The Social-Engineer Podcast cover image

The Social-Engineer Podcast

Latest episodes

undefined
Jul 18, 2022 • 50min

Ep. 174 - Security Awareness Series - Killing Baby Dragons with Shane McCombs

This month, Chris Hadnagy and Ryan MacDougall are joined by the Chief Operating Officer of the ILF, Shane McCombs.   Shane leads the ILF with more than 25 years of experience in the tech industry, including more than a decade of experience in C-level roles. He led enterprise-wide initiatives within project management, customer relationship management and acquisition, policies and procedures, process improvement, and infrastructure. Shane is also an accomplished public speaker and trainer focused on change management, professionalism, social engineering, and corporate security. In the past, he volunteered for the Autism Hope Alliance and currently donates his time to businesses and non-profits as a trusted advisor. [July 18, 2022]   00:00 – Intro  01:02 – Intro Links  Social-Engineer.com Managed Voice Phishing Managed Email Phishing Adversarial Simulations Social-Engineer channel on SLACK  CLUTCH  innocentlivesfoundation.org - http://www.innocentlivesfoundation.org/  04:41 – Shane McCombs Intro  06:14 – What got you started off in InfoSec?  08:36 – What led you to want to do more in the industry?  10:40 – “Throwing your hat in the ring”  17:31 – Cybersecurity for kids and parents  19:52 – How to "minor" in a "major" topic  22:29 – Age appropriate conversations  25:12 – Additional concerns in the summer months  28:38 – The TRUST Framework  31:40 – The importance of communication  33:59 – When and how to introduce electronic monitoring 40:16 – The "stats" of ILF  43:50 – Who is your biggest mentor?   - his wife   45:32 – Book Recommendations  Going Pro - Tony Kern The 7 Habits of Highly Effective People – Stephen Covey Neuromancer - William Gibson 48:44 – Wrap Up   49:29 – Outro  www.social-engineer.com  www.innocentlivesfoundation.org 
undefined
Jul 11, 2022 • 49min

Ep. 173 - Human Element Series - Empathetic Chameleons and Painful Lobsters with Laurie Segall

Today Chris is talking with Laurie Segall. Laurie is the founder of Dot Dot Dot, a media company focused on onboarding the mainstream into a new era of the internet, Web3. Laurie is an award-winning journalist who has interviewed the world’s most influential tech leaders including Mark Zuckerberg and Tim Cook. Prior, she was CNN’s senior tech correspondent, covering technology and culture for a decade and a former reporter for 60 Minutes. [July 11, 2022]  00:00 – Intro  Social-Engineer.com  Managed Voice Phishing  Managed Email Phishing Adversarial Simulations  Social-Engineer channel on SLACK  CLUTCH  innocentlivesfoundation.org  03:23 – Laurie Segall intro  04:20 – Starting your career in the "wee hours"   07:54 – Was journalism always the goal?  12:31 – Navigating chaos  15:57 – Taking on Revenge Porn  21:20 – What motivated you to write about your life so early?  24:46 – Writing during the pandemic  29:50 – How lobsters grow   35:44 – Building a company  38:40 – Wearing 2 hats  40:54 – Who would you consider your biggest mentors?  CNN Digital – Susan Grant   43:38 – Book Recommendations:  Slouching Towards Bethlehem - Joan Didion (Laurie’s book) Special Characters - Laurie Segall 45:56 – Find Laurie Segall online  Website link: https://www.d3network.io/  Instagram: @LaurieSegall & @d3_network  Twitter: @LaurieSegall & @d3_network  48:32 – Guest Wrap Up & Outro  www.social-engineer.com  www.innocentlivesfoundation.org  
undefined
Jun 20, 2022 • 47min

Ep. 172 - Security Awareness Series - Creating Psychological Salt with Ted Harrington

