Bex Markwick

329 Followers
57 Following
394 Posts

Rider, Reader, Watcher of Things

Infosec Security Awareness
Enterprise Cybersecurity Awareness and Culture Lead at a BioTech

Pro Coach & Rider
Invisible Illness Advocate
Cats, Books, Cozy Nooks

Twitterhttps://twitter.com/BexMarkwick
WebsiteInfobex.co.uk
Those of you hitting security awareness training & culture - how do they respond to phishing reports that are real? As far as I know they aren't incident response. And how are they going to be able to triage reports? Again, they aren't threat detection or incident response. 🤔
Please note, respond here means 'deals with the report' so if it is a real phish or turns out to not be a real phish, both covered under responds. Also not a joke post 😂
What team triages and responds to phishing reports?
SOC
84.7%
Security Awareness Training & Culture
11.9%
BISO
3.4%
Poll ended at .

Come join my team and hang out with Angus!
Hiring for an e-learning specialist/developer to help us make engaging and effective training that people learn from and remember because it's fun (and actionable). Wonderful global team with excellent work life balance, good benefits and best of all, lots of Angus time.
If you're interested please apply and feel free to message with any questions you might have. Security experience a nice to have not a requirement, and an opportunity to be really creative.
https://insulet.wd5.myworkdayjobs.com/en-US/insuletcareers/job/GB---United-Kingdom/E-Learning-Specialist---Security--Remote-Flexible-_REQ-2024-8690

#learning #security #infosec #infobex #education #training

E-Learning Specialist - Security (Remote/Flexible)

Insulet started in 2000 with an idea and a mission to enable our customers to enjoy simplicity, freedom and healthier lives through the use of our Omnipod® product platform. In the last two decades we have improved the lives of hundreds of thousands of patients by using innovative technology that is wearable, waterproof, and lifestyle accommodating. We are looking for highly motivated, performance driven individuals to be a part of our expanding team. We do this by hiring amazing people guided by shared values who exceed customer expectations. Our continued success depends on it! Job Title: E-Learning Specialist (Security) Department: Security and Privacy Operations FLSA Status: Exempt Position Overview: The E-Learning Developer will report to the Global Security Training, Awareness and Culture Lead and will be involved in creating e-learning training to support the global security training and awareness programmes. Working closely with subject matter experts across the Security and Privacy Operations team, the E-Learning Developer will work to create engaging and interactive training using best practices for adult learning and education. The training and awareness programme is innovative and forward thinking, utilizing key concepts from behavioural science, education, coaching and engagement practices. With a focus on actionable training and a modular approach to learning, the E-Learning Developer will help to foster a culture of empowerment, collaboration, and effective positive learning. Responsibilities: Collaborate with subject matter experts to design and deliver engaging and effective e-learning modules. Collaborate with the Global Training team to ensure all e-learning creation is compatible with our LMS and training ethos. Ability to work with graphical assets to support training (Adobe suite). Create e-learning within the Articulate software suite. Support the delivery of the e-learning aspect of the Global Security Training and Awareness programmes. Create modular training that adheres to best practices for adult learning. Create interactive, gamified learning and testing modules. Manage e-learning development and delivery timelines. Understanding of translation requirements and the impact of this on e-learning design. Working with the Global Lead to develop supporting materials for trainings, both print and digital. Education and Experience: Minimum Requirements: 3 years of experience with e-learning development and design. Knowledge and ability with Articulate software. Knowledge and ability with Adobe suite. Experience with translation of training materials. Understanding of applied adult learning techniques, including modular learning. Strong communication and interpersonal skills. Ability to communicate ideas clearly and efficiently across technical and non-technical audiences, displays active listening skills, and communicates effectively and efficiently. Ability to prioritize multiple tasks and develop innovative solutions to meet project expectations without compromising good design. Must have strong ability to build trust and keep information confidential. Preferred Skills and Competencies: Experience in security and privacy is a benefit, but not a necessity. All training will have subject matter experts. Understanding strategic, short-term, and long-term training. Understanding of instructional design is beneficial. Understanding of behavioural science and outcome focused training is beneficial. Ability to create development and design plans and roadmaps. Strong ability to manage stakeholders across multiple business areas. Excellent organizational skills and the ability to follow projects to their conclusion. Ability to manage multiple ongoing projects. Strong problem solving and analytical skills. Willingness to pursue further industry certifications. Graphic design experience. Animation experience. Experience working with global teams. Experience collaborating with legal, privacy and compliance teams. Expertise in writing, presenting, discussing, and socializing topics with colleagues of various experience levels. Strong written and verbal communication skills, as well as the ability to work well with a diverse client base. Physical Requirements (if applicable): Up to 10% Global travel possible Please read our Privacy Notice to learn how Insulet handles your personal information when you apply for a vacancy with us here. Insulet Corporation is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. (Know Your Rights) Insulet employees are all focused on the same goal — to make a difference. Our relentless passion is to simplify life for people with diabetes. We excite and empower employees to bring their best selves to work through a culture that supports a healthy work and life balance. We set the bar high to meet customer needs, and our priority is to ensure our employees are equipped and supported to help us get there. We foster and celebrate curiosity, innovation, and learning. Our teams work collaboratively and are empowered to drive the best actions for our customers. Our innovation spirit and customer-centric focus position us as global pioneers — leading the way to improve health outcomes with revolutionary medical devices while breaking down barriers to access.

Hey friends! My talk from BSides Basingstoke is available to watch! https://infobex.co.uk/speaking/ go check it out. As always, calling the industry out to do better and with pretty graphics

#criticalthinking #infosec #infobex #education #pschologicalsafety #speaker #conference #bsides

Speaking

Conferences Rebecca speaks at conferences all over the world virtually and in person. Luckily, some of these are recorded and you can watch them here! If you’d like Rebecca to speak at your e…

InfoBex
@coleens_ yessss soon you shall come to love the front loaders!

So managers are starting to spew the whole "well I didn't do anything wrong, it affected everyone else, so we're not liable" bullshit.

Did you allow a third party vendor to have the highest privilege access to all of your systems AND let them run Remote Code Execution on your systems whenever they want?

You didn't have a test environment set up to test each update or patch that is applied to your systems before you push them to prod? No? Just let it auto-update?

Yeah, that "Risk Transference" didn't work so well as your GRC policy seemed to think it would, huh? I know they're a security company and they SHOULD have tested it, but they didn't, did they?

I know everyone else does it, but if everyone else jumped off a bridge, would you?

Just because everyone else fucked up, doesn't mean you didn't fuck up.

There's gonna be a lot of deep discussions in this post-mortem and hopefully orgs will change. Those that don't will just be hit again... and again... and again.

#crowdstrike

@deviantollam enjoy! Let me know what you think 😊
@coleens_ thanks so much! 💙
@hacks4pancakes I know @deviantollam and @coleens_ wanted a heads up when it went live 😊