Explorez tous les épisodes du podcast InfoSec Insider
| Titre | Date | Durée | |
|---|---|---|---|
| Benefits of Business Continuity Exercising | 03 Sep 2026 | 00:40:33 | |
InfoSec Insider Podcast - Season 3, Episode 1 (101) Benefits of Business Continuity Exercising In this episode of InfoSec Insider – Talk BC, Phil Knight, Senior Consultant at URM, explores exercising of business continuity plans, and the benefits this can provide to organisations. Phil draws upon his extensive experience supporting organisations to strengthen their business continuity arrangements and resilience to discuss:
Learn more about this topic: https://www.urmconsulting.com/blog/business-continuity-exercising 5 Business Continuity Must‑Dos to Strengthen Your Organisation’s Resilience webinar: https://www.urmconsulting.com/event/5-business-continuity-must-dos-to-strengthen-your-organisations-resilience You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| The First 72 Hours Managing Data Breaches | 27 Aug 2026 | 00:45:51 | |
In this episode of InfoSec Insider – Talk DP, Rachael Salter and Aimee Brown, both Consultants at URM, share their insights on how to effectively manage the immediate aftermath of a personal data breach. Aimee and Racheal draw on over 20 years’ combined data protection experience to discuss:
Ask Rachael and Aimee a question: https://urmconsulting.com/podcasts/the-first-72-hours-managing-data-breaches You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts
Connect with us on LinkedIn
Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| Cyber Essentials 2026 – Lessons Learned From Actual Assessments | 20 Aug 2026 | 00:36:19 | |
In this episode of InfoSec Insider – Talk Cyber, Jamie Leavers, Security Consultant at URM, and Lauren Gotting, New Business Director at URM, share real-world lessons learned from conducting hundreds of CE and CE+ assessments, including early assessments against the new Danzell requirements. Jamie and Lauren leverage their extensive experience with the Cyber Essentials scheme to discuss:
Learn more about URM’s webinar programme: https://www.urmconsulting.com/events/upcoming-events Contact webinars@urmconsulting.com for this webinar’s slide deck. You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| Physical Security Controls | 13 Aug 2026 | 00:25:18 | |
In this episode of InfoSec Insider, George Ryan and Jack Woods, both Consultants at URM, provide expert advice and guidance on how organisations can maintain the physical security of their information, and where physical security most often goes wrong. George and Jack draw upon their extensive combined experience of helping organisations strengthen their information security to discuss:
Ask Jack and George a question: https://urmconsulting.com/podcasts/physical-security-controls You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| PCI DSS Periodic Activities | 06 Aug 2026 | 00:37:17 | |
In this episode of InfoSec Insider, Alastair Stewart and Tibor Laczko, both Senior Consultants and Qualified Security Assessors (QSAs) with URM, share their insights on complying with periodic requirements within the Payment Card Industry Data Security Standard (PCI DSS). Alastair and Tibor leverage nearly 30 years’ combined experience with the PCI DSS to discuss:
Ask Alastair and Tibor a question: https://urmconsulting.com/podcasts/pci-dss-periodic-activities
If you enjoyed this episode of InfoSec Insider, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider
You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts
Connect with us on LinkedIn
Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| GDPR Cookies Compliance | 30 Jul 2026 | 00:37:36 | |
In this episode of InfoSec Insider – Talk DP, Aimee Brown and Rachael Salter, both Consultants at URM, break down cookies compliance under the General Data Protection Regulation (GDPR) and Privacy and Electronic Communications Regulations (PECR). Aimee and Racheal draw on over 20 years’ combined data protection experience to discuss:
Ask Rachael and Aimee a question: https://urmconsulting.com/podcasts/gdpr-cookies-compliance If you enjoyed this episode of InfoSec Insider, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts Connect with us on LinkedIn Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| Clause 10.2 of ISO 27001: Nonconformity and Corrective Action | 23 Jul 2026 | 00:11:20 | |
In this episode of InfoSec Insider, Neil Jones, Senior Consultant at URM, shares key advice and guidance on ISO 27001 Clause 10.2 (Nonconformity and corrective action), its requirements and how organisations can meet them. Neil leverages over 20 years of experience working with risk and information security-related standards to discuss:
Learn more about this topic: https://www.urmconsulting.com/blog/iso-27001-clause-10-2-nonconformity-and-corrective-action If you enjoyed this episode of InfoSec Insider, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| PCI DSS Scoping | 16 Jul 2026 | 00:36:28 | |
