Engaging Employees in Security Appreciation with Robert Siciliano
How Many CTOs31 Maalis

Engaging Employees in Security Appreciation with Robert Siciliano

In this episode of "How Many CTOs Does It Take?" podcast, host Brad Hefta-Gaub welcomes Boston-raised security speaker Robert Siciliano, who traces his path into security from early experiences with crime, teaching physical self-defense, and being hacked in the mid-1990s. Robert argues that most corporate security training is compliance-driven "security theater" focused on phishing, creating security fatigue while leaving human behavior unchanged. He advocates "security appreciation," making security personal and using interactive dialogue rather than monologue. He explains the "human blind spot," a biological impulse to trust, plus denial and cultural myths that equate security with paranoia. He urges leaders to live security as a lifestyle, empathizes with the C-suite through relatable family stories, addresses digital literacy gaps, and leverages compelling AI/deepfake risks—illustrated by Brad's deepfake-like fraud example—to drive lasting behavior change.

00:23 Meet Robert Siciliano 01:53 Streets to Security 02:50 First Hack Wakeup 05:32 Why Training Fails 07:24 Compliance Fatigue 07:59 Make It Personal 09:11 Interactive Reality Check 12:34 Fatalism and the Human Blind Spot 15:59 Home Security Parallels 20:17 Security vs Paranoia 25:23 Denial and Avoidance 26:42 Attackers Use Heuristics 28:02 Good People vs Sociopaths 30:22 Strategic Human Firewall 31:48 Awareness Versus Appreciation 33:58 Tone At The Top 36:27 Make It Personal For Leaders 38:40 AI Deepfakes Raise Stakes 44:10 Digital Literacy Crisis 49:59 Empathy And Dialogue Training 54:53 Wrap Up

Resources:

#TechPodcast #EngineeringPodcast #DevTalks #PodcastForDevs #HowManyCTOs #Podcast #CTOs #CTOPodcast #ChiefTechnologyOfficer #Technology #Engineering #SoftwareDevelopment #SoftwareEngineering #TechLeadership #EngineeringLeadership #EngineeringCulture #TechDebates #CyberSecurity #SecurityAwareness #SecurityInnovation #DigitalStrategy #CyberAwareness #CyberRisk #DataProtection #RiskManagement #SecurityCultur #SafetyFirst #SecurityMatters #PrivacyProtection #TheStrategicHumanFirewall #AI #TheHumanBlindspot #Deepfakes #SecurityAppreciation #KitchenTableEffect #DigitalLiteracy

Jaksot(63)

Let Them Eat Tokens: AI Efficiency vs. Global Good

Let Them Eat Tokens: AI Efficiency vs. Global Good

In this episode of "How Many CTOs Does It Take?" podcast, hosts Scott Porad and Brad Hefta-Gaub dive into the pervasive influence of AI, starting with a critical look at Apple's Siri and its struggles...

25 Marras 202540min

Cabinet Doors Should Open: Avoiding Assumptions in Product Requirements

Cabinet Doors Should Open: Avoiding Assumptions in Product Requirements

In this episode of "How Many CTOs Does It Take?" podcast, hosts Scott Porad and Brad Hefta-Gaub discuss the critical importance of clear requirements in both hardware and software projects. Using the ...

18 Marras 202533min

The State of AI in 2025: What the DORA Report Reveals

The State of AI in 2025: What the DORA Report Reveals

In this episode of "How Many CTOs Does It Take?" podcast, hosts Scott Porad and Brad Hefta-Gaub dive into the 2025 DORA Metrics Report on the state of AI-assisted software development. They discuss ke...

11 Marras 202538min

The AI Hype Cycle: Navigating Growth and Skepticism

The AI Hype Cycle: Navigating Growth and Skepticism

In this episode of "How Many CTOs Does It Take?" podcast, hosts Scott Porad and Brad Hefta-Gaub reflect on the recent shifts in Big Tech's approach to AI, discussing the changing perceptions and econo...

4 Marras 202530min

In Search of the Exceptional: Unpacking the Traits of 10x Engineers

In Search of the Exceptional: Unpacking the Traits of 10x Engineers

In this episode of "How Many CTOs Does It Take?" podcast, hosts Scott Porad and Brad Hefta-Gaub dive deep into the concept of the 10x engineer—those rare developers who are exponentially more producti...

28 Loka 202545min

The Documented SDLC: Why Every Team Needs One (and When)

The Documented SDLC: Why Every Team Needs One (and When)

In this episode of "How Many CTOs Does It Take?" podcast, hosts Scott Porad and Brad Hefta-Gaub start with a quick retrospective, or is it an encore, of recent rock concerts before stage-diving into a...

21 Loka 202557min

Navigating BADD vs. FaDD: Strategic Refactoring in Software Development

Navigating BADD vs. FaDD: Strategic Refactoring in Software Development

In this episode of "How Many CTOs Does It Take?" podcast, hosts Scott Porad and Brad Hefta-Gaub dive deep into the engineering crossroads between Better Architecture Driven Development (BADD) and Feat...

14 Loka 202537min

From Specs to Monitoring: A CTO's Guide to QA Best Practices

From Specs to Monitoring: A CTO's Guide to QA Best Practices

In this episode of "How Many CTOs Does It Take?" podcast, hosts Scott Porad and Brad Hefta-Gaub tackle the evolving landscape of quality assurance in web apps. They challenge the notion of QA as just ...

7 Loka 202539min

Suosittua kategoriassa Liike-elämä ja talous

sijotuskasti
mimmit-sijoittaa
psykopodiaa-podcast
rss-rahapodi
rss-rahamania
ostan-asuntoja-podcast
rahapuhetta
rss-laakispodi
rss-sisalto-kuntoon
herrasmieshakkerit
sijoituspodi
rss-draivi
inderespodi
rss-sami-miettinen-neuvottelija
rss-lahtijat
rss-bisnesta-bebeja
rss-karon-grilli
rss-seuraava-potilas
rss-paasipodi
vapauta-supervoimasi-podcast