<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" href="https://media.rss.com/style.xsl"?>
<rss xmlns:podcast="https://podcastindex.org/namespace/1.0" xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:psc="http://podlove.org/simple-chapters" xmlns:atom="http://www.w3.org/2005/Atom" xml:lang="en" version="2.0">
  <channel>
    <title><![CDATA[The Business of Cybersecurity]]></title>
    <link>https://techtalksnetwork.com/</link>
    <atom:link href="https://media.rss.com/the-business-of-cybersecurity/feed.xml" rel="self" type="application/rss+xml"/>
    <atom:link rel="hub" href="https://pubsubhubbub.appspot.com/"/>
    <description><![CDATA[<p>The Business of Cybersecurity is a podcast from the Tech Talks Network that explores where security and business strategy converge.</p><p>Hosted by Neil C. Hughes, creator of the Tech Talks Daily Podcast, this series examines how today’s enterprises are managing cyber risk while still moving fast and innovating. Through insightful conversations with industry leaders, CISOs, product strategists, and security architects, the podcast brings clarity to the real-world decisions shaping cybersecurity in modern business.</p><p>Each episode dives into how companies are responding to regulatory pressure, increasing complexity in cloud environments, and rising expectations from boards and customers. From AI-driven defense and zero trust to skills gaps and risk quantification, we go beyond technical jargon to explore what actually works—and what doesn’t—on the road to building resilient organisations.</p><p>Whether you're leading a security team, sitting at the executive table, or simply want to understand the business impact of cybersecurity, this podcast offers honest, grounded perspectives designed to help you make better decisions in an environment that never stands still.</p><p>Search Tech Talks Network to discover more shows covering the voices at the heart of enterprise technology.</p>]]></description>
    <generator>RSS.com 2026.817.133114</generator>
    <lastBuildDate>Thu, 03 Sep 2026 23:45:19 GMT</lastBuildDate>
    <language>en</language>
    <copyright><![CDATA[Tech Talks Network 2025]]></copyright>
    <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/20250416_090401_77212af3b1c69e2c6249323910a30892.jpg"/>
    <podcast:guid>78146ba7-0903-5d73-9735-79000c4a1a12</podcast:guid>
    <image>
      <url>https://media.rss.com/the-business-of-cybersecurity/20250416_090401_77212af3b1c69e2c6249323910a30892.jpg</url>
      <title>The Business of Cybersecurity</title>
      <link>https://techtalksnetwork.com/</link>
    </image>
    <podcast:locked>yes</podcast:locked>
    <podcast:license>Tech Talks Network 2025</podcast:license>
    <itunes:author>Neil C. Hughes</itunes:author>
    <itunes:owner>
      <itunes:name>Neil C. Hughes</itunes:name>
    </itunes:owner>
    <itunes:explicit>false</itunes:explicit>
    <itunes:type>episodic</itunes:type>
    <itunes:category text="Technology"/>
    <itunes:category text="Business"/>
    <podcast:txt purpose="applepodcastsverify">81ccb040-1b59-11f0-ad84-11f0a7387296</podcast:txt>
    <podcast:medium>podcast</podcast:medium>
    <item>
      <title><![CDATA[From Transactions to Interactions in Banking With CSI]]></title>
      <itunes:title><![CDATA[From Transactions to Interactions in Banking With CSI]]></itunes:title>
      <description><![CDATA[<p>What if your bank could recognize that you needed help before you had to ask for it?</p><p>In this episode of Business Technology Perspectives, I speak with Michel Jacobs, Chief Strategy Officer at CSI, about how artificial intelligence and customer intelligence are changing the relationship between financial institutions and the people they serve.</p><p>Community banks and regional financial institutions have traditionally competed through personal relationships rather than scale. But digital banking, fintech competition, and changing consumer expectations are putting that advantage under pressure. Michel argues that the future of banking will increasingly be defined by interactions rather than transactions.</p><p>That means understanding why a customer is contacting the bank, what may be happening in their life, and which service could provide value at that moment. It also means preparing for interactions initiated through APIs, open banking services, and AI agents, rather than assuming every customer journey begins with a person opening a banking app.</p><p>Michel explains how CSI’s Customer Intelligence Suite combines transaction information, card activity, merchant category data, and digital behavior to identify signals and changing patterns. According to Michel, these signals can help a financial institution understand when a customer’s circumstances may have changed instead of relying on the demographic category assigned when the account was opened.