CISO Series Podcast - podcast cover

CISO Series Podcast

David Spark, Mike Johnson, and Andy Elliscisoseries.com
Discussions, tips, and debates from security practitioners and vendors on how to work better together to improve security for themselves and everyone else.

Episodes

Our CISO Might Be Virtual, But the Lack of Respect Is Genuine

All links and images for this episode can be found on CISO Series. This week’s episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and Andy Ellis ( @csoandy ), partner, YL Ventures . Joining us is Mike Wilkes , former CISO, Major League Soccer. In this episode: Are we misusing vCISOs? Cybersecurity is out to sea Planning for your exit Building up your quantum reflexes Thanks to our podcast sponsor, Tines Build, run, and monitor your most important workflows with Tines. Tine...

Mar 11, 202534 min

All Cybersecurity Problems Are Easy to Fix… With Unlimited Time and Budget

All links and images for this episode can be found on CISO Series . This week’s episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and Andy Ellis ( @ csoandy ), partner, YL Ventures . Joining us is Adam Holland , former CISO, the Wendy’s Company, now CISO of Ascension Healthcare . In this episode: The long road to influence The effort to build a bridge Living within limits Motivation for security awareness Thanks to our podcast sponsor, Vanta! Say goodbye to spreadsheets a...

Mar 04, 202539 min

Every Failed Startup Starts as a Dream for a Single Pane of Glass

All links and images for this episode can be found on CISO Series . This week’s episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and Andy Ellis ( @csoandy ), partner, YL Ventures . Joining us is Shaun Marion , vp, CSO, Xcel Energy . In this episode: Setting policy The hard thing about soft skills Never let a good crisis go to waste Avoiding the tarpit Thanks to our podcast sponsor, Noma Security! Secure your entire Data & AI Lifecycle—from development to production and c...

Feb 25, 202537 min

Fix it? Let’s Just Get Rid of It.

All links and images for this episode can be found on CISO Series . This week’s episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and Andy Ellis ( @csoandy ), partner, YL Ventures . Joining us is our sponsored guest, Danny Jenkins , CEO, ThreatLocker . In this episode: A zero-day upgrade Don’t let a pentest go bad Improving user training Cybersecurity is made for people Thanks to our podcast sponsor, ThreatLocker! ThreatLocker® is a global leader in Zero Trust endpoint se...

Feb 18, 202537 min

Zero Trust Purple Team DevSecOps Mesh: A CASB Journey Through the Identity Fabric

All links and images for this episode can be found on CISO Series . This week’s episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and Steve Zalewski . Joining us is our sponsored guest, Matt Muller , field CISO, Tines . In this episode: Seeking the early AI adopters Taking the SOC back to basics Changing our automation expectations Communicate risk Thanks to our podcast sponsor, Tines! Build, run, and monitor your most important workflows with Tines . Tines' smart, secure...

Feb 11, 202538 min

Our Developers’ New Motto is “LLM Take the Wheel”

All links and images for this episode can be found on CISO Series . This week’s episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and Andy Ellis ( @csoandy ), partner, YL Ventures . Joining us is Deneen DeFiore , Vice President & Chief Information Security Officer, United Airlines . In this episode: Minding the gap Copilot overreliance Opening up the field Navigating the SMB cyber insurance conundrum Thanks to our podcast sponsor, Vanta! Say goodbye to spreadsheets and sc...

Feb 04, 202537 min

As Long as We Keep Moving the Goalposts, We Have a Great Security Culture (LIVE in Dallas, TX)

All links and images for this episode can be found on CISO Series . This week’s episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and Rinki Sethi , vp and CISO, BILL. Joining us is our sponsored guest, Lamont Orange , CISO, Cyera . This episode was recorded in front of a live audience at Cyera’s first DataSec conference (November 2024) in Dallas. Thanks to Adam Holland , CISO, Wendy's , Farray Rahman of Vibrant Emotional Health and 988 Lifeline, and Biji John of USAA for ...

Jan 28, 202542 min

4th Party Data Breach? We Can Barely Catch the 1st Party Ones!

