Data Security Decoded cover image

Data Security Decoded

Latest episodes

undefined
Jun 4, 2025 • 23min

AI-Driven Cyber Defense in Action: How AI Agents Are Saving SOC Analysts From Burnout

AI-powered SOC platforms are revolutionizing cybersecurity by dramatically reducing false positives and enabling analysts to focus on high-value security work.In this episode of Data Security Decoded, join Caleb Tolin as he sits down with Grant Oviatt, Head of Security Operations at Prophet Security, to explore how AI agents are transforming security operations centers (SOCs) and reshaping the future of cyber defense.What You'll Learn:How AI agents achieve a 95% reduction in false positive alerts while maintaining high investigation accuracyWhy AI won't replace SOC analysts but will elevate their roles by eliminating tedious tasksThe framework for building trust in AI security tools through evidence-backed investigations and transparent decision-makingHow AI is lowering barriers to entry for cybersecurity careers by focusing on analytical thinking over technical expertiseThe critical balance between AI automation and human context in security operations.How to evaluate and implement AI security solutions, including key criteria for testing accuracy and effectivenessHighlights:[02:57] Dramatic Reduction in False Positives Through AI-Driven Investigation[07:21] AI Augmentation vs. Replacement: Elevating Security Roles[09:34] Lowering Barriers to Entry in Cybersecurity[17:41] Building Trust Through Transparent AI Operations[21:58] Strategic Implementation of AI Security SolutionsEpisode Resources:Caleb Tolin on LinkedInGrant Oviatt on LinkedInProphet Security websiteRubik's Zero Labs websiteData Security Decoded is handcrafted by our friends over at: fame.so
undefined
May 20, 2025 • 31min

Making Generative AI Transparent

In this episode of Data Security Decoded, host Caleb Tolin sits down with Gabrielle Hibbert, a social policy expert and researcher, about her innovative work developing a nutrition labeling system for generative AI tools. This framework aims to bridge the gap between complex AI technology and consumer understanding, while addressing critical transparency and data privacy concerns.What You'll Learn:How nutrition labels for AI tools can make complex technology accessible to non-technical usersWhy current privacy policies fail to protect consumers, with 93% of users unable to understand themThe three-pillar approach to AI transparency: general usage information, safety measures, and potential risksHow companies can balance corporate sensitivity with consumer transparency in AI tool deploymentWhy Generation Z and Millennial users feel increasingly burdened by technology, and how transparency can helpThe regulatory framework needed to standardize AI tool labeling across industriesHow iterative processes and APIs can keep AI nutrition labels current with rapid technological changesThe importance of multi-stakeholder collaboration in developing effective AI transparency standardsEpisode Highlights:[00:00:55] Creating Consumer-Friendly AI Transparency Labels[04:58] Building Universal Understanding Across Technical Levels[22:13] Regulatory Framework Integration[27:21] Dynamic Updates Through API IntegrationEpisode Resources:Caleb Tolin on LinkedInGabrielle Hibbert on LinkedInFCC Broadband Labeling SystemNew America – Translating the Artificial Report PageFDA Nutrition Label Design StandardsData Security Decoded is handcrafted by our friends over at: fame.so
undefined
Apr 22, 2025 • 28min

The State of Data Security: A Distributed Crisis

Welcome to the Data Security Decoded podcast by Rubrik Zero Labs. In this episode, our host Caleb Tolin speaks with Joe Hladik, a veteran security expert with two decades of experience, to explore the evolving landscape of cybersecurity, incident response, and the critical challenges of data security in today's distributed environments.What You'll Learn:How the cybersecurity landscape has evolved from traditional nation-state threats to modern ransomware operationsWhy data sprawl creates complex security challenges as sensitive information moves across platforms and usersThe real-world challenges organizations face when managing vulnerability patches and business continuityHow identity management has become more complex than just "the new perimeter" in cloud environmentsWhy data security posture management is crucial for protecting sensitive information across distributed systemsThe ways modern threat actors combine financial and political motivations in sophisticated attack campaignsThe conversation draws from "The State of Data Security: A Distributed Crisis," a new report from Rubrik Zero Labs, and provides practical insights into how organizations can better manage their data security posture while addressing emerging threats in an increasingly complex digital landscape.Episode Highlights:[20:05] Understanding Data Sprawl and Security Posture Management[27:05] Identity Management as a Dynamic Security Challenge [08:40] The Evolution of Cyber Threats and Motivations[32:28] The Future of Security Research and ResponseEpisode ResourcesCaleb Tolin on LinkedInJoe Hladik on LinkedInThe State of Data Security: A Distributed Crisis, Rubrik Zero Labs ReportData Security Decoded is handcrafted by our friends over at: fame.so
undefined
Apr 8, 2025 • 21min

