logo
episode-header-image
Feb 2024
1h 7m

#94 - Melanie Rieback // Co-founder & CE...

Tobias Schlottke - alphalist CTO Podcast
About this episode
Cybersecurity for CTOs in 2024

Let’s hack cybersecurity in 2024 with Melanie Rieback, Co-founder & CEO of Radically Open Security, the world’s first not-for-profit cybersecurity consultancy with a focus on PenTesting🔏. Melanie is on a mission to fix cybersecurity consulting by putting people before profits and empowering internal teams “how to fish” 🎣. Tune in to hear about the current cybersecurity landscape from the person who not only authored a viral RFID paper (“Is Your Cat Infected with a Computer Virus?”), but also PenTested Tor, Homebrew and Greenpeace. Listen to find out:

  • What is the business model💸 behind Post Growth Entrepreneurship (90% of profits go towards Open Internet Initiatives via NLNet)
  • What to prioritise 🕵️‍♀️ in realistic internal IT policies (passwords, backups, updates..)
  • Internal vs. External Security Teams
  • Why she uses “Forgot My Password” as a “magic link” to access infrequent sites (and doesn’t remember the password on purpose)

BROUGHT TO YOU BY: Swarmia and codecentric

About Melanie Rieback:

Dr. Melanie Rieback is CEO/Co-founder of Radically Open Security (the world's first not-for-profit computer security company), and "Post Growth" startup incubator Nonprofit Ventures. She is also a former Assistant Professor of Computer Science at the Free University of Amsterdam. She was named "Most Innovative IT Leader of the Netherlands" by CIO Magazine (TIM Award) in 2017, and one of the "9 Most Innovative Women in the European Union" (EU Women Innovators Prize) in 2019. She is also one of the 400 most successful women in the Netherlands by Viva Magazine (Viva400) in 2010 and 2017, and one of the fifty most inspiring women in tech (Inspiring Fifty Netherlands) in 2016, 2017, and 2019. Her company, Radically Open Security was named the 50th Most Innovative SME by the Dutch Chamber of Commerce (MKB Innovatie Top 100) in 2016.

TIMESTAMPS (approx) (00:00) Introduction to the Alphalist Podcast (02:13) What we will discuss today (03:12) What is the Business Model behind Radically Open Security (05:03) The Impact of Radically Open Security's Charitable Contributions (05:43) Where many cyber firms fail us. (09:13) How a Social Enterprise Works (10:15) Giving away 90% of profits? The Bookkeeping and cashflow behind it (13:27) Melanie's Nerd Journey: From human genome to RFD (17:18) Going viral with her RFD Thesis: Is your cat infected with a computer virus? (26:25) The Current State of Cybersecurity and Attack Vectors (26:55) Cybersecurity Challenges at Large Companies (29:18) Cyber Challenges at Smaller Organisations (30:54) Challenges of keeping software up to date at even multinational companies (31:10) Internal Politics and Cyber Policies (31:43) What challenges are fun to PenTest (35:39) Making the best of suboptimal stacks like Wordpress (37:12) Don't forget to back up (39:44) Getting Started: Securing a small team (41:25) Best Practices for Password Policy (42:39) The Future of Cybersecurity: New Approaches and Standards (44:15) 2FA on same device? (45:13) The Importance of Understanding Your Company's Attack Surface (45:35) External vs Internal Cyber Teams (48:52) Finding the right cyber company

Quotes:###

You don't know how to defend your company until you understand how to attack your company’” - Melanie Rieback, CEO/Co-founder of Radically Open Security,alphalist CTO podcast #94

About our sponsors

Swarmia

Swarmia is an engineering effectiveness platform for modern software organizations. Hundreds of data-driven companies from small startups to large enterprises use Swarmia to continuously improve across three key areas: business outcomes, developer productivity, and developer experience.

Swarmia connects with the tools your teams are already using: from source code hosting to your issue tracker and chat. With it, you'll stay on top of strategic initiatives, measure key engineering metrics (including DORA and SPACE), and drive continuous improvement in teams.