In this episode of InfoSec Insider, Tibor Laczko and Alastair Stewart, both Senior Consultants and Qualified Security Assessors (QSAs) at URM, explore scoping in the Payment Card Industry Data Security Standard (PCI DSS). Alastair and Tibor leverage nearly 30 years’ combined experience with the PCI DSS to discuss:
Ask Alastair and Tibor a question: https://urmconsulting.com/podcasts/pci-dss-scoping If you enjoyed this episode of InfoSec Insider, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts Connect with us on LinkedIn Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| Establishing Control Over AI Usage | 09 Jul 2026 | 00:27:50 | |
In this episode of InfoSec Insider, George Ryan and Jack Woods, both Consultants at URM, break down the key steps to establishing control over the use of artificial intelligence (AI) within organisations. Jack and George leverage their extensive experience supporting organisations to strengthen their information security and risk management to discuss:
Ask Jack and George a question: https://urmconsulting.com/podcasts/establishing-control-over-ai-usage If you enjoyed this episode of InfoSec Insider, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| Next 12 Months in Privacy | 02 Jul 2026 | 00:32:53 | |
In this episode of InfoSec Insider – Talk DP, Rachael Salter and Aimee Brown, both Consultants at URM, consider emerging trends in the field of data protection and privacy, and the practical implications for organisations that need to maintain compliance. Aimee and Rachel leverage 20 years’ combined experience in data protection to discuss:
You can register for the STAIRs webinar or watch the recording on URM’s website: https://www.urmconsulting.com/event/stairs-webinar-are-you-ready Ask Rachael and Aimee a question: https://urmconsulting.com/podcasts/next-12-months-in-privacy If you enjoyed this episode of InfoSec Insider, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts Connect with us on LinkedIn Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| PCI DSS and Service Providers | 25 Jun 2026 | 00:38:15 | |
In this episode of InfoSec Insider, Alastair Stewart and Tibor Laczko, both Senior Consultants and Qualified Security Assessors (QSAs) with URM, explore some of the most misunderstood areas of PCI DSS scoping, focusing on service providers, merchants, and complex modern payment architectures. Alastair and Tibor leverage nearly 30 years’ combined experience with the PCI DSS to discuss:
Ask Alastair and Tibor a question: https://www.urmconsulting.com/podcasts/pci-dss-and-service-providers
If you enjoyed this episode of InfoSec Insider, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts Connect with us on LinkedIn Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| Unusual GRC Questions | 18 Jun 2026 | 00:36:37 | |
In this episode of InfoSec Insider, George Ryan and Jack Woods, both Consultants at URM, answer some of the niche and unusual questions around governance, risk and compliance (GRC). Jack and George leverage their extensive experience supporting organisations to strengthen their information security and risk management to discuss: • The key questions clients rarely ask despite being extremely important • Whether a policy is enough on its own • The security policies that are most frequently not followed in practice • How to avoid prioritising compliance over genuine security • The easiest ways to establish whether a control is effective • How to achieve buy-in from executives on managing and mitigating risks before they materialise. Ask Jack and George a question: https://urmconsulting.com/podcasts/unusual-grc-questions If you enjoyed this episode of InfoSec Insider, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| Real-World Data Protection Questions | 11 Jun 2026 | 00:42:04 | |
In this episode of InfoSec Insider – Talk DP, Rachael Salter and Aimee Brown, both Consultants at URM, answer key, real-world questions around data protection and how organisations can stay compliant. Aimee and Rachel leverage 20 years’ combined experience in data protection to discuss:
Ask Rachael and Aimee a question: https://www.urmconsulting.com/podcasts/real-world-data-protection-questions If you enjoyed this episode of InfoSec Insider, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts Connect with us on LinkedIn Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| Business Approaches to Risk Management | 04 Jun 2026 | 00:35:18 | |
In this episode of InfoSec Insider, Wayne Armstrong and Chris Heighes, both Senior Consultants at URM, offer key advice on effective approaches to cyber and information security risk management from a business perspective. Chris and Wayne draw upon their combined 45 years of experience in information security and risk management to discuss:
Ask Wayne and Chris a question: https://urmconsulting.com/podcasts/business-approaches-to-risk-management
If you enjoyed this episode of InfoSec Insider, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| PCI DSS and Severless Architecture | 28 May 2026 | 00:24:41 | |
In this episode of InfoSec Insider, Alastair Stewart and Tibor Laczko, both Senior Consultants and Qualified Security Assessors (QSAs) with URM, explore the use of severless architecture and Payment Card Industry Data Security Standard (PCI DSS) compliance. Alastair and Tibor leverage nearly 30 years’ combined experience with the PCI DSS to discuss:
Ask Alastair and Tibor a question: https://www.urmconsulting.com/podcasts/pci-dss-and-severless-architecture If you enjoyed this episode of InfoSec Insider, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts Connect with us on LinkedIn Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| GDPR Compliance and BYOD | 21 May 2026 | 00:30:45 | |
In this episode of InfoSec Insider – Talk DP, Aimee Brown and Rachael Salter, both Consultants at URM, break down the data protection compliance issues that arise from the use of bring your own device (BYOD) within organisations, and how these can be overcome. Aimee and Racheal draw on over 20 years’ combined data protection experience to discuss:
Ask Rachael and Aimee a question: https://www.urmconsulting.com/podcasts/gdpr-compliance-and-byod
If you enjoyed this episode of InfoSec Insider, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider
You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts
Connect with us on LinkedIn
Brought to you by URM, the UK’s leading information and cyber security specialists.
| |||
| AI Supplier Management | 14 May 2026 | 00:21:41 | |
In this episode of InfoSec Insider, Jack Woods and George Ryan, both Consultants at URM, share their insights on how organisations can effectively manage AI suppliers and navigate the emerging risks associated with artificial intelligence in the supply chain. Jack and George draw on their experience supporting organisations with AI governance and supplier risk management to discuss:
Ask Jack and George a question: https://www.urmconsulting.com/podcasts/aI-supplier-management
If you enjoyed this episode of InfoSec Insider – Talk Cyber, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider
You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts
Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| Understanding Relevant Risks | 07 May 2026 | 00:15:18 | |
In this episode of InfoSec Insider, Wayne Armstrong, Senior Information Security Consultant and Consultant Manager at URM, breaks down the fundamentals of effective information security risk assessment and treatment. Wayne draws upon over 30 years of experience in IT, information security and risk management to discuss:
Learn more about this topic: https://www.urmconsulting.com/blog/information-security-risk-assessment-and-treatment-understanding-relevant-risks If you enjoyed this episode of InfoSec Insider – Talk Cyber, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| Zero Trust Architecture in PCI DSS | 30 Apr 2026 | 00:28:11 | |
In this episode of InfoSec Insider, Alastair Stewart and Tibor Laczko, both Senior Consultants and Qualified Security Assessors (QSAs) at URM, share their insights on zero trust architecture and its use when complying with the Payment Card Industry Data Security Standard (PCI DSS). Alastair and Tibor leverage 30 years’ combined experience with the PCI DSS to discuss:
Ask Alastair and Tibor a question: https://urmconsulting.com/podcasts/zero-trust-architecture-in-pci-dss If you enjoyed this episode of InfoSec Insider, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts Connect with us on LinkedIn Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| The DSAR Reviewer’s Toolbox | 23 Apr 2026 | 00:42:30 | |
In this episode of InfoSec Insider – Talk DP, Rachael Salter and Aimee Brown, both Consultants at URM, discuss context and redaction in handling data subject access requests (DSARs), and how reviewers can use these to fulfil requests in full compliance with the General Data Protection Regulation (GDPR). Aimee and Rachel leverage 20 years’ combined experience in data protection to discuss:
Ask Rachael and Aimee a question: https://urmconsulting.com/podcasts/the-dsar-reviewers-toolbox If you enjoyed this episode of InfoSec Insider, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider
You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts
Connect with us on LinkedIn
Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| Identity and Access Management | 16 Apr 2026 | 00:21:46 | |
In this episode of InfoSec Insider, George Ryan and Jack Woods, both Consultants at URM, share their insights on identity and access management (IAM), and the steps organisations can take to ensure their IAM is secure and resilient. Jack and George leverage their extensive experience supporting organisations’ strengthen their information security to discuss:
Ask Jack and George a question If you enjoyed this episode of InfoSec Insider, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts
Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| Clause 6.3 of ISO 27001: The Importance of Planned ISMS Change Management | 09 Apr 2026 | 00:06:21 | |
In this episode of InfoSec Insider, Neil Jones, Senior Consultant at URM, provides key insights on achieving and maintaining conformance to Clause 6.3 (Planning of changes) of ISO 27001, the International Standard for Information Security Management Systems (ISMS’). Neil leverages over 20 years of real-world information security knowledge and experience to discuss:
Learn more about this topic: https://www.urmconsulting.com/blog/iso-27001-clause-6-3-the-importance-of-planned-isms-change-management If you enjoyed this episode of InfoSec Insider, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| Cyber Security Expectations in the Medical Supply Chain | 02 Apr 2026 | 00:20:42 | |
In this episode of InfoSec Insider – Talk Cyber, Stuart Moran and George Ryan, Consultants at URM, explore recent shifts in cyber security expectations and regulatory requirements faced by organisations in the medical supply chain, both in the UK and across the globe. Stuart and George leverage their extensive experience helping organisations in the medical sector enhance information and cyber security to discuss:
Learn more about this topic:
If you enjoyed this episode of InfoSec Insider – Talk Cyber, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider
You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts
Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| Unusual Questions About PCI DSS | 26 Mar 2026 | 00:20:38 | |
In this episode of InfoSec Insider, Alastair Stewart and Tibor Laczko, both Senior Consultants and Qualified Security Assessors (QSAs) with URM, answer the niche and unusual questions they encounter around the Payment Card Industry Data Security Standard (PCI DSS). Alastair and Tibor leverage nearly 30 years’ combined experience with the PCI DSS to discuss:
Ask Alastair and Tibor a question. If you enjoyed this episode of InfoSec Insider, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts Connect with us on LinkedIn
Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| Review of Enforcement Action by the ICO in 2025 | 19 Mar 2026 | 00:14:34 | |
In this episode of InfoSec Insider – Talk DP, Stuart Skelly, Senior Data Protection Consultant at URM, provides a break down and analysis of how the Information Commissioner’s Office (ICO’s) enforced UK data protection (DP) regulations in 2025, and how this compares to the action taken by the regulator in previous years. Stuart leverages his 25+ years of specialisation in data protection law to discuss:
Learn more about this topic: https://www.urmconsulting.com/blog/analysis-of-enforcement-action-by-the-ico-in-2025-actions-way-down-security-data-breach-fines-way-up
If you enjoyed this episode of InfoSec Insider – Talk DP, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider
You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts
Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| Information Security Governance, Compliance and Asset Management | 12 Mar 2026 | 00:41:04 | |
In this episode of InfoSec Insider, Jack Woods and George Ryan, both Consultants at URM, share their insights on how organisations can achieve strong information security governance and asset management that facilitate conformance to ISO 27001, the International Standard for Information Security Management Systems (ISMS). Jack and George draw on their extensive experience supporting organisations’ ISO 27001 certifications to discuss:
Ask Jack and George a question:
If you enjoyed this episode of InfoSec Insider – Talk Cyber, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider
You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts
Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| The Core Functions of NIST CSF – Identify | 05 Mar 2026 | 00:14:00 | |
In this episode of InfoSec Insider – Talk Cyber, Mark O’Kane, Consultant at URM, explains the second of the NIST Cybersecurity Framework’s (CSF’s) five core functions, the Identify function, sharing his insights on what organisations can do in practice to meet its requirements. Mark uses his extensive experience working in information security and risk management to discuss:
Learn more about this topic: https://www.urmconsulting.com/blog/the-core-functions-of-nist-csf-identify If you enjoyed this episode of InfoSec Insider, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts Brought to you by URM, the UK’s leading information and cyber security specialists.