</p><p>This creates opportunities for relevant financial support, but it also introduces serious questions about privacy, consent, accuracy, and customer trust. Inferring that somebody has changed jobs, bought a home, become a parent, or encountered financial difficulty can be useful when the response genuinely helps. The same capability can feel intrusive when it produces poorly timed sales offers or conclusions the customer cannot question.</p><p>We discuss how banks can balance personalization with regulatory responsibilities and why younger consumers are less likely to remain loyal when a provider offers little practical value. As Michel puts it, the era of offering everybody the same account and throwing in a free beach ball has probably run its course.</p><p>Customer retention is another major part of our conversation. Michel explains how declining digital activity, money leaving an account, late payments, or changes in income can reveal that a relationship is weakening. Used responsibly, this information could allow a bank to offer assistance before missed payments or financial strain become harder to address.</p><p>For community banks, the answer is unlikely to be copying every product offered by the largest global institutions. Michel believes they should decide where they can provide distinctive value, then use technology and data to support that position. CSI’s stated aim is to give smaller financial institutions access to customer analytics capabilities that would otherwise require considerable internal investment.</p><p>Can AI help banks become useful partners in their customers’ lives without crossing the line from personalization into intrusion? Listen to the conversation and share your thoughts with me.</p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/3084367</link>
      <enclosure url="https://content.rss.com/episodes/325985/3084367/the-business-of-cybersecurity/2026_08_22_19_41_45_9ba47b0c-3b46-4375-99e4-820b5cbf86fc.mp3" length="25733790" type="audio/mpeg"/>
      <guid isPermaLink="false">0caa61f2-340c-4b58-b1ac-f21e4a093321</guid>
      <itunes:duration>1608</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>46</itunes:episode>
      <podcast:episode>46</podcast:episode>
      <pubDate>Thu, 03 Sep 2026 23:42:00 GMT</pubDate>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20260822_193905_bbbdd2f5437a297292ff20f6406a9996.png"/>
    </item>
    <item>
      <title><![CDATA[Securing Every AI Agent Action With Delinea]]></title>
      <itunes:title><![CDATA[Securing Every AI Agent Action With Delinea]]></itunes:title>
      <description><![CDATA[<p>What happens after an AI agent presents valid credentials and enters your business systems?</p><p>In this episode of The Business of Cybersecurity, I speak with Spencer Young, Senior Vice President of International Markets at Delinea, about why authenticating an AI agent is only the beginning of the security challenge.</p><p>Spencer has spent 34 years in IT and around half that time in cybersecurity. His experience covers secure software development, vulnerability testing, application protection, data security, and identity security.</p><p>Our conversation begins with the changing economics of cybercrime. Spencer says attackers increasingly prefer stealing or compromising legitimate credentials because logging in can be cheaper, faster, and easier than forcing a route through network defenses. He estimates that over three quarters of attacks involve a compromised credential somewhere in the chain.</p><p>AI agents add speed and scale to identity risk. They can access applications, databases, financial systems, development tools, and infrastructure while performing dozens of actions during a single session.</p><p>The danger is not limited to an agent being denied access. An agent may be fully authenticated and possess valid permissions while taking an action the organization never intended.</p><p>Spencer offers the example of a finance agent created to support payment processes. Hidden or manipulated instructions could cause it to change payment profiles and redirect money while appearing to operate as an authorized identity.</p><p>This is why Delinea is focusing on runtime authorization. Rather than approving an agent once and allowing every subsequent action, the approach evaluates each proposed tool call, database query, or SSH command before it runs. The action can be allowed, blocked, or referred to a person for approval.</p><p>We also discuss how least privilege applies to autonomous systems. Spencer recommends providing credentials only at the moment an agent needs them, limiting access to the specific task, and revoking those privileges immediately afterward. The agent never needs to see or retain the credential.