Insights from advertising for security awareness professionals, with Matt Kasindorf.
Episode 55
January 22, 2024
Episode Outline:
Before I got involved in “information security” 20+ years ago, my formal education was in law, marketing and finance. My work experience was in business development, marketing, recruitment and even a stint in purchasing and supplies. The value of what we now call “skills diversity” was a blip on the horizon for many, if not most, of the security industry. Forward wind 20 years and wow has the world changed. Now as I scan industry digital chatter and meet security stakeholders face to face in board rooms and cafes, I regularly hear talk of the benefits of engaging people with skills and experience outside of the industries usual go to sources.
Marketing is one of those disciplines, where industry folks have often wondered whether we could learn a lesson when it comes to employee awareness, behaviour and culture. As someone who trained in marketing I am convinced! But, I’m not convinced just because in theory it makes sense, but because, as a marketer I have applied what I have learnt, and what I have experienced in marketing roles, to the challenge of influencing employee awareness and behaviour, and I’ve seen the results. However, the lessons from marketing aren’t just restricted to influencing a target audience, which is where almost all industry chatter is focused when exploring the potential role of marketing. Marketing, like information security, also requires good governance. Marketers might not call it governance though. Instead they might call this client account management. I believe that there are lessons for those responsible for security awareness and behaviour, if they are prepared to listen and then join up the dots.
Today’s guest comes from the world of marketing. Specifically, advertising. They’ve led teams of marketers at world class agencies and their professional reputation has now led to a role in industry institutions which are supporting the development of how the world of the marketer can support economic as well as social prosperity. In the interview we cover the relationship between the agency and the customer, the customer and the intended audience and how agencies have changed in response to the changing world they operate in.
©Copyright Marmalade Box Limited
The Security Functions Culture with Lianne Potter.
Culture & behaviour with Doctor Char Sample.
Insights from advertising for security awareness professionals, with Matt Kasindorf.
A HR view on Security Awareness, with Anne Benedict.
Embracing diverse skills, with Lana McGill.
The Science Behind Metrics, with Andrew Lewis.
Insights from educational psychology, learning and development.
Breaking the land speed record. Lessons for infosec awareness professionals, with Dr. Ben Evans.
Thoughts on Security Awareness in Brazil with Ceu Balzano.
Versace, Burberry and Lacoste. Lessons for infosec awareness professionals with Geraldine Michel
A perspective on internal communications role in employee awareness with Sue Dewhurst.
The human factor in the middle of a global breach with Andy Jones.
An interview with my co-authors of the Cybersecurity ABC’s book.
An ex regulators view on awareness, behaviour and culture with Richard Thomas.
What role training materials must play in building security aware-rich organisations?
What does it take for security teams to win in the cybersecurity fight?
How technology can be a CISO’s best friend in changing behaviour.
Re-thinking the Human Factor: Cyber Security Mini Series
A conversation with award-winning CISO, Andrew Rose
Know your cyber security risks, with Prudence Smith
Marketing strategy applied to cyber security, with Terry O’Reilly
Why we need to re-think the human factor in security, with Bruce Hallas
Taking risks to reduce risk, with Eric Ravello
Simplifying Cyber Security, with Neil Frost
The Accidental Security Specialist, with David Shipley
Designing learning experiences that stick, with Megan Sumeracki
Storytelling for better cybersecurity, with Sarah Moffat
Applying marginal gains, with Chris Fleming
What security professionals can learn from marketers, with Kenda MacDonald
Reducing Cyber Risk By Reducing Friction, with Jason Hoenich
Effective Leadership and Organisational Change, interview with John P. Kotter
What children’s books can teach us about changing behaviour, with Todd Courtney
How to develop a security culture, with Gert Jan Hofstede
Eliciting Intrinsic Motivation and Reframing Problems, with Rachel Lawes
Episodes Review with Nathan Mielke, Director of Information Technology & Cyber Security Manager
Using Humour to Raise Cyber Awareness, with Bennett Arron
Awareness, Behaviour, and Legal and Regulatory Requirements, with Jonathan Armstrong
How cultural values can be used in cybersecurity attacks, with Dr Char Sample
Episodes Review with Craig Thomson, Security Education & Awareness Manager
The Human Brain vs. Awareness, Behaviour and Culture
Evidence-Based Methodology to Improve Learning and Development
Decision making and behavioural change, with Susan Weinchenk
Episodes Review with Security Awareness Manager, Louise Cockburn
Creating Behavioural Change That Becomes A Part Of The Culture, with Sue Ee Wong
Episodes Review, with European CISO of the Year 2017, Ed Tucker
Semiotics and Cybersecurity, with Rachel Lawes
Behavioural Change in Cybersecurity, with Dan Ariely
How to connect with your audience, with Ben Afia
A CISO Perspective, with Geordie Stewart
Culture and Security, with Gert Jan Hofstede
How advances in technology have impacted people’s behaviour, with Ciaran McMahon
Why behavioural economics is relevant to education & awareness programs, with Robert Madelin
Crafting a Message with Impact, with John Pollack
Eliciting Positive Behavioural Change, with Heather Dahl and Chase Cunningham
How to improve policy messaging and implementation, with Gregory Michaelidis
Re-thinking the Human Factor podcast
Welcome to the ground breaking Re-thinking the Human Factor podcast. The show which introduced the information security industry to how advances in our understanding of human awareness, behaviour and culture could open the door to designing more effective programmes to manage human factor risks.