PLAY PODCASTS
She Said Privacy/He Said Security

She Said Privacy/He Said Security

259 episodes — Page 4 of 6

Building Privacy Programs in the Evolving Ad Tech Space

E

Beatrice Botti is the Vice President and Global Data & Privacy Officer at DoubleVerify, a leading software platform for digital media measurement and analytics. After an academic career in the EU and the US, she became a contract attorney before working in various privacy roles at Virgin Pulse, including Director of Privacy, Partnerships & Legal, Privacy Officer, and Data Protection Officer. In this episode… Privacy regulations in the US are rapidly evolving, with five new laws expected to be enacted by the end of the year. But with individual governments working independently, each law is interpreted differently, making it challenging for organizations to fully comprehend privacy. So how can you build a privacy program that conforms to each law's regulatory framework? When it comes to privacy in the ad tech space, Beatrice Botti says that predicting the outlook of impending regulations is futile. It's critical to prepare for uncertainty by analyzing your data's location and categories to determine which laws apply to your business. Once you've collected the appropriate data, you can seek advice from a privacy consultant or attorney to help you assess possible solutions, create a compliant program, and decide on further action. In today's episode of She Said Privacy/He Said Security, Jodi and Justin Daniels sit down with Beatrice Botti, VP and Global Data & Privacy Officer at DoubleVerify, to discuss how privacy regulations impact ad tech. Beatrice speaks about the most pervasive privacy challenges companies face, advice for navigating US privacy laws, and how organizations can build privacy programs.

Feb 2, 202336 min

How To Protect Backup Servers From Ransomware Attacks

E

Curtis Preston is the Chief Technical Evangelist at Druva, a SaaS data protection platform. He is also the Founder and Webmaster of Backup Central, a website dedicated to data backup and recovery. Since 1993, Curtis has specialized in storage, backup, and recovery and has been an end-user, consultant, and analyst. He has written four books on these subjects and is the host of the Restore it All and No Hardware Required podcasts. In this episode… Ransomware is becoming increasingly sophisticated, with hackers deactivating companies' backup servers to counteract cybersecurity efforts in a traditional attack. Still, businesses are neglecting to test and protect their backup servers. So how can you safeguard your data against cyberattacks? With the emergence of modern technology and impending security regulations, W. Curtis Preston says it's more crucial than before to implement disaster recovery plans that facilitate data restoration. One way to ensure maximum protection is to utilize a SaaS data protection provider. Selecting a provider necessitates evaluating your cybersecurity methods and aligning them with the provider's disaster response plans. In today's episode of She Said Privacy/He Said Security, Jodi and Justin Daniels sit down with W. Curtis Preston of Druva and Backup Central to talk about data protection and disaster recovery. Curtis explains how ransomware targets backup servers, the importance of updating backup plans, and key considerations for selecting data protection SaaS providers.

Jan 26, 202330 min

Hiring and Staffing in the Privacy and Security Space

E

Jared Coseglia is the Founder and CEO of TRU Staffing Partners, an award-winning staffing company representing talent and opportunities in data privacy, e-discovery, and cybersecurity. TRU has been voted a top-three legal and/or litigation support staffing agency for seven consecutive years in both the National Law Journal and the New York Law Journal and has been named one of the Inc. 5000 Fastest Growing Private Companies in America. Jared has placed over 3000 professionals in full-time and temporary positions at the Fortune 1000 and Am Law 200 levels and throughout the global consultancy, service, and software provider communities. As an active member of the legal and cybersecurity community, he is a member of the Board of Editors for Cybersecurity Law and Strategy, has written over 90 articles, regularly appears in podcasts and webinars, and has spoken at over 50 conferences. In this episode… When it comes to hiring, data privacy and security companies aren't sure what to look for in candidates. Similarly, professionals are struggling to understand businesses' qualifications and gain the skills needed for each discipline. With so much variability surrounding hiring practices, how can organizations maintain clarity to attract and retain top talent? Privacy and security staffing expert Jared Coseglia says that companies need to develop robust, transparent, and simple privacy and security programs. This demonstrates that you recognize your business' requirements and can assess the market effectively. Some companies have employed AI technology to streamline the hiring process. Yet, this raises representation issues, so Jared says it's crucial to utilize this technology to enhance diversity and provide candidates with an inclusive experience. In today's episode of She Said Privacy/He Said Security, Jodi and Justin Daniels chat with Jared Coseglia about hiring and staffing trends in privacy and security. Jared talks about how companies can attract and retain privacy talent, AI's role in the hiring process, and compensation in privacy versus security.

Jan 19, 202340 min

Blockchain: The Road to Adoption

E

Zenobia Godschalk is the SVP of Communications at Hedera, an enterprise-grade public network for building decentralized applications. As the Founder and CEO of the technology marketing firm ZAG Communications, she has launched and grown multiple $1B, high-growth, global technology companies. Zenobia has experience in distributed databases, cybersecurity strategies, public relations, and financial reporting. She is also a board member of Stanford FLAN (First-Generation and/or Low-Income Alumni Network). In this episode… Blockchain is surging in popularity — everything from banking transactions to digital concert tickets uses some form of decentralized finance. Yet, consumers distrust this software as it poses security risks and often results in adverse online experiences. So, what does this mean for the future of blockchain? Early adopters of this technology have employed a more synthetic version of decentralized finance (DeFi), exploiting customers by claiming unrealistic ROIs. Given that blockchain and other types of DeFi are still unregulated by FDIC and venture capital, Zenobia Godschalk says that the road to full adoption is likely to be hindered. Meanwhile, she notes that companies seeking to integrate blockchain must understand its underlying protocols and technology infrastructure to create seamless consumer interactions. In this episode of She Said Privacy/He Said Security, Jodi and Justin Daniels welcome Zenobia Godschalk, SVP of Communications at Hedera, to discuss security trends in the blockchain space. Zenobia talks about venture capital's security regulations for blockchain, how to build trust in decentralized finance, and how to optimize digital transactions.

Jan 5, 202334 min

Protecting Consumer Data From Third Parties

E

Ian Cohen is the Founder and CEO of Lokker, a company committed to protecting businesses from third-party privacy risks. Before Lokker, he served as CEO of Credit.com, where he transformed the company into a trusted high-growth hub for consumers seeking guidance on credit and finance. Ian is also a Board Member of Uqual, an Industry Advisor at Long Ridge Equity Partners, and an Advisor and Investor at PolyScale. In this episode… Data collection has become increasingly obscure, and companies like Meta and Oracle are facing lawsuits for unauthorized data tracking and sharing across third parties. With data sharing largely unregulated among companies, how can you protect customer data? When collecting consumer data, companies often struggle to interpret the data and lack knowledge about its location and usage. With the emergence of GDPR (General Data Protection Regulation) in the US, businesses must go beyond internal privacy programs to regulate external data sharing and comply with the law. Ian Cohen stresses the importance of establishing awareness campaigns and fostering transparency and visibility among third parties. In today's episode of She Said Privacy/He Said Security, Jodi and Justin Daniels host Ian Cohen, Founder and CEO of Lokker, to discuss protecting consumer data from third-party access. Ian explains how Lokker collects and analyzes data, discusses the compliance challenges of third-party data, and offers advice on third-party data sharing.

Dec 15, 202238 min

Protecting Consumer Data From Third Parties

E

Ian Cohen is the Founder and CEO of Lokker, a company committed to protecting businesses from third-party privacy risks. Before Lokker, he served as CEO of Credit.com, where he transformed the company into a trusted high-growth hub for consumers seeking guidance on credit and finance. Ian is also a Board Member of Uqual, an Industry Advisor at Long Ridge Equity Partners, and an Advisor and Investor at PolyScale. In this episode… Data collection has become increasingly obscure, and companies like Meta and Oracle are facing lawsuits for unauthorized data tracking and sharing across third parties. With data sharing largely unregulated among companies, how can you protect customer data? When collecting consumer data, companies often struggle to interpret the data and lack knowledge about its location and usage. With the emergence of GDPR (General Data Protection Regulation) in the US, businesses must go beyond internal privacy programs to regulate external data sharing and comply with the law. Ian Cohen stresses the importance of establishing awareness campaigns and fostering transparency and visibility among third parties. In today's episode of She Said Privacy/He Said Security, Jodi and Justin Daniels host Ian Cohen, Founder and CEO of Lokker, to discuss protecting consumer data from third-party access. Ian explains how Lokker collects and analyzes data, discusses the compliance challenges of third-party data, and offers advice on third-party data sharing.

