Secure & Simple — Podcast for Consultants and vCISOs on Cybersecurity Governance and Compliance

Dejan Kosutic
undefined
Apr 8, 2025 • 48min

Trends with ISO 27001, NIS2, and Supplier Security | Interview with René Matthiassen

In this episode of the Secure and Simple Podcast, host Dejan Kosutic is joined by Rene Matthiassen, a senior security consultant and partner at Front Door Security. With 30 years of experience in cybersecurity frameworks, Rene discusses the importance of tailored security frameworks, particularly ISO 27001, and how they benefit companies and suppliers under NIS2 scope. They delve into Rene’s journey from network engineering to consulting, the process behind developing security standards, and practical steps for managing cybersecurity among suppliers. The conversation also touches on the increasing importance of operational technology security frameworks like IEC 62443 and provides a forecast for the evolution of cybersecurity compliance in the digital decade. Links from the episode: - Conformio software to streamline and scale ISO 27001 implementation and maintenance for your clients: https://advisera.co/Conformio-software- White label documentation toolkits for NIS2, DORA, ISO 27001, and other ISO standards to create all the required documents for your clients: https://advisera.co/page-all-toolkits - Accredited Lead Auditor and Lead Implementer courses for various standards and frameworks to show your expertize to potential clients: https://advisera.co/Consultant-Courses - Company Training Academy with numerous videos for NIS2, DORA, ISO 27001, and other frameworks to organize training and awareness programs for your client’s workforce: https://advisera.co/page-Company-Training-Account (00:00) - Interview with René Matthiassen (00:19) - Meet Our Guest: Rene Matthiassen (02:35) - Transitioning from Technical to Governance (04:38) - Developing ISO 27001 Standards (06:15) - The Democratic Process of Standardization (07:53) - Transposing NIS2 in Denmark (11:10) - ISO 27001 and NIS2: A Symbiotic Relationship (18:07) - Supply Chain Security and Compliance (24:25) - Handling Supplier Disruptions (26:56) - Creating Effective Security Contracts (30:10) - Supplier's Perspective on Compliance (36:40) - Navigating the Competitive Consulting Market (39:39) - Operational Technology Security Standards (42:26) - Future of Cybersecurity Compliance (46:34) - Conclusion and Resources for Consultants
undefined
Apr 8, 2025 • 60min

How to Become a Successful Consultant | Interview with Carlos Cruz

In this episode of Secure and Simple Podcast, host Dejan Kosutic interviews Carlos Cruz, founder of Metanoia and ISO 9001 & ISO 14001 expert at Advisera. Carlos shares his journey in the consulting business, starting from the 1990s, and provides valuable insights on the do's and don'ts of building a successful consulting career. Learn how Carlos used writing, training, and strategic connections to grow his business, and how the consulting landscape has changed over the decades. The discussion also touches on the role of AI in consulting and offers practical advice for new consultants. Don't miss this opportunity to learn from Carlos's extensive experience in the consulting field. Links from the episode: - Conformio software to streamline and scale ISO 27001 implementation and maintenance for your clients: https://advisera.co/Conformio-software- White label documentation toolkits for NIS2, DORA, ISO 27001, and other ISO standards to create all the required documents for your clients: https://advisera.co/page-all-toolkits - Accredited Lead Auditor and Lead Implementer courses for various standards and frameworks to show your expertize to potential clients: https://advisera.co/Consultant-Courses - Company Training Academy with numerous videos for NIS2, DORA, ISO 27001, and other frameworks to organize training and awareness programs for your client’s workforce: https://advisera.co/page-Company-Training-Account (00:00) - Audio 1001 Interview Carlos Cruz (00:19) - Meet Carlos Cruz: A Veteran Consultant (01:42) - Starting a Consulting Business in the 1990s (03:20) - The Importance of Writing and Blogging (06:07) - Connecting Quality Management with Strategy (12:01) - Differentiation and Client Satisfaction (28:12) - Promoting Imperfect Competition (29:59) - Understanding Customer Perception (31:41) - Finding Your Niche as a Consultant (33:43) - Working with Japanese Companies (37:44) - Lessons from Bad Consultants (44:23) - The Role of Training and Auditing (48:25) - The Evolution of Consulting (51:15) - Future of Consulting with AI (54:34) - Top Tips for Consultants (58:34) - Conclusion and Resources

The AI-powered Podcast Player

Save insights by tapping your headphones, chat with episodes, discover the best highlights - and more!
App store bannerPlay store banner
Get the app