BEGIN:VCALENDAR
VERSION:2.0
PRODID:-//pretalx//pretalx.com//bsidesatl-2023//talk//BLA3HY
BEGIN:VTIMEZONE
TZID:EST
BEGIN:STANDARD
DTSTART:20001029T030000
RRULE:FREQ=YEARLY;BYDAY=-1SU;BYMONTH=10;UNTIL=20061029T070000Z
TZNAME:EST
TZOFFSETFROM:-0400
TZOFFSETTO:-0500
END:STANDARD
BEGIN:STANDARD
DTSTART:20071104T030000
RRULE:FREQ=YEARLY;BYDAY=1SU;BYMONTH=11
TZNAME:EST
TZOFFSETFROM:-0400
TZOFFSETTO:-0500
END:STANDARD
BEGIN:DAYLIGHT
DTSTART:20000402T030000
RRULE:FREQ=YEARLY;BYDAY=1SU;BYMONTH=4;UNTIL=20060402T080000Z
TZNAME:EDT
TZOFFSETFROM:-0500
TZOFFSETTO:-0400
END:DAYLIGHT
BEGIN:DAYLIGHT
DTSTART:20070311T030000
RRULE:FREQ=YEARLY;BYDAY=2SU;BYMONTH=3
TZNAME:EDT
TZOFFSETFROM:-0500
TZOFFSETTO:-0400
END:DAYLIGHT
END:VTIMEZONE
BEGIN:VEVENT
UID:pretalx-bsidesatl-2023-BLA3HY@pretalx.com
DTSTART;TZID=EST:20231014T130000
DTEND;TZID=EST:20231014T135000
DESCRIPTION:For many\, IT security is still perceived as a sometimes-helpfu
 l nuisance\, but an all-the-time cost center.\n\nThe most common exception
  is in compliance\, often disproportionately handled by IT staff due to th
 e technical evidence gathering requirements. And it’s hard for security 
 staff to argue the case\, since you can draw a direct line from compliance
  reports to revenue. A clean SOC 2 report or PCI DSS certification can det
 ermine the outcome of multi-million-dollar deals. The same cannot usually 
 be said for a clean vulnerability assessment\, penetration test\, or red t
 eam report (much less a not clean one).\n\nSo how can security professiona
 ls compete with compliance for budgets\, and how can IT professionals garn
 er buy-in and internal support from executives and decision makers so they
  can affect organizational change and improvement?\n\nThis session will co
 ver how purple teaming activities can elevate an organization beyond excep
 tion management in revenue-generating deals\, to providing multiple mechan
 isms for demonstrating substantial ROI\, and quantifiably protecting exist
 ing and future revenues. I will detail actionable approaches – with real
  world examples – that showcase how purple team exercises can accomplish
  the following:\n\n- Establishing measurable security baselines and resili
 ence across companies and supply chains\n- Validating the efficacy of secu
 rity investments and identifying potential areas for greater efficiency.\n
 - Providing a blueprint for organizational advancement and agility via pen
 etration tests and red teams\n- Evidence-based ROI communication to leader
 ship and stakeholders\n- Demonstrable and continuous protection against he
 adline grabbing\, and investor rattling\, emerging threats
DTSTAMP:20260609T053026Z
LOCATION:Room 300
SUMMARY:From Checkbox to Checkmate: Winning the Game for Security Budgets -
  Ryan Basden
URL:https://pretalx.com/bsidesatl-2023/talk/BLA3HY/
END:VEVENT
END:VCALENDAR