Dec 15, 202238 min

Building Privacy Programs for Software Engineers

E

Vaibhav Antil is the Co-founder of Privado.ai, a developer-friendly privacy platform. Privado was purpose-built as a code-scanning solution for privacy to discover personal data, usage, flows, and leakages, as well as flag privacy issues in the code for GDPR regulations. Vaibhav became a privacy consultant to help companies remain compliant after the introduction of GDPR. Before Privado, he was the Co-founder of Jukebox Studio, which was acquired by Gaana, where he served as the Senior Product Manager of Subscriptions. In this episode… When developing apps and other software, engineers often collect excessive consumer data and lack consideration for potential breaches. As a privacy professional, how can you implement developer-friendly privacy programs? According to privacy consultant Vaibhav Antil, there is a knowledge barrier between engineering and privacy teams. To address and mitigate this, it's essential to provide developers with readily-available privacy tools that display each code's data leaks and breaches. By collaborating with engineers and using familiar language when giving instructions, you can mitigate risks to your software. In today's episode of She Said Privacy/He Said Security, Jodi and Justin Daniels host Vaibhav Antil, Co-founder of Privado.ai, to discuss building privacy programs for developers. Vaibhav explains privacy debt, the qualities of a developer-friendly privacy program, and how Privado scans codes for privacy risks.

Dec 8, 202228 min

Assessing and Preventing Financial Risks

E

Gary Vecchiarelli is the Chief Financial Officer at CleanSpark, a sustainable Bitcoin mining company solving modern energy challenges. As a licensed CPA, he has over 10 years of experience in public accounting, having worked for international firms with clientele ranging in size from $50 million to $1 billion while operating in various industries. Gary serves on the board of directors for the Doral Academy of Nevada and Financial Executives International Las Vegas Chapter. He was named by VEGAS INC magazine to the "Las Vegas 40 Under 40" list in 2014. In this episode… With the enforcement of the Sarbanes-Oxley Act of 2002, finance departments must remain transparent in their reporting practices to mitigate fraudulent activity. Yet these departments continue to struggle with privacy and security measures and as a result, fall victim to wire fraud and phishing scams. So, how can you assess and prevent risks to stay compliant and combat attacks? Finance and accounting expert Gary Vecchiarelli recommends implementing internal security controls to conduct preventative risk analyses and assessments and forecast potential attacks. At the foundational level, finance departments can invest in firewalls and encryption and instruct team members to approve transactions. To ensure maximum security, Gary advises incorporating the COSO Framework into your business processes to comply with industry standards and identify, monitor, and eliminate risks effectively. In this episode of She Said Privacy/He Said Security, Jodi and Justin Daniels host Gary Vecchiarelli, Chief Financial Officer at CleanSpark, to discuss managing risks in financial environments. Gary shares how he manages security from a financial perspective, how finance departments can prevent fraud and hacking, and the impact of risk assessments on financial decisions.

Dec 1, 202228 min

Know Your Data: How To Manage and Secure Regulated Company Data

E

Dimitri Sirota is the Co-founder and CEO of BigID, a data platform that helps entrepreneurs acquire actionable intelligence in the data center and cloud to solve data privacy, protection, and prospective problems. As an established serial entrepreneur, investor, mentor, and strategist, he founded two enterprise software companies focused on security and API management. Dimitri is a contributor to Forbes Tech Council and was a finalist for the 2021 EY Entrepreneur of the Year Award. In this episode… With increasing ambiguity around sensitive consumer data, businesses are struggling to identify and manage personal information securely. So, how can you distinguish and reduce security risks on regulated data to provide your customers and organization with valuable insights? Privacy and identity expert Dimitri Sirota maintains the importance of understanding your company's data. This necessitates pinpointing and recognizing the precise location and forms of your data to determine the associated risks. BigID provides businesses with the data analytics technology and tools needed to generate actionable insights, discard unnecessary data, and transfer personal information and transparency back to the customer. In today's episode of She Said Privacy/He Said Security, Jodi and Justin Daniels host Dimitri Sirota, Co-founder and CEO of BigID, to talk about identifying and managing regulated and personal data. Dimitri discusses how to leverage data to deliver value to customers and organizations, how companies can identify and minimize cloud data risks, and the key trends in businesses' privacy programs.

Nov 17, 202226 min

Proactive Incident Response Measures for Cyber Attacks

E

Troy Bettencourt is the Associate Partner of the X-Force Incident Response Team at IBM, a company that helps blue teams improve incident response plans and minimize the impact of a breach. As a technically-skilled person and process leader, he has over 10 years of leadership experience in the DFIR, law enforcement, and military spaces. Troy also has 18 years of digital forensics and incident response experience and three years of eDiscovery experience, which includes an assignment as the National eDiscovery Program Manager for a federal government agency. In this episode… With the rise in cyber attacks, it's essential to develop proactive incident response measures. So, what are some steps you can take to mitigate breaches and make informed security decisions? With a breadth of technical expertise in incident response consultations, Troy Bettencourt emphasizes the importance of investing in proactive services to prepare for and emulate cyber attacks. These services include ransomware readiness assessments and tabletop exercises designed to optimize incident response measures and decision-making. When assessing and selecting services, businesses need to determine the service's value-add to their security efforts. In today's episode of She Said Privacy/He Said Security, Jodi and Justin Daniels host Troy Bettencourt of IBM to discuss developing incident response measures to combat cyber attacks. Troy explains how to select and purchase incident response services, the factors influencing the pricing and delivery of these services, and how he advises companies on incident response measures.

Nov 10, 202230 min

Blockchain: Concerns, Considerations, and Regulations

E

Marlon Williams is the Founder of Atlanta Blockchain Center, a company that aims to be the catalyst for Atlanta's emergence as the global premier blockchain innovation hub. He is also the Founder of Starter Labs and Qubicles, Co-founder of Telos, and a Partner at Starter Capital. At 16 years old, Marlon attended Central Florida Vocational School to study computer programming and business management before attending Miami Dade College and Kaplan University to study computer information systems and information technology. In this episode… With the rise of Bitcoin and other forms of cryptocurrency, blockchain has become increasingly common. But its emergence raises privacy and security concerns, particularly with regard to digital assets and transactions. So, what do companies and developers need to consider before adopting blockchain or creating a blockchain platform? Software developer Marlon Williams says that in order to mitigate transaction exploits, designers need to implement proven frameworks when writing code to consider blockchain's nuances and lengthy finalization times. Yet when it comes to personal digital assets, privacy remains an issue, so Marlon asserts the importance of federal regulatory guidelines to simplify asset representation and functionality and help companies build privacy features into their blockchains. In today's episode of She Said Privacy/He Said Security, Jodi and Justin Daniels interview Marlon Williams, Founder of Atlanta Blockchain Center, about considerations and concerns surrounding blockchain's widespread use. Marlon shares tips for developing blockchain platforms, how privacy impacts brands' use of blockchain, and the importance of regulatory guidelines in its mass adoption.

Nov 3, 202237 min

Deconstructing Privacy and Consent in Digital Marketing and Ad Tech

E

Michael Hahn is the Executive Vice President and General Counsel at the Interactive Advertising Bureau and IAB Technology Laboratory, a trade association that develops industry standards, conducts research, and provides legal support for the online advertising industry. In his role, he leads the organization's legal affairs counsel and internal compliance efforts. With extensive experience in litigation, Michael has provided multiparty class-action antitrust defense representation and directed lawsuits involving competitor conduct, distributional restraints, monopolization, and price discrimination claims. He serves as Co-chair of the New Jersey State Bar Association Antitrust Law Committee and previously served on the Editorial Advisory Board of Competition Law 360 and the Advisory Board of the American Bar Association Antitrust Section's Civil Torts & RICO Committee. In this episode… Privacy regulations in the digital marketing and advertising technology space have become increasingly complex, with uncertainty surrounding the concept of data sales and the exchange of personal information. So, how can you navigate consent and interpret the many regulations in this industry? According to the settlement documents of Sephora's enforcement action, a sale in advertising technology involves all manner of analyzing and measuring consumer data. Antitrust litigator Michael Hahn says that businesses must develop a contract that complies with state privacy laws to communicate consumer privacy preferences to organizations involved in digital ad distribution. IAB has developed a multi-state privacy agreement to help businesses remain compliant and act as a mediator in contract agreements. In this episode of She Said Privacy/He Said Security, Jodi and Justin Daniels interview Michael Hahn, EVP and General Counsel at IAB, about managing evolving privacy consent laws in the advertising technology space. Michael discusses the conditions surrounding the sale of data, how IAB helps members comply with privacy laws, and the impact of Sephora's settlement action on digital advertising.

