Go offline with the Player FM app!
#228 - CIS CSAT (with Scot Gicking)
Manage episode 477029903 series 2849492
Join host G Mark Hardy on CISO Tradecraft as he welcomes expert Scott Gicking to discuss the Center for Internet Security's (CIS) Controls Self-Assessment Tool (CSAT). Learn what CSAT is, how to effectively use it, and how it can enhance your career in cybersecurity. Stay tuned for insights on creating effective security frameworks, measuring maturity, and improving organizational security posture using the CSAT tool.
Scott Gicking - https://www.linkedin.com/in/scottgickingus/
CIS CSAT - https://www.cisecurity.org/controls/cis-controls-self-assessment-tool-cis-csat
Transcripts: https://docs.google.com/document/d/1WAI9U0WEUSJH1ZVWM1HdtFEf-O9hLJBe
Chapters
- 01:16 Guest Introduction: Scott Gicking
- 02:49 Scott's Career Journey
- 04:03 The Hollywood Cybersecurity Incident
- 07:38 Introduction to CIS and Its Importance
- 09:49 Understanding the CIS CSAT Tool
- 10:13 Implementing CIS CSAT in a Real-World Scenario
- 13:00 Benefits of the CIS CSAT Tool
- 18:38 Developing a Three-Year Roadmap with CSAT
- 23:25 Scoring Policies and Controls
- 24:20 Control Implementation and Automation
- 25:22 CMMC Certification Levels
- 27:52 Honest Self-Assessment
- 30:01 Quick and Dirty Assessment Approach
- 33:07 Building Trust and Reporting
- 37:38 Business Impact Analysis Tool
- 40:02 Reputational Damage and CISO Challenges
- 42:55 Final Thoughts and Contact Information
230 episodes
Manage episode 477029903 series 2849492
Join host G Mark Hardy on CISO Tradecraft as he welcomes expert Scott Gicking to discuss the Center for Internet Security's (CIS) Controls Self-Assessment Tool (CSAT). Learn what CSAT is, how to effectively use it, and how it can enhance your career in cybersecurity. Stay tuned for insights on creating effective security frameworks, measuring maturity, and improving organizational security posture using the CSAT tool.
Scott Gicking - https://www.linkedin.com/in/scottgickingus/
CIS CSAT - https://www.cisecurity.org/controls/cis-controls-self-assessment-tool-cis-csat
Transcripts: https://docs.google.com/document/d/1WAI9U0WEUSJH1ZVWM1HdtFEf-O9hLJBe
Chapters
- 01:16 Guest Introduction: Scott Gicking
- 02:49 Scott's Career Journey
- 04:03 The Hollywood Cybersecurity Incident
- 07:38 Introduction to CIS and Its Importance
- 09:49 Understanding the CIS CSAT Tool
- 10:13 Implementing CIS CSAT in a Real-World Scenario
- 13:00 Benefits of the CIS CSAT Tool
- 18:38 Developing a Three-Year Roadmap with CSAT
- 23:25 Scoring Policies and Controls
- 24:20 Control Implementation and Automation
- 25:22 CMMC Certification Levels
- 27:52 Honest Self-Assessment
- 30:01 Quick and Dirty Assessment Approach
- 33:07 Building Trust and Reporting
- 37:38 Business Impact Analysis Tool
- 40:02 Reputational Damage and CISO Challenges
- 42:55 Final Thoughts and Contact Information
230 episodes
All episodes
×Welcome to Player FM!
Player FM is scanning the web for high-quality podcasts for you to enjoy right now. It's the best podcast app and works on Android, iPhone, and the web. Signup to sync subscriptions across devices.