The Cyber Security Transformation Podcast

The Cyber Security Transformation Podcast

By Corix Partners

Become a Paid Subscriber: https://podcasters.spotify.com/pod/show/tcybercast/subscribe JC Gaillard and his guests share their views on both the interesting cybersecurity news stories of the week and their own experiences. Now entering its fourth series with a stronger focus on cyber security leadership, governance and related board-level matters Released every Thursday
Available on
Apple Podcasts Logo
Overcast Logo
Pocket Casts Logo
RadioPublic Logo
Spotify Logo
Currently playing episode

Series 5 - "Teaching the Board to Talk to CISOs" - Episode 19

The Cyber Security Transformation PodcastAug 27, 2024
00:00
07:11
Series 6 - "Cybersecurity Transformation Cannot Be Reduced to a Mere Matter of Investments" - Episode 3

Series 6 - "Cybersecurity Transformation Cannot Be Reduced to a Mere Matter of Investments" - Episode 3

JC Gaillard revisits the importance trust and relationships for CISOs, looking beyond the mere justification of cybersecurity investments; read his original article on the theme here

May 29, 202507:58
Series 6 - "The CISO, the CSO and the Future of the Cybersecurity Organization" - Episode 2

Series 6 - "The CISO, the CSO and the Future of the Cybersecurity Organization" - Episode 2

In this second episode of Series 6, JC Gaillard revisits his views of the role of the CISO and the CSO and the real dynamics of cybersecurity transformation; read his original article on the theme here

May 22, 202509:25
Series 6 - "What Ever Happened with Cybersecurity Strategic Thinking?" - Episode 1

Series 6 - "What Ever Happened with Cybersecurity Strategic Thinking?" - Episode 1

JC Gaillard introduces the first episode in Series 6 of the Cybersecurity Transformation Podcast and highlights the various themes that will be covered in the series; read his original article covering the theme here on the Corix Partners blog

May 15, 202509:53
Series 5 - Final Episode - "A Look Back at the CrowdStrike Incident and the Meaning of Cyber Resilience" - Episode 25

Series 5 - Final Episode - "A Look Back at the CrowdStrike Incident and the Meaning of Cyber Resilience" - Episode 25

In this final episode of the series, JC Gaillard and guest Steve Lamb take another look at the CrowdStrike incident and analyze what cyber resilience needs to mean for businesses.

Oct 17, 202415:43
Series 5 - "A Round-up of Key Issues around Cybersecurity and Generative AI" - Episode 24

Series 5 - "A Round-up of Key Issues around Cybersecurity and Generative AI" - Episode 24

In this episodes, JC Gaillard focuses on the impact generative AI could be having on cybersecurity practices and goes back to number of key aspects he has been exploring in earlier episodes in this series.

Oct 03, 202408:40
Series 5 - "The Cybersecurity Spiral of Failure: What It Is, and How to Break out of It" - Episode 23
Sep 24, 202413:07
Series 5 - "The Way Forward with Cybersecurity Operating Models" - Episode 22
Sep 17, 202409:39
Series 5 - "Three Questions and a Reality Check around the Role of the Board with Cybersecurity" - Episode 21
Sep 10, 202409:01
Series 5 - "Post-Quantum Cryptography: Why It Matters, and What to Do Now?" - Episode 20

Series 5 - "Post-Quantum Cryptography: Why It Matters, and What to Do Now?" - Episode 20

In this episode, JC Gaillard and guest Steven O'Sullivan from Cystel look at the challenges of post-quantum cryptography in the light of the release by the U.S. NIST of new standards in that space

Sep 03, 202419:38
Series 5 - "Teaching the Board to Talk to CISOs" - Episode 19
Aug 27, 202407:11
Series 5 - "Cyber Resilience: Real New Practice or Just a Coat of Paint on Some Old Concepts?" - Episode 18
Aug 20, 202408:05
Series 5 - "Using AI to Talk to the Board about Cyber: Clever Ploy or False Good Idea?" - Episode 17

Series 5 - "Using AI to Talk to the Board about Cyber: Clever Ploy or False Good Idea?" - Episode 17

