
 Defense in Depth
 Defense in Depth Is "Compliance Doesn't Equal Security" a Pointless Argument?
 Feb 1, 2024 
 Derek Fisher, Executive director of product security at JPMorgan, discusses the significance of compliance in a security program and the need to go beyond minimum standards. The podcast explores the difference between compliance and security, emphasizing compliance as the minimum viable security. It also highlights the importance of compliance in the banking industry and the collaboration within the security industry. The episode concludes with a mention of sponsor Reveal Security and a discussion about the benefits of LinkedIn. 
 Chapters 
 Transcript 
 Episode notes 
 1  2  3  4  5  6  7 
 Introduction 
 00:00 • 2min 
 The Importance of Compliance in a Security Program 
 01:33 • 3min 
 Going Beyond Compliance: Building a Secure Organization 
 04:25 • 10min 
 The Difference Between Compliance and Security 
 14:01 • 4min 
 The Relationship Between Compliance and Security 
 17:44 • 11min 
 The Role of Compliance and Collaboration in Security 
 28:52 • 2min 
 The Benefits of LinkedIn and a Playful Challenge 
 30:43 • 3min 
