Episode 160: Championing SME Security with the CIS Controls

 

 

In Episode 160 of Cybersecurity Where You Are, Sean Atkinson and Tony Sager sit down with Alan Watkins, CIS Controls Ambassador, to explore how the CIS Critical Security Controls® (CIS Controls®) empower small and medium-sized enterprises (SMEs) to build practical, scalable cybersecurity programs.

Alan shares his journey from law enforcement to IT leadership in the City of San Diego and how his passion for supporting SME security led him to become a champion of the CIS Controls. The episode highlights the importance of translating complex cybersecurity guidance into actionable steps that SMEs can realistically implement even with limited resources.

Here are some highlights from our episode:

  • 00:49. Introductions to Alan, his career path, and his connection to the CIS Controls
  • 11:43. How Alan supports SMEs to mature their cybersecurity postures
  • 18:04. The work of CIS Controls Ambassadors to "memorialize" security best practices
  • 22:23. The need to translate how cyber hygiene supports business success
  • 25:31. CIS WorkBench and in-person communities as avenues to get involved

Resources

If you have some feedback or an idea for an upcoming episode of Cybersecurity Where You Are, let us know by emailing [email protected].

As of June 23, 2025, the MS-ISAC has introduced a fee-based membership. Any potential reference to no-cost MS-ISAC services no longer applies.