Playing Offense:
A Proactive Approach to
Cybersecurity
May 26, 2021 | MasterSnacks Webinar Series
Welcome &
Introduction
MICHAEL CAMACHO, CPA, CIA
Partner, Technology, Risk Advisory & Cybersecurity (TRAC) Practice
Citrin Cooperman
mcamacho@citrincooperman.com
401-742-0478
Welcome &
Introduction
KEVIN RICCI, CISM, CISA, CRISC, MCSE, QSA
Principal, Technology, Risk Advisory & Cybersecurity (TRAC) Practice
Citrin Cooperman
kricci@citrincooperman.com
401-421-4800
AGENDA
Real - Life Success Stor ies
01
Pr oactive Str ategies 02
Automated Tools 03
Questions? 04
Real Life Success Stories
• Managed SIEM to the Rescue
• No Phishing!
• Trust, but Verify!
• Phish Me Once, Shame on You! Phish me twice…
Proactive Strategies:
Cybersecurity Risk Assessments
• Key Elements of an Assessment
• Physical and Logical Security
• Compliance
• Third-Party Risk
• Resiliency
• Network Security
• Web and Social media
• Policies
• Training
Proactive Strategies:
Creating the Human Firewall
• Security Awareness Training
• Frequency
• Additional Training for Protecting Sensitive Data
• Spear Phishing Simulations
• Mitigating the Attack Vector of Choice
• What Is Being Tested
Proactive Strategies:
Response and Recovery
• Rapid Response Resource
• Incident Response and Disaster Recovery Plans
• Backups
• Viability testing
• Credential security
• Offsite backups
• Insurance
Automated Tools and Other Monitoring
Strategies
• Security Information and Event Management (SIEM)
o Software
o Managed SIEM Provider
• Data Loss Prevention (DLP) System
• Vulnerability Assessment
• Penetration Testing
CyberSecure
• No-cost incident response engagement letter
with terms, conditions and rates to expedite
incident response times
• 24/7/365 incident response team at your service
• Discount on standard rates if paired with a
SCORE Report, Penetration/Phishing Tests, or
vCISO Services
Questions?
MICHAEL CAMACHO, CPA, CIA
mcamacho@citrincooperman.com
401-742-0478
KEVIN RICCI, CISM, CISA, CRISC, MCSE, QSA
kricci@citrincooperman.com
401-421-4800
Thank You
F o r Wa t c h i n g & L i s t e n i n g
UPCOMING C-SUITE SNACKS WEBINAR:
NOT SOLD ON SELLING YOUR BUSINESS? WHY NOW IS A GOOD TIME TO
CONSIDER AN ESOP
June 3, 2021 | 12:00 PM ET/9:00 AM PT
Featuring: Howard Klein, Partner & Heather Oboda, Partner

MasterSnacks: Cybersecurity - Playing Offense: A Proactive Approach to Cybersecurity

  • 1.
    Playing Offense: A ProactiveApproach to Cybersecurity May 26, 2021 | MasterSnacks Webinar Series
  • 2.
    Welcome & Introduction MICHAEL CAMACHO,CPA, CIA Partner, Technology, Risk Advisory & Cybersecurity (TRAC) Practice Citrin Cooperman mcamacho@citrincooperman.com 401-742-0478
  • 3.
    Welcome & Introduction KEVIN RICCI,CISM, CISA, CRISC, MCSE, QSA Principal, Technology, Risk Advisory & Cybersecurity (TRAC) Practice Citrin Cooperman kricci@citrincooperman.com 401-421-4800
  • 4.
    AGENDA Real - LifeSuccess Stor ies 01 Pr oactive Str ategies 02 Automated Tools 03 Questions? 04
  • 5.
    Real Life SuccessStories • Managed SIEM to the Rescue • No Phishing! • Trust, but Verify! • Phish Me Once, Shame on You! Phish me twice…
  • 6.
    Proactive Strategies: Cybersecurity RiskAssessments • Key Elements of an Assessment • Physical and Logical Security • Compliance • Third-Party Risk • Resiliency • Network Security • Web and Social media • Policies • Training
  • 7.
    Proactive Strategies: Creating theHuman Firewall • Security Awareness Training • Frequency • Additional Training for Protecting Sensitive Data • Spear Phishing Simulations • Mitigating the Attack Vector of Choice • What Is Being Tested
  • 8.
    Proactive Strategies: Response andRecovery • Rapid Response Resource • Incident Response and Disaster Recovery Plans • Backups • Viability testing • Credential security • Offsite backups • Insurance
  • 9.
    Automated Tools andOther Monitoring Strategies • Security Information and Event Management (SIEM) o Software o Managed SIEM Provider • Data Loss Prevention (DLP) System • Vulnerability Assessment • Penetration Testing
  • 13.
    CyberSecure • No-cost incidentresponse engagement letter with terms, conditions and rates to expedite incident response times • 24/7/365 incident response team at your service • Discount on standard rates if paired with a SCORE Report, Penetration/Phishing Tests, or vCISO Services
  • 14.
    Questions? MICHAEL CAMACHO, CPA,CIA mcamacho@citrincooperman.com 401-742-0478 KEVIN RICCI, CISM, CISA, CRISC, MCSE, QSA kricci@citrincooperman.com 401-421-4800
  • 15.
    Thank You F or Wa t c h i n g & L i s t e n i n g UPCOMING C-SUITE SNACKS WEBINAR: NOT SOLD ON SELLING YOUR BUSINESS? WHY NOW IS A GOOD TIME TO CONSIDER AN ESOP June 3, 2021 | 12:00 PM ET/9:00 AM PT Featuring: Howard Klein, Partner & Heather Oboda, Partner