Oct 27, 202236 min

The Importance of a Strategic Privacy Program

E

Michelle Dennedy is the CEO of PrivacyCode, a privacy engineering SaaS platform that translates complex privacy policies for developers. She is also the Co-founder and Partner of Privatus Consulting, a company that assists clients with privacy engineering and governance, WickedPrivacy leadership solutions, and ESG metrics. Michelle works closely with families, executives, and innovators at all levels and with businesses and organizations at all stages to support the combination of privacy policies, practices, and tools. She has held many leadership roles in data strategy and privacy at Sun Microsystems, McAfee, Intel, and Cisco as well as startup companies. In this episode… Data is becoming increasingly complex and nuanced, making privacy and security integral components of an organization's enterprise — but many companies fail to budget and plan accordingly for these policies. So, how can you implement privacy strategies into your business plan? Michelle Dennedy recommends adopting a problem-solving framework known as WickedPrivacy. This involves executing immediate, systematic approaches to address complex and uncertain privacy challenges, including ethics, public safety, user data, and shareholder access. PrivacyCode helps privacy engineers and officers identify use cases to integrate and deploy privacy programs utilizing a compliance and soft systems method. In this episode of She Said Privacy/He Said Security, Jodi and Justin Daniels interview Michelle Dennedy, CEO of PrivacyCode and Co-founder and Partner of Privatus Consulting, about developing strategic approaches to privacy. Michelle explains the major privacy challenges companies face, the WickedPrivacy methodology, and advice for implementing a privacy budget.

Oct 13, 202235 min

Understanding Privacy and Security Regulations in the Ad Tech Space

E

Yacov Salomon is the Founder and Chief Innovation Officer at Ketch, a coordinated set of apps, infrastructure, and APIs designed to build trust with customers and grow with data. He is also the Chief Technology Officer at Stanza. As a recognized authority in machine learning and AI and a seasoned tech expert, Yacov has built industry-leading innovative technology and teams at startups as well as Fortune 500 companies across many verticals. Before Ketch and Stanza, he was the Head of AI and Innovation at Superset Venture Studio and a Lecturer at the University of California, Berkeley. In this episode… In the evolving privacy and security space, advertising technology is becoming increasingly invasive, with major companies like Sephora facing settlement actions over how they process consumer data, especially in digital advertising. So, how should you manage consent and develop privacy programs to control and protect your customer's data? When navigating federal privacy laws surrounding ad tech data, Yacov Salomon recommends establishing a permission layer. This provides customers the option to consent before releasing their data to third-party systems. By implementing automated technology into your company's ecosystem, you can identify confidential data and regain control over it to maximize customer trust and comply with privacy guidelines. In today's episode of She Said Privacy/He Said Security, Jodi and Justin Daniels sit down with Yacov Salomon, Founder and Chief Innovation Officer at Ketch, to talk about how companies can manage ad-tech, privacy, and consent requirements. Yacov discusses the three privacy issues surrounding ad tech, the implications of consumer data collection, and how companies can track their ecosystem to control and protect customer data.

Oct 6, 202235 min

Emphasizing Data Privacy and Security: Insights From Jodi and Justin Daniels

E

Jodi Daniels is the Founder and CEO of Red Clover Advisors, a boutique data privacy consultancy and one of the few certified Women's Business Enterprises focused solely on privacy. Since its launch, Red Clover Advisors has helped hundreds of companies create privacy programs, achieve GDPR, CCPA, and US privacy law compliance, and establish a secure online data strategy their customers can count on. Jodi is a Certified Informational Privacy Professional (CIPP/US) with over 20 years of experience helping a range of businesses — from solopreneurs to multinational companies — in privacy, marketing, strategy, and finance roles. She has worked with numerous companies throughout her corporate career, including Deloitte, The Home Depot, Cox Enterprises, Bank of America, and many more. Jodi is also a national keynote speaker, a member of the Forbes Business Council, and co-host of the She Said Privacy/He Said Security podcast. Justin Daniels is a cybersecurity subject matter expert and business attorney who helps his clients implement strategies to better manage and recover from data breaches. As outsourced general counsel for Baker Donelson, Justin advises executives on how to successfully navigate cyber business and legal concerns related to operations, M&A, incident response, and more. In 2017, Justin founded and led the inaugural Atlanta Cyber Week, where multiple organizations held events that attracted more than 1,000 attendees. Justin is also a TEDx and keynote speaker and co-host of the She Said Privacy/He Said Security podcast with his wife, Jodi. In this episode… When it comes to data collection, studies show that more than 80% of consumers value privacy. With security breaches and privacy violations becoming increasingly prevalent, how can businesses prioritize these matters to foster customer trust? To start, companies must take inventory of their data to fully understand each component and establish use cases. Another requirement is to create privacy notices, pages, or sections to connect with the consumer and develop their trust. Jodi and Justin Daniels' book Data Reimagined: Building Trust One Byte At a Time teaches businesses how to manage customer data to ensure privacy and security. In today's episode of She Said Privacy/He Said Security, Chad Franzen of Rise25 talks with Jodi and Justin Daniels about prioritizing privacy and security concerns. Together, they discuss how businesses perceive and utilize data, the privacy and security concerns of data collection, and how to develop customer trust through privacy and security measures.

Sep 22, 202220 min

Smart Technology: A Privacy and Security Perspective

E

David Rhodes is the City Attorney for Peachtree Corners, Georgia, a vibrant suburb of Atlanta. He is also Legal Counsel for Curiosity Lab, which is Peachtree Corners' publicly-funded innovation center designed to provide a real-world test environment to advance next-generation intelligent mobility and smart city technology. Previously, David served as the Judge Advocate for the Army National Guard, where he advised the brigade commander and staff on operational law, military justice, administrative separations, and command policies. In this episode… With innovation rapidly advancing, cities are employing various smart technologies such as autonomous vehicles to streamline transportation and other services. But this requires collecting data to identify citizen use cases, which raises privacy and security concerns. So, how can cities develop new technologies to scale while ensuring data protection? When gathering sensitive data for public records, it's critical to consider the intended purpose for that information to establish the appropriate collection methods and verify demands for it. To generate trust with citizens, cities must disclose the information and assemble safeguards to mitigate data sharing with third parties. With the American Rescue Plan Act, cities can deploy the funds to optimize and enhance their privacy and security measures. In today's episode of She Said Privacy/He Said Security, Jodi and Justin Daniels chat with David Rhodes, City Attorney for Peachtree Corners and Legal Counsel for Curiosity Lab, about prioritizing privacy and security with smart technologies. David shares the privacy challenges cities encounter when deploying smart technology, how security has evolved with cyber technologies, and the future of smart cities and their implications for citizens.

Sep 15, 202228 min

The Future of Data Privacy in the U.S.

E

David Stauss is a Partner at Husch Blackwell, a law firm offering comprehensive counsel on day-to-day operations in various industries, including banking and finance, data privacy and cybersecurity, and intellectual property. He is also chair of the firm's Privacy and Cybersecurity Practice Group, where he counsels clients on existing and emerging state, federal, and international privacy laws. As a recognized thought leader, David is an author and frequent speaker on privacy and cybersecurity. He was selected as JD Supra's top data privacy author in 2022 and has been published and quoted in numerous publications, including The Wall Street Journal, CBS News, and Security Magazine. He is the editor of the Byte Back blog — one of the leading data privacy blogs in the US — and hosts the Data Privacy Unlocked podcast, which focuses on the development of U.S. privacy law. In this episode… The American Data Privacy and Protection Act is in some ways unclear, leading individual states to devise their own privacy laws. So, what do these regulations entail for cybersecurity companies? According to privacy law expert David Stauss, states like Virginia and Colorado are developing laws emphasizing consent around personal data. Conversely, California will allow organizations to utilize sensitive data with certain restrictions. With disparities among each state's regulations, David urges businesses to remain savvy and stay abreast of potential updates. In this episode of She Said Privacy/He Said Security, Jodi and Justin Daniels sit down with David Stauss, Partner at Husch Blackwell, to discuss state and federal privacy regulations. David shares how companies can comply with state privacy laws, the potential of the American Data Privacy and Protection Act, and each state's plans for the expansion of privacy rights.

Sep 8, 202233 min

Automating Data Privacy

E

Leila Golchehreh is the Co-founder and Co-CEO of Relyance AI, a platform that uses machine learning to help companies seamlessly manage privacy, data governance, and compliance. As an entrepreneur, data protection attorney, and former data protection officer, she has extensive international experience building data protection privacy programs for diverse clients in private practice as well as global organizations. Leila's experience with existing privacy solutions inspired her to co-found Relyance AI and reimagine data protection in a technology-driven world. In this episode… With the evolution of data privacy, businesses need to remain perceptive about their data locations and uses. But, with so many privacy and security regulations, how can you organize your workflow to maintain compliance? Most organizations' privacy programs are underdeveloped, so data privacy expert Leila Golchehreh recommends automating your privacy and security solutions. Artificial intelligence streamlines data mapping and inventory exercises so privacy professionals can focus on potential threats. Relyance AI helps you identify and analyze new and faulty codes to detect and prevent security breaches. In this episode of She Said Privacy/He Said Security, Jodi and Justin Daniels interview Leila Golchehreh, Co-founder and Co-CEO of Relyance AI, about implementing AI into your data privacy program. Leila shares her company's approach to privacy automation, how AI helps businesses build data privacy programs, and the challenges organizations face when complying with data privacy laws.