</p><p>The research figures Spencer shares reveal a concerning difference between confidence and control. He says 80% to 85% of respondents feel confident in their ability to discover nonhuman identities, while only 30% validate nonhuman identity use and AI activity in real time.</p><p>Delinea now works with over 9,000 organizations, including over 60% of the Fortune 100. Spencer says regulated industries frequently demonstrate greater identity security maturity because external requirements encourage continuous controls rather than reactive incident response.</p><p>However, technology cannot decide an organization’s risk appetite. People must define what the agent is expected to do, which actions require approval, where it must stop, and who is accountable when something goes wrong.</p><p>Could your organization detect a properly authenticated AI agent taking an inappropriate action before that action executes? Listen to the episode and share your thoughts with me.</p><p>Suggested URL</p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/3089113</link>
      <enclosure url="https://content.rss.com/episodes/325985/3089113/the-business-of-cybersecurity/2026_08_22_19_46_22_6680835c-4ee1-4595-91e8-6a68fb7254dc.mp3" length="24476986" type="audio/mpeg"/>
      <guid isPermaLink="false">d8da1ee6-ca72-40f5-8fd0-c48777d84cca</guid>
      <itunes:duration>1529</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>45</itunes:episode>
      <podcast:episode>45</podcast:episode>
      <pubDate>Sun, 30 Aug 2026 23:46:00 GMT</pubDate>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20260822_193725_470d9e034490e44521b51a2eef34634f.png"/>
    </item>
    <item>
      <title><![CDATA[Securing AI Agents Before They Become Attack Paths With ExtraHop]]></title>
      <itunes:title><![CDATA[Securing AI Agents Before They Become Attack Paths With ExtraHop]]></itunes:title>
      <description><![CDATA[<p>Can a security team respond quickly enough when an AI-driven attack moves from initial access to lateral movement and data theft before a human analyst has finished opening their dashboards?</p><p>In this episode of The Business of Cybersecurity, I speak with Heath Mullins, Chief Evangelist at ExtraHop and former Forrester analyst, about why AI security has become an operational issue for organizations today.</p><p>ExtraHop’s 2026 Global Threat Landscape Report states that 85 percent of organizations have experienced an AI-driven attack. These incidents include AI-enhanced external attacks, compromised AI identities, and breaches involving third-party AI providers. The report also found that 55 percent view AI agents, agentic infrastructure, and GenAI applications as their biggest attack-surface risk.</p><p>Heath explains that many attacker tactics remain familiar. The difference is speed. An analyst who once had hours or days to compare endpoint alerts, network logs, threat intelligence, and security events may now find that the attack has completed before the investigation begins.</p><p>We also discuss how AI models can be influenced without anybody directly altering their code. Attackers can publish false information that enters future training data or introduce misleading content into internal repositories and development environments. An agent may then infer a connection, assign a high confidence score, and act on inaccurate information.</p><p>The risks grow when AI agents receive administrator privileges. Heath describes an agent as an entity capable of taking action across the network. His analogy is difficult to forget: AI can resemble a dangerous toddler carrying the keys to the house, car, and gun safe. It may be extremely helpful, but broad permissions combined with loosely defined instructions create the conditions for serious damage.</p><p>Third-party AI adds further dependencies. Security leaders need to understand how suppliers use models and reasoning tools, whether customer data is segregated, what remote access exists, and how a compromised supplier could create a path into the network.</p><p>Heath also challenges the assumption that endpoint controls and delayed logs provide enough visibility. Machine-speed attacks may exploit unknown vulnerabilities, evade endpoint detection, and move laterally using identities that appear legitimate. Behavioral and live network signals can reveal activity that does not match a published indicator or known signature.</p><p>Buying another security product may address an identified gap, but Heath argues that CISOs also need awareness across physical, virtual, cloud, and container environments. Network and security teams must share information when an identity, agent, or workload begins behaving differently.