
The Social-Engineer Podcast
The Social-Engineer Podcast is about humans. Understanding how we interact, communicate and relay information can help us protect, mitigate and understand social engineering attacks
Latest episodes

Aug 15, 2022 • 48min
Ep. 176 - Security Awareness Series - Bottom Up Context is better than Top Down Control with Nishant Bhajaria
This month, Chris Hadnagy and Ryan MacDougall are joined by Nishant Bhajaria. Nishant is an executive leader and industry-expert in the privacy and security space and currently serves as the Director of Privacy Engineering and Governance at Uber. He plays the critical role connecting engineering, legal, and leadership to ensure data protection for both the user and the business. Prior to Uber, Nishant spearheaded compliance and privacy engineering programs at Google, Netflix and Nike. He has a Master’s Degree in computer science from Arizona State University In addition to speaking extensively in this space, Nishant also teaches courses around privacy, security and career development on LinkedIn Learning. Nishant authored Data Privacy: A Runbook for Engineers - a deep dive into strategies on effectively identifying, communicating and addressing privacy risks using technical strategies. [Aug 15, 2022] 00:00 – Intro 00:20 – Intro Links Social-Engineer.com Managed Voice Phishing Managed Email Phishing Adversarial Simulations Social-Engineer channel on SLACK CLUTCH innocentlivesfoundation.org 02:17 – Nishant Bhajaria Intro 03:33 – How did your career path start? 05:44 – Balancing security and the end-user experience 09:29 – How to introduce security and privacy concepts into a pre-existing infrastructure 13:50 – Balancing technological freedom with security for your family 19:28 – Bridging divisions for the sake of privacy and security 22:09 – Creating better industry standards 26:28 – How to handle your platform becoming weaponized 30:53 – The ethical issue of data use 35:11 – The role of Social Engineering in privacy and security 39:14 – 3 action steps that companies should start doing right now 42:56 – Find Nishant online LinkedIn: https://www.linkedin.com/in/nishantjb/ Certification: https://dataprotocol.com/pe-certification 44:24 – Book Recommendations Nonzero: The Logic of Human Destiny – Robert Wright Team of Rivals– Doris Kearns Goodwin Data Privacy: A Runbook for Engineers – Nishant Bhajaria 47:13 – Wrap Up 47:41 – Outro www.social-engineer.com www.innocentlivesfoundation.org

Aug 8, 2022 • 37min
Ep. 175 - Human Element Series - Culture and The 5 H's with Hala Taha
Today Chris is talking with Hala Taha. Hala, who has been dubbed the “The Podcast Princess,” is the host of Young and Profiting (YAP) Podcast, which is frequently ranked as a #1 Education podcast across all apps. Hala is also the founder and CEO of YAP Media, a social media and podcast marketing agency for top podcasters, celebrities and CEOs. She is well-known for her engaged following and influence on LinkedIn, and she landed the January 2021 cover of Podcast Magazine. Hala is an expert on networking, personal branding, leadership, social media, side hustles, entrepreneurship and podcasting. [Aug 8th, 2022] 00:00 – Intro Social-Engineer.com Managed Voice Phishing Managed Email Phishing Adversarial Simulations Social-Engineer channel on SLACK CLUTCH innocentlivesfoundation.org 02:05 – Hala Taha Intro 03:14 – How did you end up running a media company? 05:43 – The journey towards starting YAP Media 07:01 – The early days of podcasting 09:22 – Resources for podcasting (2018 vs 2022) 10:38 – How did you transform a podcast into a media company? 16:20 – Taking Risks vs Being Smart 18:29 – The importance of pure intentions 20:44 – The secrets to finding like-minded team members 21:56 – What have been your biggest struggles while growing your company? 22:52 – Quality time with a remote team 24:51 – Maintaining the work-culture across time zones 26:35 – Tips for starting out 30:25 – Building the right foundation 32:27 – Find Hala online Podcast link: https://linktr.ee/YAPwithHala Instagram: https://www.instagram.com/yapwithhala Twitter: https://twitter.com/YAP_Podcast LinkedIn: https://www.linkedin.com/in/htaha/ 33:15 – Who have been your mentors? Father Heather Monahan Jordan Harbinger 35:21 – Book Recommendations: The Like Switch – Jack Schafer 36:17 – Guest Wrap Up 36:28 – Outro www.social-engineer.com www.innocentlivesfoundation.org

