About (Edit profile)

This author has not yet filled in any details.
So far has created 1829 blog entries.

Partner Summit 2023 – Powering up for Profitability and Growth in EMEA! Jose van Dijk on October 12, 2023 at 3:00 pm

Last year’s Cisco Partner Summit was fantastic, and I really enjoyed presenting about how my team is driving improvements in the way Cisco and our Partners work together. Now to this year, and to say … Read more on Cisco Blogs

Last year’s Cisco Partner Summit was fantastic, and I really enjoyed presenting about how my team is driving improvements in the way Cisco and our Partners work together. Now to this year, and to say I am excited for my first Partner Summit as leader of the Cisco EMEA Partner organisation is an understatement. I cannot wait to meet with the Cisco EMEA leadership team and our amazing EMEA partners on a subject I am passionate about – how we are most definitely Greater Together!

Join me, Oliver Tuszik, our EMEA President and our EMEA theatre leaders David Meads, Uwe Peter, Gordon Thomson, Reem Asaad, Niklas Andersson and Agostino Santoni plus our special guest Tom Gillis, GM of the Cisco Security Business Group for our EMEA Partner Summit session.

In an action-packed 45 minutes, we’ll explore how we, together with our partners, are Powering Up for Profitability and Growth in EMEA, including:

The latest and greatest on security – how Cisco is leveraging AI to automate not just defence motions but also rapid recovery in the event of a breach. And how, together we are bringing an unrivalled security offering to our customers that keeps them safe from the threats of today, but also tomorrow.
Sustainability – not only about purpose, but about profit. AI will generate even greater volumes of data which, without an effective strategy in place will rapidly rack up costs in both monetary and environmental terms. Hear how green data centers can offer both a solution and a joint opportunity.
Routes to market continue to evolve and our customers expect us to meet us where they are – wherever that is! Our panel discussion will explore the latest trends across the EMEA region and the greatest opportunities we can maximise together.

Joining us in Miami? Can’t wait to see you there!
Not joining us in Miami? Register NOW for the live digital broadcast – you won’t want to miss this.

Register for the Cisco Partner Summit Live Digital Broadcast

We’d love to hear what you think. Ask a Question, Comment Below, and Stay Connected with #CiscoPartners on social!

Cisco Partners Facebook    @CiscoPartners Twitter  

By |2023-10-13T00:18:44+00:00October 13, 2023|Cisco: Learning|0 Comments

The New Normal: How XDR is Tackling Social Engineering in Today’s World Javier Inclan on October 11, 2023 at 12:00 pm

In recent years, social engineering attacks have become increasingly prevalent and sophisticated. These attacks use psychological and pressure manipulation to trick individuals into divulging… Read more on Cisco Blogs

In recent years, social engineering attacks have become increasingly prevalent and sophisticated. These attacks use psychological and pressure manipulation to trick individuals into divulging sensitive information or performing actions that benefit the attacker.

One example is phishing, where attackers send emails or messages that appear to be from a legitimate source, such as a bank or social media platform, and ask for login credentials or personal information. During 2023 two of the top 5 social engineering attacks reported by ISC2 were Callback and Deepfake phishing. Another example is where attackers impersonate someone else, such as an IT technician or a company executive, to gain access to sensitive data. In 2020, the COVID-19 pandemic was exploited by attackers using social engineering tactics, such as posing as healthcare organizations or government agencies to trick individuals into downloading malware or providing personal information.

These attacks can be devastating, resulting in data breaches, financial losses, and reputational damage. Social engineering should be part of any organization’s policies and procedures and a key area for user education as stated under this Cisco Talos threat analysis blog.

With the rise of XDR (Extended Detection and Response) technology, organizations can now better protect themselves against social engineering attacks. XDR solutions are becoming a fundamental part of a comprehensive security strategy that integrates multiple security technologies into a single platform providing real-time detection and response capabilities across emails, endpoints, networks and cloud environments.

