Inherited security risk, and what happens when someone finally puts a price on it.
You inherit it: an acquisition, a subsidiary, a vendor, a platform someone bought without telling you, or a decade of decisions made before you arrived. You are accountable for an environment you did not design and often cannot fully see. Most of the time you absorb that quietly. Occasionally, someone puts a number on it.
Purchase prices get cut. Money goes into escrow. Deals die.
Don Aviv runs Interfor International, which assesses organizations from the outside: investigations, corporate intelligence, and enhanced due diligence for Fortune 500 acquirers, private equity groups and family offices. Mark Stamford founded OSec, which breaks into them. Dr. Ed Harris runs security at Mauser Packaging Solutions and is the one who has to live with what they find. This is a conversation about what they find in environments nobody has properly looked at — and what those findings turn out to be worth.
| 0:00 – 0:03 | Welcome, setting the context |
| 0:03 – 0:12 | The inheritance problem — almost nobody defends an environment they built |
| 0:12 – 0:24 | What We FindAssessing an environment with limited access and no cooperation |
| 0:24 – 0:36 | What It's WorthThe findings that move money, and how much |
| 0:36 – 0:45 | Accountability and disclosure — who owns an inherited vulnerability |
| 0:45 – 1:00 | Live audience Q&A |
Don Aviv
CEO, Interfor International
Don Aviv is Chief Executive Officer of Interfor International. He oversees the firm's operations and leads its investigations and security consulting practices, advising clients on complex matters involving corporate investigations, threat mitigation, crisis response, and intelligence-driven risk management.
Mr. Aviv is a frequent media commentator on corporate investigations and security matters, and has authored numerous articles on physical security, global investigations, threat mitigation, and corporate security. He also serves as an expert witness in security-related litigation.
Mark Stamford
Founder, OSec
Mark has over 30 years' experience in IT security, operations, control assessment and re-engineering, and risk management. Prior to OSec he worked for UBS AG as Director of Threat and Vulnerability Management, responsible for threat identification, testing, and remediation for systems and applications across the organization.
Before that he worked at KPMG, where he was the lead penetration tester for the Americas and managed a number of Fortune 100 security engagements. Prior to KPMG, he worked at a financial services company in London.
Dr. Ed Harris
CISO, Mauser Packaging Solutions
Dr. Ed Harris is CISO at Mauser Packaging Solutions, a global leader in solutions and services across the packaging lifecycle. He has spent more than 30 years building and leading cybersecurity programs across the manufacturing sector, often in environments never designed with security in mind.
Harris holds the CISSP and DIT-IAC credentials and is a Fellow at the Institute for Critical Infrastructure Technology (ICIT). He writes and speaks widely on CISO leadership, arguing the role is less about testing the latest point product and more about being “a leader, mentor, teacher, and motivator.”
Join Don Aviv, Mark Stamford and Dr. Ed Harris live. 45 minutes of conversation, then 15 minutes of your questions. No product demo, no compliance lecture.