meta_pixel
Tapesearch Logo
Log in
CyberWire Daily

“Shift Left”: A case for threat-informed pentesting. [CyberWire-X]

CyberWire Daily

N2K Networks, Inc.

Technology, Daily News, News, Tech News

4.81.1K Ratings

🗓️ 5 February 2023

⏱️ 27 minutes

🧾️ Download transcript

Summary

Penetration testing is a vital part of a robust security program, but the traditional pentesting model is in a rut. Assessments happen infrequently, the scope is often very broad, and the report is usually overwhelming. What if you could increase the overall ROI of your pentesting program and avoid these limitations? Every penetration test should have specific goals. Coverage of the MITRE ATT&CK framework or the OWASP Top Ten is a great start, but a pentest could provide exponential value by applying a more strategic approach. In this episode of CyberWire-X, the CyberWire’s Rick Howard and Dave Bittner discuss what it means to "shift left" with your penetration testing by working on a threat-informed test plan with guests and Hash Table members Bob Turner, the Field CSO of Fortinet, Etay Maor, the Senior Director for Security Strategy at Cato Networks, and Dan DeCloss, the Founder and CEO of our episode sponsor PlexTrac.  Learn more about your ad choices. Visit megaphone.fm/adchoices

Transcript

Click on a timestamp to play from that location

0:00.0

You're listening to the CyberWire X, a series of specials where we highlight important security topics affecting security professionals worldwide.

0:28.0

I'm Rick Howard N2K's chief security officer and the CyberWire's chief analyst and senior fellow.

0:34.0

Today, Dave Bittner, the senior producer and host of many of the CyberWire's podcast,

0:38.8

will be joining me at the CyberWire

0:43.4

Hase Table to discuss the art and science of pin testing.

0:44.7

After the break, you'll first hear my conversation with Bob Turner,

0:48.0

the field CSO for Education at Fortinette, and E-Thy Moore,

0:51.9

the Senior Director of Security Strategy at Cato Networks, and then

0:55.8

Dave will talk with Dan Decloss, the founder and CEO of Plexstrapp.

1:00.1

Come right back. The Cyberwar is never ending. Plex Track, the proactive security management platform,

1:15.0

helps teams win the right battles by boosting efficiency and effectiveness

1:20.0

and cutting reporting time in half.

1:22.0

Plex Track clients report an average 20% time savings

1:26.0

and 30% increase in efficiency.

1:29.0

Flex-track streamlines and automates workflows

1:31.0

through the full cybersecurity life cycle.

1:34.0

Key integrations with popular tools means all your data can be easily aggregated in one place.

1:40.0

Robust analytics provide insight into security posture and inform prioritization, a library

1:46.2

of finding write-ups and custom templating facilitate efficient, consistent reporting.

1:51.6

Remediation tracking ensures measurable progress.

1:55.0

All in all, Plex Track provides a single source of truth for all stakeholders.

2:00.0

Plex Track and help your team aggregate your data, gain visibility into your security posture

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from N2K Networks, Inc., and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of N2K Networks, Inc. and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.