pc-hero-frame
GRC & Cyber Security Podcast
SureCloud Production
Subscribe

26 Feb 2024   |   32:10 Share this

Share this episode

Copy the link or share directly:

E25: How CCM can level up your compliance

In this episode of the SureCloud Cyber & Risk Leaders Podcast, cybersecurity professional Jodie Lash joins Matthew Davies, VP of Product at SureCloud, to explore how organisations can strengthen their security posture through continuous control monitoring (CCM), improved controls assurance, and greater automation.

 

Jodie shares her personal journey into cybersecurity, offering a candid look at the experiences that shaped her career and the lessons she has learnt along the way. With extensive industry knowledge, she discusses why traditional assurance models are no longer enough, and how CCM technology can help organisations gain real-time visibility, reduce manual effort, and respond faster to emerging risks.

 

The conversation also dives into the priorities and pressures facing cybersecurity teams today, from stretched resources and growing regulatory demands to the ongoing need for user awareness and cultural engagement. Jodie highlights both the opportunities and the challenges of adopting automation across governance, risk, and compliance (GRC), providing practical advice for leaders seeking to modernise their programmes.

 

Key themes covered in this episode include:

 

  • Jodie’s career pathway and reflections on working in cybersecurity

  • Why continuous control monitoring is essential for modern assurance

  • Practical considerations when selecting and implementing CCM technology

  • How automation supports higher-quality controls, fewer manual tasks, and faster reporting

  • The importance of user awareness and strong organisational culture

  • The biggest challenges facing risk and cyber teams in 2024

  • The skills required to thrive as an information security professional

  • The one thing Jodie wishes she had more time for in security leadership

 

This is a valuable episode for cybersecurity leaders, GRC professionals, risk managers, and anyone focused on evolving their control environment to match today’s threat landscape.

Hosted by: Mathew Davies Chief Product Officer - Surecloud

Guest: Jodie Lash Cyber Security Professional

  • GRC
  • Cybersecurity
Vector
Reviews

Read Our G2 Reviews

4.5 out of 5

"Excellent GRC tooling and professional service"
The functionality within the platform is almost limitless. SureCloud support & project team are very professional and provide great...

Posted on
G2 - SureCloud

5 out of 5

"Great customer support"
The SureCloud team can't do enough to ensure that the software meets our organisation's requirements.

Posted on
G2 - SureCloud

4.5 out of 5

"Solid core product with friendly support team"
We use SureCloud for Risk Management and Control Compliance. The core product is strong, especially in validating data as it is...

Posted on
G2 - SureCloud

4.5 out of 5

"Excellent support team"
We've been happy with the product and the support and communication has been excellent throughout the migration and onboarding process.

Posted on
G2 - SureCloud