

3182: Fortinet and the Future of Cyber Resilience
Feb 16, 2025
In this insightful discussion, Ricardo Ferreira, EMEA Field CISO at Fortinet, shares his expertise in cybersecurity strategy and regulation. He reveals why the UK's Cybersecurity and Resilience Bill falls short compared to the EU's NIS2 directive, particularly in clarity and effectiveness. Ferreira emphasizes the need for board-level accountability in cybersecurity, calling for a proactive rather than reactive approach to threats. With the evolving cyber landscape, he highlights the importance of comprehensive strategies and collaboration to enhance resilience.
AI Snips
Chapters
Transcript
Episode notes
UK Bill Lacks Detail
- The UK Cybersecurity and Resilience Bill lacks detail, especially regarding digital supply chain attacks.
- It uses buzzwords like "digital supply chain" without clear guidance.
Post-Brexit Opportunity
- The UK has a post-Brexit opportunity to adopt the best parts of NIST-2.
- They should prioritize supply chain security, risk frameworks, and board liability.
Addressing Supply Chain Attacks
- Governments should collaborate with industry to develop detailed guidance, not just use buzzwords.
- Focus on risk profiles, technical aspects, and workforce training, similar to NIST-2's mandate.