This month, Chris Hadnagy and Ryan MacDougall are joined by Ted Harrington. Ted is the author of HACKABLE: How to Do Application Security Right and the Executive Partner at Independent Security Evaluators (ISE), the company of ethical hackers famous for hacking cars, medical devices, and password managers. Ted has been named both Executive of the Year by the American Business Awards and an SD Metro 40 Under 40 entrepreneur. Ted has been featured in more than 100 media outlets, including The Wall Street Journal, Financial Times, and Forbes. [June 20, 2022]  00:00 – Intro  00:56 – Intro Links  Social-Engineer.com - http://www.social-engineer.com/  Managed Voice Phishing - https://www.social-engineer.com/services/vishing-service/  Managed Email Phishing - https://www.social-engineer.com/services/se-phishing-service/  Adversarial Simulations - https://www.social-engineer.com/services/social-engineering-penetration-test/  Social-Engineer channel on SLACK - https://social-engineering-hq.slack.com/ssb  CLUTCH - http://www.pro-rock.com/  innocentlivesfoundation.org - http://www.innocentlivesfoundation.org/  02:32 – Ted Harrington Intro  03:21 – How did you start off in this industry?  06:15 – Explain it like I'm 12 years old  07:59 – The origins of ISE   09:32 – Is there a "perfect" Password Manager?  14:11 – How to communicate at the executive level  16:54 – The right and wrong ways of investing in security  25:17 – Responsible Disclosure  29:04 – The challenges of the Medical Device field  32:39 – The problem with legislation driving security   34:20 – The manufacturers’ role in safety and security   36:00 – Who is the book "Hackable" for?  38:05 – Find Ted online  Twitter: https://twitter.com/securityted  LinkedIn: https://www.linkedin.com/in/securityted  Website: https://www.tedharrington.com  38:37 – Book Recommendations  Retail Pride - Ron Thurston   Art of Resilience – Hussein Al-Baiaty   41:04 – Who is your biggest mentor?  Business Partner – Steve Bono  45:35 – Wrap Up   46:17 – Outro  www.social-engineer.com  www.innocentlivesfoundation.org 
undefined
Jun 13, 2022 • 44min

Ep. 171 - Human Element Series - Yes and... with Clay Drinko

Today Chris is talking with Clay Drinko, Ph.D. Clay is an author and educator. He writes for Psychology Today about the intersection between improv comedy, science, and everyday life. He's also the author of the first academic book connecting improv and cognitive science, Theatrical Improvisation, Consciousness, and Cognition. His most recent book, Play Your Way Sane, was published by Simon & Schuster last year and applies his improv research to everyday life. [June 14, 2022]  00:00 – Intro  Social-Engineer.com - http://www.social-engineer.com/  Managed Voice Phishing - https://www.social-engineer.com/services/vishing-service/  Managed Email Phishing - https://www.social-engineer.com/services/se-phishing-service/  Adversarial Simulations - https://www.social-engineer.com/services/social-engineering-penetration-test/  Social-Engineer channel on SLACK - https://social-engineering-hq.slack.com/ssb  CLUTCH - http://www.pro-rock.com/  innocentlivesfoundation.org - http://www.innocentlivesfoundation.org/  02:27 – Clay Drinko intro  03:27 – How does someone in Improv decide to study Cognitive Science?  05:46 – Losing anxiousness through performance  07:34 – The importance of a shift in focus  08:52 – Active Listening  11:41 – Yes, and...  14:01 – Don't try to be funny  15:54 – Establishing "who" and "where" you are  18:57 – How do you apply Cognitive Science to the idea of improv?  21:56 – Leaving your "baggage" at the door  25:13 – Managing the negative  26:40 – What are the biggest life skills you've learned from improv?  28:13 – Reflective questioning - Empathy or Selfishness?  31:03 – You are not special  34:29 – Do you want my help?  37:37 – Find Clay Drinko online  Website link: www.playyourwaysane.com  Instagram: www.instagram.com/playyourwaysane  38:13 – Book Recommendations:  Americanah - Chimamanda Ngozi Adichie  Educated - Tara Westover  Unmasking the Social Engineer - Christopher J. Hadnagy Nightbitch - Rachel Yoder  Clay’s Book – Play Your Way Sane - Clay Drinko  40:34 – Who would you consider your biggest mentors?  Advisor and Professor – Shirley Huston-Findley   43:14 – Guest Wrap Up  44:04 – Outro  www.social-engineer.com  www.innocentlivesfoundation.org  
undefined
8 snips
May 16, 2022 • 38min

Ep. 170 - Security Awareness Series - Rapport is the key to security with Adam Glick

