The tables turn in this episode, as Steve becomes the guest on “Legal Owl,” a podcast by John “Jock" Brocas, the executive coach whom you might remember from one of our shows earlier this year. In this first part of two, Steve tells Jock about how he got into cyber in the first place, and the two discuss the evolution of the cyber landscape. They also dive into why law firms must begin to think more about cyber risk and resilience. 

Key Takeaways:

  1. Cyber has moved from an IT issue to a business issue.
  2. Senior staff must be aware of the risks of deepfake impersonations. 
  3. Your information is probably out there already, so focus on what to do when that information is used the wrong way. 
Tune in to hear more about:
  1. How law firms are impacted by today’s cyber risks (8:24)
  2. Deepfakes and reputational damage (12:42)
  3. Why you might want to make your business look unattractive (15:19)
Standout Quotes:
  1. “COVID was a real turning point, I think, for the industry, because suddenly, pretty much overnight, we had to move to an environment where we're protecting data that's not within the strict confines of the organization. So it'll be in people's homes, it was gonna be used by people where you had no control over it at all. And so we had to adapt as an industry to that, and I think that was actually very good for us.” - Steve Durbin
  2. “We're in an environment where you really do need to be exceptionally careful about how you manage your personal profile, how you manage personal data, how you really behave, I would say, online. And that, for some people, is quite a difficult one to get your head around.” - Steve Durbin
  3. “I think that the days of "I'm too small to get noticed" have pretty much gone now. If you're working in any way, shape, or form with data online, you're a potential target, and you have to adopt that mindset.” - Steve Durbin

Read the transcript of this episode
Subscribe to the ISF Podcast wherever you listen to podcasts
Connect with us on LinkedIn and Twitter

From the Information Security Forum, the leading authority on cyber, information security, and risk management.