

Down the Security Rabbithole Podcast (DtSR)
Rafal (Wh1t3Rabbit) Los
This is Cybersecurity's premier podcast. Running strong since 2011 Rafal Los, James Jardine, and Jim Tiller bring a no-nonsense, non-commercial approach to our profession. DtSR brings interviews and discussion with people you want to meet, and stories you have to hear. So whether you're just starting out, or are decades deep into your career, you'll always learn something on this show.On Twitter/X: https://twitter.com/@DtSR_PodcastOn YouTube: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHqOn LinkedIn: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/
Episodes
Mentioned books

4 snips
Nov 21, 2023 • 1h 2min
DtSR Episode 578 - Maybe A Modern Day SOC Discussion
Experts Jim Tiller and Anton Chuvakin discuss the evolution and challenges of Security Operations Centers (SOC), including the impact of global macroeconomics on security technology, the importance of collaboration between different teams, and the shift towards automation. They also explore false positives and negatives in the modern SOC environment, and the challenges of outsourcing security operations.

Nov 14, 2023 • 43min
DtSR Episode 577 - CISOs Turn at the Big Kids Table
Send the hosts a message - try it now!TL;DR:On this episode of the pod, Jim Tiller and I talk through the hot takes published about the SEC vs SolarWinds and Brown, and why so many people are getting it all wrong. I highly encourage you to go read the actual indictment before giving your opinion. Link to the SEC page: https://www.sec.gov/news/press-release/2023-227YouTube video: https://youtube.com/live/9z4g9p3BW-YMy YouTube "short" on this subject: https://youtube.com/shorts/o1Qsdy5xU-oSupport the show>>> Please consider clicking the link above to support the show!-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=YouTube home: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHqLinkedIn Page: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/X/Twitter: https://twitter.com/dtsr_podcast

Nov 7, 2023 • 46min
DtSR Episode 576 - Fixing Executive Security Events
Send the hosts a message - try it now!TL;DR:Executive Conference organizers - this episode is for YOU.On today's episode of the podcast, it's just James and I on the microphone discussing all of these executive security events you may be getting invited to. They're just generally bad - people with big titles rattling off corporate marketing speak, with low attendance and low value. Or ...is there a better way? We discuss, and offer some suggestions to conference organizers to make these events fun and worthwhile again.Link to the "CyberSecurity Collaboration Forum" I reference: https://www.linkedin.com/company/cybersecurity-collaboration-forums/YouTube Video: https://youtube.com/live/5vErHLi9c5YSupport the show>>> Please consider clicking the link above to support the show!-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=YouTube home: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHqLinkedIn Page: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/X/Twitter: https://twitter.com/dtsr_podcast

4 snips
Oct 31, 2023 • 43min
DtSR Episode 575 - Crushed Under a Mountain of Security Tools
Tom Venables, a consultant from Turnkey Consulting, joins the host on this week's podcast to discuss the overwhelming problem with technology. They dive into topics like managing cybersecurity tools on limited budgets, the challenges of digital transformation, consolidating security tools, and the importance of rationalizing technology. Tune in to gain insights on prioritizing risks, assessing tool efficiency, and making objective decisions for cost savings.

Oct 24, 2023 • 39min
DtSR Episode 574 - HealthCare CyberSecurity is Sick
Send the hosts a message - try it now!TL;DR:This week on an interesting show that dives into the world of healthcare cybersecurity, Dan Dodson joins James and I to discuss the state of things, the reason for some of the chaos, and what the future outlook could be. The challenges are many, the outlook can be bleak, and while we have challenges both in business and technology (a la technical debt) - there is hope for a bright, secure, future.Give this episode a listen.Youtube Video: https://youtube.com/live/OTf07uaHvT0Guest:Dan DodsonLinkedIn: https://www.linkedin.com/in/dan-l-dodson-3a0b418/Support the show>>> Please consider clicking the link above to support the show!-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=YouTube home: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHqLinkedIn Page: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/X/Twitter: https://twitter.com/dtsr_podcast