Data Weaponization: How Cyber Attacks Impact the Vulnerable

Welcome to the Data Security Decoded podcast by Rubrik Zero Labs. In this episode, our host Caleb Tolin speaks with Pavlina Pavlova, a researcher and cybersecurity advocate focusing on data weaponization and its disproportionate impact on vulnerable populations.Pavlina defines data weaponization as using data to manipulate, deceive, coerce, or attack someone to inflict harm. Her research investigates why cyber attacks and their impacts often have gendered dimensions, with certain populations experiencing more severe consequences.The conversation explores how attacks on critical infrastructure, particularly healthcare, create immediate impacts. While cyber attacks aren't becoming more sophisticated, they're growing more vicious. Ransomware attacks against healthcare facilities disproportionately affect women, who often serve as caregivers and rely more heavily on healthcare services.Pavlina examines the geopolitical dimensions of cybercrime, noting how certain nations harbor cybercriminals aligned with their foreign policy goals. These sanctuary jurisdictions make accountability difficult and contribute to attacks aimed at disrupting societal resilience.Join Caleb and Pavlina as they discuss policy frameworks addressing gender dimensions of data weaponization, explore international cooperation efforts, and share practical advice for under-resourced organizations to improve their cyber resilience despite limited funding. They also examine the critical role of responsible data collection and the importance of donors specifically allocating cybersecurity funding when supporting vulnerable organizations.Episode Highlights:[01:02] Defining Data Weaponization[04:11] Critical Infrastructure Targeting[09:29] Geopolitical Dimensions of Cybercrime[13:24] Policy Frameworks and International Cooperation[19:31] Resources for Under-resourced OrganizationsEpisode ResourcesCaleb Tolin on LinkedInPavlina Pavlova on LinkedInNew America report by Pavlina PavlovaCyber Peace InstituteUnited Nations Cybercrime ConventionData Security Decoded is handcrafted by our friends over at: fame.so
undefined
Mar 27, 2025 • 30min

Civilian Cyber Corps: Protecting Underfunded Organizations

Welcome to the Data Security Decoded podcast by Rubrik Zero Labs. In this episode, our host, Caleb Tolin, is joined by Michael Razeeq, a cybersecurity policy researcher specializing in advocating for  Civilian Cyber Corps (C3s). Michael shares insights into how these volunteer forces, C3s, are transforming community cyber defense, addressing workforce shortages, and providing both preventive and reactive cybersecurity services to underfunded organizations.Michael's research provides a unique perspective on the emergence of the Civilian Cyber Corps across various models, from university cyber clinics to state-level programs. These task forces address gaps in cybersecurity defense where resource constraints leave organizations vulnerable. As a 2024 #ShareTheMicInCyber Fellow at New America and 2025 Fellow at UC Berkeley CLTC, he advocates for a "whole society" approach to cybersecurity, highlighting successful implementations in states like Ohio and drawing inspiration from Estonia's cyber defense unit.Join Caleb and Michael as they explore the operational frameworks of C3s, discuss the challenges of recruiting and vetting volunteers, examine legal considerations for establishing programs, and share insights on measuring both quantitative and qualitative impacts of these initiatives. They also look at the future of C3s through increased collaboration and partnerships like the Cyber Resilience Core.Episode Highlights:[01:30] The Rise of Civilian Cyber Corps (C3s)[13:11] Pathways to Establishing C3 Programs[19:47] Left of Boom vs Right of Boom Services[26:49] Addressing C3 Implementation ChallengesEpisode ResourcesCaleb Tolin on LinkedInMichael Razeeq on LinkedIn“Civilian Cyber Corps: A Model Law for States” by Michael Razeeq for New America New America’s #ShareTheMicInCyber Fellowship ProgramUC Berkeley Center for Long-Term Cybersecurity ProgramCISA Cybersecurity Resources for High-Risk CommunitiesData Security Decoded is handcrafted by our friends over at: fame.so
undefined
Mar 18, 2025 • 28min

