Establishing and growing a security plan

Published: Nov. 3, 2022, 9:02 p.m.

b'

In this episode, I have on Nate Lee, the Chief Information Security Officer at Tradeshift, a B2B SaaS platform specializing in digitizing supply chain financing. He talks about how to grow and establish a security program.

\\n

Key takeaways:

\\n
    \\n
  • Preparing a security plan for your business.
  • \\n
  • Avoid process for the sake of process
  • \\n
  • Security program priorities
  • \\n
  • Tools that you can use to help - SQL injections, static code analysis, vulnerability management
  • \\n
  • When do you make your first security hire
  • \\n
  • What you need to look for when hiring your security personnel.
  • \\n
  • How to introduce a security person into your program.
  • \\n
  • Benefits and value of having a \\u201csecurity champion\\u201d
  • \\n
  • Dealing with security later will just cost more down the road
  • \\n
\\n

About today\\u2019s guest: 

\\n

Nate Lee is currently Chief Information Security Officer at Tradeshift, a B2B SaaS platform specializing in digitizing supply chain financing. With over 25 years in the tech industry, Nate has a wide variety of experience in engineering and management roles at startups, as a consultant, and in the Fortune 50. Nate led at various points platform operations, site reliability engineering, and IT. Subsequently, he started the security program at Tradeshift, building the security team from the ground up with a heavy focus on automation and driving business value through partnerships across internal business units.

\\n

LinkedIn: https://www.linkedin.com/in/nate-lee-2179302/

\\n

-----

\\n

Thank you so much for checking out this episode of The Tech Trek, and we would appreciate it if you would take a minute to rate and review us on your favorite podcast player.

\\n

Want to learn more about us? Head over at https://www.elevano.com

\\n

Have questions or want to cover specific topics with our future guests?

\\n

Please message me at  https://www.linkedin.com/in/amirbormand (Amir Bormand)

\\n


'