combsandco


Feature Friday with DYKT? Snippets

“The five most efficient cyber defenders are: Anticipation, Education, Detection, Reaction and Resilience. Do remember: Cybersecurity is much more than an IT topic.” Stephane Nappo

And now Part 2 of the 2-part premiere of DYKT? Snippets.  We’re closing out the conversation about the New York State Department of Financial Services (NYSDFS) Part 500 cyber regulations.  Be sure to watch Part 1 before diving into these videos.

For context, here are some links for the regulations & the actual requirements:

Who NYSDFS Supervises: https://www.dfs.ny.gov/who_we_supervise

NYSDFS Industry Definitions: https://www.dfs.ny.gov/institution_definition

NYSDFS Cybersecurity Resource Ctr: https://www.dfs.ny.gov/industry_guidance/cybersecurity

Regulation Sections:

500.02 – Cybersecurity Program

500.03 – Cybersecurity Policy

500.04 – Chief Information Security Officer (exempt)

500.05 – Penetration Testing & Vulnerability Assessments (exempt)

500.06 – Audit Trail (exempt)

500.07 – Access Privileges

500.08 – Application Security (exempt)

500.09 – Risk Assessment

500.10 – Cybersecurity Personnel and Intelligence (exempt)

500.11 – Third Party Service Provider Security Policy

500.12 – Multi-Factor Authentication (exempt)

500.13 – Limitations on Data Retention

500.14 – Training and Monitoring (exempt)

500.15 – Encryption of Nonpublic Information (exempt)

500.16 – Incident Response Plan (exempt)

500.17 – Notices to Superintendent

Music: “Camaro” by Oliver Michael via Artlist



Feature Friday with DYKT? Snippets

“The five most efficient cyber defenders are: Anticipation, Education, Detection, Reaction and Resilience. Do remember: Cybersecurity is much more than an IT topic.” Stephane Nappo

We’re shaking things up here at Did You Know That?  We’re always looking to bring you informative conversations that could better your business and sometimes, your life.  But that doesn’t always have to be in long-form interviews.  So, may we present, drumroll please…

DYKT? Snippets.

DYKT? Snippets will be episodes featuring a collection of short videos on a particular topic.  What that topic may be will always be a surprise.  For this kickoff event, we’re going big with a 2-part premiere episode.

In 2017, the New York State Department of Financial Services (NYSDFS) Part 500 cyber regulations went live.  These regulations apply to certain businesses licensed by the NYSDFS to operate in New York.  While the regulations have their shortcomings, in the scope of state-backed cyber laws, they’ve proven to be quite reasonable.  Episodes 1 & 2 will feature videos that outline how businesses can utilize these requirements to get their cyber houses in order.

For context around the videos, here are some links for the regulations & the actual requirements:

Who NYSDFS Supervises: https://www.dfs.ny.gov/who_we_supervise

NYSDFS Industry Definitions: https://www.dfs.ny.gov/institution_definition

NYSDFS Cybersecurity Resource Ctr: https://www.dfs.ny.gov/industry_guidance/cybersecurity

Regulation Sections:

500.02 – Cybersecurity Program

500.03 – Cybersecurity Policy

500.04 – Chief Information Security Officer (exempt)

500.05 – Penetration Testing & Vulnerability Assessments (exempt)

500.06 – Audit Trail (exempt)

500.07 – Access Privileges

500.08 – Application Security (exempt)

500.09 – Risk Assessment

500.10 – Cybersecurity Personnel and Intelligence (exempt)

500.11 – Third Party Service Provider Security Policy

500.12 – Multi-Factor Authentication (exempt)

500.13 – Limitations on Data Retention

500.14 – Training and Monitoring (exempt)

500.15 – Encryption of Nonpublic Information (exempt)

500.16 – Incident Response Plan (exempt)

500.17 – Notices to Superintendent

Music: “Camaro” by Oliver Michael via Artlist



Feature Friday with Jim Mottola

“They who can give up essential liberty to obtain a little temporary safety deserve neither liberty nor safety.” Benjamin Franklin

COVID-19 has certainly made its presence felt at the two-decade mark of the 21st Century (both negatively and positively). The current bent of the world toward vaccinations as a prerequisite for reopening naturally leads to a conversation about identification.

Jim Mottola and I talked about this very topic on the premier episode of Everything Cyber, so we’re returning to this fertile ground to address the changes since and possible future of dynamic identification.


