Episodios

  • Why Are We Still Struggling to Fix Application Security?
    Apr 24 2025

    All links and images for this episode can be found on CISO Series.

    Check out this post for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark, the producer of CISO Series, and Steve Zalewski. Joining us is our sponsored guest, Eric Gold, chief evangelist, BackSlash.

    In this episode:

    • Start with the culture
    • Moving AppSec to a higher level
    • A strategy for security
    • Maturing the basics

    Thanks to our sponsor, Backslash Security

    Backslash offers a new approach to application security by creating a digital twin of your application, modeled into an AI-enabled App Graph. It categorizes security findings by business process, filters “triggerable” vulnerabilities, and simulates the security impact of updates. Backslash dramatically improves AppSec efficiency, eliminating legacy SAST and SCA frustration.

    Más Menos
    28 m
  • What Can Someone with No Experience Do in Cybersecurity?
    Apr 17 2025

    All links and images for this episode can be found on CISO Series.

    Check out this post from Jerich Beason, CISO at WM, for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark, the producer of CISO Series, and Dan Walsh, CISO, Datavant. Joining us is Rinki Sethi, vp and CISO, BILL.

    In this episode:

    • You need a solid foundation
    • A lot depends on the role
    • Underappreciated skills
    • Structures and frameworks

    Huge thanks to our sponsor, Recorded Future

    Every day, security teams face an impossible challenge: sorting through millions of threats, each potentially critical. But somewhere in that noise are the signals you can't afford to miss. Recorded Future's gives you the power to outpace AI-driven threats through intelligence tuned specifically to your needs, enabling you to act with precision. Their advanced AI detects patterns human eyes might miss, while their experts provide context that machines alone cannot. Visit recordedfuture.com to learn more about securing what matters to your business.

    Más Menos
    26 m
  • Are New Gartner-Created Categories/Acronyms Helping or Hurting the Cybersecurity Industry?
    Apr 10 2025

    All links and images for this episode can be found on CISO Series.

    Check out this post from Caleb Sima of WhiteRabbit for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark, the producer of CISO Series, and Geoff Belknap. Joining us is Alex Hutton, CISO, Atlantic Union Bank.

    In this episode:

    • The race to differentiate
    • Don’t blame Gartner
    • Simplifying is complicated
    • Seeking connection

    Huge thanks to our sponsor, ThreatLocker

    ThreatLocker® is a global leader in Zero Trust endpoint security, offering cybersecurity controls to protect businesses from zero-day attacks and ransomware. ThreatLocker operates with a default deny approach to reduce the attack surface and mitigate potential cyber vulnerabilities. To learn more and start your free trial, visit ThreatLocker.com.

    Más Menos
    27 m
  • Can AI improve Third-Party Risk Management (TPRM)
    Apr 3 2025

    All links and images for this episode can be found on CISO Series.

    Check out this post for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark, the producer of CISO Series, and Jason Elrod, CISO, MultiCare Health System. Joining us is our sponsored guest, Nick Muy, CISO, Scrut Automation.

    In this episode:

    • Supercharging teams
    • Shifting to proactive
    • A unique opportunity
    • A human in the legal loop

    HUGE thanks to our sponsor, Scrut Automation

    Scrut Automation empowers compliance and risk teams of all sizes to build enterprise-grade security programs effortlessly. With powerful automation, AI-driven efficiencies, and seamless integrations, Scrut eliminates compliance debt and enables proactive risk management—helping your business stay secure as it scales. Visit www.scrut.io to learn more or schedule a demo.

    Más Menos
    29 m
  • Cybersecurity Is NOT an Entry-Level Position
    Mar 27 2025

    All links and images for this episode can be found on CISO Series.

    Check out this post by Tallis Jordan of the U.S. Army Cyber Command for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark, the producer of CISO Series, and Steve Zalewski. Joining us is Montez Fitzpatrick, CISO, Navvis.

    In this episode:

    • Start with foundations
    • Learning to learn
    • Don’t get hustled
    • Building a pipeline

    HUGE thanks to our sponsor, Scrut Automation

    Scrut Automation empowers compliance and risk teams of all sizes to build enterprise-grade security programs effortlessly. With powerful automation, AI-driven efficiencies, and seamless integrations, Scrut eliminates compliance debt and enables proactive risk management—helping your business stay secure as it scales. Visit www.scrut.io to learn more or schedule a demo.

    Más Menos
    32 m
  • Hey Vendors, What Problem Is Your Product Solving?
    Mar 20 2025

    All links and images for this episode can be found on CISO Series.

    Check out this post from Yaron Levi for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark, the producer of CISO Series, and Mike Johnson, CISO, Rivian. Joining us is Yaron Levi, CISO, Dolby.

    In this episode:

    • A knowledge deficit
    • Talk is cheap
    • What’s the difference?
    • Answer the preliminaries

    HUGE thanks to our sponsor, Scrut Automation

    Scrut Automation empowers compliance and risk teams of all sizes to build enterprise-grade security programs effortlessly. With powerful automation, AI-driven efficiencies, and seamless integrations, Scrut eliminates compliance debt and enables proactive risk management—helping your business stay secure as it scales. Visit www.scrut.io to learn more or schedule a demo.
    Más Menos
    28 m
  • We've Been Fooled. There Is No Talent Shortage.
    Mar 13 2025

    All links and images for this episode can be found on CISO Series.

    Check out this post by Rachel Bicknell of Dell Technologies quoting Mic Merritt of Merritt Collective for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark, the producer of CISO Series, and Jimmy Sanders, president, ISSA International. Joining them is Ngozi Eze, CISO, Levi Strauss.

    In this episode:

    • Stop the unicorn hunt
    • Job post inflation
    • Structural misalignment
    • We’ve got to do better

    Huge thanks to our sponsor, ThreatLocker

    ThreatLocker® is a global leader in Zero Trust endpoint security, offering cybersecurity controls to protect businesses from zero-day attacks and ransomware. ThreatLocker operates with a default deny approach to reduce the attack surface and mitigate potential cyber vulnerabilities. To learn more and start your free trial, visit ThreatLocker.com.

    Más Menos
    26 m
  • Is There an Increasing Consolidation of Vendors in the SOC?
    Mar 6 2025

    All links and images for this episode can be found on CISO Series.

    Check out this post for the discussion that is the basis of our conversation on this week’s episode co-hosted by me, David Spark (@dspark), the producer of CISO Series, and Howard Holton, CTO, GigaOm. Joining us is Francis Odum, founder, Software Analyst Cybersecurity Research.

    In this episode:

    • Rebalancing the SOC
    • The case for consolidation
    • It comes down to data
    • Concentric cycles

    Thanks to our podcast sponsor, Palo Alto Networks

    Cortex Cloud, the next generation of Prisma Cloud, merges best-in-class CDR with industry-leading CNAPP for real-time cloud security. Harness the power of AI and automation to prioritize risks with runtime context, enable remediation at scale, and stop attacks as they occur. Bring together your cloud and SOC on the unified Cortex platform to transform end-to-end operations. Experience the future of real-time cloud security at https://www.paloaltonetworks.com/cortex/cloud.

    Más Menos
    32 m
adbl_web_global_use_to_activate_webcro768_stickypopup