Épisodes

  • The Difference with AI Red Teaming is We Added the Word AI
    Oct 14 2025

    All links and images can be found on CISO Series.

    This week’s episode is hosted by David Spark, producer of CISO Series and Andy Ellis, principal of Duha. Joining us is our sponsored guest, Khush Kashyap, senior director, GRC, Vanta.

    In this episode:

    • Skip the Sermon

    • When to coach versus command

    • Making risk quantification useful

    • Recognizing a distinct discipline

    Huge thanks to our sponsor, Vanta

    Afficher plus Afficher moins
    38 min
  • Don’t Worry, We’ll Get to Solving Your Problem on Slide 87
    Oct 7 2025

    All links and images can be found on CISO Series.

    This week’s episode is hosted by David Spark, producer of CISO Series and Andy Ellis (@csoandy), principal of Duha. Joining them is Daniel Liber, CISO, Monday.com.

    In this episode:

    • AI security's blind spot problem
    • Vendors don't understand the assignment
    • Marketing budgets overshadow actual innovation
    • Accuracy versus effectiveness

    Huge thanks to our sponsor, Material Security

    Afficher plus Afficher moins
    37 min
  • Time to Choose a Security Vendor: Dart Board or Spin the Wheel?
    Sep 30 2025

    All links and images can be found on CISO Series.

    This week’s episode is hosted by David Spark, producer of CISO Series and Mike Johnson, CISO, Rivian. Joining them is Pavi Ramamurthy, global CISO and CIO, Blackhawk Network.

    In this episode:

    • We can't promise safe, but we can promise ready
    • Are we accidentally building security nightmares?
    • Being held accountable for things you had no say in
    • The safe space problem in vendor evaluation

    Huge thanks to our sponsor, Adaptive Security

    Afficher plus Afficher moins
    44 min
  • Now That You Mention It I HAVE Heard Some Hype Around These AI Tools
    Sep 23 2025

    All links and images can be found on CISO Series.

    This week’s episode is hosted by David Spark, producer of CISO Series and Mike Johnson, CISO, Rivian. Joining them is Erwin Lopez, CISO, SLAC National Accelerator Laboratory.

    In this episode:

    • The AI experimentation phase isn't optional
    • When selling security becomes the hardest part of the job
    • Threat actors aren't hacking in anymore
    • We build, we bond, and we can't bear to let go

    Huge thanks to our sponsor, ThreatLocker

    Human error remains one of the top cybersecurity threats. Just one wrong click can open the door to ransomware or data loss. With ThreatLocker, unauthorized apps, scripts, and devices are blocked before they can ever run. See how ThreatLocker can help you gain more control over your environment. Learn more at Threatlocker.com/CISO

    Afficher plus Afficher moins
    34 min
  • Wait, SMS Doesn’t Stand for “Super Mega Secure?”
    Sep 16 2025

    All links and images can be found on CISO Series.

    This week’s episode is hosted by David Spark, producer of CISO Series and Andy Ellis, principal of Duha. Joining us is our sponsored guest, Brian Long, CEO, Adaptive Security.

    In this episode:

    • Hiring North Korean operatives on a Tuesday
    • AI coding and the death of specifications
    • Deepfake personas beyond video calls
    • The middleman problem with SMS

    Huge thanks to our sponsor, Adaptive Security

    AI-powered social engineering threats like deepfake voice calls, GenAI phishing, and vishing attacks are evolving fast. Adaptive helps security leaders get ahead with an AI-native platform that simulates realistic genAI attacks, and delivers expert-vetted security awareness training — all in one unified solution. And now, with Adaptive’s new AI Content Creator, security teams can instantly transform breaking threat intel or updated policy docs into interactive, multilingual training — no instructional design needed. That means faster compliance, better engagement, and less risk. Trusted by Fortune 500s and backed by Andreessen Horowitz and the OpenAI Startup Fund, Adaptive is helping security teams prepare for the next generation of cyber threats. Learn more at adaptivesecurity.com.
    Afficher plus Afficher moins
    43 min
  • We All Agree That Prevention Is the Best Advice We're Never Going to Follow
    Sep 9 2025

    All links and images can be found on CISO Series.

    This week’s episode is hosted by David Spark, producer of CISO Series and Andy Ellis, principal of Duha. Joining us is Jason Loomis, CISO, Freshworks.

    In this episode:

    • Making organizations take their security medicine
    • Building CISO support systems
    • Holding the door for humans
    • Underappreciated risks: beyond the headlines

    Huge thanks to our sponsor, Safe Security

    SAFE is the category leader in Cyber Risk Quantification (CRQ) and the first vendor to deliver fully autonomous Third-Party Risk Management.We help CISOs, GRC, and TPRM leaders continuously and efficiently quantify, prioritize, and mitigate cyber risks across their entire attack surface — enabling digital growth and resilience. Learn more at tprmdemo.safe.security.

    Afficher plus Afficher moins
    44 min
  • We're All for a Responsible AI Rollout as Long as It Goes as Fast as Possible
    Sep 2 2025

    All links and images can be found on CISO Series.

    This week’s episode is hosted by David Spark, producer of CISO Series and Mike Johnson, CISO, Rivian. Joining them is Jennifer Swann, CISO, Bloomberg Industry Group.

    In this episode:

    • Vulnerability management vs. configuration control
    • Open source security and supply chain trust
    • Building security leadership presence
    • AI governance and enterprise risk

    Huge thanks to our sponsor, Vanta

    Vanta’s Trust Management Platform automates key areas of your GRC program—including compliance, internal and third-party risk, and customer trust—and streamlines the way you gather and manage information. A recent IDC analysis found that compliance teams using Vanta are 129% more productive. Get started today at Vanta.com/CISO.

    Afficher plus Afficher moins
    40 min
  • New Study Finds No Email Has Ever “Found You Well”
    Aug 26 2025

    All links and images can be found on CISO Series.

    This week’s episode is hosted by me, David Spark, producer of CISO Series and Mike Johnson, CISO, Rivian. Joining us is David Cross, CISO, Atlassian.

    In this episode:

    • Breaking the Sales Cycle
    • Leadership Under Fire
    • Predicting the Unpredictable
    • Security Startups' Security Paradox

    A huge thanks to our sponsor, ThreatLocker

    ThreatLocker® is a global leader in Zero Trust endpoint security, offering cybersecurity controls to protect businesses from zero-day attacks and ransomware. ThreatLocker operates with a default deny approach to reduce the attack surface and mitigate potential cyber vulnerabilities. To learn more and start your free trial, visit ThreatLocker.com.

    Afficher plus Afficher moins
    34 min