Sarah Aalborg on Secure by Choice

Sarah Aalborg on Secure by Choice

What do people have to do with cybersecurity? A lot. As with other fields of human risk, it’s people that are typically the root cause of problems in the cybersecurity world. Which is where my guest’s expertise in behavioural design comes into play.

On this episode, I’m speaking with Sarah Aalborg, a cybersecurity and behavioural design expert who’s on a mission to change how organisations approach IT security.

Rather than focusing on firewalls and tech solutions, Sarah examines the human behaviours that can undermine even the best-designed security systems.

Her new book, Secure by Choice, challenges conventional security thinking by exploring how cognitive biases affect security professionals and how to use behavioural design to reshape security culture.

We discuss the pitfalls of traditional security training – particularly those phishing tests that feel more like traps than training – and how to flip the script by focusing on what we want people to do rather than what we want them to avoid.

Sarah shares practical strategies for using positive reinforcement, creating engaging training experiences, and making security less about fear and more about action.

By applying principles of behavioural science and risk-based thinking, Sarah explains how we can bridge the gap between security policies and everyday human behaviour.

Guest Biography
Sarah Aalborg is a cybersecurity expert and behavioural design advocate, focusing on how cognitive biases impact IT security professionals and their decision-making processes.

She is the author of Secure by Choice, a book that challenges conventional approaches to cybersecurity training by applying principles of behavioural science to security culture.

With a background in IT security spanning over two decades, Sarah speaks at major security events and consults with organisations on how to create more effective, engaging, and human-centric security programs.

AI-Generated Timestamped Summary
[00:00:00] Introduction

[00:01:00] Meet Sarah Aalborg – Why she wrote Secure by Choice and her journey into behavioural design.

[00:03:00] The '20-centimetre above the keyboard' exercise – How human inaction impacts tech security.

[00:05:00] Why phishing tests feel like entrapment – and how to flip the script.

[00:08:00] Turning phishing tests into positive reinforcement opportunities.

[00:10:00] How a simple 'Report Suspicious Email' button can change behaviours.

[00:12:00] The problem with fear-based messaging in cybersecurity.

[00:14:00] Why telling people what NOT to do isn’t effective.

[00:15:00] Sarah’s four-step framework for creating risk-aware security cultures.

[00:17:00] Why most security training is designed to address the wrong problem.

[00:20:00] The McDonald's kiosk example – What we can learn from other industries.

[00:25:00] The importance of actionable examples in security training.

[00:30:00] The generative AI paradox – When tech meets human bias.

[00:35:00] Why AI is the ultimate behavioural science challenge.

[00:40:00] The 'Operating System' analogy – Why the human brain is still running Stone Age software.

[00:50:00] Why cyber professionals need to look outside their own industry for inspiration.

[00:55:00] The role of curiosity and exploration in designing effective security programs.

Links:Sarah’s website: https://securebychoice.com/
Sarah on LinkedIn: https://www.linkedin.com/in/sarah-aalborg-bb348a1/
Secure by Choice:https://securityblendbooks.com/products/secure-by-choice?

Tämä jakso on lisätty Podme-palveluun avoimen RSS-syötteen kautta eikä se ole Podmen omaa tuotantoa. Siksi jakso saattaa sisältää mainontaa.

Jaksot(368)

Giles Oakley on The Art & Science of Tea

Giles Oakley on The Art & Science of Tea

What does tea have to do with human behaviour? A lot more than you might think.  On this epusoed, I'm exploring one of the world's most popular drinks and what we can learn from it.SummaryMy guest is ...

15 Helmi 202549min

Pav Gill on Whistleblowing that works

Pav Gill on Whistleblowing that works

How do we create systems that encourage whistleblowing without incentivizing malicious reporting? Should we reward whistleblowers financially? Why is closure important, both for whistleblowers and the...

1 Helmi 20251h 11min

Dr Hemma Lomax on The Edge of Possibility

Dr Hemma Lomax on The Edge of Possibility

What is the edge of possibility and how can storytelling help us to find it?  My guest isn't a storyteller — she's a lawyer, working in compliance — but she's got some fascinating insights to share ab...

25 Tammi 20251h 3min

Duncan Mavin on Meltdown: The Collapse of Credit Suisse

Duncan Mavin on Meltdown: The Collapse of Credit Suisse

How does a major global bank keep surviving crises; until it doesn't?Episode SummaryOn this episode, I’m joined by Duncan Mavin, author of Meltdown: Scandal, Sleaze, and the Collapse of Credit Suisse....

12 Tammi 20251h 1min

Kit Holden on Played in Germany -  a footballing journey through a nation's soul

Kit Holden on Played in Germany -  a footballing journey through a nation's soul

What can we learn about a country from its favourite sport?  A lot. Particularly when that country has a history and culture like Germany.  Which is what I'm exploring on this episode.Even if you're n...

5 Tammi 202556min

Tim Houlihan & Dr Kurt Nelson on Behavioural Experiments, Podcasting, and Innovation

Tim Houlihan & Dr Kurt Nelson on Behavioural Experiments, Podcasting, and Innovation

What role does experimentation play in making big life and creative decisions? What lessons can podcasters teach us about effective communication in business?Show Summary To answer these questions, in...

27 Joulu 20241h 32min

Fraser Simpson on Making Ethics Engaging

Fraser Simpson on Making Ethics Engaging

What does a pink puppet called Connie have to do with ethics? More than you might think. On this episode, I'm speaking with a lawyer, whose innovative approach to getting employees to engage in ethics...

21 Joulu 20241h 38min

Jono Hey on Sketchplanations

Jono Hey on Sketchplanations

Can you distill a complex concept into a single sketch? Jono Hey can and on this episode, he joins me to talk about Sketchplanations —a project that explains the world, one sketch at a time.SummaryI’v...

6 Joulu 20241h 7min

Suosittua kategoriassa Tiede

rss-poliisin-mieli
tiedekulma-podcast
rss-mita-tulisi-tietaa
docemilia
filocast-filosofian-perusteet
menologeja-tutkimusmatka-vaihdevuosiin
rss-duodecim-lehti
rss-tiedetta-vai-tarinaa
sotataidon-ytimessa
rss-lapsuuden-rakentajat-podcast
rss-lihavuudesta-podcast
utelias-mieli
radio-antro
rss-bios-podcast
rss-metsantuntijat-podcast
rss-luontopodi-samuel-glassar-tutkii-luonnon-ihmeita
rss-sosiopodi