She Said Privacy/He Said Security cover image

She Said Privacy/He Said Security

Latest episodes

undefined
May 18, 2023 • 16min

Jodi and Justin’s Top 5 Must-Haves in Your Company’s AI Policy

Jodi Daniels is the Founder and CEO of Red Clover Advisors, a boutique data privacy consultancy and one of the few certified Women’s Business Enterprises focused solely on privacy. Since its launch, Red Clover Advisors has helped hundreds of companies create privacy programs, achieve GDPR, CCPA, and US privacy law compliance, and establish a secure online data strategy their customers can count on. Jodi is a Certified Informational Privacy Professional (CIPP/US) with over 20 years of experience helping a range of businesses — from solopreneurs to multinational companies — in privacy, marketing, strategy, and finance roles. She has worked with numerous companies throughout her corporate career, including Deloitte, The Home Depot, Cox Enterprises, Bank of America, and many more. Jodi is also a national keynote speaker, a member of the Forbes Business Council, and co-host of the She Said Privacy/He Said Security podcast. Justin Daniels is a cybersecurity subject matter expert and business attorney who helps his clients implement strategies to better manage and recover from data breaches. As outsourced general counsel for Baker Donelson, Justin advises executives on how to successfully navigate cyber business and legal concerns related to operations, M&A, incident response, and more. In 2017, Justin founded and led the inaugural Atlanta Cyber Week, where multiple organizations held events that attracted more than 1,000 attendees. Justin is also a TEDx and keynote speaker and co-host of the She Said Privacy/He Said Security podcast with his wife, Jodi. In this episode… Artificial intelligence is transforming our world in many ways, raising ethical questions about its impact on human rights, privacy, fairness, and accountability. How can we ensure that AI respects our values and principles and does not harm or discriminate against anyone? AI can be a remarkable tool that can enhance our lives in various domains. However, it also requires responsible and ethical use. Companies that create and deploy AI systems must adopt policies that guarantee that these systems are reliable, transparent, fair, and secure. In this episode of She Said Privacy/He Said Security Podcast, join Jodi and Justin Daniels as they discuss the key aspects of AI systems. They reveal the essential AI policies companies need to implement to address data collection and use, transparency and accountability, and fairness and unbiasedness.
undefined
May 12, 2023 • 26min

Mitigating Security Breaches Through Distributed Data Command and Control

Andrew Hopkins is the President of PrivacyChain, a data security platform that encrypts each data record with a unique key, making it useless for hackers. Andrew believes that data security should start from the data itself and not from the perimeter. With his team of innovators at PrivacyChain, he is challenging the status quo and creating a safer online environment. In this episode… Data security and privacy are becoming more challenging in the digital age, especially with the rise of AI and data security threats. How can you protect your data from cybercriminals and AI-associated privacy breaches? How can you manage your data at a granular level without compromising its quality and usability? PrivacyChain offers a modern data security and privacy solution. It can prevent breaches, leaks, and tampering by ensuring that only authorized users can access and edit the data. PrivacyChain can also protect data from AI-generated threats by verifying its source and authenticity. Through distributed data management, you can store your data in centralized locations. In today’s episode of She Said Privacy/He Said Security, Jodi and Justin Daniels interview Andrew Hopkins, the Founder of PrivacyChain, to talk about data encryption, control, and management. Andrew shares his insights on data security, privacy, AI, and how PrivacyChain can help safeguard your data.
undefined
May 4, 2023 • 24min

The Upsurge in Ransomware and Voice Phishing: How Managed Security Services Can Help