Jul 18, 2022 • 50min
Ep. 174 - Security Awareness Series - Killing Baby Dragons with Shane McCombs
This month, Chris Hadnagy and Ryan MacDougall are joined by the Chief Operating Officer of the ILF, Shane McCombs. Shane leads the ILF with more than 25 years of experience in the tech industry, including more than a decade of experience in C-level roles. He led enterprise-wide initiatives within project management, customer relationship management and acquisition, policies and procedures, process improvement, and infrastructure. Shane is also an accomplished public speaker and trainer focused on change management, professionalism, social engineering, and corporate security. In the past, he volunteered for the Autism Hope Alliance and currently donates his time to businesses and non-profits as a trusted advisor. [July 18, 2022] 00:00 – Intro 01:02 – Intro Links Social-Engineer.com Managed Voice Phishing Managed Email Phishing Adversarial Simulations Social-Engineer channel on SLACK CLUTCH innocentlivesfoundation.org - http://www.innocentlivesfoundation.org/ 04:41 – Shane McCombs Intro 06:14 – What got you started off in InfoSec? 08:36 – What led you to want to do more in the industry? 10:40 – “Throwing your hat in the ring” 17:31 – Cybersecurity for kids and parents 19:52 – How to "minor" in a "major" topic 22:29 – Age appropriate conversations 25:12 – Additional concerns in the summer months 28:38 – The TRUST Framework 31:40 – The importance of communication 33:59 – When and how to introduce electronic monitoring 40:16 – The "stats" of ILF 43:50 – Who is your biggest mentor? - his wife 45:32 – Book Recommendations Going Pro - Tony Kern The 7 Habits of Highly Effective People – Stephen Covey Neuromancer - William Gibson 48:44 – Wrap Up 49:29 – Outro www.social-engineer.com www.innocentlivesfoundation.org

Jul 11, 2022 • 49min
Ep. 173 - Human Element Series - Empathetic Chameleons and Painful Lobsters with Laurie Segall
Today Chris is talking with Laurie Segall. Laurie is the founder of Dot Dot Dot, a media company focused on onboarding the mainstream into a new era of the internet, Web3. Laurie is an award-winning journalist who has interviewed the world’s most influential tech leaders including Mark Zuckerberg and Tim Cook. Prior, she was CNN’s senior tech correspondent, covering technology and culture for a decade and a former reporter for 60 Minutes. [July 11, 2022] 00:00 – Intro Social-Engineer.com Managed Voice Phishing Managed Email Phishing Adversarial Simulations Social-Engineer channel on SLACK CLUTCH innocentlivesfoundation.org 03:23 – Laurie Segall intro 04:20 – Starting your career in the "wee hours" 07:54 – Was journalism always the goal? 12:31 – Navigating chaos 15:57 – Taking on Revenge Porn 21:20 – What motivated you to write about your life so early? 24:46 – Writing during the pandemic 29:50 – How lobsters grow 35:44 – Building a company 38:40 – Wearing 2 hats 40:54 – Who would you consider your biggest mentors? CNN Digital – Susan Grant 43:38 – Book Recommendations: Slouching Towards Bethlehem - Joan Didion (Laurie’s book) Special Characters - Laurie Segall 45:56 – Find Laurie Segall online Website link: https://www.d3network.io/ Instagram: @LaurieSegall & @d3_network Twitter: @LaurieSegall & @d3_network 48:32 – Guest Wrap Up & Outro www.social-engineer.com www.innocentlivesfoundation.org

