1
00:00:06,100 --> 00:00:08,600
Do you know who has access to 
what this is? 

2
00:00:08,600 --> 00:00:10,600
The identity at the center 
podcast? 

3
00:00:10,900 --> 00:00:13,900
If you're looking for identity 
and access management talk 

4
00:00:13,900 --> 00:00:26,000
you've come to the right place 
and now on to the show, Welcome 

5
00:00:26,000 --> 00:00:27,900
to the identity of the sender 
podcast. 

6
00:00:27,900 --> 00:00:30,200
I'm on the road. 
Visiting my good friend Arturo 

7
00:00:30,200 --> 00:00:33,800
here in Monterrey, Mexico. 
This is my last week of travel 

8
00:00:33,800 --> 00:00:36,700
for 2019. 
So while I'm excited to be in 

9
00:00:36,700 --> 00:00:39,500
Monterey and see the mountains, 
that's it's gorgeous here. 

10
00:00:39,500 --> 00:00:42,100
By the way, whether it's 
perfect, it's like 50 degrees 

11
00:00:42,100 --> 00:00:44,200
Fahrenheit which is great for 
me. 

12
00:00:45,100 --> 00:00:47,800
Clear skies mountains, all over 
the place. 

13
00:00:47,800 --> 00:00:50,200
It's awesome. 
I thought it'd be a good time to

14
00:00:50,200 --> 00:00:52,600
catch up with Arturo. 
Kind of pulls out the year and 

15
00:00:52,900 --> 00:00:54,100
talk about some of the 
different. 

16
00:00:54,100 --> 00:00:56,600
I am experiences. 
So So welcome again to the 

17
00:00:56,600 --> 00:00:58,200
podcast Arturo. 
How'd you? 

18
00:00:58,300 --> 00:00:59,500
Thank you. 
Thank you for having me. 

19
00:00:59,700 --> 00:01:04,000
Thanks for setting aside some 
time and no and actually you are

20
00:01:04,099 --> 00:01:07,200
very lucky right now because we 
are having, as you say it, very 

21
00:01:07,200 --> 00:01:11,100
clear skies right now, so you 
can have other pictures from the

22
00:01:11,100 --> 00:01:12,900
mountains. 
I hope to get some good pictures

23
00:01:12,900 --> 00:01:14,600
from Vermont, top of the hotel 
around. 

24
00:01:15,700 --> 00:01:19,600
So let's dive a little bit into.
There was some recent news 

25
00:01:19,700 --> 00:01:23,600
around I am in Mexico and that 
was pemex getting hit with 

26
00:01:23,600 --> 00:01:26,700
ransomware. 
Depending Who you talk to or 

27
00:01:26,700 --> 00:01:29,900
which article you read, it was 
either not a big deal according 

28
00:01:29,900 --> 00:01:32,600
to the company wine but there 
were other articles that were 

29
00:01:32,600 --> 00:01:36,400
quoting inside sources, saying 
it was a much bigger deal than 

30
00:01:36,500 --> 00:01:39,200
maybe it was being led on and 
systems were down for much 

31
00:01:39,200 --> 00:01:42,600
longer than we thought. 
The ransom was five million in 

32
00:01:42,600 --> 00:01:46,900
Bitcoin which is quite a bit. 
Has there been any discussion in

33
00:01:46,900 --> 00:01:50,600
the Monterey? 
I am Community around that topic

34
00:01:50,600 --> 00:01:52,200
and how that might affect other 
things. 

35
00:01:52,200 --> 00:01:55,100
Yeah, well in get, I think that 
Indian and all he did. 

36
00:01:55,400 --> 00:02:00,700
Cyber security Community. 
It has been along with the pemex

37
00:02:00,700 --> 00:02:05,000
hack few weeks back. 
They were some others companies 

38
00:02:05,000 --> 00:02:10,100
in Mexico that were affected by 
the same type of attacks. 

39
00:02:10,300 --> 00:02:14,100
I don't have details. 
If we're the same type of 

40
00:02:14,100 --> 00:02:18,300
malware sample, or something 
different, but at the end, they 

41
00:02:18,300 --> 00:02:21,600
were different companies that 
got hacked using this ransomware

42
00:02:21,600 --> 00:02:26,800
attacks. 
And I think, like, in Here in 

43
00:02:26,800 --> 00:02:32,500
Mexico different than in the 
u.s. we don't have a very tight 

44
00:02:32,500 --> 00:02:36,000
regulation in terms of 
communicating properly, this 

45
00:02:36,000 --> 00:02:39,300
kind of incident. 
Some of them they weren't public

46
00:02:39,300 --> 00:02:45,200
because they wasn't a public or 
a bigger company like that Max's

47
00:02:45,200 --> 00:02:49,300
case. 
And I think that I might agree 

48
00:02:49,300 --> 00:02:56,500
with you that the the issue is 
more about the Vacation because 

49
00:02:56,500 --> 00:03:01,100
we don't really know it was 
something important in terms of 

50
00:03:01,200 --> 00:03:03,700
real application of the company 
or not. 

51
00:03:04,300 --> 00:03:09,600
And so a lot of big cases that 
are happening in some other 

52
00:03:09,600 --> 00:03:13,900
countries. 
For instance, in the US, the 

53
00:03:13,900 --> 00:03:17,700
good things that we have in some
cases is that communication was 

54
00:03:17,700 --> 00:03:20,100
very effective. 
So actually there are certain 

55
00:03:20,100 --> 00:03:24,200
articles that they highlight 
that the very good action of the

56
00:03:24,200 --> 00:03:28,700
company after Interior was 
properly communicate, either the

57
00:03:28,700 --> 00:03:32,200
public or the customer, the 
customer got affected. 