Krista Hollingsworth is the Chief Revenue Officer at Consilien, a managed services security solutions provider helping organizations protect their data from cyber attackers. In her role, she creates a security awareness culture through an integrated approach to cybersecurity awareness training for employees. Krista is also the CEO of Boutique Marketing Group, a digital marketing company providing mid-size B2B businesses with content, strategy, and lead-generating sales funnels. In this episode… Traditionally, organizations have relied on cyber insurance to protect against attacks. But as marketing and technology have become more elaborate, ransomware has intensified, leading to a 79% increase in cyber premiums. How can you develop a calculated security approach that addresses compliance and risks? As Krista Hollingsworth observes, cybercriminals are skilled marketers, with 82% of attacks involving human elements. Additionally, Krista predicts that the emergence of AI chatbots will lead to sophisticated voice phishing attacks, so businesses should implement two-factor authentication and other verification systems for maximum protection. Managed security service providers such as Consilien help businesses create and manage cybersecurity programs. In today’s episode of She Said Privacy/He Said Security, Jodi and Justin Daniels invite CRO of Consilien, Krista Hollingsworth, to speak about the role of managed security services providers in developing cyber programs. Krista shares how the cyber sales cycle has evolved since the rise of ransomware, how AI could lead to voice phishing attacks, and advice for strengthening your passwords.
undefined
Apr 27, 2023 • 47min

AI and Privacy: A Future of Privacy Forum Conversation

Jules Polonetsky is the CEO of the Future of Privacy Forum, a nonprofit organization advancing principled data practices to support emerging technologies. FPF is supported by more than 180 leading companies and foundations. Jules has led the development of numerous codes of conduct and best practices and assisted in drafting data protection legislation. He is an IAPP Westin Emeritus Fellow, the 2023 recipient of the IAPP leadership award, and the Co-editor of The Cambridge Handbook of Consumer Privacy. With 30 years of experience in consumer protection, Jules has served as Chief Privacy Officer at AOL and DoubleClick, a consumer affairs commissioner for New York City, and an elected New York State Legislator. In this episode… The emergence of ChatGPT and other AI chatbots has added another layer to the convoluted privacy landscape, further solidifying the need for comprehensive regulations. So what should corporations and lawmakers consider when protecting consumer and public privacy? Companies often have a superficial understanding of customer data, lacking consideration for the nuances and categories of each set. But ChatGPT has introduced additional bias, which can lead to legal consequences. Privacy law advocate Jules Polonetsky says that to ensure AI remains compliant, organizations must apply data protection laws to public data sets. The Future of Privacy Forum offers a collaborative space to create and enforce policies and resolve pressing issues in the space. In this episode of She Said Privacy/He Said Security, Jodi and Justin Daniels welcome CEO of the Future of Privacy Forum Jules Polonetsky to discuss AI’s privacy ramifications. Jules explains how to incorporate AI into global data protection laws, privacy’s nuances and industry developments, and how to protect privacy when using AI chatbots.
undefined
Apr 20, 2023 • 30min

Privacy Laws and Ad Tech: A Deep Dive on Compliance

Gary Kibel is a Partner at Davis+Gilbert LLP, a law firm serving various industries and sectors including real estate, financial services, hospitality, and technology. In his role, he counsels clients on new media and advertising law, privacy and data security, and information technology. As a Certified Information Privacy Professional (CIPP), Gary advises providers of information technology services and customers for products and services regarding complex technology and intellectual property issues. Before Davis+Gilbert, he was an Information Systems Analyst at Merrill Lynch. In this episode… With ad tech rapidly advancing and the US passing contradictory privacy laws in various states, compliance is not a universal approach. Instead, conformity requires companies to have a keen understanding of ad tech and data exchanges within the industry. So how can you develop an approach that encompasses ad tech’s multifaceted components?  As a privacy law council on digital media, Gary Kibel understands the challenges businesses face managing differing standards, information-sharing, opt-outs, and targeted advertising. He states that by evaluating data types, you can determine which requirements apply to each use case. When implementing compliance features on websites, corporations often deploy cookie banners as a primary solution. But this requires thorough consideration for disclosure requirements, opt-outs, and performance and must be integrated with additional approaches. In today’s episode of She Said Privacy/He Said Security, Davis+Gilbert’s Partner, Gary Kibel, joins Jodi and Justin Daniels for a discussion on advertising technology privacy laws. Gary shares key takeaways from his IAPP Global Privacy Summit presentation, how to comply with conflicting US privacy laws, and how businesses should consider cross-contextual opt-outs. 
undefined
Apr 13, 2023 • 20min