</p><p>His immediate advice is direct. Treat every new tool as potentially dangerous. Test AI agents inside properly isolated environments. Connect every agent to a known identity, restrict its permissions, and define a narrow task. Finally, train people to use AI responsibly and retain human authority over consequential actions.</p><p>Heath is also the kind of guest I could talk with over a cold beer for hours about technology and its consequences. After we finished the formal interview, our conversation moved naturally into AI data centers, energy costs, water consumption, surveillance, and humanity’s habit of adopting technology even when we understand the price.</p><p>If AI agents can act with administrator privileges at machine speed, are your security controls watching what those agents are doing or merely recording what happened afterward? Listen to the episode and share your thoughts with me.</p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/3070861</link>
      <enclosure url="https://content.rss.com/episodes/325985/3070861/the-business-of-cybersecurity/2026_08_15_21_40_42_d12ed97a-280c-442b-b9e7-064dcf2e3b2d.mp3" length="25239940" type="audio/mpeg"/>
      <guid isPermaLink="false">3252fd43-74ce-4948-90c5-9109a53c56b8</guid>
      <itunes:duration>1577</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>44</itunes:episode>
      <podcast:episode>44</podcast:episode>
      <pubDate>Fri, 28 Aug 2026 00:40:00 GMT</pubDate>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20260815_214024_18c3b4a4bf46becc30806758838135e5.png"/>
    </item>
    <item>
      <title><![CDATA[Patching at Machine Speed Without Breaking the Business With Adaptiva]]></title>
      <itunes:title><![CDATA[Patching at Machine Speed Without Breaking the Business With Adaptiva]]></itunes:title>
      <description><![CDATA[<p>What happens when a patch designed to protect the business creates an outage of its own?</p><p>In this episode of The Business of Cybersecurity, I speak with David Sowder, Senior Solutions Architect and OneSite Patch product specialist at Adaptiva, about balancing rapid vulnerability remediation with operational control.</p><p>David brings 25 years of IT operations and engineering experience to the conversation. He remembers receiving large spreadsheets of vulnerabilities from security teams and being responsible for turning that information into deployed fixes. That experience gives him a practical view of the gap between identifying a vulnerability and safely resolving it across thousands of endpoints.</p><p>Adaptiva’s State of Patch Management report argues that speed cannot be the only measure of success. David illustrates the problem with a library cart full of books. Pushing it down the stairs may be the fastest way to reach the lower floor, but the resulting mess defeats the purpose.</p><p>The same principle applies to patch management. Urgent deployment can reduce the period when a vulnerability remains exposed, but an inadequately tested update may break applications, interrupt customer services, or affect revenue. David recommends representative pilot groups, defined testing periods, user feedback, staged deployment, monitoring, and the ability to stop a release before it reaches the full production environment.</p><p>We also discuss why greater endpoint visibility does not automatically reduce business risk. Dashboards and vulnerability reports provide knowledge, but IT teams must perform the work required to remediate the problem. David believes closer cooperation between InfoSec and IT can reduce the time between identification and action.</p><p>Automation introduces another difficult decision. David argues that layers of manual approval frequently add delay without changing which patches are eventually deployed. His proposed alternative is to begin the process automatically, notify the right people, test through pilot groups, and prevent wider deployment when the feedback indicates a problem.</p><p>Accountability remains shared. Security leaders set risk policies, InfoSec prioritizes exposure, IT manages deployment, and application owners understand the possible business consequences. These responsibilities need to be agreed before an urgent incident arrives.</p><p>Can autonomous patch management help companies respond at machine speed without turning a security fix into a business outage? Listen to the conversation and share your thoughts with me.</p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/3070843</link>
      <enclosure url="https://content.rss.com/episodes/325985/3070843/the-business-of-cybersecurity/2026_08_15_21_26_04_f2607018-59cc-4bd7-8cce-cb4985275230.mp3" length="23209912" type="audio/mpeg"/>
      <guid isPermaLink="false">97b2a233-1bde-4c28-bedb-fd9403f107bd</guid>
      <itunes:duration>1450</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>43</itunes:episode>
      <podcast:episode>43</podcast:episode>