How to Effectively Train Your Employees on Cybersecurity

Welcome to the Data Security Decoded podcast. In this episode, our host, Richard Cassidy, is joined by Carolin Desirée Toepfer, founder of Cyttraction and CISO as a Service for multiple organizations across Europe and North America. Carolin shares her journey from building websites and online communities to becoming a cybersecurity leader, offering insights into the unique challenges of European cybersecurity, AI security frameworks, and transforming cybersecurity training into data integrity training that better aligns with business needs.Carolin's unique position as a CISO for multiple organizations gives her exceptional perspective on cybersecurity challenges across different industries and company sizes. Her approach focuses on addressing gaps in the European cybersecurity landscape where, according to Cisco studies, only 2% of companies are well-prepared. As founder of Cyttraction, an edtech company focused on cybersecurity training, she advocates for reframing security training to emphasize data integrity and digital identity protection, making it more relevant to business stakeholders.Join Richard and Carolin as they explore the evolution of the CISO role in Europe, discuss the global skills shortage in cybersecurity, examine cultural differences in security awareness between North America and Europe, and share insights on effective training strategies that accommodate modern attention spans and learning preferences.Episode Highlights:00:02 - Introduction and CISO as a Service Role01:57 - European Cybersecurity Landscape and Challenges03:26 - Path to Becoming a CISO06:17 - Regional Differences in Cybersecurity Approaches09:53 - AI Governance and Business Impact14:39 - Reframing Security Training for Business Alignment19:20 - Measuring Training Effectiveness24:01 - Future Outlook for CybersecurityEpisode ResourcesRichard Cassidy on LinkedInCarolin Desirée Toepfer on LinkedInCyttraction Learning PlatformThe State of Data Security: The New Rules Breaking the Banks report from Rubrik Zero LabsData Security Decoded is handcrafted by our friends over at: fame.so
undefined
Jan 21, 2025 • 31min

Regulatory Readiness and Resilience with Kris Lovejoy, Global Security and Resilience Practice Leader at Kyndryl

Welcome to the Data Security Decoded podcast, brought to you by Rubrik Zero Labs. In each episode, we discuss cybersecurity with thought leaders and industry experts and get their take on trends, themes, and how they see data security evolving. This is a must-listen for security and IT leaders looking to better understand trends shaping data security and how they can achieve cyber resilience. In this episode, our host, Ghazal Asif, Global VP of Channels, Alliances, and Inside Sales at Rubrik, is joined by Kris Lovejoy, Global Security and Resilience Practice Leader at Kyndryl.  With over two decades of leadership experience, Kris has built a career focused on advancing technology ecosystems that drive human progress. At Kyndryl, she leads initiatives to design, manage, and safeguard the world's most reliable technology infrastructure.Previously, Kris served as EY’s Global Cybersecurity Leader, where she worked with diverse teams across 150+ countries to solve complex cybersecurity challenges. She has also held leadership roles at IBM, including VP of IT Risk and Chief Information Security Officer (CISO), and served as CEO of BluVector, a Comcast company. Kris also sits on the board of Dominion Energy, where she supports efforts to achieve Net Zero emissions by 2050.Join Ghazal and Kris as they explore actionable strategies for integrating cyber resilience into business operations, the importance of regulatory readiness for global organizations navigating new compliance frameworks, and how diverse teams drive innovative problem-solving in cybersecurity.Episode Highlights: 00:00 - Intro03:45 - Evolving Perspectives on Compliance and Regulation07:25 - Why Diversity in IT and Security Teams Drives Better Solutions09:59 - Cybersecurity vs. Cyber Resilience14:25 - Practical Strategies for Building Cyber Resilience17:40 - Communicating Security Strategies to Non-Technical Leaders20:25 - The Paradox of Per Capita Spend26:09 - Regulatory Readiness in a Complex Global Landscape28:09 - Preparing for Cyber Threats: The Critical Role of Basic Hygiene30:18 - Looking Forward: Optimism for the Future of CybersecurityEpisode ResourcesRubrik Zero Labs The State of Data Security: Measuring Your Data's Risk reportGhazal Asif on LinkedInKris Lovejoy on LinkedInData Security Decoded is handcrafted by our friends over at: fame.so
undefined
Jan 7, 2025 • 1h 1min