Jun 20, 2022 • 47min
Ep. 172 - Security Awareness Series - Creating Psychological Salt with Ted Harrington
This month, Chris Hadnagy and Ryan MacDougall are joined by Ted Harrington. Ted is the author of HACKABLE: How to Do Application Security Right and the Executive Partner at Independent Security Evaluators (ISE), the company of ethical hackers famous for hacking cars, medical devices, and password managers. Ted has been named both Executive of the Year by the American Business Awards and an SD Metro 40 Under 40 entrepreneur. Ted has been featured in more than 100 media outlets, including The Wall Street Journal, Financial Times, and Forbes. [June 20, 2022] 00:00 – Intro 00:56 – Intro Links Social-Engineer.com - http://www.social-engineer.com/ Managed Voice Phishing - https://www.social-engineer.com/services/vishing-service/ Managed Email Phishing - https://www.social-engineer.com/services/se-phishing-service/ Adversarial Simulations - https://www.social-engineer.com/services/social-engineering-penetration-test/ Social-Engineer channel on SLACK - https://social-engineering-hq.slack.com/ssb CLUTCH - http://www.pro-rock.com/ innocentlivesfoundation.org - http://www.innocentlivesfoundation.org/ 02:32 – Ted Harrington Intro 03:21 – How did you start off in this industry? 06:15 – Explain it like I'm 12 years old 07:59 – The origins of ISE 09:32 – Is there a "perfect" Password Manager? 14:11 – How to communicate at the executive level 16:54 – The right and wrong ways of investing in security 25:17 – Responsible Disclosure 29:04 – The challenges of the Medical Device field 32:39 – The problem with legislation driving security 34:20 – The manufacturers’ role in safety and security 36:00 – Who is the book "Hackable" for? 38:05 – Find Ted online Twitter: https://twitter.com/securityted LinkedIn: https://www.linkedin.com/in/securityted Website: https://www.tedharrington.com 38:37 – Book Recommendations Retail Pride - Ron Thurston Art of Resilience – Hussein Al-Baiaty 41:04 – Who is your biggest mentor? Business Partner – Steve Bono 45:35 – Wrap Up 46:17 – Outro www.social-engineer.com www.innocentlivesfoundation.org

Jun 13, 2022 • 44min
Ep. 171 - Human Element Series - Yes and... with Clay Drinko
Today Chris is talking with Clay Drinko, Ph.D. Clay is an author and educator. He writes for Psychology Today about the intersection between improv comedy, science, and everyday life. He's also the author of the first academic book connecting improv and cognitive science, Theatrical Improvisation, Consciousness, and Cognition. His most recent book, Play Your Way Sane, was published by Simon & Schuster last year and applies his improv research to everyday life. [June 14, 2022] 00:00 – Intro Social-Engineer.com - http://www.social-engineer.com/ Managed Voice Phishing - https://www.social-engineer.com/services/vishing-service/ Managed Email Phishing - https://www.social-engineer.com/services/se-phishing-service/ Adversarial Simulations - https://www.social-engineer.com/services/social-engineering-penetration-test/ Social-Engineer channel on SLACK - https://social-engineering-hq.slack.com/ssb CLUTCH - http://www.pro-rock.com/ innocentlivesfoundation.org - http://www.innocentlivesfoundation.org/ 02:27 – Clay Drinko intro 03:27 – How does someone in Improv decide to study Cognitive Science? 05:46 – Losing anxiousness through performance 07:34 – The importance of a shift in focus 08:52 – Active Listening 11:41 – Yes, and... 14:01 – Don't try to be funny 15:54 – Establishing "who" and "where" you are 18:57 – How do you apply Cognitive Science to the idea of improv? 21:56 – Leaving your "baggage" at the door 25:13 – Managing the negative 26:40 – What are the biggest life skills you've learned from improv? 28:13 – Reflective questioning - Empathy or Selfishness? 31:03 – You are not special 34:29 – Do you want my help? 37:37 – Find Clay Drinko online Website link: www.playyourwaysane.com Instagram: www.instagram.com/playyourwaysane 38:13 – Book Recommendations: Americanah - Chimamanda Ngozi Adichie Educated - Tara Westover Unmasking the Social Engineer - Christopher J. Hadnagy Nightbitch - Rachel Yoder Clay’s Book – Play Your Way Sane - Clay Drinko 40:34 – Who would you consider your biggest mentors? Advisor and Professor – Shirley Huston-Findley 43:14 – Guest Wrap Up 44:04 – Outro www.social-engineer.com www.innocentlivesfoundation.org

