Defense in Depth
All links and images can be found on Check out by Anand Singh, CSO, Symmetry Systems, for the discussion that is the basis of our conversation on this week's episode co-hosted by me, , the producer of , and . Joining us is , svp, security, . In this episode: Risk by default, not by decision Identity, not just speed Building security into the pipeline, not around it Letting the machine make the fix A huge thanks to our sponsor, ThreatLocker An AI-generated attack may be new, but it still needs to execute, access data, and move through your environment. ThreatLocker applies enforceable...
info_outlineDefense in Depth
All links and images can be found on Check out for the discussion that is the basis of our conversation on this week's episode co-hosted by me, , the producer of , and , CISO, . Joining us is our sponsored guest, , vp of field security at . In this episode: Ecosystem, not platform Beyond backup, into resilience What survives the restore Toward a digital twin A huge thanks to our sponsor, CoreView Attackers don't break into Microsoft 365. They log in and reconfigure it. When tenant configurations drift or get tampered with, recovery can take weeks and missed settings can reopen the door....
info_outlineDefense in Depth
All links and images can be found on Check out by Val Tsanev of CyberRisk Alliance, for the discussion that is the basis of our conversation on this week's episode co-hosted by , the producer of , and , senior evp and CISO, . Joining is , svp, CISO, . In this episode: The ten-minute test Relevance beats format Price the problem or lose the room Whose meeting is it, really A huge thanks to our sponsor, Teleskope Most DSPMs stop at finding the risk. Teleskope fixes this: it automatically finds sensitive data, including IP documents or board decks, and remediates exposure across cloud, SaaS,...
info_outlineDefense in Depth
All links and images can be found on Check out from Joe Head of RELEX Solutions for the discussion that is the basis of our conversation on this week's episode co-hosted by , the producer of , and , senior evp and CISO, . Joining is , CISO, and vp of digital technology services, . In this episode: Left behind A hypothetical sale The philosophy problem Stop shifting the problems A huge thanks to our sponsor, ActiveState ActiveState gives security and engineering teams a single governed source for open source software. With 79 million components built from source, continuously remediated,...
info_outlineDefense in Depth
All links and images can be found on Check out from Caleb Sima of Whiterabbit for the discussion that is the basis of our conversation on this week's episode co-hosted David Spark, the producer of , and , CISO, . Joining is , CSO, . In this episode: The messy middle The automatable part Where automation stops The influence gap A huge thanks to our sponsor, ThreatLocker ThreatLocker delivers Zero Trust Network Access and Zero Trust Cloud Access that verifies both user and device before granting access to specific applications. No broad access, nothing exposed, and no reliance on...
info_outlineDefense in Depth
What Makes a Good AI Security Deployment? All links and images can be found on Check out by Chris Matthews of UpGuard for the discussion that is the basis of our conversation on this week's episode co-hosted by me, , the producer of , and , senior evp and CISO, . Joining us is , CISO, & Clari. In this episode: Non-determinism changes everything The foundation problem Nobody owns the whole problem The authorization gap A huge thanks to our sponsor, CoreView Attackers don't break into Microsoft 365. They log in and reconfigure it. When tenant configurations drift or get tampered...
info_outlineDefense in Depth
All links and images can be found on Check out for the discussion that is the basis of our conversation on this week's episode co-hosted by , the producer of , and , CISO, Datavant. Joining is our sponsored guest, , founder and CEO, . In this episode: Data ownership before automation A shared vocabulary for agent risk Maturing from crawl to run Trust earns automation its place A huge thanks to our sponsor, Teleskope Most DSPMs stop at finding the risk. Teleskope fixes this: it automatically finds sensitive data, including IP documents or board decks, and remediates exposure across...
info_outlineDefense in Depth
All links and images can be found on Prevention in cybersecurity is a lot like flossing: everyone knows they should do it, but few do it enough. What's stopping us? Check out by of Venture in Security for the discussion that is the basis of our conversation on this week's episode co-hosted by me, , the producer of , and , senior evp and CISO, . Joining us is , vice president & chief information security officer, . In this episode: The sponsorship gap One strike and you're out Policy without position Prevention isn't static A huge thanks to our sponsor, CoreView Attackers don't...
info_outlineDefense in Depth
All links and images can be found on Check out by , CISO, NFL, for the discussion that is the basis of our conversation on this week's episode co-hosted by me, , the producer of , and , CISO, . Joining is , vp of information technology & security, . In this episode: From who to what The manipulation problem Cryptographic accountability The audit gap A huge thanks to our sponsor, ActiveState ActiveState gives security and engineering teams a single governed source for open source software. With 79 million components built from source, continuously remediated, and delivered directly...
info_outlineDefense in Depth
All links and images can be found on Check out this post for the discussion that is the basis of our conversation on this week's episode co-hosted by , the producer of , and . Joining is their sponsored guest, , vp, security, Material Security. In this episode: Pre-existing conditions Architecture over rollout Access isn't legitimacy Data has a half-life A huge thanks to our sponsor, Material Security Legacy email security only watches the door. Material protects your entire cloud workspace—email, files, and accounts—as one ecosystem. It's more coverage for less than the...
info_outlineAll links and images can be found on CISO Series
All security startups will tell you they talk to potential customers. The problem is that you limit your development when you only talk to CISOs who might buy. It's not the same guidance you'll get from a CISO who advises.
Check out this post by Val Tsanev of the Cyber Risk Alliance for the discussion that is the basis of our conversation.
This week's episode is co-hosted by me, David Spark, the producer of CISO Series, and Edward Contreras, senior evp and CISO, Frost Bank. Joining us is Steve Jensen, CISO, University of Maine System.
In this episode:
- Building for whom?
- The only feedback loop that matters
- Valid, but for whom?
- Rethink the advisor roster
A huge thanks to our sponsor, Material Security
Legacy email security only watches the door. Material protects your entire cloud workspace—email, files, and accounts—as one ecosystem. It's more coverage for less than the cost of a legacy SEG. One price, no surprises: just security that covers the whole surface area. Learn more at material.security.