      <pubDate>Sun, 23 Aug 2026 23:26:00 GMT</pubDate>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20260815_212549_9f3a41faca6ff11721cb77c1e2bc404e.png"/>
    </item>
    <item>
      <title><![CDATA[Rethinking Third Party Risk for Machine Speed Attacks With Magnitude]]></title>
      <itunes:title><![CDATA[Rethinking Third Party Risk for Machine Speed Attacks With Magnitude]]></itunes:title>
      <description><![CDATA[<p>Can a supplier assessment completed once a year protect an organization against risks changing at machine speed?</p><p>In this episode of The Business of Cybersecurity, I speak with Rami Habal, founder and CEO of Magnitude. We discuss why traditional third party risk management is struggling to keep pace with connected supply chains, autonomous attacks, AI adoption, and constantly changing vendor environments.</p><p>Rami explains that third party risk management developed largely as a compliance process. Companies relied on questionnaires, spreadsheets, point-in-time assessments, and annual reviews. Those methods provided documentation, but they offered limited visibility into what changed after the review or which fourth and fifth parties supported the original vendor.</p><p>The result can be a false sense of security. A supplier may change its infrastructure, ownership, software, data practices, or terms of service months before the customer performs another formal assessment. Attackers do not wait for the next compliance cycle.</p><p>Rami argues that AI has broken the traditional mathematics of third party risk. Security teams cannot manually monitor thousands of suppliers and every organization supporting them. Attackers can use advanced models to find weaknesses faster, while businesses are adding AI services and dependencies at speed.</p><p>Magnitude provides what Rami describes as an AI workforce for third party and supply chain risk management. Its agents support tasks including supplier intake, evidence gathering, security evaluation, risk analysis, onboarding, continuous assurance, and offboarding.</p><p>We discuss how this automation can address three business problems. The first is time compression, allowing security teams to process supplier reviews faster. The second is risk reduction through wider visibility, including fourth and fifth party dependencies. The third is business enablement, reducing delays that might otherwise encourage employees to use unapproved AI tools.</p><p>Rami explains how Magnitude maps supplier relationships as a connected graph. Security teams can see where dependencies overlap, identify concentration risk, and assess which parts of the business may be affected when a provider experiences an incident.</p><p>Continuous monitoring also includes unstructured information. A vendor may update a lengthy terms of service document and introduce permission to train AI systems using customer data. An employee receiving the notification may ignore it, while an automated agent can compare the document, identify the change, and explain its potential effect.</p><p>Rami uses a helpful analogy. Traditional vendor assessments resemble photographs, while continuous monitoring resembles a live video feed. Operational, financial, cybersecurity, and privacy risks continue changing after the original assessment.</p><p>Automation does not remove people from the process. Rami sees AI preparing evidence, correlating signals, and recommending action while humans handle exceptions, ask difficult questions, and judge the business consequences.</p><p>He closes by urging boards to treat third party risk as part of cyber resilience rather than leaving it within procurement or compliance. Does your organization know which suppliers create its greatest concentration risk and how far a breach could travel through the chain? Listen to the conversation and share your thoughts with me.</p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/3070829</link>
      <enclosure url="https://content.rss.com/episodes/325985/3070829/the-business-of-cybersecurity/2026_08_15_21_17_46_a753f1f4-09e1-451b-840d-656f4811f420.mp3" length="26620041" type="audio/mpeg"/>
      <guid isPermaLink="false">4cbce100-fc66-4ecc-9ebc-60c1c129bb6b</guid>
      <itunes:duration>1663</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>42</itunes:episode>
      <podcast:episode>42</podcast:episode>
      <pubDate>Fri, 21 Aug 2026 00:17:00 GMT</pubDate>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20260815_211720_303fd8275560e1a15fa1ce7c715894e7.png"/>
    </item>
    <item>
      <title><![CDATA[Giving AI Security Agents the Context They Need With Sola Security]]></title>
      <itunes:title><![CDATA[Giving AI Security Agents the Context They Need With Sola Security]]></itunes:title>