Sep 1, 202234 min

The Importance of Privacy and Security in Product Design

E

Chris Handman is the Co-founder and COO of TerraTrue, a data privacy platform and management software. He was previously the General Counsel at Snap, where he built the company's legal compliance, public policy, and law enforcement team while also developing a transformative privacy program. Chris is a Homeland Security Project Fellow at Harvard's Belfer Center for Science and International Affairs. Jad Boutros is the Co-founder and CEO of TerraTrue. As a leader in security, privacy, spam, and abuse, he spent nine years on Google's information security team, leading security for social products. Before founding TerraTrue, Jad was the Chief Security Officer at Snap, where he managed an organization of 100 engineers. He has 21 years of technical experience, 16 of which are in the privacy and security space. In this episode… During the product development stage, organizations often only consider privacy and security from a compliance perspective, and as a result, neglect potential risks. So, how can you collaborate with internal teams to prioritize these concerns and ensure a seamless product design? Chris Handman and Jad Boutros believe privacy and security should be incorporated into company culture to disseminate information and encourage diverse ideas. To streamline the process, organizations should acquire a platform that codifies each privacy and security component. TerraTrue is a privacy management software that creates secure workflows to conform to your product design and mitigate threats. In today's episode of She Said Privacy/He Said Security, Jodi and Justin Daniels welcome Chris Handman and Jad Boutros of TerraTrue to discuss prioritizing privacy and security. Together, they share the privacy challenges businesses face, how TerraTrue helps companies integrate privacy into their product design, and advice for collaborating with privacy and security teams during product development.

Aug 25, 202244 min

Addressing Children's Privacy Concerns on the Internet

E

Joseph (Joe) Miller, Esq is the Founder, President, CEO, and Founding Board Chair of The Washington Center for Technology Policy Inclusion (WashingTECH) — the nation's first organization focused exclusively on diversity and inclusion in technology public policy making. Joe is a member of the Advisory Committee at the Center for Democracy and Technology, a cohort for Google's Next Gen Policy Leaders, and is a recipient of the Rainbow Push Coalition's 2019 Media and Technology Inspiring Leader's Award. Before founding WashingTECH, Joe served as Deputy Director and Senior Policy Director of the Media and Technology Institute at the Joint Center for Political and Economic Studies. In this episode… The internet is largely unregulated, with social media platforms targeting and coercing children to use their sites. As parents, how can you manage and control your children's online activity to ensure their safety? Joe Miller urges parents to conduct in-depth research into popular sites and platforms to ensure they are appropriate for use. It's also crucial to recognize the peer pressure that accompanies social media usage, so you can establish the proper boundaries. By familiarizing yourself with each application's parental controls, you can protect your children's data and monitor their media consumption. In this episode of She Said Privacy/He Said Security, Jodi and Justin Daniels sit down with Joe Miller of WashingTech to discuss privacy concerns surrounding children's online activity. Joe shares social media safety concerns, the moves parents can make to protect their children online, and how to get involved in privacy policy-making.

Aug 18, 202229 min

Privacy Protection From Online Harassment and Job Security Threats

E

Leigh Honeywell is the CEO and Co-founder of Tall Poppy, where she builds tools and services to help companies protect their employees from online harassment and abuse. She has more than a decade of experience in computer security incident response. Before co-founding Tall Poppy, Leigh was a Technology Fellow at the ACLU's project on speech, privacy, and technology. Her previous industry experience includes running security incident response for Slack, protecting infrastructure at Salesforce.com, shipping patches for billions of computers a month at Microsoft, and analyzing malware at Symantec. In this episode… Online work and social media are now more prevalent than ever, causing individuals to face job security threats and harassment. As a business owner, how can you protect your employees from these attacks? Security expert Leigh Honeywell recommends establishing online conduct regulations to mitigate company defamation. By establishing clear guidelines and expectations with your employees, you can combat external threats and discriminatory commentary. With Tall Poppy's cybersecurity training and incident response measures, you can remove unwanted online personal information to reduce your public presence. In this episode of She Said Privacy/He Said Security, Jodi and Justin Daniels talk with Leigh Honeywell about privacy and security tactics for online harassment. She explains Tall Poppy's initiatives to protect personal security amid threats and harassment, how the pandemic has impacted online harassment, and strategies for organizations to protect their employees' privacy.

Aug 11, 202223 min

Understanding Drone Privacy and Security Regulations

E

Mark McKinnon is a Partner at Fox Rothschild LLP, a national law firm representing aviation entities in international transactions and business dealings. He has over 30 years of experience in all areas of aviation and transportation law including litigation, appellate, regulatory, and other administrative matters. Mark has written and spoken extensively on unmanned aircraft systems (UAS) and other aviation subjects. Additionally, he is the co-editor of the Plane-ly Spoken Blog, a publication dedicated to providing up-to-date news, analysis, and opinions on issues affecting the aviation industry. In this episode… Drone regulations in the aviation industry are ambiguous and vague, leading many companies to neglect privacy and security considerations. So, how can you prioritize these concerns to avoid potential lawsuits from clients? According to Mark McKinnon, the Supreme Court has ruled that drones can operate at an altitude of only 200 feet without violating individuals' reasonable expectations of privacy. But this ruling has been frequently disputed, which is why it's critical to evaluate the regulations of the region you plan to operate from. Once you've established this, determine the purpose for the data you've collected and ensure you're not releasing it to the public without your clients' permission. By maintaining transparency with clients regarding their data usage, you can protect their privacy. In today's episode of She Said Privacy/He Said Security, Jodi and Justin Daniels talk with Mark McKinnon, a partner at Fox Rothschild LLP, about how drone companies can ensure individual privacy and security. He discusses how the Supreme Court dictates aviation privacy regulations, the implications of commercial drone usage, and common privacy and security mistakes companies make when utilizing drones.

Aug 4, 202235 min

Red Teaming for Security Exploits

E

Dahvid Schloss is the Managing Lead, Offensive Security and vCISO at Echelon Risk + Cyber, a cybersecurity and IT risk advisory services firm dedicated to protecting the right to privacy and security. With over 12 years of cyber attack and defense experience, Dahvid directs and manages Echelon's teams and leads their offensive security delivery service. Prior to working at Echelon, he worked at Deloitte as a Red Team Operator leading and conducting adversarial emulation exercises. In this episode… In today's unpredictable cybersecurity landscape, security exploits are on the rise, and businesses often lack the measures needed to combat them. So, how can you educate yourself on these matters to protect your company? Cyber defense expert Dahvid Schloss recommends adopting red teaming operations to mimic hacking and other cyber attacks. These capabilities allow businesses to analyze their security procedures to detect and prevent criminal behavior. For a fundamental approach, Dahvid advises companies to safeguard their passwords using third-party password managers. In this episode of She Said Privacy/He Said Security, Jodi and Justin Daniels sit down with Dahvid Schloss, Managing Lead, Offensive Security and vCISO at Echelon Risk + Cyber, to discuss how to avoid common security exploits. Dahvid explains red teaming and how it relates to cybersecurity, the purpose of DEF CON hacking conferences, and how to mitigate cyber-attacks. .

Jul 28, 202231 min

Cybersecurity Education: Best Practices

E

Brandon Laur is the Executive Manager and Instructor at The White Hatter, an internet safety and digital literacy education specialist company focused on facilitating workshops and providing presentations on technology safety and privacy. Brandon has worked with The White Hatter for more than 12 years to provide cybersecurity training to students, businesses, and adults. Brandon is also multi-certified and continues to receive ongoing training in Open Source Intelligence (OSINT). He conducts research in areas such as the social aspect of phishing cyber attacks, employee social media screening and online background checks, and the influence of digital technology on human sexuality. In this episode… As parents, it's often easy to assume your children have all the knowledge and answers about technology. But this is not always the case — they may fall victim to scams, phishing, or hacking. So, how can you educate yourself and your children on these matters? Cybersecurity educator Brandon Laur recommends acquiring knowledge of password and account management to mitigate the risk of being hacked. Managing each account and password can be difficult, so it's important to leverage regulation tools such as Google Password Manager, iCloud, or LastPass so you can stay organized. Brandon works with children and adults of all ages and skill levels to help them develop digital literacy and critical thinking to solve complex cybersecurity challenges. In today's episode of She Said Privacy/He Said Security, Jodi and Justin Daniels sit down with Brandon Laur, Executive Manager and Instructor at The White Hatter, to discuss cybersecurity education methods. Brandon shares his strategies for training students on privacy and security concerns, the common misconceptions regarding children's knowledge of technology, and essential cybersecurity tools for parents and children.