Learn more and start your free 14-day trial at link.alphalist.com/swarmia224.

codecentric

The codecentric Culture and Career Podcast is unique for a company podcast. It is just employees talking freely about their daily life - from IT consulting projects they are working to imposter syndrome. We support this because we think it's pretty cool that codecentric simply lets the colleagues talk about everything, no matter what it's about - project business, Imposter sydrome, further education or parental leave in the consulting business. For us it is definitely worth a recommendation. Listen in - the codecentric Culture and Career Podcast. Note - its in German. Just go to: www.link.alphalist.com/cc

Up next
Jul 10
#125 - Two CTO Dinosaurs vs. Today's Tech Hype with Raz Shuty // CTO @ auxmoney
What happens when two experienced CTOs sit down to debunk the latest tech trends? Raz Schweiger-Shuty, CTO at auxmoney, joins Tobi for an unfiltered discussion about the hypes, myths, and wastes of resources that plague modern tech companies. After taking over a 17-year-old finte ... Show More
1h 3m
Jun 27
#124 - The Path to AGI: Inside poolside’s AI Model Factory for Code with Eiso Kant
How do you build a foundation model that can write code at a human level? Eiso Kant (CTO & co-founder, Poolside) reveals the technical architecture, distributed team strategies, and reinforcement learning breakthroughs powering one of Europe’s most ambitious AI startups. Learn ho ... Show More
1h 3m
Jun 12
#123 - From Nokia to AI-IoT: Engineering the Physical World with Bernd Groß // CEO @ Cumulocity
The physical world is becoming digital—and it requires fundamentally different technical architecture than traditional IT systems. Bernd Groß leads technical leaders through the evolution from enterprise software to industrial IoT, where real-time data from 30,000 wind turbines a ... Show More
1h 3m
Recommended Episodes
Feb 2024
How to Build a Technical Strategy That Solves Business Problems | CircleCI CTO, Rob Zuber
It doesn’t matter if you have an innovative technical strategy if you’re not solving problems the business cares about…  This week, host Conor Bronsdon sits down with Rob Zuber, CTO at CircleCI. They delve into the evolving role of engineering leaders, and the importance of build ... Show More
58m 45s
Jun 2024
Accor CTO's Hotel Tech Masterclass: Cyber Security, Sustainability and More
In this episode of Hotel Tech Insider, we dive deep into the future of hotels and the technology driving them forward. Our guest, Floor Bleeker, the CTO of Accor, one of the largest hotel companies globally, shares insights into how technology is revolutionizing every aspect of A ... Show More
32m 52s
Jan 2025
Inside Gong: How teams work with design partners, their pod structure, autonomy, trust, and more | Eilon Reshef (co-founder and CPO)
Eilon Reshef is the co-founder and chief product officer at Gong, one of the most ubiquitous B2B products in the world. In our conversation, we discuss:• Gong’s unique approach to working with design partners• Their unique pod model• Why Eilon makes big decisions quickly• Lessons ... Show More
56m 42s
Apr 27
Inside monday.com’s transformation: radical transparency, impact over output, and their path to $1B ARR | Daniel Lereya (Chief Product and Technology Officer)
Daniel Lereya, the Chief Product and Technology Officer at monday.com, shares how he and his team realized they were being outpaced by competitors and how that realization completely transformed how they operate and allowed them to build a global powerhouse, doing over $1 billion ... Show More
1h 32m
Sep 2024
1,036: The Power of AI in Shaping Strategic Finance Leadership | Zane Rowe, CFO, Workday
In 2012, after nearly two decades in the airline industry, Zane Rowe made a bold career pivot. Leaving behind his role as CFO at United Airlines, Rowe stepped into the tech world, joining Apple in a sales role—a move many saw as risky but one that would ultimately shape his persp ... Show More
36m 17s
Dec 2024
Best of 2024: The Art of Prompt Engineering with Alex Banks, Founder and Educator, Sunday Signal
As we look back at 2024, we're highlighting some of our favourite episodes of the year, and with 100 of them to choose from, it wasn't easy!The four guests we'll be recapping with are:Lea Pica - A celebrity in the data storytelling and visualisation space. Richie and Lea cover th ... Show More
44m 58s
Oct 2024
Navigating NIST CSF 2.0: Guide to Frameworks and Governance
In this episode, we sat down with Lukasz Gogolkiewicz, an Australia-based Cybersecurity Leader and former pentester, to explore his journey from offensive security into cybersecurity leadership. Lukasz, also a speaker coach at BlackHat USA, brings valuable insights into what it t ... Show More
36m 29s
Feb 2025
#281 Developing AI Products That Impact Your Business with Venky Veeraraghavan, Chief Product Officer at DataRobot
As AI continues to dominate industry conversations, the notion of AI readiness becomes a focal point for organizations. It's a multifaceted challenge that goes beyond technology, encompassing business processes and cultural shifts. For professionals, this means grappling with que ... Show More
38m 45s
Mar 2025
How to win in the AI era: Ship a feature every week, embrace technical debt, ruthlessly cut scope, and create magic your competitors can't copy | Gaurav Misra (CEO and co-founder of Captions)
Gaurav Misra is the co-founder and CEO of Captions, an AI-powered video creation company and one of the most successful consumer AI products in the world today. Previously he was a product leader at Snap, where he created the design engineering function and spent years helping de ... Show More
1h 25m