Episode 234 Deep Dive: Tulin Sevgin | Tackling Third-Party Risk Management: Crucial Insights for Effective Due Diligence
KBKAST15 Joulu 2023

Episode 234 Deep Dive: Tulin Sevgin | Tackling Third-Party Risk Management: Crucial Insights for Effective Due Diligence

In this episode, we are joined by Tulin Sevgin (Director – National Cyber Security Practice, MinterEllison) as we unravel the complexities and potential oversights in working with vendors. Tulin sheds light on the critical need for due diligence in the procurement process to mitigate future risks, emphasising the impact of vendor changes on data access and infrastructure. Tulin navigates the labyrinth of vendor risk governance and emphasizes the significance of ongoing monitoring. Join us as we delve into the intricacies of vendor assessments, the challenges involved, and the supply chain landscape.

Tulin Sevgin is a strategic thinker and cyber risk management specialist with experience in public and private sectors. Tulin has held senior positions with Commonwealth Bank, Westpac, Optiver and Deloitte.

Amongst Tulin’s career she has successfully started up and led a cybersecurity practice at a boutique consultancy and is now leading the TPRM team at UpGuard growing the CyberRisk product and services.

Tulin specializes in cyber risk management including TPRM, cyber risk threat analysis, prevention,
control and assurance. Tulin’s past working experience spans enterprise risk management, business
continuity, risk culture analysis, project management, issues management, IT audit, data analytics,
internal audit and external audit.
Tulin has worked across multiple projects from:

  • Developing and implementing successful Third-Party Risk Management Frameworks
  • APRA Prudential Standard CPS234, GDPR, CCPA, NDB scheme readiness
  • Information Security Officer positions
  • Cyber Security Incident response exercises
  • Creating and exercising data breach response plans
  • Developing, managing and testing IT disaster recovery plans
  • Enhancing cyber risk frameworks for various clients
  • Facilitating cyber security awareness training
  • Post cyber incident reviews
  • Social engineering projects

Tämä jakso on lisätty Podme-palveluun avoimen RSS-syötteen kautta eikä se ole Podmen omaa tuotantoa. Siksi jakso saattaa sisältää mainontaa.

Jaksot(435)

Episode 382 Deep Dive: Quinton Anderson | Trust the System, Not the Agent – Zero Trust for the Agentic Enterprise

Episode 382 Deep Dive: Quinton Anderson | Trust the System, Not the Agent – Zero Trust for the Agentic Enterprise

KB sits down with Quinton Anderson, founder of Aigentsphere, to challenge one of the most repeated lines in AI governance: that a human in the loop keeps you safe. His view is that asking people to ap...

26 Elo 49min

Episode 381 Deep Dive: Gijo Varghese | When a Cyber Attack Becomes a Public Safety Failure

Episode 381 Deep Dive: Gijo Varghese | When a Cyber Attack Becomes a Public Safety Failure

Karissa Breen sits down with Gijo Varghese, Chief Security Officer at OT cyber security firm Secolve, to unpack an uncomfortable trade-off: the same connectivity and AI making power, water and transpo...

19 Elo 47min

Episode 380 Deep Dive: Mark Thomas | Owning a Policy PDF Doesn't Mean You Govern Your AI

Episode 380 Deep Dive: Mark Thomas | Owning a Policy PDF Doesn't Mean You Govern Your AI

In this episode, KB sits down with Mark Thomas, IT governance and risk veteran, ISACA Hall of Famer and president of Escoute Consulting, to pull apart a problem a lot of boards haven’t clocked yet – t...

12 Elo 47min

Episode 379 Deep Dive: Sean Duca | Confidence Is Not Permission - Rethinking Authority in the Autonomous SOC

Episode 379 Deep Dive: Sean Duca | Confidence Is Not Permission - Rethinking Authority in the Autonomous SOC

Most security vendors are shipping AI that treats capability as authority. Sean Duca thinks that’s the mistake customers are already paying for. Back on KBKast for a third time, now as co-founder and ...

5 Elo 42min

Episode 378 Deep Dive: Harman Kaur | Automation Isn't Transformation - From Intent to Outcome in Autonomous IT

Episode 378 Deep Dive: Harman Kaur | Automation Isn't Transformation - From Intent to Outcome in Autonomous IT

The old security math is broken. Teams used to get roughly 60 days between a vulnerability going public and attackers using it. Harman Kaur, Tanium’s CTO, explains why that number has flipped to negat...

29 Heinä 39min

Episode 377 Deep Dive: Bradon Rogers | The Forgotten Workspace - Why Nobody Ever Secured the Browser

Episode 377 Deep Dive: Bradon Rogers | The Forgotten Workspace - Why Nobody Ever Secured the Browser

Bradon Rogers, Chief Customer Officer at Island, the company that created the enterprise browser category in 2020, joins KB to unpack why the industry spent two decades bolting security around the bro...

22 Heinä 39min

From SAP Sapphire - KB On The Go | Legacy Risk and the AI Trust Gap

From SAP Sapphire - KB On The Go | Legacy Risk and the AI Trust Gap

KB is on the ground at SAP Sapphire 2026 in Orlando, where AI has moved beyond experimentation and into the center of enterprise decision making. In this KB On The Go episode, Maura Hameroff (CMO, Clo...

17 Heinä 33min

Episode 376 Deep Dive: Anna Wheeler | Synthetic Confidence - When the Board Believes the Machine

Episode 376 Deep Dive: Anna Wheeler | Synthetic Confidence - When the Board Believes the Machine

In this episode, Anna Wheeler, CEO of SSAW LLC, joins KB as she explains why so many cyber teams are stuck in event-driven strategy while calling it the real thing, why the doers can’t climb out of it...

15 Heinä 39min

Suosittua kategoriassa Liike-elämä ja talous

sijotuskasti
mimmit-sijoittaa
rss-rahapodi
psykopodiaa-podcast
ostan-asuntoja-podcast
hyva-paha-johtaminen
pomojen-suusta
rss-rahamania
rss-ammattipodcast
oppimisen-psykologia
rahapuhetta
rss-hikipaja
rss-bisnesta-bebeja
pari-sanaa-lastensuojelusta
rss-inderes
rss-muutoksenanatomiaa-podcast
rss-porssipodi
rss-vaikuttavan-opettajan-vierella
rss-pinnan-alle
rss-oivalluksia-rahasta-elamasta