<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet href="https://rss.buzzsprout.com/styles.xsl" type="text/xsl"?>
<rss version="2.0" xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd" xmlns:podcast="https://podcastindex.org/namespace/1.0" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:psc="http://podlove.org/simple-chapters" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <atom:link href="https://rss.buzzsprout.com/2609522.rss" rel="self" type="application/rss+xml" />
  <atom:link href="https://pubsubhubbub.appspot.com/" rel="hub" xmlns="http://www.w3.org/2005/Atom" />
  <title>Cyber Survivor</title>

  <lastBuildDate>Mon, 25 May 2026 18:21:10 -0400</lastBuildDate>
  <link>https://cybersurvivorpodcast.podbean.com</link>
  <language>en-us</language>
  <copyright>© 2026 Cyber Survivor</copyright>
  <podcast:locked>yes</podcast:locked>
    <podcast:guid>a48df996-0c53-510b-badb-6d6877798c5c</podcast:guid>
  <itunes:author>Dan Dodson</itunes:author>
  <itunes:type>episodic</itunes:type>
  <itunes:explicit>false</itunes:explicit>
  <description><![CDATA[Welcome to ”Cyber Survivor,” where host Dan Dodson uncovers the stories of resilience and innovation in healthcare cybersecurity. Explore real-world insights from doctors, administrators, and IT professionals on safeguarding data and privacy amid modern digital challenges. Join us for essential strategies and tales of triumph in the fight against cyber threats.]]></description>
  <generator>Buzzsprout (https://www.buzzsprout.com)</generator>
  <itunes:owner>
    <itunes:name>Dan Dodson</itunes:name>
  </itunes:owner>
  <image>
     <url>https://storage.buzzsprout.com/hbahqwe4tudfuskzo0v0nms6dzhy?.jpg</url>
     <title>Cyber Survivor</title>
     <link>https://cybersurvivorpodcast.podbean.com</link>
  </image>
  <itunes:image href="https://storage.buzzsprout.com/hbahqwe4tudfuskzo0v0nms6dzhy?.jpg" />
  <itunes:category text="Business" />
  <item>
    <itunes:title>Episode 33- What Happens To Patients When Clinics Get Hacked</itunes:title>
    <title>Episode 33- What Happens To Patients When Clinics Get Hacked</title>
    <itunes:summary><![CDATA[A handwritten note on a doctor’s office door doesn’t sound like the start of a cybersecurity story until you realize the clinic can’t even tell you why they’re closed. I’m Dan Dotson, and I sit down with our second John Doe, who’s spent nearly two decades in healthcare cybersecurity, to unpack what it feels like when the crisis you usually defend against suddenly hits you as a patient.  John walks us through the surreal details: an eerily empty parking lot, dark hallways, no call despite an a...]]></itunes:summary>
    <description><![CDATA[<p>A handwritten note on a doctor’s office door doesn’t sound like the start of a cybersecurity story until you realize the clinic can’t even tell you why they’re closed. I’m Dan Dotson, and I sit down with our second John Doe, who’s spent nearly two decades in healthcare cybersecurity, to unpack what it feels like when the crisis you usually defend against suddenly hits you as a patient.<br/><br/>John walks us through the surreal details: an eerily empty parking lot, dark hallways, no call despite an appointment confirmed the day before, and a weekend of waiting with unanswered questions. When he finally reaches the office, he hears the words no patient wants to hear: “We got hacked.” From there, we dig into the real-world impact of a clinic cyberattack, including delayed care, postponed referrals and tests, and the mental load of wondering whether your protected health information is exposed.<br/><br/>We also get specific about what healthcare leaders can do better: incident response plans that include patient communication, scripts and training for front-desk teams, escalation paths for tough calls, and a thoughtful approach that protects trust while facts are still emerging. If you care about healthcare cybersecurity, ransomware resilience, patient safety, or HIPAA-era communication, this story connects the technical and human sides in a way that sticks.<br/><br/>Subscribe to Cyber Survivor, share this with someone who works in healthcare, and leave a review so more people hear how cybersecurity protects patients. What would you expect your clinic to say if their systems went down?</p>]]></description>
    <content:encoded><![CDATA[<p>A handwritten note on a doctor’s office door doesn’t sound like the start of a cybersecurity story until you realize the clinic can’t even tell you why they’re closed. I’m Dan Dotson, and I sit down with our second John Doe, who’s spent nearly two decades in healthcare cybersecurity, to unpack what it feels like when the crisis you usually defend against suddenly hits you as a patient.<br/><br/>John walks us through the surreal details: an eerily empty parking lot, dark hallways, no call despite an appointment confirmed the day before, and a weekend of waiting with unanswered questions. When he finally reaches the office, he hears the words no patient wants to hear: “We got hacked.” From there, we dig into the real-world impact of a clinic cyberattack, including delayed care, postponed referrals and tests, and the mental load of wondering whether your protected health information is exposed.<br/><br/>We also get specific about what healthcare leaders can do better: incident response plans that include patient communication, scripts and training for front-desk teams, escalation paths for tough calls, and a thoughtful approach that protects trust while facts are still emerging. If you care about healthcare cybersecurity, ransomware resilience, patient safety, or HIPAA-era communication, this story connects the technical and human sides in a way that sticks.<br/><br/>Subscribe to Cyber Survivor, share this with someone who works in healthcare, and leave a review so more people hear how cybersecurity protects patients. What would you expect your clinic to say if their systems went down?</p>]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2609522/episodes/19173643-episode-33-what-happens-to-patients-when-clinics-get-hacked.mp3" length="17566917" type="audio/mpeg" />
    <itunes:author>Dan Dodson</itunes:author>
    <guid isPermaLink="false">Buzzsprout-19173643</guid>
    <pubDate>Thu, 14 May 2026 00:00:00 -0400</pubDate>
    <podcast:transcript url="https://www.buzzsprout.com/2609522/19173643/transcript" type="text/html" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/19173643/transcript.json" type="application/json" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/19173643/transcript.srt" type="application/x-subrip" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/19173643/transcript.vtt" type="text/vtt" />
    <podcast:chapters url="https://www.buzzsprout.com/2609522/19173643/chapters.json" type="application/json" />
    <psc:chapters>
  <psc:chapter start="0:00" title="The Unseen Fight In Healthcare" />
  <psc:chapter start="1:04" title="John’s Path Into Cybersecurity" />
  <psc:chapter start="2:53" title="A Strange Trip To The Clinic" />
  <psc:chapter start="7:09" title="Hearing The Words “We Got Hacked”" />
  <psc:chapter start="13:46" title="Communication Breakdowns And Lost Trust" />
  <psc:chapter start="22:23" title="Turning A Scare Into Purpose" />
</psc:chapters>
    <itunes:duration>1460</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>33</itunes:episode>
    <itunes:episodeType>full</itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>Episode 32- A Patient’s Story From Inside A Ransomware Attack</itunes:title>
    <title>Episode 32- A Patient’s Story From Inside A Ransomware Attack</title>
    <itunes:summary><![CDATA[The scariest words in a hospital shouldn’t be “systems are down,” but that’s exactly what John hears while he’s lying in a bed with crushing pain, fever, and doctors worried an infection could be moving toward sepsis. He came in expecting fast answers and coordinated care. Instead, he watches a modern emergency workflow buckle under a ransomware incident, and he feels the emotional whiplash that comes when patient safety suddenly depends on clipboards, phone calls, and memory.  We talk throug...]]></itunes:summary>
    <description><![CDATA[<p>The scariest words in a hospital shouldn’t be “systems are down,” but that’s exactly what John hears while he’s lying in a bed with crushing pain, fever, and doctors worried an infection could be moving toward sepsis. He came in expecting fast answers and coordinated care. Instead, he watches a modern emergency workflow buckle under a ransomware incident, and he feels the emotional whiplash that comes when patient safety suddenly depends on clipboards, phone calls, and memory.<br/><br/>We talk through what a healthcare cyberattack looks like from the patient’s side: staff scrambling to find orders they can’t see, “shortly” turning into long delays for antibiotics, lab results arriving slowly or needing retesting, and the constant uncertainty of not knowing what comes next. John describes how electronic health record downtime changes the tone of care, not because clinicians stop caring, but because systems that normally keep treatment organized and safe are no longer available. The result is a roller coaster of fear, especially when every minute feels like it matters.<br/><br/>Then we follow the story past the hospital stay. John ends up admitted longer than expected, leaves with shaken confidence in the health system, and receives no post-discharge outreach or apology. That silence becomes part of the lasting impact, raising a hard question for healthcare cybersecurity leaders, IT teams, and administrators: how do we rebuild trust after ransomware, and how do we communicate in a way that supports patients without creating more confusion?<br/><br/>If you care about ransomware defense, incident response, patient safety, and cyber resilience in healthcare, listen now, then subscribe, share the episode with someone in healthcare, and leave a review so more people hear what downtime really costs.</p>]]></description>
    <content:encoded><![CDATA[<p>The scariest words in a hospital shouldn’t be “systems are down,” but that’s exactly what John hears while he’s lying in a bed with crushing pain, fever, and doctors worried an infection could be moving toward sepsis. He came in expecting fast answers and coordinated care. Instead, he watches a modern emergency workflow buckle under a ransomware incident, and he feels the emotional whiplash that comes when patient safety suddenly depends on clipboards, phone calls, and memory.<br/><br/>We talk through what a healthcare cyberattack looks like from the patient’s side: staff scrambling to find orders they can’t see, “shortly” turning into long delays for antibiotics, lab results arriving slowly or needing retesting, and the constant uncertainty of not knowing what comes next. John describes how electronic health record downtime changes the tone of care, not because clinicians stop caring, but because systems that normally keep treatment organized and safe are no longer available. The result is a roller coaster of fear, especially when every minute feels like it matters.<br/><br/>Then we follow the story past the hospital stay. John ends up admitted longer than expected, leaves with shaken confidence in the health system, and receives no post-discharge outreach or apology. That silence becomes part of the lasting impact, raising a hard question for healthcare cybersecurity leaders, IT teams, and administrators: how do we rebuild trust after ransomware, and how do we communicate in a way that supports patients without creating more confusion?<br/><br/>If you care about ransomware defense, incident response, patient safety, and cyber resilience in healthcare, listen now, then subscribe, share the episode with someone in healthcare, and leave a review so more people hear what downtime really costs.</p>]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2609522/episodes/19091105-episode-32-a-patient-s-story-from-inside-a-ransomware-attack.mp3" length="21839589" type="audio/mpeg" />
    <itunes:author>Dan Dodson</itunes:author>
    <guid isPermaLink="false">Buzzsprout-19091105</guid>
    <pubDate>Thu, 30 Apr 2026 00:00:00 -0400</pubDate>
    <podcast:transcript url="https://www.buzzsprout.com/2609522/19091105/transcript" type="text/html" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/19091105/transcript.json" type="application/json" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/19091105/transcript.srt" type="application/x-subrip" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/19091105/transcript.vtt" type="text/vtt" />
    <podcast:chapters url="https://www.buzzsprout.com/2609522/19091105/chapters.json" type="application/json" />
    <psc:chapters>
  <psc:chapter start="0:00" title="Why Cybersecurity Is Patient Safety" />
  <psc:chapter start="1:20" title="John’s Morning Becomes A Medical Emergency" />
  <psc:chapter start="6:25" title="Ransomware Shuts Down Hospital Systems" />
  <psc:chapter start="8:20" title="Paper Workflows Slow Care And Raise Fear" />
  <psc:chapter start="19:50" title="Discharge Doubts And Silence Afterward" />
  <psc:chapter start="28:00" title="Prepare For Attacks Protect Patients" />
</psc:chapters>
    <itunes:duration>1816</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>32</itunes:episode>
    <itunes:episodeType>full</itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>Episode 31- Healthcare Downtime Ready. With Dr. Mark Yoffe, MD</itunes:title>
    <title>Episode 31- Healthcare Downtime Ready. With Dr. Mark Yoffe, MD</title>
    <itunes:summary><![CDATA[A hospital can survive a lot, but it cannot treat patients when core clinical systems go dark. We sit down with Dr. Mark Yoffe, a physician who also thinks like a cybersecurity leader, to unpack what healthcare cyber risk really looks like from the bedside. As electronic health records replaced paper charts, care got faster and more coordinated, but the blast radius of outages, ransomware, and credential theft grew right along with it. The result is a modern truth most communities now feel: c...]]></itunes:summary>
    <description><![CDATA[<p>A hospital can survive a lot, but it cannot treat patients when core clinical systems go dark. We sit down with Dr. Mark Yoffe, a physician who also thinks like a cybersecurity leader, to unpack what healthcare cyber risk really looks like from the bedside. As electronic health records replaced paper charts, care got faster and more coordinated, but the blast radius of outages, ransomware, and credential theft grew right along with it. The result is a modern truth most communities now feel: cybersecurity is not just about data, it is about keeping care available.<br/><br/>We use the confidentiality, integrity, and availability triad as a practical lens for clinicians and IT teams. Why do physicians often prioritize availability in the ED and ICU? How do security controls like multifactor authentication support uptime, not just privacy? And what does real downtime readiness look like when a team is busy, short-staffed, and under pressure? Dr. Yoffe shares concrete steps that help: clearer downtime alerts, knowing exactly what systems are affected, paper forms staged throughout the hospital, and a plan for post-downtime reconciliation so the record stays accurate.<br/><br/>We also dig into what actually wins physician buy-in. Instead of leading with restrictions, start by solving access and workflow pain points and show how security enables reliable clinical operations. From safer device habits and avoiding insecure SMS texting to case-based training that mirrors how clinicians learn, we outline education that sticks. Finally, we explore AI in healthcare documentation: where it can cut charting time, where privacy and cloud processing raise red flags, and why keeping a human in the loop protects record integrity.<br/><br/>If you care about patient safety, healthcare cybersecurity, EHR downtime planning, and the future of AI in clinical workflow, hit subscribe, share this with a colleague, and leave a review with your biggest question about cyber readiness.</p>]]></description>
    <content:encoded><![CDATA[<p>A hospital can survive a lot, but it cannot treat patients when core clinical systems go dark. We sit down with Dr. Mark Yoffe, a physician who also thinks like a cybersecurity leader, to unpack what healthcare cyber risk really looks like from the bedside. As electronic health records replaced paper charts, care got faster and more coordinated, but the blast radius of outages, ransomware, and credential theft grew right along with it. The result is a modern truth most communities now feel: cybersecurity is not just about data, it is about keeping care available.<br/><br/>We use the confidentiality, integrity, and availability triad as a practical lens for clinicians and IT teams. Why do physicians often prioritize availability in the ED and ICU? How do security controls like multifactor authentication support uptime, not just privacy? And what does real downtime readiness look like when a team is busy, short-staffed, and under pressure? Dr. Yoffe shares concrete steps that help: clearer downtime alerts, knowing exactly what systems are affected, paper forms staged throughout the hospital, and a plan for post-downtime reconciliation so the record stays accurate.<br/><br/>We also dig into what actually wins physician buy-in. Instead of leading with restrictions, start by solving access and workflow pain points and show how security enables reliable clinical operations. From safer device habits and avoiding insecure SMS texting to case-based training that mirrors how clinicians learn, we outline education that sticks. Finally, we explore AI in healthcare documentation: where it can cut charting time, where privacy and cloud processing raise red flags, and why keeping a human in the loop protects record integrity.<br/><br/>If you care about patient safety, healthcare cybersecurity, EHR downtime planning, and the future of AI in clinical workflow, hit subscribe, share this with a colleague, and leave a review with your biggest question about cyber readiness.</p>]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2609522/episodes/18994775-episode-31-healthcare-downtime-ready-with-dr-mark-yoffe-md.mp3" length="26902922" type="audio/mpeg" />
    <itunes:author>Dan Dodson</itunes:author>
    <guid isPermaLink="false">Buzzsprout-18994775</guid>
    <pubDate>Thu, 16 Apr 2026 00:00:00 -0400</pubDate>
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994775/transcript" type="text/html" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994775/transcript.json" type="application/json" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994775/transcript.srt" type="application/x-subrip" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994775/transcript.vtt" type="text/vtt" />
    <podcast:chapters url="https://www.buzzsprout.com/2609522/18994775/chapters.json" type="application/json" />
    <psc:chapters>
  <psc:chapter start="0:00" title="Welcome To Cyber Survivor" />
  <psc:chapter start="1:13" title="Dr. Yafee’s Path Into Cyber" />
  <psc:chapter start="1:53" title="From Paper Charts To EHRs" />
  <psc:chapter start="5:32" title="The CIA Triad Through A Clinician" />
  <psc:chapter start="7:50" title="Downtime Reality And Training Gaps" />
  <psc:chapter start="10:27" title="Practical Downtime Playbook For Care" />
  <psc:chapter start="12:55" title="Turning Security Into The Yes Team" />
  <psc:chapter start="16:19" title="Teaching Cyber Hygiene That Sticks" />
  <psc:chapter start="24:33" title="Building A Clinical IT Liaison Bridge" />
  <psc:chapter start="29:33" title="AI For Documentation With Guardrails" />
  <psc:chapter start="34:49" title="Cyber Events And Physician Stress" />
</psc:chapters>
    <itunes:duration>2238</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>31</itunes:episode>
    <itunes:episodeType>full</itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>Episode 30- When The Hospital Screens Go Dark. With Jane Doe</itunes:title>
    <title>Episode 30- When The Hospital Screens Go Dark. With Jane Doe</title>
    <itunes:summary><![CDATA[The scariest part of a healthcare cyberattack isn’t the headline. It’s the quiet moment a clinician realizes they can’t register a patient, scan a medication, verify a dose, or send a lab order and the waiting room is still filling up.

