Ep. 297 - Security Awareness Series - Quantifying and Owning Risk with Roy Luongo

Ep. 297 - Security Awareness Series - Quantifying and Owning Risk with Roy Luongo

Author: Social-Engineer, LLC March 17, 2025 Duration: 34:34

Today on the Social-Engineer Podcast: The Security Awareness Series, Chris is joined by Roy Luongo. Roy is the Chief Information Security Officer for the United States Secret Service. He leads a team in the defense and information assurance of all USSS information systems and solutions. Prior to his current role he was the Director, Joint Mission Operations Center for Cyber Command, providing oversight of mission critical Cyber Operations infrastructures. He has also served as Chief, NSA Red Team and Technical Director for Interactive Operations for the NSA. Roy is a retired Army soldier with 20 years' service within the Intelligence and Cyber career fields. [March 17, 2025]

 

00:00 - Intro

00:17 - Intro Links:

-          Social-Engineer.com - http://www.social-engineer.com/

-          Managed Voice Phishing - https://www.social-engineer.com/services/vishing-service/

-          Managed Email Phishing - https://www.social-engineer.com/services/se-phishing-service/

-          Adversarial Simulations - https://www.social-engineer.com/services/social-engineering-penetration-test/

-          Social-Engineer channel on SLACK - https://social-engineering-hq.slack.com/ssb

-          CLUTCH - http://www.pro-rock.com/

-          innocentlivesfoundation.org - http://www.innocentlivesfoundation.org/                                               

01:55 - Roy Luongo Intro

02:44 - The Path to CISO of the Secret Service

04:58 - Cybersecurity in Early Education

07:50 - The Entry Level Catch-22

12:24 - Quantifying Risk

14:27 - The Best Way Forward

16:51 - The Effects and Future of AI

20:06 - Understanding Your Needs

22:11 - Advise to Young Roy

24:56 - The Cost of Training

29:01 - Mentors

-          Ed Skoudis

-          Brigadier General Brian D. Vile

-          Shawn Turskey

29:55 - Lollipop Moments

-          TEDxToronto - Drew Dudley "Leading with Lollipops"

31:33 - Book Recommendations

-          Cybersecurity Canon - Rick Howard

-          Kingpin - Kevin Poulsen

-          Turn the Ship Around! - L. David Marquet

33:49 - Wrap Up & Outro

-          www.social-engineer.com

-          www.innocentlivesfoundation.org


At its core, The Social-Engineer Podcast examines the most complex system in any security equation: people. Hosted by the team at Social-Engineer, LLC, this series digs into the psychology, communication patterns, and inherent vulnerabilities that shape human interaction. Each episode moves beyond dry technical analysis to explore real-world stories and expert conversations that reveal how social engineers operate-the subtle cues, the persuasive language, and the manipulation of trust that can lead to a security breach. You’ll hear discussions that sit at the fascinating intersection of behavioral science and modern technology, dissecting everything from phishing attempts and pretexting to the non-verbal tells that can give us away. This isn't just about warning against threats; it's a deep dive into understanding why we make the decisions we do, both online and off. By unpacking the mechanics of influence and connection, the podcast provides listeners with a clearer lens to see their own daily interactions, ultimately fostering a more critical and aware mindset. Tune in for a thought-provoking blend of research and practical insight that makes the art of human hacking both comprehensible and compelling.
Author: Language: English Episodes: 100

The Social-Engineer Podcast
Podcast Episodes
Ep. 282 - Human Element Series - Sell Like A Spy with Jeremy Hurewitz [not-audio_url] [/not-audio_url]

Duration: 29:59
Jeremy Hurewitz spent the first decade of his career overseas building the media association Project Syndicate while based out of Prague and Shanghai. He spearheaded a business development strategy that saw the associati…