In 2023, Cisco introduced a state-of-the-art XDR solution that leverages advanced analytics and machine learning algorithms enriched by Cisco Talos Threat Intelligence to identify and respond to threats quickly and efficiently. By using Cisco XDR, organizations can gain visibility into their entire attack surface and detect threats that may have gone unnoticed otherwise.

So, how does an effective XDR solution help against social engineering attacks? Let’s look at some of the ways Cisco XDR can be used to defend against these attacks:

1. Email Security

Email is one of the most common vectors for social engineering attacks. Attackers use phishing emails to trick users into clicking on malicious links or downloading malware. Cisco XDR leverages telemetry from native email security controls, such as Cisco Email Threat Defense, to monitor email traffic and identify suspicious emails. It can also block emails from known malicious senders or those containing suspicious attachments, stopping nefarious deceptive attempts to prevent phishing attacks, business email compromise, malware and ransomware at early stages.

2. Endpoint Protection

Endpoints are often the first line of defense against social engineering attacks. Cisco XDR can leverage telemetry from a variety of leading EDR solutions such as Cisco Secure Endpoint. Endpoint context is an essential piece for investigations on attacks originated from social engineering techniques such as investigation on files, processes and observed anomalous behaviors. With this essential telemetry, Cisco XDR promotes detected alerts to high-fidelity incidents using correlation of telemetry. This is essential for taking response steps (one click or fully automated) to mitigate, contain, eradicate, or recover from an attack.

3. Network Security

Social engineering attacks often involve network-based tactics such as man-in-the-middle attacks or DNS spoofing. Cisco XDR leverages telemetry from NDR security controls such as Cisco Secure Network Analytics to monitor network traffic and detect any suspicious activity. Keeping this mission in focus, Cisco XDR provides enriched threat detection with agentless behavioral and anomaly detection capabilities and unique network device context to stop unauthorized access attempts and prevent stealthy data exfiltration behaviors.

4. Cloud Security

Cloud environments are becoming increasingly popular targets for social engineering attacks. Cisco XDR can be integrated with leading public cloud providers to gather network metadata from flow logs, proprietary logs, and APIs providing a powerful source for entity modeling. Using this approach, Cisco XDR builds a model of normal activity from observed behaviors and uses this model to spot changes in behavior that may be due to misuse, malware, or compromise as seen during successful social engineering attacks.

5. Incident Response

Despite the best efforts of security teams, social engineering attacks can still occur. As social engineering attacks continue to evolve, XDR solutions are becoming an increasingly important ally for organizations looking to defend against these threats.

Cisco XDR can help organizations respond to incidents quickly and efficiently. It can provide close to real-time alerts and automate incident response workflows. This can help reduce the impact of an attack and minimize the time it takes to remediate the issue.

In summary, social engineering attacks are rising and posing a serious threat to organizations of all sizes. However, by using Cisco XDR, organizations can better protect themselves against these attacks.

As we previously covered in my previous blog, Cisco XDR provides comprehensive security capabilities across emails, endpoints, networks, and cloud environments. Cisco XDR detects threats quickly and efficiently, helping SOC teams to respond to incidents in real-time, reducing the risk posed by socially engineered attacks!

Learn more:

Mastering the Hunt: Five Ways XDR Enhances Threat Hunting Strategies
Cisco XDR: Security Operations Simplified eBook
5 Ways to Experience XDR
An XDR Primer: The Promise of Simplifying Security Operations

We’d love to hear what you think. Ask a Question, Comment Below, and Stay Connected with Cisco Secure on social!

