DiscoverCybersecurity Where You Are (video)Episode 157: How a Modern, Mission-Driven CIRT Operates
Episode 157: How a Modern, Mission-Driven CIRT Operates

Episode 157: How a Modern, Mission-Driven CIRT Operates

Update: 2025-10-15
Share

Description

In episode 157 of Cybersecurity Where You Are, Sean Atkinson sits down with Matthew Grieco, Cyber Incident Response Team (CIRT) Principal Analyst at the Center for Internet Security® (CIS®), and Dustin Cox, CIRT Analyst at CIS. Together, they explore the unpredictable world of cyber incident response. From ransomware investigations to digital forensics, the team shares how they adapt to evolving threats, leverage open-source tools, and collaborate to support state and local governments. The conversation highlights the mission-driven mindset that fuels their work and the importance of continuous learning, effective communication, and teamwork in cybersecurity. Here are some highlights from our episode:

  • 00:44 . Introductions to Matt and Dustin
  • 01:20 . Inside the typically untypical day of a CIRT analyst
  • 05:33 . Continuous learning and teamwork as ways to keep up with evolving threats
  • 07:38 . Inside the cybersecurity tooling used by CIRT to support state and local governments
  • 14:51 . How different skillsets on the team produce a unified incident response methodology
  • 19:26 . The work of a mission-driven team to uncover root causes for security incidents
  • 25:52 . An example of a case handled by Matt and Dustin
  • 30:16 . How CIRT assesses potential talent and looks for problem solvers

Resources

If you have some feedback or an idea for an upcoming episode of Cybersecurity Where You Are, let us know by emailing podcast@cisecurity.org.

Comments 
00:00
00:00
x

0.5x

0.8x

1.0x

1.25x

1.5x

2.0x

3.0x

Sleep Timer

Off

End of Episode

5 Minutes

10 Minutes

15 Minutes

30 Minutes

45 Minutes

60 Minutes

120 Minutes

Episode 157: How a Modern, Mission-Driven CIRT Operates

Episode 157: How a Modern, Mission-Driven CIRT Operates