Log in

goodpods headphones icon

To access all our features

Open the Goodpods app
Close icon
headphones
NextExec - EWF

NextExec - EWF

EWF - Rising Leaders

NextExec podcast is a forum to discuss diverse and current topics within the context of information security, risk management, privacy, and women in IT. Some of the topics we will explore include Cyber Crimes, Work Life Balance, Communicating with Impact, Book Reviews, etc. It is sponsored by the Rising Leaders Forum, a task force of the Executive Women's Forum (EWF). The views expressed during this podcast do not necessarily reflect the views or policies of the EWF.
bookmark
Share icon

All episodes

Best episodes

Seasons

Top 10 NextExec - EWF Episodes

Goodpods has curated a list of the 10 best NextExec - EWF episodes, ranked by the number of listens and likes each episode have garnered from our listeners. If you are listening to NextExec - EWF for the first time, there's no better place to start than with one of these standout episodes. If you are a fan of the show, vote for your favorite NextExec - EWF episode by adding your comments to the episode page.

NextExec - EWF - Season 3 Episode 6: Solar Winds Breach Analysis
play

06/25/21 • 21 min

In this episode of NextExec, Brooke and Haylee discuss the SolarWinds supply chain attack that has captured many cybersecurity headlines this year. Our guests bring a much needed dose of hacker lingo and chatter to our podcast while they break down the technical details of the attack for our listeners and discuss how the cybersecurity industry needs to be prepared to address these attacks.
Hosts:

Haylee Mills used to work as an animator and became a security content engineer working in a financial technology company with a passion for risk-based behavioral alerting systems and cybersecurity education outreach.

Brooke Miller is a data solution specialist who has worked in the cybersecurity field for five years. She works at a large insurance company in Columbus Ohio.

Support the show

bookmark
plus icon
share episode

In this episode, Ashley sat down for a chat with Ariel about her career path, experience and transition to leadership. Ashley and Ariel discuss topics such as career influence, time management, leading a team, and the impacts of the pandemic.

Guest - Ariel Weintraub: Ariel Weintraub joined MassMutual in the fall of 2019 as the Head of Security Operations & Engineering, where she is responsible for the Global Security Operations Center, Security Engineering, Security Intelligence and Identity & Access Management. Prior to joining MassMutual, Ariel served as Senior Director of Data & Access Security within Cybersecurity Operations at TIAA where she led a three-year business transformation program to position IAM as a digital business enabler. Prior to TIAA, Ariel held the position of Global Head of Vulnerability Management at BNY Mellon and was part of the Threat & Vulnerability Management practice at PricewaterhouseCoopers (PwC).

Ariel holds a Masters of Science in Cybersecurity from New York University (NYU) Tandon School of Engineering and a Bachelors of Science in Business Administration from the University of Southern California (USC) Marshall School of Business. Ariel has a passion for empowering women, especially the next generation of female cybersecurity leaders and serves on the Board for the Executive Women’s Forum (EWF) and the ISACA One in Tech Foundation.
Host - Ashley McArthur: Ashley McArthur is a Cyber Risk Senior Consultant within the Deloitte Risk & Financial Advisory practice with a focus on Data Privacy. Ashley has a wide array of experience from over 11 years in the healthcare industry with a background in privacy monitoring, data governance, compliance and privacy programs, to information security, data analytics, and risk management. She has experience with regulations such as the Health Insurance Portability and Accountability Act (HIPAA) and the California Consumer Privacy Act (CCPA). She has coordinated training, workflow and operational readiness during acquisitions, led and supported enterprise-wide compliance and privacy initiatives including audit readiness, program maturity and process controls. Ashley also analyzed large data sets to direct corporate strategy initiatives, implemented Artificial Intelligence (AI) software and process controls for data governance and data classification.
Support the show (https://www.ewf-usa.com/)

Support the show

bookmark
plus icon
share episode

Washing hands and not touching your face isn’t the only hygiene advice we need to consider during covid-19. Working from home requires us to level up on cybersecurity hygiene! In this episode, Brooke and Jillian get together to talk about ways for both organizations and their employees to maintain security hygiene during covid-19 times. They discuss securely connecting to organizations, best practices to handle an increase in attack surface exposure, security of video conferencing and collaboration tools and offer some fantastic tips on securely working from home.

Support the show

bookmark
plus icon
share episode

In this episode Meredith Harper, CISO, discusses her career journey and pivotal roles on her path to CISO. Meredith speaks about her passions that have led her to where she is today and what drives her to keep challenging herself. She also shares tips on how she has navigated new roles and organizations to be successful as a leader. Tune in for an insightful discussion!
Guest: Meredith Harper, CISO
Meredith Harper serves as vice president and chief information security officer at Eli Lilly and Company. She is responsible for the company’s global information security program.
Prior to joining Lilly in 2018 as senior director, deputy chief information security officer, Meredith served as chief information privacy and security officer at Henry Ford Health System, where she had ultimate responsibility for the protection of Henry Ford’s provider, insurance, retail and research businesses.
Meredith is an active member of the Health Care Compliance Association and the International Association of Privacy Professionals. She holds dual certifications in healthcare compliance and privacy. She is certified as a HealthCare Information Security & Privacy Practitioner through the International Information System Security Certification Consortium Inc. and a Certified Information Security Manager through the Information Systems Audit and Control Association.
She earned a master’s degree in health services administration and a bachelor’s degree in computer information systems from the University of Detroit Mercy. She also earned a master’s of jurisprudence in health law from Loyola University Chicago School of Law.
Meredith serves on several advisory boards in support of empowering women and minorities to embark upon careers in technology, especially in information security. She has also served her community for 28 years through her Diamond Life membership in Delta Sigma Theta Sorority Inc.

Host: Betsy Hackl
Betsy Hackl is a Senior Associate Information Security Assessor at Eli Lilly and Company. During her time at Lilly, Betsy was instrumental in creating the Information Security Third Party Risk Management program to combat one of Lilly’s top risks, “Insecure Third Parties”. In this role, Betsy works with business stakeholders to identify the highest risk Third Parties working with Lilly and determine the actions necessary to ensure our data and connections are secure. In addition to assessing third parties, Betsy also works on Merger, Acquisition and Divestiture deals, and is in the process of standing up an on-going monitoring program to continually monitoring third party organizations post-assessment. Prior to arriving to Lilly Betsy was a Senior Auditor at EY where she led the IT component of several SOX audits and created numerous SOC2 reports. She holds certifications in CISSP, CISA, GCED, GISP and CTPRP.

Support the show

bookmark
plus icon
share episode

In this episode, our host Jillian sits down with Michelle Pittsenbarger to chat about her experiences in her career, what has brought her to where she is today, and important tips for ladies coming up through the ranks.

Support the show

bookmark
plus icon
share episode
In this episode, Preeti sat down with Laura to discuss the challenges of moving into the cloud, interoperability between cloud platforms, security anti-patterns, and mentorship success stories. Laura also shares her go-to resources for anyone looking to enhance their skills in DevSecOps and cloud security.
Resource list:

  • https://attack.mitre.org/matrices/enterprise/cloud/
  • https://cloudsecurityalliance.org/research/working-groups/top-threats/
  • https://tldrsec.com/
  • https://cloudseclist.com/
  • https://acloudguru.com/
  • https://madhuakula.com/ (great workshop guy, some resources on his site too)
  • https://aws.amazon.com/certification/
  • https://cloud.google.com/certification
  • https://www.lastweekinaws.com/
  • https://meanwhileinsecurity.com/
Guest:

Laura Haller is currently a cloud-infrastructure-focused security engineer on Hashicorp’s Threat Detection and Response team. She is passionate about helping non-cloud-native companies make their journey to public cloud safe, optimized, and cost-effective, as well as deepening her understanding of pure cloud-native design.

Like many others in the field of security, she had a non-traditional path. She pursued a degree in Electrical Engineering from the University of Illinois at Urbana-Champaign with a specialization in Power and Energy Systems but decided to shift into the world of software engineering after falling in love with programming during her undergraduate research on microgrids.

She shifted from software engineering to security engineering during her time at Capital One while gaining a deep understanding of cloud infrastructure and AWS best practices. She recently closed out her time at Charles Schwab as a cloud security engineer and cybersecurity research engineer with a focus on helping the firm take security-minded steps in their nascent cloud journey.

Outside of work, she loves to hike at her local botanical gardens and see her mentees thrive.
Connect with Laura on
LinkedIn

Host:

Preeti is a Senior Security Data Scientist at VMware Carbon Black. where she provides technical expertise to artificial intelligence projects for cybersecurity. She has experience in developing practical solutions using data science and machine learning for information technology programs as well as commercial security products. She has prior experience as an applied security researcher at IBM X-Force where her work has contributed to intellectual property and conference talks.

During her spare time, she gives back to the community by creating podcast content to create awareness about emerging technologies in cybersecurity. She also engages in women in cybersecurity initiatives both within and outside of her organization. Preeti holds a Masters Degree in Information Networking with a concentration in Cybersecurity from Carnegie Mellon University.
Connect with Preeti on
LinkedIn

Support the show

bookmark
plus icon
share episode

In this episode, we’re bringing to you a discussion around critical national infrastructure with our host Kristen and her guests Chantel and Sandy. With OT technologies taking prime spot in news headlines with the recent ransomware attacks, our guests provide their insight on the different threat vectors that OT face with components of critical national infrastructure being exposed to the internet. Sandy and Chantel talk about how IT and OT can come together and how regulatory bodies are responding to tackle the external adversaries that are exploiting the gaps in the dynamics of IT/OT and Cloud.

Guests:

Chantel Haswell

Chantel Haswell, PMP, is a Deloitte Advisory Manager within the Cyber Risk Services practice within the East Region. Chantel has over 15 years of experience in the Energy industry, with a focus on the Power and Utilities sector. In particular, Chantel has significant experience in regulatory reliability and compliance standards, including NERC Order 693 and Critical Infrastructure Protection (CIP). Broadly, her activities have included Project Management, Cyber Policy development, Cyber metrics reporting, Compliance Training development and implementation, and overall Compliance program support and internal controls implementation. Most recently, Chantel supported a large Cloud Service Provider (CSP) by performing analysis of the implications of Power & Utility customers hosting NERC CIP assets on the cloud.

Sandy Bacik

Sandy Bacik, CISSP, ISSMP, CGEIT, CISA, CDPSE, PCI QSA, is CipherTechs’ Director Audit & Compliance, has over 20 years’ direct information security and operational experience in the areas of IT Audit and Compliance, BCP/DR, Incident Response, Physical security, Privacy, Regulatory Compliance and Audit, Policies/Procedures, Operations, and Management. With an additional 15 years in Information Technology Operations. Ms. Bacik has been heavily involved with local, national, and international security industry events. Ms. Bacik is the author of Building an Effective Security Policy Architecture and a contributing author to the past years of Information Security Management Handbook.

Host:

Kristen Wilbur, CPA, CISSP, CCSK, CISA, ISO 27001 Lead Auditor, is a Director at Schellman & Company LLC, with over 10 years of experience in providing IT attestation and compliance services. Kristen has evaluated risk and controls for Global 1000, Fortune 500, and regional companies during the course of her career with a strong focus in the technology sector. Kristen currently leads the New York City practice at Schellman where she specializes in SOC 1, SOC 2, ISO 27001, and HIPAA reporting. In her portfolio she also oversees large scale engagements that include assessments around FedRAMP, HITRUST, and Privacy.

Support the show

bookmark
plus icon
share episode

In this episode, Rachel sits down with Sai and they speak about Sai's journey from being a technologist, to challenging herself in various roles and responsibilities in Governance Risk and Compliance and later moving to the C-suite. Sai shares her insights with others about career development, and how to be an advocate and mentor to others.

HOST:
Luyao (Rachel) Chen is a Senior Manager with Schellman & Company based in Austin, TX, specializing in managing and conducting examinations and compliance engagements including SOC 1, SOC 2 SOC 3, HIPPA, and ISO 27001. Luyao has worked with organizations ranging from start‐ups to fortune 500 companies across various industries including technology, energy, cloud services, communications, healthcare, legal and financial services.
GUEST SPEAKER:
Sailakshmi Santhanakrishnan ( Sai) is Professional Services – Senior Security Assurance & Advisor for AWS. She is collaborative, result driven cloud risk, compliance and security executive who has enabled Fortune 100 & 500 organizations to successfully deliver highly visible and significant regulatory, compliance and technology initiatives.
As a trusted advisor, her core strengths are in partnering with the C-suite and business segments to enable their cloud adoption journey to build resilient and regulatory-compliant organizations in the Cloud.
Sai enjoys global travel and learning about cultural variances. Sai is involved in her community as a NextGen advisor, volunteer, and mentor and as a guest faculty University of Texas, Dallas.

Support the show

bookmark
plus icon
share episode

In this episode, Preeti conducts an engaging interview with Ashwini Rao, the co-founder and CEO of Eydle. Throughout their conversation, Ashwini talks about her career in cybersecurity, as well as the impact of her findings within the field. We hope that you will enjoy it and thank you so much for listening!
Guest - Ashwini Rao
Ashwini Rao, PhD is a cybersecurity expert, and Cofounder and CEO of Eydle, a startup that protects people and brands from impersonation scams on social media. Previously, she was the CISO at Spring Labs. She has also worked at companies such as Qualcomm and Appian. Her research has been recognized by the Federal Trade Commission, has been used to support a seminal privacy-related case in the US Supreme Court, and has been cited in the Big Data and Privacy report by the President’s Council of Advisors on Science and Technology. Her research has been covered by the popular press including NPR, Scientific American and New Scientist.
Host - Preeti Ravindra
Preeti solves security problems with data and math with industry experience working at the intersection of security and AI. She has experience developing and operationalizing machine learning key differentiator solutions to solve cybersecurity problems in security operations, vulnerability management and endpoint protection. Her unique value proposition is working cross-functionally to help security teams succeed in adopting data science and machine learning to deliver business value. She gives back to the cybersecurity community by sharing her work at conferences and supporting women in cybersecurity through podcasting.
Preeti has a Master's degree in Information Networking with a Cybersecurity concentration from Carnegie Mellon University. She has held different roles such as Security Researcher, Applied Researcher, Machine Learning Engineer and Data Scientist. Currently, she is an Information Security Manager at BetterUp leading the security insights and automation team operating at the intersection of security and data science, helping all security teams understand, prioritize and action on their security gaps and risks in a data-driven way.

Support the show

bookmark
plus icon
share episode

Hello and welcome to Season 4 Episode 3 of the NextExec Podcast. In this episode, Katie sits down and has a candid conversation with Aparna Kadari, the Information Security Director at Fannie Mae. From their conversation we learn about Aparna's aspirations of being a journalist, her career in pharmacy and the events leading up to her career change to Information Security. She discusses her culturally diverse background and how that has helped to shape who she is today as a mentor, friend and leader to the teams she currently supports. Please enjoy.
Guest - Aparna Kadari
Aparna Kadari is an Information Security Director for Operations, Endpoint Security, and Cloud Protection Engineering teams at Fannie Mae. She has an MBA with a double major in Pharmaceutical and Chemical Management from Fairleigh Dickinson University, and a minor in International Business from Wroxton College, Oxfordshire, UK. She is an avid Cyber Security speaker and an active blogger. She also writes poetry and has four anthologies published to her credit.
She continues to be a mentor at the Girls in Technology (GIT) and Women in Technology (WIT); served as Vice-Chair for the WIT Mentor - Protege program, and as the ATA Convention Women's Forum Chair. She has been involved with community give-back organizations like ASCEND ( a Pan-Asian Leadership group), Executive Women's Forum, developed online awareness campaigns such as STOP Elder Abuse (SEA), continues to advocate for equity for women in STEM and meritocracy in our education system.

Host - Katie Margraf
Katie Margraf is a Vice President of Information Security at Citi Bank. She has experience in several cybersecurity and assurance disciplines and business.

Support the show

bookmark
plus icon
share episode

Show more best episodes

Toggle view more icon

FAQ

How many episodes does NextExec - EWF have?

NextExec - EWF currently has 33 episodes available.

What topics does NextExec - EWF cover?

The podcast is about Security, Women, Risk, Compliance, Podcasts, Millennial, Technology, Information, Cyber, Business, Privacy and Careers.

What is the most popular episode on NextExec - EWF?

The episode title 'Season4 Episode 3 - Day in the Life: Information Security Director - Katie Margraf and Aparna Kadari' is the most popular.

What is the average episode length on NextExec - EWF?

The average episode length on NextExec - EWF is 27 minutes.

How often are episodes of NextExec - EWF released?

Episodes of NextExec - EWF are typically released every 36 days, 16 hours.

When was the first episode of NextExec - EWF?

The first episode of NextExec - EWF was released on Apr 1, 2019.

Show more FAQ

Toggle view more icon

Comments