddings\\xa0

Manager at Bellcore - Miriam Hernandez Cagle\\xa0

SANS instructor, founder of In Guardians - Mike Poor\\xa0

Security Expert - Johnny Long\\xa0

SANS founder \\u2013 Alan Paller\\xa0

40:30 \\u2013 What are some action steps corporations should start doing right now based on the advice you gave today to build a great team?\\xa0

Have a good corporate culture and leadership\\xa0

Be thoughtful and meaningful, make it fun, and challenge them\\xa0

Take input from your team and empower them\\xa0

43:09 \\u2013 Do you have any advice for employees dealing with burnout, how to practice self-care, or other coping mechanisms?\\xa0

Monthly meeting with state of the business, business reflections\\xa0

Rituals \\u2013 Get a bagel and call mom on Saturdays, morning walk, calling friends out of the blue\\xa0

Gratefulness \\u2013 when stressed, pause and think about what you\\u2019re grateful for\\xa0

Get off social media for a few days\\xa0

50:27 \\u2013 Book Recommendation\\xa0

51:53 \\u2013 Outro\\xa0

\\xa0

'