58
00:03:32,300 --> 00:03:36,500
So some of the hacks at the end,
I think that more than be ready 

59
00:03:36,500 --> 00:03:41,700
to prevent the hack because it 
was providing, it was able to 

60
00:03:41,700 --> 00:03:44,500
prevent or not, some quesadillas
and some other not. 

61
00:03:45,400 --> 00:03:50,400
But I think that the the 
ultimate point is they were able

62
00:03:50,400 --> 00:03:54,700
to react properly after they got
hack or after they have the 

63
00:03:54,700 --> 00:03:57,500
incident. 
Aunt, and I believe that the 

64
00:03:57,600 --> 00:04:02,800
things to highlight or the 
companies who are more or we as 

65
00:04:02,800 --> 00:04:04,200
a professional security 
professional. 

66
00:04:04,200 --> 00:04:07,400
We say, okay, this guy's seems 
like they're doing very good job

67
00:04:07,400 --> 00:04:10,800
or they were prepared to react 
are the are the good ones in. 

68
00:04:10,800 --> 00:04:14,400
In the other hand, we have the 
companies who cannot react or 

69
00:04:14,900 --> 00:04:18,200
they're having misleading 
communication of the incident. 

70
00:04:18,200 --> 00:04:21,800
In this case, I think that that 
makes because it's a company of 

71
00:04:21,800 --> 00:04:24,900
the government. 
So it was a lot of talking, 

72
00:04:25,400 --> 00:04:29,200
Features or say one thing some 
other experts say other some 

73
00:04:29,200 --> 00:04:33,000
internal sources to reporter 
made some totally different. 

74
00:04:33,300 --> 00:04:37,400
I think that the cows was more 
around the communication in this

75
00:04:37,400 --> 00:04:39,800
particular case. 
Yeah, I think that makes sense 

76
00:04:40,000 --> 00:04:43,800
and I guess it is a glad you 
brought that up that pemex is a 

77
00:04:44,200 --> 00:04:47,600
nationally controlled petroleum 
company. 

78
00:04:47,600 --> 00:04:52,500
So my understanding from what 
I've read is the hack affected 

79
00:04:52,500 --> 00:04:55,200
more on the billing side of 
things and sort of back office. 

80
00:04:55,300 --> 00:04:58,900
I didn't really affect what may 
be customers of pemex might have

81
00:04:58,900 --> 00:05:03,800
seen, but it's probably more 
affected, B2B type things. 

82
00:05:03,800 --> 00:05:07,000
So people who maybe have a 
financial relationship, whether 

83
00:05:07,000 --> 00:05:11,000
you're a creditor or, you know, 
some sort of Builder within the 

84
00:05:11,000 --> 00:05:13,900
organization might have seen 
some more effects, but that does

85
00:05:13,900 --> 00:05:17,600
make me wonder because the 
communication was vastly 

86
00:05:17,600 --> 00:05:19,000
different based on who you talk 
to. 

87
00:05:19,200 --> 00:05:21,100
So it's not, you know, it's 
fine, everything's under control

88
00:05:21,100 --> 00:05:23,800
versus boy, things are real 
nightmare behind the scenes. 

89
00:05:23,800 --> 00:05:26,400
Really ideal for Is of computers
are down. 

90
00:05:26,400 --> 00:05:29,200
Can't do whatever. 
And I think, I still feel like, 

91
00:05:29,300 --> 00:05:31,900
even in the US, that's still 
something that companies 

92
00:05:31,900 --> 00:05:35,000
struggle with it's the response 
to this. 

93
00:05:35,000 --> 00:05:39,400
So you know there's tons of 
information out there but really

94
00:05:39,400 --> 00:05:43,100
the focus that people are taking
now is it's it's not if we get 

95
00:05:43,100 --> 00:05:45,800
hacked, it's when we get hacked 
how we're going to respond to 

96
00:05:45,800 --> 00:05:48,400
it. 
So it's interesting that the 

97
00:05:48,500 --> 00:05:52,000
hack also that pemex face was 
also seen in the u.s. so 

98
00:05:52,000 --> 00:05:55,000
companies like Merck, I believe 
there was a like a shipping 

99
00:05:55,000 --> 00:05:56,800
company. 
Any Mercy, I think is what it 

100
00:05:56,800 --> 00:05:59,900
was, they had a very similar 
profile and they think that 

101
00:05:59,900 --> 00:06:01,900
maybe those hacks were done by 
the same group. 

102
00:06:01,900 --> 00:06:07,100
So there's clearly a targeted, 
you know, environment here, that

103
00:06:07,600 --> 00:06:10,400
people that are using this 
specific ransomware were looking

104
00:06:10,400 --> 00:06:14,100
for, very specific profiles for 
companies to try and breach, 

105
00:06:14,200 --> 00:06:16,000
right? 
And in some other things that I 

106
00:06:16,000 --> 00:06:20,900
just read these week is about 
how these type of Hearts like 

107
00:06:20,900 --> 00:06:22,500
the pain makes and certain 
others. 

108
00:06:22,500 --> 00:06:27,600
That happened a few weeks back. 
Gaining the attention of the 

109
00:06:27,600 --> 00:06:30,800
hackers because they say, well, 
there's a Target that seems to 

110
00:06:30,800 --> 00:06:34,400
be easy to have, right? 
And then so they are probably 

111
00:06:34,400 --> 00:06:38,400
try to look different companies 
based in Mexico that they can 

112
00:06:38,700 --> 00:06:42,600
Mexico Latin America that they 
can take advantage of this. 

113
00:06:42,700 --> 00:06:44,800
Yeah, I feel like the There's an
opportunity. 

