Artwork

Content provided by SecurityMetrics. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by SecurityMetrics or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.
Player FM - Podcast App
Go offline with the Player FM app!

Responding to Hackers: Vulnerability Disclosures and Bug Bounties | SecurityMetrics Podcast 79

35:14
 
Share
 

Manage episode 382411890 series 2994176
Content provided by SecurityMetrics. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by SecurityMetrics or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.

Ethical hackers and cybercriminals are not the same thing, and it can be beneficial to establish a channel to communicate with hackers trying to alert you to vulnerabilities. Ilona Cohen, Chief Legal and Policy Officer at Hacker One, and Harley Geiger, Counsel at Venable LLP, sit down with Host and Principal Security Analyst Jen Stone (MCIS, CISSP, CISA, QSA) at the PCI Community Meeting North America to discuss:

  • Hackers vs. cybercriminals
  • Vulnerability disclosure policies (VDPs) vs. bug bounties
  • PCI DSS post-disclosure obligations

Hosted by Jen Stone, Principal Security Analyst (MCIS, CISSP, CISA, QSA)
Filmed at the 2023 PCI Community Meeting in Portland, Oregon.
[Disclaimer] Before implementing any policies or procedures you hear about on this or any other episodes, make sure to talk to your legal department, IT department, and any other department assisting with your data security and compliance efforts.

  continue reading

99 episodes

Artwork
iconShare
 
Manage episode 382411890 series 2994176
Content provided by SecurityMetrics. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by SecurityMetrics or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.

Ethical hackers and cybercriminals are not the same thing, and it can be beneficial to establish a channel to communicate with hackers trying to alert you to vulnerabilities. Ilona Cohen, Chief Legal and Policy Officer at Hacker One, and Harley Geiger, Counsel at Venable LLP, sit down with Host and Principal Security Analyst Jen Stone (MCIS, CISSP, CISA, QSA) at the PCI Community Meeting North America to discuss:

  • Hackers vs. cybercriminals
  • Vulnerability disclosure policies (VDPs) vs. bug bounties
  • PCI DSS post-disclosure obligations

Hosted by Jen Stone, Principal Security Analyst (MCIS, CISSP, CISA, QSA)
Filmed at the 2023 PCI Community Meeting in Portland, Oregon.
[Disclaimer] Before implementing any policies or procedures you hear about on this or any other episodes, make sure to talk to your legal department, IT department, and any other department assisting with your data security and compliance efforts.

  continue reading

99 episodes

All episodes

×
 
Loading …

Welcome to Player FM!

Player FM is scanning the web for high-quality podcasts for you to enjoy right now. It's the best podcast app and works on Android, iPhone, and the web. Signup to sync subscriptions across devices.

 

Quick Reference Guide