| |||
| Preparing for a PCI DSS Assessment | 26 Feb 2026 | 00:29:22 | |
In this episode of InfoSec Insider, Alastair Stewart and Tibor Laczko, both Senior Consultants and Qualified Security Assessors (QSAs) at URM, share their perspective on how organisations can most effectively and efficiently prepare for a Payment Card Industry Data Security Standard (PCI DSS) assessment. Alastair and Tibor leverage nearly 30 years’ combined experience with the PCI DSS to discuss:
Ask Alastair and Tibor a question: https://urmconsulting.com/podcasts/preparing-for-a-pci-dss-assessment
If you enjoyed this episode of InfoSec Insider, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts Connect with us on LinkedIn Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| Workplace Privacy in a Hybrid World: Monitoring, DSARs, and Building Trust | 19 Feb 2026 | 00:34:45 | |
In this episode of InfoSec Insider – Talk DP, Rachael Salter and Aimee Brown, Data Protection Consultants at URM, explore the challenges of workplace privacy and data protection compliance in a hybrid business landscape, and how these challenges can be overcome. Rachael and Aimee leverage over 20 years’ combined experience in data protection to discuss:
Ask Rachael and Aimee a question: https://urmconsulting.com/podcasts/workplace-privacy-in-a-hybrid-world-monitoring-dsars-and-building-trust URM’s blog on data protection considerations for monitoring employees: https://www.urmconsulting.com/blog/data-protection-considerations-for-monitoring-employees If you enjoyed this episode of InfoSec Insider, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts Connect with us on LinkedIn Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| Minimising the Impact if a Breach Occurs | 12 Feb 2026 | 00:31:11 | |
In this episode of InfoSec Insider – Talk Cyber, Jack Woods and George Ryan, both Consultants at URM, outline the steps organisations can take to ensure they are prepared in the event of a cyber breach and able to minimise the impact of a breach as much as possible. George and Jack leverage their extensive experience helping organisations strengthen their cyber and information security posture to discuss:
Ask Jack and George a question: https://www.urmconsulting.com/podcasts/minimising-the-impact-if-a-breach-occurs Learn more about this topic: https://www.urmconsulting.com/blog/minimising-the-impact-when-a-breach-occurs If you enjoyed this episode of InfoSec Insider – Talk Cyber, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| The Core Functions of NIST CSF - Govern | 05 Feb 2026 | 00:18:51 | |
In this episode of InfoSec Insider, Mark O’Kane, Consultant at URM, explores the National Institute of Standards and Technology Cybersecurity Framework’s (NIST CSF’s) newly introduced Govern Function, outlining its purpose and significance within version 2.0 of the Framework. Mark examines each of its six Categories in detail, from defining organisational context and risk management strategy to establishing oversight and supply chain risk management, and explain the policies, processes and activities you will need to implement and conduct for conformance with each Category. If you enjoyed this episode of InfoSec Insider, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts Connect with us on LinkedIn Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| Data Protection by Design and by Default | 29 Jan 2026 | 00:27:40 | |
In this episode of InfoSec Insider – Talk DP, Aimee Brown and Rachael Salter, both Data Protection Consultants at URM, share their insights on the principle of data protection (DP) by design and by default, particularly as it relates to small and medium-sized enterprises (SMEs). Rachael and Aimee leverage over 20 years’ combined experience in data protection to discuss:
Ask Rachael and Aimee a question: https://urmconsulting.com/podcasts/data-protection-by-design-and-by-default URM’s blog on data protection impact assessments (DPIAs): https://www.urmconsulting.com/blog/when-and-how-to-conduct-a-data-protection-impact-assessment-dpia If you enjoyed this episode of InfoSec Insider, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts Connect with us on LinkedIn
Brought to you by URM, the UK’s leading information and cyber security specialists.
