

Caffeinated Risk
McCreight & Leece
The monthly podcast for security professionals, by security professionals.Two self proclaimed grumpy security professionals talk security risk, how they’ve managed it in the past and forward looking discussions with guests working in information security and risk management.
Episodes
Mentioned books

Jun 29, 2023 • 31min
2023 Summer Show
Exploring evolving trends in cybersecurity practices, the importance of trust in risk management advisory, earning executive trust for proactive planning in cloud services, and diversifying skill sets for resilience in security programs.

May 25, 2023 • 31min
ESRM and Data Science with Rachelle Loyear
Rachelle Loyear discusses the fusion of data science and security, emphasizing the incorporation of human behavior in risk assessment. Topics include cyber crime risks, data analysis in security strategies, future of data sharing, automation in risk management, and reflections on ESRM evolution.

Mar 23, 2023 • 8min
Attack Tree Calibration with Terry Ingoldsby
Threat modeling expert discusses integrating expertise into risk assessment, no AI magic in identifying threats. Exploring fusion of metrics and opinions in attack tree modeling, analyzing cybersecurity architecture using historical attacks for security assessment.

8 snips
Feb 23, 2023 • 38min
FAIR and ESRM, exploring common ground with Jack Freund
Dr. Jack Freund, risk management thought leader, discusses quantifying risk, breach reports, cultural change in organizations, and prioritizing security efforts. Insightful and humorous, he shares his expertise in risk management with the hosts.

Jan 19, 2023 • 35min
Cyber-Physical Convergence Revisited
Exploring the benefits of a converged approach in security, the podcast discusses the challenges of silos in cyber-physical security convergence. It touches on data privacy, GDPR regulations, and the balance between privacy and security in the workplace. The discussion also delves into the importance of encryption, trust in data sources, and the evolution of IoT devices in enhancing security measures.

Dec 15, 2022 • 32min
ESRM Enablement via Location Intelligence with Alex Martonik
Realtors have long advocated "location, location, location" as a path to investment success. Fast forwarding a few generations, location intelligence applied to risk management is paying dividends well beyond real-estate and Esri is a world leader in this fascinating application of geo-spatial information. Esri business solutions leader Alex Martonik shares examples of businesses making improvements to resilience and the bottom line by combining GIS, financial, technological and political data into risk calculations. Mr. Martonik also shares Esri's approach to "democratizing risk insights", helping solve the all to common problem of procuring buy-in.

Nov 17, 2022 • 6min
Privacy & Toxic Data with Michelle Finneran Dennedy
A great discussion point that didn't make it to air from the original 2021. Not all data is of equal value to the organization and the viable shelf life is seldom tracked or even discussed. This espresso shot takes a humorous look at a serious question about privacy considerations during the development cycle and check out the original full episode with privacy thought leader Michelle Finneran Dennedy.

6 snips
Oct 20, 2022 • 31min
Classifying and effectively communicating enterprise security risk with Paul Mercer
Paul Mercer, a former Royal Navy member, developed a risk management software. He emphasizes prioritizing mitigation over analysis in enterprise security risk management and effective communication with executives. The importance of gaining customer trust through standardized processes is highlighted. The podcast discusses prioritizing key rules in risk-based compliance and aligning control measures with specific risks for effective security management.

Sep 8, 2022 • 7min
Redefining the risk management business partnership with Rachelle Loyear
Exploring the evolution of security in business partnerships, transitioning from silos to collaborative partners. Understanding risk tolerance in budgeting for risk management and aligning efforts with business risk levels.

6 snips
Aug 18, 2022 • 33min
Resilience as a Risk Management Strategy
Learn from international crisis management thought leaders Alexandra Hoffman and Tim Wenzel about building resilience in risk management strategies, navigating influence in organizations, and the ongoing journey of fostering organizational resilience. Explore real-life examples and the challenges of breaking down silos for sustainable business growth.