This month, Chris Hadnagy and Ryan MacDougall are joined by Adam Glick. Adam is currently the Chief Information Security Officer for SimpliSafe in Boston, MA. In this position and his previous jobs, Adam has had the responsibility of managing all matters pertaining to information security, risk, policy, and procedures. Adam is currently an adjunct professor at Boston College in the cybersecurity policy & governance program, and an adjunct professor of IT in the MBA program at the School of Business at Providence College. Outside of the office, he is a car and technology enthusiast along with an avid reader, hiker, cyclist, and Brazilian Jiu-Jitsu practitioner.   [May 16, 2022]  00:00 – Intro  00:56 – Intro Links  Social-Engineer.com - http://www.social-engineer.com/  Managed Voice Phishing - https://www.social-engineer.com/services/vishing-service/  Managed Email Phishing - https://www.social-engineer.com/services/se-phishing-service/  Adversarial Simulations - https://www.social-engineer.com/services/social-engineering-penetration-test/  Social-Engineer channel on SLACK - https://social-engineering-hq.slack.com/ssb  CLUTCH - http://www.pro-rock.com/  innocentlivesfoundation.org - http://www.innocentlivesfoundation.org/  02:52 – Adam Glick Intro  04:05 – How did you get started in Information Security?  05:10 – Applying a background in teaching to InfoSec  06:37 – Developing security programs for different environments  08:14 – Getting people to think about security  09:32 – Microtraining: Updating the way that we train for security  12:10 – The importance of security in our Professional and Personal lives  14:28 – Customizing security training for large companies  15:29 – Approaching security from a Top-Down perspective  17:20 – Getting top management to support security training  20:55 – Action steps for companies to focus on  Cyber Hygiene  Risk Based Methodology  23:22 – How can companies assess their own risk?  26:55 – Internal interviews to build security protocols  28:47 – Jiu Jitsu Security???  29:58 – How to contact Adam online  LinkedIn: in/glickadam/  31:19 – Who are your greatest mentors?  Donald Schattle  David Sherry  Walt Czerminski  33:17 – Book Recommendations  Good to Great – James C Collins  The Hobbit / Lord of the Rings series – J.R.R. Tolkien  The Witcher Saga – Andrzej Sapkowski  36:33 – Wrap Up   37:32 – Outro  www.social-engineer.com  www.innocentlivesfoundation.org 
undefined
May 10, 2022 • 44min

Ep. 169 - Human Element Series - A Real Life Doogie Howser with Dr. Abbie Maroño

Today we will be talking with Abbie Maroño, a nonverbal communications and social influence coach. Abbie published her first paper in nonverbal communication at 19 years old, going on to do her PhD in behavior analysis and become a university lecturer at 23. She now directs a research group, BRINC, alongside her coaching and teaching. [May 9, 2022]  00:00 – Intro  Social-Engineer.com  Managed Voice Phishing Managed Email Phishing Adversarial Simulations -  Social-Engineer channel on SLACK CLUTCH  innocentlivesfoundation.org  02:52 – Abbie Maroño intro  04:47 – At what point in your life did you want to become a Nonverbal expert?  06:56 – The reality of getting to where you want to be  08:39 – What kept you going after rejections?  11:15 – How does a person learn to find their passion?  14:06 – How did you decide to make Nonverbal Communications a career?  17:53 – How important is Open VS Closed Body Language?  23:00 – What is orientation and why does it matter?  27:49 – The role of body language in a virtual setting  33:30 – The "perception" of eye-contact in a video call  35:31 – Find Abbie Maroño on the web  Website link: abbiemarono.com  Twitter: @abbiejmarono  LinkedIn: linkedin.com/in/abbie-maroño-35ab2611a   36:05 – New Job Announcement  38:16 – Who would you consider your biggest mentors?  Dr David Keatley   Joe Navarro  41:16 – Book Recommendations:  The Body Keeps the Score - Bessel van der Kolk  What Every BODY is Saying – Joe Navarro  Unmasking the Social Engineer - Christopher J. Hadnagy  The Code of Trust - Robin Dreeke  The Timeline Toolkit - David Keatley  The Polyvagal Theory - Stephen Porges  43:47 – Guest Wrap Up  44:17 – Outro  www.social-engineer.com  www.innocentlivesfoundation.org 
undefined
Apr 18, 2022 • 40min

Ep. 168 - Security Awareness Series - Lessons Learned From the Attacks on Ukraine with Patrick Laverty

