SlideShare a Scribd company logo
1 of 20
Download to read offline
Selling Security
  Bill Kasper from HackerVaccine.com

You must sell IT security
  It does not sell itself

        (Eww, sales)
Selling Security
      Start from the end. Work our way back from our goals.
             Visualize World Peace (Through Strength)




Goal: The System Is SECURE!

Goal: The System Owner is HAPPY!

Goal: You are a HERO!
Selling Security
           Report your success (blow your own trumpet)




Goal: Inform the client

Goal: Emergencies averted

Goal: Boss looks good!
Selling Security
       Re-check the SYSTEM (every day is Groundhog Day)




Goal: Verify predictions/fixes

Goal: Avoid surprises

Goal: Reduce your stress
Selling Security
       Schedule and act on deployment/downtime as agreed
             Be when and where you said you'd be




Goal: Demonstrate timeliness

Goal: Avoid cascading crises

Goal: Predictability = trust
Selling Security
 Get client to commit to time/date/resources to secure the SYSTEM
          Convey that your time and schedule are valuable




Goal: Communicate your value

Goal: Share responsibility

Goal: Determinism is our friend
Selling Security
      Offer goodies to meet a deadline to secure the SYSTEM
     Encouragement in search of excellence (not manipulation)




Goal: Organize your calendar

Goal: Commit your client(s)

Goal: Speed up sales cycle
Selling Security
           Pick a time you want to secure the SYSTEM
      24 hrs from now, this weekend, before Simpsons is on




Goal: Lock gates before escape

Goal: Communicate urgency

Goal: Chance to be a hero
Selling Security
             Find your sponsor's hot button/deadly sin
                      Fear, greed, ego, pride




Goal: Know your customer

Goal: Speak in effective terms

Goal: Build relationship
Selling Security
      Whoever owns the SYTEM will respond to SOMETHING
    Communicate that SECURITY represents money, peace, time




Know: Psychology opens doors

Know: You're right, that's a fact

Know: Common ground = sale
Selling Security
       In order to secure the SYSTEM, we must sell security
       Overcome “The suits sell, we actually do stuff” attitude




Know: Ninja sales skills = work

Know: Technicians can sell

Know: Selling is being friendly
Selling Security
                    Hate not the ways of The Suits
   For tho they are but non-technical, lo, they bringeth in the buck$




Know: Technicians don't like suits

Know: Suits don't grok technicians

Know: Suit skills + tech = Winning
Selling Security
        What established personal interaction model works?
           White Hat Hacking the stakeholder's psyche




Goal: Succeed with least effort

Goal: Get that SYSTEM secured!

Goal: Get paid to succeed
Selling Security
     Getting the SYSTEM secured requires personal interaction
                   Stakeholders like to be wooed




Know: Technology doesn't sell

Know: Solutions/sex sells

Know: You solve client problems
Selling Security
  Prospect Theory (Daniel Kahneman, 1979, eventual Nobel Prize)
          Why 85% of people would rather risk losing big
                than losing a little up front for sure



Know: Risking big loss is preferred

Know: Security is an uphill psych war

Know: There are psych war weapons
Selling Security
                       Who is in charge here?
           There is a behind on the line. Find out whose.




Goal: Don't bother talking to minions

Goal: Identify “launch” authority

Goal: List areas of responsibility
Selling Security
   Preemptive security is obviously a great way to spend money.
               Why are we even talking about this?




Know: You're smarter than your client

Know: What's obvious to us, ain't

Know: Security is a negative
Selling Security
                            OMFG!
   Does anyone know about the lack of security in the SYSTEM?




Goal: Find someone who can agree to fix

Goal: Be Paul Revere 2012!

Goal: Apply your passion profitably
Selling Security
                           OMFG!
                   The SYSTEM is unsecured!!!




