Detection at Scale

Vjaceslavs Klimovs on Why 40% of Security Work Lacks Threat Models

Dec 9, 2025
Vjaceslavs Klimovs, a Distinguished Engineer at CoreWeave with a rich background from Google and Snap, dives into the world of security in AI infrastructure. He highlights that 40% of security initiatives lack connection to solid threat models, revealing critical gaps in the industry. Observability is emphasized as the bedrock of any security program, and Vjaceslavs argues for a shift towards detection over prevention. He discusses the role of AI in exposing security flaws and building robust detection platforms that embrace a new era in cybersecurity.
Ask episode
AI Snips
Chapters
Transcript
Episode notes
INSIGHT

Make Observability The First Security Step

  • Vjaceslavs Klimovs says security observability must come first to know if data exists and to enable forensics even when parsing is imperfect.
  • He argues for a detection-first approach and layering abstractions to reconstruct incidents from incomplete logs.
INSIGHT

Tie Every Task To A Threat Model

  • Vjaceslavs Klimovs estimates 40–50% of security work isn't tied to concrete threat models and therefore often fails to reduce risk.
  • He stresses documenting actors, motivation, applicability, and priority so work actually addresses threats.
ADVICE

Prefer Detection Over Intrusive Prevention

  • Do prioritize detection over intrusive prevention in fast-moving environments because detection causes less organizational friction.
  • Use vertical logging improvements when horizontal coverage isn't enough to get useful state transitions recorded.
Get the Snipd Podcast app to discover more snips from this episode
Get the app