114
00:06:44,800 --> 00:06:48,800
If I'm looking for the Target to
breach companies, that may be in

115
00:06:48,800 --> 00:06:52,000
the small to mid size range that
don't have the technical 

116
00:06:52,000 --> 00:06:54,300
controls in place, things 
around, privileged access 

117
00:06:54,300 --> 00:06:57,300
management. 
Or maybe their users are all 

118
00:06:57,300 --> 00:07:01,000
local administrators and I drop 
a thumb drive in the parking 

119
00:07:01,000 --> 00:07:02,100
lot. 
And, you know, the person is 

120
00:07:02,100 --> 00:07:03,700
trying to be helpful. 
I wonder what this is or they're

121
00:07:03,700 --> 00:07:06,300
curious and they plug it into 
their machine and bang. 

122
00:07:06,300 --> 00:07:08,400
You know, now I've got their 
stuff and all their friends. 

123
00:07:08,400 --> 00:07:11,600
So it's just so I think 
something that companies are 

124
00:07:11,600 --> 00:07:13,200
starting to pay attention more 
to. 

125
00:07:14,300 --> 00:07:16,800
But at some point there will 
have to be some investment to 

126
00:07:16,800 --> 00:07:20,000
try and mitigate that through 
security training, security, 

127
00:07:20,000 --> 00:07:22,100
awareness. 
And then, you know what? 

128
00:07:22,100 --> 00:07:25,000
The technical controls to try 
and block those things from even

129
00:07:25,000 --> 00:07:25,900
happening. 
The first place. 

130
00:07:25,900 --> 00:07:30,100
Yeah, and I think that the old, 
these things are good in general

131
00:07:30,100 --> 00:07:34,500
because drag the attention of 
the top Executives and they 

132
00:07:34,500 --> 00:07:38,900
start making decisions based on 
this environment in general. 

133
00:07:39,200 --> 00:07:43,600
But but the other hand, we have 
that all the sales guys are 

134
00:07:44,400 --> 00:07:48,100
basically based their speech on 
our yet. 

135
00:07:48,100 --> 00:07:51,100
This product is Magic, product 
can help you with everything 

136
00:07:51,100 --> 00:07:55,300
including ransomware, which is, 
you are not very deep into Uh, 

137
00:07:55,308 --> 00:07:58,800
George, you are manager, photos,
and have a deep understanding 

138
00:07:58,800 --> 00:08:02,300
about everything. 
You can probably try to buy 

139
00:08:02,300 --> 00:08:03,900
something to help you with the 
ransom. 

140
00:08:03,900 --> 00:08:08,700
We're having our first, don't 
something totally different 

141
00:08:08,800 --> 00:08:11,300
things like that. 
So you have to be cautious also 

142
00:08:11,300 --> 00:08:14,100
in making this decision. 
Yeah. 

143
00:08:14,300 --> 00:08:17,900
I mean you are you saying that 
sales people might not be honest

144
00:08:18,100 --> 00:08:19,800
and their products that would 
never happen. 

145
00:08:20,800 --> 00:08:24,100
I know some very good sales, 
folks, you know shout out to my 

146
00:08:24,100 --> 00:08:28,800
guy Tim You know, he was he's 
really good and there are a lot 

147
00:08:28,800 --> 00:08:32,299
of really good sales folks that 
really do a good job of position

148
00:08:32,299 --> 00:08:33,900
where they can help and where 
they can't. 

149
00:08:33,900 --> 00:08:36,400
But there are eyes. 
I feel like there's way more, 

150
00:08:36,600 --> 00:08:39,799
especially having sat on the 
customer side for so long of, oh

151
00:08:39,799 --> 00:08:41,900
yeah, this is the Magic Bullet. 
Like you said, it will solve 

152
00:08:41,900 --> 00:08:45,800
everything solve, all my 
problems, Etc doesn't exist. 

153
00:08:45,800 --> 00:08:48,300
Right? 
Even the best magic bullet that 

154
00:08:48,300 --> 00:08:50,400
is out. 
There will only reduce the 

155
00:08:50,400 --> 00:08:53,900
chance of something happening 
will not outright eliminated. 

156
00:08:54,100 --> 00:08:56,800
Yeah. 
But after that, Wild used are to

157
00:08:56,800 --> 00:09:00,800
identify these guys. 
Start to identify where even 

158
00:09:00,800 --> 00:09:04,000
with the words that they are 
using, you never did you 

159
00:09:04,000 --> 00:09:07,600
guarantee, you just knowing any 
guarantee to go to size. 

160
00:09:07,600 --> 00:09:10,700
Exactly. 
Let's talk a little bit about. 

161
00:09:11,200 --> 00:09:15,000
I am work done specifically this
year and kind of the program 

162
00:09:15,000 --> 00:09:16,600
that you've been working to set 
up here. 

163
00:09:17,900 --> 00:09:22,100
What are or what is the biggest?
I am accomplishment that you're 

164
00:09:22,100 --> 00:09:26,700
most proud of for 2019. 
I'll put you on the spot here. 

165
00:09:26,700 --> 00:09:28,200
So we'll give you a second to 
think about it. 

166
00:09:28,200 --> 00:09:34,000
But now, in terms of, I think, 
one of the things that I really 

167
00:09:34,300 --> 00:09:38,300
proud of is that this year at 
the beginning of the year, we 

168
00:09:38,300 --> 00:09:42,300
accomplished to enable 
multi-factor authentication to 

169
00:09:42,300 --> 00:09:48,300
the Hokum again, that it took us
some time to actually go and 

170
00:09:48,300 --> 00:09:52,500
communicate and convince the 
user into that at the beginning.

171
00:09:52,900 --> 00:09:58,000
But eventually after almost Four
months or rolling out the 

172
00:09:58,000 --> 00:10:03,900
solution to more than 23 case of
users. 