| |||
| Reducing the Likelihood of a Security Breach | 22 Jan 2026 | 00:51:39 | |
In this episode of InfoSec Insider – Talk Cyber, Jack Woods and George Ryan, both Consultants at URM, explain the steps organisations can take to reduce the likelihood of suffering a security breach. George and Jack leverage their extensive experience helping organisations strengthen their cyber and information security posture to discuss:
Ask Jack and George a question: https://www.urmconsulting.com/blog/reducing-the-likelihood-of-a-security-breach Learn more about this topic: https://www.urmconsulting.com/blog/strengthening-your-cyber-defences-practical-steps-for-every-business If you enjoyed this episode of InfoSec Insider – Talk Cyber, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| The Defence Cyber Certification | 15 Jan 2026 | 00:13:05 | |
In this episode of InfoSec Insider – Talk Cyber, George Ryan, Consultant at URM, breaks down the Defence Cyber Certification (DCC), a new certification framework developed by the Ministry of Defence (MoD) and IASME for UK defence suppliers. George draws upon his extensive experience helping organisations strengthen their cyber security to discuss:
Learn more about this topic: https://ratethispodcast.com/infosecinsider You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| Data Protection Considerations for Artificial Intelligence (AI) | 14 Jan 2026 | 00:23:18 | |
In this episode of InfoSec Insider – Talk DP, Martin Brazier, Senior Data Protection Consultant at URM, explores the considerations organisations should make to maintain data protection (DP) compliance in their development and deployment of artificial intelligence (AI) systems. Martin leverages his 20+ years’ specialisation in DP and information management to discuss:
Learn more about this topic: https://www.urmconsulting.com/blog/data-protection-considerations-for-artificial-intelligence-ai If you enjoyed this episode of InfoSec Insider, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| PCI DSS: Standards vs. Reality | 18 Dec 2025 | 00:33:58 | |
In this episode of InfoSec Insider, Alastair Stewart and Tibor Laczko, both Senior Consultants and Qualified Security Assessors (QSAs) at URM, explore the theory versus the reality of compliance with the Payment Card Industry Data Security Standard (PCI DSS). Alastair and Tibor leverage nearly 30 years’ combined experience with the PCI DSS to discuss:
Ask Alastair and Tibor a question: https://www.urmconsulting.com/podcasts/pci-dss-standards-vs-reality If you enjoyed this episode of InfoSec Insider, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts Connect with us on LinkedIn Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| Clearview AI Case | 11 Dec 2025 | 00:14:52 | |
In this episode of InfoSec Insider – Talk DP, Stuart Skelly, Senior Consultant at URM, breaks down the Upper Tribunal’s recent decision to uphold the ICO’s appeal in the Clearview AI case, sharing his insights on the meaning and impact of this development. Stuart draws upon over 25 years of specialisation in data protection law to discuss:
Learn more about this topic: https://www.urmconsulting.com/blog/icos-appeal-in-clearview-ai-case-upheld If you enjoyed this episode of InfoSec Insider – Talk DP, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| ISO 27001 - Clause 5.1 Leadership and Commitment Explained | 04 Dec 2025 | 00:17:22 | |
In this episode of InfoSec Insider, Frazer Grudings, Senior Consultant at URM, shares his insights on Clause 5.1 of ISO 27001, which covers the leadership and commitment requirements for an information security management system (ISMS) that is conformant to the Standard. Frazer draws upon over 15 years of information security experience to discuss:
Learn more about this topic: https://www.urmconsulting.com/blog/iso-27001-clause-5-1-leadership-and-commitment-explained If you enjoyed this episode of InfoSec Insider, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts Brought to you by URM, the UK’s leading information and cyber security specialists.