We sit down with an anonymous frontline nurse we call Jane Doe and walk through what “normal” looks like in a busy pediatric clinic: constant triage, newborn and well visits, vaccines, sick kids, and nonstop coordination. Then the systems go dark. No EHR, no b...]]></itunes:summary>
    <description><![CDATA[<p>The scariest part of a healthcare cyberattack isn’t the headline. It’s the quiet moment a clinician realizes they can’t register a patient, scan a medication, verify a dose, or send a lab order and the waiting room is still filling up.

We sit down with an anonymous frontline nurse we call Jane Doe and walk through what “normal” looks like in a busy pediatric clinic: constant triage, newborn and well visits, vaccines, sick kids, and nonstop coordination. Then the systems go dark. No EHR, no barcode scanning, no electronic medication checks, no easy way to move information. Care doesn’t stop, but it slows and every workaround carries risk. Jane explains what paper charting feels like today, why newer doctors and residents can be thrown off by manual processes, and how stress shifts from “can we do this?” to “can we do this safely and on time?”

We also zoom out to the bigger healthcare cybersecurity story: why downtime planning matters, how hospitals redeploy staff to keep labs and floors running, and why “cybersecurity is a dollar away from the bedside” is a real budget fight with real patient safety consequences. Jane shares how the experience changed her view of how fragile health systems can be and reflects on how nursing has evolved from family-centered care to a faster throughput model that can make cyber disruption hit even harder.

If you care about patient safety, hospital resilience, ransomware risk, and practical incident response in healthcare, listen now. Subscribe to Cyber Survivor, share this story with a colleague, and leave a review so more people hear what cyber events really do to care.</p>
]]></description>
    <content:encoded><![CDATA[<p>The scariest part of a healthcare cyberattack isn’t the headline. It’s the quiet moment a clinician realizes they can’t register a patient, scan a medication, verify a dose, or send a lab order and the waiting room is still filling up.

We sit down with an anonymous frontline nurse we call Jane Doe and walk through what “normal” looks like in a busy pediatric clinic: constant triage, newborn and well visits, vaccines, sick kids, and nonstop coordination. Then the systems go dark. No EHR, no barcode scanning, no electronic medication checks, no easy way to move information. Care doesn’t stop, but it slows and every workaround carries risk. Jane explains what paper charting feels like today, why newer doctors and residents can be thrown off by manual processes, and how stress shifts from “can we do this?” to “can we do this safely and on time?”

We also zoom out to the bigger healthcare cybersecurity story: why downtime planning matters, how hospitals redeploy staff to keep labs and floors running, and why “cybersecurity is a dollar away from the bedside” is a real budget fight with real patient safety consequences. Jane shares how the experience changed her view of how fragile health systems can be and reflects on how nursing has evolved from family-centered care to a faster throughput model that can make cyber disruption hit even harder.

If you care about patient safety, hospital resilience, ransomware risk, and practical incident response in healthcare, listen now. Subscribe to Cyber Survivor, share this story with a colleague, and leave a review so more people hear what cyber events really do to care.</p>
]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2609522/episodes/18994588-episode-30-when-the-hospital-screens-go-dark-with-jane-doe.mp3" length="15695900" type="audio/mpeg" />
    <itunes:author>Dan Dodson</itunes:author>
    <guid isPermaLink="false">cybersurvivorpodcast.podbean.com/438e72c6-418c-3ea2-a336-f6e939140fcb</guid>
    <pubDate>Wed, 01 Apr 2026 23:04:00 -0400</pubDate>
    <itunes:duration>1304</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>30</itunes:episode>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>Episode 29- From Cold War Deterrence to Healthcare Defense</itunes:title>
    <title>Episode 29- From Cold War Deterrence to Healthcare Defense</title>
    <itunes:summary><![CDATA[In this episode of Cyber Survivor, host Dan Dotson speaks with Dr. Richard Hartnett, co-director of the Ohio Cyber Range Institute, about shifting cybersecurity from a compliance checkbox to a proactive, organization-wide business practice. They discuss the theory of persistent engagement, tailored training for different hospital roles, the growing threat from financially motivated ransomware groups, and how AI and algorithmic agents will change both offense and defense. Listeners will learn ...]]></itunes:summary>
    <description><![CDATA[<p>In this episode of Cyber Survivor, host Dan Dotson speaks with Dr. Richard Hartnett, co-director of the Ohio Cyber Range Institute, about shifting cybersecurity from a compliance checkbox to a proactive, organization-wide business practice.</p><p>They discuss the theory of persistent engagement, tailored training for different hospital roles, the growing threat from financially motivated ransomware groups, and how AI and algorithmic agents will change both offense and defense.</p><p>Listeners will learn practical approaches to prioritizing critical systems, building hunt teams, and embedding cybersecurity into everyday healthcare operations to better protect patients and maintain care continuity.</p>]]></description>
    <content:encoded><![CDATA[<p>In this episode of Cyber Survivor, host Dan Dotson speaks with Dr. Richard Hartnett, co-director of the Ohio Cyber Range Institute, about shifting cybersecurity from a compliance checkbox to a proactive, organization-wide business practice.</p><p>They discuss the theory of persistent engagement, tailored training for different hospital roles, the growing threat from financially motivated ransomware groups, and how AI and algorithmic agents will change both offense and defense.</p><p>Listeners will learn practical approaches to prioritizing critical systems, building hunt teams, and embedding cybersecurity into everyday healthcare operations to better protect patients and maintain care continuity.</p>]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2609522/episodes/18994589-episode-29-from-cold-war-deterrence-to-healthcare-defense.mp3" length="39220104" type="audio/mpeg" />
    <itunes:author>Dan Dodson</itunes:author>
    <guid isPermaLink="false">cybersurvivorpodcast.podbean.com/ce193458-668e-3548-af6d-629341525c0c</guid>
    <pubDate>Tue, 24 Mar 2026 13:10:12 -0400</pubDate>
    <podcast:chapters url="https://www.buzzsprout.com/2609522/18994589/chapters.json" type="application/json" />
    <psc:chapters>
  <psc:chapter start="0:00" title="Healthcare’s Hidden Cyber Battle" />
  <psc:chapter start="0:36" title="Meet Dan Dotson And Dr Hartnett" />
  <psc:chapter start="1:05" title="From Cold War Work To Cyber" />
  <psc:chapter start="4:59" title="Inside The Pentagon Mindset Shift" />
  <psc:chapter start="9:50" title="Why Paradigms Stay Sticky" />
  <psc:chapter start="11:16" title="Compliance Is Not Security" />
  <psc:chapter start="19:00" title="Role Based Training That Works" />
  <psc:chapter start="23:48" title="Practice Like You Play Cyber Defense" />
  <psc:chapter start="28:52" title="Why Criminals Target Hospitals" />
  <psc:chapter start="37:20" title="State Proxies And Modern Privateers" />
  <psc:chapter start="44:39" title="Fund The Crown Jewels First" />
  <psc:chapter start="49:47" title="AI As Algorithmic Agents" />
  <psc:chapter start="52:54" title="Cybersecurity Protects Patients" />
</psc:chapters>
    <itunes:duration>3264</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:episode>29</itunes:episode>
    <itunes:episodeType>full</itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>Episode 28  Healthcare Cyber Resilience, Explained. With Eric Enos</itunes:title>
    <title>Episode 28  Healthcare Cyber Resilience, Explained. With Eric Enos</title>
    <itunes:summary><![CDATA[What happens when a hospital’s voice system fails during a cyber event? Not just dropped calls—entire care workflows unravel. In this conversation with Eric Enos, CTO at LifePoint, we pull back the curtain on how modern care really runs and why resilience, not raw uptime, is the metric that matters. From EHR dependence to nurse call routing and location awareness, the hidden mesh of systems that power bedside care can become a single point of failure if teams design for availability instead o...]]></itunes:summary>
    <description><![CDATA[<p>What happens when a hospital’s voice system fails during a cyber event? Not just dropped calls—entire care workflows unravel. In this conversation with Eric Enos, CTO at LifePoint, we pull back the curtain on how modern care really runs and why resilience, not raw uptime, is the metric that matters. From EHR dependence to nurse call routing and location awareness, the hidden mesh of systems that power bedside care can become a single point of failure if teams design for availability instead of continuity.</p>
<p>We start with the shift that put IT at the bedside: EMRs, decision support, ambient listening, and the promise of higher quality, faster coordination, and fewer errors. Then we confront the tradeoffs—expanded attack surfaces from SaaS, networks, and rapid consolidation. Eric explains why M&amp;A without rigorous standardization balloons technical debt, complicates patching and incident response, and leaves organizations defending multiple aging platforms. The fix isn’t fancy: map real clinical workflows first, then align infrastructure, identity, and communications under them.</p>
<p>Resilience means controlled degradation. If malware isolates a facility, SD‑WAN failover won’t matter; local downtime tools, voice redundancy, and independent communications paths will. We unpack practical steps: cross-functional tabletop exercises led by operators, end-to-end dependency mapping, and governance that keeps security and infrastructure rowing together. Then we get into AI. Treat LLMs like the smartest new employee—useful, fast, and fallible. Keep a human in the loop, establish clear guardrails, and confront open questions around liability and trust before letting AI drive patient-critical actions.</p>
<p>If you care about healthcare cybersecurity, clinical operations, and the future of AI in hospitals, this episode delivers grounded strategies you can use now: protect workflows, reduce technical debt, and design systems that bend without breaking. Subscribe, share with a colleague on your clinical or security team, and leave a review with one change you’ll make to strengthen resilience this quarter.</p>
]]></description>
    <content:encoded><![CDATA[<p>What happens when a hospital’s voice system fails during a cyber event? Not just dropped calls—entire care workflows unravel. In this conversation with Eric Enos, CTO at LifePoint, we pull back the curtain on how modern care really runs and why resilience, not raw uptime, is the metric that matters. From EHR dependence to nurse call routing and location awareness, the hidden mesh of systems that power bedside care can become a single point of failure if teams design for availability instead of continuity.</p>
<p>We start with the shift that put IT at the bedside: EMRs, decision support, ambient listening, and the promise of higher quality, faster coordination, and fewer errors. Then we confront the tradeoffs—expanded attack surfaces from SaaS, networks, and rapid consolidation. Eric explains why M&amp;A without rigorous standardization balloons technical debt, complicates patching and incident response, and leaves organizations defending multiple aging platforms. The fix isn’t fancy: map real clinical workflows first, then align infrastructure, identity, and communications under them.</p>
<p>Resilience means controlled degradation. If malware isolates a facility, SD‑WAN failover won’t matter; local downtime tools, voice redundancy, and independent communications paths will. We unpack practical steps: cross-functional tabletop exercises led by operators, end-to-end dependency mapping, and governance that keeps security and infrastructure rowing together. Then we get into AI. Treat LLMs like the smartest new employee—useful, fast, and fallible. Keep a human in the loop, establish clear guardrails, and confront open questions around liability and trust before letting AI drive patient-critical actions.</p>
<p>If you care about healthcare cybersecurity, clinical operations, and the future of AI in hospitals, this episode delivers grounded strategies you can use now: protect workflows, reduce technical debt, and design systems that bend without breaking. Subscribe, share with a colleague on your clinical or security team, and leave a review with one change you’ll make to strengthen resilience this quarter.</p>
]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2609522/episodes/18994673-episode-28-healthcare-cyber-resilience-explained-with-eric-enos.mp3" length="21762282" type="audio/mpeg" />
    <itunes:author>Dan Dodson</itunes:author>
    <guid isPermaLink="false">cybersurvivorpodcast.podbean.com/ecd2fa3f-4116-3472-8e85-9228b353a14e</guid>
    <pubDate>Wed, 04 Mar 2026 23:05:00 -0500</pubDate>
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994673/transcript" type="text/html" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994673/transcript.json" type="application/json" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994673/transcript.srt" type="application/x-subrip" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994673/transcript.vtt" type="text/vtt" />
    <podcast:chapters url="https://www.buzzsprout.com/2609522/18994673/chapters.json" type="application/json" />
    <psc:chapters>
  <psc:chapter start="0:00" title="Episode 28  Healthcare Cyber Resilience, Explained. With Eric Enos" />
  <psc:chapter start="0:01" title="The Hidden Cyber Battle In Healthcare" />
  <psc:chapter start="0:36" title="Meet Host Dan And Guest Eric" />
  <psc:chapter start="0:58" title="Eric’s Path From Army To CTO" />
  <psc:chapter start="2:08" title="IT Moves From Back Office To Bedside" />
  <psc:chapter start="3:10" title="Quality Gains And Expanding Attack Surface" />
  <psc:chapter start="4:20" title="M&amp;A, Standardization, And Technical Debt" />
  <psc:chapter start="6:14" title="Designing For Resilience, Not Just HA" />
  <psc:chapter start="8:09" title="Workflow Fragility: Voice And Nurse Call" />
  <psc:chapter start="10:08" title="End-To-End View Of Critical Workflows" />
  <psc:chapter start="12:06" title="Tabletop Exercises With Operators" />
  <psc:chapter start="13:55" title="Breaking Silos Between IT And Security" />
  <psc:chapter start="15:22" title="AI As The Smartest New Employee" />
  <psc:chapter start="17:02" title="Talent, Trust, And The Human In The Loop" />
  <psc:chapter start="18:19" title="The Pipeline Problem For Future Seniors" />
  <psc:chapter start="19:35" title="Closing Reflections And Farewell" />
</psc:chapters>
    <itunes:duration>1809</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>28</itunes:episode>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>Episode 27- Boards, Risk, And The Cyber Front Line. with Richard Helppie</itunes:title>
    <title>Episode 27- Boards, Risk, And The Cyber Front Line. with Richard Helppie</title>
    <itunes:summary><![CDATA[Imagine the LED lights are on, clinicians are ready, and every screen goes dark. That’s the moment when governance—not gadgets—keeps care moving. We sit down with healthcare IT leader and board veteran Richard Helppie to chart a practical path for hospital boards to own cybersecurity as a top strategic risk, not a backend tech chore. 
