
Caffeinated Risk
The monthly podcast for security professionals, by security professionals.Two self proclaimed grumpy security professionals talk security risk, how they’ve managed it in the past and forward looking discussions with guests working in information security and risk management.
Latest episodes

Aug 19, 2021 • 36min
Following the Money in Cybersecurity with Larry Whiteside Jr.
Exploring the intersection of money and cybersecurity, Larry Whiteside Jr. discusses the importance of cash flow in businesses. He emphasizes the need for cost and risk management, while also highlighting the efforts to increase diversity in the cybersecurity industry. The podcast delves into the challenges of navigating technology, funding, and third party risks in cybersecurity, and the benefits of transitioning to a service-based model.

Jul 22, 2021 • 28min
Back to work, just in time for summer
Cohosts discuss cybersecurity challenges as employees return to the office post-pandemic, emphasizing the importance of enhanced security measures. The podcast explores the evolution of cyber fraud, focusing on the shift to ransomware attacks. They also delve into the implications of a $70 million cyber attack and stress the need for continuous improvement in incident analysis within the ESRM framework.

Jun 16, 2021 • 30min
A Business First Security Focus with Dave Tyson
Dave Tyson discusses the origins of security convergence and the importance for organizations to explore it now. He emphasizes gaining support from the executive suite by removing value chain friction created by security processes. The podcast also explores the evolution of security convergence and risk management, the changing landscape of cybersecurity roles, and the significance of comprehensive risk management in IT infrastructure.

May 19, 2021 • 35min
Security risk analysis using attack trees with Terry Ingoldsby
The podcast discusses the importance of threat modeling in security architecture. Terry Ingoldsby, a cyber risk professional, shares insights on attack trees and their application in risk assessments. They explore the challenges of presenting risk analyses to executives and the need for thorough assessments in organizational settings.

4 snips
Apr 14, 2021 • 35min
Transitions and transformation within the security industry with Scott Klososky
Scott Klososky discusses innovative approaches to security, his past successes, and merging technology with business. The podcast explores future cybersecurity trends, data privacy regulations, embracing digital transformation in security, and navigating risk tolerance and security investments.

Mar 18, 2021 • 31min
Security through management of time and trust with Winn Schwartau
Winn Schwartau, a renowned security expert with accurate predictions, discusses the need for new security approaches. He explores managing time and trust in cybersecurity, emphasizing quick decision-making and continuous measurement. The conversation touches on data integrity, risk management, and offers guidance for newcomers in the cybersecurity field.

Feb 17, 2021 • 30min
Rethinking Security Control Design with Rachelle Loyear
Rachelle Loyear discusses the importance of accountability delegation in security control design, the human-centric approach to designing security controls, and balancing risk management for maximum value. The podcast explores the significance of the human element in security control design and risk management.

Jan 17, 2021 • 6min
Preview Trailer: ESRM & Critical Infrastructure
The first full episode is scheduled for release February 18th. The trailer includes a few conversation segments between the cohosts on enterprise security risk management and critical infrastructure. Visit CaffeinatedRisk.com for more articles on the intersection of risk management and technology.