All links and images for this episode can be found on CISO Series . This week’s episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and Mike Johnson , CISO, Rivian . Joining us is George Finney , CISO, The University of Texas System and author of Project Zero Trust . In this episode: Aligning on privacy Bringing Zero Trust to OT Restores and resilience Focus on what you can control Thanks to our podcast sponsor, Vanta! Say goodbye to spreadsheets and screenshots. Vanta auto...

Jan 21, 202538 min

I Support Open Source as Long as I Don't Have to Invest in It

All links and images for this episode can be found on CISO Series . This week’s episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and Steve Zalewski . Joining us is our guest, Brett Perry , CISO, Dot Foods . In this episode: A new MDR policy Staying on top of the technical debt cycle Beating retention struggles In the gully of SOAR Thanks to our podcast sponsor, Tines! Build, run, and monitor your most important workflows with Tines . Tines' smart, secure workflow platfor...

Jan 14, 202537 min

Ewww! How Long Has This Router Been in the Fridge?

All links and images for this episode can be found on CISO Series . This week’s episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and Andy Ellis ( @csoandy ), partner, YL Ventures . Joining us is Yabing Wang , VP and CISO, Justworks . In this episode: Building a path to action Cracking the EOL conundrum The burning platform question Uncertainty is our only constant Thanks to our podcast sponsor, Entro! Reclaim control of your non-human identities with Entro Security ! Our...

Jan 07, 202539 min

Why Bother Helping Users When We Can Complain About Them?

All links and images for this episode can be found on CISO Series . This week’s episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and Mike Johnson , CISO, Rivian . Joining us is our sponsored guest Daniel Daraban , senior director of product management, Bitdefender . In this episode: Practice makes perfect Shaming doesn’t help anyone Cybersecurity is a flat circle Building the bridge Thanks to our podcast sponsor, Bitdefender! Enterprise-grade cybersecurity without comple...

Dec 17, 202438 min

Can’t Our Employees Just Go Back to Stealing Pens?

All links and images for this episode can be found on CISO Series . This week’s episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and Mike Johnson , CISO, Rivian . Joining us is our sponsored guest, Itzik Alvas , co-founder and CEO, Entro . In this episode: What to expect when you’re offboarding The threats are coming from inside the organization The risk of stale identities Working backward to risk Thanks to our podcast sponsor, Entro! Reclaim control of your non-human i...

Dec 10, 202438 min

We Take Software Security Seriously, As Long As It Ships on Time

All links and images for this episode can be found on CISO Series . This week’s episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and Mike Johnson , CISO, Rivian . Joining us is our sponsored guest Jeremy Epling , chief product officer, Vanta . In this episode: What is the future of cybersecurity? Designing the outcomes we want The promise and peril of AI Is open-source open to more threats? Thanks to our podcast sponsor, Vanta! Say goodbye to spreadsheets and screenshots...

Dec 03, 202435 min

Aww, Your Cybersecurity Concerns Are So Adorable (LIVE in La Jolla)

All links and images for this episode can be found on CISO Series . This week’s episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and Gary Hayslip , CISO, Softbank Investment Advisors . Joining us is Keith McCartney , VP, Security and IT, DNAnexus . In this episode: Closing the Credibility Gap Clarifying the Role of Security Engineering Building Resilience at Scale AI Frameworks and Cybersecurity Thanks to our podcast sponsor, Entro! Reclaim control of your non-human iden...

Nov 26, 202441 min

Once You Show Me Your Diploma, I’ll Explain Why We Don’t Gatekeep

All links and images for this episode can be found on CISO Series . This week’s episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and Andy Ellis ( @csoandy ), partner, YL Ventures . Joining us is Jimmy Benoit , vp, cybersecurity, PBS . In this episode: Starting early on security awareness The limits of gamification Technically qualified Understanding your risk tolerance Thanks to our podcast sponsor, Bitdefender! Enterprise-grade cybersecurity without complexity. Backed b...

