The Shifting Privacy Left Podcast - podcast cover

The Shifting Privacy Left Podcast

Debra J. Farber (Shifting Privacy Left)shiftingprivacyleft.com

Shifting Privacy Left features lively discussions on the need for organizations to embed privacy by design into the UX/UI, architecture, engineering / DevOps and the overall product development processes BEFORE code or products are ever shipped. Each Tuesday, we publish a new episode that features interviews with privacy engineers, technologists, researchers, ethicists, innovators, market makers, and industry thought leaders. We dive deeply into this subject and unpack the exciting elements of emerging technologies and tech stacks that are driving privacy innovation; strategies and tactics that win trust; privacy pitfalls to avoid; privacy tech issues ripped from the headlines; and other juicy topics of interest. 

Last refreshed:
Follow this podcast in the Metacast mobile app to refresh it and see new episodes.
Download Metacast podcast app
Podcasts are better in Metacast mobile app
Don't just listen to podcasts. Learn from them with transcripts, summaries, and chapters for every episode. Skim, search, and bookmark insights. Learn more

Episodes

S2E24: "Cloud-Native Privacy Engineering via DevPrivOps" with Elias Grünewald (TU Berlin)

This week’s guest is Elias Grünewald , Privacy Engineering Research Associate at Technical University, Berlin , where he focuses on cloud-native privacy engineering, transparency, accountability, distributed systems, & privacy regulation. In this conversation, we discuss the challenge of designing privacy into modern cloud architectures; how shifting left into DevPrivOps can embed privacy within agile development methods; how to blend privacy engineering & cloud engineering; the Hawk Dev...

Aug 22, 20231 hr 4 minSeason 2Ep. 24

S2E23: "Navigating the Privacy Engineering Job Market" with George Ratcliffe (Stott & May)

This week, my guest is George Ratcliffe , Head of the Privacy GRC & Cryptography Executive Search Practice at recruitment firm, Stott & May . In this conversation, we discuss the current market climate & hiring trends for technical privacy roles; the need for higher technical capabilities across the industry; pay ranges within different technical privacy roles; and George’s tips and tools for applicants interested in, entering, and/or transitioning into the privacy industry. Topics C...

Aug 15, 202346 minSeason 2Ep. 23

S2E22: Why You Need an 'Outside-In' Approach to Privacy Risk Monitoring with Sanjay Saini (Privaini)

Get ready for an eye-opening conversation with Sanjay Saini , the founder and CEO of Privaini , a groundbreaking privacy tech company. Sanjay's journey is not only impressive due to his role in creating high-performance teams that have built entirely new product categories, but also for the invaluable lessons he learned from his grandfather about the pillars of successful companies - trust and human connections. In our discussion, Sanjay shares how Privaini is raising the privacy bar by construc...

Aug 01, 202337 minSeason 2Ep. 22

S2E21: Containing Big Tech, Federal Privacy Law, & Investing in Privacy Tech with Tom Kemp (Kemp Au Ventures)

This week’s guest is Tom Kemp : author; entrepreneur; former Co-Founder & CEO of Centrify (now called Delinia), a leading cybersecurity cloud provider; and a Silicon Valley-based Seed Investor and Policy Advisor. Tom led campaign marketing efforts in 2020 to pass California Proposition 24, the California Privacy Rights Act, (CPRA), and is currently co-authoring the California Delete Act bill. In this conversation, we discuss chapters within Tom’s new book, Containing Big Tech: How to Protect...

Jul 11, 202356 minSeason 2Ep. 21

S2E20: Location Privacy, Data Brokers & Privacy Datasets with Jeff Jockisch

This week’s guest is Jeff Jockisch , Partner at Avantis Privacy and co-host of the weekly LinkedIn Live event, Your Bytes = Your Rights , a town hall-style discussion around ownership, digital rights, and privacy. Jeff is currently a data privacy researcher at PrivacyPlan , where he focuses specifically on privacy data sets. In this conversation, we delve into current risks to location privacy; how precise location data really is; how humans can have more control over their data; and what organi...