We start by separating governance from operations and translating cyber into the risk language directors already use. Rich shares how to make cybersecurity a st...]]></itunes:summary>
    <description><![CDATA[<p>Imagine the LED lights are on, clinicians are ready, and every screen goes dark. That’s the moment when governance—not gadgets—keeps care moving. We sit down with healthcare IT leader and board veteran Richard Helppie to chart a practical path for hospital boards to own cybersecurity as a top strategic risk, not a backend tech chore.</p>
<p>We start by separating governance from operations and translating cyber into the risk language directors already use. Rich shares how to make cybersecurity a standing board item, recruit at least one cyber-comfortable director, and ask the questions that matter: what are our biggest threats, how are we mitigating them, how will we know when we’re breached, and how fast can we recover? Dan adds a simple framing that works: present cyber with the same dashboards and cadence as finance and patient safety so leaders can weigh tradeoffs with clarity.</p>
<p>Then we get real about downtime. Many clinicians have never practiced on paper, and backups are now a prime target. We cover ransomware pressures, insurance posture, recovery objectives, and third-party risk—from supply chains to physician groups and patient portals. Human factors dominate the breach path, with phishing and help desk vishing exploiting speed-focused KPIs. The fix is cultural and operational: slow down where it counts, verify identities, harden processes, and measure cyber like hospital-acquired infections.</p>
<p>AI threads through the conversation as both opportunity and attack surface. Waiting to “see what happens” is not a strategy. We outline the early governance questions boards should ask about data leakage, model access, and monitoring, and how to pair innovation with guardrails. To win investment and attention, Rich offers a three-point board briefing—why cyber matters, what program is in place, and what’s needed to close gaps—and explains why tabletop exercises with executives, vendors, and select directors consistently shift mindsets from denial to readiness.</p>
<p>If you care about resilient care delivery, boardroom clarity, and practical defenses that work when systems fail, you’ll find a usable playbook here. Subscribe, share with a colleague who presents to boards, and leave a review with the one question you want every hospital board to ask about cybersecurity.</p>
]]></description>
    <content:encoded><![CDATA[<p>Imagine the LED lights are on, clinicians are ready, and every screen goes dark. That’s the moment when governance—not gadgets—keeps care moving. We sit down with healthcare IT leader and board veteran Richard Helppie to chart a practical path for hospital boards to own cybersecurity as a top strategic risk, not a backend tech chore.</p>
<p>We start by separating governance from operations and translating cyber into the risk language directors already use. Rich shares how to make cybersecurity a standing board item, recruit at least one cyber-comfortable director, and ask the questions that matter: what are our biggest threats, how are we mitigating them, how will we know when we’re breached, and how fast can we recover? Dan adds a simple framing that works: present cyber with the same dashboards and cadence as finance and patient safety so leaders can weigh tradeoffs with clarity.</p>
<p>Then we get real about downtime. Many clinicians have never practiced on paper, and backups are now a prime target. We cover ransomware pressures, insurance posture, recovery objectives, and third-party risk—from supply chains to physician groups and patient portals. Human factors dominate the breach path, with phishing and help desk vishing exploiting speed-focused KPIs. The fix is cultural and operational: slow down where it counts, verify identities, harden processes, and measure cyber like hospital-acquired infections.</p>
<p>AI threads through the conversation as both opportunity and attack surface. Waiting to “see what happens” is not a strategy. We outline the early governance questions boards should ask about data leakage, model access, and monitoring, and how to pair innovation with guardrails. To win investment and attention, Rich offers a three-point board briefing—why cyber matters, what program is in place, and what’s needed to close gaps—and explains why tabletop exercises with executives, vendors, and select directors consistently shift mindsets from denial to readiness.</p>
<p>If you care about resilient care delivery, boardroom clarity, and practical defenses that work when systems fail, you’ll find a usable playbook here. Subscribe, share with a colleague who presents to boards, and leave a review with the one question you want every hospital board to ask about cybersecurity.</p>
]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2609522/episodes/18994674-episode-27-boards-risk-and-the-cyber-front-line-with-richard-helppie.mp3" length="19994216" type="audio/mpeg" />
    <itunes:author>Dan Dodson</itunes:author>
    <guid isPermaLink="false">cybersurvivorpodcast.podbean.com/873b20e8-89c1-3f33-8f63-2b9dcf9c23a2</guid>
    <pubDate>Wed, 18 Feb 2026 23:05:00 -0500</pubDate>
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994674/transcript" type="text/html" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994674/transcript.json" type="application/json" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994674/transcript.srt" type="application/x-subrip" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994674/transcript.vtt" type="text/vtt" />
    <itunes:duration>1662</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>27</itunes:episode>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>Episode 26- When Medical Devices Meet Malware: Axel Wirth on Cyber Risk in Care</itunes:title>
    <title>Episode 26- When Medical Devices Meet Malware: Axel Wirth on Cyber Risk in Care</title>
    <itunes:summary><![CDATA[Cyber Survivor host Dan Dodson interviews Axel Wirth, chief security strategist at MedCrypt, about the rising cyber risks facing medical devices and what that means for patient care. Wirth explains that he began as a hardware electrical engineer in the medical device and health IT world before moving into cybersecurity in 2008, eventually focusing exclusively on medical device security and helping manufacturers both improve their products and meet evolving global regulatory expectations. Over...]]></itunes:summary>
    <description><![CDATA[<p>Cyber Survivor host Dan Dodson interviews Axel Wirth, chief security strategist at MedCrypt, about the rising cyber risks facing medical devices and what that means for patient care. Wirth explains that he began as a hardware electrical engineer in the medical device and health IT world before moving into cybersecurity in 2008, eventually focusing exclusively on medical device security and helping manufacturers both improve their products and meet evolving global regulatory expectations. Over the last decade, he has seen clear maturation: regulators like the FDA and international counterparts now explicitly require cybersecurity as part of market approval, and some devices are even being rejected solely for cybersecurity shortcomings, prompting manufacturers to strengthen designs and documentation.</p>
<p>
Dodson and Wirth then dig into the massive challenge of legacy devices: millions of clinically functional but aging devices—CT and MRI scanners, infusion pumps, and more—remain deployed in hospitals, often with serious vulnerabilities and enormous replacement costs. They note that healthcare operates on tight or negative margins, making large-scale replacement difficult, and that any change introduces disruption, retraining needs, and operational risk. Wirth points to industry efforts, such as detailed guidance on legacy devices, but questions whether the sector can move fast enough given the growing sophistication of attackers and the broad attack surface created by all these connected systems.</p>
<p>
They explore the threat landscape, emphasizing that risk has increased significantly. Attackers have not yet commonly launched deliberate, patient‑harming attacks on medical devices themselves; instead, devices often become collateral damage when they run unpatched commercial operating systems targeted by generic malware, as illustrated by the WannaCry incident that crippled the UK’s NHS and disrupted care. Wirth also cites evidence of criminal groups that intentionally use medical devices as entry points into hospital networks, as well as the economic incentives behind ransomware campaigns that seek to disrupt care, raising pressure on hospitals to pay ransoms to restore operations quickly.</p>
<p>
Looking ahead, they discuss how AI and geopolitics will accelerate and intensify threats. Wirth notes that AI already enables cheaper, highly targeted attacks, with some campaigns now largely executed by automated tools, and he expects that trend to grow. At the same time, more nation‑state and hacktivist actors are likely to see healthcare as a strategic target. While there has been real progress—better tooling for manufacturers and hospitals, improved device architectures, stronger inventory visibility, network segmentation, and clearer regulatory pressure—Wirth is skeptical that defenders are improving faster than attackers. He worries that a large, catalytic event, similar to WannaCry but perhaps even more severe in healthcare, may be what finally forces the scale of investment and coordination needed.</p>
<p>
The conversation also highlights operational friction between hospitals and manufacturers. Dodson raises the frustration many CISOs feel: patch cycles are slow and complex, responsibility is fragmented across IT, biomed/clinical engineering, third‑party servicers, and cybersecurity teams, and hospitals often end up “holding the bag” after an incident. Wirth agrees that patching is inherently complex—vulnerabilities must be verified, patches developed and tested, then deployed without compromising clinical operations—and that delays occur on both sides. However, he stresses that both manufacturers and providers are getting better: post‑market security responsibilities are more widely accepted, tooling is improving for patch development and deployment, and hospitals are investing in visibility and governance over who owns medical device security decisions.
Despite his concerns, Wirth ends on a cautiously optimistic not</p>]]></description>
    <content:encoded><![CDATA[<p>Cyber Survivor host Dan Dodson interviews Axel Wirth, chief security strategist at MedCrypt, about the rising cyber risks facing medical devices and what that means for patient care. Wirth explains that he began as a hardware electrical engineer in the medical device and health IT world before moving into cybersecurity in 2008, eventually focusing exclusively on medical device security and helping manufacturers both improve their products and meet evolving global regulatory expectations. Over the last decade, he has seen clear maturation: regulators like the FDA and international counterparts now explicitly require cybersecurity as part of market approval, and some devices are even being rejected solely for cybersecurity shortcomings, prompting manufacturers to strengthen designs and documentation.</p>
<p>
Dodson and Wirth then dig into the massive challenge of legacy devices: millions of clinically functional but aging devices—CT and MRI scanners, infusion pumps, and more—remain deployed in hospitals, often with serious vulnerabilities and enormous replacement costs. They note that healthcare operates on tight or negative margins, making large-scale replacement difficult, and that any change introduces disruption, retraining needs, and operational risk. Wirth points to industry efforts, such as detailed guidance on legacy devices, but questions whether the sector can move fast enough given the growing sophistication of attackers and the broad attack surface created by all these connected systems.</p>
<p>
They explore the threat landscape, emphasizing that risk has increased significantly. Attackers have not yet commonly launched deliberate, patient‑harming attacks on medical devices themselves; instead, devices often become collateral damage when they run unpatched commercial operating systems targeted by generic malware, as illustrated by the WannaCry incident that crippled the UK’s NHS and disrupted care. Wirth also cites evidence of criminal groups that intentionally use medical devices as entry points into hospital networks, as well as the economic incentives behind ransomware campaigns that seek to disrupt care, raising pressure on hospitals to pay ransoms to restore operations quickly.</p>
<p>
Looking ahead, they discuss how AI and geopolitics will accelerate and intensify threats. Wirth notes that AI already enables cheaper, highly targeted attacks, with some campaigns now largely executed by automated tools, and he expects that trend to grow. At the same time, more nation‑state and hacktivist actors are likely to see healthcare as a strategic target. While there has been real progress—better tooling for manufacturers and hospitals, improved device architectures, stronger inventory visibility, network segmentation, and clearer regulatory pressure—Wirth is skeptical that defenders are improving faster than attackers. He worries that a large, catalytic event, similar to WannaCry but perhaps even more severe in healthcare, may be what finally forces the scale of investment and coordination needed.</p>
<p>
The conversation also highlights operational friction between hospitals and manufacturers. Dodson raises the frustration many CISOs feel: patch cycles are slow and complex, responsibility is fragmented across IT, biomed/clinical engineering, third‑party servicers, and cybersecurity teams, and hospitals often end up “holding the bag” after an incident. Wirth agrees that patching is inherently complex—vulnerabilities must be verified, patches developed and tested, then deployed without compromising clinical operations—and that delays occur on both sides. However, he stresses that both manufacturers and providers are getting better: post‑market security responsibilities are more widely accepted, tooling is improving for patch development and deployment, and hospitals are investing in visibility and governance over who owns medical device security decisions.
Despite his concerns, Wirth ends on a cautiously optimistic not</p>]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2609522/episodes/18994675-episode-26-when-medical-devices-meet-malware-axel-wirth-on-cyber-risk-in-care.mp3" length="20401741" type="audio/mpeg" />
    <itunes:author>Dan Dodson</itunes:author>
    <guid isPermaLink="false">cybersurvivorpodcast.podbean.com/76ff84bb-c85f-31dc-93a0-c85747833f92</guid>
    <pubDate>Wed, 04 Feb 2026 23:05:00 -0500</pubDate>
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994675/transcript" type="text/html" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994675/transcript.json" type="application/json" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994675/transcript.srt" type="application/x-subrip" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994675/transcript.vtt" type="text/vtt" />
    <itunes:duration>1696</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>26</itunes:episode>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>Episode 25–Tabletop Drills, Real‑World Outages. With Greg Surla</itunes:title>
    <title>Episode 25–Tabletop Drills, Real‑World Outages. With Greg Surla</title>
    <itunes:summary><![CDATA[A cyberattack on a vendor shouldn’t be the moment a hospital learns how interconnected its world really is. We sit down with Greg Surla, Chief Information Security Officer at FinThrive, to unpack how third‑party risk, revenue cycle platforms, and frontline care are woven together—and why resilience depends on planning with partners before the crisis hits. From joint tabletop exercises that include critical vendors to pre-approved workarounds like VDI access and hardened loaner devices, we map...]]></itunes:summary>
    <description><![CDATA[<p>A cyberattack on a vendor shouldn’t be the moment a hospital learns how interconnected its world really is. We sit down with Greg Surla, Chief Information Security Officer at FinThrive, to unpack how third‑party risk, revenue cycle platforms, and frontline care are woven together—and why resilience depends on planning with partners before the crisis hits. From joint tabletop exercises that include critical vendors to pre-approved workarounds like VDI access and hardened loaner devices, we map the moves that keep care running when networks go dark.</p>
<p> </p>
<p>Greg shares blunt lessons from breaches and acquisitions: forgotten cloud servers, weak asset inventories, and the relentless toll of a three‑week ransomware fight. The takeaway isn’t fear; it’s preparation. We dig into ransomware‑specific drills, cyber insurance that funds expert responders, and the automation needed to triage the daily flood of vulnerabilities. We also explore culture as a control, showing how life‑first security education—holiday scams, tax fraud, device safety—builds habits that protect both home and hospital, and creates the groundswell that gets C‑suite support.</p>
<p> </p>
<p>As AI supercharges attackers and budget pressures squeeze providers, cybersecurity has to be framed as a business enabler. Secure revenue cycle equals payroll, access to care, and community trust. Greg explains how to translate risk for boards, align controls to clinical and financial goals, and replace reflexive “no” with “yes, if” to stay part of the conversation that shapes strategy. The result is a practical, human playbook for healthcare security: automate the routine, practice the hard days with partners, invest in asset visibility, and collaborate across the industry. Subscribe, share with a colleague who handles vendor risk, and leave a review with your top resilience tactic—we’ll feature the best ideas in a future show.</p>
]]></description>
    <content:encoded><![CDATA[<p>A cyberattack on a vendor shouldn’t be the moment a hospital learns how interconnected its world really is. We sit down with Greg Surla, Chief Information Security Officer at FinThrive, to unpack how third‑party risk, revenue cycle platforms, and frontline care are woven together—and why resilience depends on planning with partners before the crisis hits. From joint tabletop exercises that include critical vendors to pre-approved workarounds like VDI access and hardened loaner devices, we map the moves that keep care running when networks go dark.</p>
<p> </p>
<p>Greg shares blunt lessons from breaches and acquisitions: forgotten cloud servers, weak asset inventories, and the relentless toll of a three‑week ransomware fight. The takeaway isn’t fear; it’s preparation. We dig into ransomware‑specific drills, cyber insurance that funds expert responders, and the automation needed to triage the daily flood of vulnerabilities. We also explore culture as a control, showing how life‑first security education—holiday scams, tax fraud, device safety—builds habits that protect both home and hospital, and creates the groundswell that gets C‑suite support.</p>
<p> </p>
<p>As AI supercharges attackers and budget pressures squeeze providers, cybersecurity has to be framed as a business enabler. Secure revenue cycle equals payroll, access to care, and community trust. Greg explains how to translate risk for boards, align controls to clinical and financial goals, and replace reflexive “no” with “yes, if” to stay part of the conversation that shapes strategy. The result is a practical, human playbook for healthcare security: automate the routine, practice the hard days with partners, invest in asset visibility, and collaborate across the industry. Subscribe, share with a colleague who handles vendor risk, and leave a review with your top resilience tactic—we’ll feature the best ideas in a future show.</p>
]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2609522/episodes/18994676-episode-25-tabletop-drills-real-world-outages-with-greg-surla.mp3" length="17563243" type="audio/mpeg" />
    <itunes:author>Dan Dodson</itunes:author>
    <guid isPermaLink="false">cybersurvivorpodcast.podbean.com/6bef188d-d4f4-3f63-bba7-9ae67cebe02e</guid>
    <pubDate>Wed, 21 Jan 2026 23:12:00 -0500</pubDate>
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994676/transcript" type="text/html" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994676/transcript.json" type="application/json" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994676/transcript.srt" type="application/x-subrip" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994676/transcript.vtt" type="text/vtt" />
    <itunes:duration>1460</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>25</itunes:episode>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>Episode 24- How Medical Device Security Protects Care At Scale. With Phil Englert</itunes:title>
    <title>Episode 24- How Medical Device Security Protects Care At Scale. With Phil Englert</title>
    <itunes:summary><![CDATA[A hospital room can hold 10 to 20 networked devices, each vital to care—and each a potential doorway for attackers. We sit down with Phil Englert, VP of Medical Device Security at Health ISAC, to explore how connected care improves outcomes while reshaping risk, and why building resilience and rapid recovery plans is now as critical as prevention. 
