
Future of Data Security EP 22 — Databricks' Omar Khawaja on Why Inertia Is Security's Greatest Enemy
12 snips
Sep 18, 2025 Omar Khawaja, CISO at Databricks and expert in enterprise security and AI risk, shares insights on overcoming organizational inertia in security. He introduces the T-junction methodology, which forces explicit decision-making and turns employees into security champions. Omar reveals a comprehensive approach to AI risks, cataloging 62 specific threats across various subsystems. He emphasizes practical AI use cases that enhance efficiency while warning against the pitfalls of shiny-object syndrome in technology.
AI Snips
Chapters
Transcript
Episode notes
Inertia Outweighs External Threats
- Organizational inertia often blocks security more than external attackers.
- Creating deliberate decision points forces change and overcomes default behaviors.
Force Explicit Decision Points
- Introduce T-junctions so teams must make explicit choices instead of defaulting.
- Remove paths that allow passive continuation of risky or outdated practices.
Employees As Security Assets
- Treat employees as assets rather than liabilities in security planning.
- Empower staff as ambassadors to scale protection beyond the small security team.