Cisco Secure Social Channels

InstagramFacebookTwitterLinkedIn

Share

  Learn how the rise of XDR technology has allowed organizations to better defend themselves against social engineering attacks.  Read More Cisco Blogs 

By |2023-10-11T22:55:04+00:00October 11, 2023|Cisco: Learning|0 Comments

Cisco Black Belt Partner Listening Program: Pioneering Success through Partner Engagement Ritul Shukla on October 11, 2023 at 7:00 pm

The Cisco Black Belt Partner Listening Program is a testament to Cisco Black Belt Academy’s unwavering commitment to partner experience and satisfaction. This innovative initiative has not only… Read more on Cisco Blogs

The Cisco Black Belt Partner Listening Program is a testament to Cisco Black Belt Academy’s unwavering commitment to partner experience and satisfaction. This innovative initiative has not only revolutionized the way the Academy engages with its partners but has also become a resounding success story worth sharing. Let’s delve into what this program is, how it is executed, and why it has achieved immense success.

What Is the Cisco Black Belt Partner Listening Program?

The Cisco Black Belt Partner Listening Program is a comprehensive initiative designed to foster a deeper understanding of partner needs and preferences within the dynamic technology industry. It represents a holistic approach that recognizes the interdependent relationship between Cisco Black Belt Academy and its learners. In an industry characterized by rapid changes and evolving market dynamics, this program prioritizes the vital task of staying relevant by actively listening to partners.

How does it Operate?

The Cisco Black Belt Partner Listening Program, initiated in FY22 Q4 through targeted surveys, has become one of the driving forces behind Cisco Black Belt Academy’s success. The feedback received has led to actionable tasks incorporated into Cisco Black Belt’s Annual Refreshes. Its huge success in Phase 1 has prompted ongoing implementation in subsequent quarters, with Phase 3 introducing exciting developments based on partner responses, setting the stage for an impactful FY24 Annual Refresh.

The invaluable feedback gathered through this initiative drives platform improvements and course enhancements, exemplifying a commitment to learner-centric delivery. This real-time feedback loop ensures that partner voices are not just heard but acted upon, solidifying trust and collaboration.

How It Became a Huge Success?

Cisco Black Belt Academy stands apart by aligning its curriculum orientation with partner desires. By actively involving partners in the development process, the academy ensures that its offerings are precisely tailored to meet partner needs.

The program’s proactive approach to partner engagement fosters a sense of partnership rather than a transactional relationship. Partners are no longer passive consumers but active contributors to course refinement and platform development.

By dedicating themselves to continuous learning from partners, Cisco Black Belt Academy demonstrates a commitment to improvement. This willingness to evolve and adapt has made partners feel valued and heard.

The program’s tangible outcomes, such as platform improvements and revamped courses, reflect Cisco Black Belt Academy’s responsiveness to partner input. Partners can see their suggestions being put into action, enhancing their overall experience.

In conclusion, the Cisco Black Belt Partner Listening Program isn’t merely a program; it’s a compelling narrative of triumph and growth. By embracing a customer-centric approach, engaging partners proactively, and demonstrating a commitment to continuous learning, Cisco Black Belt Academy has set a benchmark for partner experience among the other Partner Enablement initiatives. Partners are not only learners but valued collaborators, contributing to the academy’s growth and success.

Visit the Cisco Black Belt Academy today!

We’d love to hear what you think. Ask a Question, Comment Below, and Stay Connected with #CiscoPartners on social!

Cisco Partners Facebook    Cisco Partners LinkedIn

Share

  The Cisco Black Belt Partner Listening Program is a comprehensive initiative designed to foster a deeper understanding of partner needs and preferences within the dynamic technology industry. It represents a holistic approach that recognizes the interdependent relationship between Cisco Black Belt Academy and its learners.  Read More Cisco Blogs 

By |2023-10-11T22:55:03+00:00October 11, 2023|Cisco: Learning|0 Comments

Stay Focused – Don’t Be Distracted by Bright, Shiny Objects Anthony Grieco on October 10, 2023 at 12:00 pm

This year marks the 30th anniversary of National Cyber Security Awareness Month (NCSAM). You remember that phrase…the more things change, the more they stay the same?

While much has changed over the l… Read more on Cisco Blogs

This year marks the 30th anniversary of National Cyber Security Awareness Month (NCSAM). You remember that phrase…the more things change, the more they stay the same?

