How a CISO Thinks About Risk and Resilience | Andre Shori, APAC CISO, Schneider Electric
Manage episode 461046309 series 3579095
In this episode, Andre Shori, CISO at Schneider Electric, shares his thoughts about building security culture, incidence response, as well as the evolving role of technology, including AI, in defending against sophisticated cyber threats. Hosted by Aleksandra from the SquareX founder’s office, this episode offers a glimpse into the thought process behind a CISO whose duty is to safeguard the enterprise and stakeholders.
0:00 Introduction and Andre’s route to being a cybersecurity leader
6:40 Cultivating security culture with a risk-informed approach (as opposed to compliance for its own sake)
18:23 How to stay ahead of attackers
24:05 Communicating a breach to stakeholders and the benefits of sharing intelligence
34:30 Andre’s thoughts on securing the browser and the implications of AI
41:00 Approaching data leakage from a data management perspective
44:55 On insider threats: trust + technological backstop
47:44 Andre’s thoughts on malicious extensions, “free services” and how mistakes improve security culture
52:50 Making security culture part of the company DNA
55:53 Three pieces of advice for aspiring CISOs, closing thoughts
🔔 Follow Andre and Aleksandra on:
https://www.linkedin.com/in/andreshori/
https://www.linkedin.com/in/aleksandra-melnikova-1012/
🔥 Powered by SquareX
SquareX helps organizations detect, mitigate, and threat hunt web attacks happening against their users in real-time. Find out more about SquareX at https://sqrx.com/
فصول
1. Introduction and Andre’s route to being a cybersecurity leader (00:00:00)
2. Cultivating security culture with a risk-informed approach (as opposed to compliance for its own sake) (00:06:40)
3. How to stay ahead of attackers (00:18:23)
4. Communicating a breach to stakeholders and the benefits of sharing intelligence (00:24:05)
5. Andre’s thoughts on securing the browser and the implications of AI (00:34:30)
6. Approaching data leakage from a data management perspective (00:41:00)
7. On insider threats: trust + technological backstop (00:44:55)
8. Andre’s thoughts on malicious extensions, “free services” and how mistakes improve security culture (00:47:44)
9. Making security culture part of the company DNA (00:52:50)
10. Three pieces of advice for aspiring CISOs, closing thoughts (00:55:53)
32 حلقات