
CISO Series Podcast
Discussions, tips, and debates from security practitioners and vendors on how to work better together to improve security for themselves and everyone else.
Latest episodes

Feb 11, 2025 • 38min
Zero Trust Purple Team DevSecOps Mesh: A CASB Journey Through the Identity Fabric
Join Matt Muller, Field CISO at Tines, as he dives into the intersection of AI and security. He emphasizes the importance of cultivating AI security champions and the varying levels of tool adoption among employees. The discussion highlights the evolving role of SOCs and the necessity of clearer definitions in security operations. Matt also addresses the complexities of data breaches involving third-party vendors and the transformative role of automation in DevOps, advocating for communication strategies that align cybersecurity efforts with business objectives.

Feb 4, 2025 • 37min
Our Developers’ New Motto is “LLM Take the Wheel”
All links and images for this episode can be found on CISO Series. This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Andy Ellis (@csoandy), partner, YL Ventures. Joining us is Deneen DeFiore, Vice President & Chief Information Security Officer, United Airlines. In this episode: Minding the gap Copilot overreliance Opening up the field Navigating the SMB cyber insurance conundrum Thanks to our podcast sponsor, Vanta! Say goodbye to spreadsheets and screenshots Vanta automates evidence collection needed for audits with over 350 integrations—giving you continuous visibility into your compliance status. And with cross-mapped controls across over 35 frameworks, you’ll streamline compliance— and never duplicate your efforts.

25 snips
Jan 28, 2025 • 42min
As Long as We Keep Moving the Goalposts, We Have a Great Security Culture (LIVE in Dallas, TX)
Lamont Orange, CISO at Cyera and expert in data security, discusses key themes from a live conference in Dallas. He emphasizes the shift from a zero-incident mindset to building resilience in cybersecurity. The conversation highlights the importance of AI and automation in data security, and addresses the balance between security, integrity, and availability. Lamont also engages in lively debates on integrated platforms versus niche solutions, urging for better integration in response to evolving threats while promoting curiosity and innovation in the field.

Jan 21, 2025 • 38min
4th Party Data Breach? We Can Barely Catch the 1st Party Ones!
All links and images for this episode can be found on CISO Series. This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Mike Johnson, CISO, Rivian. Joining us is George Finney, CISO, The University of Texas System and author of Project Zero Trust. In this episode: Aligning on privacy Bringing Zero Trust to OT Restores and resilience Focus on what you can control Thanks to our podcast sponsor, Vanta! Say goodbye to spreadsheets and screenshots. Vanta automates evidence collection needed for audits with over 350 integrations—giving you continuous visibility into your compliance status. And with cross-mapped controls across over 35 frameworks, you’ll streamline compliance— and never duplicate your efforts.

Jan 14, 2025 • 37min
I Support Open Source as Long as I Don't Have to Invest in It
Brett Perry, CISO at Dot Foods, dives into the evolving landscape of cybersecurity. He discusses the challenges of managing remote work and the importance of on-site training for young employees. The conversation covers the implications of Managed Detection and Response (MDR) services on pricing and competition, as well as the pressing issue of technical debt in security tools. Additionally, Brett shares insights on effective retention strategies, the balance between automation and expertise, and the critical need for mentorship among aspiring CISOs.

Jan 7, 2025 • 39min
Ewww! How Long Has This Router Been in the Fridge?
All links and images for this episode can be found on CISO Series. This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Andy Ellis (@csoandy), partner, YL Ventures. Joining us is Yabing Wang, VP and CISO, Justworks. In this episode: Building a path to action Cracking the EOL conundrum The burning platform question Uncertainty is our only constant Thanks to our podcast sponsor, Entro! Reclaim control of your non-human identities with Entro Security! Our platform securely manages non-human identities and secrets throughout their lifecycle. Detect and prevent unusual activity before it becomes a threat. Trust Entro to safeguard your non-human identities in today’s complex digital ecosystem.

Dec 17, 2024 • 38min
Why Bother Helping Users When We Can Complain About Them?
All links and images for this episode can be found on CISO Series. This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Mike Johnson, CISO, Rivian. Joining us is our sponsored guest Daniel Daraban, senior director of product management, Bitdefender. In this episode: Practice makes perfect Shaming doesn’t help anyone Cybersecurity is a flat circle Building the bridge Thanks to our podcast sponsor, Bitdefender! Enterprise-grade cybersecurity without complexity. Backed by extensive research from hundreds of experts in Bitdefender Labs and consistently top-rated in independent tests, Bitdefender GravityZone platform provides multi-layered prevention, protection, detection, and response capabilities, including managed security services. Learn more at Bitdefender.com.

4 snips
Dec 10, 2024 • 38min
Can’t Our Employees Just Go Back to Stealing Pens?
All links and images for this episode can be found on CISO Series. This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Mike Johnson, CISO, Rivian. Joining us is our sponsored guest, Itzik Alvas, co-founder and CEO, Entro. In this episode: What to expect when you’re offboarding The threats are coming from inside the organization The risk of stale identities Working backward to risk Thanks to our podcast sponsor, Entro! Reclaim control of your non-human identities with Entro Security! Our platform securely manages non-human identities and secrets throughout their lifecycle. Detect and prevent unusual activity before it becomes a threat. Trust Entro to safeguard your non-human identities in today’s complex digital ecosystem.

Dec 3, 2024 • 35min
We Take Software Security Seriously, As Long As It Ships on Time
All links and images for this episode can be found on CISO Series. This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Mike Johnson, CISO, Rivian. Joining us is our sponsored guest Jeremy Epling, chief product officer, Vanta. In this episode: What is the future of cybersecurity? Designing the outcomes we want The promise and peril of AI Is open-source open to more threats? Thanks to our podcast sponsor, Vanta! Say goodbye to spreadsheets and screenshots. Vanta automates evidence collection needed for audits with over 350 integrations—giving you continuous visibility into your compliance status. And with cross-mapped controls across 30 frameworks, you’ll streamline compliance— and never duplicate your efforts. Learn more at Vanta.com.

Nov 26, 2024 • 41min
Aww, Your Cybersecurity Concerns Are So Adorable (LIVE in La Jolla)
All links and images for this episode can be found on CISO Series. This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Gary Hayslip, CISO, Softbank Investment Advisors. Joining us is Keith McCartney, VP, Security and IT, DNAnexus. In this episode: Closing the Credibility Gap Clarifying the Role of Security Engineering Building Resilience at Scale AI Frameworks and Cybersecurity Thanks to our podcast sponsor, Entro! Reclaim control of your non-human identities with Entro Security! Our platform securely manages non-human identities and secrets throughout their lifecycle. Detect and prevent unusual activity before it becomes a threat. Trust Entro to safeguard your non-human identities in today’s complex digital ecosystem.