Incident Response: EU vs. US Policy Gaps
Impossible d'ajouter des articles
Désolé, nous ne sommes pas en mesure d'ajouter l'article car votre panier est déjà plein.
Veuillez réessayer plus tard
Veuillez réessayer plus tard
Échec de l’élimination de la liste d'envies.
Veuillez réessayer plus tard
Impossible de suivre le podcast
Impossible de ne plus suivre le podcast
-
Lu par :
-
De :
Alejandro Rivas Vazquez spent two decades running Digital Forensics and Incident Response at two Big Four firms, and now teaches cybersecurity law at IE Law School in Madrid. He's sat in boardrooms, testified as an expert witness, and been on the phone at 1am when OFAC changed the rules mid-ransomware negotiation.
In this episode, Alejandro breaks down why the EU and US approach cyber incidents from fundamentally different starting points, and what happens when those worlds collide inside a real investigation.
He explains:
- Why lawyers belong in the room (and exactly when they don't)
- How the EU's hyper-regulation actively hinders incident response
- Why business email compromise costs more than ransomware — and gets less attention
- What preparation actually means before an incident hits
- How DFIR is professionalizing, and where AI fits into its future
Timestamps
- (00:00) Alejandro's path from Big Four IT risk to DFIR
- (07:45) How Operation Night Dragon changed the industry
- (16:20) Boardrooms, expert witnesses, and CISO liability
- (25:35) EU vs. US: regulation-first vs national security-first
- (32:15) When Europe's privacy laws block your own investigation
- (41:48) CISO personal liability: insurance, risk acceptance, and burnout
- (54:18) War story: business email compromise and the board member who went rogue
- (01:01:45) The single decision that separates contained from catastrophic
- (01:09:26) Midnight OFAC call during an active ransomware response
- (01:14:00) Why DFIR merged and where the profession is heading
- (01:20:09) AI as force multiplier: threat, opportunity, and the hallucination danger zone
- (01:33:53) Practical advice: what EU and North American CISOs should do this quarter
adbl_web_anon_alc_button_suppression_t1
Aucun commentaire pour le moment