173
00:10:05,300 --> 00:10:08,900
I feel like we did it. 
I mean it's something I think 

174
00:10:08,900 --> 00:10:15,800
that is very good milestone for 
security posture and and also 

175
00:10:15,800 --> 00:10:19,500
it's like okay we are moving 
forward in terms of security or 

176
00:10:19,900 --> 00:10:24,800
users and in this case the 
employees and yeah, it's like 

177
00:10:24,800 --> 00:10:27,000
big step. 
It's in terms of security and 

178
00:10:27,000 --> 00:10:31,100
and and based on that, you start
getting more traction on 

179
00:10:31,100 --> 00:10:36,000
different security feature that 
you can enable along with this 

180
00:10:36,200 --> 00:10:39,100
there knowing the near future, 
or I don't two years time, 

181
00:10:39,100 --> 00:10:43,100
probably, the biggest 
achievement should be part 

182
00:10:43,100 --> 00:10:44,400
World. 
A so that's what I'll say 

183
00:10:44,400 --> 00:10:48,700
something related to that. 
So we are Step-by-step right? 

184
00:10:48,700 --> 00:10:50,600
But this is the first step I 
think. 

185
00:10:50,900 --> 00:10:53,100
So I would say that is the first
one over. 

186
00:10:53,700 --> 00:10:56,300
That's a big one. 
MFA is huge and for 23,000 

187
00:10:56,300 --> 00:10:58,400
people and that's across the 
globe to. 

188
00:10:58,400 --> 00:11:00,100
That's right. 
Not just a Mexican a different 

189
00:11:00,100 --> 00:11:03,800
culture people who doesn't want 
to use their phone for that. 

190
00:11:03,800 --> 00:11:08,300
And so the other thing is that 
technology right now using these

191
00:11:09,700 --> 00:11:15,300
conditional access or this 
context of the authentication in

192
00:11:15,300 --> 00:11:18,500
order to make decision? 
It's also Helps to right now. 

193
00:11:18,500 --> 00:11:22,500
This because otherwise, we'll be
more complex or even impossible.

194
00:11:22,500 --> 00:11:25,800
I would say, because if you are 
not having this context of the 

195
00:11:25,800 --> 00:11:29,900
user it, you cannot lowering the
friction of the end user and at 

196
00:11:29,900 --> 00:11:31,900
the end that will kill you 
though. 

197
00:11:31,900 --> 00:11:35,700
So if you are going to prompt 
the MFA, every time that they 

198
00:11:35,700 --> 00:11:38,200
are signing in is going to be 
too much for them. 

199
00:11:38,400 --> 00:11:41,000
So being able to take advantage 
of that conditional access as 

200
00:11:41,000 --> 00:11:43,400
part of the MFA was probably a 
big help, right? 

201
00:11:43,700 --> 00:11:46,500
Yeah. 
Brody in our case, we doubt that

202
00:11:46,700 --> 00:11:49,900
it wouldn't have gone through. 
It will be like just certain 

203
00:11:49,900 --> 00:11:55,000
amount of you sir and certain 
condition but not like totally 

204
00:11:56,200 --> 00:11:57,900
that's great. 
I think that's a pretty good 

205
00:11:57,900 --> 00:12:01,100
goal or a pretty good 
achievement for the year for 

206
00:12:01,100 --> 00:12:02,700
sure. 
Yeah and that's a second one. 

207
00:12:02,700 --> 00:12:08,100
That is also important I think 
is to And moving out things 

208
00:12:08,100 --> 00:12:12,700
around formal from licensed, the
young program and everything 

209
00:12:12,700 --> 00:12:16,600
related with that because it's a
complex conversation and as 

210
00:12:16,600 --> 00:12:20,900
difficult to get the message 
through top management. 

211
00:12:20,900 --> 00:12:25,500
And I know you and I have had 
several conversations special 

212
00:12:25,500 --> 00:12:29,500
over the last several months. 
Making sure that the message of 

213
00:12:29,500 --> 00:12:34,100
I am is being communicated 
effectively and received at the 

214
00:12:34,100 --> 00:12:37,900
executive level so that you can 
set up up these programs and 

215
00:12:38,000 --> 00:12:40,800
you've got to win through MFA. 
So yeah you want that went well 

216
00:12:40,800 --> 00:12:43,500
and it's providing value to the 
company would reduce risk. 

217
00:12:43,700 --> 00:12:45,400
What else can we do to help 
that? 

218
00:12:45,400 --> 00:12:48,100
So I think that was an important
conversation to have and I'm 

219
00:12:48,100 --> 00:12:50,800
glad to hear that that worked 
out you know the way that it 

220
00:12:50,800 --> 00:12:52,300
did. 
That's I think that's very good.

221
00:12:52,700 --> 00:12:57,600
So let's flip the coin. 
What's something that maybe you 

222
00:12:57,600 --> 00:13:02,300
wish had gone better in 2019 or 
something that you know on those

223
00:13:02,300 --> 00:13:06,700
lines of going better, I will 
say Say. 

224
00:13:06,700 --> 00:13:10,700
And then this is probably, well,
he needs related to the EMT 

225
00:13:10,700 --> 00:13:19,300
program, implementation, or, or 
trying to really formalized am 

226
00:13:19,300 --> 00:13:21,300
program. 
And I will say that this, 

227
00:13:21,300 --> 00:13:23,100
everything related with 
politics. 

228
00:13:23,500 --> 00:13:26,900
I remember that last year that 
you were here and you were 

229
00:13:26,900 --> 00:13:29,500
saying about, okay, Diem 
Program. 

230
00:13:29,500 --> 00:13:32,600
And everything related young 
program is more politics and 

231
00:13:32,600 --> 00:13:37,100
process and people than then. 
And the rest of the things, like

232
00:13:37,100 --> 00:13:42,800
technology. 
And New toys for the company and

233
00:13:42,800 --> 00:13:45,200
I was politically. 
Yeah, I get it. 

