Shifting Security and Protecting the Pharma Supply Chain with Andy Hillis

Shifting Security and Protecting the Pharma Supply Chain with Andy Hillis

This episode provides a technical exploration of security engineering within highly scrutinized life sciences environments, drawing on Andy Hillis' decades of operational history at The Almac Group. The discussion centers on the practical realities of shifting security left. Andy explains how his organization integrated rigorous info security reviews directly into the initial request for information and request for proposal stages, effectively establishing an unyielding baseline of evidence for third party vendors. Listeners will gain access to battlefield stories regarding the navigation of sudden structural oversight from global regulatory bodies, including the FDA, EMA, and the post Brexit MHRA. The narrative moves past high level compliance abstractions to focus on the technical enforcement of GXP principles, least privilege role based access control, and centralized configuration change management across distributed international networks. Andy challenges conventional industry perspectives on cloud adoption and rapid automation, outlining a calculated, use case driven approach to infrastructure management. The conversation covers critical recovery metrics, defining the architecture required to build a provable, immutable backup position capable of supporting a minimum viable company operational state during an incident. Finally, the dialogue addresses the integration of automated security operations centers and the governance frameworks needed to control decentralized citizen development. What You'll Learn Core methodologies for integrating security teams into early procurement and RFI cycles. Operational frameworks required to support over 200 diverse compliance audits annually. Tactical application of GXP guidelines to digital data retention workflows. Engineering immutable backup states to secure a minimum viable company position. Governance mechanisms for regulating generative AI and managing rogue asset development. Automated SOC implementation techniques designed to suppress alert noise effectively. Value of network discovery tools in mapping complex assets internationally.

Denne episoden er hentet fra en åpen RSS-feed og er ikke publisert av Podme. Den kan derfor inneholde annonser.

Episoder(61)

Top CISO Priorities and Global Digital Trust with Morgan Adamski

Top CISO Priorities and Global Digital Trust with Morgan Adamski

Please enjoy this encore of Data Security Decoded. Welcome to ⁠Data Security Decoded⁠. Join host ⁠Caleb Tolin⁠ in conversation with ⁠Morgan Adamski⁠ who leads Cyber, Data, and Tech Risk at PwC and i...

11 Aug 23min

Building Automation Frameworks and Tackling Cloud Archiving with Fred Lhoest

Building Automation Frameworks and Tackling Cloud Archiving with Fred Lhoest

This episode delivers operational insights from the frontlines of global telecommunications, drawing on Fred Lhoest's experience managing IT infrastructure across 60 countries at PCCW Global. The disc...

28 Jul 17min

Securing Research Infrastructure and Managing Shadow AI with Kevin Mortimer

Securing Research Infrastructure and Managing Shadow AI with Kevin Mortimer

This episode explores the technical hurdles of protecting academic research environments and navigating the shift to automated cloud architectures, drawing on Kevin Mortimer's twenty five years of tec...

21 Jul 29min

Defending the Authentication Flow: Device Code Phishing with Selena Larson

Defending the Authentication Flow: Device Code Phishing with Selena Larson

This episode delivers critical battlefield stories regarding the operational reality of modern identity based threats. Selena Larson, Staff Threat Researcher and Lead, Intelligence Analysis and Strate...

30 Jun 28min

Beyond the Doomsday: Operational Resilience, Identity Sprawl, and Back-to-Basics Cyber Defense

Beyond the Doomsday: Operational Resilience, Identity Sprawl, and Back-to-Basics Cyber Defense

In this comprehensive roundtable episode, a powerhouse panel of seasoned security professionals—Cynthia Kaiser, Matt Castriotta, Allison Wikoff, John Fokker, Amit Malik, and Joe Hladik—joins host Cale...

23 Jun 35min

The Anatomy of Cloud Ransomware with Matt Castriotta

The Anatomy of Cloud Ransomware with Matt Castriotta

Are your cloud security controls actually protecting your infrastructure, or are they just keeping the lights on? With host Caleb Tolin, Matt Castriotta, Field CTO for Cloud at Rubrik, breaks down the...

9 Jun 28min

Running the Inverted Offensive Campaign with Adam Karcher

Running the Inverted Offensive Campaign with Adam Karcher

What happens when the adversary’s dwell time is measured in years, but your defense is measured in tickets? Adam Karcher, FBI Supervisory Special Agent, Cyber Division, and a member of the Bureau’s AI...

26 Mai 35min

Populært innen Business og økonomi

stopp-verden
dine-penger-pengeradet
e24-podden
lydartikler-fra-aftenposten
rss-penger-polser-og-politikk
rss-borsmorgen-okonominyhetene
lederpodden
rss-skravla-gar
rss-pa-konto
utbytte
pengepodden-2
finansredaksjonen
morgenkaffen-med-finansavisen
livet-pa-veien-med-jan-erik-larssen
tid-er-penger-en-podcast-med-peter-warren
liberal-halvtime
okonomiamatorene
rss-markedspuls-2
pengesnakk
rss-politisk-preik