This month, Chris Hadnagy and Ryan MacDougall are joined by Patrick Laverty. Patrick is the Senior Team Lead at Social Engineer, LLC, working with an incredible team of professional social engineers. He was previously a senior penetration tester at Rapid7 and a member of the CSIRT at Akamai. He is a co-organizer of the Layer 8 Conference and is the host of the Layer 8 Podcast on social engineering and OSINT. He lives in Rhode Island with his daughter, dog and two cats. [April 18, 2022]  00:00 – Intro  00:50 – Patrick Laverty intro  https://layer8conference.com  02:19 – Intro Links  Social-Engineer.com Managed Voice Phishing  Managed Email Phishing Adversarial Simulations  Social-Engineer channel on SLACK  CLUTCH  innocentlivesfoundation.org  04:38 – Security Awareness in the world today  05:25 – Malicious Domain Registrations  06:58 – Protecting yourself from false domains  11:24 – CISA Alert / Shields Up  12:36 – Lowering Reporting Thresholds  13:33 – Empowering Security Information Officers  16:50 – Tabletop Exercises  19:20 – Planning for Continuity  21:09 – Beyond the Financial Effects of Ransomware  24:29 – Trying to protect the Healthcare Sector  25:27 – Backup & Recovery Process  28:38 – The source of Ransomware  30:03 – Planning for a Ransomware attack  31:51 – Why your site will be attacked  33:41 – 3 Actionable Tips  35:30 – Book Recommendations  Thinking, Fast and Slow– Daniel Kahneman How to Win Friends & Influence People– Dale Carnegie Delivered from Distraction – John Ratey Fixed – Amy Herman Going Pro – Dr Tony Kern 38:20 – Wrap Up   39:18 – Outro  www.social-engineer.com  www.innocentlivesfoundation.org 
undefined
Apr 11, 2022 • 37min

Ep. 167 - Human Element Series - Paying Attention To The Human Side with Vanessa Bohns

Today we will be talking with Vanessa Bohns. Vanessa is a social psychologist and professor of organizational behavior at Cornell University. She holds a PhD from Columbia University and an AB from Brown University. Her writing has appeared in the New York Times, Wall Street Journal, and Harvard Business Review, and her research has been widely featured in the media, including The Wall Street Journal, The New York Times, The Atlantic, The Economist, and on NPR’s Hidden Brain. Her first book, You Have More Influence Than You Think, was just published in September 2021. [April 11, 2022] 00:00 – Intro Social-Engineer.com Managed Voice Phishing Managed Email Phishing Adversarial Simulations Social-Engineer channel on SLACK CLUTCH innocentlivesfoundation.org 01:53 – Vanessa Bohns intro 02:43 – How did you make Social Influence your field? 05:48 – Why do we assume people will be negative when we make a request? 08:01 – The surprising results of asking for things 11:12 – We are wired to be agreeable 13:34 – What are the security implications of our default attitudes? 16:59 – What are the consequences of underestimating your own influence? 19:32 – Understanding how the situation can influence ethics 21:05 – What would you say is your favorite find? 21:48 – Enlisting someone to influence their ethics 24:00 – Paying attention to the human side of security 25:04 – What is your next study? 27:11 – The importance of a predefined script 28:54 – Will "keywords" change a person’s sense of agreeability? 30:10 – Recognizing your own influence 31:41 – Who would you consider some of your biggest mentors? Frank Flynn – Professor Father 33:39 – Book Recommendations: Bird by Bird – Anne Lamott An Astronaut's Guide to Life on Earth – Chris Hadfield (Vanessa’s Book) You Have More Influence Than You Think – Vanessa Bohns 35:47 – Guest Wrap Up 36:17 – Find Vanessa Bohns on the web Website link: vanessabohns.com Twitter: @profbohns Instagram: @profbohns LinkedIn: https://www.linkedin.com/in/vanessa-bohns-33219710/ 36:49 – Outro social-engineer.com innocentlivesfoundation.org  
undefined
Mar 14, 2022 • 36min