234
00:13:45,600 --> 00:13:50,200
We need that both at the end, I 
think that because of different 

235
00:13:50,200 --> 00:13:53,800
things internally, here in the 
company and culture and the type

236
00:13:53,800 --> 00:13:59,800
of politics that usually the 
company has I think that could 

237
00:13:59,800 --> 00:14:05,300
be a bear or we can improve that
how we should probably try to 

238
00:14:05,500 --> 00:14:10,000
make some connections, 
internally try to convince more 

239
00:14:10,000 --> 00:14:14,300
people having or looking to 
expand the sponsorship that we 

240
00:14:14,300 --> 00:14:17,900
have internally. 
And, and I think that this is 

241
00:14:17,900 --> 00:14:22,200
different based on every company
based on the organization. 

242
00:14:22,200 --> 00:14:25,900
And where are you seated in the 
organization, the organization 

243
00:14:25,900 --> 00:14:30,400
chart? 
Well, and And culture. 

244
00:14:30,400 --> 00:14:33,500
So probably politics here in 
Mexico is kind of different and 

245
00:14:33,500 --> 00:14:37,000
Uso. 
I need to watch more house of 

246
00:14:37,000 --> 00:14:38,900
cards. 
Also, cards game sometime 

247
00:14:39,000 --> 00:14:40,700
hopefully. 
Yeah, it could be house cards. 

248
00:14:40,700 --> 00:14:42,600
Could be Game of Thrones. 
Hopefully not, his bloody is 

249
00:14:42,600 --> 00:14:46,000
either like those are. 
Its this is the real world, 

250
00:14:46,000 --> 00:14:46,400
right? 
Yeah. 

251
00:14:46,400 --> 00:14:48,900
People have thoughts and 
opinions. 

252
00:14:48,900 --> 00:14:52,800
And you know, that's that's 
something that, you know, 

253
00:14:52,800 --> 00:14:57,300
earlier in my I am career was 
something that I wish I had done

254
00:14:57,600 --> 00:15:01,400
a little more effective job. 1M 
previous roles is understanding 

255
00:15:01,400 --> 00:15:05,600
the politics of it because you 
get when you're working, you 

256
00:15:05,600 --> 00:15:09,300
know, neck-deep in. 
I am a lot of things make sense,

257
00:15:09,700 --> 00:15:12,000
right? 
But there are larger discussions

258
00:15:12,000 --> 00:15:16,500
that are taking place above 
that, that can certainly impact 

259
00:15:16,500 --> 00:15:20,100
ability to get things done. 
So, being able to make 

260
00:15:20,100 --> 00:15:24,700
relationships and, you know, 
play the game sometimes of 

261
00:15:24,800 --> 00:15:27,400
bringing people in and 
understanding what their motives

262
00:15:27,400 --> 00:15:29,200
are and the psychology behind 
Find it. 

263
00:15:29,200 --> 00:15:31,100
And I think politics is a huge 
part of it. 

264
00:15:31,100 --> 00:15:34,500
And I know that, you know, 
whenever I'm working with, you 

265
00:15:34,500 --> 00:15:37,700
know, clients and customers is, 
there's a quote from for store 

266
00:15:37,700 --> 00:15:39,600
that I was like to use and I 
can't think of it. 

267
00:15:39,600 --> 00:15:42,000
Exactly right. 
The moment but politics is 

268
00:15:42,000 --> 00:15:44,800
included as part of that quote. 
And it's the reason I like it so

269
00:15:44,800 --> 00:15:47,900
much is because it's one of the 
only quotes I've seen that 

270
00:15:47,900 --> 00:15:51,200
includes Politics as this is 
something to account for as part

271
00:15:51,200 --> 00:15:54,500
of your eye and program is being
able to play that game, 

272
00:15:54,600 --> 00:15:58,500
understand it, you know, kiss 
the babies, shake the hands, you

273
00:15:58,500 --> 00:16:00,500
know. 
Politician, you know, being able

274
00:16:00,500 --> 00:16:02,700
to be as a big the parts of the 
picture and yep. 

275
00:16:02,700 --> 00:16:07,800
Yeah, exactly. 
And I'm getting back on that. 

276
00:16:07,800 --> 00:16:11,500
I mean, going back to 12 months 
ago, it wasn't the same person 

277
00:16:11,500 --> 00:16:16,100
in terms of politics either, so 
I hope next year, it's getting 

278
00:16:16,100 --> 00:16:19,500
better better. 
So from a resolution standpoint 

279
00:16:19,500 --> 00:16:23,000
for 2020, did I just is that, is
that one of the resolutions 

280
00:16:23,000 --> 00:16:25,800
you'll have is from a 2020 
perspective when I am is 

281
00:16:25,800 --> 00:16:28,700
politics. 
Yeah, but if you just believe, 

282
00:16:28,800 --> 00:16:32,300
Beeps. 
Yes, and but he's also about 

283
00:16:32,300 --> 00:16:38,100
started growing the Professional
Network, including, I mean 

284
00:16:38,400 --> 00:16:43,700
inside the company for sure. 
But also outside, try to find 

285
00:16:43,700 --> 00:16:48,600
folks are working on my MBA 
program for any M initiatives. 

286
00:16:48,600 --> 00:16:53,200
In some other companies here in 
Mexico, to be honest, right now,

287
00:16:53,200 --> 00:16:57,400
there's not any GM Community 
getting together or having 

288
00:16:57,400 --> 00:17:02,700
something like that. 
Since I saw the all the job that

289
00:17:02,900 --> 00:17:06,400
I deployed doing with the 
different user groups around the

290
00:17:06,400 --> 00:17:11,200
u.s. one of my ideas for next 
year or one of the resolution 

291
00:17:11,200 --> 00:17:14,800
that I have is start or local 
group here in Monterey. 

