New Episode: From TikTok to AI Regs – How U.S. Cyber Policy Can Guide Enterprises
In the second part of our two-part conversation with Richard J. Harknett, director of the Center for Cyber Strategy and Policy, he prescribes the best ways for businesses to “defend forward” and how the U.S. needs to fight against divisive information campaigns.
Here’s a taste of the episode:
Cybersecurity Awareness Month doesn’t make sense to Richard J. Harknett, who helped design the U.S. national cybersecurity strategy.
It just doesn’t jibe with the “persistent engagement” that’s required to stay ahead of would-be attackers: “If you don’t have in your organization a continuous security protocol of getting people to be attentive to how they could be exploited, they’re going to get beat in this game by the adversary who is spending a hundred percent of their time thinking about exploitation.”
That proactive mentality really needs to come from the top, he says. “I could give you a list of technical things you could do, but from an organizational business planning standpoint, it’s about making sure that those that you are entrusting with having the portfolio of cybersecurity as a lead are part and parcel of your business practices.”
That means having chief information security officers (CISOs) in the room when you’re making budgets and setting business strategies. It also means taking national security issues seriously. Like what to do about TikTok, which Congress will debate in the next few weeks. At the national level, Harknett worries about adversaries (like China) wreaking havoc with our democracy by peddling divisive information. So he’s for banning the mega-popular social media platform if it doesn’t take steps to make its code (and what it does with its data) more transparent. “I coach high school girls soccer. So this is not a very popular view [with them].”
If you don’t have in your organization a continuous security protocol of getting people to be attentive to how they could be exploited, they’re going to get beat.
FOR MORE EPISODES
By tuning in to Let’s Converge, you’re joining a community of like-minded individuals who are passionate about cybersecurity. Each episode lasts about 20 minutes, so it’s easy to stay informed without having to commit to hours of listening.
- Ep. 22: Adapting the ‘Defend Forward’ Cyber Policy for Business
- Ep. 21: Ethical AI – How (and How Much) We Can Rely On It
- Ep. 20: How (and Why to Make Friends With Your Cyber Insurer | Tanium
- Ep. 19: Meet Shadow AI, the Rising New Threat | Tanium
- Ep. 18: Shining a Light on Shadow IT | Tanium
- Ep. 17: Copilot AI and the Steps to Transform Your Enterprise | Tanium
- Ep. 16: We Need to Get Proactive About Vulnerability Management | Tanium
- Ep. 15: It’s Tough Than Ever to Be a CISO – And It’s Time to Admit It | Tanium
- Ep. 14: How to Lead a Threat Intelligence Team | Tanium
- Ep. 13: Do You Need to Hire a Chief AI Officer? | Tanium
- Or check out our gallery of earlier episodes here – Informative and provocative discussions about data privacy (why it pays to take it seriously), ChatGPT (the hype and the hope), automation (security’s best kept secret), ransomware negotiation (to pay or not to pay), and much, much more.