Human-Centered Cybersecurity at NIST | Unlocking the Human Factor with Julie Haney

Channel:
Subscribers:
4,720
Published on ● Video Link: https://www.youtube.com/watch?v=1ilBN0CElWk



Duration: 42:35
9 views
0


Guest: Julie Haney, Computer scientist and Human-Centered Cybersecurity Program Lead at National Institute of Standards and Technology [@NISTcyber]

On Linkedin | https://www.linkedin.com/in/julie-haney-037449119/

On Twitter | https://x.com/jmhaney8?s=21&t=f6qJjVoRYdIJhkm3pOngHQ

____________________________

Host: Sean Martin, Co-Founder at ITSPmagazine [@ITSPmagazine] and Host of Redefining CyberSecurity Podcast [@RedefiningCyber]

On ITSPmagazine | https://www.itspmagazine.com/itspmagazine-podcast-radio-hosts/sean-martin

____________________________

This Episode’s Sponsors

Imperva | https://itspm.ag/imperva277117988

Pentera | https://itspm.ag/penteri67a

___________________________

Episode Notes

In this episode of the Redefining CyberSecurity podcast, host Sean Martin engages in an insightful conversation with Julie Haney, the leader of the human-centered cybersecurity program at NIST. The discussion revolves around the challenges organizations face in implementing security awareness and other information security training programs, products, and operations.

During the conversation, Julie introduces the NIST phish scale, a tool that helps training coordinators contextualize phishing click rates. It considers user context and alignment with individual roles, allowing organizations to tailor their phishing simulation exercises to engage employees effectively. This approach goes beyond numbers and focuses on the human factor in cybersecurity.

Sean and Julie discuss the various challenges organizations encounter when implementing security awareness programs. These challenges include obtaining leadership support, allocating sufficient resources, and finding engaging approaches for a diverse workforce. They emphasize the importance of collecting user-generated security incidents and gathering feedback to identify areas for improvement and enhance awareness programs.


Throughout the conversation, Sean and Julie highlight the significance of understanding and addressing human factors in cybersecurity. They stress that effective security awareness and training programs should go beyond compliance and consider the individual's mindset, attitudes, and behaviors. Additionally, they discuss the lack of effective metrics to measure program success and impact, emphasizing the need for organizations to gather data and feedback to continuously improve their programs.



Overall, this episode offers practical insights and advice for organizations seeking to enhance their security awareness and training initiatives. It emphasizes the importance of a human-centric approach and provides valuable tools, such as the NIST phish scale, to help organizations tailor their programs to engage employees effectively.

So, tune in to this episode as Sean and Julie take a journey into the challenges and solutions surrounding security awareness in the ever-evolving world of cybersecurity.

____________________________

Watch this and other videos on ITSPmagazine's YouTube Channel

Redefining CyberSecurity Podcast with Sean Martin, CISSP playlist:

📺 https://www.youtube.com/playlist?list=PLnYu0psdcllS9aVGdiakVss9u7xgYDKYqITSPmagazine YouTube Channel:

📺 https://www.youtube.com/@itspmagazine

Be sure to share and subscribe!

____________________________

Resources

Human-Centered Cybersecurity: https://csrc.nist.gov/projects/human-centered-cybersecurity

NIST Unveils Newly Named Human-Centered Cybersecurity Program: https://www.nist.gov/blogs/cybersecurity-insights/nist-unveils-newly-named-human-centered-cybersecurity-program

Julie's LinkedIn post about NIST Unveils Newly Named Human-Centered Cybersecurity Program: https://www.linkedin.com/feed/update/urn:li:activity:7113240410604363778/

____________________________

To see and hear more Redefining CyberSecurity content on ITSPmagazine, visit:

https://www.itspmagazine.com/redefining-cybersecurity-podcast

Are you interested in sponsoring an ITSPmagazine Channel?

👉 https://www.itspmagazine.com/sponsor-the-itspmagazine-podcast-network




Other Videos By ITSPmagazine


2023-11-29Exploring the Future at Smart City Expo 2023: with Shawn Butler and Kika Von Klück
2023-11-28Words and Music: Songwriting Inspirations and the Importance of Keeping an Open Mind as a Musician
2023-11-28The Geek in the Rear with the Gear: Andrew Strutt on Supporting Military operations | Cy Beat
2023-11-27Book | Castle Defenders: What Do Cyber Parents Do? | A Pentera Brand Story with Aviv Cohen
2023-11-24Game Changer: How Strategic Pricing Shapes Businesses, Markets and Society | Jean-Manuel Izaret
2023-11-23Navigating the Holidays | A Conversation with Cher Murphy | After 40 Podcast with Dr. Deborah Heiser
2023-11-22The Power of 'What If' in Storytelling Unlocking Imagination in Science | Astrophysicist Neil Comins
2023-11-22We Need to Stop the Temperature From Rising If We Don't Want to Ice the CISO Role | Black Hat Europe
2023-11-22How I Learned to Stop Worrying and Build a Modern Detection & Response Program | Black Hat Europe
2023-11-21The Secret to Business Strategy Success | A Conversation with Jeron Kraaijenbrink
2023-11-21Human-Centered Cybersecurity at NIST | Unlocking the Human Factor with Julie Haney
2023-11-20Innovating for a Secure Connected World | CES 2024 Event Coverage Conversation w/ J. David Grossman
2023-11-16Career Shifts, Historical and Cultural Biases, and Privacy in the upcoming AI Tech-Driven Society
2023-11-16Living Undersea for 100 Days and The Power of Storytelling in Science Education | Dr. Joseph Dituri
2023-11-15Transhumanism | A Conversation with Len Noe | Cyber Cognition Podcast with Hutch
2023-11-14Set Yourself Up to Win | A Conversation with Mike Wilkes | The Soulful CXO Podcast
2023-11-13Why Meaningful Connections Matter | After 40 Podcast with Dr. Deborah Heiser
2023-11-13Design Goals & Cybersecurity Integrity: Redefining the CISO Role to Avoid Failure | Malcolm Harkins
2023-11-09Cybersecurity Challenges in Large Jurisdictions and the Impact of Emerging Technologies | L. Godsey
2023-11-07The Evolution of Live Music: Reflecting on the Sphere and the Sounds of the Past
2023-11-07The State of Identity Management and Its Role in Modern Security Strategies, and IDSA 2023 Research



Tags:
security awareness
training programs
human factors
NIST
Julie Haney
Sean Martin
challenges
leadership support
resource allocation
user context
engagement
metrics
compliance
human-centric approach
phishing
click rates
user-generated security incidents