The B2B Podcast Index
Index
All categories
MarketingSalesSaaSFinanceHROpsLeadershipCustomer SuccessAI & DataProductStartups & FoundersRevOpsEngineering & DevTools
MethodologySubmit
Best of:MarketingSalesSaaSFinanceHROpsLeadershipCustomer SuccessAI & DataProductStartups & FoundersRevOpsEngineering & DevTools
An independent project byFame
SearchBest episodesGuestsInsightsMethodologySubmit a podcast
Index/Ops/Privacy in Practice
Privacy in Practice artwork

The Arc of a Cyber Incident and Strategies for Enterprise Response, with Lisa Sotto

Privacy in Practice · 2026-02-17 · 51 min

0:00--:--

Episode notes

In this episode of Privacy In Practice, hosts Kellie du Preez and Danie Strachan welcome Lisa Sotto, Chair of the Global Privacy and Cybersecurity Practice at Hunton Andrews Kurth, and a Star Performer for Privacy and Data Security (Chambers and Partners), for a detailed, practitioner-level conversation on how cyber incidents actually unfold, from first anomaly detection through board notification and the regulatory long tail that follows. The discussion traces what Sotto calls “the arc of an incident”: mobilizing the response team under privilege, retaining forensic investigators and extortion negotiators, coordinating with law enforcement agencies, and managing global notification obligations. Kellie raises the practical complexity of locating affected data subjects when address data is unavailable, the cost dynamics of cyber insurance, and why controllers remain responsible for regulatory notification even when the breach originates with a vendor.

More from Privacy in Practice

All episodes →
  • Inside the Mind of Tom Kemp, California's Privacy Regulator94 / 100
  • Are Privacy Myths Shaping Your Business Decisions?72 / 100
  • Privacy in M&A: Getting Acquisition-Ready72 / 100
  • Empowering Teams to Exercise Judgement in Privacy Decisions67 / 100
  • California Is Watching: Unpacking Enforcement Trends with Daniel Goldberg95 / 100
Explore the best B2B Ops podcasts →
All Privacy in Practice episodes →