Phil traces the evolution from clinician-driven data sharing to an era where massive datasets attract criminal interest. We dig into the Patch Act...]]></itunes:summary>
    <description><![CDATA[<p>A hospital room can hold 10 to 20 networked devices, each vital to care—and each a potential doorway for attackers. We sit down with Phil Englert, VP of Medical Device Security at Health ISAC, to explore how connected care improves outcomes while reshaping risk, and why building resilience and rapid recovery plans is now as critical as prevention.</p>
<p>Phil traces the evolution from clinician-driven data sharing to an era where massive datasets attract criminal interest. We dig into the Patch Act’s new authority for the FDA, how SBOMs change accountability, and what secure-by-design looks like for both embedded systems and devices running full operating systems. The conversation gets practical: segment where you can, monitor where you must, and treat cyber as a failure mode. That mindset leads to faster restorations—ghosted drives ready to swap, configs backed up, and downtime measured in hours rather than weeks.</p>
<p>We also pull back the curtain on Health ISAC’s member-led workstreams: aligning manufacturers and providers on a concise set of priority controls, creating shared security metrics that resonate from boardroom to engineering, and running joint tabletop exercises to close response gaps. Beyond the hospital, we examine AI-enabled diagnostics and the rise of hospital-at-home, where patient-owned tech can’t be trusted as a control point and multilingual, culturally aware resources become essential for scale. Throughout, we tackle tough questions—why attackers target data over device manipulation, whether paying ransom actually speeds recovery, and how to keep care moving when the EHR or network goes dark.</p>
<p>If you care about medical device security, healthcare cybersecurity, ransomware resilience, or the future of connected care, this conversation offers clear takeaways and next steps. Listen, share with your team, and help raise the floor across healthcare. Subscribe, leave a review, and tell us: what control would you prioritize first?</p>
]]></description>
    <content:encoded><![CDATA[<p>A hospital room can hold 10 to 20 networked devices, each vital to care—and each a potential doorway for attackers. We sit down with Phil Englert, VP of Medical Device Security at Health ISAC, to explore how connected care improves outcomes while reshaping risk, and why building resilience and rapid recovery plans is now as critical as prevention.</p>
<p>Phil traces the evolution from clinician-driven data sharing to an era where massive datasets attract criminal interest. We dig into the Patch Act’s new authority for the FDA, how SBOMs change accountability, and what secure-by-design looks like for both embedded systems and devices running full operating systems. The conversation gets practical: segment where you can, monitor where you must, and treat cyber as a failure mode. That mindset leads to faster restorations—ghosted drives ready to swap, configs backed up, and downtime measured in hours rather than weeks.</p>
<p>We also pull back the curtain on Health ISAC’s member-led workstreams: aligning manufacturers and providers on a concise set of priority controls, creating shared security metrics that resonate from boardroom to engineering, and running joint tabletop exercises to close response gaps. Beyond the hospital, we examine AI-enabled diagnostics and the rise of hospital-at-home, where patient-owned tech can’t be trusted as a control point and multilingual, culturally aware resources become essential for scale. Throughout, we tackle tough questions—why attackers target data over device manipulation, whether paying ransom actually speeds recovery, and how to keep care moving when the EHR or network goes dark.</p>
<p>If you care about medical device security, healthcare cybersecurity, ransomware resilience, or the future of connected care, this conversation offers clear takeaways and next steps. Listen, share with your team, and help raise the floor across healthcare. Subscribe, leave a review, and tell us: what control would you prioritize first?</p>
]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2609522/episodes/18994677-episode-24-how-medical-device-security-protects-care-at-scale-with-phil-englert.mp3" length="31060017" type="audio/mpeg" />
    <itunes:author>Dan Dodson</itunes:author>
    <guid isPermaLink="false">cybersurvivorpodcast.podbean.com/2e96dede-d066-320c-9a16-d1a4bb327ff5</guid>
    <pubDate>Wed, 07 Jan 2026 23:10:00 -0500</pubDate>
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994677/transcript" type="text/html" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994677/transcript.json" type="application/json" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994677/transcript.srt" type="application/x-subrip" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994677/transcript.vtt" type="text/vtt" />
    <itunes:duration>2584</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>24</itunes:episode>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>Episode 23- From the Battlefield to the Server Room: Dr. C.S. Kruse on Defending Healthcare</itunes:title>
    <title>Episode 23- From the Battlefield to the Server Room: Dr. C.S. Kruse on Defending Healthcare</title>
    <itunes:summary><![CDATA[The conversation explores how healthcare’s rapid digitization has improved patient outcomes while dramatically increasing cyber risk, making hospitals lucrative, constantly targeted entities. Dr. C.S. Kruse traces his path from Army Medical Service Corps IT specialist to academic leader and prolific researcher in health IT and cybersecurity, emphasizing both technology’s clinical benefits and its “dark side.”He and host Dan Dodson discuss AI as a dual-use tool, underinvestment and budget tens...]]></itunes:summary>
    <description><![CDATA[<p>The conversation explores how healthcare’s rapid digitization has improved patient outcomes while dramatically increasing cyber risk, making hospitals lucrative, constantly targeted entities. Dr. C.S. Kruse traces his path from Army Medical Service Corps IT specialist to academic leader and prolific researcher in health IT and cybersecurity, emphasizing both technology’s clinical benefits and its “dark side.”He and host Dan Dodson discuss AI as a dual-use tool, underinvestment and budget tensions, ransomware-driven clinical disruptions, basic but often-missed security practices, EU-style cyber resiliency standards, and the need for stronger policy, mandatory reporting, and resilient clinical workflows when systems fail.</p>
]]></description>
    <content:encoded><![CDATA[<p>The conversation explores how healthcare’s rapid digitization has improved patient outcomes while dramatically increasing cyber risk, making hospitals lucrative, constantly targeted entities. Dr. C.S. Kruse traces his path from Army Medical Service Corps IT specialist to academic leader and prolific researcher in health IT and cybersecurity, emphasizing both technology’s clinical benefits and its “dark side.”He and host Dan Dodson discuss AI as a dual-use tool, underinvestment and budget tensions, ransomware-driven clinical disruptions, basic but often-missed security practices, EU-style cyber resiliency standards, and the need for stronger policy, mandatory reporting, and resilient clinical workflows when systems fail.</p>
]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2609522/episodes/18994678-episode-23-from-the-battlefield-to-the-server-room-dr-c-s-kruse-on-defending-healthcare.mp3" length="28259188" type="audio/mpeg" />
    <itunes:author>Dan Dodson</itunes:author>
    <guid isPermaLink="false">cybersurvivorpodcast.podbean.com/30baf3d4-69fa-3437-b3be-6bf334504949</guid>
    <pubDate>Wed, 24 Dec 2025 23:15:00 -0500</pubDate>
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994678/transcript" type="text/html" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994678/transcript.json" type="application/json" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994678/transcript.srt" type="application/x-subrip" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994678/transcript.vtt" type="text/vtt" />
    <itunes:duration>2351</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>23</itunes:episode>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>Episode 22- Ransom or Rebuild? Claudia Rast on the Hard Math of Hospital Cyberattacks</itunes:title>
    <title>Episode 22- Ransom or Rebuild? Claudia Rast on the Hard Math of Hospital Cyberattacks</title>
    <itunes:summary><![CDATA[Alarms don’t always sound when hospitals are under attack. Sometimes the first signal is a locked EHR, diverted ambulances, and a clinical team scrambling to deliver care without the tools they trained on. We sit down with Butzel attorney Claudia Rast—leader of cybersecurity and AI practices and former co-chair of the ABA’s presidential cybersecurity task force—to unpack how threat actors use agentic AI, why ransom demands can look rational in a crisis, and what real resilience looks like whe...]]></itunes:summary>
    <description><![CDATA[<p class='p1'>Alarms don’t always sound when hospitals are under attack. Sometimes the first signal is a locked EHR, diverted ambulances, and a clinical team scrambling to deliver care without the tools they trained on. We sit down with Butzel attorney Claudia Rast—leader of cybersecurity and AI practices and former co-chair of the ABA’s presidential cybersecurity task force—to unpack how threat actors use agentic AI, why ransom demands can look rational in a crisis, and what real resilience looks like when patient safety is on the line.</p>
<p class='p1'>Claudia traces the evolution from broken-English phish to sophisticated campaigns backed by help desks, localization, and AI that scouts vulnerabilities without human prompting. We explore the uncomfortable math of ransom vs. rebuild, how cyber insurance shapes early decisions, and the practical controls that shorten downtime: endpoint detection and response, network segmentation, immutable backups, and tested recovery plans. The conversation gets candid about healthcare’s unique weaknesses—legacy systems, aging devices, and hundreds of tightly coupled apps that can turn one misconfiguration into a cascading failure.</p>
<p class='p1'>On the legal front, we break down the surge in class action lawsuits after breach notifications, California’s privacy framework and its limits, and the rise of claims under old wiretap laws aimed at website tracking. We also dig into AI risk beyond cyber: how feeding code or confidential prompts into public models can burn trade secrets, why blocking public AI tools often beats long unread policies, and how to contract for third-party AI use, data stewardship, and derivative works. We close with the human layer: deepfake-enabled fraud, out-of-band verification, and a culture that practices the plan before the worst day arrives.</p>
<p class='p1'>Subscribe, share with a colleague who handles cyber or compliance, and leave a review with your top takeaway. Your feedback helps more healthcare teams find the playbook that keeps care online when it matters most.</p>
]]></description>
    <content:encoded><![CDATA[<p class='p1'>Alarms don’t always sound when hospitals are under attack. Sometimes the first signal is a locked EHR, diverted ambulances, and a clinical team scrambling to deliver care without the tools they trained on. We sit down with Butzel attorney Claudia Rast—leader of cybersecurity and AI practices and former co-chair of the ABA’s presidential cybersecurity task force—to unpack how threat actors use agentic AI, why ransom demands can look rational in a crisis, and what real resilience looks like when patient safety is on the line.</p>
<p class='p1'>Claudia traces the evolution from broken-English phish to sophisticated campaigns backed by help desks, localization, and AI that scouts vulnerabilities without human prompting. We explore the uncomfortable math of ransom vs. rebuild, how cyber insurance shapes early decisions, and the practical controls that shorten downtime: endpoint detection and response, network segmentation, immutable backups, and tested recovery plans. The conversation gets candid about healthcare’s unique weaknesses—legacy systems, aging devices, and hundreds of tightly coupled apps that can turn one misconfiguration into a cascading failure.</p>
<p class='p1'>On the legal front, we break down the surge in class action lawsuits after breach notifications, California’s privacy framework and its limits, and the rise of claims under old wiretap laws aimed at website tracking. We also dig into AI risk beyond cyber: how feeding code or confidential prompts into public models can burn trade secrets, why blocking public AI tools often beats long unread policies, and how to contract for third-party AI use, data stewardship, and derivative works. We close with the human layer: deepfake-enabled fraud, out-of-band verification, and a culture that practices the plan before the worst day arrives.</p>
<p class='p1'>Subscribe, share with a colleague who handles cyber or compliance, and leave a review with your top takeaway. Your feedback helps more healthcare teams find the playbook that keeps care online when it matters most.</p>
]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2609522/episodes/18994679-episode-22-ransom-or-rebuild-claudia-rast-on-the-hard-math-of-hospital-cyberattacks.mp3" length="22528329" type="audio/mpeg" />
    <itunes:author>Dan Dodson</itunes:author>
    <guid isPermaLink="false">cybersurvivorpodcast.podbean.com/0885ca92-bcde-39d9-ac2d-b505b515d36e</guid>
    <pubDate>Wed, 10 Dec 2025 23:15:00 -0500</pubDate>
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994679/transcript" type="text/html" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994679/transcript.json" type="application/json" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994679/transcript.srt" type="application/x-subrip" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994679/transcript.vtt" type="text/vtt" />
    <itunes:duration>1873</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>22</itunes:episode>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>Episode 21- How Healthcare Cybersecurity Became A Patient Safety Issue.  With Jen Ellis</itunes:title>
    <title>Episode 21- How Healthcare Cybersecurity Became A Patient Safety Issue.  With Jen Ellis</title>
    <itunes:summary><![CDATA[The alarms aren’t just in the data center anymore. When ransomware shutters clinics and pushes oncology schedules into chaos, the question isn’t “What did they exfiltrate?” It’s “Who didn’t get care?” We sit down with Jen Ellis, founder of NextGen Security and co-chair of the Ransomware Task Force, to unpack how cybersecurity in healthcare became a patient safety issue—and what it will take to keep care running when attackers hit. 