Know: You see a problem others don't

Know: You can't fix it all by yourself

Know: It's probably worse than you think
Selling Security
  Bill Kasper from HackerVaccine.com


Www.HackerVaccine.com
   @hackervaccine

More Related Content

Similar to HackerVaccine - Selling Security

Dinamite sales process and overview training presentation
Dinamite sales process and overview training presentationDinamite sales process and overview training presentation
Dinamite sales process and overview training presentation
JacksonTIvan
 
The Psychology of Sales
The Psychology of SalesThe Psychology of Sales
The Psychology of Sales
Craig James
 

Similar to HackerVaccine - Selling Security (20)

Business of software 2009 v2.1
Business of software 2009 v2.1Business of software 2009 v2.1
Business of software 2009 v2.1
 
The Key To Technical Selling
The Key To Technical SellingThe Key To Technical Selling
The Key To Technical Selling
 
Its not a bug it's a feature - Seattle B sides 2019
Its not a bug it's a feature - Seattle B sides 2019Its not a bug it's a feature - Seattle B sides 2019
Its not a bug it's a feature - Seattle B sides 2019
 
Thought Leader Global 2014 Amsterdam: Taking Security seriously -> Going beyo...
Thought Leader Global 2014 Amsterdam: Taking Security seriously -> Going beyo...Thought Leader Global 2014 Amsterdam: Taking Security seriously -> Going beyo...
Thought Leader Global 2014 Amsterdam: Taking Security seriously -> Going beyo...
 
Effective Sales Techniques for Coffee Roasters
Effective Sales Techniques for Coffee RoastersEffective Sales Techniques for Coffee Roasters
Effective Sales Techniques for Coffee Roasters
 
Chap 9 reporting
Chap 9 reportingChap 9 reporting
Chap 9 reporting
 
Conquering fear prl reviews
Conquering fear prl reviewsConquering fear prl reviews
Conquering fear prl reviews
 
Rational versus emotional – inside the mind of your buyer
Rational versus emotional – inside the mind of your buyerRational versus emotional – inside the mind of your buyer
Rational versus emotional – inside the mind of your buyer
 
sales
salessales
sales
 
Dinamite sales process and overview training presentation
Dinamite sales process and overview training presentationDinamite sales process and overview training presentation
Dinamite sales process and overview training presentation
 
2017 06 18 Meetup Slides
2017 06 18 Meetup Slides2017 06 18 Meetup Slides
2017 06 18 Meetup Slides
 
Security for Thinkers
Security for ThinkersSecurity for Thinkers
Security for Thinkers
 
2017-07-21 and 2017-07-23 Meetup Slides
2017-07-21 and 2017-07-23 Meetup Slides 2017-07-21 and 2017-07-23 Meetup Slides
2017-07-21 and 2017-07-23 Meetup Slides
 
How to sales in tough times
How to sales in tough timesHow to sales in tough times
How to sales in tough times
 
B2B - selling in the crisis - Flume Sales Training - Corona. - Covid 19
B2B -  selling in the crisis  - Flume Sales Training - Corona. - Covid 19B2B -  selling in the crisis  - Flume Sales Training - Corona. - Covid 19
B2B - selling in the crisis - Flume Sales Training - Corona. - Covid 19
 
7 Steps of Successful Sales Pitch
7 Steps of Successful Sales Pitch7 Steps of Successful Sales Pitch
7 Steps of Successful Sales Pitch
 
50 Sales Lessons from 3 Years in B2B SaaS
50 Sales Lessons from 3 Years in B2B SaaS50 Sales Lessons from 3 Years in B2B SaaS
50 Sales Lessons from 3 Years in B2B SaaS
 
Sales Strategies & The Use Of Psychology And Neural Linguistics In Negotiatin...
Sales Strategies & The Use Of Psychology And Neural Linguistics In Negotiatin...Sales Strategies & The Use Of Psychology And Neural Linguistics In Negotiatin...
Sales Strategies & The Use Of Psychology And Neural Linguistics In Negotiatin...
 
The Psychology of Sales
The Psychology of SalesThe Psychology of Sales
The Psychology of Sales
 
2017 06 23 Meetup Slides
2017 06 23 Meetup Slides2017 06 23 Meetup Slides
2017 06 23 Meetup Slides
 

Recently uploaded

會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文
會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文
會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文
中 央社
 
IATP How-to Foreign Travel May 2024.pdff
IATP How-to Foreign Travel May 2024.pdffIATP How-to Foreign Travel May 2024.pdff
IATP How-to Foreign Travel May 2024.pdff
17thcssbs2
 

Recently uploaded (20)

