Securing the Software Supply Chain with Allison Wikoff
In this episode of Data Security Decoded, Allison Wikoff, a 20-year veteran in information security and threat intelligence, explores current cybersecurity challenges, emerging threats, and practical defensive strategies for organizations of all sizes.
👉 Subscribe here: https://rbrk.co/4cVWzno
What You'll Learn:
- How to prioritize vulnerability management by focusing on critical edge devices and access points
- Why understanding your network architecture is crucial for effective threat defense
- The reality of AI in cyber attacks: current uses, limitations, and practical defense strategies
- How to build supply chain resilience through vendor assessment and backup supplier planning
- Why older vulnerabilities remain a primary attack vector and how to address them effectively
- The framework for developing an actionable threat profile tailored to your organization's needs
Key Insights:
- Threat actors increasingly target known vulnerabilities over sophisticated zero-day exploits
- Supply chain security requires understanding vendor access levels and maintaining secondary suppliers
- AI adoption in cyber attacks remains focused on basic tasks like improving phishing emails and code generation
- Organizations should prioritize patching vulnerabilities in edge devices like VPNs and WAFs
- Building an effective security strategy starts with understanding your organization's specific threat profile
- Partnering with vendors and suppliers can help smaller organizations enhance their security capabilities
YouTube Chapters:
0:00 Intro: The Rising Threat of Vulnerability Exploitation
1:58 Journey into Cybersecurity: 20 Years of Threat Intelligence
3:09 Retail Attacks & Supply Chain Security Challenges
5:01 The Reality of AI in Modern Cyber Threats
7:55 Florida Travel Break: A Light Moment
9:45 Managing Legacy Vulnerabilities on a Budget
12:52 Building Better Supply Chain Resilience
14:08 Key Takeaways: Understanding Your Threat Profile
Episode Resources:
Caleb Tolin on LinkedIn: https://www.linkedin.com/in/calebtolin/
Allison Wikoff on LinkedIn: https://www.linkedin.com/in/allison-w/
PwC website: https://www.pwc.com/gx/en/issues/cybersecurity/cyber-threat-intelligence.html
PwC - Year in Retrospect Report 2024: https://www.pwc.com/gx/en/issues/cybersecurity/cyber-threat-intelligence/cyber-year-in-retrospect.html
#InfoSec #CyberThreats #CyberSecurity