Legal Cyber Academy

Best Practices to Limit an Organization's Ransomware Risk from a Legal Perspective

Taught by Daniel B. Garrie

RansomwareLevel: Intermediate1h 8m

Free preview of this course

A 5-minute excerpt from this course. The full course continues from where this leaves off.

Overview of Best Practices to Limit an Organization's Ransomware Risk from a Legal Perspective

Cybersecurity risk management requires both technical preparation and legal and strategic planning. This seminar provides an overview of ransomware and the threat landscape, a brief primer on technical risk-management practices, and a deep dive into non-technical strategies from a legal perspective, including cyber risk assessments, adhering to regulatory cybersecurity standards through corporate policy, defining stakeholder roles during an event, and purchasing adequate cyber insurance. It concludes with key top-down strategies to mitigate ransomware.

What you’ll learn in Best Practices to Limit an Organization's Ransomware Risk from a Legal Perspective

  • Describe the ransomware threat landscape and what attackers target
  • Summarize the technical considerations for defending against ransomware
  • Apply non-technical, legal-perspective strategies such as risk assessments, policy, and insurance
  • Implement key top-down strategies to mitigate ransomware risk

Audience and prerequisites

Who should take this courseBest Practices to Limit an Organization's Ransomware Risk from a Legal Perspective

Attorneys advising corporate leadership on defining risk-management policies to reduce ransomware exposure.

Curriculum

  1. 1. Overview of the Ransomware Risk

    How ransomware is used and what attackers seek and target.

    Locked
  2. 2. Primer of the Technical Considerations

    Technical risk-management practices against ransomware.

    Video coming soon
  3. 3. Non-Technical Considerations from a Legal Perspective

    Risk assessments, regulatory standards, corporate policy, and insurance.

    Video coming soon
  4. 4. Key Strategies to Mitigate the Threat of Ransomware

    Top-down strategies and practices.

    Video coming soon

Your instructors

Portrait of Daniel B. Garrie

Daniel B. Garrie

Founder, Law & Forensics; Neutral at JAMS; Faculty at Harvard

Law & Forensics LLC · JAMS · Harvard · Rutgers Law School · Journal of Law & Cyber Warfare

Daniel B. Garrie is the founder and executive managing partner of Law & Forensics LLC, a boutique cybersecurity and forensic engineering firm he co-founded in 2008. He serves as a neutral, arbitrator, and forensic special master at JAMS, focusing on cybersecurity, cryptocurrency, and complex technology disputes, and holds faculty appointments at Harvard and Rutgers Law School. A patented software inventor and prolific author, he is editor-in-chief of the Journal of Law & Cyber Warfare and a widely cited authority on computer forensics, eDiscovery, and cyber litigation.

Portrait of Shraddha Patil

Shraddha Patil

Director of Product, Palo Alto Networks

Palo Alto Networks

Shraddha Patil is a director of product at Palo Alto Networks, based in Santa Clara, California. Her work centers on conceptualizing, designing and implementing cybersecurity products and on secure product development. She was previously a senior product manager at Salesforce. She was named a candidate for Cybersecurity Executive of the Year in the Cybersecurity Excellence Awards and mentors through Cyversity, a nonprofit supporting diversity in the cybersecurity workforce. At Legal Cyber Academy, Shraddha Patil teaches on best practices for limiting an organization's ransomware risk.

Portrait of Chris Campbell

Chris Campbell

Former SVP, CISO and Head of Technology, Bitsight

Bitsight

Chris Campbell served as senior vice president, chief information security officer and head of technology at Bitsight, a cyber risk platform company known for security ratings and third-party risk management. In that role he was responsible for ensuring Bitsight managed its own internal cyber risk and for putting the right people and technology in place to support the company's IT and security initiatives. At Legal Cyber Academy, Chris Campbell teaches on limiting an organization's ransomware risk.

Portrait of James Blair

James Blair

Group Manager Technology and Chief Information Security Officer, Todd Corporation

Todd Energy

James Blair is Group Manager Technology and Chief Information Security Officer at Todd Corporation, the New Zealand group that is the parent company of Todd Energy, which produces a third of the country's natural gas. Tasked with enhancing digital efficiency and working from a broad mandate, he has led significant IT standardisation and centralisation, reduced costs, built IT credibility and improved IT value and satisfaction metrics, using a first-100-days planning framework to reset and narrow the technology strategy and set out priorities and a clear roadmap. At Legal Cyber Academy, James Blair teaches on cyber incident response for boards and their counsel and on limiting an organisation's ransomware risk.

Portrait of Kurt Sanger

Kurt Sanger

Founder and Director, Integrated Cybersecurity Partners, LLC; Cybersecurity and Data Privacy Attorney, Buchanan Ingersoll & Rooney PC

Integrated Cybersecurity Partners, LLC

Kurt Sanger is founder and director of Integrated Cybersecurity Partners, LLC, a cyber and national security consultancy, and is a cybersecurity and data privacy attorney with Buchanan Ingersoll & Rooney PC. He served with U.S. Cyber Command from 2017 to 2022, first as lead attorney for plans, policy, partnerships and legislative affairs, then for operations and intelligence, and finally as the command's deputy general counsel; from 2014 to 2017 he was general counsel for U.S. Marine Corps Forces Cyberspace Command. Over more than 23 years of active duty in the Marine Corps he served as a prosecutor, criminal defense counsel, cyber operations attorney and international law instructor, retiring in November 2022. He holds a degree in national security law from Georgetown University and is a non-resident senior associate with the CSIS Strategic Technologies Program and a non-resident fellow with the Army Cyber Institute at West Point. At Legal Cyber Academy, Kurt Sanger teaches on limiting an organization's ransomware risk from a legal perspective.