Weekly information security podcast airing Monday mornings hosted by Oscar Minks and Brad Nigh. In a unique focus on protecting personal information, Oscar and Brad discuss information security as an issue that includes cyber security, physical security, as well as administrative controls. Oscar is the CTO of FRSecure and heads technical services and operations at the company. Brad is the Principal Security Consultant and a 20+ year veteran of the industry.
…
continue reading
InfoSec Missionaries Podcasts

1
Unsecurity Episode 247: Cloud Security Best Practices with Jim Nelson
35:16
35:16
Play later
Play later
Lists
Like
Liked
35:16In this episode of the Unsecurity Podcast, hosts Brad Nigh and Megan Larkins are joined by special guest Jim Nelson from FRSecure to dive deep into the world of cloud security. Whether you're using AWS, Azure, or GCP, understanding the right security protocols is crucial. Jim, a subject matter expert in cloud assessments, CIS benchmarks, and cloud …
…
continue reading

1
Unsecurity Episode 246: Practicing Policy
37:14
37:14
Play later
Play later
Lists
Like
Liked
37:14In this Friday edition of Unsecurity, Megan and Brad tackle Policy! They approach a topic commonly avoided with a consulting perspective, having real examples of policy benefits. Hear the full coversation, covering: - Standardizing programs, documentation, and access - The relationship between technology and policy development - Legal consideration…
…
continue reading

1
Unsecurity Episode 245: DEF CON Recap w/ Matt Dowd, Matt Findlay, Pinky Thompson
30:35
30:35
Play later
Play later
Lists
Like
Liked
30:35Returning from this year's DEF CON, hear from our Offensive Team Managers, Dowd and Findlay, and Pinky, IR Manager and co-host of The Hackle Box. Hear about new highlights, CTF's, and villages, and reflection from Brad as a Blue Team member navigating past challenges. Have something to say? Contact us at [email protected] and follow us for mo…
…
continue reading

1
Unsecurity Episode 244: Journey to Pen Testing w/ Morgan Trust
32:48
32:48
Play later
Play later
Lists
Like
Liked
32:48We're back! Pen Tester and Team Ambush member Morgan Trust walks us through his journey into the cybersecurity field. With a can-do approach, Morgan discusses how he has developed professionally, expanding his expertise across public speaking and competitive hacking. His presentation, "The New Era of Deception: AI, Deep Fakes, and The Dark Web" has…
…
continue reading

1
Unsecurity Episode 243: Cyber Counsel w/ Heidi Fessler
31:48
31:48
Play later
Play later
Lists
Like
Liked
31:48Attorney Heidi Fessler is this week's guest! Practicing law for 35 years and specializing in cybersecurity, Heidi walks us through the right time to engage legal, navigating incident response, distinctions between general and cyber counsel, and cyber law. Thoughts on Unsecurity? Contact us at [email protected] and follow us for more! LinkedIn…
…
continue reading

1
Unsecurity Episode 242: AI Evolution, Application, & The Future w/Jim Wilt
36:53
36:53
Play later
Play later
Lists
Like
Liked
36:53You hear it everywhere: the buzzing hot-topic, AI, lands on this week's episode with featured guest, Jim Wilt! Brad returns with Megan to hear from the AI Guy himself. With an introduction to AI in the 90s, Jim shares his expertise as a technologist and early adopter of the tool. Whether you have a place in tech, executive space, or creative, get k…
…
continue reading

1
Unsecurity Episode 241: Business Impact Analysis w/ FRSecure Consultants
33:12
33:12
Play later
Play later
Lists
Like
Liked
33:12How can you approach your company's leadership to advocate for best security practices? Megan dives into a BIA (Business Impact Analysis) breakdown with triple guest features from FRSecure's Consulting Team. Mea Yang, Coral Morgan, and Kathryn Frickstad-Olson recall client trumphs and challenges they have witnessed with implementing BIAs. Whether y…
…
continue reading

