Artwork

Raj Krishnamurthy에서 제공하는 콘텐츠입니다. 에피소드, 그래픽, 팟캐스트 설명을 포함한 모든 팟캐스트 콘텐츠는 Raj Krishnamurthy 또는 해당 팟캐스트 플랫폼 파트너가 직접 업로드하고 제공합니다. 누군가가 귀하의 허락 없이 귀하의 저작물을 사용하고 있다고 생각되는 경우 여기에 설명된 절차를 따르실 수 있습니다 https://ko.player.fm/legal.
Player FM -팟 캐스트 앱
Player FM 앱으로 오프라인으로 전환하세요!

From Compliance to SBOMs: Josh Bressers’ Take on Security

1:05:47
 
공유
 

Manage episode 480132066 series 3660899
Raj Krishnamurthy에서 제공하는 콘텐츠입니다. 에피소드, 그래픽, 팟캐스트 설명을 포함한 모든 팟캐스트 콘텐츠는 Raj Krishnamurthy 또는 해당 팟캐스트 플랫폼 파트너가 직접 업로드하고 제공합니다. 누군가가 귀하의 허락 없이 귀하의 저작물을 사용하고 있다고 생각되는 경우 여기에 설명된 절차를 따르실 수 있습니다 https://ko.player.fm/legal.

In this episode, Raj Krishnamurthy sits down with Josh Bressers, VP of Security at Anchore and longtime leader in the open source security space. With decades of experience, Josh brings a candid and compelling perspective on everything from the chaos of early cybersecurity days to the nuanced challenges of SBOMs and compliance in today’s world.

Josh reflects on how he entered the security world before there were formal certifications or programs, how community and curiosity fuel innovation in open source, and why the relationships you build are often the most valuable asset in your career. He also dives into exciting new work with the SBOM Everywhere Working Group and shares how GenAI is helping categorize the sprawling ecosystem of SBOM tools.

Key Takeaways:
✅ GRC teams often overburden themselves with audits.

✅ Embracing a product manager mindset helps GRC teams drive security initiatives.

✅ Technical knowledge empowers GRC professionals to enhance security programs.

✅ Changing perceptions of GRC within organizations is crucial for success.

✅ Proactive strategies can elevate GRC’s role and reputation.

✅ Integrating privacy into GRC frameworks strengthens compliance efforts.

✅ High Trust certification is achievable on a budget.

✅ Automation can significantly improve GRC efficiency and reduce redundancy.

✅ Overlapping audit timelines minimizes disruption and streamlines processes.

✅ Discipline from endurance sports fosters focus, resilience, and growth.

🎙️ Security & GRC Decoded is brought to you by ComplianceCow.

Learn More About How ComplianceCow Can Help Your GRC Team Today!

🚀 Enjoying The Show?! 🚀

Make sure to rate and review the show to let us know you're enjoying the content!

Subscribe now for expert insights from industry leaders shaping the future of security & compliance.

Learn More / Connect with Josh Bressers:
If you enjoyed this conversation and want to dive deeper into Josh Bressers’s insights on GRC, cybersecurity, and building effective security programs, connect with him directly:

💼 LinkedIn: https://www.linkedin.com/in/joshbressers/
🌐 Company: https://anchore.com/

  continue reading

23 에피소드

Artwork
icon공유
 
Manage episode 480132066 series 3660899
Raj Krishnamurthy에서 제공하는 콘텐츠입니다. 에피소드, 그래픽, 팟캐스트 설명을 포함한 모든 팟캐스트 콘텐츠는 Raj Krishnamurthy 또는 해당 팟캐스트 플랫폼 파트너가 직접 업로드하고 제공합니다. 누군가가 귀하의 허락 없이 귀하의 저작물을 사용하고 있다고 생각되는 경우 여기에 설명된 절차를 따르실 수 있습니다 https://ko.player.fm/legal.

In this episode, Raj Krishnamurthy sits down with Josh Bressers, VP of Security at Anchore and longtime leader in the open source security space. With decades of experience, Josh brings a candid and compelling perspective on everything from the chaos of early cybersecurity days to the nuanced challenges of SBOMs and compliance in today’s world.

Josh reflects on how he entered the security world before there were formal certifications or programs, how community and curiosity fuel innovation in open source, and why the relationships you build are often the most valuable asset in your career. He also dives into exciting new work with the SBOM Everywhere Working Group and shares how GenAI is helping categorize the sprawling ecosystem of SBOM tools.

Key Takeaways:
✅ GRC teams often overburden themselves with audits.

✅ Embracing a product manager mindset helps GRC teams drive security initiatives.

✅ Technical knowledge empowers GRC professionals to enhance security programs.

✅ Changing perceptions of GRC within organizations is crucial for success.

✅ Proactive strategies can elevate GRC’s role and reputation.

✅ Integrating privacy into GRC frameworks strengthens compliance efforts.

✅ High Trust certification is achievable on a budget.

✅ Automation can significantly improve GRC efficiency and reduce redundancy.

✅ Overlapping audit timelines minimizes disruption and streamlines processes.

✅ Discipline from endurance sports fosters focus, resilience, and growth.

🎙️ Security & GRC Decoded is brought to you by ComplianceCow.

Learn More About How ComplianceCow Can Help Your GRC Team Today!

🚀 Enjoying The Show?! 🚀

Make sure to rate and review the show to let us know you're enjoying the content!

Subscribe now for expert insights from industry leaders shaping the future of security & compliance.

Learn More / Connect with Josh Bressers:
If you enjoyed this conversation and want to dive deeper into Josh Bressers’s insights on GRC, cybersecurity, and building effective security programs, connect with him directly:

💼 LinkedIn: https://www.linkedin.com/in/joshbressers/
🌐 Company: https://anchore.com/

  continue reading

23 에피소드

모든 에피소드

×
 
Loading …

플레이어 FM에 오신것을 환영합니다!

플레이어 FM은 웹에서 고품질 팟캐스트를 검색하여 지금 바로 즐길 수 있도록 합니다. 최고의 팟캐스트 앱이며 Android, iPhone 및 웹에서도 작동합니다. 장치 간 구독 동기화를 위해 가입하세요.

 

빠른 참조 가이드

탐색하는 동안 이 프로그램을 들어보세요.
재생