While much has changed over the last 30 years, some things remain true.

Cybercriminals, known for being highly opportunistic, are a mainstay in the threat space.
Throwing the newest bright shiny objects at a problem is not a cybersecurity strategy.

This year, I had the opportunity to meet with Cisco customers, government officials, and providers of critical infrastructure across the United States, Europe, and Asia. Naturally, there are cultural and regulatory expectations that make each unique. More interesting, is how much the cybersecurity world is struggling with the same pressure and too many voices.

Much of this noise is coming from technology vendors pushing the newest innovations without a clear strategy to solve our toughest challenges. This strategy of adding bespoke tools – new bright, shiny objects – to address point problems can quickly break down without an integrated architecture and larger strategy at play.

It may not be provocative, but regardless of what is being written in the press about the latest ‘bright shiny’ things (AI anyone?), as an industry, we still have fundamental, foundational gaps we absolutely must solve.

Developing a cybersecurity culture 

A huge part of addressing risk and building resilience starts by developing a strong security culture amongst your employees. Cybersecurity truly is everyone’s job. You simply cannot grow a strong security culture without transparency, from internal stakeholders to third-party suppliers. I’m excited to see many small startup technology companies embed security at their core from the beginning. However, unless you are starting fresh, this is an unsolved challenge.  At Cisco, we are pushing ourselves to be “bumper sticker” clear with our stakeholders. Invest the time to discuss and clearly communicate the impact of threats or vulnerabilities that can permeate risk across your company and ecosystem. Create a space where it is accepted to have difficult conversations about risk and security gaps transparently, this can open a door to collaborative problem solving. Finally, make sure the owners of the systems, assets, applications, and/or data understand their role – they own the risk!

Investing in the foundations

While everything cloud may grab headlines and may make a strong argument for security, very few organizations are cloud only. A hybrid cloud strategy, zero-trust approach, and a modern network helps lay the foundation for effective security. In nearly every risk-based assessment I’ve seen, the ability to have visibility and control from the network remains the critical risk control point. The network connects the data, applications, and services within any organization so that it can deliver goods and services to end customers. Overlooked and poorly maintained network gear can be the most appealing targets for an adversary. We have been sounding the alarm on the importance of updating and maintaining network infrastructure for years. This situation can no longer be ignored.

Treating cybersecurity as a team sport

No one should be doing this alone. Resilience is born and built in communities. When I’ve run into hard times, I reach out to one of my peers. In return, I encourage them to do the same. It’s no secret that security resources (time, talent, technology) are all scarce and in competition with other business imperatives, like developing products. As a cybersecurity community, we must anchor ourselves in in real-world evidence about what really works to improve security, and that starts with cooperative, candid, collaborative dialogue. We can and must explore with passion and energy on important topics like Software Bill of Materials and AI, but we need to be honest about what problems they are solving today, what they might solve in the future and clearly distinguish between the two. By having real conversations about risk, we can help each other bolster and mature our security cultures. And that makes us all more resilient.

Cisco has been building systems that remain critical for communications for over 30 years. We continue to push the boundaries on what ‘good security’ looks like. We’ve come a long way and have learned a few things along the journey. It is our duty and honor to share what we’ve learned.

If you need us, please reach out.

For more information on Cisco’s 30-year journey and commitment to security and trust, visit our Trust Center.

We’d love to hear what you think. Ask a Question, Comment Below, and Stay Connected with Cisco Secure on social!