Nov 19, 202440 min

Wait, We Can Prioritize Data Privacy Before an Incident? (LIVE at Stanford University)

All links and images for this episode can be found on CISO Series . This week’s episode is hosted by me, David Spark (@dspark), producer of CISO Series and Amy-Steagall-Hess , CISO, Stanford University . Joining us is Michael Tran Duff , CISO, data privacy officer, Harvard University . In this episode: Turning a mirror on zero trust Is AI coming for our jobs? Responding to skepticism about CISOs A CISO at the crossroads Thanks to our podcast sponsor, Vorlon Security and Wiz! Vorlon helps organiz...

Nov 12, 202446 min

Luckily, We Haven’t Had to Adapt to Any New Technologies Before AI

All links and images for this episode can be found on CISO Series . This week’s episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and Andy Ellis ( @csoandy ), partner, YL Ventures . Joining us is our sponsored guest Jadee Hanson , CISO, Vanta . In this episode: Embracing BYOAI The changing government contractor landscape Creating better security outcomes Automating supply chain security Thanks to our podcast sponsor, Vanta! Say goodbye to spreadsheets and screenshots. Van...

Nov 05, 202441 min

We Need to Hire a Unicorn But We Only Have Budget for a Donkey

All links and images for this episode can be found on CISO Series. This week’s episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and Andy Ellis ( @csoandy ), partner, YL Ventures . Joining us is Jason Shockey , CISO, Cenlar FSB . In this episode: Ground the SOC in communication Training and mentoring talent Nailing a first security hire A case for optimism Thanks to our podcast sponsor, Bitdefender! Enterprise-grade cybersecurity without complexity. Backed by extensive re...

Oct 29, 202435 min

Who Knows What Evil Lurks in the Heart of Low Code/No Code? (LIVE in Los Angeles)

All links and images for this episode can be found on CISO Series . This week’s episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and Sasha Pereira , CISO, WASH . Joining us is Cyrus Tibbs , CISO, PennyMac . This episode was recorded live at ISSA-LA. In this episode: Building the foundation for data minimization No-code needs to be no problem Seeking alignment in a SOC career MFA is not a cybersecurity panacea Thanks to our podcast sponsor, Nudge Security! Get a full inve...

Oct 22, 202442 min

Once the Panic Subsides You’ll Appreciate This Phishing Test (LIVE in Houston, TX)

All links and images for this episode can be found on CISO Series . This week’s episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and Jerich Beason, CISO, WM. Joining us is Teresa Tonthat, vp, associate CIO, Texas Children's Hospital. This episode was recorded live at HOU.SEC.CON . In this episode: Connecting with the business Keep the users in mind Ground security in reality Teach, don’t shame Thanks to our podcast sponsor, Vorlon Security! Vorlon helps organizations tak...

Oct 15, 202443 min

Does Burying Your Head in the Sand Count as a Security Posture? (LIVE in Boca Raton, FL)

All links and images for this episode can be found on CISO Series . This week’s episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and Eduardo Ortiz , vp, global head of cybersecurity, Techtronic Industries . Joining us is Adam Fletcher , CSO, Blackstone . In this episode: Keeping our eyes on new risks The hiring disconnect Mental health in incident response Moving on from CrowdStrike Thanks to our podcast sponsors, Fortra, Quadrant Information Security, and Savvy Security...

Oct 08, 202446 min

We’re Lowering the Requirement for Entry Level to Just 8 Years of Experience

All links and images for this episode can be found on CISO Series . This week’s episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and Andy Ellis ( @csoandy ), partner, YL Ventures . Joining us is Steve Person , CISO, Cambia Health . In this episode: The changing CISO landscape Rethinking the cybersecurity talent shortage Sharpening your CISO skills Do CISOs need to go back to school? Thanks to our podcast sponsor, Vanta! Whether you’re starting or scaling your security pr...