James Mottola: https://www.linkedin.com/in/jamesmottola/
Sean O’Rourke: https://www.linkedin.com/in/scorcyber/

Music: “Tunnel Vision” by Stanley Gurvich via Artlist



Feature Friday with Judy Selby

“Rather than fearing or ignoring cyberattacks, do ensure your cyber resilience to them.” Stephane Nappo

Episode 2021:13

In a few decades, historians will write tomes explaining how the world evolved into its current state based on the 366 days that made up the year 2020.  Among the explanations will be lessons learned during the intervening years and the mistakes repeated.  Those in the technology arena don’t have the luxury of learning lessons over time or of repeated mistakes.

The next guest on Did You Know That? knows the perils of technology, but she’s more interested in how companies protect themselves from those perils.  Judy Selby is an attorney, with a specialty in cyber insurance (a subject with which I’m familiar).  Our conversation is about how businesses prepare for the inevitable cyber event and how they can thrive after being hit.  This is a must watch/listen.

Find out more about Judy and her expertise via the links below:

LinkedIn: https://www.linkedin.com/in/judyselby/

Hinshaw website: https://www.hinshawlaw.com/professionals-judith-selby.html

Music: “Caution” by Skrxlla via Artlist



Feature Friday with Shira Fisher

“We think sometimes that poverty is only being hungry, naked, and homeless. The poverty of being unwanted, unloved, and uncared for is the greatest poverty.” Mother Teresa

Episode 2021:12

Homelessness has been an issue for humans since a documented history was begun – and probably before. Like most complex societal issues, solutions have been tried, discarded, tried again, discarded again, and so on. Why would efforts in 2021 be different?

That and many other questions are addressed in this episode of Did You Know That? Shira Fisher has spent 13+ years of her life working for organizations using modern technologies, data, and approaches to put a dent in the 55,000 homeless in New York City. Despite the enormity of the effort and the incremental forward progress, she remains convinced this is one societal issue that can be solved. After you experience this conversation, you might as well.

Find out more about Shira and her background via LinkedIn: https://www.linkedin.com/in/shira-fisher-8017667/.

Music: “What Makes Us Human” by Attila Erdelyi via Artlist



Feature Friday with Christopher Young

(NOTE: Apologies in advance for the volume of my microphone. It apparently didn’t fully show up for the interview after testing.)

“Action indeed is the sole medium of expression for ethics.” Jane Addams

My enthrallment with history didn’t start until I met Mr. Ed Powers.  Mr. Powers still teaches history where I went to high school and it’s he who lit the fuse.  To this day – been a whole lotta days since – I still remember something he said during a discussion about the Vietnam War.  To paraphrase, you can’t fight an -ism (e.g., Communism, Socialism, Capitalism, Buddhism, etc.).  The -ism is an idea/philosophy/crutch utilized by people.  So for me, any argument for/against an -ism is really about people.

How’s this relate to episode 2021:11 of Did You Know That?  Christopher Young is all about people, specifically, the ethical actions of people in the business world.  (Please hold all snarky comments until after the interview.)  The world is made up of a lot of different -ism’s as they relate to business, which means there are a lot of people making business decisions on a second by second basis.  We talk about how they’re making those decisions and how they can be better.

To find out more about Christopher and his work, check out the various sites below.

LinkedIn: https://www.linkedin.com/in/christopherwyoung/

Website: https://www.redmapecon.com/

Instagram: @theredmaplegroup

Twitter: @TheRMGroup_1

Rutgers University: https://www.business.rutgers.edu/faculty/christopher-young

Music: “Tunnel Vision” by Stanley Gurvich via Artlist

#businessethics #ethics #capitalism #incentives #financialincentives #didyouknowthat #indulgeyourcuriosity #youtubechannel



Feature Friday with Christian Dysart

“You can be a career professional as a judge, a prosecutor, sometimes as a defense attorney, and never insist on fairness and justice. That’s tragic and that’s what we have to change.” Bryan Stevenson

Episode 2021:10

When you read the term defense attorney, what or who springs to mind?  Hold that image in your mind until you meet my next guest on Did You Know That?

Christian Dysart probably doesn’t fit the narrative in your head as to what or who a defense attorney should be.  But he has all the traits you’d want in the person fighting for your freedom/life.  This is a conversation about the role of a defense attorney, criminal law, and how the system works (or doesn’t work) for those accused of a crime.