ChatGPT and AI: Crucial Considerations for Businesses

Jodi Daniels is the Founder and CEO of Red Clover Advisors, a boutique data privacy consultancy and one of the few certified Women’s Business Enterprises focused solely on privacy. Since its launch, Red Clover Advisors has helped hundreds of companies create privacy programs, achieve GDPR, CCPA, and US privacy law compliance, and establish a secure online data strategy that their customers can count on. Jodi is a Certified Informational Privacy Professional (CIPP/US) with over 20 years of experience helping businesses — from solopreneurs to multinational companies — in privacy, marketing, strategy, and finance roles. She has worked with numerous companies throughout her corporate career, including Deloitte, The Home Depot, Cox Enterprises, Bank of America, and many more. Jodi is also a national keynote speaker, a member of the Forbes Business Council, and the co-host of the She Said Privacy/He Said Security podcast.  Justin Daniels is a cybersecurity subject matter expert and business attorney who helps his clients implement strategies to better manage and recover from data breaches. As outsourced general counsel for Baker Donelson, Justin advises executives on how to successfully navigate cyber business and legal concerns related to operations, M&A, incident response, and more. In 2017, Justin founded and led the inaugural Atlanta Cyber Week, where multiple organizations held events that attracted more than 1,000 attendees. Justin is also a TEDx and keynote speaker and the co-host of the She Said Privacy/He Said Security podcast with his wife, Jodi. In this episode… ChatGPT is an international sensation, with businesses utilizing it for content creation, debugging, translation, and writing code. But this AI tool is still unregulated, raising privacy and security concerns regarding data input. Since ChatGPT is easily accessible to the public, what should you consider before implementing it, and how can you mitigate the associated risks? When adopting ChatGPT for your company, Certified Privacy Professional Jodi Daniels says you should evaluate the tool by conducting due diligence on potential use cases. For instance, a marketing department may want to acquire consumer insights involving personal information. Developing a policy to assess data types and functions, train and educate employees about risks, and regulate information sharing eliminates bias and privacy infringements.  On this episode of She Said Privacy/He Said Security, Jodi and Justin Daniels share their thoughts on ChatGPT’s privacy and security implications. Together, they address the current and future state of AI ethics, the importance of ChatGPT regulations in the absence of federal privacy law, and how businesses can protect sensitive data when employing ChatGPT.
undefined
Apr 6, 2023 • 28min

 The Future of Privacy: Insights From a General Counsel

`Amy Chipperson serves as General Counsel for Axtria, a global provider of cloud software and data analytics to the life sciences industry. In her role, she manages a team of attorneys in the US and Mexico who are responsible for drafting and negotiating various complex IT outsourcing agreements, including Cloud and SaaS. Amy is also responsible for mergers and acquisitions, maintaining corporate compliance, and implementing GDPR regulations. In this episode… The privacy and security landscape is intricate and layered, with companies often managing multiple priorities simultaneously, including consumer trust and national and global regulations. How can you craft a program that addresses each aspect while remaining informed? General counsel Amy Chipperson affirms that companies should adopt a holistic approach to privacy and security to develop a program that satisfies various needs, goals, and requirements. Given that privacy laws are volatile, you must pivot effectively to maintain compliance. Amy urges being proactive and conducting extensive research into evolving regulations to adapt your strategies accordingly.  Axtria’s General Counsel Amy Chipperson joins Jodi and Justin Daniels on this episode of She Said Privacy/He Said Security to discuss how businesses can develop privacy and security programs in a changing environment. Amy also talks about privacy and security’s effects on data analytics, maintaining compliance amid fluid regulations, and how a common-sense approach to privacy guarantees customer trust.
undefined
Mar 30, 2023 • 33min