Jen takes us inside the pandemic spike in hospital attacks an...]]></itunes:summary>
    <description><![CDATA[<p>The alarms aren’t just in the data center anymore. When ransomware shutters clinics and pushes oncology schedules into chaos, the question isn’t “What did they exfiltrate?” It’s “Who didn’t get care?” We sit down with Jen Ellis, founder of NextGen Security and co-chair of the Ransomware Task Force, to unpack how cybersecurity in healthcare became a patient safety issue—and what it will take to keep care running when attackers hit.</p>
<p>Jen takes us inside the pandemic spike in hospital attacks and the wrenching ransom debate, including a parent of a child with cancer willing to remortgage their home to restart treatment. From there we trace the policy ripple effects: international disruption efforts, sanctions, tighter crypto oversight, and the Counter Ransomware Initiative. None of it is a silver bullet, especially as AI lowers the barrier for criminals, but coordinated action is raising attacker costs and forcing them to work harder.</p>
<p>We go beyond headlines to the budget math inside hospitals running on razor-thin margins, where a “CISO” might be a stretched administrator with no real authority. Frameworks like NIST CSF are solid, but adoption stalls without clear sequencing, funding, and maturity paths tailored to small teams who can’t take systems down to patch. Jen makes the case for secure-by-design to shift burden upstream to vendors and highlights FDA’s connected medical device program as a model: collaborative, iterative, and capable of real enforcement. We also tackle the rise of class action lawsuits after breaches and how they can discourage disclosure and distort incentives, even as we protect pathways for those who can show genuine harm.</p>
<p>If you care about keeping ICUs open, protecting critical workflows, and helping clinicians deliver safe care under pressure, this conversation is for you. Follow, share with a colleague who works in healthcare, and leave a review with your take: What’s the one change—policy, funding, or vendor accountability—that would most improve patient safety against cyber threats?</p>
]]></description>
    <content:encoded><![CDATA[<p>The alarms aren’t just in the data center anymore. When ransomware shutters clinics and pushes oncology schedules into chaos, the question isn’t “What did they exfiltrate?” It’s “Who didn’t get care?” We sit down with Jen Ellis, founder of NextGen Security and co-chair of the Ransomware Task Force, to unpack how cybersecurity in healthcare became a patient safety issue—and what it will take to keep care running when attackers hit.</p>
<p>Jen takes us inside the pandemic spike in hospital attacks and the wrenching ransom debate, including a parent of a child with cancer willing to remortgage their home to restart treatment. From there we trace the policy ripple effects: international disruption efforts, sanctions, tighter crypto oversight, and the Counter Ransomware Initiative. None of it is a silver bullet, especially as AI lowers the barrier for criminals, but coordinated action is raising attacker costs and forcing them to work harder.</p>
<p>We go beyond headlines to the budget math inside hospitals running on razor-thin margins, where a “CISO” might be a stretched administrator with no real authority. Frameworks like NIST CSF are solid, but adoption stalls without clear sequencing, funding, and maturity paths tailored to small teams who can’t take systems down to patch. Jen makes the case for secure-by-design to shift burden upstream to vendors and highlights FDA’s connected medical device program as a model: collaborative, iterative, and capable of real enforcement. We also tackle the rise of class action lawsuits after breaches and how they can discourage disclosure and distort incentives, even as we protect pathways for those who can show genuine harm.</p>
<p>If you care about keeping ICUs open, protecting critical workflows, and helping clinicians deliver safe care under pressure, this conversation is for you. Follow, share with a colleague who works in healthcare, and leave a review with your take: What’s the one change—policy, funding, or vendor accountability—that would most improve patient safety against cyber threats?</p>
]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2609522/episodes/18994680-episode-21-how-healthcare-cybersecurity-became-a-patient-safety-issue-with-jen-ellis.mp3" length="37346031" type="audio/mpeg" />
    <itunes:author>Dan Dodson</itunes:author>
    <guid isPermaLink="false">cybersurvivorpodcast.podbean.com/b8229a8b-0ce0-3480-807c-8ae2b2e01c42</guid>
    <pubDate>Wed, 26 Nov 2025 23:14:00 -0500</pubDate>
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994680/transcript" type="text/html" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994680/transcript.json" type="application/json" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994680/transcript.srt" type="application/x-subrip" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994680/transcript.vtt" type="text/vtt" />
    <itunes:duration>3108</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>21</itunes:episode>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>Episode 20- From Patients to Products: Cybersecurity Across Sectors. With Brent Yax</itunes:title>
    <title>Episode 20- From Patients to Products: Cybersecurity Across Sectors. With Brent Yax</title>
    <itunes:summary><![CDATA[Cyber threats don’t just steal data—they halt care, cancel clinics, and shake trust. I sat down with Brent Yax, founder and CEO of Aweccom Technologies to unpack the hard truth: today’s attackers are profit-driven, organized, and focused on disrupting operations until we pay. We trace how the threat landscape shifted from amateur mischief to a mature cyber economy, why small and mid-market healthcare organizations are now prime targets, and what actually works to protect patients and keep the...]]></itunes:summary>
    <description><![CDATA[<p class='p1'>Cyber threats don’t just steal data—they halt care, cancel clinics, and shake trust. I sat down with Brent Yax, founder and CEO of Aweccom Technologies to unpack the hard truth: today’s attackers are profit-driven, organized, and focused on disrupting operations until we pay. We trace how the threat landscape shifted from amateur mischief to a mature cyber economy, why small and mid-market healthcare organizations are now prime targets, and what actually works to protect patients and keep the lights on.</p>
<p class='p1'>Brent shares a frontline view of resilience that blends technology, process, and culture. We get practical about where to start—multi-factor authentication, EDR/MDR, verified payment workflows, and realistic incident response plans that restore services fast. We also talk about the messy side of cyber insurance: why policies push the market forward, how ambiguous questionnaires can void coverage, and why IT, risk, and finance must stay aligned as environments change. The throughline is clear: tools are essential, but people and process failures still drive most breaches.</p>
<p class='p1'>We dive into AI’s double edge. On defense, AI helps detect CEO fraud by learning language patterns, flags configuration drift across complex stacks, and surfaces risk right after routine changes. On offense, careless use of public AI can leak protected data in seconds. Frank breaks down smart adoption—enterprise controls, clear data policies, and training that meets people where they are. From there, we zoom out to zero trust: assume compromise, minimize privileges, and verify every identity, including AI agents. It’s a journey, but it shrinks the blast radius and boosts recovery when it matters most.</p>
<p class='p1'>If you care about delivering reliable care in an unreliable world, this conversation gives you a playbook: align the C-suite, test your incident plan, raise your security baseline, and make training universal—especially for executives and help desks. Subscribe, share with a colleague who owns risk, and leave a review with the one control you’re prioritizing next. Your input helps more teams protect patients and stay ready for what’s coming.</p>
]]></description>
    <content:encoded><![CDATA[<p class='p1'>Cyber threats don’t just steal data—they halt care, cancel clinics, and shake trust. I sat down with Brent Yax, founder and CEO of Aweccom Technologies to unpack the hard truth: today’s attackers are profit-driven, organized, and focused on disrupting operations until we pay. We trace how the threat landscape shifted from amateur mischief to a mature cyber economy, why small and mid-market healthcare organizations are now prime targets, and what actually works to protect patients and keep the lights on.</p>
<p class='p1'>Brent shares a frontline view of resilience that blends technology, process, and culture. We get practical about where to start—multi-factor authentication, EDR/MDR, verified payment workflows, and realistic incident response plans that restore services fast. We also talk about the messy side of cyber insurance: why policies push the market forward, how ambiguous questionnaires can void coverage, and why IT, risk, and finance must stay aligned as environments change. The throughline is clear: tools are essential, but people and process failures still drive most breaches.</p>
<p class='p1'>We dive into AI’s double edge. On defense, AI helps detect CEO fraud by learning language patterns, flags configuration drift across complex stacks, and surfaces risk right after routine changes. On offense, careless use of public AI can leak protected data in seconds. Frank breaks down smart adoption—enterprise controls, clear data policies, and training that meets people where they are. From there, we zoom out to zero trust: assume compromise, minimize privileges, and verify every identity, including AI agents. It’s a journey, but it shrinks the blast radius and boosts recovery when it matters most.</p>
<p class='p1'>If you care about delivering reliable care in an unreliable world, this conversation gives you a playbook: align the C-suite, test your incident plan, raise your security baseline, and make training universal—especially for executives and help desks. Subscribe, share with a colleague who owns risk, and leave a review with the one control you’re prioritizing next. Your input helps more teams protect patients and stay ready for what’s coming.</p>
]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2609522/episodes/18994681-episode-20-from-patients-to-products-cybersecurity-across-sectors-with-brent-yax.mp3" length="26364563" type="audio/mpeg" />
    <itunes:author>Dan Dodson</itunes:author>
    <guid isPermaLink="false">cybersurvivorpodcast.podbean.com/22dd993f-2fee-3122-a362-47f588124521</guid>
    <pubDate>Wed, 12 Nov 2025 23:10:00 -0500</pubDate>
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994681/transcript" type="text/html" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994681/transcript.json" type="application/json" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994681/transcript.srt" type="application/x-subrip" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994681/transcript.vtt" type="text/vtt" />
    <itunes:duration>2193</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>20</itunes:episode>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>Episode 19- Building Resilient Cyber Communities in Healthcare: A Conversation with Drex DeFord</itunes:title>
    <title>Episode 19- Building Resilient Cyber Communities in Healthcare: A Conversation with Drex DeFord</title>
    <itunes:summary><![CDATA[Dan Dodson hosts Drex DeFord, a leader in healthcare cybersecurity, to discuss the evolution and current state of cybersecurity in healthcare. Drex shares his career journey from a hospital administrator in the Air Force to leading roles in various healthcare organizations and consulting for tech companies. He describes how the rapid digitization of healthcare, particularly through electronic health record (EHR) adoption and the lack of simultaneous investment in cybersecurity, led to an expa...]]></itunes:summary>
    <description><![CDATA[<p class='p1'>Dan Dodson hosts Drex DeFord, a leader in healthcare cybersecurity, to discuss the evolution and current state of cybersecurity in healthcare. Drex shares his career journey from a hospital administrator in the Air Force to leading roles in various healthcare organizations and consulting for tech companies. He describes how the rapid digitization of healthcare, particularly through electronic health record (EHR) adoption and the lack of simultaneous investment in cybersecurity, led to an expanded risk landscape and new threats like ransomware.</p>
<p class='p1'>The conversation covers the unintended consequences of digitization, including physician burnout, and weighs whether these changes were “worth it”—both agree that overall care has improved. They discuss the rise of artificial intelligence in healthcare, its promise for improving clinical care, and the double-edged sword it presents from a security perspective. Drex emphasizes the importance of organizational awareness, responsible AI adoption, and ongoing education.</p>
<p class='p1'>Another major topic is the creation of strong professional communities (such as the 229 project) where cybersecurity leaders and partners can candidly share challenges and solutions, fostering both personal relationships and collective resilience. Current pressing issues include AI, third-party vendor risk management, and maintaining continuity of care when electronic systems fail. They highlight the challenges of prioritizing essential systems (“minimum viable hospital”) and the political difficulties in governance.</p>
<p class='p1'>Progress is noted in industry awareness, stronger data sharing, and board-level engagement in cybersecurity, but resource constraints and increasing complexity remain challenges. Drex concludes by advocating for ongoing collaboration, fundamentals in security practice, and leveraging technology and communities for better patient outcomes. Listeners are encouraged to connect via the 229 project and related platforms.</p>
]]></description>
    <content:encoded><![CDATA[<p class='p1'>Dan Dodson hosts Drex DeFord, a leader in healthcare cybersecurity, to discuss the evolution and current state of cybersecurity in healthcare. Drex shares his career journey from a hospital administrator in the Air Force to leading roles in various healthcare organizations and consulting for tech companies. He describes how the rapid digitization of healthcare, particularly through electronic health record (EHR) adoption and the lack of simultaneous investment in cybersecurity, led to an expanded risk landscape and new threats like ransomware.</p>
<p class='p1'>The conversation covers the unintended consequences of digitization, including physician burnout, and weighs whether these changes were “worth it”—both agree that overall care has improved. They discuss the rise of artificial intelligence in healthcare, its promise for improving clinical care, and the double-edged sword it presents from a security perspective. Drex emphasizes the importance of organizational awareness, responsible AI adoption, and ongoing education.</p>
<p class='p1'>Another major topic is the creation of strong professional communities (such as the 229 project) where cybersecurity leaders and partners can candidly share challenges and solutions, fostering both personal relationships and collective resilience. Current pressing issues include AI, third-party vendor risk management, and maintaining continuity of care when electronic systems fail. They highlight the challenges of prioritizing essential systems (“minimum viable hospital”) and the political difficulties in governance.</p>
<p class='p1'>Progress is noted in industry awareness, stronger data sharing, and board-level engagement in cybersecurity, but resource constraints and increasing complexity remain challenges. Drex concludes by advocating for ongoing collaboration, fundamentals in security practice, and leveraging technology and communities for better patient outcomes. Listeners are encouraged to connect via the 229 project and related platforms.</p>
]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2609522/episodes/18994682-episode-19-building-resilient-cyber-communities-in-healthcare-a-conversation-with-drex-deford.mp3" length="32144336" type="audio/mpeg" />
    <itunes:author>Dan Dodson</itunes:author>
    <guid isPermaLink="false">cybersurvivorpodcast.podbean.com/804f7618-3a75-39ea-bc37-3dd44e5099ce</guid>
    <pubDate>Wed, 29 Oct 2025 23:05:00 -0400</pubDate>
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994682/transcript" type="text/html" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994682/transcript.json" type="application/json" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994682/transcript.srt" type="application/x-subrip" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994682/transcript.vtt" type="text/vtt" />
    <itunes:duration>2675</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>19</itunes:episode>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>Episode 18- Bridging Talent Gaps: Educating the Next Cyber Warriors</itunes:title>
    <title>Episode 18- Bridging Talent Gaps: Educating the Next Cyber Warriors</title>
    <itunes:summary><![CDATA[Dan Dodson interviews Dr. Bradley Fowler, author of “Cybersecurity Leadership for Healthcare Organizations and Institutions of Higher Education,” discussing the pressing cybersecurity workforce shortages and the role of education and leadership in addressing risks. Dr. Fowler shares insights from his research, emphasizing human error as a major cause of breaches and the critical need for robust policy compliance and updated training in healthcare. He introduces frameworks that support risk ma...]]></itunes:summary>
    <description><![CDATA[<p>Dan Dodson interviews Dr. Bradley Fowler, author of “Cybersecurity Leadership for Healthcare Organizations and Institutions of Higher Education,” discussing the pressing cybersecurity workforce shortages and the role of education and leadership in addressing risks. Dr. Fowler shares insights from his research, emphasizing human error as a major cause of breaches and the critical need for robust policy compliance and updated training in healthcare. He introduces frameworks that support risk management and highlights collaboration, ongoing education, and the integration of industrial-organizational psychology as central to effective cybersecurity. His book is intended for IT professionals, managers, and anyone leveraging technology in modern workplaces .</p>
]]></description>
    <content:encoded><![CDATA[<p>Dan Dodson interviews Dr. Bradley Fowler, author of “Cybersecurity Leadership for Healthcare Organizations and Institutions of Higher Education,” discussing the pressing cybersecurity workforce shortages and the role of education and leadership in addressing risks. Dr. Fowler shares insights from his research, emphasizing human error as a major cause of breaches and the critical need for robust policy compliance and updated training in healthcare. He introduces frameworks that support risk management and highlights collaboration, ongoing education, and the integration of industrial-organizational psychology as central to effective cybersecurity. His book is intended for IT professionals, managers, and anyone leveraging technology in modern workplaces .</p>
]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2609522/episodes/18994683-episode-18-bridging-talent-gaps-educating-the-next-cyber-warriors.mp3" length="19961292" type="audio/mpeg" />
    <itunes:author>Dan Dodson</itunes:author>
    <guid isPermaLink="false">cybersurvivorpodcast.podbean.com/a17dc119-cbc0-30fa-af3b-a0d13fb5b45b</guid>
    <pubDate>Wed, 15 Oct 2025 23:05:00 -0400</pubDate>
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994683/transcript" type="text/html" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994683/transcript.json" type="application/json" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994683/transcript.srt" type="application/x-subrip" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994683/transcript.vtt" type="text/vtt" />
    <itunes:duration>1660</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>18</itunes:episode>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>Episode 17- Fundamentals Over Flash: Five Cyber Lessons From Healthcare’s Frontline</itunes:title>
    <title>Episode 17- Fundamentals Over Flash: Five Cyber Lessons From Healthcare’s Frontline</title>
    <itunes:summary><![CDATA[This episode distills memorable insights from six months of interviews with healthcare cybersecurity leaders and clinicians. The five lessons: focus on fundamentals over flashy tech (Phil Alexander), ensure leadership at all levels (Chrissi Maguire), rely on preparation and people during outages (Katrina Brown), recognize every cyber event as a patient safety issue (Dr. Jeffery Tully), and cultivate strong governance and organizational culture (Stephen Ramirez). These frontline stories emphas...]]></itunes:summary>
    <description><![CDATA[<p>This episode distills memorable insights from six months of interviews with healthcare cybersecurity leaders and clinicians. The five lessons: focus on fundamentals over flashy tech (Phil Alexander), ensure leadership at all levels (Chrissi Maguire), rely on preparation and people during outages (Katrina Brown), recognize every cyber event as a patient safety issue (Dr. Jeffery Tully), and cultivate strong governance and organizational culture (Stephen Ramirez). These frontline stories emphasize that effective cybersecurity in healthcare is built on resilience, teamwork, and a relentless commitment to patient safety and organizational culture.</p>
]]></description>
    <content:encoded><![CDATA[<p>This episode distills memorable insights from six months of interviews with healthcare cybersecurity leaders and clinicians. The five lessons: focus on fundamentals over flashy tech (Phil Alexander), ensure leadership at all levels (Chrissi Maguire), rely on preparation and people during outages (Katrina Brown), recognize every cyber event as a patient safety issue (Dr. Jeffery Tully), and cultivate strong governance and organizational culture (Stephen Ramirez). These frontline stories emphasize that effective cybersecurity in healthcare is built on resilience, teamwork, and a relentless commitment to patient safety and organizational culture.</p>
]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2609522/episodes/18994684-episode-17-fundamentals-over-flash-five-cyber-lessons-from-healthcare-s-frontline.mp3" length="10607711" type="audio/mpeg" />
    <itunes:author>Dan Dodson</itunes:author>
    <guid isPermaLink="false">cybersurvivorpodcast.podbean.com/5c3beb41-0e2a-359d-a9ee-4e141e60ea81</guid>
    <pubDate>Wed, 01 Oct 2025 23:01:00 -0400</pubDate>
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994684/transcript" type="text/html" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994684/transcript.json" type="application/json" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994684/transcript.srt" type="application/x-subrip" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994684/transcript.vtt" type="text/vtt" />
    <itunes:duration>880</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>17</itunes:episode>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>Episode 16-Cybersecurity in the Age of AI and Automated Medicine. With Dr. Ali Dehghantanha</itunes:title>
    <title>Episode 16-Cybersecurity in the Age of AI and Automated Medicine. With Dr. Ali Dehghantanha</title>
    <itunes:summary><![CDATA[What happens when artificial intelligence starts making healthcare decisions faster than humans can review them? Dr. Ali Dehghantanha’s Professor and Canadian Research Chair in Cybersecurity and Threat Intelligence, takes us on a fascinating journey through the evolving landscape of healthcare cybersecurity where self-healing AI systems may soon become our frontline defenders. 