You can find out more about Christian and his work at:

Website: https://www.dysartwillis.com/

LinkedIn: https://www.linkedin.com/in/christian-e-dysart-9b412a4/

Twitter: @dysartwillis

Instagram: @dysartwillis

Music: “Taurus” by Ace via Artlist



Feature Friday with Lexi Arnold
February 12, 2021, 4:57 am
Filed under: Uncategorized | Tags: , , ,

“The strongest people are those who win battles we know nothing about.” Unknown

Episode 2021:6

Host: Sean O’Rourke

Health can be a perplexing topic for all of us.  Unless afflicted with a condition at birth or in early childhood, we typically grow up believing we control our minds and bodies.  We jump when we want, we say what comes to mind, we sleep when we’re tired, we laugh when amused, we… well, you get the picture.

Lexi Arnold started life with that same belief but was disabused of the notion at a young age.  Her struggles started early and caused mounting physical and mental challenges that affected her quality of life.  Treating the physical issues was the easy part (and I use the term easy in a very loose sense, as you will find out during our conversation); the mental and emotional weight Lexi carried required more understanding, both for Lexi and her family.

In this episode of Did You Know That?, Lexi and I talk about the “shadow” she describes in the essay below.  We discuss how she broached the subject with her parents, why she decided to be so open about her struggles, and what she’s doing to help others.  This is one of the more inspiring episodes I’ve done thus far.

Lexi’s essay: https://lexismentalhealthmatters.jimdofree.com/2019/10/08/the-shadow

Learn more about Lexi at:

LinkedIn: https://www.linkedin.com/in/lexiarnold/

Instagram: @lexiarnold



Motivation Monday with Ellen Williams

“Information is the oil of the 21st century, and analytics is the combustion engine.” Peter Sondergaard

If you’re reading this, stop for 60 seconds and think about the data you generate on a daily basis.  (No rush, I’ll wait.)  Now put that data into a number format, like 10GB or 100GB.  Want to know a secret?  You’ve probably underestimated your daily data footprint by a factor of 10 to 100.

In today’s hyper-digital world, it’s nearly impossible note to generate tremendous amounts of data.  That data carries value for businesses, if they can understand and optimize what they have.  That’s the problem though; most companies are not doing a good job leveraging all that information to make a better product/service, so they’re wasting a valuable resource.

Ellen Williams doesn’t like wasting data.  She knows the value contained in those bits and bytes, and she knows how to extract that value.  (You don’t get the moniker, The Data Chick, for nothing.)  On episode 2021:3 of Did You Know That?, Ellen and I talk about data, what companies can do with it, and why they do anything with it (most of the time).  The conversation is a good reminder that the service/product you produce isn’t the only thing valuable about your business.

Big sure to stay current with Ellen by visiting her at:

Company Website: https://www.orion-gs.com/

LinkedIn: https://www.linkedin.com/in/ellenwilliamsny/

Twitter: @Ellen_NY_B2B

Music: “Night Search” by Russo via Artlist



Feature Friday with Traci Carnes

Host: Sean O’Rourke

Guest: Traci Carnes

Title: Are Your Confident In Your Cybersecurity?

Posting:

“The hacker didn’t succeed through sophistication. Rather he poked at obvious places, trying to enter through unlocked doors. Persistence, not wizardry, let him through.” Clifford Stoll, “The Cuckoo’s Egg: Tracking a Spy Through the Maze of Computer Espionage”

“The Cuckoo’s Egg” was published in 1989; I first read it in 1995.  You know what’s amazing/annoying/frustrating/unsurprising?  Not much has changed in the intervening 30+ years when it comes to hacking.  Sure, the systems and tools have gotten more sophisticated, but persistence and unlocked doors remain the key hallmarks of most hacks.

Cybersecurity, especially for small- and mid-sized businesses, remains a hazy priority that seems to fall down the to-do list every time a company runs out of coffee or snacks.  That’s just playing with gasoline and matches, and my next guest on Did You Know That? knows this firsthand.  Traci Carnes has worn many a technology hat in her career, so she’s seen cybersecurity from all sides.  Her thoughts and processes should inspire businesses to take a more proactive approach to minimizing the damage from a cyber event.  Remember, it’s not if but when you’ll experience one.

Want to learn more about Traci and her extensive background?  Check out her LinkedIn profile.

LinkedIn: https://www.linkedin.com/in/tracicarnes/

Music: “Broken Radios” by Stanley Gurvich via Artlist