RSA Conference ESAF Report 2023: How Top CISOs Are Transforming Third-Party Risk Management

Channel:
Subscribers:
4,540
Published on ● Video Link: https://www.youtube.com/watch?v=Z7LCI6a6sC8



Category:
Show
Duration: 34:25
13 views
0


RSA Conference ESAF Report 2023: How Top CISOs Are Transforming Third-Party Risk Management | A Conversation with Laura Robinson | Redefining CyberSecurity Podcast with Sean Martin

Guest: Laura Robinson, ESAF Program Director at RSA Conference [@RSAConference]

On Linkedin | https://www.linkedin.com/in/laurarobinsoninsight/

At RSA | https://www.rsaconference.com/experts/laura-robinson

____________________________

Host: Sean Martin, Co-Founder at ITSPmagazine [@ITSPmagazine] and Host of Redefining CyberSecurity Podcast [@RedefiningCyber]

On ITSPmagazine | https://www.itspmagazine.com/itspmagazine-podcast-radio-hosts/sean-martin

____________________________

This Episode’s Sponsors

Imperva | https://itspm.ag/imperva277117988

Pentera | https://itspm.ag/penteri67a

___________________________

Episode Notes

In this episode of Redefining CyberSecurity Podcast, host Sean Martin engages in a conversation with Laura Robinson, the ESAF Program Director at RSA Conference, about the changing landscape of third-party risk management. They explore the need for organizations to shift their approach in assessing third-party risk and the limitations of relying solely on questionnaires. Laura emphasizes the importance of more detailed assessments and manageable requirements for suppliers.

The conversation touches on the significance of fostering a culture of security and collaboration between organizations and their third-party partners. They discuss the challenges faced by small businesses in meeting complex regulatory requirements and the difficulties in finding the right cybersecurity services and talent. The episode showcases case studies that highlight successful third-party risk management programs and their positive impact, including significant reductions in incidents and quantifiable risk reduction.

The discussion also delves into the potential benefits of standardization in the industry, such as shared assessments, resources, and frameworks such as NIST CSF and HITRUST. Sean and Laura underscore the importance of collaboration, community, and a change in mindset to effectively address third-party risk in the evolving cybersecurity landscape. Throughout the conversation, practical insights and success stories are shared, providing listeners with a deeper understanding of the progress being made in third-party risk management while acknowledging that there is still work to be done.

The episode offers a thoughtful exploration of the topic, focusing on the need for collaboration, cultural shifts, and the development of more effective assessment approaches in order to mitigate third-party risk effectively.

____________________________

Watch this and other videos on ITSPmagazine's YouTube Channel

Redefining CyberSecurity Podcast with Sean Martin, CISSP playlist:

📺 https://www.youtube.com/playlist?list=PLnYu0psdcllS9aVGdiakVss9u7xgYDKYqITSPmagazine YouTube Channel:

📺 https://www.youtube.com/@itspmagazine

Be sure to share and subscribe!

____________________________

Resources

CISO Perspectives on Transforming Third-Party Risk Management: https://www.rsaconference.com/library/webcast/158-ciso-persp-transfer-third-party?utm_source=x&utm_medium=social&utm_content=158-ciso-persp-transfer-third-party-webcast&utm_campaign=september-2023-rsac365&postID=11353906220

____________________________

To see and hear more Redefining CyberSecurity content on ITSPmagazine, visit:

https://www.itspmagazine.com/redefining-cybersecurity-podcast

Are you interested in sponsoring an ITSPmagazine Channel?

👉 https://www.itspmagazine.com/sponsor-the-itspmagazine-podcast-network




Other Videos By ITSPmagazine


2023-11-02Living the Future: Smart City Expo 2023 in Barcelona and the Vision of Urban Innovation
2023-11-01A conversation with Sven Nyholm, Professor of the Ethics of Artificial Intelligence
2023-10-31True Personal Cost of a Cyber Attack | A Conversation with Gary Berman | The Soulful CXO Podcast
2023-10-30Developing Personal Thought Leadership Through Passion, Purpose, and Progress | Gary Hayslip
2023-10-29Book | Rumor of Evil | A Conversation With Author Gary Braver | Audio Signals Podcast
2023-10-28Keeping Up With Technology and Societal Impacts of Generative AI | Justin "Hutch" Hutchens
2023-10-27Introducing The After 40 Podcast | After 40 with Dr. Deborah Heiser
2023-10-26AI/ML, gender equity and sustainability | A Conversation with Chloe Messdaghi | 2 Cyber Chicks
2023-10-26SOC Analyst Appreciation Day 2023 | Day in the Life of a SOC Analyst | Event Coverage Conversation
2023-10-25Digital Footprints: Redefining Privacy in a Share-Everything Era | Once Upon A Time, Tomorrow Series
2023-10-24RSA Conference ESAF Report 2023: How Top CISOs Are Transforming Third-Party Risk Management
2023-10-24Infowar—war by means of information systems | A Conversation with Winn Schwartau | Cy Beat Podcast
2023-10-24Achieve Success by Playing to Your Strengths | A Conversation with Jane Frankland | The Soulful CXO
2023-10-23Books | Culinary Stories: How Food & Wine Reflect the Pulse of Politics, Economics, and Culture
2023-10-20Non-Profit Leadership is Challenging | A Conversation with Adeola Whitney | The Leadership Student
2023-10-20Book | Wiring the Winning Organization | Author Steven J. Spear | Redefining Society
2023-10-20Keynote: 2024 Predictions in Future-Hindsight View - Get Ready! | A SecTor Event Coverage
2023-10-19Personalized Health In The AI Age | A Carbon, a Silicon, and a Cell walk into a bar...
2023-10-18Do We Need to Worry about Critical Infrastructure? | Cyber Ops in the Context of Leaked Vulkan Files
2023-10-18Navigating the Privacy Maze: Mozilla’s Vehicle Privacy Report Sparks a Drive | A BlackCloak Story
2023-10-17The California Delete Act: Emerging Changes for Data Brokers and Its Impact on Data Privacy



Tags:
third-party risk management
tprm
case studies
collaboration
culture of security
industry standards
security frameworks
security controls
security questionnaire
detailed assessments
manageable requirements
small businesses
regulatory compliance
cybersecurity services
talent shortage
shared assessments
risk reduction
incident reduction
RSA Conference
Sean Martin
Laura Robinson