loader from loading.io

Navigating DeepSeek’s AI Risks: Insights for Security & Compliance Teams

Security & GRC Decoded

Release Date: 02/06/2025

From Cruise to Whatnot: Kieran Pierman’s GRC Playbook show art From Cruise to Whatnot: Kieran Pierman’s GRC Playbook

Security & GRC Decoded

In this episode, Raj Krishnamurthy sits down with , GRC & Security at , and a former security, risk and compliance leader at Cruise and Dropbox, to explore fresh perspectives on Security & GRC. Kieran opens with a bold stance: data breaches, while critical, aren't the top threat they used to be. Instead, he argues, maintaining availability and service uptime is now paramount. Drawing from his unique experience building the foundational GRC program at Cruise, a pioneering self-driving car company, Kieran reveals how managing cybersecurity risks took on profound urgency—literally...

info_outline
Is Your GRC Team Technical Enough? (Probably Not...) ft. Jeevan Singh @ Rippling show art Is Your GRC Team Technical Enough? (Probably Not...) ft. Jeevan Singh @ Rippling

Security & GRC Decoded

Ever wondered if your GRC team should be writing code? (Spoiler alert: Jeevan thinks they probably should.) In this eye-opening episode of Security & GRC Decoded, Jeevan Singh, Director of Security Engineering at Rippling, joins Raj to challenge traditional views of Governance, Risk, and Compliance (GRC). Jeevan passionately argues why GRC teams must become more technical, automated, and deeply integrated into engineering processes to truly protect and enable businesses. Drawing from his experience at Segment and Rippling, he provides actionable insights and real-world examples to...

info_outline
Why GRC Teams Are Failing — And How to Fix It with Shobhit Mehta show art Why GRC Teams Are Failing — And How to Fix It with Shobhit Mehta

Security & GRC Decoded

In this episode, Raj Krishnamurthy interviews , Director of Security and Compliance at , to uncover valuable insights into the evolving world of Governance, Risk, and Compliance (GRC). Shobhit shares his controversial perspective on GRC teams overburdening themselves, emphasizing the need for GRC professionals to expand their technical expertise and embrace a product management mindset. The conversation dives into proactive strategies for GRC success, the importance of integrating privacy into compliance frameworks, and actionable tips for achieving High Trust certification on a budget....

info_outline
Engineering Better Relationships: Why We Should Shift GRC Left w/ Ayoub Fandi @ Gitlab show art Engineering Better Relationships: Why We Should Shift GRC Left w/ Ayoub Fandi @ Gitlab

Security & GRC Decoded

In this episode of Security & GRC Decoded, host Raj Krishnamurthy (CEO of ComplianceCow) sits down with , a Staff Security Assurance Engineer at GitLab and co-author of the GRC Engineering Manifesto, for a deep dive into the evolution of GRC through an engineering lens. Ayoub shares how his background in consulting and cloud-native startups led him to question the traditional, checklist-heavy approach to GRC—and why embracing real-time data, automation, and developer-friendly processes is the key to building stronger security and compliance programs. He also reveals his controversial...

info_outline
Security Unfiltered: Carlos Batista on GRC, Leadership, and Risk Realities show art Security Unfiltered: Carlos Batista on GRC, Leadership, and Risk Realities

Security & GRC Decoded

In this episode of Security & GRC Decoded, host Raj Krishnamurthy, CEO of ComplianceCow, sits down with —former CISO and AWS Security Engineering Leader—to explore the evolving landscape of security, governance, and risk management. Carlos shares his journey from leading security in highly regulated industries like banking and energy to championing large-scale security engineering at AWS. Together, they discuss how effective GRC programs can move beyond “checkbox” compliance to become true business enablers—accelerating growth, deepening customer trust, and supporting innovation...

info_outline
Security, Compliance & Customer Trust: The Evolution of GRC at Scale | feat. Abhay Kshirsagar from Salesforce show art Security, Compliance & Customer Trust: The Evolution of GRC at Scale | feat. Abhay Kshirsagar from Salesforce

Security & GRC Decoded

In this episode of Security & GRC Decoded, host Raj Krishnamurthy, CEO of ComplianceCow, sits down with Abhay Kshirsagar, Director of Security Services and Tools at Salesforce, to explore the evolving landscape of security, compliance, and customer assurance. Abhay shares his journey from IT audit and risk advisory to leading compliance automation, continuous monitoring, and customer assurance at industry giants like Cisco and now Salesforce. They discuss how compliance programs can move beyond checkboxes to become strategic enablers of business growth, unlocking new markets,...

info_outline
Navigating DeepSeek’s AI Risks: Insights for Security & Compliance Teams show art Navigating DeepSeek’s AI Risks: Insights for Security & Compliance Teams