8 snips
May 16, 2022 • 38min
Ep. 170 - Security Awareness Series - Rapport is the key to security with Adam Glick
This month, Chris Hadnagy and Ryan MacDougall are joined by Adam Glick. Adam is currently the Chief Information Security Officer for SimpliSafe in Boston, MA. In this position and his previous jobs, Adam has had the responsibility of managing all matters pertaining to information security, risk, policy, and procedures. Adam is currently an adjunct professor at Boston College in the cybersecurity policy & governance program, and an adjunct professor of IT in the MBA program at the School of Business at Providence College. Outside of the office, he is a car and technology enthusiast along with an avid reader, hiker, cyclist, and Brazilian Jiu-Jitsu practitioner. [May 16, 2022] 00:00 – Intro 00:56 – Intro Links Social-Engineer.com - http://www.social-engineer.com/ Managed Voice Phishing - https://www.social-engineer.com/services/vishing-service/ Managed Email Phishing - https://www.social-engineer.com/services/se-phishing-service/ Adversarial Simulations - https://www.social-engineer.com/services/social-engineering-penetration-test/ Social-Engineer channel on SLACK - https://social-engineering-hq.slack.com/ssb CLUTCH - http://www.pro-rock.com/ innocentlivesfoundation.org - http://www.innocentlivesfoundation.org/ 02:52 – Adam Glick Intro 04:05 – How did you get started in Information Security? 05:10 – Applying a background in teaching to InfoSec 06:37 – Developing security programs for different environments 08:14 – Getting people to think about security 09:32 – Microtraining: Updating the way that we train for security 12:10 – The importance of security in our Professional and Personal lives 14:28 – Customizing security training for large companies 15:29 – Approaching security from a Top-Down perspective 17:20 – Getting top management to support security training 20:55 – Action steps for companies to focus on Cyber Hygiene Risk Based Methodology 23:22 – How can companies assess their own risk? 26:55 – Internal interviews to build security protocols 28:47 – Jiu Jitsu Security??? 29:58 – How to contact Adam online LinkedIn: in/glickadam/ 31:19 – Who are your greatest mentors? Donald Schattle David Sherry Walt Czerminski 33:17 – Book Recommendations Good to Great – James C Collins The Hobbit / Lord of the Rings series – J.R.R. Tolkien The Witcher Saga – Andrzej Sapkowski 36:33 – Wrap Up 37:32 – Outro www.social-engineer.com www.innocentlivesfoundation.org

May 10, 2022 • 44min
Ep. 169 - Human Element Series - A Real Life Doogie Howser with Dr. Abbie Maroño
Today we will be talking with Abbie Maroño, a nonverbal communications and social influence coach. Abbie published her first paper in nonverbal communication at 19 years old, going on to do her PhD in behavior analysis and become a university lecturer at 23. She now directs a research group, BRINC, alongside her coaching and teaching. [May 9, 2022] 00:00 – Intro Social-Engineer.com Managed Voice Phishing Managed Email Phishing Adversarial Simulations - Social-Engineer channel on SLACK CLUTCH innocentlivesfoundation.org 02:52 – Abbie Maroño intro 04:47 – At what point in your life did you want to become a Nonverbal expert? 06:56 – The reality of getting to where you want to be 08:39 – What kept you going after rejections? 11:15 – How does a person learn to find their passion? 14:06 – How did you decide to make Nonverbal Communications a career? 17:53 – How important is Open VS Closed Body Language? 23:00 – What is orientation and why does it matter? 27:49 – The role of body language in a virtual setting 33:30 – The "perception" of eye-contact in a video call 35:31 – Find Abbie Maroño on the web Website link: abbiemarono.com Twitter: @abbiejmarono LinkedIn: linkedin.com/in/abbie-maroño-35ab2611a 36:05 – New Job Announcement 38:16 – Who would you consider your biggest mentors? Dr David Keatley Joe Navarro 41:16 – Book Recommendations: The Body Keeps the Score - Bessel van der Kolk What Every BODY is Saying – Joe Navarro Unmasking the Social Engineer - Christopher J. Hadnagy The Code of Trust - Robin Dreeke The Timeline Toolkit - David Keatley The Polyvagal Theory - Stephen Porges 43:47 – Guest Wrap Up 44:17 – Outro www.social-engineer.com www.innocentlivesfoundation.org