Cisco Secure Social Channels

InstagramFacebookTwitterLinkedIn

Share

  This year marks the 30th anniversary of National Cyber Security Awareness Month. While much has changed over the last 30 years, some things remain true.  Read More Cisco Blogs 

By |2023-10-10T21:57:51+00:00October 10, 2023|Cisco: Learning|0 Comments

Choosing a Cisco partner with the expertise you need Marc Surplus on October 6, 2023 at 3:00 pm

Selecting the right partner is critical to ensure you achieve your desired business outcomes. The Cisco partner ecosystem includes an array of partners with unique capabilities to support all of your… Read more on Cisco Blogs

Selecting the right partner is critical to ensure you achieve your desired business outcomes. The Cisco partner ecosystem includes an array of partners with unique capabilities to support all of your business needs. We understand that not all customers are looking for the same level of support or expertise, so the Cisco Partner Program is designed in a way to provide you with choice when selecting the right partner or partners.

Achieving business outcomes

In my previous blog, I outlined the different roles Cisco partners most often play with customers and what role best fits the experience and outcomes you are expecting. The role a partner plays is complemented by the skills they possess to address your business challenges. Some partners have great breadth of experience across many solutions while others are focused on being the best in a very specific solution or technology domain. Cisco offers a suite of specializations that validate our partners proven knowledge and experience in areas across business practices, customer solutions, and product families.

For example, are you looking for a partner who can drive utilization of application and infrastructure investments to achieve a business outcome? If so, you’ll want to work with one of our partners who has the Customer Experience specialization. These partners will help you garner the most value from your technology investments with on-going management, support, and data-driven insights.

Are your needs more functionally focused, like implementing a solution that helps you monitor the health and performance of your digital environment. If so, you’ll want to choose a partner with the Full-Stack Observability (FSO) Specialization.

Further, if you need to ensure you have security controls across your entire wide area network or multi-cloud with monitoring and visibility capabilities, you will want a partner with expertise in secure access service edge (SASE), so select one of our partners with the SASE specialization.

Confidence through high standards

Cisco’s partner program has always been grounded in the value our partners deliver to customers. Achieving a Cisco specialization means a partner has met rigorous requirements and demonstrated deep expertise in a specific focus area. And the standards are same across the globe. A partner who is Hybrid Cloud Computing specialized in France, met the exact same requirements as a partner who holds the Hybrid Cloud Computing specialization in Australia, Mexico, or South Africa.

Our partners are the best in the industry because we set a high bar for our program standards. We don’t give our specializations away – our partners earn them.

Get connected with a Cisco partner today

So, how do you find a partner with the expertise you need? Check out our new Partner Connect page which allows you to search for partners based on region, roles and capabilities and specializations.

Find a Cisco Partner

We’d love to hear what you think. Ask a Question, Comment Below, and Stay Connected with #CiscoPartners on social!

Cisco Partners Facebook    Cisco Partners LinkedIn

Share

  We understand that not all customers are looking for the same level of support or expertise, so the Cisco Partner Program is designed in a way to provide you with choice when selecting the right partner or partners.  Read More Cisco Blogs 

By |2023-10-06T17:50:31+00:00October 6, 2023|Cisco: Learning|0 Comments

More than an Asset: The People Side of Mergers & Acquisitions Jason Button on October 6, 2023 at 12:00 pm

Jason Button is a director at Cisco and leads the company’s Security and Trust Mergers and Acquisitions (M&A) team. He was formerly the director of IT at Duo Security, a company Cisco acquired in 2… Read more on Cisco Blogs

Jason Button is a director at Cisco and leads the company’s Security and Trust Mergers and Acquisitions (M&A) team. He was formerly the director of IT at Duo Security, a company Cisco acquired in 2018, making him uniquely positioned to lend his expertise to the M&A process. This blog is the continuation of a series focused on M&A cybersecurity listed at the end of this post. 

With the recent wave of Cisco acquisition announcements — ten this year alone — I am often asked about my experience first-hand, having been part of the Duo Security acquisition in 2018. What I have learned during that time has certainly helped to inform our M&A cybersecurity strategy, including the importance of taking a people-centric approach to integrating new companies into Cisco.

People: The Critical Asset in Mergers & Acquisitions

While my team’s primary role is managing risk in the M&A process, it’s not just about cybersecurity — it’s about the flight risk of people. One of the most important aspects of acquiring and integrating companies into Cisco is setting clear expectations so everyone understands their role and the resources available to support them.

