
Afternoon Cyber Tea with Ann Johnson
Ann Johnson, Corporate Vice President and Deputy Chief Information Security Officer at Microsoft, talks with cybersecurity thought leaders and influential industry experts about the trends shaping the cyber landscape and what should be top-of-mind for the C-suite and other key decision makers. Ann and her guests explore the risk and promise of emerging technologies, as well as the impact on how humans work, communicate, consume information, and live in this era of digital transformation. Please note, the opinions expressed by guests on this podcast are their own and are not endorsed by, nor do they necessarily reflect opinions of, Microsoft or Ann Johnson.
Latest episodes

Sep 6, 2022 • 43min
Cyber Insurance Past, Present, and Future
Dr. Josephine Wolff, associate professor of cybersecurity policy within The Fletcher School at Tufts University, joins Afternoon Cyber Tea this week to discuss the history, challenges, and opportunities in cyber insurance. What was first developed in the late 1990s as protection against computer viruses, cyber insurance has evolved into an incredibly complex and, in some cases, tension-filled industry. Ann and Dr. Wolff discuss the cyber insurance industry’s initial goals, the differences in cyber insurance policies, and the points of view on ransomware insurance directly funding cybercrime. In This Episode You Will Learn:
What types of risks do insurers cover, and how they are designing and charging for policies
How can we help policymakers get ahead of the curve and drive change in security
Why we need greater cooperation and data sharing when it comes to threat intelligence
Some Questions We Ask:
What were the initial motivations behind cyber insurance providers?
What is some practical advice you would give to insurers looking to better support their customers?
Are cyber insurers positively motivating businesses and leaders for the better?
Resources: Dr. Wolff's new book, Cyberinsurance Policy is available now. View Dr. Wolff on LinkedIn View Ann Johnson on LinkedIn Related Microsoft Podcasts: Listen to: Uncovering Hidden Risks Listen to: Security Unlocked Listen to: Security Unlocked: CISO Series with Bret Arsenault Discover and follow other Microsoft podcasts at microsoft.com/podcastsAfternoon Cyber Tea with Ann Johnson is produced by Microsoft and distributed as part of The CyberWire Network.

Aug 23, 2022 • 45min
What’s Influencing Cyber Capital Investment
Dave DeWalt, Founder and Managing Director of NightDragon, and Jay Leek, Managing Director and Co-founder of both Syn Ventures and Clear Sky Security, join Ann on this week's episode of Afternoon Cyber Tea. Investing in companies producing the latest technology that cybersecurity firms depend on, like the latest artificial intelligence, sounds like an exciting opportunity, but who has the best product? Getting in on the ground floor is appealing, but where do you start? Dave and Jay chat with Ann about why cyber is so attractive to investors, their advice for founders currently starting their investment journey, and what new technology has their attention. In This Episode You Will Learn:
Why we are witnessing ballooning venture capital investments in cyber
What technology is currently capturing investors' attention
How current events are shaking up the world of cyber venture capital
Some Questions We Ask:
Why is cyber so attractive to investors?
What advice do you have for cyber founders starting their investment journey?
When you work with security founders, what qualities are you looking for?
Resources: View Dave DeWalt on LinkedIn View Jay Leek on LinkedIn View Ann Johnson on LinkedIn Learn about NightDragonLearn about SynVenturesRelated Microsoft Podcasts: Listen to: Uncovering Hidden Risks Listen to: Security Unlocked Listen to: Security Unlocked: CISO Series with Bret Arsenault Discover and follow other Microsoft podcasts at microsoft.com/podcastsAfternoon Cyber Tea with Ann Johnson is produced by Microsoft and distributed as part of The CyberWire Network.

Aug 9, 2022 • 35min
Addressing the Critical Cybersecurity Talent Shortage
M. K. Palmore, Director, Office of the CISO, for Google Cloud, and diversity & inclusion advocate, joins Ann on this week's episode of Afternoon Cyber Tea to discuss the cyber talent shortage, including why leaders need to drive greater inclusivity in the industry, resources for individuals to build their skills and networks, and why talent sourcing is just one issue in building greater representation. In This Episode You Will Learn:
What a talent shortage means for businesses and organizations
Why is there a problem getting started in an industry with such high demand
How leaders can support women and underrepresented minorities in the industry
Some Questions We Ask:
Why has the cyber talent shortage become so acute in the last few years?
What new methods would you recommend to leaders to bring new talent?
How should leaders think about retainment and sponsorship for advancement?
Resources: View M. K. Palmore on LinkedIn View Ann Johnson on LinkedIn Read more on how Microsoft is helping address the cybersecurity skills gap Explore cybersecurity learning pathways on Microsoft Learn and LinkedIn Learning Learn about Cyversity Related Podcasts: Listen to: Uncovering Hidden Risks Listen to: Security Unlocked Listen to: Security Unlocked: CISO Series with Bret Arsenault Discover and follow other Microsoft podcasts at microsoft.com/podcastsAfternoon Cyber Tea with Ann Johnson is produced by Microsoft and distributed as part of The CyberWire Network.