Jul 05, 202343 minSeason 2Ep. 20

S2E19: Privacy Threat Modeling - Mitigating Privacy Threats in Software with Kim Wuyts (KU Leuven)

This week's guest is Kim Wuyts , Senior Postdoctoral Researcher at the DistriNet Research Group at the Department of Computer Science at KU Leuven . Kim is one of the leading minds behind the development and extension of LINDDUN, a privacy threat modeling framework that mitigates privacy threats in software systems. In this conversation, we discuss threat modeling based on the Threat Modeling Manifesto Kim co-authored; the benefits to using the LINDDUN privacy threat model framework; and how to ...

Jun 27, 202345 minSeason 2Ep. 19

S2E18: Making Digital Contact Cards Private, Shareable & Updatable with Brad Dominy (Neucards)

I am delighted to welcome my next guest, Brad Dominy . Brad is a MacOS and iOS developer and Founder & Inventor of Neucards , a privacy-preserving app that enables secure shareable and updatable digital contacts. In this conversation, we delve into why personally managing our digital contacts has been so difficult and Brad's novel approach to securely manage our contacts, architected with privacy by design and default. Contacts have always been the “junk drawer” of digital data, where people...

May 16, 202348 minSeason 2Ep. 18

S2E17 - Noise in the Machine: How to Assess, Design & Deploy 'Differential Privacy' with Damien Desfontaines (Tumult Labs)

In this week’s episode, I speak with Damien Desfontaines , also known by the pseudonym “Ted”, who is the Staff Scientist at Tumult Labs , a startup leading the way on differential privacy. In Damien’s career, he has led an Anonymization Consulting Team at Google and specializes in making it easy to safely anonymize data. Damien earned his PhD and wrote his thesis at ETH Zurich , as well as his Master's Degree in Mathematical Logic and Theoretical Computer Science. Tumult Labs ’ platform makes di...

May 09, 202346 minSeason 2Ep. 17

S2E16: Words with Impact; Communication Tips for Privacy Technologists with Melanie Ensign (Discernible)

I'm delighted to welcome guest, Melanie Ensign , Founder and CEO of Discernible , where she helps organizations adopt effective communication strategies to improve risk-related outcomes. She's managed security & privacy communications for some of the world's most notable brands, including Facebook, Uber & AT&T. Melanie counsels executives and technical teams to cut through internal politics, dysfunctional inertia & meaningless metrics. For the past 10 years, she's also led the pr...

May 02, 20231 hrSeason 2Ep. 16

S2E15: 'Watching the Watchers: Transparency & Control Research' with Umar Iqbal, PhD (University of Washington)

This week's guest is Umar Iqbal, PhD , a Postdoctoral Scholar at the Paul G. Allen School of Computer Science & Engineering at the University of Washington, working in the Security and Privacy Research Lab . Umar focuses his research on two themes: 1) bringing transparency into data collection and usage practices, and 2) enabling individuals to have control over their own data by identifying & restricting privacy-invasive data collection & usage practices of online services His long-...

Apr 18, 202340 minSeason 2Ep. 15

S2E14: Addressing Privacy with Static Analysis Techniques Like ‘Taint-Tracking’ & ‘Data Flow Analysis’ with Suchakra Sharma (Privado.ai)

This week, we welcome Suchakra Sharma , Chief Scientist at Privado.ai , where he builds code analysis tools for data privacy & security. Previously, he earned his PhD in Computer Engineering from Polytechnique Montreal, where he worked on eBPF Technology and hardware-assisted tracing techniques for OS Analysis. In this conversation, we delve into Suchakra’s background in shifting left for security and how he applies traditional, tested static analysis techniques — such as 'taint tracking' an...