The cybersecurity battlefield shifts constantly. From database security to cloud protection to today's AI systems, D...]]></itunes:summary>
    <description><![CDATA[<p>What happens when artificial intelligence starts making healthcare decisions faster than humans can review them? Dr. Ali Dehghantanha’s Professor and Canadian Research Chair in Cybersecurity and Threat Intelligence, takes us on a fascinating journey through the evolving landscape of healthcare cybersecurity where self-healing AI systems may soon become our frontline defenders.</p>
<p>The cybersecurity battlefield shifts constantly. From database security to cloud protection to today&apos;s AI systems, Dr. Dehghantanha explains why &quot;the only thing constant in cybersecurity is change.&quot; This rapid evolution creates unique challenges for healthcare organizations trying to protect patient data while embracing transformative technologies. As healthcare increasingly relies on AI for clinical decision support, the cybersecurity stakes have never been higher.</p>
<p>Dr. Dehghantanha’s groundbreaking research focuses on self-healing AI systems that automatically detect and repair vulnerabilities without human intervention. This capability becomes critical in healthcare environments where AI analyzes clinical data and makes treatment recommendations at speeds beyond human oversight capabilities. The self-healing component provides essential guardrails against potentially harmful decisions that exceed the system&apos;s design parameters.</p>
<p>Cultural and socioeconomic factors significantly influence AI adoption in healthcare. Less-regulated regions and underserved communities often embrace AI healthcare solutions more readily when traditional medical resources are scarce. This accelerates adoption but raises critical questions about verification and potential exploitation by adversaries. As patients increasingly trust AI-generated medical advice, these systems become prime targets for sophisticated cyberattacks that could manipulate clinical recommendations.</p>
<p>Join us for this thought-provoking conversation about the delicate balance between AI innovation and security in healthcare. Dr. Ali challenges us to consider not just how we implement AI, but how we protect these systems when they become responsible for life-or-death decisions. The future of healthcare cybersecurity lies at this intersection of human expertise, artificial intelligence, and robust security frameworks.</p>
]]></description>
    <content:encoded><![CDATA[<p>What happens when artificial intelligence starts making healthcare decisions faster than humans can review them? Dr. Ali Dehghantanha’s Professor and Canadian Research Chair in Cybersecurity and Threat Intelligence, takes us on a fascinating journey through the evolving landscape of healthcare cybersecurity where self-healing AI systems may soon become our frontline defenders.</p>
<p>The cybersecurity battlefield shifts constantly. From database security to cloud protection to today&apos;s AI systems, Dr. Dehghantanha explains why &quot;the only thing constant in cybersecurity is change.&quot; This rapid evolution creates unique challenges for healthcare organizations trying to protect patient data while embracing transformative technologies. As healthcare increasingly relies on AI for clinical decision support, the cybersecurity stakes have never been higher.</p>
<p>Dr. Dehghantanha’s groundbreaking research focuses on self-healing AI systems that automatically detect and repair vulnerabilities without human intervention. This capability becomes critical in healthcare environments where AI analyzes clinical data and makes treatment recommendations at speeds beyond human oversight capabilities. The self-healing component provides essential guardrails against potentially harmful decisions that exceed the system&apos;s design parameters.</p>
<p>Cultural and socioeconomic factors significantly influence AI adoption in healthcare. Less-regulated regions and underserved communities often embrace AI healthcare solutions more readily when traditional medical resources are scarce. This accelerates adoption but raises critical questions about verification and potential exploitation by adversaries. As patients increasingly trust AI-generated medical advice, these systems become prime targets for sophisticated cyberattacks that could manipulate clinical recommendations.</p>
<p>Join us for this thought-provoking conversation about the delicate balance between AI innovation and security in healthcare. Dr. Ali challenges us to consider not just how we implement AI, but how we protect these systems when they become responsible for life-or-death decisions. The future of healthcare cybersecurity lies at this intersection of human expertise, artificial intelligence, and robust security frameworks.</p>
]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2609522/episodes/18994685-episode-16-cybersecurity-in-the-age-of-ai-and-automated-medicine-with-dr-ali-dehghantanha.mp3" length="25282170" type="audio/mpeg" />
    <itunes:author>Dan Dodson</itunes:author>
    <guid isPermaLink="false">cybersurvivorpodcast.podbean.com/071e6462-c9bb-3064-aee8-ed085a30ec58</guid>
    <pubDate>Wed, 17 Sep 2025 23:33:00 -0400</pubDate>
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994685/transcript" type="text/html" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994685/transcript.json" type="application/json" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994685/transcript.srt" type="application/x-subrip" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994685/transcript.vtt" type="text/vtt" />
    <itunes:duration>2103</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>16</itunes:episode>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>Episode 15- Inside the Ransomware Negotiation Room with T.J. Ramsey</itunes:title>
    <title>Episode 15- Inside the Ransomware Negotiation Room with T.J. Ramsey</title>
    <itunes:summary><![CDATA[Dan Dodson and cybersecurity expert T.J. Ramsey discussed the escalation of ransomware attacks in healthcare, emphasizing that ransomware is a form of extortion malware used primarily for financial gain, with attackers operating like organized crime syndicates. Ramsey traced his journey from military intelligence to cybersecurity, explained the operational and financial pressures making healthcare a vulnerable target, and described the typical sequence and negotiation process of a ransomware ...]]></itunes:summary>
    <description><![CDATA[<p>Dan Dodson and cybersecurity expert T.J. Ramsey discussed the escalation of ransomware attacks in healthcare, emphasizing that ransomware is a form of extortion malware used primarily for financial gain, with attackers operating like organized crime syndicates. Ramsey traced his journey from military intelligence to cybersecurity, explained the operational and financial pressures making healthcare a vulnerable target, and described the typical sequence and negotiation process of a ransomware attack—from initial triage and threat actor communications to the challenges in paying ransoms. Throughout, both stressed patient safety, expectation management, and the emotional toll on executives during crises.</p>
]]></description>
    <content:encoded><![CDATA[<p>Dan Dodson and cybersecurity expert T.J. Ramsey discussed the escalation of ransomware attacks in healthcare, emphasizing that ransomware is a form of extortion malware used primarily for financial gain, with attackers operating like organized crime syndicates. Ramsey traced his journey from military intelligence to cybersecurity, explained the operational and financial pressures making healthcare a vulnerable target, and described the typical sequence and negotiation process of a ransomware attack—from initial triage and threat actor communications to the challenges in paying ransoms. Throughout, both stressed patient safety, expectation management, and the emotional toll on executives during crises.</p>
]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2609522/episodes/18994686-episode-15-inside-the-ransomware-negotiation-room-with-t-j-ramsey.mp3" length="29463803" type="audio/mpeg" />
    <itunes:author>Dan Dodson</itunes:author>
    <guid isPermaLink="false">cybersurvivorpodcast.podbean.com/a24ca74b-a9b9-3fb2-bfb1-31ffa37cb116</guid>
    <pubDate>Thu, 04 Sep 2025 02:00:00 -0400</pubDate>
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994686/transcript" type="text/html" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994686/transcript.json" type="application/json" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994686/transcript.srt" type="application/x-subrip" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994686/transcript.vtt" type="text/vtt" />
    <itunes:duration>2451</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>15</itunes:episode>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>Episode 14- Patient Care Meets the Digital Battlefield: How frontline healthcare workers confront the unseen threats of cyberattacks and defend patient well-being.</itunes:title>
    <title>Episode 14- Patient Care Meets the Digital Battlefield: How frontline healthcare workers confront the unseen threats of cyberattacks and defend patient well-being.</title>
    <itunes:summary><![CDATA[Dr. Jeff Tulley, a board-certified physician and co-director of the UCSD Center for Healthcare Cybersecurity, discusses the intersection of healthcare and cybersecurity. He highlights the benefits of digitization in healthcare, such as clinical decision support and interoperability, but also acknowledges the increased attack surface. Tulley's research focuses on the impact of technology failures on patient outcomes, particularly during ransomware attacks. He emphasizes the need for resilience...]]></itunes:summary>
    <description><![CDATA[<p>Dr. Jeff Tulley, a board-certified physician and co-director of the UCSD Center for Healthcare Cybersecurity, discusses the intersection of healthcare and cybersecurity. He highlights the benefits of digitization in healthcare, such as clinical decision support and interoperability, but also acknowledges the increased attack surface. Tulley&apos;s research focuses on the impact of technology failures on patient outcomes, particularly during ransomware attacks. He emphasizes the need for resilience in clinical settings and the importance of evidence-based cybersecurity practices. Tulley also discusses the challenges of phishing training effectiveness and the potential of AI in both clinical and cybersecurity contexts.</p>
<p>Our center website:<a href=''>  https://cyberhealth.ucsd.edu/</a></p>
<p>Our October Academic Symposium registration page: <a href='https://cyberhealth.ucsd.edu/events/2025-academic-symposium/index.html'>https://cyberhealth.ucsd.edu/events/2025-academic-symposium/index.html</a> </p>
]]></description>
    <content:encoded><![CDATA[<p>Dr. Jeff Tulley, a board-certified physician and co-director of the UCSD Center for Healthcare Cybersecurity, discusses the intersection of healthcare and cybersecurity. He highlights the benefits of digitization in healthcare, such as clinical decision support and interoperability, but also acknowledges the increased attack surface. Tulley&apos;s research focuses on the impact of technology failures on patient outcomes, particularly during ransomware attacks. He emphasizes the need for resilience in clinical settings and the importance of evidence-based cybersecurity practices. Tulley also discusses the challenges of phishing training effectiveness and the potential of AI in both clinical and cybersecurity contexts.</p>
<p>Our center website:<a href=''>  https://cyberhealth.ucsd.edu/</a></p>
<p>Our October Academic Symposium registration page: <a href='https://cyberhealth.ucsd.edu/events/2025-academic-symposium/index.html'>https://cyberhealth.ucsd.edu/events/2025-academic-symposium/index.html</a> </p>
]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2609522/episodes/18994687-episode-14-patient-care-meets-the-digital-battlefield-how-frontline-healthcare-workers-confront-the-unseen-threats-of-cyberattacks-and-defend-patient-well-being.mp3" length="36669089" type="audio/mpeg" />
    <itunes:author>Dan Dodson</itunes:author>
    <guid isPermaLink="false">cybersurvivorpodcast.podbean.com/e2555c95-9538-334b-ae45-2d385d2356a4</guid>
    <pubDate>Wed, 20 Aug 2025 23:05:00 -0400</pubDate>
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994687/transcript" type="text/html" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994687/transcript.json" type="application/json" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994687/transcript.srt" type="application/x-subrip" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994687/transcript.vtt" type="text/vtt" />
    <itunes:duration>3052</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>14</itunes:episode>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>Episode 13- A Former FBI Agent&#39;s Deep Dive into Digital Defense with Scott Augenbaum</itunes:title>
    <title>Episode 13- A Former FBI Agent&#39;s Deep Dive into Digital Defense with Scott Augenbaum</title>
    <itunes:summary><![CDATA[Join us in this compelling episode of the Cyber Security Podcast as we sit down with Scott Augenbaum, a former FBI agent with a distinguished career in cybersecurity spanning back to 1988. 