      <description><![CDATA[<p>What happens when an AI security agent receives access to eight enterprise systems but cannot understand the relationships between the data inside them?</p><p>In this episode of The Business of Cybersecurity, I speak with Guy Flechter, CEO and co-founder of Sola Security. Guy has worked in cybersecurity for 25 years, progressing from operational security roles to the CISO position before moving into entrepreneurship. He previously founded Cider Security, which was acquired by Palo Alto Networks for $300 million.</p><p>Our conversation focuses on why adding AI agents to separate security tools may increase speed without improving the quality of the decisions. Cloud, identity, SaaS, code, devices, and networks frequently operate through different consoles and data models. An agent working within one of those systems may answer confidently while missing a relationship that changes the meaning of the risk.</p><p>Sola Security’s research examined 50 tasks across eight enterprise platforms. According to Guy, providing structural and relational context improved answer correctness by approximately 34% across the tested models. Under full context, 78% of responses were considered fully correct, around 18% were incomplete, and fewer than 4% were classified as complete failures.</p><p>Those results show both the promise and present limitations of AI security agents. Connected context can improve performance significantly, but 78% accuracy does not support fully autonomous action in situations where an incorrect permission change or security response could have serious consequences. Guy believes human involvement will remain necessary until accuracy reaches a far higher level.</p><p>We also discuss how companies should vet and onboard AI agents. Guy recommends treating an agent like a new employee by defining its permissions, monitoring its actions, controlling what it can retain, and limiting its authority until trust has been earned.</p><p>The episode concludes with a discussion about independent testing. Guy argues that buyers need transparent benchmarks with visible tasks and repeatable methods, rather than vendor accuracy claims based on private evaluations.</p><p>Should an AI security agent be allowed to act autonomously if its reasoning cannot be independently tested? Listen to the conversation and share your thoughts with me.</p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/3043864</link>
      <enclosure url="https://content.rss.com/episodes/325985/3043864/the-business-of-cybersecurity/2026_08_15_21_08_10_3219e124-e2ab-4db6-b010-03c32734c28c.mp3" length="26335829" type="audio/mpeg"/>
      <guid isPermaLink="false">fce66fb3-9811-4016-a7c3-0dc35f4f3569</guid>
      <itunes:duration>1645</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>41</itunes:episode>
      <podcast:episode>41</podcast:episode>
      <pubDate>Mon, 17 Aug 2026 15:08:00 GMT</pubDate>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20260803_174039_4b71d4fd7ea4a17a700896d79e05c41f.png"/>
    </item>
    <item>
      <title><![CDATA[Finding Attacker Intent Before the Breach With KELA]]></title>
      <itunes:title><![CDATA[Finding Attacker Intent Before the Breach With KELA]]></itunes:title>
      <description><![CDATA[<p>What if criminals were discussing, selling, or preparing access to your company before anything appeared on your security dashboard?</p><p>In this episode of Business of Cybersecurity, I speak with Lewis Henderson, Director of Intelligence Communications at KELA, about the criminal economy operating beyond the corporate network. We discuss how cyber threat intelligence can reveal attacker intent earlier, giving security teams time to respond before stolen access becomes a full breach.</p><p>KELA’s State of Cybercrime 2026 research identified 2.86 billion stolen credentials in a single year. Lewis explains why that volume makes exposure a question of probability for many large organizations. He also describes how cybercrime as a service has lowered the technical barrier for attackers. Businesses may now face hundreds of lower-skilled criminals using purchased tools, credentials, and AI assistance instead of a small number of highly experienced groups.</p><p>One example begins with an employee downloading a video game containing infostealer malware. A single stolen credential reportedly provided access to 300,000 cash registers. KELA discovered the access being discussed in a criminal market, showing why monitoring attacker activity outside the network can provide warning that internal tools may miss.</p><p>We also examine alert fatigue, the limitations of point-in-time risk assessments, how criminals are experimenting with AI, and why boards should ask security leaders about threats forming across suppliers, cloud services, and the wider internet.</p><p>Are companies investing enough in understanding attacker intent, or are too many waiting for the threat to arrive at their front door? Listen to the conversation and share your thoughts with me.</p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/3070765</link>