In this episode, JC Gaillard revisits the intersection between generative AI and cybersecurity, in a complement to the topics explored in episodes 6 and 12 in the first part of Series 5

Aug 12, 202408:08
Series 5 - "The CrowdStrike Outage Under the Spotlight: Cybersecurity Incident ? or Not?"" - Episode 16
Aug 05, 202416:25
Series 5 - "Cybersecurity: The Key Ingredient is Trust, not Money" - Episode 15

Series 5 - "Cybersecurity: The Key Ingredient is Trust, not Money" - Episode 15

In this episode, JC Gaillard analyses a recent article from Hacker News and highlights his take on the 5 key questions CISOs should ask about their cybersecurity strategy; read his original article on the theme ⁠here

Jul 30, 202407:07
Series 5 - "The Misleading Messages of the Technology Industry around Cybersecurity" - Episode 14
Jun 06, 202408:32
Series 5 - "Knee-Jerk Reactions to Data Breaches are damaging the case for Cybersecurity" - Episode 13
May 30, 202408:24
Series 5 - "Generative AI in Cybersecurity: Incremental or Disruptive Innovation?" - Episode 12
May 23, 202409:32
Series 5 - "Large Enterprises Can’t Cope With More Cybersecurity Tools" - Episode 11

Series 5 - "Large Enterprises Can’t Cope With More Cybersecurity Tools" - Episode 11

In this episode, JC Gaillard goes back to the topic of security tools proliferation discussed in previous series and highlights why it should be central to the role of the CISO to build a vision and a product strategy, and drive the decluttering of cybersecurity landscapes

May 16, 202407:35
Series 5 - "Leadership: The Real Secret Sauce for the CISO" - Episode 10
May 09, 202412:60
Series 5 - "Time to Start Focusing on the Decluttering of the Cyber Security Toolkit Landscape" - Episode 9
May 02, 202412:24
Series 5 - "Why Are Security Vendors So Obsessed with Board Attention?" - Episode 8
Apr 25, 202407:48
Series 5 - "A Look Back at the Role of the Board around Cybersecurity Oversight" - Episode 7
Apr 18, 202409:53
Series 5 - "Generative AI and Cybersecurity: The Big Untold Problem" - Episode 6
Apr 11, 202408:28
Series 5 - "From Threat to Risk: A "threat" is not a "risk" if you are well protected" - Episode 5
Apr 04, 202409:22
Series 5 - "Looking Back at the Role of the Virtual CISO and the Reality of Small Firms" - Episode 4

Series 5 - "Looking Back at the Role of the Virtual CISO and the Reality of Small Firms" - Episode 4

In this episode, ⁠JC Gaillard⁠ looks back at the role of the virtual CISO and in particular why many small firms would often benefit from looking internally first, before jumping to externalised cybersecurity solutions; read his original article on the theme ⁠⁠here

Mar 27, 202407:50
Series 5 - "Cybersecurity is Not Working: Time to Try Something Else" - Episode 3

Series 5 - "Cybersecurity is Not Working: Time to Try Something Else" - Episode 3

In this episode, JC Gaillard continues his journey across cybersecurity governance matters, and in particular he goes back to the construction of the role of the CISO and why it is essential to put it back in its historical perspective; read his original article on the theme ⁠here

Mar 21, 202409:50
Series 5 - "Don’t Expect Cybersecurity to Work in Firms where Nothing Does" - Episode 2

Series 5 - "Don’t Expect Cybersecurity to Work in Firms where Nothing Does" - Episode 2

In this episode, JC Gaillard continues to explore cybersecurity governance and in particular, why it is essential to place it in a broader corporate governance context; read his original article on the theme ⁠here

Mar 14, 202408:22
Series 5 - "Cybersecurity Governance, Compliance and Window-Dressing" - Episode 1

Series 5 - "Cybersecurity Governance, Compliance and Window-Dressing" - Episode 1

In this first episode of the series, JC Gaillard explores issues around cybersecurity governance and ownership and in particular, why cyber resilience needs clear accountability from the top; read his original article on the theme here


The UK Government "call for views" around a proposed "Cyber Governance Code of Practice" mentioned in the episode can be found here