Apr 18, 2022 • 40min
Ep. 168 - Security Awareness Series - Lessons Learned From the Attacks on Ukraine with Patrick Laverty
This month, Chris Hadnagy and Ryan MacDougall are joined by Patrick Laverty. Patrick is the Senior Team Lead at Social Engineer, LLC, working with an incredible team of professional social engineers. He was previously a senior penetration tester at Rapid7 and a member of the CSIRT at Akamai. He is a co-organizer of the Layer 8 Conference and is the host of the Layer 8 Podcast on social engineering and OSINT. He lives in Rhode Island with his daughter, dog and two cats. [April 18, 2022] 00:00 – Intro 00:50 – Patrick Laverty intro https://layer8conference.com 02:19 – Intro Links Social-Engineer.com Managed Voice Phishing Managed Email Phishing Adversarial Simulations Social-Engineer channel on SLACK CLUTCH innocentlivesfoundation.org 04:38 – Security Awareness in the world today 05:25 – Malicious Domain Registrations 06:58 – Protecting yourself from false domains 11:24 – CISA Alert / Shields Up 12:36 – Lowering Reporting Thresholds 13:33 – Empowering Security Information Officers 16:50 – Tabletop Exercises 19:20 – Planning for Continuity 21:09 – Beyond the Financial Effects of Ransomware 24:29 – Trying to protect the Healthcare Sector 25:27 – Backup & Recovery Process 28:38 – The source of Ransomware 30:03 – Planning for a Ransomware attack 31:51 – Why your site will be attacked 33:41 – 3 Actionable Tips 35:30 – Book Recommendations Thinking, Fast and Slow– Daniel Kahneman How to Win Friends & Influence People– Dale Carnegie Delivered from Distraction – John Ratey Fixed – Amy Herman Going Pro – Dr Tony Kern 38:20 – Wrap Up 39:18 – Outro www.social-engineer.com www.innocentlivesfoundation.org

Apr 11, 2022 • 37min
Ep. 167 - Human Element Series - Paying Attention To The Human Side with Vanessa Bohns
Today we will be talking with Vanessa Bohns. Vanessa is a social psychologist and professor of organizational behavior at Cornell University. She holds a PhD from Columbia University and an AB from Brown University. Her writing has appeared in the New York Times, Wall Street Journal, and Harvard Business Review, and her research has been widely featured in the media, including The Wall Street Journal, The New York Times, The Atlantic, The Economist, and on NPR’s Hidden Brain. Her first book, You Have More Influence Than You Think, was just published in September 2021. [April 11, 2022] 00:00 – Intro Social-Engineer.com Managed Voice Phishing Managed Email Phishing Adversarial Simulations Social-Engineer channel on SLACK CLUTCH innocentlivesfoundation.org 01:53 – Vanessa Bohns intro 02:43 – How did you make Social Influence your field? 05:48 – Why do we assume people will be negative when we make a request? 08:01 – The surprising results of asking for things 11:12 – We are wired to be agreeable 13:34 – What are the security implications of our default attitudes? 16:59 – What are the consequences of underestimating your own influence? 19:32 – Understanding how the situation can influence ethics 21:05 – What would you say is your favorite find? 21:48 – Enlisting someone to influence their ethics 24:00 – Paying attention to the human side of security 25:04 – What is your next study? 27:11 – The importance of a predefined script 28:54 – Will "keywords" change a person’s sense of agreeability? 30:10 – Recognizing your own influence 31:41 – Who would you consider some of your biggest mentors? Frank Flynn – Professor Father 33:39 – Book Recommendations: Bird by Bird – Anne Lamott An Astronaut's Guide to Life on Earth – Chris Hadfield (Vanessa’s Book) You Have More Influence Than You Think – Vanessa Bohns 35:47 – Guest Wrap Up 36:17 – Find Vanessa Bohns on the web Website link: vanessabohns.com Twitter: @profbohns Instagram: @profbohns LinkedIn: https://www.linkedin.com/in/vanessa-bohns-33219710/ 36:49 – Outro social-engineer.com innocentlivesfoundation.org