Jul 21, 202222 min

Privacy Compliance in a Post-Cookies World

E

Roy Smith is an entrepreneur and the CEO of PrivacyCheq, a company that helps mobile apps comply with privacy regulations. PrivacyCheq was the first company to offer cookieless consent-based management tools in 2016. Roy has over 35 years of experience branding and marketing new technologies designed to disrupt the market. As an engineer-turned-executive, Roy has been successful in building numerous companies from the ground up. In this episode… With US states adopting a host of new privacy laws and regulations, website cookies no longer meet consent requirements, forcing companies to employ alternative data collection methods. So, how can you convert to a cookieless digital space to stay compliant and protect your customer's data? According to Roy Smith, complying with updated privacy laws requires modifying your website. PrivacyCheq streamlines this process by adapting to each state's privacy laws so you can update your policies accordingly. And with PrivacyCheq's cloud-based technology, you can store your customer's data in convenient locations so they can easily access it and customize their preferences. In today's episode of She Said Privacy/He Said Security, Jodi and Justin Daniels talk with Roy Smith, CEO of PrivacyCheq, about complying with privacy regulations in a post-cookies world. Roy shares tips for companies to comply with consent laws, how impending privacy regulations will affect organizations, and the ways PrivacyCheq simplifies the consent process for businesses.

Jul 14, 202229 min

Regulating Air Traffic for Drone Use

E

Dawn Zoldi (Colonel, United States Air Force Retired) is the Founder and CEO of P3 Tech Consulting, a company connecting people and companies passionate about advanced tech platforms with the plans, policies, programs, and information they need to succeed. She is a licensed attorney and a 28-year U.S. Air Force Veteran. As an internationally-recognized expert in unmanned aircraft systems and advanced mobility law and policy, Dawn was listed in the eVTOL Insights 2022 Powerbook, one of the Top Women in Aerospace and Aviation to Follow on LinkedIn in 2021, and a recipient of the Woman to Watch Leadership Award for 2019. She is also an Adjunct Professor at Colorado State University-Pueblo and Embry Riddle Aeronautical University Worldwide Campus. In this episode… With unmanned aerial vehicles (UAV) on the rise, privacy and security is often unregulated, and drone users outsource air traffic management to a third party. So, what systems can your company put in place to protect your data and mitigate drone misuse? As a licensed attorney and UAV specialist, Dawn Zoldi suggests implementing cybersecurity guidelines for drone hardware and operations. One way to accomplish this is to put a system in place that identifies faulty signals and seizes control over the aircraft to safely land it. With the proper constraints in place, you can effectively secure your data and connection. In today's episode of She Said Privacy/He Said Security, Jodi and Justin Daniels sit down with Dawn Zoldi, Founder and CEO of P3 Tech Consulting, to discuss drone regulations. She talks about the different types of drones and how each one collects data, the risks associated with outsourcing air traffic control to a third party, and how companies can implement cybersecurity solutions for drone control.

Jul 7, 202233 min

Reinstating Control With Digital Identity

E

David Lucatch is the CEO, President, and Chair at Liquid Avatar Technologies, a digital identity and fintech solutions company that provides verified users with services to manage, control, and benefit from their digital identity. David has over 35 years of experience inventing technology and business solutions in the international marketing arena. He spent the last 20 years developing payment technology, language, and translation services to support the infrastructure of conducting business online. In this episode… Many forms of identity verification are outdated, with users lacking control over their own identities. Methods like two-factor authentication can lead to hacking and a subsequent violation of the user's privacy. What steps can you take to safeguard your consumer's identity and gain their trust in the process? You can start by leveraging digital identity to allow users to protect and control their identity. One way to achieve this is by utilizing biometrics as a form of authentication so consumers can regulate how and where they can share their identities. And by implementing blockchain, you can safely and seamlessly verify your user's individual credentials to minimize the risk of identity theft. Tune in to this episode of the She Said Privacy/He Said Security podcast as Jodi and Justin Daniels talk with David Lucatch, CEO, President, and Chair of Liquid Avatar Technologies, about how you can best secure your consumer's identity. David explains how Liquid Avatar allows users to verify their identities, blockchain's role in identity verification, and how Liquid Avatar leverages the three types of identity.

Jun 30, 202228 min

Implementing Virtualization for Safe and Efficient Software Testing

E

Amanda Gorton is the CEO and Co-founder of Corellium, a platform that helps developer and security teams build, test, and secure mobile and IoT apps supporting iOS, Android, and Linux through ARM virtualization. Amanda was previously the Co-founder of Virtual, which Citrix acquired in 2014. She holds a master's degree in Latin from Yale. In this episode… When testing new software and devices, it's necessary to provide your development team with the resources needed to conduct effective tests — but many companies rely on physical devices that get lost, broken, or compromise their employees' personal security. So what is the most productive method to run QA and security tests? Virtualization services allow you to conduct software and device testing by creating replicas in component-based applications. This system enables you to run multiple softwares simultaneously, ensuring maximum efficiency. And with Corellium's ARM-based virtualization, you can protect your company's privacy by destroying virtual devices and seamlessly performing security tests during the initial stages of development. In today's episode of She Said Privacy/He Said Security, Jodi and Justin Daniels sit down with Amanda Gorton, Co-founder and CEO of Corellium, to discuss using virtualization services to perform safe and effective software testing. Amanda talks about how Corellium employs virtualization for developers to test software, the privacy and security guidelines companies should consider when working with virtualization, and the steps companies are taking to solve the most pressing privacy and security challenges.

Jun 23, 202235 min

Developing Security Programs to Mitigate Cyber Attacks

E

Rachael Tenerowicz is the Director of Privacy and Cybersecurity at Uber. She is the primary counsel for the information security team, working on information security issues such as environmental, social, and governance (ESG), and supporting incident response investigations. Prior to her role at Uber, Rachael spent more than eight years working with clients in commercial, product liability, and litigation at Shook, Hardy & Bacon L.L.P. In this episode… In today's privacy and security landscape, security breaches are commonplace – yet the legal terms and conditions surrounding those breaches are often convoluted. As a result, many companies remain unsure about how to effectively handle their breaches. So how can you stay ahead of your breaches and mitigate risks? Rachael Tenerowicz, Director of Privacy and Cybersecurity at Uber, suggests taking a proactive approach to the cybersecurity disclosure guidelines outlined by the Securities and Exchange Commission (SEC). These guidelines can pose significant risks to your company, so it's important to develop the appropriate incident response measures. Informing your customers of a security breach before disclosing to the general public allows your clients to secure their own data and minimizes your risks of further attacks. In today's episode of She Said Privacy/He Said Security, Jodi and Justin Daniels talk with Rachael Tenerowicz of Uber about developing a robust cybersecurity program to mitigate risks. Rachael provides tips for investors to understand cybersecurity challenges, how companies can prepare for SEC cyber disclosure laws, and how organizations can establish trust with their customers and the public.

Jun 16, 202222 min

Building Privacy Programs for Your Organization

E

Ron Whitworth is Chief Privacy Officer at Truist, the sixth largest bank in the U.S., which recently completed a merger of SunTrust and BB&T. He manages the Enterprise Privacy and Technology Office (EPTO) within Compliance Risk Management. Ron is certified by the International Association of Privacy Professionals (IAPP) as a Fellow of Information Privacy (FIP), a Certified Information Privacy Manager (CIPM), and Certified Information Privacy Professional for the United States, Canada, and Europe (CIPP/US, CIPP/C, and CIPP/E). In this episode… The evolution of technology has given rise to highly-regulated data privacy laws. In today's digital era, organizations and privacy professionals need to modify their technology to comply with these laws. So, how can you implement a privacy program that complies with these advancements and secures your client's data? According to Ron Whitworth, automated data governance allows you to understand and manage your data. With this technology, you can make strategic and informed decisions about where your data is and how you're using it, so you stay compliant while establishing trust with your consumers. In today's episode of She Said Privacy/He Said Security, Jodi and Justin Daniels talk with Ron Whitworth, Chief Privacy Officer at Truist, about implementing privacy programs in today's changing privacy and security landscape. Ron shares some of the major privacy and security challenges banks face, how banking technology has evolved to comply with updated privacy laws, and how he manages data privacy amongst changing privacy and security standards.

Jun 9, 202226 min

Implementing a Secure Identity and Access Management Program

E

David Chan is a Managing Director within EY's Technology Consulting practice, where he helps entrepreneurs, companies, and government entities solve their most pressing cybersecurity challenges. David has over 16 years of experience in cybersecurity and identity and access management. He is currently focused on security reviews of Web3 and implementing blockchain at large organizations. In this episode… When it comes to cyberspace, digital identity is expanding. To adopt this form of identity, businesses need to adhere to the privacy regulations surrounding its use. So, how can your business implement user-friendly identity and access management programs that maintain privacy and security? Blockchain encourages user transparency and identity security. With blockchain, users can authenticate their identity without using passwords, ensuring an effortless and secure experience. And, by integrating decentralized identifiers (DIDs) into your business, you can save money on privacy and security while giving users consent over their information and identity. In today's episode of She Said Privacy/He Said Security, Jodi and Justin Daniels sit down with David Chan, Managing Director of EY's Technology Consulting practice, to talk about integrating identity programs into your business. They cover the three types of identity and access management programs, how businesses can adopt DID while adhering to privacy and security, and the benefits of implementing blockchain into your identity programs.

Jun 2, 202221 min

Maintaining Data Security With SDKC

David Kruger is the Co-founder and VP of Strategy at Absio, a military-grade data security corporation. He is also the Co-inventor of Absio's patented Software-Defined Distributed Key Cryptography (SDKC). David has over 40 years of experience in technology consulting, business development, and sales strategy. He is a certified General Data Protection Regulation (GDPR) practitioner with knowledge in all aspects of data privacy. In this episode… Data security is becoming more complex, and many companies don't realize that data is a physical substance that can cause damage if it's not appropriately controlled. So, how can you secure your data to ensure widespread protection? For starters, companies should take a proactive rather than reactive approach to controlling data usage. David Kruger's patented technology, Software-Defined Distributed Key Cryptography (SDKC), enables software applications to create the keys needed to encrypt data safely and efficiently. With SDKC, you can store your data and keys in one secure location to seamlessly maintain control over your data. In today's episode of She Said Privacy/He Said Security, Jodi and Justin Daniels talk with David Kruger, Co-founder and VP of Strategy of Absio, about actively securing your data. David shares his approach to data security, tips for efficient data encryption and decryption, and how his patented Software-Defined Distributed Key Cryptography (SDKC) technology can help companies effectively secure their data.

May 26, 202226 min

Transforming How Your Children Use Technology

E

Sean Herman is the Founder and CEO of Kinzoo, a company that is on a mission to be the most trusted brand for incorporating technology into children's lives. Kinzoo unlocks technology's true potential by focusing on connection, creativity, and cultivating new skills and interests for children and families. Sean is also the author of Screen Captured, a #1 Amazon best-seller that provides new and productive ways for parents and families to think about technology and screen time. In this episode… Are you a parent concerned about your child's use of technology? Technology is becoming more and more accessible to younger children, so how can you ensure that your child's content is safe and appropriate? Kinzoo understands that it's not always easy to restrict children's technology use, so they've provided a secure alternative to traditional technology platforms to safely integrate and manage technology in your child's daily life. With Kinzoo's comprehensive and user-friendly privacy measures, you can feel confident knowing that your child is protected on the internet. In this episode of She Said Privacy/He Said Security, Jodi and Justin Daniels sit down with Sean Herman, Founder and CEO of Kinzoo, to talk about creating a safe environment for children to use technology. Sean reveals some of Kinzoo's privacy and security features, how the platform can help solve the growing technology problem, and tips for parents to rethink how their children use technology.

May 19, 202229 min

Jodi and Justin's Top Five Privacy and Security Lessons for 2022

E

Jodi Daniels is the Founder and CEO of Red Clover Advisors, a boutique data privacy consultancy and one of the few certified Women's Business Enterprises focused solely on privacy. Since its launch, Red Clover Advisors has helped hundreds of companies create privacy programs, achieve GDPR, CCPA, and US privacy law compliance, and establish a secure online data strategy that their customers can count on. Jodi is a Certified Informational Privacy Professional (CIPP/US) with over 20 years of experience helping a range of businesses — from solopreneurs to multinational companies — in privacy, marketing, strategy, and finance roles. She has worked with numerous companies throughout her corporate career, including Deloitte, The Home Depot, Cox Enterprises, Bank of America, and many more. Jodi is also a national keynote speaker, a member of the Forbes Business Council, and the co-host of the She Said Privacy/He Said Security podcast. Justin Daniels is a cybersecurity subject matter expert and business attorney who helps his clients implement strategies to better manage and recover from data breaches. As outsourced general counsel for Baker Donelson, Justin advises executives on how to successfully navigate cyber business and legal concerns related to operations, M&A, incident response, and more. In 2017, Justin founded and led the inaugural Atlanta Cyber Week, where multiple organizations held events that attracted more than 1,000 attendees. Justin is also a TEDx and keynote speaker and the co-host of the She Said Privacy/He Said Security podcast with his wife, Jodi. In this episode… It's 2022, and digital data is expanding faster than ever. Many companies are struggling to adapt to dynamic data privacy and security laws and advancements. When it comes to the privacy and security space, what mistakes are companies making? Privacy and security experts Jodi and Justin Daniels maintain the importance of company data inventories, so you can figure out where your data is and why you're using it. Without these inventories, it becomes impossible to secure your data and comply with the latest laws. This is just one of Jodi and Justin's many lessons intended to educate companies on privacy and security. In this episode of She Said Privacy/He Said Security, Jodi and Justin Daniels sit down to discuss their top five privacy and security lessons of 2022. Tune in to learn about the privacy terms and conditions you should include in your company contract, how to make sure you're using cookies correctly on your website, and why small companies should heed privacy and security warnings.

May 12, 202218 min

Training Your Company on Privacy and Security Laws

E

Daniel Solove is a skilled expert in privacy law and the President and CEO of TeachPrivacy, a company providing data security and privacy training to businesses, healthcare institutions, and other organizations. He is also the John Marshall Harlan Research Professor of Law at the George Washington University Law School. Daniel has written 10 books and more than 50 law review articles for the Harvard Law Review, Yale Law Journal, Stanford Law Review, and more. He has been featured in hundreds of articles and broadcasts in outlets such as The New York Times, The Washington Post, and CNN. In this episode… How much does your team really know about privacy laws? Are you taking steps to ensure that your company's privacy and data security is up to date? Daniel Solove, a leading privacy expert, is passionate about educating companies about privacy. This interest led to the development of his company, TeachPrivacy, which offers comprehensive privacy training programs for organizations. Now, Daniel is here to share his advice on how you can educate your employees on the subject of privacy laws in an engaging and informative way — so you can stay compliant and protected. In this episode of She Said Privacy/He Said Security, Jodi and Justin Daniels sit down with Daniel Solove, the President and CEO of TeachPrivacy, to discuss how to educate your team on data privacy and security. Daniel reveals how to lead engaging training sessions on privacy laws, the different types of privacy laws that employees should be aware of, and his own tips and tricks on personal security and privacy.

May 5, 202232 min

Data Privacy in the Evolving Advertising Landscape

E

Ana Milicevic is the Co-founder and Principal of Sparrow Advisers, a boutique management consultancy that helps marketers and C-suite executives generate and grow revenue through product, strategy, services, sales, and marketing consulting. Ana is a pioneer in digital data management and has years of experience in adtech, martech, and product strategy. Earlier in her career, she held key leadership roles in media and entertainment startups in both Europe and the United States. In addition to her work at Sparrow Advisers, Ana is a frequent speaker on topics of big data, cross-channel marketing analytics, the future of media and advertising, and more. In this episode… As digital advertising continues to evolve, companies need to stay savvy in order to maintain data privacy and security standards. But, with so many different privacy laws and regulations coming into play, how do you know the best path forward? Currently, the US is taking a fractured approach to privacy and security, with different states passing their own laws. This can make compliance a nightmare for companies that are also trying to navigate a post-cookie advertising landscape. While the ideal solution may still be years away, there are some actions companies can take now to overcome current challenges and prepare for the data-driven future. In this episode of She Said Privacy/He Said Security, Jodi and Justin Daniels sit down with Ana Milicevic, the Co-founder and Principal of Sparrow Advisers, to discuss data privacy in the evolving advertising landscape. Ana talks about navigating the post-cookie world, why it's important to focus on data usage rights, and how to improve your email hygiene. She also shares her thoughts on the US data privacy laws and regulations. Stay tuned.

Apr 28, 202234 min

Building a Balanced Privacy Program

E

Linda Thielová serves as Head of Privacy, COE, and DPO at OneTrust, the #1 most widely used privacy, security, and trust technology platform. In her role, Linda provides guidance on GDPR, EU privacy, and global privacy related obligations to support customers and product innovation. She's responsible for overseeing OneTrust's data protection strategy and implementation to ensure compliance with GDPR requirements. Linda also conducts training and workshops on the global privacy landscape and regularly contributes to various publications and conferences. Additionally, she is a multi-certified Information Privacy Professional. In this episode… The privacy and security landscape is constantly shifting and more and more regulations are being introduced. How can you build a suitable privacy program when the laws don't always line up? The most successful companies have an element of agility in their privacy programs. The key is striking the right balance. This means adjusting to whatever law crosses the board, while also focusing on the ultimate goal — building trust with your key stakeholders. Successful companies recognize the need to comply, but they also ask themselves: why are we doing it? And how are we benefiting both the business and those stakeholders in the process? In this episode of the She Said Privacy/He Said Security podcast, hosts Justin and Jodi Daniels are joined by Linda Thielová, Head of Privacy, COE, and DPO at OneTrust, to talk about building a balanced privacy program. Linda shares examples of companies who are successfully navigating new privacy laws, the importance of a data map, and the biggest privacy challenges that businesses face today.

