Skip to content

Cybersecurity Insights with Contrast CISO David Lindner | 10/11/24

    
Cybersecurity Insights with Contrast CISO David Lindner | 10/11/24

Insight #1: CISOs, you need insurance coverage

According to German multinational insurance company Munich Re, the global cyber insurance market is expected to rise from $14 billion to $29 billion by 2027. CISOs will increasingly need to "tell their story" to make sure they are properly insured, as most policies are stand-alone and not carte blanche.

 

Insight #2: The public can't/won't/shouldn't need to protect themselves from cyber threats

According to the latest "Consumer Cyber Readiness Report" from Consumer Reports (PDF), the general public knows there are online threats, yet their behaviors haven't changed. This all comes full circle: I believe, and will always believe, that it is not up to consumers to protect themselves from online threats. Rather, the onus is on the providers to do so: e.g., require multifactor authentication (MFA) for all accounts, as a starting point.

 

Insight #3: We should review security policies more often

How often are you reviewing your security policies? I would say the general consensus is to do it annually, but with the way the legal world is coming down on businesses that have had a breach, as well as the ever-changing threat landscape, should we be reviewing these more frequently?

David Lindner, Chief Information Security Officer

David Lindner, Chief Information Security Officer

David is an experienced application security professional with over 20 years in cybersecurity. In addition to serving as the chief information security officer, David leads the Contrast Labs team that is focused on analyzing threat intelligence to help enterprise clients develop more proactive approaches to their application security programs. Throughout his career, David has worked within multiple disciplines in the security field—from application development, to network architecture design and support, to IT security and consulting, to security training, to application security. Over the past decade, David has specialized in all things related to mobile applications and securing them. He has worked with many clients across industry sectors, including financial, government, automobile, healthcare, and retail. David is an active participant in numerous bug bounty programs.