      <enclosure url="https://content.rss.com/episodes/325985/3070765/the-business-of-cybersecurity/2026_08_15_19_58_59_e3edf989-16b5-4b5d-aacd-2fe22b6ece45.mp3" length="33930983" type="audio/mpeg"/>
      <guid isPermaLink="false">af52d0bf-512c-40f0-8d45-3a0984d28d5b</guid>
      <itunes:duration>2120</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>40</itunes:episode>
      <podcast:episode>40</podcast:episode>
      <pubDate>Sat, 15 Aug 2026 19:59:12 GMT</pubDate>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20260815_195833_795cfd4f9d09c1f502447fb906229aa9.png"/>
    </item>
    <item>
      <title><![CDATA[Closing the AI Vulnerability Remediation Gap With Cobalt]]></title>
      <itunes:title><![CDATA[Closing the AI Vulnerability Remediation Gap With Cobalt]]></itunes:title>
      <description><![CDATA[<p>In this episode of Business of Cybersecurity, I speak with Gunter Ollmann, CTO at Cobalt, about AI powered vulnerability discovery, the widening remediation gap, continuous pentesting, legacy application risk, and the future of cybersecurity careers.</p><p>Advanced security models such as Mythos can gather and apply techniques published across security research, Black Hat, DEF CON, and other industry sources. Gunter says this makes them particularly effective at reviewing large code bases and trying known attack methods against potential targets.</p><p>The result is faster vulnerability discovery, but finding additional weaknesses does not automatically make a company safer. Cobalt’s 2026 State of Pentesting Report found AI and LLM tests produced high risk findings at 2.7 times the rate of its wider data set. According to Cobalt, 32% of AI and LLM findings were rated High Risk, while only 38% were resolved.</p><p>Gunter sees two reasons for the gap. Companies are adding AI features to existing applications without fully understanding how the new components affect security. He compares this with the arrival of internet connectivity inside physical equipment, when engineering teams added network stacks without years of experience securing them.</p><p>Supplier dependency creates another problem. When a company adds a third party model or AI service to its product, it may lack the ability to correct a weakness directly. Remediation then depends on the supplier’s development priorities and release schedule.</p><p>Gunter recommends moving security testing closer to development. The traditional annual penetration test created for compliance is being replaced by a continuous cycle of monthly or quarterly human testing, daily or weekly automated scanning, and remediation connected with development pipelines.</p><p>Human participation remains important, but its role is changing. Automation, machine learning, and AI have already removed many Tier 1 positions from security operations centers. The same pattern is appearing in offensive security, where junior pentesters once learned by working alongside experienced practitioners.</p><p>Gunter does not see strong evidence that giving a junior analyst an AI tool automatically turns that person into a Tier 2 practitioner. Instead, some organizations are recruiting experienced professionals from IT, product management, or program management and using AI to help them acquire cybersecurity knowledge.</p><p>This creates a long term talent problem. Businesses continue competing for senior practitioners while removing the junior roles that historically produced them. The industry therefore needs new ways for inexperienced candidates to learn, practice, receive feedback, and assume responsibility safely.</p><p>We also discuss whether faster discovery could overwhelm senior practitioners. Gunter points out that many weaknesses being discovered by AI have existed for years. The technology is improving the industry’s ability to locate and exploit them. Defensive tools are also becoming faster at finding causes, creating fixes, and deploying updates.</p><p>The remaining problem is time. If an AI system can find a vulnerability and create an exploit almost simultaneously, companies may have hours rather than weeks to respond. When an immediate code fix is unavailable, detection and blocking technologies may need to provide temporary protection.</p><p>His final message is directed at CISOs. AI cannot be treated as a system that receives a problem and operates without supervision. Security leaders need to understand how the technology works, where humans belong in the process, and when human review becomes a delay that attackers can exploit.</p><p>Can security teams increase testing and remediation speed while still developing the practitioners they will need in the future? Listen to the episode and share your thoughts with me.</p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/3021953</link>