1
Unsecurity Episode 240: Mental Strength & Resilience in Cybersecurity w/ Cindra Kamphoff
36:43
36:43
Play later
Play later
Lists
Like
Liked
36:43Special guest & performance coach Dr. Cindra Kamphoff explores with Megan and Brad mental practices to thrive in demanding environments like IT and Cybersecurity fields.Through her work with companies like Verizon, the Minnesota Vikings, and Mayo Clinic, Cindra unpacks tools for resilience, confidence building, and facing setbacks. From the "Learn,…
…
continue reading

1
Unsecurity Episode 239: Meet the Mentor - CISSP w/ John Kennedy
30:35
30:35
Play later
Play later
Lists
Like
Liked
30:35We're back! It's time for a "Meet The Mentor" session with our newest CISSP Program Instructor, John Kennedy. From joining the Air Force to being an ISSM and a cybersecurity mentor, John transports us from his challenges in tech to now leading live sessions, the pressure of building slide decks, and why giving back is essential to him and the secur…
…
continue reading

1
Unsecurity Episode 238: Air Gapping w/ Sean Behan
33:11
33:11
Play later
Play later
Lists
Like
Liked
33:11This week on Unsecurity, Senior Offensive Security Engineer Sean Behan sits with Brad and Megan to dissect Air Gapping. Starting with the development of the Air Gap method, they discuss its evolution and the pros and cons of each type. Tune in for an engaging discussion on understanding systems operations, strengths, and weaknesses of air gapped ne…
…
continue reading

1
Unsecurity Episode 237: HERoic Hacks Recap w/ Melissa Kjendle
32:36
32:36
Play later
Play later
Lists
Like
Liked
32:36In this episode of the Unsecurity Podcast, hosts Brad Nigh and Megan Larkins are joined by Melissa Kjendle, Assessor Manager at FRSecure, to recap our recent HERoic Hacks event. Melissa spoke at the event, highlighting the significance of inclusive and diverse perspectives in cybersecurity—particularly focusing on the growing role of women in the f…
…
continue reading

1
Unsecurity Episode 236: FRSecure Team Reflections w/ Mike Kongsjord
42:50
42:50
Play later
Play later
Lists
Like
Liked
42:50In this episode of the Unsecurity Podcast, hosts Brad Nigh and Megan Larkins are joined by Melissa Kjendle, Assessor Manager at FRsecure, to recap our recent HERoic Hacks event. Melissa spoke at the event, highlighting the significance of inclusive and diverse perspectives in cybersecurity, particularly focusing on the growing role of women in the …
…
continue reading

1
Unsecurity Episode 235: CMMC Updates w/ Scott Singer & Ryan Abraham
38:05
38:05
Play later
Play later
Lists
Like
Liked
38:05With two guest features, Scott Singer from CyberNINES and FRSecure's own Security Information Consultant, Ryan Abraham, this week's episode focuses on CMMC's recent changes, enforcement, and compliance requirements. About FRSecure https://frsecure.com/ FRSecure is a mission-driven information security consultancy headquartered in Minneapolis, MN. O…
…
continue reading

1
Unsecurity Episode 234: HHS Cybersecurity Performance Goals w/ April Meyer
34:47
34:47
Play later
Play later
Lists
Like
Liked
34:47April Meyer, Information Security Consultant, shines light on the recent initiative of HHS Cybersecurity Performance Goals. *Note: This Unsecurity Episode was recorded in August 2024. CPGs are currently voluntary and it is expected that requirements be added through HIPAA in 2025. Read more about the HHS CPG's in our blog: HHS Cybersecurity Perform…
…
continue reading

1
Unsecurity Episode 233: HERoic Hacks - Women in InfoSec w/ Tonya Barnes
32:16
32:16
Play later
Play later
Lists
Like
Liked
32:16In this special Edition of Unsecurity, Key Account Manager Tonya Barnes speaks on the creation of HERoic Hacks, the infosec conference that empowers women in the field. About HERoic Hacks: Envisioned by Tonya, and supported by FRSecure, HERoic Hacks addresses the gap in representation by providing networking opportunities, expert speakers, and awar…
…
continue reading