INU_CAPSTONEDESIGN_비밀번호486_업로드용 발표자료.pdf
INU_CAPSTONEDESIGN_비밀번호486_업로드용 발표자료.pdfINU_CAPSTONEDESIGN_비밀번호486_업로드용 발표자료.pdf
INU_CAPSTONEDESIGN_비밀번호486_업로드용 발표자료.pdf
 
factors influencing drug absorption-final-2.pptx
factors influencing drug absorption-final-2.pptxfactors influencing drug absorption-final-2.pptx
factors influencing drug absorption-final-2.pptx
 
The Benefits and Challenges of Open Educational Resources
The Benefits and Challenges of Open Educational ResourcesThe Benefits and Challenges of Open Educational Resources
The Benefits and Challenges of Open Educational Resources
 
Features of Video Calls in the Discuss Module in Odoo 17
Features of Video Calls in the Discuss Module in Odoo 17Features of Video Calls in the Discuss Module in Odoo 17
Features of Video Calls in the Discuss Module in Odoo 17
 
Behavioral-sciences-dr-mowadat rana (1).pdf
Behavioral-sciences-dr-mowadat rana (1).pdfBehavioral-sciences-dr-mowadat rana (1).pdf
Behavioral-sciences-dr-mowadat rana (1).pdf
 
Operations Management - Book1.p - Dr. Abdulfatah A. Salem
Operations Management - Book1.p  - Dr. Abdulfatah A. SalemOperations Management - Book1.p  - Dr. Abdulfatah A. Salem
Operations Management - Book1.p - Dr. Abdulfatah A. Salem
 
slides CapTechTalks Webinar May 2024 Alexander Perry.pptx
slides CapTechTalks Webinar May 2024 Alexander Perry.pptxslides CapTechTalks Webinar May 2024 Alexander Perry.pptx
slides CapTechTalks Webinar May 2024 Alexander Perry.pptx
 
會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文
會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文
會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文會考英文
 
How to Manage Notification Preferences in the Odoo 17
How to Manage Notification Preferences in the Odoo 17How to Manage Notification Preferences in the Odoo 17
How to Manage Notification Preferences in the Odoo 17
 
The Ultimate Guide to Social Media Marketing in 2024.pdf
The Ultimate Guide to Social Media Marketing in 2024.pdfThe Ultimate Guide to Social Media Marketing in 2024.pdf
The Ultimate Guide to Social Media Marketing in 2024.pdf
 
IATP How-to Foreign Travel May 2024.pdff
IATP How-to Foreign Travel May 2024.pdffIATP How-to Foreign Travel May 2024.pdff
IATP How-to Foreign Travel May 2024.pdff
 
Basic Civil Engineering notes on Transportation Engineering, Modes of Transpo...
Basic Civil Engineering notes on Transportation Engineering, Modes of Transpo...Basic Civil Engineering notes on Transportation Engineering, Modes of Transpo...
Basic Civil Engineering notes on Transportation Engineering, Modes of Transpo...
 
The Last Leaf, a short story by O. Henry
The Last Leaf, a short story by O. HenryThe Last Leaf, a short story by O. Henry
The Last Leaf, a short story by O. Henry
 
An Overview of the Odoo 17 Discuss App.pptx
An Overview of the Odoo 17 Discuss App.pptxAn Overview of the Odoo 17 Discuss App.pptx
An Overview of the Odoo 17 Discuss App.pptx
 
philosophy and it's principles based on the life
philosophy and it's principles based on the lifephilosophy and it's principles based on the life
philosophy and it's principles based on the life
 
Matatag-Curriculum and the 21st Century Skills Presentation.pptx
Matatag-Curriculum and the 21st Century Skills Presentation.pptxMatatag-Curriculum and the 21st Century Skills Presentation.pptx
Matatag-Curriculum and the 21st Century Skills Presentation.pptx
 
Essential Safety precautions during monsoon season
Essential Safety precautions during monsoon seasonEssential Safety precautions during monsoon season
Essential Safety precautions during monsoon season
 
Championnat de France de Tennis de table/
Championnat de France de Tennis de table/Championnat de France de Tennis de table/
Championnat de France de Tennis de table/
 
....................Muslim-Law notes.pdf
....................Muslim-Law notes.pdf....................Muslim-Law notes.pdf
....................Muslim-Law notes.pdf
 
