Offensive Security - Jonathan Echavarria, ReliaQuest

Offensive Security - Jonathan Echavarria, ReliaQuest

How can you really know what havoc hackers could wreak on your systems? By challenging them to do it and fixing the exploits they discover, of course. In this episode of the Cybersecurity Sessions, Andy finds out what it’s like to be on a ‘red team’ tasked with hacking into an employer’s own systems by any means necessary, with lauded offensive security practitioner Jonathan Echavarria (ReliaQuest).

Jonathan Echavarria, Enterprise Architect at ReliaQuest

Jonathan has held various positions with responsibilities ranging from penetration testing, red teaming, security operations enablement, devops, automation, malware analysis, and security architecture; previously, he worked for Facebook as an Offensive Security Engineer, where he conducted a variety of offensive operations targeting the organization. Jonathan often speaks at various security conferences on topics such as cybercrime, state-sponsored operations, and smart home security.

Key points
  • The difference between penetration testing and offensive security
  • The advantages of introducing a red team to any business
  • How to apply red teaming practices across all stages of the tech lifecycle
  • The ethical implications of ‘attacking’ your own organization

The Cybersecurity Sessions podcast is presented by Netacea - The world's first fully agentless bot management solution.

Jaksot(35)

Ethical Hacking & Bug Bounty Hunting - Jessica Howarth, PortSwigger

Ethical Hacking & Bug Bounty Hunting - Jessica Howarth, PortSwigger

Cyber-criminals are relentless, and the number of attacks is growing. Businesses are increasingly turning to ethical hackers to find bugs and exploits before attackers do, offering financial incentive...

8 Syys 202223min

Mentoring in Cybersecurity - Gabrielle Botbol, Desjardins

Mentoring in Cybersecurity - Gabrielle Botbol, Desjardins

Mentoring is essential to closing the cybersecurity skills gap, especially in realizing the potential of people from underrepresented communities. In recent years many newcomers to cyber have been men...

4 Elo 202221min

Security and Privacy - Charlie Osborne, ZDNet

Security and Privacy - Charlie Osborne, ZDNet

Many businesses argue that they need to collect information about customers to verify who they are and secure their accounts. However, this is at odds with online privacy advocates, who say organizati...

7 Heinä 202223min

MFA is Better than Passwords… Right? - Roger Grimes, KnowBe4

MFA is Better than Passwords… Right? - Roger Grimes, KnowBe4

We’re told that multi-factor authentication is more secure than passwords, but in truth most MFA is susceptible to the same old threats, such as phishing and man-in-the-middle attacks. In fact, the wi...

9 Kesä 202225min

AI in Cybersecurity: A Double-Edged Sword - Elaine Lee, Mimecast

AI in Cybersecurity: A Double-Edged Sword - Elaine Lee, Mimecast

It’s likely that we encounter artificial intelligence more often than we realize. Just as AI can be used to facilitate fraud and spread misinformation via deepfakes and sophisticated identity theft, i...

5 Touko 202225min

The Women Changing Cybersecurity

The Women Changing Cybersecurity

In this month’s episode, Andy Still hands hosting duties over to Netacea’s cybersecurity content specialist, Yasmin Duggal, for a special edition of the podcast for International Women’s Day. Just 16%...

8 Maalis 202245min

Artificial Engagement and Ad Fraud - Stewart Boutcher, Beacon

Artificial Engagement and Ad Fraud - Stewart Boutcher, Beacon

In this month’s episode, we’re talking about ad fraud and the role bots play in this lucrative space. Marketers care intensely about engagement and pay advertisers good money to get it, but how do the...

10 Helmi 202222min