Bridging Cyber Policy Gaps for Rural and Underserved Communities with Nicole Tisdale

Welcome to the Data Security Decoded podcast, brought to you by Rubrik Zero Labs. In each episode, we discuss cybersecurity with thought leaders and industry experts, getting their take on trends, themes, and how they see data security evolving. This is a must-listen for security and IT leaders looking to better understand trends shaping data security and how they can achieve cyber resilience. In this episode, our host, Travis Rosiek, Public Sector CTO at Rubrik, is joined by Nicole Tisdale, Founder of Advocacy Blueprints, former Director of Legislative Affairs for the National Security Council, and author of Right to Petition. Nicole shares her journey from rural Mississippi to national security leadership, offering insights into cybersecurity equity, workforce development, and public policy's critical role in addressing underserved communities' unique challenges.Nicole’s leadership has been instrumental in shaping transformative policies, including spearheading The White House’s advocacy that secured a $1 billion cybersecurity grant program and the nation’s first cyber incident reporting law. Representing the United States in global policy dialogues across 30 nations, she has been a prominent voice in advancing security and equity on the international stage. Now as the Founder of Advocacy Blueprints, Nicole continues to champion cybersecurity and civic engagement, equipping organizations and individuals with the tools to influence policy effectively. She is also the author of Right to Petition, a practical guide for empowering citizens in advocacy.Join Travis and Nicole as they delve into the challenges of bridging policy gaps for underserved communities and her vision for equitable cybersecurity policies that prepare, respond, and recover in today’s digital landscape.Episode Highlights: 00:00 - Intro02:57 - Advocacy for Underserved Communities06:21 - Addressing Cybersecurity Gaps in Rural and Low-Income Communities07:17 - Defensive vs. Offensive Cybersecurity Policy12:10 - The Role of Proactive Policy in Cyber Resilience18:35 - The Importance of Cybersecurity Workforce Development21:41 - Regional Nodes for Workforce Growth and Local Cybersecurity Defense25:48 - Connecting Workforce Development to Community Economic Stability30:05 - The Ripple Effects of Cyberattacks on Healthcare Systems34:57 - Cybersecurity as Critical Infrastructure Protection: The Rural Perspective38:39 - Advocacy Blueprints: Empowering Communities to Influence Policy45:15 - Effective Advocacy: Known Information and Resource Alignment in Cyber Policy48:03 - Advice for Government Leaders During Leadership Transitions55:59 - Optimism About Cybersecurity’s FutureEpisode ResourcesRubrik Zero Labs The State of Data Security: Measuring Your Data's Risk reportTravis Rosiek on LinkedInNicole Tisdale on LinkedInRight to Petition by Nicole TisdaleData Security Decoded is handcrafted by our friends over at: fame.so
undefined
Dec 18, 2024 • 35min

Bridging the Gap Between IT and Security with Marcela Escobar-Alava and Joe Stenaka, CIO and CISO of the U.S. Social Security Administration