292
00:17:15,300 --> 00:17:21,099
And and I think that one of the 
biggest challenge is to find the

293
00:17:21,099 --> 00:17:25,700
right people because here those 
guys are saying people who are 

294
00:17:25,700 --> 00:17:30,100
working on identity, they are 
either developers working in 

295
00:17:30,100 --> 00:17:34,400
some user interface for some 
application. 

296
00:17:34,700 --> 00:17:38,100
So they are TAG themselves as a 
developer. 

297
00:17:38,100 --> 00:17:41,600
I haven't met in coding and I'm 
developer and some other folks 

298
00:17:41,600 --> 00:17:44,100
are working more on security 
size so they are Security 

299
00:17:44,100 --> 00:17:48,200
Professionals knowing 
professional so I need to go and

300
00:17:48,300 --> 00:17:52,600
leave that open. 
Okay, bringing a come with me. 

301
00:17:52,600 --> 00:17:56,800
And let's talk about identity. 
And so it's going to be at the 

302
00:17:56,800 --> 00:17:59,300
beginning that way, try to 
identify the The people 

303
00:17:59,300 --> 00:18:03,000
threatened by people just to 
join us and start talking about 

304
00:18:03,000 --> 00:18:04,600
different topics around 
identity. 

305
00:18:05,000 --> 00:18:09,400
So hopefully next few months we 
will have some Community here. 

306
00:18:09,400 --> 00:18:12,600
Yeah, that'd be great. 
I think do you think that you'll

307
00:18:12,600 --> 00:18:15,700
run into resistance with? 
Why are you talking to me? 

308
00:18:15,700 --> 00:18:18,400
Like what are you trying to do 
like, will people be guarded at 

309
00:18:18,400 --> 00:18:21,900
first known really? 
No, I mean, they are very open 

310
00:18:21,900 --> 00:18:27,200
and they are I mean I always see
the it Community very Very 

311
00:18:27,200 --> 00:18:32,300
friendly General Tso. 
And if you are always trying to 

312
00:18:32,300 --> 00:18:35,000
share knowledge, they will be 
open. 

313
00:18:35,400 --> 00:18:39,100
If you are trying to gain and 
probably the sales myself friend

314
00:18:39,100 --> 00:18:43,400
will kill me, but you selling 
this guy kind of events. 

315
00:18:45,600 --> 00:18:50,400
When you advertise the meeting 
you have to say that it's free 

316
00:18:50,400 --> 00:18:56,000
or free of sales grades are they
are, there's no selling nothing.

317
00:18:56,000 --> 00:18:59,500
And so it's just sharing 
information and need to be clear

318
00:18:59,500 --> 00:19:02,100
about that because otherwise you
will be. 

319
00:19:04,500 --> 00:19:06,300
People got scared and they won't
attend. 

320
00:19:06,500 --> 00:19:08,900
But if you are saying okay no 
it's just were talking about 

321
00:19:08,900 --> 00:19:11,600
this topic and sharing 
information and that's it. 

322
00:19:12,700 --> 00:19:17,100
So, what I'll do is in the show 
comments for this, I'll put your

323
00:19:17,100 --> 00:19:19,600
LinkedIn. 
So if you're listening and sure 

324
00:19:19,600 --> 00:19:23,300
Monterey or close by and Mexico 
and want to and, you know, help 

325
00:19:23,300 --> 00:19:27,600
our turret with setting up an, I
am group, I'll put your 

326
00:19:27,600 --> 00:19:29,100
information, so they can reach 
out to you on LinkedIn. 

327
00:19:29,100 --> 00:19:32,200
So, actually, in the next few 
weeks, I will start sharing both

328
00:19:32,200 --> 00:19:35,300
on LinkedIn as well. 
Great to have more information 

329
00:19:35,300 --> 00:19:39,100
about that and hopefully, by the
end of January, we will try and 

330
00:19:39,100 --> 00:19:41,400
set up the first one. 
Very cool. 

331
00:19:41,900 --> 00:19:45,800
So, for next year, are there any
conferences that you might be 

332
00:19:45,800 --> 00:19:47,300
interested in attending? 
Because sometimes those are 

333
00:19:47,300 --> 00:19:49,900
great hubs to be able to talk 
with other people. 

334
00:19:49,900 --> 00:19:53,100
And yeah, actually happened last
time when I met people from from

335
00:19:53,100 --> 00:19:56,300
Ida Pro and identity versus 
Washington this year. 

336
00:19:56,700 --> 00:20:00,800
So, yeah, I am willing to attend
identifiers. 

337
00:20:01,000 --> 00:20:08,200
Be one of them in general, for 
me, I never attend black hat 

338
00:20:08,200 --> 00:20:10,900
before, so it's still mine. 
Bucket list. 

339
00:20:10,900 --> 00:20:16,100
So I went to attend black hat, 
super, we get to wear a black 

340
00:20:16,100 --> 00:20:17,700
hat. 
Black is interesting because 

341
00:20:17,700 --> 00:20:21,600
it's not really an I am focused 
show but there are certainly, I 

342
00:20:21,600 --> 00:20:24,200
am topics because how to 
breaches happen typically 

343
00:20:24,200 --> 00:20:27,700
through a credentials, right? 
So being able to understand how 

344
00:20:27,700 --> 00:20:31,500
that happens, is important, it 
can be expensive sometimes to 

345
00:20:31,500 --> 00:20:34,600
go, but I found a cheap way to 
get to black hat. 

