

How Microsoft Stays Ahead of the World’s Most Dangerous Hackers
27 snips Aug 7, 2025
Aarti Borkar is the VP of Security at Microsoft, focusing on proactive measures, while Simeon Kakpovi tracks crime-based threat actors, and Andrew Rapp specializes in incident response. They discuss how legal tactics disrupt threat actors and the necessity of rehearsed incident response plans. Snow, co-founder of the Social Engineering Community Village at DEF CON, shares her unique journey from special effects to social engineering, emphasizing empathy and creativity as powerful tools in security testing. The conversation highlights the emotional toll on defenders and the evolving nature of cyber threats.
AI Snips
Chapters
Transcript
Episode notes
Proactive IR Equals Faster Response
- Incident response now requires equal focus on proactive preparation and reactive work.
- Treating proactive security measures as essential 'vitamins' shortens reaction times to attacks.
Manage Defender Fatigue Proactively
- Defenders must learn to mentally unplug and recharge to avoid burnout.
- Prioritize tasks and build partnerships to reduce overwhelm during incidents.
Rehearse Incident Response Plans
- Regularly rehearse incident response plans to reduce incident resolution from weeks to days.
- Treat IR preparation like military rehearsal to execute efficiently under pressure.