Episodios

  • It's Okay to Put All Your Eggs in One Basket as Long as You Really Trust the Basket
    Mar 10 2026

    All links and images can be found on CISO Series.

    This week's episode is hosted by me, David Spark, producer of CISO Series and Andy Ellis, principal of Duha. Joining us is our sponsored guest, Rob Allen, chief product officer, ThreatLocker.

    In this episode:

    • Your best employee is your biggest risk
    • Stop guessing the next attack
    • AI is not a feature
    • Stop blaming the user

    Huge thanks to our sponsor, ThreatLocker

    ThreatLocker makes Zero Trust practical. With Default Deny, Ringfencing, and Elevation Control, CISOs get real control that's easy to manage and built to scale. Stop threats before they execute and reduce operational noise without adding complexity. See how simple prevention can be at ThreatLocker.com/CISO.

    Más Menos
    48 m
  • Our Security Team's Love Language is Buying New Tools
    Mar 3 2026

    All links and images can be found on CISO Series.

    This week's episode is hosted by me, David Spark, producer of CISO Series and Andy Ellis, principal of Duha. Joining us is our sponsored guest, Tim Leehealey, vp of corporate strategy and operations, Strike48.

    In this episode:

    • Defensible, not perfect
    • Tools aren't going to save you
    • Logs are wasted on the SOC
    • The myth of the lone wolf

    Huge thanks to our sponsor, Strike48

    Strike48 is the Agentic Log Intelligence Platform that actually puts AI agents to work, combining full log visibility with AI agents that investigate, detect, and respond 24/7. With pre-built agent clusters for security and a no-code agentic workflow builder, it's easy to get started. Learn more at strike48.com/security.

    Más Menos
    41 m
  • If We Can't Do Better, at Least Do It Faster
    Feb 24 2026

    All links and images can be found on CISO Series.

    This week's episode is hosted by David Spark, producer of CISO Series and Andy Ellis, principal of Duha. Joining them is Vikas Mahajan, vp and CISO, American Red Cross.

    In this episode:

    • Questionnaires aren't risk management
    • The good old days were worse
    • Buying or building your SOC
    • Start the conversation, not the checklist

    Huge thanks to our sponsor, Adaptive Security

    Sponsored by Adaptive Security—the first cybersecurity company backed by OpenAI. AI impersonation and deepfakes have made trust the new attack surface. Adaptive runs realistic social-engineering simulations and instantly turns threats, policies, and compliance needs into interactive, multilingual training. Trusted by Fortune 500s. Learn more at adaptivesecurity.com.

    Más Menos
    42 m
  • We Gave the CISO Risk and Liability, and Now They Want Authority. The Nerve.
    Feb 17 2026

    All links and images can be found on CISO Series.

    This week's episode is hosted by David Spark, producer of CISO Series and Steve Zalewski. Joining them is Tammy Klotz, CISO, Trinseo.

    In this episode:

    • Accountability without authority
    • Kill your hacklore
    • Voice is no longer enough
    • Studies that tell us what we already know

    Huge thanks to our sponsor, ThreatLocker

    Want real Zero Trust training? Zero Trust World 2026 delivers hands-on labs and workshops that show CISOs exactly how to implement and maintain Zero Trust in real environments. Join us March 4–6 in Orlando, plus a live CISO Series episode on March 6. Get $200 off with ZTWCISO26 at ztw.com.

    Más Menos
    42 m
  • When We See White Smoke, We Know We Have a New CISO
    Feb 10 2026

    All links and images can be found on CISO Series.

    This week's episode is hosted by David Spark, producer of CISO Series and Andy Ellis, principal of Duha. Joining them is Russ Ayres, CISO, Principal Financial Group.

    In this episode:

    • Metrics that matter
    • Tool babysitting problem
    • Automating the brokenness
    • Stay connected intentionally

    Huge thanks to our sponsor, Strike48

    Strike48 is the Agentic Log Intelligence Platform that actually puts AI agents to work, combining full log visibility with AI agents that investigate, detect, and respond 24/7. With pre-built agent clusters for security and a no-code agentic workflow builder, it's easy to get started. Learn more at strike48.com/security.

    Más Menos
    43 m
  • Take Two-Factor Authentication and Call Me in the Morning
    Feb 3 2026

    All links and images can be found on CISO Series.

    This week's episode is hosted by David Spark, producer of CISO Series, and Andy Ellis, principal of Duha. Joining them is Janet Heins, CISO, ChenMed.

    In this episode:

    • Inbound gets ignored
    • Independence under constraint
    • Methodology means nothing
    • Lives over logins

    Huge thanks to our sponsor, Guardsquare

    Guardsquare delivers mobile app security without compromise, providing advanced protections for both Android and iOS apps. From app security testing to code hardening to real-time visibility into the threat landscape, Guardsquare solutions provide enhanced mobile application security from early in the development process through publication. Learn more about how to protect your app at Guardsquare.com.

    Más Menos
    39 m
  • I'll Show You Our Resilience Plan Once Our Cloud Storage Is Back Online
    Jan 27 2026

    All links and images can be found on CISO Series.

    This week's episode is hosted by David Spark, producer of CISO Series and Mike Johnson, CISO, Rivian. Joining them is Johann Balaguer, Global CISO, Hard Rock Hotels and Casinos.

    In this episode:

    • Understanding the why
    • Own your digital self
    • Invest beyond tenure
    • Prepare for dependencies

    Thanks to Louis Zhichao Zhang, AIA Australia for contributing this week's "What's Worse?!" scenario.

    Huge thanks to our sponsor, Guardsquare

    Guardsquare delivers mobile app security without compromise, providing advanced protections for both Android and iOS apps. From app security testing to code hardening to real-time visibility into the threat landscape, Guardsquare solutions provide enhanced mobile application security from early in the development process through publication. Learn more about how to protect your app at Guardsquare.com.

    Más Menos
    38 m
  • AI Is Very Efficient at Making Us Forget the Value of Humans
    Jan 20 2026

    All links and images can be found on CISO Series.

    This week's episode is hosted by David Spark, producer of CISO Series and Andy Ellis, principal of Duha. Joining them is Sara Madden, CISO, Convera.

    In this episode:

    • Hold developers accountable
    • Credibility through candor
    • Be strategic with AI deployment
    • Resources don't guarantee security

    Huge thanks to our sponsor, ThreatLocker

    ThreatLocker makes Zero Trust practical. With Default Deny, Ringfencing, and Elevation Control, CISOs get real control that's easy to manage and built to scale. Stop threats before they execute and reduce operational noise without adding complexity. See how simple prevention can be at ThreatLocker.com/CISO.

    Más Menos
    41 m