Security & GRC Decoded

In this episode of Security & GRC Decoded, Raj Krishnamurthy, CEO of ComplianceCow, sits down with Walter Haydock, CEO of StackAware, to discuss the evolving landscape of AI security, governance, risk, and compliance (GRC). Walter shares insights on emerging AI threats, the importance of ISO 42001 certification, and the challenges organizations face when integrating AI into their security and compliance programs. Key topics include: DeepSeek and AI Privacy Risks Regulatory Challenges in AI Security & Compliance The Intersection of AI Governance and GRC Building a Business Case for AI...

info_outline
From Risk-Based to Trust-Based: Evolving GRC with Netflix’s Mosi Platt show art From Risk-Based to Trust-Based: Evolving GRC with Netflix’s Mosi Platt

Security & GRC Decoded

In the premiere episode of Security & GRC Decoded, host Raj Krishnamurthy sits down with Mosi Platt, Senior Security Compliance Engineer at Netflix, to explore his unconventional journey into security and governance, risk, and compliance (GRC). From his first exposure to computers in his aunt’s home lab to becoming a leader in IT audits and compliance, Mosi shares the pivotal moments that shaped his career. Together, they unpack the realities vs. myths of security governance, why risk quantification is still an unresolved debate, and how security and GRC teams can move from reactive...

info_outline
 
More Episodes

In this episode of Security & GRC Decoded, Raj Krishnamurthy, CEO of ComplianceCow, sits down with Walter Haydock, CEO of StackAware, to discuss the evolving landscape of AI security, governance, risk, and compliance (GRC). Walter shares insights on emerging AI threats, the importance of ISO 42001 certification, and the challenges organizations face when integrating AI into their security and compliance programs.

Key topics include:

  • DeepSeek and AI Privacy Risks
  • Regulatory Challenges in AI Security & Compliance
  • The Intersection of AI Governance and GRC
  • Building a Business Case for AI Security Programs
  • How Security & GRC Teams Can Adapt to Rapid AI Developments

This episode is packed with practical insights for security leaders, compliance professionals, and anyone navigating the risks and opportunities of AI-driven security.

🎙️ Security & GRC Decoded is brought to you by ComplianceCow. Subscribe now for expert insights from industry leaders shaping the future of security & compliance.

Learn more about ComplianceCow and how we can help your GRC teams!

💡 Connect with Walter Haydock 💡

For more insights on AI security, governance, and compliance, follow Walter Haydock:
🔗 LinkedIn: Walter Haydock
📖 Blog: Deploy Securely
📷 Instagram: @walter.haydock
🌐 Company Website: StackAware

Stay updated on AI risk management, compliance automation, and emerging security threats by checking out his latest content! 🚀

⏳ Timestamps & Key Moments

[00:00] – Introduction

  • Host Raj Krishnamurthy welcomes Walter Haydock, CEO of StackAware.
  • Overview of today’s discussion: AI security, governance, and compliance trends.

[01:30] – DeepSeek Controversy & AI Security Risks

  • What is DeepSeek and why is it concerning for AI security & privacy?
  • The risks of AI-generated synthetic data and compliance implications.

[04:15] – The Evolution of AI SaaS & Security Challenges

  • The rise of AI-powered SaaS tools and the security risks they introduce.
  • AI adoption without security & compliance considerations.

[07:10] – Walter’s Background: From Physical Security to AI Governance

  • Transition from defense & physical security to cybersecurity & AI GRC.
  • The importance of risk intelligence and automation in modern security.

[10:25] – The Intersection of AI, GRC, & Security Governance

  • Who should own AI governance? Security teams, compliance, or legal?
  • How AI challenges traditional risk management frameworks.

[13:40] – AI & Compliance: The Role of ISO 42001

  • What is ISO 42001 and how does it apply to AI governance?
  • How companies can align AI security strategies with compliance.

[17:05] – Building a Business Case for AI Security & Compliance

  • How to justify AI governance investments to leadership.
  • The real-world impact of AI-driven compliance failures.

[21:15] – AI GRC in Practice: Where Companies Go Wrong

  • The biggest mistakes companies make when implementing AI security programs.
  • Why compliance automation is essential for scaling AI governance.

[26:10] – AI in Security Operations: SOC Automation & Threat Detection

  • How AI is transforming security operations centers (SOCs).
  • Automated threat intelligence and its GRC implications.

[30:30] – Advice for Security Leaders Inheriting GRC Programs

  • Where to start when taking over a GRC or AI security program.
  • Key frameworks & methodologies to adopt early on.

[34:45] – AI Risk Management: How Companies Should Adapt

  • The difference between traditional risk assessments vs AI-driven risks.
  • The importance of continuous monitoring & real-time compliance checks.

[38:20] – Closing Thoughts & Resources

  • Walter’s recommended books, podcasts, and learning resources.
  • Where to follow Walter Haydock:
    📢 LinkedIn: Walter Haydock
    📖 Blog: Deploy Securely

[41:00] – Outro

  • Final takeaways from Raj & Walter.
  • Why AI governance is becoming a business-critical function.