Augenbaum takes us on a fascinating journey through the evolution of cybercrime, from its early days of thrill-seeking individuals to today's highly organized and sophisticated transnational threats. He reveals the stark reality of cybercrime's massive escalation, now a staggering $10 trillion global probl...]]></itunes:summary>
    <description><![CDATA[<p>Join us in this compelling episode of the Cyber Security Podcast as we sit down with Scott Augenbaum, a former FBI agent with a distinguished career in cybersecurity spanning back to 1988.</p>
<p>Augenbaum takes us on a fascinating journey through the evolution of cybercrime, from its early days of thrill-seeking individuals to today&apos;s highly organized and sophisticated transnational threats. He reveals the stark reality of cybercrime&apos;s massive escalation, now a staggering $10 trillion global problem, and sheds light on the significant hurdles law enforcement faces in recovering stolen data.</p>
<p>Discover why proactive measures are paramount in protecting yourself and your organization. Augenbaum stresses the critical importance of simple yet effective steps like freezing your credit and enabling two-factor authentication. He passionately advocates for better end-user education and the seamless integration of cybersecurity into organizational culture as fundamental defenses against relentless cyberattacks.</p>
<p>We also explore the burgeoning role of Artificial Intelligence in amplifying cyber threats and the absolute necessity of robust personal cybersecurity measures in our increasingly digital world. Don&apos;t miss this insightful conversation that will empower you to better understand and defend against the ever-present dangers of the cyber landscape.</p>
]]></description>
    <content:encoded><![CDATA[<p>Join us in this compelling episode of the Cyber Security Podcast as we sit down with Scott Augenbaum, a former FBI agent with a distinguished career in cybersecurity spanning back to 1988.</p>
<p>Augenbaum takes us on a fascinating journey through the evolution of cybercrime, from its early days of thrill-seeking individuals to today&apos;s highly organized and sophisticated transnational threats. He reveals the stark reality of cybercrime&apos;s massive escalation, now a staggering $10 trillion global problem, and sheds light on the significant hurdles law enforcement faces in recovering stolen data.</p>
<p>Discover why proactive measures are paramount in protecting yourself and your organization. Augenbaum stresses the critical importance of simple yet effective steps like freezing your credit and enabling two-factor authentication. He passionately advocates for better end-user education and the seamless integration of cybersecurity into organizational culture as fundamental defenses against relentless cyberattacks.</p>
<p>We also explore the burgeoning role of Artificial Intelligence in amplifying cyber threats and the absolute necessity of robust personal cybersecurity measures in our increasingly digital world. Don&apos;t miss this insightful conversation that will empower you to better understand and defend against the ever-present dangers of the cyber landscape.</p>
]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2609522/episodes/18994688-episode-13-a-former-fbi-agent-s-deep-dive-into-digital-defense-with-scott-augenbaum.mp3" length="38573885" type="audio/mpeg" />
    <itunes:author>Dan Dodson</itunes:author>
    <guid isPermaLink="false">cybersurvivorpodcast.podbean.com/d1319e55-eed2-37dc-b86d-7231982f5352</guid>
    <pubDate>Wed, 06 Aug 2025 23:05:00 -0400</pubDate>
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994688/transcript" type="text/html" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994688/transcript.json" type="application/json" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994688/transcript.srt" type="application/x-subrip" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994688/transcript.vtt" type="text/vtt" />
    <itunes:duration>3211</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>13</itunes:episode>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>Episode 12- The Unsung Heroes of Downtime: A Hospital&#39;s Cyber Resilience- With Katrina Brown.</itunes:title>
    <title>Episode 12- The Unsung Heroes of Downtime: A Hospital&#39;s Cyber Resilience- With Katrina Brown.</title>
    <itunes:summary><![CDATA[In this episode,  Chief Nursing Officer Katrina Brown recounts her experience managing a cyberattack at USA Health Providence Hospital. The attack severely impacted the hospital's Electronic Medical Records (EMR) and other critical systems, leading to a significant decrease in efficiency and a necessary reduction in patient census. Brown highlights the crucial role of strong leadership and well-practiced downtime procedures, noting the unexpected challenges like nurses' inability to read...]]></itunes:summary>
    <description><![CDATA[<p>In this episode,  Chief Nursing Officer Katrina Brown recounts her experience managing a cyberattack at USA Health Providence Hospital. The attack severely impacted the hospital&apos;s Electronic Medical Records (EMR) and other critical systems, leading to a significant decrease in efficiency and a necessary reduction in patient census. Brown highlights the crucial role of strong leadership and well-practiced downtime procedures, noting the unexpected challenges like nurses&apos; inability to read cursive doctor&apos;s orders and the use of cowbells as a call light system. Despite the month-long disruption, the hospital maintained patient safety with no serious incidents. The community&apos;s self-diversion to other hospitals was an unforeseen outcome, and patient trust was quickly regained post-recovery. Brown emphasizes that the benefits of digitized healthcare outweigh the cyber risks, advocating for robust preparation and frequent downtime drills for all healthcare organizations.</p>
]]></description>
    <content:encoded><![CDATA[<p>In this episode,  Chief Nursing Officer Katrina Brown recounts her experience managing a cyberattack at USA Health Providence Hospital. The attack severely impacted the hospital&apos;s Electronic Medical Records (EMR) and other critical systems, leading to a significant decrease in efficiency and a necessary reduction in patient census. Brown highlights the crucial role of strong leadership and well-practiced downtime procedures, noting the unexpected challenges like nurses&apos; inability to read cursive doctor&apos;s orders and the use of cowbells as a call light system. Despite the month-long disruption, the hospital maintained patient safety with no serious incidents. The community&apos;s self-diversion to other hospitals was an unforeseen outcome, and patient trust was quickly regained post-recovery. Brown emphasizes that the benefits of digitized healthcare outweigh the cyber risks, advocating for robust preparation and frequent downtime drills for all healthcare organizations.</p>
]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2609522/episodes/18994689-episode-12-the-unsung-heroes-of-downtime-a-hospital-s-cyber-resilience-with-katrina-brown.mp3" length="20301145" type="audio/mpeg" />
    <itunes:author>Dan Dodson</itunes:author>
    <guid isPermaLink="false">cybersurvivorpodcast.podbean.com/f35b7a0f-3a97-3767-b478-7cac72e10f59</guid>
    <pubDate>Wed, 23 Jul 2025 23:01:00 -0400</pubDate>
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994689/transcript" type="text/html" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994689/transcript.json" type="application/json" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994689/transcript.srt" type="application/x-subrip" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994689/transcript.vtt" type="text/vtt" />
    <itunes:duration>1688</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>12</itunes:episode>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>Episode 11- The Evolution of Healthcare Security: Insights from Steven Ramirez</itunes:title>
    <title>Episode 11- The Evolution of Healthcare Security: Insights from Steven Ramirez</title>
    <itunes:summary><![CDATA[In this episode of Cyber Survivor host Dan Dodson interviews Steven Ramirez, Chief Information Security and Technology Officer at Renown Health. They discuss the evolution of healthcare cybersecurity over the past decade, emphasizing increased funding, improved identity management, and the importance of governance. Ramirez highlights the growing threat of social engineering and AI-fueled attacks, stressing proactive education and advanced safeguards. They explore third-party risk management, ...]]></itunes:summary>
    <description><![CDATA[<p class='p1'>In this episode of Cyber Survivor host Dan Dodson interviews Steven Ramirez, Chief Information Security and Technology Officer at Renown Health. They discuss the evolution of healthcare cybersecurity over the past decade, emphasizing increased funding, improved identity management, and the importance of governance. Ramirez highlights the growing threat of social engineering and AI-fueled attacks, stressing proactive education and advanced safeguards. They explore third-party risk management, emphasizing partnership and resilience planning. Ramirez advocates for integrating security into organizational culture, expanding the CISO role, and focusing on fundamental practices like identity hygiene, access controls, and collaboration. The discussion underscores that cybersecurity is vital for safeguarding patient care and system availability.</p>
]]></description>
    <content:encoded><![CDATA[<p class='p1'>In this episode of Cyber Survivor host Dan Dodson interviews Steven Ramirez, Chief Information Security and Technology Officer at Renown Health. They discuss the evolution of healthcare cybersecurity over the past decade, emphasizing increased funding, improved identity management, and the importance of governance. Ramirez highlights the growing threat of social engineering and AI-fueled attacks, stressing proactive education and advanced safeguards. They explore third-party risk management, emphasizing partnership and resilience planning. Ramirez advocates for integrating security into organizational culture, expanding the CISO role, and focusing on fundamental practices like identity hygiene, access controls, and collaboration. The discussion underscores that cybersecurity is vital for safeguarding patient care and system availability.</p>
]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2609522/episodes/18994690-episode-11-the-evolution-of-healthcare-security-insights-from-steven-ramirez.mp3" length="32443665" type="audio/mpeg" />
    <itunes:author>Dan Dodson</itunes:author>
    <guid isPermaLink="false">cybersurvivorpodcast.podbean.com/13698354-8c67-381d-8e84-0a28735b860c</guid>
    <pubDate>Wed, 09 Jul 2025 23:51:24 -0400</pubDate>
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994690/transcript" type="text/html" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994690/transcript.json" type="application/json" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994690/transcript.srt" type="application/x-subrip" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994690/transcript.vtt" type="text/vtt" />
    <itunes:duration>2700</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>11</itunes:episode>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>Episode 10- Preparing for the Worst: Lessons on Cyber Defense from a Hospital CEO. with Chrissi Maguire</itunes:title>
    <title>Episode 10- Preparing for the Worst: Lessons on Cyber Defense from a Hospital CEO. with Chrissi Maguire</title>
    <itunes:summary><![CDATA[In this episode, Chrissi Maguire, CEO of Mount Desert Island Hospital, shares insights on the evolution of healthcare cybersecurity, emphasizing the importance of investments in security infrastructure, staff training, and leadership engagement. She recounts a recent cyber incident, highlighting the swift response, collaboration, and system safeguards that minimized patient care disruption. Maguire underscores the necessity of ongoing awareness, board involvement, and proactive measures like ...]]></itunes:summary>
    <description><![CDATA[<p>In this episode, Chrissi Maguire, CEO of Mount Desert Island Hospital, shares insights on the evolution of healthcare cybersecurity, emphasizing the importance of investments in security infrastructure, staff training, and leadership engagement. She recounts a recent cyber incident, highlighting the swift response, collaboration, and system safeguards that minimized patient care disruption. Maguire underscores the necessity of ongoing awareness, board involvement, and proactive measures like cyber insurance and penetration testing, urging CEOs to prioritize cybersecurity as vital to healthcare delivery.</p>
]]></description>
    <content:encoded><![CDATA[<p>In this episode, Chrissi Maguire, CEO of Mount Desert Island Hospital, shares insights on the evolution of healthcare cybersecurity, emphasizing the importance of investments in security infrastructure, staff training, and leadership engagement. She recounts a recent cyber incident, highlighting the swift response, collaboration, and system safeguards that minimized patient care disruption. Maguire underscores the necessity of ongoing awareness, board involvement, and proactive measures like cyber insurance and penetration testing, urging CEOs to prioritize cybersecurity as vital to healthcare delivery.</p>
]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2609522/episodes/18994691-episode-10-preparing-for-the-worst-lessons-on-cyber-defense-from-a-hospital-ceo-with-chrissi-maguire.mp3" length="33529887" type="audio/mpeg" />
    <itunes:author>Dan Dodson</itunes:author>
    <guid isPermaLink="false">cybersurvivorpodcast.podbean.com/4d062191-80b4-3b8d-bdac-6a8de34c5a07</guid>
    <pubDate>Wed, 25 Jun 2025 22:18:00 -0400</pubDate>
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994691/transcript" type="text/html" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994691/transcript.json" type="application/json" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994691/transcript.srt" type="application/x-subrip" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994691/transcript.vtt" type="text/vtt" />
    <itunes:duration>2790</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>10</itunes:episode>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>Episode 9- Two Weeks to Recovery: A Hospital&#39;s Cyber Comeback Story-With James Edgell and Daniel Colon</itunes:title>
    <title>Episode 9- Two Weeks to Recovery: A Hospital&#39;s Cyber Comeback Story-With James Edgell and Daniel Colon</title>
    <itunes:summary><![CDATA[This episode of Cyber Survivor focuses on the action taken after a cyber security attack at a hospital in the Northeast.  Host Dan Dodson interviews IT experts James Edgell and Dan Colon, who share their experiences handling cybersecurity challenges during that episode. They discuss the aftermath of a cyber incident, improvements in security measures, and the importance of maintaining strong cybersecurity practices. The conversation highlights the need for ongoing investment, effective c...]]></itunes:summary>
    <description><![CDATA[<p>This episode of Cyber Survivor focuses on the action taken after a cyber security attack at a hospital in the Northeast.  Host Dan Dodson interviews IT experts James Edgell and Dan Colon, who share their experiences handling cybersecurity challenges during that episode. They discuss the aftermath of a cyber incident, improvements in security measures, and the importance of maintaining strong cybersecurity practices. The conversation highlights the need for ongoing investment, effective communication, and collaboration to protect healthcare systems from evolving cyber threats. Ultimately, the podcast emphasizes that cybersecurity is crucial for safeguarding both data and patients.</p>
]]></description>
    <content:encoded><![CDATA[<p>This episode of Cyber Survivor focuses on the action taken after a cyber security attack at a hospital in the Northeast.  Host Dan Dodson interviews IT experts James Edgell and Dan Colon, who share their experiences handling cybersecurity challenges during that episode. They discuss the aftermath of a cyber incident, improvements in security measures, and the importance of maintaining strong cybersecurity practices. The conversation highlights the need for ongoing investment, effective communication, and collaboration to protect healthcare systems from evolving cyber threats. Ultimately, the podcast emphasizes that cybersecurity is crucial for safeguarding both data and patients.</p>
]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2609522/episodes/18994692-episode-9-two-weeks-to-recovery-a-hospital-s-cyber-comeback-story-with-james-edgell-and-daniel-colon.mp3" length="25605065" type="audio/mpeg" />
    <itunes:author>Dan Dodson</itunes:author>
    <guid isPermaLink="false">cybersurvivorpodcast.podbean.com/5d3da66e-2935-34a7-86df-853868147c71</guid>
    <pubDate>Wed, 11 Jun 2025 23:01:00 -0400</pubDate>
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994692/transcript" type="text/html" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994692/transcript.json" type="application/json" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994692/transcript.srt" type="application/x-subrip" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994692/transcript.vtt" type="text/vtt" />
    <itunes:duration>2130</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>9</itunes:episode>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>Episode 8-  Ransomed Healthcare: Balancing Patient Safety and Cyber Defense. With Thomas Ritter</itunes:title>
    <title>Episode 8-  Ransomed Healthcare: Balancing Patient Safety and Cyber Defense. With Thomas Ritter</title>
    <itunes:summary><![CDATA[In this Cyber Survivor podcast episode, host Dan Dodson discusses with Thomas Ritter the evolving cybersecurity landscape, emphasizing ransomware and its increasing complexity. Ritter, a privacy and cybersecurity attorney, highlights the human impact of breaches, especially in healthcare, where technology's over-reliance raises patient safety concerns. The conversation explores preparedness, third-party risks, and the necessity of proactive strategies in mitigating cyber threats. They stress ...]]></itunes:summary>
    <description><![CDATA[<p>In this Cyber Survivor podcast episode, host Dan Dodson discusses with Thomas Ritter the evolving cybersecurity landscape, emphasizing ransomware and its increasing complexity. Ritter, a privacy and cybersecurity attorney, highlights the human impact of breaches, especially in healthcare, where technology&apos;s over-reliance raises patient safety concerns. The conversation explores preparedness, third-party risks, and the necessity of proactive strategies in mitigating cyber threats. They stress the importance of human involvement in cybersecurity, urging organizations to prioritize training, resilience, and comprehensive planning to protect patient care and safety effectively.</p>
]]></description>
    <content:encoded><![CDATA[<p>In this Cyber Survivor podcast episode, host Dan Dodson discusses with Thomas Ritter the evolving cybersecurity landscape, emphasizing ransomware and its increasing complexity. Ritter, a privacy and cybersecurity attorney, highlights the human impact of breaches, especially in healthcare, where technology&apos;s over-reliance raises patient safety concerns. The conversation explores preparedness, third-party risks, and the necessity of proactive strategies in mitigating cyber threats. They stress the importance of human involvement in cybersecurity, urging organizations to prioritize training, resilience, and comprehensive planning to protect patient care and safety effectively.</p>
]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2609522/episodes/18994693-episode-8-ransomed-healthcare-balancing-patient-safety-and-cyber-defense-with-thomas-ritter.mp3" length="27147947" type="audio/mpeg" />
    <itunes:author>Dan Dodson</itunes:author>
    <guid isPermaLink="false">cybersurvivorpodcast.podbean.com/e98b9623-fc01-3013-9d4e-722dc412406e</guid>
    <pubDate>Thu, 05 Jun 2025 11:47:27 -0400</pubDate>
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994693/transcript" type="text/html" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994693/transcript.json" type="application/json" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994693/transcript.srt" type="application/x-subrip" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994693/transcript.vtt" type="text/vtt" />
    <itunes:duration>2258</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>6</itunes:episode>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>Episode 7- Identity Theft and Hospital Hacks: A Clinician&#39;s Tale.  With Donald Neal</itunes:title>
