The Biggest Lie in Cybersecurity

The Biggest Lie in Cybersecurity

Who owns cyber risk in third-party relationships? In this episode of Third Party, we tackle one of the most urgent questions facing security leaders today: who is actually accountable for third-party risk when something goes wrong? If you’re a CISO, risk leader, or executive trying to avoid blame, regulatory fallout, or career-ending mistakes, this conversation delivers clarity you can act on immediately.

Hosted by Jeffrey Wheatman, Bob Maley, and Ferhat Dikbiyik, this episode breaks down the real difference between ownership, responsibility, and accountability in third-party cyber risk. The hosts unpack why CISOs are often blamed for risks they don’t own, how boards and executives should be involved, and why documenting risk decisions matters more than ever as regulators and courts increase scrutiny. This discussion explains how misaligned risk ownership leads to firings, fines, and failures—and how to prevent that inside your organization.

What you’ll learn in this episode:

  • How to define ownership vs. accountability in third-party cyber risk
  • Why CISOs should inform risk, not silently absorb it
  • Who actually owns financial risk when vendors fail
  • How to document risk acceptance so it doesn’t come back on you
  • Why regulators and boards are forcing clearer risk decisions
  • How to communicate third-party risk in business and financial terms

Don’t risk being the one blamed when a third party breaches your ecosystem. Learn how to clearly assign ownership, document accountability, and protect both your organization and your career—before the next incident forces the issue.

Denne episoden er hentet fra en åpen RSS-feed og er ikke publisert av Podme. Den kan derfor inneholde annonser.

Episoder(23)

You Can't Say No to Your Vendors

You Can't Say No to Your Vendors

You can't actually say no to a vendor. Ask any room of CISOs how many of them have the power to walk away from a vendor relationship over cyber risk, and the honest answer is almost none. So if levera...

29 Jul 41min

Why Manufacturing Supply Chains Are Ransomware’s Favorite Target

Why Manufacturing Supply Chains Are Ransomware’s Favorite Target

Manufacturing cybersecurity risk is rising faster than most organizations realize—and many teams are still missing the basics. In this episode, we break down manufacturing cybersecurity risk and why t...

15 Jul 33min

The #1 Mistake Boards Make on Cyber Risk

The #1 Mistake Boards Make on Cyber Risk

Cyber risk communication with boards is broken—and most organizations don’t realize how much it’s costing them. In this episode, we unpack cyber risk communication with boards and reveal why even well...

1 Jul 32min

The Hidden Signals Predicting Vendor Collapse

The Hidden Signals Predicting Vendor Collapse

Third-Party Risk Prediction is the future of cybersecurity, but can you actually predict when a vendor will fail? In this episode of Third Party, we explore third-party risk prediction and whether for...

17 Jun 37min

Mythos Hype Check: TPRM Paradigm Shift or Big Nothing Burger

Mythos Hype Check: TPRM Paradigm Shift or Big Nothing Burger

A new AI model called Mythos promises to find vulnerabilities faster than any human team. But what does that actually mean for the security leaders responsible for managing third-party risk? In this s...

4 Jun 45min

Are You Measuring the Right Risks…Or Just the Easiest Ones?

Are You Measuring the Right Risks…Or Just the Easiest Ones?

Are you measuring the right risks in your third party risk management program—or just the easiest ones? In this episode, we break down how most teams approach third party risk management metrics and w...

20 Mai 31min

Why Automation Is Creating More Cyber Risk

Why Automation Is Creating More Cyber Risk

Automation vs Accuracy in TPCRM is one of the biggest challenges in modern third-party risk management. In this episode, we break down how the push for faster automation is impacting accuracy, and wha...

6 Mai 34min

How to Calculate the Real Cost of a Third-Party Breach

How to Calculate the Real Cost of a Third-Party Breach

Calculating the real financial impact of a third-party breach is one of the hardest challenges in cybersecurity today. In this episode, Jeffrey Wheatman, Bob Maley, and Ferhat Dikbiyik explore how org...

22 Apr 40min

Populært innen Teknologi

lydartikler-fra-aftenposten
tomprat-med-gunnar-tjomlid
teknisk-sett
elektropodden
shifter
rss-ai-forklart
hans-petter-og-co
rss-alt-som-gar-pa-strom
fornybaren
rss-digitaliseringspadden
smart-forklart
energi-og-klima
rss-bak-skyen
teknologi-og-mennesker
rss-grenser-for-ki
rss-snakk-om-sikkerhet
rss-teknologioptimistene-energibransjens-it-podcast
sosialt-sett-om-teknologi-kommunikasjon-og-livet-i-mellom
rss-kritisk-linje
f32no-en-podcast-om-foto-og-annen-teknologi