346
00:20:34,600 --> 00:20:39,200
If you are able to, if you're 
not able to get the full funding

347
00:20:39,200 --> 00:20:42,600
for the full path, which is Be 
like two thousand dollars or 

348
00:20:42,600 --> 00:20:46,800
three thousand dollars in u.s. 
you can also get a what they 

349
00:20:46,808 --> 00:20:50,000
call like a business Hall Pass 
which is only five hundred 

350
00:20:50,000 --> 00:20:53,700
dollars, so you can still go go 
into the business Hall, talk 

351
00:20:53,700 --> 00:20:55,800
with the different vendors who 
are there and see some of the 

352
00:20:55,800 --> 00:20:57,900
sessions. 
So that's an option that I've 

353
00:20:57,900 --> 00:21:00,800
used somebody do several times 
over the years as a way to say, 

354
00:21:00,800 --> 00:21:02,800
okay. 
Well, sometimes funding for 

355
00:21:02,800 --> 00:21:04,400
conferences, might be hard to 
come by. 

356
00:21:04,700 --> 00:21:06,400
What if I could get in there, 
little bit cheaper. 

357
00:21:07,300 --> 00:21:09,300
And save some money for that. 
So that could be an option for 

358
00:21:09,300 --> 00:21:11,800
folks who are listening that 
have never been to a black hat. 

359
00:21:11,800 --> 00:21:13,700
It is it's a great conference to
go to. 

360
00:21:13,800 --> 00:21:16,500
I mean, definitely laid back. 
Definitely casual. 

361
00:21:17,100 --> 00:21:19,600
You'll see everybody wearing, 
you know, suits and ties down to

362
00:21:19,600 --> 00:21:21,300
shorts and t-shirts and 
everything in between. 

363
00:21:22,200 --> 00:21:25,100
It's a fun one to go, too big to
is like 30,000 people. 

364
00:21:25,100 --> 00:21:28,400
I think that go to it, but 
sometimes can be expensive. 

365
00:21:28,400 --> 00:21:30,900
So an option to consider might 
be something like a business, 

366
00:21:30,900 --> 00:21:33,400
all pass and that would also 
apply to things like the RSA 

367
00:21:33,400 --> 00:21:35,000
conference. 
Yeah. 

368
00:21:35,000 --> 00:21:39,800
Ref a way I never attended. 
He's a successful in some other 

369
00:21:39,800 --> 00:21:45,700
item in the bucket list but what
I heard from that conference is 

370
00:21:45,700 --> 00:21:48,700
that hotels are like crazy. 
It's ridiculous. 

371
00:21:49,300 --> 00:21:52,200
It's San Francisco. 
So there's already you know, the

372
00:21:52,200 --> 00:21:55,400
built-in cost of that but yeah, 
I think that's the biggest knock

373
00:21:55,400 --> 00:21:57,700
on RSA is it's a huge 
conference. 

374
00:21:57,700 --> 00:21:59,700
It's in a great City, a great 
City. 

375
00:21:59,700 --> 00:22:01,600
That happens to be really 
expensive. 

376
00:22:02,300 --> 00:22:05,500
So unless you have a really good
deal from a hotel perspective, 

377
00:22:05,500 --> 00:22:06,900
that's another one that's tough 
to get. 

378
00:22:07,500 --> 00:22:10,300
Another one that I'll try and 
save money on sometimes is I'll 

379
00:22:10,300 --> 00:22:13,700
just get the conference, you 
know, are the business Hall Pass

380
00:22:14,000 --> 00:22:17,400
and spend all my time going back
and forth between the do for two

381
00:22:17,400 --> 00:22:19,700
different expose that they have,
and sometimes they include 

382
00:22:19,700 --> 00:22:22,100
Keynotes is part of that, so 
there are ways around it. 

383
00:22:22,108 --> 00:22:23,500
But yeah, it is really 
expensive. 

384
00:22:23,500 --> 00:22:26,000
Today, did he move to let you 
know? 

385
00:22:26,100 --> 00:22:28,900
I don't want to I've received 
surveys in the past that they 

386
00:22:28,900 --> 00:22:31,400
might be considering that I know
oracle, I think recently signed 

387
00:22:31,400 --> 00:22:34,500
a three-year deal with the city 
of Las Vegas. 

388
00:22:34,500 --> 00:22:36,900
So they're moving out of San 
Francisco. 

389
00:22:37,000 --> 00:22:40,400
And moving to Las Vegas, their 
show and the hotel costs were 

390
00:22:41,000 --> 00:22:43,200
one of the reasons they cited as
being that and that's that's a 

391
00:22:43,200 --> 00:22:46,300
big loss for San Francisco. 
I think I think was a 64 million

392
00:22:46,300 --> 00:22:51,000
dollar loss to the economy per 
year because of them leading 

393
00:22:51,000 --> 00:22:52,500
that conference meeting the 
city. 

394
00:22:53,100 --> 00:22:55,600
So I love San Fran's. 
Well, my favorite season world, 

395
00:22:55,600 --> 00:22:58,000
but yeah, it's expensive. 
And I hope they start to 

396
00:22:58,000 --> 00:23:00,100
recognize that and maybe try to 
figure out a way to make it a 

397
00:23:00,108 --> 00:23:02,900
little bit easier to have 
conferences there because 

398
00:23:02,900 --> 00:23:05,700
otherwise Las Vegas is going to 
eat the world because they're 

399
00:23:05,700 --> 00:23:07,600
so. 
Well designed and You know 

400
00:23:07,600 --> 00:23:09,500
relatively affordable and it 
comes to certain things. 

401
00:23:09,700 --> 00:23:10,300
All right. 
Yeah. 

402
00:23:10,300 --> 00:23:14,000
And I mean I heard that 
everything is a huge conference 

403
00:23:14,000 --> 00:23:16,500
and probably going to be 
difficult to move some smaller 

404
00:23:16,500 --> 00:23:17,300
cities. 
Yeah. 

405
00:23:17,800 --> 00:23:21,800
But I like from Identity versus 
that they are moving each year. 