Removal Strategy _ FEFO _ Working with Perishable Products in Odoo 17
Removal Strategy _ FEFO _ Working with Perishable Products in Odoo 17Removal Strategy _ FEFO _ Working with Perishable Products in Odoo 17
Removal Strategy _ FEFO _ Working with Perishable Products in Odoo 17
 

HackerVaccine - Selling Security

  • 1. Selling Security Bill Kasper from HackerVaccine.com You must sell IT security It does not sell itself (Eww, sales)
  • 2. Selling Security Start from the end. Work our way back from our goals. Visualize World Peace (Through Strength) Goal: The System Is SECURE! Goal: The System Owner is HAPPY! Goal: You are a HERO!
  • 3. Selling Security Report your success (blow your own trumpet) Goal: Inform the client Goal: Emergencies averted Goal: Boss looks good!
  • 4. Selling Security Re-check the SYSTEM (every day is Groundhog Day) Goal: Verify predictions/fixes Goal: Avoid surprises Goal: Reduce your stress
  • 5. Selling Security Schedule and act on deployment/downtime as agreed Be when and where you said you'd be Goal: Demonstrate timeliness Goal: Avoid cascading crises Goal: Predictability = trust
  • 6. Selling Security Get client to commit to time/date/resources to secure the SYSTEM Convey that your time and schedule are valuable Goal: Communicate your value Goal: Share responsibility Goal: Determinism is our friend
  • 7. Selling Security Offer goodies to meet a deadline to secure the SYSTEM Encouragement in search of excellence (not manipulation) Goal: Organize your calendar Goal: Commit your client(s) Goal: Speed up sales cycle
  • 8. Selling Security Pick a time you want to secure the SYSTEM 24 hrs from now, this weekend, before Simpsons is on Goal: Lock gates before escape Goal: Communicate urgency Goal: Chance to be a hero
  • 9. Selling Security Find your sponsor's hot button/deadly sin Fear, greed, ego, pride Goal: Know your customer Goal: Speak in effective terms Goal: Build relationship
  • 10. Selling Security Whoever owns the SYTEM will respond to SOMETHING Communicate that SECURITY represents money, peace, time Know: Psychology opens doors Know: You're right, that's a fact Know: Common ground = sale
  • 11. Selling Security In order to secure the SYSTEM, we must sell security Overcome “The suits sell, we actually do stuff” attitude Know: Ninja sales skills = work Know: Technicians can sell Know: Selling is being friendly
  • 12. Selling Security Hate not the ways of The Suits For tho they are but non-technical, lo, they bringeth in the buck$ Know: Technicians don't like suits Know: Suits don't grok technicians Know: Suit skills + tech = Winning
  • 13. Selling Security What established personal interaction model works? White Hat Hacking the stakeholder's psyche Goal: Succeed with least effort Goal: Get that SYSTEM secured! Goal: Get paid to succeed
  • 14. Selling Security Getting the SYSTEM secured requires personal interaction Stakeholders like to be wooed Know: Technology doesn't sell Know: Solutions/sex sells Know: You solve client problems
  • 15. Selling Security Prospect Theory (Daniel Kahneman, 1979, eventual Nobel Prize) Why 85% of people would rather risk losing big than losing a little up front for sure Know: Risking big loss is preferred Know: Security is an uphill psych war Know: There are psych war weapons
  • 16. Selling Security Who is in charge here? There is a behind on the line. Find out whose. Goal: Don't bother talking to minions Goal: Identify “launch” authority Goal: List areas of responsibility
  • 17. Selling Security Preemptive security is obviously a great way to spend money. Why are we even talking about this? Know: You're smarter than your client Know: What's obvious to us, ain't Know: Security is a negative
  • 18. Selling Security OMFG! Does anyone know about the lack of security in the SYSTEM? Goal: Find someone who can agree to fix Goal: Be Paul Revere 2012! Goal: Apply your passion profitably
  • 19. Selling Security OMFG! The SYSTEM is unsecured!!! Know: You see a problem others don't Know: You can't fix it all by yourself Know: It's probably worse than you think
  • 20. Selling Security Bill Kasper from HackerVaccine.com Www.HackerVaccine.com @hackervaccine