ep-21
GRC & Cyber Security Podcast
SureCloud Production
Subscribe

07 Sep 2023   |   36:11 Share this

Share this episode

Copy the link or share directly:

E21: 4 Simple, Easy & Budget-Friendly Steps to Reduce Your

In this episode of the GRC & Cyber Security Podcast, Brent Deterding, CISO at Afni, joins Matthew Davies, VP of Product at SureCloud, to share his refreshingly practical approach to organisational risk. Brent breaks down the four steps he uses to significantly reduce cyber risk in a way that is simple, easy and inexpensive — a framework that any business, regardless of size or maturity, can adopt.

 

He explains how Afni prioritises efforts within its security programme, the role of frameworks like FAIR, and the thinking behind a risk-first, complexity-last mindset. Brent also reveals how he achieved a one-third reduction in cyber insurance costs, and the cultural, operational and technical changes that supported this outcome.

 

This conversation offers clarity for leaders overwhelmed by competing priorities, limited resources and increasing pressure to demonstrate measurable risk reduction. Brent’s insight is practical, honest and highly actionable — making this episode essential listening for CISOs, security managers, risk professionals and anyone responsible for reducing organisational exposure.

 

 

What You’ll Learn

 

  • Brent’s four-step framework for simple, inexpensive and high-impact risk reduction

  • How Afni prioritises security work using risk-based thinking and FAIR principles

  • The structure and maturity of Afni’s information security programme

  • How Brent achieved a significant reduction in cyber insurance costs

  • What’s working well today in Afni’s cyber strategy

  • Current areas of concern for CISOs in 2023 and how to address them

  • The skills that make a great information security professional

  • Brent’s “one wish” for solving a major security problem

Hosted by: Mathew Davies Chief Product Officer - Surecloud

Guest: Brent Deterding CISO at Afni

  • Risk Management
  • Information Security
SureCloud G2 Reviews
Reviews

Read Our G2 Reviews

4.5 out of 5

"Excellent support team"
We've been happy with the product and the support and communication has been excellent throughout the migration and onboarding process.

Posted on
G2 - SureCloud

5 out of 5

"Great customer support"
The SureCloud team can't do enough to ensure that the software meets our organisation's requirements.

Posted on
G2 - SureCloud

4.5 out of 5

"Solid core product with friendly support team"
We use SureCloud for Risk Management and Control Compliance. The core product is strong, especially in validating data as it is...

Posted on
G2 - SureCloud

4.5 out of 5

"Excellent GRC tooling and professional service"
The functionality within the platform is almost limitless. SureCloud support & project team are very processional and provide great...

Posted on
G2 - SureCloud

5 out of 5

"Great customer support"
The SureCloud team can't do enough to ensure that the software meets our organisation's requirements.

Posted on
G2 - SureCloud

4.5 out of 5

"Solid core product with friendly support team"
We use SureCloud for Risk Management and Control Compliance. The core product is strong, especially in validating data as it is...

Posted on
G2 - SureCloud

4.5 out of 5

"Excellent GRC tooling and professional service"
The functionality within the platform is almost limitless. SureCloud support & project team are very processional and provide great...

Posted on
G2 - SureCloud

London Office

1 Sherwood Street, London,

W1F 7BL, United Kingdom

US Headquarters

6010 W. Spring Creek Pkwy., Plano,
TX 75024, United States of America

  • iso27001 1
  • Group 39594
  • ces 1

© SureCloud 2025. All rights reserved.