1
Unsecurity Episode 232: Breachmas Recap with Mike "Pinky" Thompson
37:59
37:59
Play later
Play later
Lists
Like
Liked
37:59Join us in the new year as FRSecure's Incident Response Manager, Pinky Thompson, joins to recap Breachmas 2024. The group discusses LDAP, recent cyberattack trends, Evil Jinx, and more. Don't forget: The show is available in audio-only form wherever you listen to podcasts! Please send any questions, comments, or feedback to [email protected]…
…
continue reading

1
Unsecurity Episode 231: Security Predictions for 2025 with Evan Francen & Oscar Minks
37:48
37:48
Play later
Play later
Lists
Like
Liked
37:48Brad returns with Megan to talk 2025 predictions with former Unsecurity host Evan Francen and President of FRSecure, Oscar Minks. They discuss potential effects of new administration and AI. Don't forget: The show is available in audio-only form wherever you listen to podcasts! Please send any questions, comments, or feedback to unsecurity@protonma…
…
continue reading

1
Unsecurity Episode 230: What A CISO Wants for Christmas
37:58
37:58
Play later
Play later
Lists
Like
Liked
37:58In this special holiday-themed episode, Gary Berger, Director of Information Security for Ogletree Deakins Law Firm, joins Megan to go over what a CISO wants for Christmas. Don't forget: The show is available in audio-only form wherever you listen to podcasts! Please send any questions, comments, or feedback to [email protected]. About FRSe…
…
continue reading

1
Unsecurity Episode 229: API Security w/ Baljeet Malhotra & Nicole Salazar
43:52
43:52
Play later
Play later
Lists
Like
Liked
43:52This week, CEO, Nicole Salazar and Founder, Dr. Baljeet Malhotra of TeejLab join Megan and Brad to discuss all things Open Source and API Risk Management. Along with a brief review of Dr. Malhorta's background, the group discusses TeejLab's origins and discuss a new API workshop. About FRSecure https://frsecure.com/ FRSecure is a mission-driven inf…
…
continue reading

1
Unsecurity Episode 228: Recon InfoSec with Andrew Cook
34:06
34:06
Play later
Play later
Lists
Like
Liked
34:06This week, Unsecurity hosts are joined by CTO of Recon InfoSec, Andrew Cook. They discuss Andrew's journey into the InfoSec field and Recon InfoSec's approach and value. Don't forget: The show is available in audio-only form wherever you listen to podcasts! Please send any questions, comments, or feedback to [email protected]. About FRSecur…
…
continue reading

1
Unsecurity Episode 227: Executive Security Decisions with Vanae Pearson & Randy Kaedar
42:30
42:30
Play later
Play later
Lists
Like
Liked
42:30In this episode of the Unsecurity Podcast, FRSecure's CFO, Vanae Pearson, and Illumifin's Chief Security Officer, Randy Kaedar are guests. The group discusses how to prompt key decision makers and executive teams to make the most effective security decisions. Don't forget: The show is available in audio-only form wherever you listen to podcasts! Pl…
…
continue reading

1
Unsecurity Episode 226: Infosec Buy In with Victoria Fogarty
41:10
41:10
Play later
Play later
Lists
Like
Liked
41:10In this episode of the Unsecurity Podcast, Associate Penetration Tester Victoria Fogarty joins Megan and Brad to walk through how to buy in for InfoSec programs with an executive team. Don't forget:The show is available in audio-only form wherever you listen to podcasts! Please send any questions, comments, or feedback to [email protected].…
…
continue reading

1
Unsecurity Episode 225: Hacks & Hops Panel Discussion
36:36
36:36
Play later
Play later
Lists
Like
Liked
36:36Hosts of "Unsecurity" podcast, Megan Larkins and Brad Nigh, join Evan Francen and Michael Kennedy of "Sunsets and Snowdrifts" for a crossover panel. Find the event slides here: https://info.frsecure.com/hubfs/FRSecure_Hacks%20and%20Hops_Master%20Deck-1.pdf We look forward to seeing you next year! To stay updated about Hacks & Hops 2025, check our s…
…
continue reading