Oct 01, 202436 min

… And the Business Listened to the CISO and Everyone Lived Happily Ever After

All links and images for this episode can be found on CISO Series . This week’s episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and Mike Johnson , CISO, Rivian . Joining us is Stephen Harrison , CISO, MGM Resorts International . In this episode: Understanding the AI attack surface Low code, low security? Chief information storytelling officer Finding the right partners Thanks to our podcast sponsor, Vectra AI! Vectra AI is the only extended detection and response (XDR) ...

Sep 24, 202437 min

Our Guardrails Only Fail When You Try To Go Around Them (LIVE in Seattle)

All links and images for this episode can be found on CISO Series . This week’s episode was recorded in front of a live audience in Seattle as part of the National Cybersecurity Alliance’s event Convene. Recording is hosted by me, David Spark ( @dspark ), producer of CISO Series and Nicole Ford , SVP and CISO, Nordstrom . Joining us is guest, Varsha Agrawal , head of information security, Prosper Marketplace . In this episode: Who guards the AI guardrails? What should security awareness training...

Sep 17, 202445 min

Our Cybersecurity Journey Starts With a Single Overworked Staffer

All links and images for this episode can be found on CISO Series . This week’s episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and Andy Ellis ( @csoandy ), operating partner, YL Ventures . Joining us is Kush Sharma , Director Municipal Modernization & Partnerships, Municipal Information Systems Association, Ontario (MISA Ontario). In this episode: Your first security hire Moving beyond the basics with critical infrastructure Untangling the Gordian Knot of municipal cyb...

Sep 10, 202441 min

Red Flag? My Vendor Just Asked for My Mother’s Maiden Name

All links and images for this episode can be found on CISO Series . This week’s episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and Andy Ellis ( @csoandy ), operating partner, YL Ventures . Joining us is Bethany De Lude , CISO, the Carlyle Group . In this episode: CISOs as storytellers Grinding a CISO’s gears An evolving role Earning trust with vendors Thanks to our podcast sponsor, Scrut Automation! Scrut Automation allows compliance and risk teams of any size to estab...

Sep 03, 202438 min

Well, I Think My Relationship With the CIO Improved When I Took Their Job

All links and images for this episode can be found on CISO Series . This week’s episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and Andy Ellis ( @csoandy ), operating partner, YL Ventures . Joining us is Ty Sbano , CISO, Vercel . In this episode: Perception is the reality for insider threats Coaching rather than shaming Working to make DevOps redundant Fixing a strained relationship Thanks to our podcast sponsor, Backslash! Backslash Security is your modern AppSec solut...

Aug 27, 202437 min

I Said I Was Technically a CISO, Not a Technical CISO

All links and images for this episode can be found on CISO Series . This week’s episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and Andy Ellis ( @csoandy ), operating partner, YL Ventures . Joining us is Fredrick Lee (Flee), CISO, Reddit . In this episode: The case for the technical CISO Making Recall safe for business The aches and pains of cybersecurity hiring Leveling up municipal cybersecurity Thanks to our podcast sponsor, ThreatLocker! ThreatLocker ® is a global l...

Aug 20, 202442 min

Why Are Fortune 500 Companies Swiping Right on 3-Person Startups?

All links and images for this episode can be found on CISO Series . This week’s episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and Andy Ellis ( @csoandy ), operating partner, YL Ventures . Joining us is Justin Somaini , partner, YL Ventures . In this episode: The startup balancing act Giving back is its own reward When to pen test Getting ahead with generative AI policy Thanks to our podcast sponsor, Vanta! Whether you’re starting or scaling your security program, Vant...

Aug 13, 202439 min

We Make Threat Actors Read Our Resiliency Policy Before Attacking Us

All links and images for this episode can be found on CISO Series . This week’s episode is hosted by me, David Spark ( @dspark ), producer of CISO Series and Andy Ellis ( @csoandy ), operating partner, YL Ventures . Joining us is Patti Titus , CISO, Booking Holdings . In this episode: Defense vs. Resilience Communication is on par with mitigation Preparing like its post-quantum The challenges and opportunities of diversity Thanks to our podcast sponsor, Cyera! Cyera’s AI-powered data security pl...

Aug 06, 202438 min