Deny By Default as CISOs Battle Platform Fatigue and Show Value to the Board – Danny J… – BSW #391

Summary: The video discusses a conversation with Danny Jenkins, CEO of Threat Locker, on the “deny by default” security approach and its benefits. The discussion covers various topics related to cybersecurity practices, bridging the gap between CISOs and board members, and strategies to prevent operational fatigue within organizations. Additionally, it addresses the importance of understanding software inventory for effective security implementations and the challenges faced by security professionals in current environments.

Keypoints:

  • Introduction of Danny Jenkins, CEO of Threat Locker, emphasizing a “deny by default” approach to cybersecurity.
  • Discussion on the relationship between CISOs and the board of directors, highlighting communication challenges.
  • Overview of the CISO Mind Map for 2025 and the evolving roles of security professionals.
  • Importance of understanding and managing software inventory to prevent disruptions while implementing security measures.
  • Threat Locker’s approach includes learning from the environment before enforcing application control.
  • Emphasis on a granular, zero-trust model for endpoint security, prioritizing known and unknown threats.
  • Strategies for handling user requests for new software to enhance self-service while maintaining security.
  • Challenges of traditional EDR and detection systems compared to blocking by default strategies.
  • Future focus on enhancing cloud security measures and ensuring seamless security experiences for users.
  • Recognition of the importance of collaborative conversations between security leaders and other business functions for effective strategy execution.

Youtube Video: https://www.youtube.com/watch?v=uqZGK3slRs0
Youtube Channel: Security Weekly – A CRA Resource
Video Published: Wed, 16 Apr 2025 09:01:23 +0000