1
Unsecurity Episode 224: Key Takeaways from Blackhat, Bitsloth Exploits, Windows TCP IP Flaw
33:58
33:58
Play later
Play later
Lists
Like
Liked
33:58In this episode of the Unsecurity Podcast, Brad and Megan recap Blackhat. They also discuss a zero-click exploit involving a Windows TCP IP flaw and backdoor Bitsloth exploits. Don't forget: The show is available in audio-only form wherever you listen to podcasts! Please send any questions, comments, or feedback to [email protected]. About …
…
continue reading

1
Unsecurity Episode 223: Introducing a New Host and Breaking Down the Crowdstrike Saga
33:58
33:58
Play later
Play later
Lists
Like
Liked
33:58In this episode of the Unsecurity Podcast, Brad and Oscar are joined by a new host, FRSecure's Megan Larkins! Together, they discuss the recent CrowdStrike outage and its illustration of the importance of understanding your application inventory and dependencies—and the need for proper application allow listing and conditional access policies to pr…
…
continue reading

1
The Impact of an 'Always On' Mentality on Mental Health w/ Michael Kennedy
32:13
32:13
Play later
Play later
Lists
Like
Liked
32:13In this episode of the Unsecurity Podcast, the guys sit down with Michael Kennedy of Ostra to discuss burnout and share their personal experiences and strategies for preventing and managing work-related stress. Please send any questions, comments, or feedback to [email protected]. About FRSecure https://frsecure.com/ FRSecure is a mission-d…
…
continue reading

1
CISSP Certification and Becoming a Security Consultant w/ Brian Kelley
38:38
38:38
Play later
Play later
Lists
Like
Liked
38:38In this episode of the Unsecurity Podcast, Brad, and Oscar discuss the CISSP Mentorship Program with Brian Kelley now that this year's course has officially wrapped up, and touch on challenges and roadblocks for security professionals in the job market. 00:00 Intro 01:56 Ransomware and Security Best Practices 06:32 CISSP Mentorship Program and Lear…
…
continue reading

1
Incident Response Stories w/ Mike (Pinky) Thompson
39:07
39:07
Play later
Play later
Lists
Like
Liked
39:07In this episode of the Unsecurity Podcast, Brad, Oscar, and Pinky discuss recent news stories about IP and central manager flaws, as well as a vulnerability enrichment project by CISA. They also share an interesting incident response story involving internal domains and proxy auto-configuration files. Please send any questions, comments, or feedbac…
…
continue reading
In this episode of the Unsecurity Podcast, Brad interviews guest Ryan Cloutier as part of our Meet the Mentors series. They discuss the importance of the CISSP Mentor Program and the value of different perspectives in teaching. They also discuss the release of an exploit code for the Palo Alto Networks Zero Day vulnerability and the ethics of publi…
…
continue reading
Episode 218 of the Unsecurity Podcast is now live! This time, Brad is joined by Ron Woerner for another episode of our "Meet the Mentors" series introducing the 2024 CISSP Mentor Program instructors! Links & information: Find Ron on LinkedIn https://www.linkedin.com/in/ronwoerner/ Please send any questions, comments, or feedback to unsecurity@proto…
…
continue reading
Episode 217 of the Unsecurity Podcast is now live! This time, Brad is joined by Chris Foulon for the first episode in our "Meet the Mentors" series, introducing our 2024 CISSP Mentor Program instructors! Links & information: Chris's Podcast (Breaking Into Cybersecurity) https://podcasts.apple.com/us/podcast/breaking-into-cybersecurity/id1463136698 …
…
continue reading

1
Vulnerability Scanning V.S. Penetration Testing w/ Matt Dowd
35:12
35:12
Play later
Play later
Lists
Like
Liked
35:12Episode 216 of the Unsecurity Podcast is now live! This time, Oscar and Brad are joined by FRSecure's Matt Dowd to discuss the difference between vulnerability scanning and penetration testing. Links & information Cisco Critical Vulnerabilities https://www.securityweek.com/cisco-patches-critical-vulnerabilities-in-enterprise-communication-devices/ …
…
continue reading

1
ISACA Home Network Webinar Series w/ Dave Tuckman
32:13
32:13
Play later
Play later
Lists
Like
Liked
32:13Episode 215 of the Unsecurity Podcast is now live! This time, Brad is joined by FRSecure's Dave Tuckman to discuss an upcoming webinar series about securing home networks with ISACA and select FRSecure staff leading the sessions. Links & information ISACA home network webinar series: Session 1: 2/12 - Household Computer Safety, Using The Internet S…
…
continue reading