Apr 11, 202335 minSeason 2Ep. 14

S2E13: Diving Deep into Fully Homomorphic Encryption (FHE) with Kurt R. Rohloff (Duality Technologies)

I am delighted to welcome this week’s guest, Kurt Rohloff. Kurt is the CTO and Co-Founder of Duality Technologies , a privacy tech company that enables organizations to leverage data across their ecosystem and generate joint insights for better business while preserving privacy. Kurt was also Co-Founder of the OpenFHE Homomorphic Encryption Software Library that enables practical and usable privacy and collaborative data analytics. He's successfully led teams that are developing, transitioning, ...

Apr 04, 202349 minSeason 2Ep. 13

S2E12: 'Building Powerful ML Models with Privacy & Ethics' with Katharine Jarmul (ThoughtWorks)

This week, I'm joined by Katharine Jarmul , Principal Data Scientist at Thoughtworks & author of the the forthcoming book, "Practical Data Privacy: Enhancing Privacy and Security in Data." Katharine began asking questions similar to those of today's ethical machine learning community as a university student working on her undergrad thesis during the war in Iraq. She focused that research on natural language processing and investigated the statistical differences between embedded & non-em...

Mar 28, 202355 minSeason 2Ep. 12

S2E11: Lessons Learned as a Privacy Engineering Manager with Menotti Minutillo (ex-Twitter & Uber)

This week, we gain insights into the profession of privacy engineering with guest Menotti Minutillo , a Sr. Privacy Engineering Manager with 15+ years of experience leading critical programs and product delivery at companies like Uber, Thrive Global & Twitter. He started his career in 2007 on Wall Street as a DevOps & Infrastructure Engineer; and now, Menotti is a sought-after technical privacy expert and Privacy Tech Advisor. In this conversation, we discuss privacy engineering approach...

Mar 21, 202353 minSeason 2Ep. 11

S2E10: Leveraging Synthetic Data and Privacy Guarantees with Lipika Ramaswamy (Gretel.ai)

This week, we welcome Lipika Ramaswamy , Senior Applied Scientist at Gretel AI , a privacy tech company that makes it simple to generate anonymized and safe synthetic data via APIs. Previously, Lipika worked as a Data Scientist at LeapYear Technologies, and was the Machine Learning Researcher at Harvard University's Privacy Tools Project . Lipika’s interest in both machine learning and privacy comes from her love of math and things that can be defined with equations. Her interest was piqued in g...

Mar 14, 202346 minSeason 2Ep. 10

S2E9: Personalized Noise, Decaying Photos, & Digital Forgetting with Apu Kapadia (Indiana University Bloomington)

In this episode, I'm delighted to welcome Apu Kapadia , Professor of Computer Science and Informatics at the School of Informatics and Computing, Indiana University. His research is focused on the privacy implications of ubiquitous cameras and online photo sharing. More recently, he has examined the cybersecurity and privacy challenges posed by AI-based smart voice assistants that can listen and converse with us. Prof. Kapadia has been excited by anonymized networks since childhood. He has memor...

Mar 07, 202347 minSeason 2Ep. 9

S2E8: Leveraging Federated Learning for Input Privacy with Victor Platt

Victor Platt is a Senior AI Security and Privacy Strategist who previously served as Head of Security and Privacy for privacy tech company, Integrate.ai. Victor was formerly a founding member of the Risk AI Team with Omnia AI, Deloitt’s artificial intelligence practice in Canada. He joins today to discuss privacy enhancing technologies (PETs) that are shaping industries around the world, with a focus on federated learning. --------- Thank you to our sponsor, Privado , the developer-friendly priv...

Feb 28, 202341 minSeason 2Ep. 8

S2E7: Bring Your Own Data, ChatGPT & Personal AIs with Markus Lampinen (Prifina)

In this conversation with Markus Lampinen , Co-founder and CEO at Prifina , a personal data platform, we discuss meaty topics like: Prifina’s approach to building privacy-respected apps for consumer wearable sensors; LLMs (Large Language Models) like Chat GPT; and why we should consider training our own personal AIs. Markus shares his entrepreneurial journey in the privacy world and how he is “the biggest data nerd you’ll find.” It started with tracking his own data, like his eating habits, acti...