Ep. 165 - Human Element Series - Trial By Fire with Dr Camille Preston

This month we are joined by Dr. Camille Preston, who is the CEO and founder of AIM Leadership. Since founding AIM Leadership in 2004, she has worked with leaders across sectors and the capital stack. As a business psychologist, Camille brings research and insights from psychology, neuroscience, and business to her work. Whether supporting Fortune 500 leaders, startup founders, or C-suite executives in healthcare, Camille's sweet spot is helping uncover hidden barriers to increase the capacity to optimize, innovate, and manage change.    In addition to working as a coach and business psychologist, Camille is author of two books, a regular contributor to several established publications in the business and psychology fields, and the author of a growing library of actionable resource tools.   A life-long challenge seeker, Camille has lived on four continents, worked on six, and traveled extensively. [March 14, 2022]    00:00 – Intro  Social-Engineer.com - http://www.social-engineer.com/  Managed Voice Phishing - https://www.social-engineer.com/services/vishing-service/  Managed Email Phishing - https://www.social-engineer.com/services/se-phishing-service/  Adversarial Simulations - https://www.social-engineer.com/services/social-engineering-penetration-test/  Social-Engineer channel on SLACK - https://social-engineering-hq.slack.com/ssb  CLUTCH - http://www.pro-rock.com/  innocentlivesfoundation.org - http://www.innocentlivesfoundation.org/  01:25 – Dr. Camille Preston Intro  02:43 – How did you get into this?  05:02 – The Journey to Awareness & Mindfulness  06:39 – Building Mindfulness  08:32 – Horizontal VS Vertical Development  10:00 – Gateways of Vertical Development  11:41 – Owning Mistakes  14:02 – Planning For Problem Solving   15:12 – Building Trust  16:21 – Authentic Connections in a Virtual World  19:24 – Mental Health Pandemic  21:25 – The Importance of Great Leadership  22:41 – Integrating Head and Heart  23:53 – What makes someone “all heart”?  26:51 – The Importance of Leaving Your Country  29:45 – Who are your greatest mentors?  33:36 – Book Recommendations:  Sogyal Rinpoche – The Tibetan Book of Living and Dying - https://amzn.to/3sV7nxq  Steven Kotler – https://amzn.to/3IZRStD  Dave Asprey – Game Changers - https://amzn.to/3IZ1zZg  Naomi McDougall Jones – The Wrong Kind of Women - https://amzn.to/3KrLVWP  (Camille’s Book) Camille Preston – Create More Flow - https://amzn.to/3sVRDKB  (Camille’s Book) Camille Preston – Rewired - https://amzn.to/3pQvCuM  35:21 – Guest Wrap Up  Twitter: http://twitter.com/CamilleP   LinkedIn: https://www.linkedin.com/in/camillepreston/   AIM Leadership: https://aimleadership.com/  35:37 – Outro 
undefined
Feb 21, 2022 • 36min

Ep. 164 - Security Awareness Series - Metrics and Empathy the Answer To Cyber Breaches with Kate Mullin

This month Chris Hadnagy and Ryan MacDougall are joined by Kathleen (Kate) Mullin. Kate is an influential information security practitioner with over 30 years of experience. Kate currently is CISO with Cancer Treatment Centers of America.  Kate has been CISO at various organizations including start-ups, publicly traded, private equity, not-for-profit, and governmental entities. Throughout her career, Kate has volunteered and participated in maturing information security as a profession. She volunteers with ISC(2) and ISACA and has been a member of the ISACA CGEIT Certification and Credentials Committee and a chapter president. Kate serves as a featured international speaker and panelist. She has a BSBA from St Joseph’s College and an MBA from Florida Metropolitan University. Kate is also certified as a Master Level Social Engineer. [February 21, 2022]  00:00 – Intro  Social-Engineer.com Managed Voice Phishing Managed Email Phishing  Adversarial Simulations  Social-Engineer channel on SLACK CLUTCH innocentlivesfoundation.org  Human Behavior Conference 03:09 – Kathleen Mullin intro  04:25 – How did you get started in Information Security?  06:39 – What are some indicators that tells you something is ineffective?  10:21 – Do you think the “cookie cutter” type of training is a reflection on the security awareness team itself?  12:16 – How can you offer the more personalized training to a company that is spread out all over the U.S. or the globe?  16:31 – Is having someone in this position who is focused on the people and the results the way to go about having the program be successful?  18:09 – What are your major security concerns being in the healthcare industry, and how are you dealing with those?  21:08 – We are seeing SMishing attacks becoming more prevalent in general. Are you seeing that happening in your industry?  22:47 – Caring about employees’ security outside of work as well  23:35 – What are some action steps that any company can start doing right now?  Have metrics and measure training effectiveness  Humanize your training  Incremental steps  Care about your users for real  26:11 – Demoralizing phishing techniques  28:15 – Book Recommendations:  Martha Wells - Murderbot Diaries series  Robin Dreeke – Code of Trust  Textbook - Enterprise Security Architecture   30:13 – Who would you consider your greatest mentor?  Father, Naval pilot/engineer  Chris Hadnagy  Michele Fincher  David Lynus from the SABSA Institute 34:27 – Finding Kate on the web:  https://www.linkedin.com/in/katemullin/  35:17 – Guest Wrap Up  36:00 – Outro  www.social-engineer.com  www.innocentlivesfoundation.org 

Get the Snipd
podcast app

Unlock the knowledge in podcasts with the podcast player of the future.
App store bannerPlay store banner

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode

Save any
moment

Hear something you like? Tap your headphones to save it with AI-generated key takeaways

Share
& Export

Send highlights to Twitter, WhatsApp or export them to Notion, Readwise & more

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode