cover of episode 63 - Building Trust in a Digital World: The Essential Guide to Internet Security for Professional Services with Simple Salt's Dylan Evans

63 - Building Trust in a Digital World: The Essential Guide to Internet Security for Professional Services with Simple Salt's Dylan Evans

2024/11/12
logo of podcast Product Led Growth Leaders

Product Led Growth Leaders

AI Deep Dive AI Insights AI Chapters Transcript
People
D
Dylan Evans
Topics
Dylan Evans: 我认为网络安全领域存在许多误解。许多人认为网络犯罪都是复杂的网络攻击,例如黑客行为或拒绝服务攻击。但实际上,大多数网络犯罪都是传统的犯罪手法,例如诈骗、社会工程学和供应链攻击。这些犯罪行为通常由犯罪团伙利用简单的脚本和电话中心进行操作,而非高科技手段。因此,与其依赖过时的安全措施(例如单纯依靠杀毒软件或防火墙),不如专注于识别和避免成为这些犯罪行为的目标。这通常更经济有效,并且更能保护企业的声誉和客户信任。 我与许多高信任度的专业服务公司合作,帮助他们识别和降低网络安全风险。我们提供的服务包括免费内容、咨询和软件产品,帮助企业以更有效的方式管理风险。我们的方法侧重于量化风险,帮助企业了解潜在的损失,例如数据泄露或勒索软件攻击造成的收入损失。我们帮助企业识别风险来源,并制定相应的策略来降低风险。我们提供的软件产品可以帮助企业实时监控风险,并及时采取行动。 许多公司采用的安全措施,例如多因素身份验证,已经过时,无法有效抵御当前的网络威胁。因此,企业需要关注更有效的安全策略,例如减少单点故障,并利用外部服务来增强安全性。 Thomas Watkins: 通过与Dylan Evans的对话,我了解到网络安全领域存在许多误解。许多人将网络安全等同于技术问题,并依赖过时的安全措施。然而,Dylan Evans强调,大多数网络犯罪是传统的犯罪行为,而非复杂的网络攻击。他建议企业应专注于识别和避免成为犯罪目标,这通常更经济有效。他还批评了许多公司采用的安全措施只是表面功夫,实际效用有限。 Dylan Evans的公司Simple Salt提供了一种不同的网络安全方法,侧重于量化风险,帮助企业了解潜在损失,并根据风险等级制定相应的安全策略。他们的服务包括免费内容、咨询和软件产品,帮助企业以更有效的方式管理风险。通过与Simple Salt的合作,企业可以更好地了解自身面临的网络安全风险,并采取相应的措施来降低风险,从而保护自身的利益和声誉。

Deep Dive

Key Insights

What is the main difference between internet crime and internet security according to Dylan Evans?

Internet crime often involves traditional crime tactics like social engineering and phishing, rather than sophisticated hacking. Internet security, on the other hand, is often perceived as a technical problem involving antivirus software and network protection, but the reality is that most crime is not techno-wizardry and requires a different approach.

Why does Dylan Evans criticize traditional security measures like antivirus software?

Dylan criticizes traditional security measures because they often focus on outdated or ineffective solutions like antivirus software, which do not address the root causes of most internet crimes. He emphasizes that many security measures are more about 'security theater' than actual protection, and that real security involves understanding and mitigating human vulnerabilities.

What types of clients does Dylan Evans primarily work with?

Dylan primarily works with high-trust professional services such as commercial lawyers, boutique management consultants, accounting firms, and engineering firms with significant intellectual property. These clients are particularly vulnerable to security breaches and have a strong interest in actual results rather than just compliance.

What is the main strategy Dylan Evans recommends for avoiding internet crime?

Dylan recommends focusing on reducing or eliminating whole categories of threats by building guardrails that protect against human error and vulnerabilities. This involves understanding the real risks and implementing practical, cost-effective measures rather than relying on outdated or overly technical solutions.

What does Simple Salt offer to its clients in terms of security solutions?

Simple Salt offers a mix of free content, consulting services, and software products designed to help businesses mitigate security risks. Their approach focuses on providing easy-to-understand answers and practical solutions tailored to the specific needs of high-trust professional services, such as legal firms.

Why does Dylan Evans believe that multi-factor authentication (MFA) is no longer effective?

Dylan believes that MFA, particularly the style that sends codes to a phone, is no longer effective because commodity malware available to crime rings can easily bypass it. He argues that many companies are adopting MFA for show rather than for actual security, contributing to what he calls 'security theater.'

What advice does Dylan Evans give to startup founders regarding security?

Dylan advises startup founders to stop trying to do everything themselves and instead outsource security tasks to specialized partners. He emphasizes that the cost of maintaining secure systems is often higher than outsourcing, and that startups should focus on eliminating single points of failure and leveraging external expertise to protect their businesses.

How does Dylan Evans describe the marketing strategy for Simple Salt?

Dylan describes the marketing strategy for Simple Salt as evangelizing the message of effective, maverick security solutions. He shifted to a lead generation strategy focused on spreading this message through extensive content and direct engagement, rather than relying on traditional marketing or sales tactics.

Chapters
This chapter clarifies the difference between internet crime and internet security, dispelling common misconceptions. It highlights that many cyber threats involve traditional crime tactics rather than sophisticated hacking and emphasizes the importance of understanding real risks and building guardrails to protect against them.
  • Many perceived cyber threats use traditional crime tactics, not sophisticated hacking.
  • Outdated security measures are often ineffective against modern threats.
  • Focusing on preventing crime is often cheaper than dealing with sophisticated cyberattacks.
  • Building guardrails to protect against threats when individuals are not at their best is crucial.

Shownotes Transcript

Your host, Thomas Watkins, talks with the Workstream Owner of Simple Salt, Dylan Evans. Dylan clarifies the misconceptions between internet crime and internet security, emphasizing that many perceived cyber threats involve traditional crime tactics rather than sophisticated hacking. He critiques outdated security measures and stresses the importance of understanding real risks. Dylan discusses his work with high-trust professional services, offering a mix of free content, consulting, and software products to help businesses mitigate security risks.

Learn more about Dylan's work HERE).

Connect with Dylan on LinkedIn HERE).

Think you'd be a great guest on the show? Apply HERE).

Learn more about Thomas's work at 3Leaf HERE).