Feb 21, 202359 minSeason 2Ep. 7

S2E6: 'Privacy Left Trust' with Gary LaFever (Anonos)

Today, I welcome Gary LaFever, co-CEO & GC at Anonos; WEF Global Innovator; and a solutions-oriented futurist with a computer science and legal background. Gary has over 35 years of technical, legal and policy experience that enables him to approach issues from multiple perspectives. I last saw Gary when we shared the stage at a RegTech conference in London six years ago, and it was a pleasure to speak with him again to discuss how the Schrems II decision coupled with the increasing prevalen...

Feb 14, 202359 minSeason 2Ep. 6

S2E5 - What's New in Privacy-by-Design with R. Jason Cronk (IOPD)

R. Jason Cronk is the Founder of the Institute of Operational Privacy Design (IOPD) and CEO of Enterprivacy Consulting Group , as well as the author of Strategic Privacy by Design . I recently caught up with Jason at the annual Privacy Law Salon event and had a conversation about the socio-technical challenges of privacy, different privacy-by-design frameworks that he’s worked on, and his thoughts on some hot topics in the web privacy space. --------- Thank you to our sponsor, Privado , the deve...

Feb 07, 202359 minSeason 2Ep. 5

S2E4: Training the Next Wave of Privacy Engineers with Nishant Bhajaria (Uber)

Nishant Bhajaria is the Director of Privacy Engineering, Architecture, & Analytics at Uber and Author of " Data Privacy: A Runbook for Engineers .” He’s also an Advisor to Data Protocol , Privado & Piiano . In our conversation, we discuss privacy engineering trends, educational materials that Nishant has developed, and his advice to privacy technologists, engineers, and hiring managers. --------- Thank you to our sponsor, Privado , the developer-friendly privacy platform --------- Nishan...

Jan 31, 202343 minSeason 2Ep. 4

S2E3: Fixing Consent & Transparency on the Web with Mark Lizar (Digital Transparency Lab)

To kick off Data Privacy Week 2023, I’m joined by Mark Lizar, CEO of the Digital Transparency Lab and Founder of 0PN: Open Privacy Network . Mark is also the Vice Chair of the IEEE Cybersecurity for Next-Generation Connectivity Systems' Human Control & Flow Sub-Committee and Editor & Lead Author of the ANCR Notice Record Specification and Framework at the Kantara Initiative. In our conversation, we unpack the current standards and specifications for transparency and data control in the d...

Jan 24, 202351 minSeason 2Ep. 3

S2E2: "Software Libraries, SBOMs & Wicked Privacy, Oh My!" with Michelle Dennedy (PrivacyCode)

Michelle Dennedy is Co-Founder & CEO of PrivacyCode, Inc ., Partner at Privatus Consulting , and the Co-Author of The Privacy Engineer's Manifesto . In our lively conversation, we discuss the digital cost of information, the privacy problems that her company solves for, and how the Privatus Wicked Privacy™ framework differs from other approaches. --------- Thank you to our sponsor, Privado , the developer-friendly privacy platform --------- As Michelle puts it, we’re living in an ‘innovation...

Jan 10, 202358 minSeason 2Ep. 2

S2E1: Driving Privacy Left: Vehicular Privacy with Andrea Amico (Privacy4Cars)

Of the almost 300 million cars that are in circulation in the U.S., the vast majority collect consumer’s personal information. Every time you connect your phone via USB or Bluetooth, your car is designed to download data and store it locally. The automotive industry is grossly behind when it comes to data privacy and safety, but that’s where Privacy4Cars comes in. Privacy4Cars is the first (and only) privacy tech company focused on identifying the challenges posed by vehicle data. They create so...

