Kristin Demoranville

speaker
976 appearances 11 recordings 1 series first heard Jun 2024 last heard Mar 2025

Kristin Demoranville’s voice in public audio — every appearance, attributed to the second.

Trend

recordings per month · last 12 months
No recordings in the last 12 months.Older appearances are listed below; set an alert to hear about the next one.

Appearances

newest first · ▶ plays the moment
That's not out of normal, but we definitely represented for our respected industries. And I do think that it brought up a lot of really interesting conversations, you know, in the hallways. And I certainly had some weird interactions I didn't expect and some really amazing ones at the same time.
And we created the most complex system on the planet. The food system is one of the most complex systems that we still don't have a full understanding of and still figuring out how it breaks and what happens when it breaks in certain places and how it overflows in other places. And it's very complicated.
And especially when you add more tech to it, it really gets kind of out of control if you think about it. And people are still reactive. They're not proactive. And I think that's what we're trying to constantly say, like, let's do these things so we can be resilient when something happens, whether it's a foodborne illness or a cyber attack or a nation state attack or any of that.
And I really I love that that rang true throughout the whole panel with all three of us because we're all aligned in that regard.
Quick announcement, everyone. If you're interested in ICS OT cybersecurity, whether you're a student, an industry newcomer, or a seasoned pro, B-Sides ICS OT is the place to be. Join us on February 10th in Tampa, Florida, for a day packed with practical learning, real connections, and insights into securing critical infrastructure.
This event is designed for everyone, no matter where you are in your career. B-Sides events are known for bringing people together, and this is the first B-Sides focused on ICS OT security. And for all the women in OT and ICS cybersecurity, don't miss the women in ICS cybersecurity reception that evening. Ready to be part of something impactful?
Visit bsidesics.org for tickets, speaking opportunities, and more. Also, if you were planning on attending S4 in Tampa, it's the day before. Check out the website, and hopefully I'll see you there. Not changing subject, but sort of moving into a little bit of a different direction. Andrew, you discussed how farmers and agribusiness can be resistant to tech.
What are some ways that tech providers or the government or anybody who works in that space can help make cybersecurity more accessible and appealing to small and medium sized farmers? The larger farmers are probably having that handled by their conglomerates. But what are we doing about, you know, the farm down the street from any of us?
No, understood. Understood. I just did a talk recently at an ICS conference, industrial control security conference. And I had a gentleman stand up and said, unless it's regulated, I'm not putting security around my product. And everybody was really like, whoa, I can't believe he stood up and said that. But to me, he was being real. Why would he do that if he was not regulated to do that?
So product security is a really complicated thing, ultimately.
Well, you look at CrowdStrike and Microsoft, right? showed us that there was one pillar that everything was standing on. And as soon as that Jenga peg flew out, that was it. And we are one hairpin away from that at all times. I don't think people will realize how fragile the system is. And I don't want our adversaries to figure that out. You know what I mean? That's not what we want.
Because as soon as that happens, then we're in big trouble. And unfortunately, CrowdStrike and Microsoft showed that to us And of course, it's got all of us going, bleh, but also at the same time, we've been saying this. So it's not an I told you so, it's a I didn't want to have to say that moment, you know.
I think the thing that's hard is watching security incidents are going to happen. It's not a it's not a if it's a one thing. And over the, you know, the long term couple decades of my career, I have seen way too many that could have been averted. And it all comes down to how are you risk averse? Are you a risk positive? Like, what are you going to do?
And that's what bothers me about the food and ag industry. And I know I've talked about it with both of you offline and online is how many people need to die or how bad does this need to get before people actually start taking a real look at this and dealing with the risk rather than, oh, something happened. So here's a ton of money and we're just gonna fix the problem now.
Why didn't we fix the problem before? It's so ridiculous. It's like the house is on fire, but yet we're still spraying more oil on it. Like, what are we doing?
We need some champion companies and some champion countries, I think.
You know, you both are talking, we're talking around it, so let's just talk about it. We talked about it on the panel too, but the concept of doing nothing as a high cost. So what are some ways that we can calculate and communicate this cost effectively to justify cybersecurity investment in the food industry?
And we can even take this one step further as how do we tie this into the work that the three of us are doing to push forward, to have those champion moments, to make people realize. And I realize that a lot of times it's grassroots and it's one-on-one and we have to get in front of individuals all the time. But the awareness work that we do is super important.
So Darren, I'm going to have you start because I know the cost of doing nothing has been on top of mind for you.
It already has. I mean, chief information security officers are being hauled into committee meetings in front of Congress and having to explain why something happened. It will happen with CrowdStrike and Microsoft. I think it's already started. I mean, Delta's suing them now. So there's a lot... of accountability that has to be taken.
Showing 201–220 of 976 · page 11 of 49 ← Previous Next →