#367 - RSM & IDAC Present - The Intersection of Attack Surface Management and Identity

#367 - RSM & IDAC Present - The Intersection of Attack Surface Management and Identity

Join hosts Jeff Steadman and Jim McDonald as they explore the critical intersection of attack surface management (ASM) and digital identity with Dan Lauritzen, Director with RSM Defense - RSM’s Managed Security Team. This episode dives deep into how identity has become a key component of your organization's attack surface and why breaking down silos between identity teams and Security Operations Centers is more crucial than ever.

Dan brings a unique perspective from his military background as a human intelligence collector to his current role in detection and response. Learn about the cyber kill chain, understand when you might have too much data, and discover practical strategies for treating identities as assets that need continuous protection.

Whether you're an identity practitioner looking to expand your security knowledge or a cybersecurity professional wanting to better understand identity's role in attack surface management, this conversation offers valuable insights and actionable takeaways.

Key topics include XDR platforms, ITDR tools, the evolution from legacy SIEM to modern detection systems, and why the future of security requires collaboration between traditionally separate teams.


Chapter Timestamps

00:00 - Introduction and Industry Trends

01:00 - AI and Technology Disruption Discussion

02:00 - Upcoming Conference Schedule and Discount Codes

04:00 - Podcast Milestone - Approaching One Million Downloads

06:30 - Introducing Dan Lauritzen and RSM Defense Team

09:00 - Dan's Background - From Military to Cybersecurity

12:00 - What is Attack Surface Management?

14:00 - Treating Identities as Assets

16:00 - The Cyber Kill Chain Explained

18:00 - Why Identity and SOC Teams Operate in Silos

21:00 - The Role of Data in Modern Security Operations

23:00 - Continuous Identity Management and Shared Signals Framework

26:00 - Can You Have Too Much Data?

29:00 - Breaking Down Silos Between Identity and SOC Teams

32:00 - Practical Collaboration Strategies

34:00 - SIEM vs XDR vs ITDR - Understanding the Tool Landscape

41:00 - Pragmatic Security Strategies and Metrics

44:00 - Biggest Misconceptions About Attack Surface Management

45:00 - Military Background - Human Intelligence Collection

48:00 - Communication Tips for Better Information Gathering

51:00 - Closing and Contact Information


Connect with Dan: https://www.linkedin.com/in/daniel-lauritzen-67545045/

Cyber Kill Chain: https://en.wikipedia.org/wiki/Cyber_kill_chain

Learn more about RSM:


Connect with us on LinkedIn:

Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/

Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/


Visit the show on the web at http://idacpodcast.com


Keywords

IDAC, Identity at the Center, Jeff Steadman, Jim McDonald, Dan Lauritzen, RSM, attack surface management, cybersecurity, digital identity, SOC, Security Operations Center, XDR, ITDR, SIEM, cyber kill chain, detection and response, identity security, human intelligence, military cybersecurity, continuous identity management, shared signals framework, UEBA, threat detection, zero trust, privileged access management, identity governance, security metrics, vendor management, cloud security, endpoint security, data correlation, security silos, collaboration strategies, identity assets, orphaned accounts, entitlement creep, attack surface reduction, security automation, AI in security, machine learning security, identity sprawl, security tools, cybersecurity consulting, managed security services, security monitoring, incident response, threat hunting, vulnerability management, risk assessment, compliance, security architecture, defense strategy


Avsnitt(392)

Identity At The Center #16: The IAM Garbage Plate

Identity At The Center #16: The IAM Garbage Plate

In this episode, Jim and Jeff have a bit of an IAM garbage plate of random items in honor of their visit to Rochester, NY. There is some IT Service Management (ITSM) and service catalog talk along with a smattering of other items. Want to join the conversation? Leave us a message here: anchor.fm/identity-at-the-center/message or email us at questions@identityatthecenter.com

11 Okt 201936min

Identity At The Center #15: KuppingerCole Consumer Identity World Conference Part 2

Identity At The Center #15: KuppingerCole Consumer Identity World Conference Part 2