1
Breachmas Report w/ Mike (Pinky) Thompson
37:05
37:05
Play later
Play later
Lists
Like
Liked
37:05Episode 214 of the Unsecurity Podcast is now live! This time, Brad and Oscar sit down with FRSecure's Mike (Pinky) Thompson for a Breachmas report and some news from around the industry. News links Mandiant's X (Twitter) Account Hacked https://thehackernews.com/2024/01/mandiants-x-account-was-hacked-using.html CISCO Patch https://www.securityweek.c…
…
continue reading

1
Managing FRSecure's Culture w/ Amy MacElroy
33:32
33:32
Play later
Play later
Lists
Like
Liked
33:32Episode 213 of the Unsecurity Podcast is now live! This time, Brad and Oscar sit down with FRSecure's Amy MacElroy to discuss company culture and how she helps maintain it in her role as head of HR. Vulnerabilities Apache Struts https://www.securityweek.com/recent-apache-struts-2-vulnerability-in-attacker-crosshairs/ Microsoft Patch Tuesday https:/…
…
continue reading

1
Business Impact Analysis Starter Kit, CMMC
32:48
32:48
Play later
Play later
Lists
Like
Liked
32:48Episode 212 of the Unsecurity Podcast is now live! This time, Brad and Oscar sit down with FRSecure's Shawn Pollard to discuss our new free BIA starter kit, CMMC, and more. Water facilities report falling to hackers in separate breaches https://arstechnica.com/security/2023/11/2-municipal-water-facilities-report-falling-to-hackers-in-separate-breac…
…
continue reading

1
R&D and Defense Evasion w/ Eric Hanson and Seth Bowling
35:13
35:13
Play later
Play later
Lists
Like
Liked
35:13Episode 211 of the Unsecurity Podcast is now live! This time, Brad and Oscar sit down with FRSecure's Eric Hanson and Seth Bowling to discuss R&D and defensive evasion. Blackcat report company they breached to SEC https://www.bleepingcomputer.com/news/security/ransomware-gang-files-sec-complaint-over-victims-undisclosed-breach/ About FRSecure: http…
…
continue reading

1
Proofpoint 2023 Voice of the CISO w/ Megan Larkins
41:19
41:19
Play later
Play later
Lists
Like
Liked
41:19Episode 210 of the Unsecurity Podcast is now live! This time, Brad is joined by Megan Larkins to discuss her role as FRSecure's security consulting manager, as well as Proofpoint's 2023 Voice of the CISO report. Proofpoint's 2023 Voice of the CISO https://www.proofpoint.com/us/resources/white-papers/voice-of-the-ciso-report Give this episode a list…
…
continue reading
Episode 209 of the Unsecurity Podcast is now live! This time, Oscar and Brad welcome Evan back to the show to catch up on all his latest endeavors. Give this episode a listen and send any questions, comments, or feedback to [email protected] The InfoSec Mission
…
continue reading

1
Catching Up - DEFCON, Annual InfoSec Report, CISSP Mentor Program
31:39
31:39
Play later
Play later
Lists
Like
Liked
31:39Episode 208 of the Unsecurity Podcast is now live! This time, Oscar returns to the show and the guys get a chance to catch up on all the latest. Give this episode a listen and send any questions, comments, or feedback to [email protected] The InfoSec Mission
…
continue reading

1
Defcon 2023 Recap, Huntin' Ground, CloudNordic
31:58
31:58
Play later
Play later
Lists
Like
Liked
31:58Episode 207 of the Unsecurity Podcast is now live! This week, Brad and Pinky discuss Defcon 2023, Huntin' Ground, and the recent CloudNordic ransom case. CloudNordic says it can't, and won't, pay the ransom demand (article): https://www.theregister.com/2023/08/23/ransomware_wipes_cloudnordic/ Send any questions, comments, or feedback to unsecurity@…
…
continue reading