Apr 14, 202234 min

Data Collaboration and the Future of Data Privacy

E

Chris McLellan is the Director of Operations for the Data Collaboration Alliance, a global nonprofit dedicated to helping people and organizations get full control of their data. Chris is a data ownership advocate and community organizer who specializes in the advancement of leading-edge innovations, particularly data-centric technologies. In 2017, he founded Ask AI, a nonprofit promoting awareness and understanding of artificial intelligence through its podcast, free event series, and chatbot. In addition, Chris is a Marketing Consultant with Friends Electric and the Director of Category Success for Cinchy. In this episode… How would you describe the world of data today? With so many new technologies and innovations, the word chaos comes to mind. But what does this mean for data privacy, and how can you start to reframe this chaos into something beneficial for your organization? When it comes to privacy in the data space, everything boils down to control. Who can see your data? Who can access your data? How are they going to use that data? Luckily, the Data Collaboration Alliance is on a mission to transform the chaotic world of data into something more controlled — without forgoing the exciting innovations in the industry. In this episode of She Said Privacy/He Said Security, Jodi and Justin Daniels sit down with Chris McLellan, the Director of Operations at the Data Collaboration Alliance, to talk about improving privacy through data ownership, collaboration, and control. Tune in as Chris breaks down what data collaboration is, how to prioritize privacy in Web 3.0, and the new technologies that will transform the way data is shared.

Apr 7, 202230 min

How Security Plans Impact Business Transactions

E

Philip Lewis is a Partner with Fulcrum Equity Partners, a company that makes equity investments in rapidly growing businesses. He also currently serves on the Board of Directors for Kevel, Stratasan, Advantum Health, GoPivot, and LiveSource. He previously served on the Boards of Stax by Fattmerchant, MFG, and Resolvion. Before joining Fulcrum Equity Partners, Philip worked with SaaSOptics, implementing operational cadences and working with the team through its nine-figure exit. Prior to this, he served as CFO of RivalHealth and helped guide the company through its merger with gBehavior, now branded as GoPivot. In this episode… There are many factors that impact a business acquisition. During the due diligence process, there are financial, organizational, and leadership details to work out. But now, a new question is joining the list: What is your business' privacy and security strategy? Fifteen years ago, people didn't put much thought into privacy and security when buying or selling a business. They weren't concerned about ransomware and cyber breaches. Now, it's at the forefront of everyone's mind during a transaction. Business owners want to know: What does your security perimeter look like? How effective is your mobile device management? Do you have multi-factor authentication? In this episode of the She Said Privacy/He Said Security podcast, Justin and Jodi Daniels are joined by Philip Lewis, Partner at Fulcrum Equity Partners, to discuss the importance of a company-wide privacy and security plan. Philip explains how your security plan (or lack thereof) will impact a business transaction, why multi-factor authentication matters, and the first steps to creating a more secure business.

Mar 31, 202221 min

Privacy, Security, and Drones

E

Tom Walker is the Founder and CEO of DroneUp. DroneUp provides drone technology solutions to businesses, organizations, and communities. The company's products include flight services, data analysis, drone program development, regulatory consulting, training, equipment, and drone delivery. Before starting DroneUp, Tom was a military officer and served as an advisor to the White House. He is a pioneer in military and government digital reform and a frequent speaker on innovative technologies. In this episode… Imagine a world where groceries, medications, and supplies are delivered to your doorstep by drones. Road traffic is reduced by self-flying drones taking people to and from work. Police cars are replaced by drone surveillance and security. Is this within our near future? It might be. But before we can explore the possibility of autonomous flying taxis, experts have to puzzle out the privacy and security implications of such a world. With devices that can instantly identify cell phone data, VINs, and even the types of fluids at crime scenes, how are you going to keep private information from getting into the wrong hands? And, on the flip side, how can you use this data to make the world a better place? In this episode of the She Said Privacy/He Said Security podcast, hosts Jodi and Justin Daniels are joined by Tom Walker, the Founder and CEO of DroneUp, to discuss how he makes privacy a top priority for drone usage. Tom talks about the best practices for data collection, the types of information a drone can uncover, and why setting a privacy and security standard is important for the future of the drone industry.

Mar 24, 202236 min

Keeping Your Kids Safe in the Digital World

E

Justin Payeur is an entrepreneur, mentor, and cyber safety specialist. He's the President and COO of National Education Technologies, where he helps parents teach their kids a balanced and safe approach to using mobile technology. As a dad of two teens, Justin understands how important it is to keep your children safe in the digital world. He leads product vision for digital wellbeing apps Boomerang Parental Control and SPIN Safe Browser to help filter web content and facilitate conversations about tech use. Justin has over a decade of experience in K12 enterprise sales leadership, working at organizations including Faronics Corporation, FinScan Inc., and IC Thrive. In addition to founding National Education Technologies, Justin is currently the General Manager of North America for Matific, a mathematics e-learning platform for schools. In this episode… In today's world, kids are growing up with millions of websites, apps, and communication tools that are available at the touch of a button. So how can you keep your kids safe online while still giving them the freedom to explore? Many parents have dealt with the screen time battle — your kids want to be on their devices all the time, but you want to protect them from harmful content and habits. Is there any solution that will make both you and your child happy? According to Justin Payeur, the term "screen time" often has negative connotations, but it can actually be a good thing (depending on the content). Instead of trying to lock everything down immediately, show interest in their screen time use and have an open dialogue about expectations. And, you don't need to lose sleep over your child's online safety; Justin has some helpful tools to filter websites and provide a safer digital experience for your child. In this episode of She Said Privacy/He Said Security, Jodi and Justin Daniels talk with Justin Payeur, President and COO of National Education Technologies, about how parents can create a balanced and safe approach to technology. Justin discusses the details of his digital safety apps, explains the risks many parents are unaware of on the internet, and shares tips for setting boundaries and introducing your child to screen time in a safer way.

Mar 17, 202232 min

Building a Privacy and Security Strategy for the Cloud

E

Bill Tolson is the Vice President of Global Compliance and eDiscovery at Archive360. Archive360 is the world's first platform built to migrate and manage data with your security preferences in your own cloud. Bill has over 25 years of experience with multinational corporations and technology startups, including 15-plus years in the archiving, compliance, information governance, and eDiscovery markets. Bill frequently speaks at legal and information governance industry events, in addition to writing numerous articles and blogs. Bill is also a prolific podcaster and the author of multiple e-books, including The Know IT All's Guide to eDiscovery and The Bartender's Guide to eDiscovery. In this episode… Just a few years ago, it was tough to persuade large organizations to adopt the cloud. Now, there's a massive data migration as more and more companies move sensitive data into the cloud. But, how can you keep this information secure? For most companies, encrypting data is a simple yet effective solution to keep their data safe. And, many cloud providers have encryption keys to do the job. But what if you want to manage your own encryption keys? Is there a way to have more control over the security of your data on a third-party cloud provider? In this episode of the She Said Privacy/He Said Security podcast, hosts Justin and Jodi Daniels sit down with Bill Tolson, the Vice President of Global Compliance and eDiscovery at Archive360, to discuss how his team is empowering businesses to take charge of their cloud security. Bill talks about the first steps to creating a privacy and security strategy for the cloud, how new privacy laws will potentially impact businesses, and why knowing where your data is stored matters.

Mar 10, 202235 min

Evolving Privacy Laws

E

David Biderman is a Partner at Perkins Coie, where he leads the firm's consumer products and services litigation subgroup and its food litigation industry group. David has represented clients in federal and state courts in California for over 40 years. With a focus on mass tort litigation and consumer class actions, he has litigated some of the most consequential food litigation matters in this emerging field. David has been recognized as a "Super Lawyer" in Los Angeles and San Francisco and has published articles in the National Law Journal, the Los Angeles Daily Journal, and more. Dominique Shelton Leipzig is the Chair of Perkins Coie's Global Data Innovation Team and the Co-chair of the firm's ad tech privacy and data management practice. As a firm partner and attorney, she focuses on privacy data strategy, leveraging data, and avoiding litigation. Dominique pioneered the concept of data as a pre-tangible asset in what she calls our "post-data world." She has trained over 18,000 professionals on the CCPA and also wrote the groundbreaking book, Implementing the CCPA: a Guide for Global Business. In this episode… Data and privacy issues aren't confined to private companies anymore. They're filtering their way into new laws and policies, and more and more states are defining legislation that could either protect or limit privacy and security. So, what do these changes mean for your business? How do you stay up to date with new laws and policies? And, what do you need to do to remain compliant and protected in the evolving privacy industry? In this episode of the She Said Privacy/He Said Security, hosts Justin and Jodi Daniels are joined by Dominique Shelton Leipzig and David Biderman from Perkins Coie to discuss current privacy litigation issues. They share their thoughts about states putting privacy issues on the docket this year, the privacy implications of the American Rescue Plan Act, and the up-to-date definitions of reasonable versus negligent extraction of data.