Transparently communicating throughout the M&A process helps to build trust, smooth the transition, and reduce the risk of people leaving because they don’t feel valued or heard. The more you can do upfront to help prepare, partner, and support teams coming into your company will help reduce workforce attrition significantly.

Culture Eats Strategy for Breakfast

As Peter Drucker was once famously quoted, “No matter how great your business strategy is, your plan will fail without a company culture that encourages people to implement it.” Cisco doesn’t just acquire companies for their intellectual property and technology; it invests in human capital and the opportunity to enrich company culture. The Duo acquisition played a pivotal role in helping to transform both Cisco’s culture and security strategy.

While Duo was well known for its agile approach to security innovation, it was also very respected for its workplace diversity and inclusive culture. Cisco leadership soon recognized Duo’s Diversity, Equity, and Inclusion ethos and began adopting practices, prioritizing diverse hiring and promotions, and implementing programs that continue to infuse Cisco’s culture today. When Duo was acquired in 2018, Cisco ranked #48 on the Fortune 100 Best Places to Work list. In 2019 the company rocketed to #6 and has been named #1 for the last three years in a row. While not 100% attributed to the Duo acquisition, it underscores culture’s importance in the M&A process.

The Duo acquisition also influenced Cisco’s transformational journey to become a leading global security company. Duo Multi-factor Authentication (MFA) technology continues to be an essential asset in Cisco’s Zero Trust security strategy and portfolio, helping to safeguard its own enterprise and our customers worldwide.

Relationships Build Trust

Before Cisco acquired Duo, we were proud of our start-up culture and felt energized by the David vs. Goliath dynamic when competing for business. Whether you’re a start-up or an established brand in the industry, being acquired can be equally exciting and scary. While many employees may be energized about the potential financial upside of the transaction and the opportunity to work at Cisco, others may feel a sense of loss. The fact of the matter is what often draws someone to be part of a startup may not be fulfilled when working for a large global enterprise.

I impress upon our team the importance of leading empathetically and adopting a mindset of evolution versus revolution as individuals are being integrated into Cisco’s culture and corporate environment. People need to feel like they can trust both you and the process. Policies and integration frameworks are important but building open and trusted relations is essential to overall success and productivity after an acquisition.

Effective Strategies to Retain Talent

While every acquisition has its own unique characteristics, there are some key tenets that my team tries to apply to ensure a smooth transition, retain talent, and maintain respect:

Prepare and support incoming teams so they can quickly integrate into the business and be productive
Recognize and regard the value of an individual’s institutional knowledge that goes beyond the intellectual property being acquired
Invest in role mapping, so incoming employees have a clear understanding of where they fit in an organization and their opportunities for professional advancement
Ensure employees whose roles may be eliminated are respectfully treated and fully supported through outplacement services

In my next blog post, I will revisit the topic of Moving Left to Right: Cybersecurity Practices and Outcomes in M&A Due Diligence, and what we have learned since this report was published last year with the University of California Berkeley’s Center for Long-Term Cybersecurity.

Mergers and Acquisitions Cyber Risk Management

Cybersecurity Awareness Month

Related Blogs

Managing Cybersecurity Risk in M&A

Demonstrating Trust and Transparency in Mergers and Acquisitions

When It Comes to M&A, Security Is a Journey

Making Merger and Acquisition Cybersecurity More Manageable

Ensuring Security in M&A: An Evolution, Not Revolution

We’d love to hear what you think. Ask a Question, Comment Below, and Stay Connected with Cisco Secure on social!

Cisco Secure Social Channels

InstagramFacebookTwitterLinkedIn

Share

  Thinking beyond the business case, why people are the critical asset in mergers and acquisitions.  Read More Cisco Blogs 

By |2023-10-06T17:50:31+00:00October 6, 2023|Cisco: Learning|0 Comments
Go to Top