
Detection at Scale Vjaceslavs Klimovs on Why 40% of Security Work Lacks Threat Models
Dec 9, 2025
Vjaceslavs Klimovs, a Distinguished Engineer at CoreWeave with a rich background from Google and Snap, dives into the world of security in AI infrastructure. He highlights that 40% of security initiatives lack connection to solid threat models, revealing critical gaps in the industry. Observability is emphasized as the bedrock of any security program, and Vjaceslavs argues for a shift towards detection over prevention. He discusses the role of AI in exposing security flaws and building robust detection platforms that embrace a new era in cybersecurity.
AI Snips
Chapters
Transcript
Episode notes
Make Observability The First Security Step
- Vjaceslavs Klimovs says security observability must come first to know if data exists and to enable forensics even when parsing is imperfect.
- He argues for a detection-first approach and layering abstractions to reconstruct incidents from incomplete logs.
Tie Every Task To A Threat Model
- Vjaceslavs Klimovs estimates 40–50% of security work isn't tied to concrete threat models and therefore often fails to reduce risk.
- He stresses documenting actors, motivation, applicability, and priority so work actually addresses threats.
Prefer Detection Over Intrusive Prevention
- Do prioritize detection over intrusive prevention in fast-moving environments because detection causes less organizational friction.
- Use vertical logging improvements when horizontal coverage isn't enough to get useful state transitions recorded.