Jun 28, 2022 • 31min
The Journey to Greater Representation
Jeff Rivera, American author, producer, and co-founder of Collective 5 Entertainment, joins Ann on this week's episode of Afternoon Cyber Tea to discuss the importance of diversity and inclusion, the impact of underrepresentation, and his journey from poverty to renowned world speaker. Jeff is an internationally sought-after speaker and author with an impressive body of work, including over 200 books, television, radio, and digital publications. In This Episode You Will Learn:
Jeff's journey from American poverty to mentor, writer, and production company owner
The impact of under-representation
The importance of seeing and celebrating differences in people
Some Questions We Ask:
How does the lack of representation impact people from marginalized communities?
Why is it important to recognize the differences between people?
How are you accelerating progress in representation through current and future projects?
Resources: View Jeff Rivera on LinkedIn View Ann Johnson on LinkedIn Related: Listen to: Security Unlocked Listen to: Security Unlocked: CISO Series with Bret Arsenault Discover and follow other Microsoft podcasts at microsoft.com/podcastsAfternoon Cyber Tea with Ann Johnson is produced by Microsoft and distributed as part of The CyberWire Network.

Jun 14, 2022 • 17min
Implementing Stronger Authentication
Dave Bittner, Hacking Humans podcast host and a co-founder of CyberWire, interviews Ann Johnson about social engineering attacks, the future of passwordless account adoption, authentication tools, and Ann‘s perspective on the future development of technology to mitigate risks on this week's episode of Afternoon Cyber Tea. Dave’s career spans more than two decades in digital media, video, television production, and interactive technology. He’s also one of the pioneers of non-linear editing and digital storytelling. In This Episode You Will Learn About:
How to identify potential social engineering and cyber attacks
The future of passwordless account adoption and the necessary steps to get there
The future of authentication
Some Questions We Ask:
What are ways to identify potential social engineering attacks?
What tools are on the horizon for the fight against cyberattacks?
What is the role of organizations in improving technology and applications to protect end-users?
Resources: Listen to Hacking Humans View Dave Bittner on LinkedIn View Ann Johnson on LinkedIn Related: Listen to: Security Unlocked: CISO Series with Bret Arsenault Listen to: Security Unlocked Discover and follow other Microsoft podcasts at microsoft.com/podcastsAfternoon Cyber Tea with Ann Johnson is produced by Microsoft and distributed as part of The CyberWire Network.

May 31, 2022 • 29min
Mitigating Future Risks
Katie Nickels, Director of Intelligence for Red Canary, joins Ann on this week's episode of Afternoon Cyber Tea. Katie has worked in security operations centers and cyber threat intelligence for nearly a decade, with degrees from Smith College and Georgetown University. Ann and Katie discuss the impact cyberattacks have on operating systems, the ransomware ecosystem, and recommendations for mitigating future risks. In This Episode You Will Learn:
Insights about the ransomware ecosystem and the future of cybersecurity.
How to ensure your Patch Management Program is optimized to mitigate threats and risks.
How, when, what, and to whom to communicate with after an intrusion.
Some Questions We Ask:
How can organizations share information about attacks without greater risk?
What are the best practices when trying to protect your information?
What would you consider beneficial when investing against inside threats?
Resources: View Katie Nickels on LinkedIn View Ann Johnson on LinkedIn Related: Listen to: Security Unlocked: CISO Series with Bret Arsenault Listen to: Security Unlocked Discover and follow other Microsoft podcasts at microsoft.com/podcastsAfternoon Cyber Tea with Ann Johnson is produced by Microsoft and distributed as part of The CyberWire Network.