| |||
| PCI DSS – The Overlooked Systems | 27 Nov 2025 | 00:27:42 | |
In this episode of InfoSec Insider, Alastair Stewart and Tibor Laczko, both Senior Consultants and Qualified Security Assessors (QSAs) at URM, offer their advice on the systems and controls that are often overlooked in relation to the Payment Card Industry Data Security Standard (PCI DSS). Alastair and Tibor leverage nearly 30 years’ combined experience with the PCI DSS to discuss:
Ask Alastair and Tibor a question: https://www.urmconsulting.com/podcasts/pci-dss-the-overlooked-systems
If you enjoyed this episode of InfoSec Insider, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider
You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts
Connect with us on LinkedIn
Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| Data Protection Rights | 20 Nov 2025 | 00:42:08 | |
In this episode of InfoSec Insider – Talk DP, Rachael Salter and Aimee Brown, both Consultants at URM, explore individuals’ rights under the GDPR beyond the right of access (the most widely discussed of the data subject rights), and the requirements and obligations on organisations handling these. Rachael and Aimee draw upon over 20 years’ combined experience in data protection to discuss:
Ask Rachael and Aimee a question. If you enjoyed this episode of InfoSec Insider, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts Connect with us on LinkedIn Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| 7 Top Tips for Communicating in a Crisis | 13 Nov 2025 | 00:12:37 | |
In this episode of InfoSec Insider, Martin Brazier, Senior Consultant at URM, shares his top tips on crisis communication, considering the steps organisations can take to prepare before a crisis occurs, while it is happening, and after it’s been dealt with to ensure communication is as effective and seamless as possible. Martin draws upon his extensive experience helping organisations enhance their business continuity to discuss:
Learn more about this topic: https://www.urmconsulting.com/blog/the-eu-artificial-intelligence-act If you enjoyed this episode of InfoSec Insider, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| Building Cyber Security Resilience Against Phishing | 06 Nov 2025 | 00:24:33 | |
In this episode of InfoSec Insider – Talk Cyber, George Ryan, Consultant at URM, provides his insights into phishing and what organisations can do to protect themselves against it. George draws upon his extensive experience helping organisations strengthen their cyber security to discuss:
Learn more about this topic: https://www.urmconsulting.com/blog/building-cyber-security-resilience-against-phishing If you enjoyed this episode of InfoSec Insider – Talk Cyber, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| ISO 27001 People Controls | 30 Oct 2025 | 00:36:45 | |
In this episode of InfoSec Insider, Jack Woods and Mark O’Kane, both Consultants at URM, take a deep dive on the ‘People’ controls theme in ISO 27001, and why these controls matter in today’s hybrid workplaces, how they strengthen information security, and what auditors look for during assessments. Jack and Mark draw upon their extensive experience supporting organisations’ implementation of the Standard to discuss:
Ask Jack and Mark a question: https://urmconsulting.com/podcasts/iso-27001-people-controls If you enjoyed this episode of InfoSec Insider, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts Connect with us on LinkedIn Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| AIIAs in ISO 42001 | 23 Oct 2025 | 00:08:19 | |
In this episode of InfoSec Insider, Neil Jones, Senior Consultant at URM, explores artificial intelligence impact assessments (AIIAs), a key conformance activity required by ISO 42001, the International Standard for AI Management Systems (AIMS). Neil leverages over 20 years of experience working with risk and information security-related standards to discuss:
Learn more about this topic: https://www.urmconsulting.com/blog/iso-42001-artificial-intelligence-impact-assessments-aiias If you enjoyed this episode of InfoSec Insider, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| The People Side of PCI DSS | 16 Oct 2025 | 00:29:27 | |
In this episode of InfoSec Insider, Alastair Stewart and Tibor Laczko, both Senior Consultants and Qualified Security Assessors (QSAs) at URM, offer advice on compliance with the Payment Card Industry Data Security Standard (PCI DSS), with a particular focus on the ‘human’ element of security. Alastair and Tibor leverage nearly 30 years’ combined experience with the PCI DSS to discuss:
Ask Alastair and Tibor a question: https://urmconsulting.com/podcasts/ the-people-side-of-pci-dss If you enjoyed this episode of InfoSec Insider, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts Connect with us on LinkedIn Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| DSARs: A Business Burden vs. a Data Protection Opportunity | 09 Oct 2025 | 00:24:34 | |
In this episode of InfoSec Insider – Talk DP, Rachael Salter and Aimee Brown, both Data Protection Consultants at URM, provide their insights on overcoming data subject access request (DSAR) challenges and how organisations can gain benefits from the fulfilment of DSARs, rather than treating them purely as a business burden. Rachael and Aimee leverage over 20 years’ combined experience in data protection to discuss: • Whether DSARs can actually enhance customer trust, or are simply a compliance checkbox exercise for organisations • How organisations can reframe DSAR handling as an opportunity to improve their data governance • The hidden costs of DSARs and how you can measure whether those costs bring any tangible benefits • When it is appropriate to push back on a DSAR as ‘manifestly unfounded’ or ‘excessive’ and how to defend this decision to the regulator • How to proactively use DSAR data to inform your privacy strategy and customer engagement. Ask Rachael and Aimee a question: https://urmconsulting.com/podcasts/dsars-a-business-burden-vs-a-data-protection-opportunity If you enjoyed this episode of InfoSec Insider, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts Connect with us on LinkedIn Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| Establishing Organisational Control Over AI | 02 Oct 2025 | 00:17:25 | |
In this episode of InfoSec Insider, George Ryan, Consultant at URM, provides key advice and guidance on the impact of artificial intelligence (AI) on organisations, and the steps they can take to establish control over its usage. George leverages his extensive experience helping organisations strengthen their information and cyber security to discuss:
Learn more about this topic: https://www.urmconsulting.com/blog/establishing-organisational-control-over-artificial-intelligence If you enjoyed this episode of InfoSec Insider, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| The EU AI Act | 25 Sep 2025 | 00:24:19 | |
In this episode of InfoSec Insider, Martin Brazier, Senior Consultant at URM, explores the EU Artificial Intelligence (AI) Act, the world’s first comprehensive regulation on AI by a major regulator. Maritn draws upon over 20 years of experience in compliance, information management and data protection to discuss:
Learn more about this topic: https://www.urmconsulting.com/blog/the-eu-artificial-intelligence-act If you enjoyed this episode of InfoSec Insider, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider
You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts
Brought to you by URM, the UK’s leading information and cyber security specialists. | |||
| The ISO 27001 Certification Process | 18 Sep 2025 | 00:11:00 | |
In this episode of InfoSec Insider, Scott Lloyd, Senior Consultant at URM, offers key advice and guidance on the ISO 27001 certification process, how organisations can ensure they are prepared for a smooth and successful certification assessment. Scott leverages his extensive experience in the field of information security to discuss:
Learn more about this topic: https://www.urmconsulting.com/blog/iso-27001-how-certification-works
If you enjoyed this episode of InfoSec Insider, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts Brought to you by URM, the UK’s leading information and cyber security specialists.
| |||
| Defending Against Ransomware Attacks | 11 Sep 2025 | 00:12:44 | |
In this episode of InfoSec Insider – Talk Cyber, George Ryan, consultant at URM, provides his insights on the steps organisations can take to protect themselves against ransomware attacks. George leverages his extensive experience helping organisations strengthen cyber security measures to discuss:
Learn more about this topic: https://www.urmconsulting.com/blog/critical-cyber-security-practices-to-defend-against-ransomware-attacks If you enjoyed this episode of InfoSec Insider – Talk Cyber, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts Brought to you by URM, the UK’s leading information and cyber security specialists. | |||