Greg Van Der Gaast black and white

Greg Van Der Gaast

Information Security Expert, Former Hacker, Bestselling Author

why book greg?

  • Greg Van Der Gaast has over 25 years of experience, including as a CISO and Chief Technologist at CDW, shaping global security strategies
  • He is the author of ‘Rethinking Infosec’ and ‘What We Call Security,’ offering innovative approaches to transforming security practices
  • Greg is known for his humour and relatable stories, delivering complex security insights in a refreshingly clear and engaging manner
Greg Van Der Gaast speaking on stage

Biography

Greg started in security as a teenage hacker. After breaking into a nuclear weapons facility mere weeks after it had performed live atomic tests and stealing the research data, he was recruited by the US government and operated in a covert capacity for the US Defence Department and the FBI.

It is this background that leads most people to consider Greg an expert in cybersecurity, inviting him to speak at company and public events alike. But Greg is the first to tell people something they don’t expect: The overlap of skills required between hacking and securing organisations is nearly zero.

Instead, Greg talks about everything he has learned since. Organisations are not computers, vulnerabilities are quality defects, and today’s cybersecurity focuses on mitigating evermore symptoms rather than tackling root causes.

Greg Van Der Gaast speaking on stage

Whether it be through his books (Rethinking InfoSec, What We Call Security, and A Better Way), his talks, podcasts, or his Security Outcomes YouTube channel, Greg presents ideas through simple and often amusing analogies that are not only completely understandable to any audience, but also deeply thought provoking to security practitioners and business leaders alike.

Topics

Achieving Security Outcomes

A thought-provoking big-picture view of information security, why today’s approaches are not working – every year the world spends more on cybersecurity platforms and personnel and every year the number and scale of breaches increases – and what can we learn from other industries on how to reduce not just our exposure but our costs too?

Turning Security from a Cost to a Competitive Advantage

Once one considers that security is essentially a quality proposition (vulnerabilities are defects) we can not only strive to make superior security a commercial differentiator, but we can also leverage security defects as indicators of quality defects elsewhere. Addressing those issues doesn’t just reduce the introduction of defects, it tends to streamline operations, reduce defects, rework, increase agility, reduce compute costs and much more.
At a time where CISOs are being challenged to show ROI on risk reduction, we present instead that a security function can provide significant contributions to the bottom line. Risk reduction effectively becomes a free side-effect above and beyond tangible savings made through quality improvements to processes throughout the organisation.

Strategy, Leadership & Human Potential

Most cybersecurity strategies centre around the implementation of tools and platforms to mitigate issues, but not the aspects of the business that are creating the issues in the first place. Achieving the latter, in order to reverse the tide of ever-increasing security problems, requires approaches and leadership skills rarely considered in cyber security.

In this talk we explain what an effective business strategy towards the outcome of security looks like, the leadership skills needed to overcome the hurdles faced, and how to maximise the potential of security teams in organisations.

How Organisations Can Protect Themselves with Unconventional Approaches

Strategy, Leadership & Human Potential

Turning Security from a Cost to a Competitive Advantage

Resources

Books

Rethinking Infosec by Greg Van Der Gaast yellow book cover
What we call security by Greg Van Der Gaast red book cover

testimonials

“Engaging, inspirational, insightful.”

“The delegate response from your talk has been excellent, you are a really engaging presenter and people found the advice you gave really constructive and pragmatic.”

“Please do send my thanks over to Greg! His part in the event was amazing and definitely provided the wow factor!”

“Your presentation was extremely well received.”

“The best reviews we’ve seen.”, “Incredibly good.”

“Really positive, useful, completely different twist. Much needed at InfoSec events.”

“Epic talk.”, “World class.”

“Ranked the highest of all of our presenters.”

“It goes without saying that you were the star of yesterday’s conference.”

“I’ve lost count of the amount of times I’ve recounted things Greg said to my customers and left them in awe.”