Mar 3, 202244 min

What is Communication's Impact on Your Security and Privacy Program?

E

Melanie Ensign is the Founder and CEO of Discernible, a company that is uniquely specialized in addressing communication challenges for cybersecurity, privacy, and risk organizations. Melanie has extensive experience helping security teams deliver successful outcomes for their customers and partners through the application of effective communication. Before founding Discernible, Melanie was managing security and privacy communications for some of the world's most notable brands, including Facebook, Uber, and AT&T. She currently leads the press department for DEF CON, the world's largest hacker conference. In this episode… Are you struggling with communication challenges while trying to address cybersecurity, privacy, or risk at your organization? What if there are ways you can perfect your communication skills and stay compliant? For you to deliver successful outcomes to your customers and partners, your security teams need to develop effective communication skill sets. Melanie Ensign says that most of the barriers around success involve a lack of effective communication and partnerships with key stakeholders and customers — and many security programs fail to recognize this reality before it's too late. In this episode of the She Said Privacy/He Said Security podcast, Jodi and Justin Daniels sit down with Melanie Ensign, the Founder and CEO of Discernible, to discuss the impacts of communication on security and privacy programs. Melanie talks about how she uses communication skills to help clients in a security and privacy incident, the privacy-related communication challenges that companies face, and how she communicates the value of privacy to companies in the data economy.

Feb 24, 202236 min

Private Cyber 911

E

Dr. Ondrej Krehel is the Founder and CEO of LIFARS, a global leader in incident response, digital forensics, ransomware mitigation, and cyber resiliency services. Dr. Krehel is recognized worldwide for his ethical hacking and digital forensic expertise. He holds a PhD in computer forensics from the Police Academy in Bratislava and a master's degree in mathematical physics from Comenius University in Bratislava. Dr. Krehel is a former lecturer at the FBI Training Academy and a current contributor to the Forbes Technology Council. He also previously led forensic investigations and cybersecurity consulting at Stroz Friedberg, encompassing US government engagements and missions — including military cyber special operations. In this episode… There are firefighters to douse flames, ambulances to rush patients to the hospital, and policemen to bust crime scenes. But who do you call in a cybersecurity emergency? The answer: a cyber doctor. They can effectively scan the body of your cybersecurity program and find any weaknesses. Do you have a cyber cold? Cyber flu? Or is it full-on cyber cancer? Whether you're experiencing a phishing email, a computer virus, or a ransomware attack, cyber doctors can nurse your systems back to full strength. In this episode of the She Said Privacy/He Said Security podcast, Jodi and Justin Daniels sit down with Dr. Ondrej Krehel, Founder and CEO of LIFARS, to discuss effective solutions to cyber attacks. Dr. Krehel talks about creating a proactive security plan, navigating new ransomware trends, and how to avoid giving out unnecessary personal data.

Feb 17, 202232 min

Privacy and Security Precautions for the Cloud

E

Tommy Donnelly is the CIO of BetterCloud and a thought leader for the future of digital transformation in cybersecurity. He offers a unique blend of experience in infrastructure, security, privacy, compliance, and technical strategy in a SaaS environment. Previously, Tommy was the Senior Vice President of Global Security and Information Productivity at Bullhorn and the Chief Information Officer at Peoplenet. In this episode… Watching your company grow is exciting. But as departments and clientele expand, how do you make sure your data remains secure? Many companies are unaware of just how many applications their company is using as it grows. The HR department downloads an application, then the marketing and financial departments download a few more, and so on. Pretty soon, there are hundreds of applications storing sensitive data floating around the company — and you don't know how to secure them. So, how do you start reigning in these applications to keep data safe? In this episode of She Said Privacy/He Said Security, co-hosts Justin and Jodi Daniels sit down with Tommy Donnelly, CIO at BetterCloud, to discuss how companies can keep their data safe in the cloud. Tommy talks about the privacy and security risks of the cloud, the best ways to consolidate your company's data for security purposes, and how BetterCloud can help manage privacy and security across multiple applications.

Feb 10, 202221 min

The Future of Online Identity Verification

E

Rick Song is the CEO and Co-founder of Persona, an identity infrastructure company founded in 2018. Persona offers businesses the building blocks they need to create a personalized identity verification experience. Persona's mission is to be the identity layer of the internet. Before starting Persona, Rick was an engineer at Square. He earned his bachelor's degree in computer science, mathematics, and economics from Rice University. In this episode… Over the last 10 years, the amount of information that is collected about consumers has increased dramatically. Is there any end in sight to this accelerated information scoop? The need to verify your identity online isn't going anyway anytime soon. But, hopefully one day we can reach that delicate intersection where we can prove who we are online without needing to give away so much personal data. Persona is working to make that a reality. They help companies store and manage data within a secure infrastructure that limits how much sensitive personal information they have to ingest into their platforms. So, how will this change the way companies verify identities online? In this episode of the She Said Privacy/He Said Security podcast, Justin and Jodi Daniels sit down with Rick Song, the CEO and Co-founder of Persona, to discuss the future of online identity verification. Rick talks about how Persona is changing the way companies collect information, why efficient identity verification is essential for Web 3.0, and the security tips that can help you keep your information secure online.

Feb 3, 202230 min

Privacy by Design

E

Debra Farber is the CEO of Principled LLC, a privacy-first tech advisory. Debra is a global privacy and security advisor, investor, and privacy tech enthusiast. She has over 16 years of privacy and security leadership experience at companies like Amazon Web Services (AWS), BigID, Visa, and IBM. She currently serves on multiple advisory boards for organizations including The Rise of Privacy Tech, D-ID, and Taskbar. In this episode… Once your company has checked off the basic privacy requirements, how can it continue to move forward? What should you be implementing next? According to Debra Farber, the first step is to do an inventory of your current practices. Where are your potential privacy problems? Are you over-collecting data that may be causing compliance issues later in the process? By mapping your biggest privacy challenges, you can begin to work backward and prevent problems from happening. This way, you can create a privacy program that is uniquely designed to meet your company's needs. In this episode of the She Said Privacy/He Said Security podcast, Justin and Jodi Daniels sit down with Debra Farber, the CEO of Principled LLC, to talk about building a better privacy plan for your company. Debra discusses how to recognize your weak spots, the key to bridging the communication gap between different departments, and the new trends and updates in the privacy tech space.

Jan 27, 202241 min

Closing the Security Gap For IoT Devices

E

Roy Dagan is the CEO and Co-founder of SecuriThings, the provider of the first IoTOps solution designed to help organizations maximize their devices' operational efficiency and security. He started the company after many years of building cybersecurity, risk management, and intelligence systems. Prior to SecuriThings, Roy led product and management teams at a range of companies, including RSA, Capital Cadence, and NICE Systems. In this episode… If you're a large organization, chances are you have multiple IoT devices. How can you ensure those devices are always running and healthy? There's no one-size-fits-all solution. Your options depend on the category: enterprise, consumer, wearables, automotive, or something else entirely. It also depends on the type of device and its purpose. How can you make sure each different device is communicating flawlessly without any gap in security? Is there a way to find an option specifically tailored to your company? Enter: SecuriThings' IoTOps solution. In this episode of She Said Privacy/He Said Security, Jodi and Justin Daniels sit down with Roy Dagan, CEO and Co-founder of SecuriThings, to discuss how the company is changing device management and security for the better. Roy talks about the biggest misconceptions about IoT security, why your company needs a proactive cybersecurity plan, and his advice for physical security teams.

Jan 20, 202224 min

Building Trust Through Data Transparency

E

Daniel Barber is the Co-founder and CEO of DataGrail. DataGrail helps people gain control of their privacy and identity. They've developed a privacy platform that modern brands rely on to build customer trust and transparency. Daniel is a Contributing Writer for the Forbes Technology Council. His insights have been distributed in security and privacy publications such as IAPP, CPO Magazine, Consumer Affairs, CIO Dive, and Dark Reading. Additionally, he is the CEO of GTM Orchestration and is on the Advisory Board for SignOnSite, Outreach.io, and Chorus.io. In this episode… According to a recent survey by DataGrail, 83% of Americans want control over their information. How can businesses deliver that transparency? It's not easy. Most businesses only provide information that's in two or three systems that they own, like Zoom, Slack, or Salesforce. But the truth is, there are hundreds of systems processing consumer information. How can they locate where each consumers' information is stored? In this episode of She Said Privacy/He Said Security, Jodi and Justin Daniels sit down with Daniel Barber, Co-founder and CEO of DataGrail, to discuss how DataGrail's software can build transparency by giving consumers control of their data. Daniel talks about the importance of knowing where data is stored, how to build trust through transparency, and the evolving landscape of privacy laws.

Jan 13, 202230 min