Oct 17, 2023 • 45min
DtSR Episode 573 - The Urge to Converge
Send the hosts a message - try it now!TL;DRThis week on the podcast Jerry Plaza from Netskope joins us to talk about the (re?)convergence between the network and security functions as policy, enforcement, and connectivity necessarily once again converge.It's been a long journey - but this time we think it's going to stick - hear why.Youtube video: https://youtube.com/live/RbobEfNMk2MGuestGerry PlazaLinkedIn: https://www.linkedin.com/in/gerry-plaza/Support the show>>> Please consider clicking the link above to support the show!-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=YouTube home: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHqLinkedIn Page: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/X/Twitter: https://twitter.com/dtsr_podcast

Oct 10, 2023 • 43min
DtSR Episode 572 - Managing Vendors Sucks
Brent Deterding, a security vendor, joins the podcast to discuss managing vendors in the cybersecurity industry. They share personal experiences and challenges, emphasize the importance of learning AI, and offer strategies for maximizing value in vendor relationships. They also discuss the coolest technology and consider how time may shape perspectives.

Oct 3, 2023 • 46min
DtSR Episode 571 - Can We Talk About the vCISO
Send the hosts a message - try it now!TL;DR:On this episode of the podcast - Rafal is joined by long-time friends and colleagues, Jim Tiller, Matt Shufeldt, and reformed analyst Anton Chuvakin to discuss the role and value of the virtual CISO. Or maybe it's the "fractional CISO". Or maybe it's something else?We work through value prop, how to pick a worthwhile partner in a fractional CISO, and advice for avoiding the dangers that come with bad advice, and worse engagement.YouTube Video: https://youtube.com/live/M4mbIJuDGC8GuestsJim TillerLinkedIn: https://www.linkedin.com/in/jimtillersecurity/Jim's YouTube Shorts are solid gold: https://www.youtube.com/@jimtiller6177Matt ShufeldtLinkedIn: https://www.linkedin.com/in/matt-shufeldt-283677/Anton ChuvakinLinkedIn: https://www.linkedin.com/in/chuvakin/Anton & Tim's brilliant cloud security podcast: https://cloud.withgoogle.com/cloudsecurity/podcast/Support the show>>> Please consider clicking the link above to support the show!-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=YouTube home: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHqLinkedIn Page: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/X/Twitter: https://twitter.com/dtsr_podcast

Sep 28, 2023 • 35min
DtSR Episode 570 - Starting a Conversation About Securing the Food Supply_Part 2
Send the hosts a message - try it now!TL;DR;This is part 2 of 2 - for this amazing topic! Please join us for both parts, and check out the full-length video online and available RIGHT NOW.On this episode of the DtSR Podcast, I welcome Kristin Demoranville and Nelson Estrada Hernandez to talk about the food industry and how cyber security can and should be a vital part in this absolutely critical topic.YouTube Video (full 62 minutes): https://youtube.com/live/72z70zYLxycLinks:Agriculture ISAC: https://www.wired.com/story/us-food-agriculture-isac-cybersecurity/ (h/t Najo Ifield)Guest:Kristin DemoranvilleLinkedIn: https://www.linkedin.com/in/demoranvillekristin/Nelson Estrada HernandezLinkedIn: https://www.linkedin.com/in/nelson-estrada-hernandez-07786956/Support the show>>> Please consider clicking the link above to support the show!-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=YouTube home: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHqLinkedIn Page: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/X/Twitter: https://twitter.com/dtsr_podcast

Sep 26, 2023 • 31min
DtSR Episode 570 - Starting a Conversation About Securing the Food Supply_Part 1
Send the hosts a message - try it now!TL;DR;This is part 1 of 2 - for this amazing topic! Please join us for both parts, and check out the full-length video online and available RIGHT NOW.On this episode of the DtSR Podcast, I welcome Kristin Demoranville and Nelson Estrada Hernandez to talk about the food industry and how cyber security can and should be a vital part in this absolutely critical topic.YouTube Video (full 62 minutes): https://youtube.com/live/72z70zYLxycLinks:Agriculture ISAC: https://www.wired.com/story/us-food-agriculture-isac-cybersecurity/ (h/t Najo Ifield)Guest:Kristin DemoranvilleLinkedIn: https://www.linkedin.com/in/demoranvillekristin/Nelson Estrada HernandezLinkedIn: https://www.linkedin.com/in/nelson-estrada-hernandez-07786956/Support the show>>> Please consider clicking the link above to support the show!-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=YouTube home: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHqLinkedIn Page: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/X/Twitter: https://twitter.com/dtsr_podcast