Welcome to the Data Security Decoded podcast, brought to you by Rubrik Zero Labs. In each episode, we discuss cybersecurity with thought leaders and industry experts, and get their take on trends, themes, and how they see data security evolving. This is a must-listen for security and IT leaders looking to better understand trends shaping data security and how they can achieve cyber resilience. In this episode, our host, Mike Tornincasa, Chief Business Officer at Rubrik, is joined by Marcela Escobar-Alava, CIO of the Social Security Administration, and Joe Stenaka, SSA’s CISO for an insightful conversation on IT and cybersecurity collaboration. Marcela Escobar-Alava is a seasoned technology executive with deep expertise in building high-performing teams and aligning technology solutions with business objectives. Known for her ability to innovate under tight deadlines, Marcela brings years of experience in managing global application development, transforming organizational operations, and driving impactful business outcomes. Her strategic leadership and problem-solving approach have made her a trusted leader in rapidly evolving environments.Joe Stenaka, the Associate Commissioner and CISO at SSA, has spent decades protecting critical information systems across government agencies, including the Department of Veterans Affairs and the National Security Agency. With a pragmatic leadership style, Joe emphasizes collaboration and enabling secure IT solutions while minimizing risks. As an educator and industry thought leader, he is committed to fostering the next generation of cybersecurity professionals.Together, Marcela and Joe share how their unique partnership ensures operational efficiency and robust security for one of the largest independent government agencies, serving over 64 million Americans.Episode Highlights: 00:00 - Intro00:58 - Marcela’s role as CIO: Bridging strategic and operational objectives02:59 - Joe’s leadership in advancing SSA’s cybersecurity framework05:12 - Establishing lockstep collaboration between IT and security10:30 - Balancing the speed of IT innovation with robust security measures18:14 - Lessons from Marcela’s past: Ransomware scars and fostering vigilance24:15 - The rise of AI: Ethical considerations, security risks, and opportunities29:27 - Reflections on leadership: From cryptology to servant leadership32:12 - The future of cybersecurity: Opportunities and challengesEpisode ResourcesRubrik Zero Labs The State of Data Security: Measuring Your Data's Risk reportMarcela Escobar-Alava on LinkedIn Joe Stenaka on LinkedInMike Tornincasa on LinkedInData Security Decoded is handcrafted by our friends over at: fame.so
undefined
Dec 3, 2024 • 49min

Navigating Cybersecurity Through Leadership Transitions with Maria Roat, Former US Deputy Federal CIO

Welcome to the Data Security Decoded podcast, brought to you by Rubrik Zero Labs. In each episode, we discuss cybersecurity with thought leaders and industry experts, and get their take on trends, themes, and how they see data security evolving. This is a must-listen for security and IT leaders looking to better understand trends shaping data security and how they can achieve cyber resilience. In this episode, our host, Travis Rosiek, Public Sector CTO at Rubrik, is joined by Maria Roat, former Deputy Federal CIO of the United States, and a seasoned Information Technology and Cybersecurity Executive with over three decades of experience. Maria has led transformative initiatives across federal agencies, including launching the FedRAMP program, which standardized cloud security protocols across government, and helping government agencies remain resilient through administration changes.Maria’s leadership during the COVID-19 pandemic was instrumental in enabling a large-scale remote workforce and deploying resilient platforms that supported the rapid distribution of $300 billion in relief funds. Her efforts modernized outdated systems, reduced technical debt, and streamlined operations across the Small Business Administration, transforming it into an agile organization prepared to address emerging challenges.Join Travis and Maria as they explore her extraordinary journey in cybersecurity and technology leadership, the evolution of FedRAMP, and her insights on aligning innovation with mission-driven goals.Episode Highlights: 00:00 - Intro04:00 - Navigating Large-Scale Federal Technology Transformation05:30 - Insights on Leadership in Technology from the Navy to Federal CIO10:00 - Leadership Challenges as a Woman in Tech18:16 - The Evolution of FedRAMP and Cloud Security Standards34:05 - Addressing Cyber Threats in Transition Periods37:19 - Building a Culture of Zero Trust and Cyber Resilience42:00 - Cybersecurity Lessons for Healthcare OrganizationsEpisode ResourcesRubrik Zero Labs The State of Data Security: Measuring Your Data's Risk reportTravis Rosiek on LinkedInMaria Roat on LinkedInData Security Decoded is handcrafted by our friends over at: fame.so

The AI-powered Podcast Player

Save insights by tapping your headphones, chat with episodes, discover the best highlights - and more!
App store bannerPlay store banner
Get the app