Jan 03, 202358 minSeason 2Ep. 1

S1E9: Funding Web3 Privacy & Recent Web3 Trust Fails with Jim Nasr

This week, I continue my conversation with Jim Nasr , CEO of Acoer about privacy and using distributed ledger technology (DLT). We discuss his work leading The HBAR Foundation's Privacy Market Development Fund and the trends he sees across grant applicants. We also chat about the collapse of FTX and the ripple effect it’s had on the crypto space. --------- Thank you to our sponsor, Privado , the developer-friendly privacy platform --------- Jim tells us about the types of innovations The HBAR Fo...

Dec 20, 202259 minSeason 1Ep. 9

S1E8: Leveraging Distributed Ledgers for Privacy Assurance with Jim Nasr

Today, I am joined by Jim Nasr , CEO of Acoer. I had the pleasure of collaborating with Jim on several projects during my 6-month stint as Privacy Strategist for Hedera . Jim joins me today to discuss the use of distributed ledger tech (DLT) to provide computational trust for real-time applications. Jim and I speak about the development of secure, privacy-preserving, and traceable technologies, which can gain adoption via open protocols and usable interfaces. --------- Thank you to our sponsor, ...

Dec 13, 202252 minSeason 1Ep. 8

S1E7: Privacy Engineers: The Next Generation with Lorrie Cranor (CMU)

In this episode, I’m joined by Lorrie Cranor , FORE Systems Professor, Computer Science and Engineering & Public Policy at Carnegie Mellon University (CMU); Director, CyLab Usable Privacy and Security Laboratory; and Co-Director, of CMU's MSIT-Privacy Engineering Masters Program . We discuss the different tracks within the Privacy Engineering Program at CMU, privacy engineering hiring trends, the need for industry education, and Lorrie’s research outside of the classroom. ---------- Thank yo...

Dec 06, 202245 minSeason 1Ep. 7

S1E6: The Explosion of Privacy Tech with Lourdes Turrecha (TROPT)

This week, I’m joined by Lourdes Turrecha , Founder & Chief Privacy Tech Strategist at The Rise of Privacy Tech (TROPT) . TROPT's mission is to fuel privacy innovation by bringing together privacy tech founders, investors, buyers, & expert-advisors to bridge the existing tech-capital-expertise gaps in the field. As a member of TROPT's Advisory Board, I’ve seen 1st-hand TROPT's innovative resources and events that they offer the industry. ---------- Thank you to our sponsor, Privado , the...

Nov 29, 202254 minSeason 1Ep. 6

S1E5: The Rise of Global Data Sharing Platforms with Stephen Wilson (Constellation Research)

I’m joined by Stephen Wilson , accomplished data protection innovator, researcher, analyst and advisor who leads Digital Safety and Privacy efforts at Constellation Research and is Managing Director of Lockstep Technologies . In our conversation, we discuss the importance of information value chains, the emergence of data sharing platforms, discuss why data should be like clean drinking water, and explore the problems with "data ownership." -------- Thank you to our sponsor, Privado , the develo...

Nov 22, 202259 minSeason 1Ep. 5

S1E4: The Hitchhiker's Guide to Privacy Engineering & Creative Privacy with Mert Can Boyar (Privacy Innovation Lab)

In this episode, I interview Mert Can Boyar , Director of Privacy Innovation Lab at Bilgi University and Founder of privacy tech company, Verilogy. Mert walks us through his creative approach to educating on core privacy engineering concepts, particularly through the lens of storytelling, visual art & music. He also shares his vision & mission behind his passion project, “The Hitchhiker’s Guide to Privacy Engineering." --------- Thank you to our sponsor, Privado , the developer-friendly ...

Nov 15, 202245 minSeason 1Ep. 4
Hosted on Buzzsprout
For the best experience, listen in Metacast app for iOS or Android