May 17, 2022 • 26min
Preventing Digital Fraud & Scams
Lou Manousos, an acknowledged expert in internet security and VP of Product in Microsoft Security, joins Ann Johnson on this week's episode of Afternoon Cyber Tea. Lou has been developing enterprise protection technology for more than 15 years and is currently the CEO of Risk IQ. He also spearheaded a new approach to using intelligence to help companies protect their organizations and reduce online fraud. Ann and Lou discuss handling internal fraud, best practices for the average consumer when protecting themselves at home, and the danger major brands face from deep fakes and social media scams. In This Episode You Will Learn:
How companies need to focus on their internal fraud and security stance
What needs to be done to protect major brands from social media scams
Why we still aren’t fully prepared to handle synthetic identity scams
Some Questions We Ask:
What role can information security play in enhancing fraud prevention tools?
What should the average consumer do when looking to protect themselves at home?
When will security be able to identify fake accounts and fraud attempts more accurately?
Resources: View Lou Manousos on LinkedIn View Ann Johnson on LinkedIn Related: Listen to: Security Unlocked: CISO Series with Bret Arsenault Listen to: Security Unlocked Discover and follow other Microsoft podcasts at microsoft.com/podcastsAfternoon Cyber Tea with Ann Johnson is produced by Microsoft and distributed as part of The CyberWire Network.

May 3, 2022 • 30min
The Criticality of Cyber Resilience
Tarun Sondhi, a Principal and the cyber leader for the KPMG Managed Services group, joins Ann on this week's episode of Afternoon Cyber Tea. He has deep expertise in security architecture, infrastructure security, and access management. Tarun led the complete transformation and rebuilding of the Security Operations Center for one of the largest financial services organizations in the world. Ann and Tarun discuss how his guidance in security has changed over the years, investing in artificial intelligence and automation and what he believes is currently the most significant innovation in security. In This Episode You Will Learn:
How clients and organizations should handle today's threat landscape
When companies should start to invest in artificial intelligence and automation
Why organizations often overlook the evolving sophistication of current cyberattacks
Some Questions We Ask:
How has your security guidance changed in the past five years?
Why should organizations start to use cybersecurity to build operational resiliency?
What is the most significant security innovation you’ve seen recently to help organizations?
Resources: View Tarun Sondhi on LinkedIn View Ann Johnson on LinkedIn Related: Listen to: Security Unlocked: CISO Series with Bret Arsenault Listen to: Security Unlocked Discover and follow other Microsoft podcasts at microsoft.com/podcastsAfternoon Cyber Tea with Ann Johnson is produced by Microsoft and distributed as part of The CyberWire Network.

7 snips
Apr 19, 2022 • 37min
A Librarian’s Guide to Cybersecurity
Tracy Maleeff, a security researcher at the Krebs Stamos Group, a cybersecurity consulting firm, joins Ann on this week's episode of Afternoon Cyber Tea. Tracy is an information security professional with a Master of Library and Information Science degree and a frequent author and speaker on InfoSec and research topics. Ann and Tracy discuss keeping companies safe from disinformation, current issues, infosec professionals are dealing with, and what has influenced her cybersecurity philosophy. In This Episode You Will Learn:
How companies are fighting against misinformation and disinformation
The most critical issues consumers face regarding information security
Technology companies should invest in to protect from data breaches
Some Questions We Ask:
What is the biggest surprise in the evolution of technology and the threat landscape?
How does your law librarian background influence your cybersecurity philosophy?
What current issues are infosec professionals not paying enough attention to?
Resources: infosecsherpa.medium.com View Tracy Maleeff on LinkedIn View Ann Johnson on LinkedIn Related: Listen to: Security Unlocked: CISO Series with Bret Arsenault Listen to: Security Unlocked Discover and follow other Microsoft podcasts at microsoft.com/podcastsAfternoon Cyber Tea with Ann Johnson is produced by Microsoft and distributed as part of The CyberWire Network.

Apr 5, 2022 • 37min
Building Trust Through Cybersecurity
Sean Joyce, Principal for Price Waterhouse Coopers Advisory Practice, joins Ann this week on Afternoon Cyber Tea to discuss the unprecedented rise of cyberattacks this past year and what new trends we should be paying attention to. Sean has also consulted on some of the most prolific cyber breaches, providing us with his expertise on what he believes organizations should enforce as best practices when building operational resilience. In This Episode You Will Learn:
How to stop the spread of misinformation by building trust in cybersecurity
When to worry about the spread of misinformation as it relates to cybersecurity
Why companies should invest in Artificial intelligence and automation
Some Questions We Ask:
How concerned should we be given the rise and sophistication of new cyber-attacks?
What are some current trends we should all be paying attention to?
When we talk about defense, what should companies be investing in?
Resources: View Sean Joyce on LinkedIn View Ann Johnson on LinkedIn Related: Listen to: Security Unlocked: CISO Series with Bret Arsenault Listen to: Security Unlocked Discover and follow other Microsoft podcasts at microsoft.com/podcastsAfternoon Cyber Tea with Ann Johnson is produced by Microsoft and distributed as part of The CyberWire Network.