406
00:23:21,800 --> 00:23:22,900
Yeah. 
Different city. 

407
00:23:22,900 --> 00:23:26,100
So it's like a torso. 
You're attending every single 

408
00:23:26,100 --> 00:23:29,400
year is not like you are going 
back to the same city, right? 

409
00:23:29,400 --> 00:23:32,000
And you don't have nothing new 
to see or something like that. 

410
00:23:32,000 --> 00:23:35,200
So you will enjoy, actually the 
city and all the cities you 

411
00:23:35,200 --> 00:23:38,000
never been there. 
I think the sheriff It's in 

412
00:23:38,300 --> 00:23:40,100
Denver, I believe. 
Yeah, Colorado, so that'll be 

413
00:23:40,100 --> 00:23:42,700
nice to you will be. 
Yeah. 

414
00:23:42,700 --> 00:23:44,700
Mountains will be different than
Washington, d.c., that's for 

415
00:23:44,700 --> 00:23:46,600
sure. 
It won't be as hot as and humid.

416
00:23:46,600 --> 00:23:50,900
Is it was this year, I hope the 
weather people who want to go 

417
00:23:50,900 --> 00:23:53,400
skiing, they'll be I think you 
know relatively close to do that

418
00:23:53,400 --> 00:23:56,700
or outdoor type things and 
previous years, it was New 

419
00:23:56,700 --> 00:23:59,900
Orleans and Chicago and yeah, 
they do a good job of picking 

420
00:24:00,000 --> 00:24:04,000
cool spots to kind of go to and 
hopefully people are able to 

421
00:24:04,000 --> 00:24:06,100
extend their trips. 
You know, go for a few days for 

422
00:24:06,100 --> 00:24:09,600
identifiers and Add on a couple 
days to either do a vacation 

423
00:24:09,600 --> 00:24:10,800
with families and stuff like 
that. 

424
00:24:10,800 --> 00:24:14,700
So, that'll be pretty cool. 
All right, well I want to have a

425
00:24:14,700 --> 00:24:17,800
kind of a quick conversation and
take advantage of the time that 

426
00:24:17,800 --> 00:24:21,300
we've had here and kind of get 
your thoughts down and accost 

427
00:24:21,300 --> 00:24:25,200
you with our podcast. 
Again, all gonna be always very 

428
00:24:25,200 --> 00:24:28,400
happy to have this conversation 
and all the offline conversation

429
00:24:28,400 --> 00:24:31,600
that we have while you are here 
and thank you for inviting me 

430
00:24:31,600 --> 00:24:32,400
again. 
Cool. 

431
00:24:32,400 --> 00:24:36,000
I appreciate it. 
Just as a kind of a note for 

432
00:24:36,000 --> 00:24:38,400
folks who are listening Just 
want to thank everyone who's 

433
00:24:38,400 --> 00:24:40,300
been listening throughout this 
entire year. 

434
00:24:40,500 --> 00:24:44,200
This is actually episode number 
26 over the last six months. 

435
00:24:44,200 --> 00:24:48,000
So we started to show back in 
the first week of July, of 2019 

436
00:24:48,500 --> 00:24:51,400
and Jim, and I have been putting
out content every week. 

437
00:24:51,600 --> 00:24:53,600
It's been a learning experience 
for both of us. 

438
00:24:53,600 --> 00:24:56,700
As we're doing this, we've never
done a podcast before, I've 

439
00:24:56,700 --> 00:24:59,500
never done anything as close to 
this, as far as editing. 

440
00:24:59,500 --> 00:25:02,600
So you know, we're learning on 
the Fly and I think that, you 

441
00:25:02,600 --> 00:25:04,800
know, things have gotten a 
little, you know, little easier 

442
00:25:04,800 --> 00:25:08,600
and faster as we're going along,
we That folks have enjoyed the 

443
00:25:08,600 --> 00:25:11,900
ride so far. 
We both have time coming off 

444
00:25:12,100 --> 00:25:14,500
time time off coming up next few
weeks. 

445
00:25:14,500 --> 00:25:17,200
So this is probably going to be 
our last show for the year. 

446
00:25:17,300 --> 00:25:21,300
I'm assuming. 
So we plan on picking back up in

447
00:25:21,300 --> 00:25:23,100
early January. 
So we're going to take a couple 

448
00:25:23,100 --> 00:25:26,500
weeks off here for Christmas and
the New Year's let our 

449
00:25:26,500 --> 00:25:28,800
respective cases of holiday 
brain. 

450
00:25:28,800 --> 00:25:33,900
Clear up as somebody if a cue 
from from the New Year's for the

451
00:25:33,900 --> 00:25:37,000
folks that are working in, I am 
operations. 

452
00:25:37,100 --> 00:25:42,200
Over this break, you know, mayor
systems stay up and running, may

453
00:25:42,200 --> 00:25:45,300
your password reset calls go 
very smoothly because, you know,

454
00:25:45,300 --> 00:25:48,400
everyone's going to call January
2nd with I forgot my password 

455
00:25:48,400 --> 00:25:50,900
that's you know, when the 
seasonal spikes like yeah. 

456
00:25:50,900 --> 00:25:53,200
So I want to thank everyone for 
listening. 

457
00:25:53,200 --> 00:25:56,400
Hope everyone has a great 
holiday and we'll talk with you 

458
00:25:56,400 --> 00:26:00,200
guys early next year in 2020. 
Take care. 

459
00:26:03,600 --> 00:26:06,800
You've been listening to the 
identity at the center podcast 

460
00:26:07,100 --> 00:26:09,500
To access all episodes. 
Visit identity at the 

461
00:26:09,500 --> 00:26:08,500
center.com. 
To access all episodes. 

462
00:26:08,500 --> 00:26:10,500
Visit identity at the 
center.com.