In this episode, Jim and Jeff recap the KuppingerCole Consumer Identity World conference in Seattle, WA. Part 2 of 2. Want to join the conversation? Leave us a message here: anchor.fm/identity-at-the-center/message or email us at questions@identityatthecenter.com

4 Okt 201938min

Identity At The Center #14: KuppingerCole Consumer Identity World Conference Part 1

Identity At The Center #14: KuppingerCole Consumer Identity World Conference Part 1

In this episode, Jim and Jeff talk about the first day of the KuppingerCole Consumer Identity World conference in Seattle, WA. Part 1 of 2. Want to join the conversation? Leave us a message here: anchor.fm/identity-at-the-center/message or email us at questions@identityatthecenter.com

2 Okt 201938min

Identity At The Center #13 - Conference Attendance Strategy with Jaime

Identity At The Center #13 - Conference Attendance Strategy with Jaime

In this episode, Jim and Jeff talk with special guest Jaime Lewis-Gross, Global Director of Solution Strategy at Saviynt, about how they pick which conferences to attend, how they figure out which sessions to attend, and their personal strategies for conference swag collection. Top IAM Conferences: RSA Conference Identiverse Gartner IAM Summit Want to join the conversation? Leave us a message here: anchor.fm/identity-at-the-center/message or email us at questions@identityatthecenter.com

27 Sep 201929min

Identity At The Center #12: Battling the Resistance

Identity At The Center #12: Battling the Resistance

For this episode, Jim and Jeff talk about how to identify and battle against resistance to change that can happen when introducing IAM to an organization. Top 12 Reasons Why People Resist Change: https://www.torbenrick.eu/blog/change-management/12-reasons-why-people-resist-change/ Top 10 Common Pitfalls Of An IAM Program: https://www.identropy.com/blog/new-ebook-top-10-common-pitfalls-of-an-iam-program Want to join the conversation? Leave us a message here: anchor.fm/identity-at-the-center/message or email us at questions@identityatthecenter.com

20 Sep 201940min

Identity At The Center #11: Managing IAM in the Hybrid Cloud

Identity At The Center #11: Managing IAM in the Hybrid Cloud

On this episode, Jim and Jeff talk with Morgan McNamara, a member of Identropy's crack engineering team, about a question submitted by listener Neil on approaches to manage identities across multiple cloud environments. Want to join the conversation? Leave us a message here: anchor.fm/identity-at-the-center/message or email us at questions@identityatthecenter.com.

13 Sep 201936min

Identity At The Center #10 - South of the Border with Arturo Cordoba

Identity At The Center #10 - South of the Border with Arturo Cordoba

On this episode, Jim and Jeff talk with Arturo Cordoba, Senior Advisor on the Cyber Security team with Cemex in Mexico, about the differences in IAM in Mexico compared to the United States, building IAM teams, and a hint of blockchain identity use cases. Want to join the conversation? Leave us a message here: anchor.fm/identity-at-the-center/message or email us at questions@identityatthecenter.com.

6 Sep 201943min

Identity At The Center #9: Authentication Talk with Mario from Callsign

Identity At The Center #9: Authentication Talk with Mario from Callsign

On this episode, Jim and Jeff talk with Mario Dusaj, solutions architect at Callsign.com, about his thoughts around creating a good authentication experience. Want to join the conversation? Leave us a message here: anchor.fm/identity-at-the-center/message or email us at questions@identityatthecenter.com

30 Aug 201935min

Populärt inom Teknik

uppgang-och-fall
natets-morka-sida
elbilsveckan
market-makers
rss-laddstationen-med-elbilen-i-sverige
rss-uppgang-och-fall
rss-elektrikerpodden
bilar-med-sladd
rss-badfluence
rss-technokratin
developers-mer-an-bara-kod
skogsforum-podcast
hej-bruksbil
rss-racevecka
rss-veckans-ai
bli-saker-podden
rss-digitala-influencer-podden
har-vi-akt-till-mars-an
rss-snacka-om-ai
under-femton