Mar 07, 202410:34
Series 4 - Final Episode in the Series - "One Last Look at the Role of the Board around Cybersecurity" - Episode 24
Oct 26, 202311:59
Series 4 - "Cybersecurity, Cycles and Predictions" - Episode 23

Series 4 - "Cybersecurity, Cycles and Predictions" - Episode 23

As we reach that time in the journalistic calendar where predictions for the year to come start to appear, JC Gaillard reflects on what it means for the cybersecurity industry and the real cycles over which it has been evolving

Oct 19, 202307:49
Series 4 - "Everybody is talking about Cyber Resilience, but what do they really mean?" - Episode 22
Oct 12, 202312:13
Series 4 - "The Board needs to own cybersecurity in business terms, not in technology terms" - Episode 21
Oct 05, 202312:29
Series 4 - "The Relationship between the CISO and the Board: What's Really Going On?" - Episode 20
Sep 28, 202310:09
Series 4 - "The Cybersecurity Spiral of Failure" - Episode 19
Sep 21, 202308:28
Series 4 - "A Recruitment Perspective on the Role of the CISO" - with guest Owanate Bestman - Episode 18
Sep 14, 202326:27
Series 4 - "Why are we still talking about the reporting line of the CISO?" - with guest Mark Segelov - Episode 17
Sep 07, 202320:05
Series 4 - "Is it time to accept that the role of the CISO may be failing? - part 2" - Episode 16
Aug 31, 202312:49
Series 4 - "The Key Ingredients of a Successful GRC Programme" - Episode 15
Aug 24, 202307:17
Series 4 - "Is it time to accept that the role of the CISO may be failing?" - Episode 14
Aug 17, 202308:53
Series 4 - "From Vendor Risk to Supply Chain Risk - Part 2" - with guest Richard Preece - Episode 13

Series 4 - "From Vendor Risk to Supply Chain Risk - Part 2" - with guest Richard Preece - Episode 13

In this episode, JC Gaillard and Richard Preece continue their exchanges initiated in Episode 6 of this series around supply chain risk and comment on the outcome of the Security Transformation Research Foundation meeting in late June

Aug 10, 202319:57
Series 4 - "The Cybersecurity Numbers Game is a Dangerous One for CISOs" - Episode 12
Aug 03, 202308:15
Series 4 - "A Reality Check Around Cybersecurity Benchmarking" - Episode 11

Series 4 - "A Reality Check Around Cybersecurity Benchmarking" - Episode 11

In this episode, JC Gaillard looks at the challenges involved with cybersecurity benchmarking, and why the CISOs need to be careful when answering what could be a politically loaded question

Jul 27, 202307:47
Series 4 - "The Momentum Building Behind the Role of the CSO" - Episode 10

Series 4 - "The Momentum Building Behind the Role of the CSO" - Episode 10

In this episode, JC Gaillard explores the momentum behind the role of the Chief Security Officer and why it starts to make sense in many firms to evolve the role of the CISO and return it to its native technical content

Jul 20, 202308:13
Series 4 - "Creating Transformational Dynamics around Cybersecurity" - Episode 9
Jul 13, 202307:58
Series 4 - "The CISO and the Board" - Episode 8
Jul 06, 202308:12
Series 4 - "Dispelling Some Myths around Cybersecurity for Small Businesses" - Episode 7
Jun 29, 202309:27
Series 4 - "From Vendor Risk to Supply Chain Risk" - with guest Richard Preece - Episode 6

Series 4 - "From Vendor Risk to Supply Chain Risk" - with guest Richard Preece - Episode 6

In this episode, JC Gaillard and guest Richard Preece start exploring the various dimensions involved in managing supply chain risk, what it means for businesses, and how it differs from traditional vendor risk.

Jun 22, 202311:43
Series 4 - "There Are Just Too Many Security Tools and Products" - Episode 5
Jun 15, 202307:35
Series 4 - "The When-Not-If Paradigm: Blessing or Curse for the CISO?" - Episode 4
Jun 08, 202308:35
Series 4 - "What's going on with CISOs and their budgets?" - Episode 3
Jun 01, 202308:48