Leveraging Privacy SaaS Platforms To Boost Compliance

Arlo Gilbert is the Founding CEO of Osano, a leading data privacy platform that simplifies compliance by helping organizations build, manage, and scale their privacy programs. As a high-growth technology leader, he has over 25 years of experience building new SaaS startups and positioning them in industries, including telecommunications and digital health. Arlo has bootstrapped a tech startup from $0 to $50 million in annual recurring revenue and invented and patented voice commerce In this episode… Historically, businesses lacked an adequate understanding of the exigency of privacy programs. But with multiple states passing nuanced laws, privacy by design is more crucial than ever. So how can you develop a reliable privacy program to remain compliant? Arlo Gilbert maintains that the foundational component of any privacy program is cookie policies. Businesses can leverage privacy SaaS platforms to build programs from scratch — starting with cookies and progressing to rights management, vendor and risk assessments, and disclosure, security, and consent associated with compliance. Osano allows problem-solving entrepreneurs to find innovative solutions to data sharing. Tune in to this episode of She Said Privacy/He Said Security as Jodi and Justin Daniels sit down with Arlo Gilbert, Founding CEO of Osano, to discuss how SaaS platforms can help companies build compliant privacy programs. Arlo also talks about how AI is advancing privacy SaaS platforms, the types of organizations developing privacy programs, and how Osano helps companies manage privacy.
undefined
Mar 23, 2023 • 36min

The Rise of Website Pixel Class Action Lawsuits

Al Saikali is a Partner at Shook, Hardy & Bacon, LLP, where he founded and serves as chair of the law firm’s privacy and data security practice. In his role, he directs breach response efforts, represents companies in litigation, and counsels organizations on the various laws governing sensitive information. Under Al’s leadership, Legal 500 has named Shook, Hardy & Bacon a Top Cyber Law Firm. He has also been ranked by Chambers USA as a national leader in privacy and data security law for four consecutive years.  In this episode… As advertising technology evolves, many websites are embedded with pixels that gather and transmit user information to third parties. Yet the emergence of a private right of action has elicited class action lawsuits regarding wiretapping and information sharing. So how can you avoid such lawsuits and reduce risks? According to Al Saikali, class action lawsuits often transpire due to a lack of communication between internal departments and external stakeholders. There’s a significant knowledge barrier between marketing, IT, and law, so transparent education is crucial in identifying privacy breaches. When you understand how this technology functions, you can implement privacy controls to limit information sharing. Al also suggests placing pop-up disclosures and consent notices on your website and acquiring cyber insurance to protect against risks. Shook, Hardy & Bacon’s Partner Al Saikali joins Jodi and Justin Daniels on this episode of She Said Privacy/He Said Security to discuss the emergence of class action lawsuits for website pixels. Al also explains the evolution and current state of Florida’s privacy laws, the common types of privacy litigation cases, and how to mitigate risks associated with class action lawsuits.
undefined
Mar 16, 2023 • 36min

Data Transformation Strategies to Comply With Privacy Regulations

Mike Gustafson is the President of Search Discovery, a data transformation company that helps organizations transform by executing data strategies to achieve desired business outcomes. As a leader and senior executive, he has experience leading professional services and technology teams. Mike has also created and implemented solutions for multiple industries including nonprofits, consumer products, and financial services. Before Search Discovery, he held various partner roles at Rosetta. In this episode… In the era of digital marketing and advertising, data privacy is a growing concern, and companies must recognize the implications of data collection to comply with emerging regulations. But a data privacy compliance survey of 300 businesses reveals that in some industries, approximately 93% of these companies lack restrictions around data collection. So how can you safeguard consumer data? According to data analytics expert Mike Gustafson, many organizations lack an adequate understanding of the data they’ve gathered. Acknowledging privacy regulations requires developing a proactive data collection strategy that addresses objectives for usage, variety, and management. Businesses should only gather relevant information to personalize and streamline the customer experience, so holistic privacy programs involving the entire organization are essential.  In this episode of She Said Privacy/He Said Security, Jodi and Justin Daniels chat with Mike Gustafson, President of Search Discovery, about transforming how corporations collect and utilize consumer data. Mike shares why companies should consider end-to-end data transformation, the challenges of data privacy compliance, and how companies respond to Google Analytics regulations.

Get the Snipd
podcast app

Unlock the knowledge in podcasts with the podcast player of the future.
App store bannerPlay store banner

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode

Save any
moment

Hear something you like? Tap your headphones to save it with AI-generated key takeaways

Share
& Export

Send highlights to Twitter, WhatsApp or export them to Notion, Readwise & more

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode