After a breach, you either pay the fine, or fight the regulator and lose. There's a third path. It comes down to one word: reasonable. A method called DoCRA turns that question into something a court can use. DoCRA is short for Duty of Care Risk Analysis. Our guest Chris Cronin of HALOCK Security Labs helped build it. Now it's in standards and law. And it shaped a real case where a breached company spent its money on cybersecurity, not fines. Your hosts are Kip Boyle, CISO with Cyber Risk Opportunities, and Jake Bernstein, Partner with K&L Gates.


LinkedIn: https://www.linkedin.com/in/chris-cronin-351416/


"Fire Doesn't Innovate" by Kip Boyle:

https://a.co/d/0bYatohy


Learn more about DoCRA: https://docra.org


Podden och tillhörande omslagsbild på den här sidan tillhör Kip Boyle. Innehållet i podden är skapat av Kip Boyle och inte av, eller tillsammans med, Poddtoppen.