
CISO Series Podcast
Discussions, tips, and debates from security practitioners and vendors on how to work better together to improve security for themselves and everyone else.
Latest episodes

Nov 19, 2024 • 40min
Once You Show Me Your Diploma, I’ll Explain Why We Don’t Gatekeep
Jimmy Benoit, VP of Cybersecurity at PBS, shares his expertise on early cybersecurity education and workforce development. He discusses the importance of engaging younger generations through creative methods like gamification and interactive events. Benoit critiques traditional training approaches, advocating for skills-based hiring and inclusivity in cybersecurity. He also highlights the need for meaningful learning experiences beyond mere certifications, emphasizing how effective leadership can enhance team productivity and engagement.

Nov 12, 2024 • 46min
Wait, We Can Prioritize Data Privacy Before an Incident? (LIVE at Stanford University)
This discussion dives into the importance of data privacy and how to prioritize it before incidents occur. A fascinating look at zero trust security reveals its challenges and benefits. The impact of AI on job security ignites lively debate. Attendees share skepticism about the role of CISOs, highlighting their unique position in today's cybersecurity landscape. Lessons from past security missteps underscore the need for collaboration and effective communication among key stakeholders.

16 snips
Nov 5, 2024 • 41min
Luckily, We Haven’t Had to Adapt to Any New Technologies Before AI
Jadee Hanson, CISO at Vanta, shares her insights on the future of cybersecurity. She discusses the exciting yet challenging landscape of AI integration in workplaces and the necessary transparency for effective adoption. The conversation highlights the complexities of navigating compliance in the defense sector, including CMMC 2.0 requirements and supply chain security. Jadee also emphasizes the importance of multi-factor authentication in banking, stressing the need for robust measures to protect sensitive data from breaches.

17 snips
Oct 29, 2024 • 35min
We Need to Hire a Unicorn But We Only Have Budget for a Donkey
Jason Shockey, CISO at Cenlar FSB, brings his military and intelligence expertise to the forefront of cybersecurity discussions. He emphasizes enhancing communication within Security Operations Centers to improve team dynamics. Shockey advocates for diverse hiring practices that value talent over rigid educational requirements. He also highlights the critical role of training in employee retention and navigates the challenges of crisis management in cybersecurity. His insights blend humor with strategies for effective leadership in this evolving landscape.

Oct 22, 2024 • 42min
Who Knows What Evil Lurks in the Heart of Low Code/No Code? (LIVE in Los Angeles)
Cyrus Tibbs, CISO for PennyMac, dives into data minimization and the evolving challenges of low-code/no-code development. He emphasizes the importance of proactive security measures in a rapidly changing digital landscape. His insights highlight the need for organizational education to combat shadow IT. The conversation also critiques the limitations of Multi-Factor Authentication and promotes a culture of transparency and accountability within teams. Tibbs encourages open dialogue, ensuring robust vendor relationships and better cybersecurity strategies.

Oct 15, 2024 • 43min
Once the Panic Subsides You’ll Appreciate This Phishing Test (LIVE in Houston, TX)
In this engaging conversation, Teresa Tonthat, VP and Associate CIO at Texas Children's Hospital, shares insights from the cybersecurity frontlines. She emphasizes the critical link between cybersecurity and business goals, advocating for strategies that enhance productivity. The discussion also underscores the importance of effective user training, particularly phishing tests, to foster a positive security culture. With humor and real-world examples, they tackle the challenges of communicating security concepts and the evolving landscape of AI in cybersecurity.

Oct 8, 2024 • 46min
Does Burying Your Head in the Sand Count as a Security Posture? (LIVE in Boca Raton, FL)
Adam Fletcher, CSO at Blackstone, shares insights on navigating the cybersecurity landscape. He discusses the pressing challenges of deepfake detection, the ongoing talent deficit, and the significance of mentorship for new professionals. The conversation touches on mental health in incident response, with Fletcher advocating for its integration into security strategies. Also explored are effective team dynamics and the nuanced role of the CISO in risk management, emphasizing the need for flexibility and communication within cybersecurity teams.

Oct 1, 2024 • 36min
We’re Lowering the Requirement for Entry Level to Just 8 Years of Experience
Steve Person, CISO of Cambia Health, dives into the evolving landscape for cybersecurity leaders. He discusses the crucial need for redefining entry-level job requirements amidst a talent shortage. The conversation shifts to the balance CISOs must strike in their responses to incidents, advocating for a measured approach. Additionally, Steve highlights the importance of mentorship, diversity in education, and hands-on experience in cultivating the next generation of cybersecurity professionals.

5 snips
Sep 24, 2024 • 37min
… And the Business Listened to the CISO and Everyone Lived Happily Ever After
In this episode, Mike Johnson, CISO at Rivian, and Stephen Harrison, CISO at MGM Resorts International, tackle the evolving challenges in cybersecurity. They delve into the risks of AI integration in businesses, highlighting issues like prompt injections and the need for robust security measures. The duo discusses the complexities of hiring in security teams, emphasizing the importance of effective storytelling to communicate risks to non-technical stakeholders. They also explore the critical role of collaboration with law enforcement to enhance cybersecurity preparedness.

Sep 17, 2024 • 45min
Our Guardrails Only Fail When You Try To Go Around Them (LIVE in Seattle)
Varsha Agrawal, the head of information security at Prosper Marketplace, shares her insights on navigating the complexities of cybersecurity. She discusses the challenges of securing AI and the critical role of human oversight in effective security training. Agrawal advocates for tailored cybersecurity education to fit an intergenerational workforce. The conversation also critiques common reliance on phishing simulations and underscores the importance of innovative identity and access management strategies in today's evolving landscape.