1
Adobe ColdFusion & Citrix NetScaler Vulnerabilities
29:16
29:16
Play later
Play later
Lists
Like
Liked
29:16This week, Oscar and Brad sit down to discuss Adobe ColdFusion & Citrix NetScaler Vulnerabilities. Give this episode a listen or watch and send any questions, comments, or feedback to [email protected] The InfoSec Mission
…
continue reading

1
Unsecurity/Hacklebox Crossover: MOVEit, Microsoft Patch Tuesday, and Fortinet Infinity
53:30
53:30
Play later
Play later
Lists
Like
Liked
53:30This month, we're doing a crossover episode with The Hackle Box! For those who are not yet aware, The Hacklebox is another FRSecure podcast focused on the technical end of current events and happenings within the security industry. It's hosted several times a month by FRSecure's Technical Services Team. Discussed this month: MOVEit Attacks Microsof…
…
continue reading

1
ChatGPT, Mobile Malware, Super Mario Malware
32:24
32:24
Play later
Play later
Lists
Like
Liked
32:24Episode 205 of the Unsecurity Podcast is now live! This week, Oscar and Brad sit down to discuss ChatGPT, mobile malware, and the recent Super Mario malware. Don't forget: The show is available in audio or video form wherever you get your podcasts! Give this episode a listen or watch and send any questions, comments, or feedback to unsecurity@proto…
…
continue reading

1
MOVEit, Fortinet, and Barracuda Vulnerabilities
29:05
29:05
Play later
Play later
Lists
Like
Liked
29:05Episode 204 of the Unsecurity Podcast is now live! This week, Oscar and Brad sit down to discuss the recent MOVEit, Fortinet, and Barracuda Vulnerabilities. Links: Fortigate/Fortinet Vulnerability https://projecthyphae.com/threat/the-fortigate-to-mordor-has-been-left-open/ Critical MOVEit Transfer Vulnerability https://projecthyphae.com/threat/hack…
…
continue reading
Episode 203 of the Unsecurity Podcast is live! This week, Oscar and Brad sit down to discuss 'malvertising' and 'malverposting'. Links: “Malverposting” — With Over 500K Estimated Infections... https://labs.guard.io/malverposting-with-over-500k-estimated-infections-facebook-ads-fuel-this-evolving-stealer-54b03d24b349 Give this episode a listen or wa…
…
continue reading

1
FBI Takedown of The Hive, Passwordless Technology
31:18
31:18
Play later
Play later
Lists
Like
Liked
31:18This week, Oscar and Brad sit down to discuss passwordless tech, and the FBI's recent move to take down The Hive, one of the world's most notorious ransomware gangs. FBI Takedown of The Hive https://therecord.media/hive-ransomware-decryptors-fbi-bryan-smith-interview-click-here Give this episode a listen and send any questions, comments, or feedbac…
…
continue reading

1
Used Network Equipment Resale - How to Protect Yourself
38:28
38:28
Play later
Play later
Lists
Like
Liked
38:28This week, Oscar and Brad sit down to discuss used network equipment resale, the risks posed to organizations, and how you can protect yourself. Give this episode a listen and send any questions, comments, or feedback to [email protected] The InfoSec Mission
…
continue reading

1
An Interview w/ the Creators of Hack Space Con - the Mission, Neurodiversity, and More!
38:16
38:16
Play later
Play later
Lists
Like
Liked
38:16This week, Oscar and Brad sit down with the creators of Hack Space Con to discuss the mission behind the conference, the unique venue, how the event came to be, and more! Links: https://www.hackspacecon.com/ Send any questions, comments, or feedback to [email protected]. Don't forget to like and subscribe!…
…
continue reading

1
New APT Compromise Strategy, Threat Actors Exploit 3-Year-Old Vulnerability
30:16
30:16
Play later
Play later
Lists
Like
Liked
30:16Episode 198 of the Unsecurity Podcast is now live! This week, Oscar and Brad discuss a new APT compromise strategy, a 3-year-old vulnerability exploited by multiple threat actors, and more. Links: 3-Year-Old Vulnerability Exploited by Multiple Hacking Groups https://thehackernews.com/2023/03/multiple-hacker-groups-exploit-3-year.html Adobe ColdFusi…
…
continue reading