    <title>Episode 7- Identity Theft and Hospital Hacks: A Clinician&#39;s Tale.  With Donald Neal</title>
    <itunes:summary><![CDATA[In this episode of "Cyber Survivor," host Dan Dotson converses with Donald Neal, a seasoned CRNA, about the significant impacts of cybersecurity breaches on healthcare. Donald recounts his journey from paper to electronic medical records and shares a personal ordeal with identity theft due to a security breach. He discusses how cyber incidents disrupt clinical operations, highlighting the challenges posed by technological reliance. Donald emphasizes the importance of cybersecurity training an...]]></itunes:summary>
    <description><![CDATA[<p>In this episode of &quot;Cyber Survivor,&quot; host Dan Dotson converses with Donald Neal, a seasoned CRNA, about the significant impacts of cybersecurity breaches on healthcare. Donald recounts his journey from paper to electronic medical records and shares a personal ordeal with identity theft due to a security breach. He discusses how cyber incidents disrupt clinical operations, highlighting the challenges posed by technological reliance. Donald emphasizes the importance of cybersecurity training and awareness in safeguarding sensitive patient information and stresses collective vigilance in navigating the digital healthcare landscape.</p>
]]></description>
    <content:encoded><![CDATA[<p>In this episode of &quot;Cyber Survivor,&quot; host Dan Dotson converses with Donald Neal, a seasoned CRNA, about the significant impacts of cybersecurity breaches on healthcare. Donald recounts his journey from paper to electronic medical records and shares a personal ordeal with identity theft due to a security breach. He discusses how cyber incidents disrupt clinical operations, highlighting the challenges posed by technological reliance. Donald emphasizes the importance of cybersecurity training and awareness in safeguarding sensitive patient information and stresses collective vigilance in navigating the digital healthcare landscape.</p>
]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2609522/episodes/18994694-episode-7-identity-theft-and-hospital-hacks-a-clinician-s-tale-with-donald-neal.mp3" length="19183920" type="audio/mpeg" />
    <itunes:author>Dan Dodson</itunes:author>
    <guid isPermaLink="false">cybersurvivorpodcast.podbean.com/a0854e13-238b-3176-adc5-aa925b0c4d62</guid>
    <pubDate>Wed, 21 May 2025 20:10:17 -0400</pubDate>
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994694/transcript" type="text/html" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994694/transcript.json" type="application/json" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994694/transcript.srt" type="application/x-subrip" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994694/transcript.vtt" type="text/vtt" />
    <itunes:duration>1595</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>7</itunes:episode>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>Episode 6- Cyber Challenges in Medicine: A Conversation with Kathie Philippou</itunes:title>
    <title>Episode 6- Cyber Challenges in Medicine: A Conversation with Kathie Philippou</title>
    <itunes:summary><![CDATA[In this episode of Cyber Survivor, host Dan Dodson speaks with Kathie Philippou, who has 40 years of experience in practice management. Kathie shares her journey from humble beginnings in healthcare administration to navigating the digital transformation of medical practices. She discusses the challenges of implementing electronic medical records and the increasing burden of cybersecurity and regulatory compliance. Kathie emphasizes the importance of continuous learning and collaboration with...]]></itunes:summary>
    <description><![CDATA[<p>In this episode of Cyber Survivor, host Dan Dodson speaks with Kathie Philippou, who has 40 years of experience in practice management. Kathie shares her journey from humble beginnings in healthcare administration to navigating the digital transformation of medical practices. She discusses the challenges of implementing electronic medical records and the increasing burden of cybersecurity and regulatory compliance. Kathie emphasizes the importance of continuous learning and collaboration with industry peers to manage these evolving challenges.</p>
]]></description>
    <content:encoded><![CDATA[<p>In this episode of Cyber Survivor, host Dan Dodson speaks with Kathie Philippou, who has 40 years of experience in practice management. Kathie shares her journey from humble beginnings in healthcare administration to navigating the digital transformation of medical practices. She discusses the challenges of implementing electronic medical records and the increasing burden of cybersecurity and regulatory compliance. Kathie emphasizes the importance of continuous learning and collaboration with industry peers to manage these evolving challenges.</p>
]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2609522/episodes/18994695-episode-6-cyber-challenges-in-medicine-a-conversation-with-kathie-philippou.mp3" length="24079986" type="audio/mpeg" />
    <itunes:author>Dan Dodson</itunes:author>
    <guid isPermaLink="false">cybersurvivorpodcast.podbean.com/75dc8f3e-7e54-3f32-b17e-9c55324b2b11</guid>
    <pubDate>Wed, 07 May 2025 22:00:00 -0400</pubDate>
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994695/transcript" type="text/html" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994695/transcript.json" type="application/json" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994695/transcript.srt" type="application/x-subrip" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994695/transcript.vtt" type="text/vtt" />
    <itunes:duration>2003</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>6</itunes:episode>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>Episode 5- Navigating Cyber Threats During Healthcare Acquisitions. With Louis Wright.</itunes:title>
    <title>Episode 5- Navigating Cyber Threats During Healthcare Acquisitions. With Louis Wright.</title>
    <itunes:summary><![CDATA[In this episode of "Cyber Survivors," host Dan Dodson and guest Louis Wright delve into healthcare cybersecurity challenges, particularly during acquisitions. Louis shares insights as the CISO of USA Health and describes how they navigated a cyber attack on a legacy system during a transition period. They emphasize the importance of comprehensive disaster recovery plans, third-party risk management, and continuous improvement. The episode sheds light on maintaining operational resilience and ...]]></itunes:summary>
    <description><![CDATA[<p>In this episode of &quot;Cyber Survivors,&quot; host Dan Dodson and guest Louis Wright delve into healthcare cybersecurity challenges, particularly during acquisitions. Louis shares insights as the CISO of USA Health and describes how they navigated a cyber attack on a legacy system during a transition period. They emphasize the importance of comprehensive disaster recovery plans, third-party risk management, and continuous improvement. The episode sheds light on maintaining operational resilience and safeguarding patient care amidst complex cyber threats.</p>
]]></description>
    <content:encoded><![CDATA[<p>In this episode of &quot;Cyber Survivors,&quot; host Dan Dodson and guest Louis Wright delve into healthcare cybersecurity challenges, particularly during acquisitions. Louis shares insights as the CISO of USA Health and describes how they navigated a cyber attack on a legacy system during a transition period. They emphasize the importance of comprehensive disaster recovery plans, third-party risk management, and continuous improvement. The episode sheds light on maintaining operational resilience and safeguarding patient care amidst complex cyber threats.</p>
]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2609522/episodes/18994696-episode-5-navigating-cyber-threats-during-healthcare-acquisitions-with-louis-wright.mp3" length="25833552" type="audio/mpeg" />
    <itunes:author>Dan Dodson</itunes:author>
    <guid isPermaLink="false">cybersurvivorpodcast.podbean.com/48a636c6-4333-3f32-8b3a-d47b7d33c4cc</guid>
    <pubDate>Wed, 23 Apr 2025 20:34:59 -0400</pubDate>
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994696/transcript" type="text/html" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994696/transcript.json" type="application/json" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994696/transcript.srt" type="application/x-subrip" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994696/transcript.vtt" type="text/vtt" />
    <itunes:duration>2149</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>5</itunes:episode>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>Episode 4- Oracle Under Fire: Data Breaches and the Legal Tightrope. A Conversation with Thomas Ritter</itunes:title>
    <title>Episode 4- Oracle Under Fire: Data Breaches and the Legal Tightrope. A Conversation with Thomas Ritter</title>
    <itunes:summary><![CDATA[In this episode of "Cyber Survivor," host Dan Dodson and legal expert Thomas Ritter delve into the recent cyber incidents involving Oracle Health. They discuss Oracle's handling of potential data breaches linked to both Oracle Cloud and legacy servers from the Cerner acquisition. While Oracle has contacted some clients privately, it has not publicly confirmed the breaches. The conversation highlights the complexities of cybersecurity, legal strategies, and the impact of class action lawsuits ...]]></itunes:summary>
    <description><![CDATA[<p class='p1'>In this episode of &quot;Cyber Survivor,&quot; host Dan Dodson and legal expert Thomas Ritter delve into the recent cyber incidents involving Oracle Health. They discuss Oracle&apos;s handling of potential data breaches linked to both Oracle Cloud and legacy servers from the Cerner acquisition. While Oracle has contacted some clients privately, it has not publicly confirmed the breaches. The conversation highlights the complexities of cybersecurity, legal strategies, and the impact of class action lawsuits in the healthcare sector. Thomas emphasizes the importance of preparedness and robust third-party risk management programs.</p>
]]></description>
    <content:encoded><![CDATA[<p class='p1'>In this episode of &quot;Cyber Survivor,&quot; host Dan Dodson and legal expert Thomas Ritter delve into the recent cyber incidents involving Oracle Health. They discuss Oracle&apos;s handling of potential data breaches linked to both Oracle Cloud and legacy servers from the Cerner acquisition. While Oracle has contacted some clients privately, it has not publicly confirmed the breaches. The conversation highlights the complexities of cybersecurity, legal strategies, and the impact of class action lawsuits in the healthcare sector. Thomas emphasizes the importance of preparedness and robust third-party risk management programs.</p>
]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2609522/episodes/18994697-episode-4-oracle-under-fire-data-breaches-and-the-legal-tightrope-a-conversation-with-thomas-ritter.mp3" length="12552513" type="audio/mpeg" />
    <itunes:author>Dan Dodson</itunes:author>
    <guid isPermaLink="false">cybersurvivorpodcast.podbean.com/b56df4fe-9f81-31ae-af41-74831ee3d5bd</guid>
    <pubDate>Tue, 08 Apr 2025 18:18:02 -0400</pubDate>
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994697/transcript" type="text/html" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994697/transcript.json" type="application/json" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994697/transcript.srt" type="application/x-subrip" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994697/transcript.vtt" type="text/vtt" />
    <itunes:duration>1042</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:episode>4</itunes:episode>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>Episode 3- Strengthening Defenses: Cybersecurity Strategies in Healthcare with Paul Connelly</itunes:title>
    <title>Episode 3- Strengthening Defenses: Cybersecurity Strategies in Healthcare with Paul Connelly</title>
    <itunes:summary><![CDATA[Dan Dodson hosts "Cyber Survivor" with guest Paul Connolly, a mentor and reputable figure in cybersecurity. They discuss Connolly’s unexpected journey from agriculture to becoming a pioneer in cybersecurity, emphasizing his role as the first CISO at the White House. They explore cybersecurity’s impact on healthcare, the importance of communication, especially with clinical staff, and the challenges faced by healthcare organizations in a cyber landscape. Connolly stresses education, relationsh...]]></itunes:summary>
    <description><![CDATA[<p>Dan Dodson hosts &quot;Cyber Survivor&quot; with guest Paul Connolly, a mentor and reputable figure in cybersecurity. They discuss Connolly’s unexpected journey from agriculture to becoming a pioneer in cybersecurity, emphasizing his role as the first CISO at the White House. They explore cybersecurity’s impact on healthcare, the importance of communication, especially with clinical staff, and the challenges faced by healthcare organizations in a cyber landscape. Connolly stresses education, relationship-building, and collaboration to strengthen cybersecurity defenses.</p>
]]></description>
    <content:encoded><![CDATA[<p>Dan Dodson hosts &quot;Cyber Survivor&quot; with guest Paul Connolly, a mentor and reputable figure in cybersecurity. They discuss Connolly’s unexpected journey from agriculture to becoming a pioneer in cybersecurity, emphasizing his role as the first CISO at the White House. They explore cybersecurity’s impact on healthcare, the importance of communication, especially with clinical staff, and the challenges faced by healthcare organizations in a cyber landscape. Connolly stresses education, relationship-building, and collaboration to strengthen cybersecurity defenses.</p>
]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2609522/episodes/18994698-episode-3-strengthening-defenses-cybersecurity-strategies-in-healthcare-with-paul-connelly.mp3" length="31614880" type="audio/mpeg" />
    <itunes:author>Dan Dodson</itunes:author>
    <guid isPermaLink="false">cybersurvivorpodcast.podbean.com/cfb66773-6cf9-3db4-9a5c-1a7a89d9e83d</guid>
    <pubDate>Wed, 02 Apr 2025 20:41:08 -0400</pubDate>
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994698/transcript" type="text/html" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994698/transcript.json" type="application/json" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994698/transcript.srt" type="application/x-subrip" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994698/transcript.vtt" type="text/vtt" />
    <itunes:duration>2631</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>3</itunes:episode>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>Episode 2- From Ransomware to Recovery: Lessons in Cyber Defense with Phil Alexander</itunes:title>
    <title>Episode 2- From Ransomware to Recovery: Lessons in Cyber Defense with Phil Alexander</title>
    <itunes:summary><![CDATA[In a conversation between host Dan Dodson and cybersecurity expert Phil Alexander, they delved into the critical role of relationships and fundamentals in managing cyber events, especially within the healthcare industry. Phil, with 25 years of experience, emphasized the importance of building strong relationships with organizational leaders and external partners. He shared insights from his career, like launching a cybersecurity advisory firm and tackling cyber threats such as ransomware. The...]]></itunes:summary>
    <description><![CDATA[<p class='p1'>In a conversation between host Dan Dodson and cybersecurity expert Phil Alexander, they delved into the critical role of relationships and fundamentals in managing cyber events, especially within the healthcare industry. Phil, with 25 years of experience, emphasized the importance of building strong relationships with organizational leaders and external partners. He shared insights from his career, like launching a cybersecurity advisory firm and tackling cyber threats such as ransomware. The discussion covered the emotional and operational challenges during security breaches, stressing the need for proper incident response planning, transparent communication, and teamwork. Phil advocated for focusing on basic cybersecurity practices over chasing new technologies, highlighting the significance of effective management and collaboration in minimizing disruption and anxiety for both staff and patients.</p>
]]></description>
    <content:encoded><![CDATA[<p class='p1'>In a conversation between host Dan Dodson and cybersecurity expert Phil Alexander, they delved into the critical role of relationships and fundamentals in managing cyber events, especially within the healthcare industry. Phil, with 25 years of experience, emphasized the importance of building strong relationships with organizational leaders and external partners. He shared insights from his career, like launching a cybersecurity advisory firm and tackling cyber threats such as ransomware. The discussion covered the emotional and operational challenges during security breaches, stressing the need for proper incident response planning, transparent communication, and teamwork. Phil advocated for focusing on basic cybersecurity practices over chasing new technologies, highlighting the significance of effective management and collaboration in minimizing disruption and anxiety for both staff and patients.</p>
]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2609522/episodes/18994699-episode-2-from-ransomware-to-recovery-lessons-in-cyber-defense-with-phil-alexander.mp3" length="28371038" type="audio/mpeg" />
    <itunes:author>Dan Dodson</itunes:author>
    <guid isPermaLink="false">cybersurvivorpodcast.podbean.com/16305f27-c6e3-3cc9-922b-d5f7d63f2fdc</guid>
    <pubDate>Tue, 18 Mar 2025 08:57:20 -0400</pubDate>
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994699/transcript" type="text/html" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994699/transcript.json" type="application/json" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994699/transcript.srt" type="application/x-subrip" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994699/transcript.vtt" type="text/vtt" />
    <itunes:duration>2360</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>2</itunes:episode>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>Episode 1- Welcome to Cyber Survivor with Dan Dodson</itunes:title>
    <title>Episode 1- Welcome to Cyber Survivor with Dan Dodson</title>
    <itunes:summary><![CDATA[Join host Dan Dodson on "Cyber Survivors," where we explore resilience and innovation in healthcare cybersecurity. Discover real-world insights from doctors, administrators, and IT professionals safeguarding patient data and securing networks. Uncover strategies to navigate cyber threats and triumph in the digital age's relentless pursuit of safety. 
]]></itunes:summary>
    <description><![CDATA[<p>Join host Dan Dodson on &quot;Cyber Survivors,&quot; where we explore resilience and innovation in healthcare cybersecurity. Discover real-world insights from doctors, administrators, and IT professionals safeguarding patient data and securing networks. Uncover strategies to navigate cyber threats and triumph in the digital age&apos;s relentless pursuit of safety.</p>
]]></description>
    <content:encoded><![CDATA[<p>Join host Dan Dodson on &quot;Cyber Survivors,&quot; where we explore resilience and innovation in healthcare cybersecurity. Discover real-world insights from doctors, administrators, and IT professionals safeguarding patient data and securing networks. Uncover strategies to navigate cyber threats and triumph in the digital age&apos;s relentless pursuit of safety.</p>
]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2609522/episodes/18994700-episode-1-welcome-to-cyber-survivor-with-dan-dodson.mp3" length="8817305" type="audio/mpeg" />
    <itunes:author>Dan Dodson</itunes:author>
    <guid isPermaLink="false">briankruger.podbean.com/652ce502-16a3-312e-985a-b5b15d31027a</guid>
    <pubDate>Wed, 12 Mar 2025 13:36:49 -0400</pubDate>
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994700/transcript" type="text/html" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994700/transcript.json" type="application/json" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994700/transcript.srt" type="application/x-subrip" />
    <podcast:transcript url="https://www.buzzsprout.com/2609522/18994700/transcript.vtt" type="text/vtt" />
    <itunes:duration>731</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>1</itunes:episode>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
</channel>
</rss>