      <enclosure url="https://content.rss.com/episodes/325985/3021953/the-business-of-cybersecurity/2026_07_25_18_20_26_b039ce4d-f7d4-4611-98b1-a4e0f92d6229.mp3" length="26806691" type="audio/mpeg"/>
      <guid isPermaLink="false">62a329eb-ee0b-4138-8d68-ada17667f8e6</guid>
      <itunes:duration>1675</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>39</itunes:episode>
      <podcast:episode>39</podcast:episode>
      <pubDate>Sat, 25 Jul 2026 18:20:34 GMT</pubDate>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20260725_182010_4090ccb98d45a7b1c07bdf6062bf00f1.png"/>
    </item>
    <item>
      <title><![CDATA[Why Vanta Wants Boards to Measure Cyber Risk in Business Terms]]></title>
      <itunes:title><![CDATA[Why Vanta Wants Boards to Measure Cyber Risk in Business Terms]]></itunes:title>
      <description><![CDATA[<p>In this episode of The Business of Cybersecurity, I speak with Khush Kashyap, Senior Director of Governance, Risk, and Compliance at Vanta. Khush began her career as a software engineer before moving into cybersecurity, giving her a builder’s view of governance and operational resilience.</p><p>Our conversation begins with the UK Cyber Security and Resilience Bill and the demands it could place on managed service providers, data centers and designated suppliers. Proposed reporting windows could require an initial notification within 24 hours and a fuller incident report within 72 hours. Khush explains why organizations should map their supplier dependencies, define reporting responsibilities and rehearse those deadlines before a real incident tests them.</p><p>We then examine what Vanta calls security theater. Khush argues that teams have spent years gathering screenshots, maintaining documents and completing questionnaires because passing an audit became the accepted measure of success. The danger is that an organization can appear compliant while controls remain poorly designed, incorrectly scoped or ineffective in daily operations.</p><p>AI can compound that problem. It can generate policies, automate attestations and produce reassuring dashboards, but those outputs mean little when nobody validates the systems or checks whether the underlying controls are working.</p><p>Khush also explains why shadow AI creates a larger governance problem than shadow IT. Employees can introduce copilots, models, APIs and autonomous agents that access company data or take actions without the security team knowing they exist. Her advice begins with a live inventory covering cloud assets, SaaS applications, suppliers, machine identities, AI tools and agents.</p><p>We also discuss how CISOs can improve their conversations with boards. Instead of presenting compliance status as the main result, Khush recommends explaining business exposure, supplier dependencies, potential outage costs, reporting readiness and the speed at which failed controls can be detected.</p><p>Can organizations turn compliance into a continuous operating discipline that protects the business every day, rather than a scramble before the next audit? Please share your thoughts with me.</p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/3002010</link>
      <enclosure url="https://content.rss.com/episodes/325985/3002010/the-business-of-cybersecurity/2026_07_18_17_00_03_878d889a-742b-40ef-a2b0-0888a851abdb.mp3" length="29280591" type="audio/mpeg"/>
      <guid isPermaLink="false">c74c0a55-6837-498b-8c63-7bc48bc52b84</guid>
      <itunes:duration>1830</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>38</itunes:episode>
      <podcast:episode>38</podcast:episode>
      <pubDate>Sat, 18 Jul 2026 17:00:45 GMT</pubDate>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20260718_040746_d46c76d736bb36a6fb569119679621b7.png"/>
    </item>
    <item>
      <title><![CDATA[Why Secure Access Is Becoming Cybersecurity's Biggest Priority with Cyolo]]></title>
      <itunes:title><![CDATA[Why Secure Access Is Becoming Cybersecurity's Biggest Priority with Cyolo]]></itunes:title>
      <description><![CDATA[<p>What happens when artificial intelligence gives cybercriminals the ability to identify, map, and exploit critical infrastructure faster than defenders can respond? For the organizations responsible for power grids, manufacturing plants, water utilities, and data centers, that question is no longer hypothetical.</p><p>In this episode of The Business of Cybersecurity, I welcome Almog Apirion, CEO and Co-Founder of Cyolo, to discuss why the rules of defending operational technology are changing. Drawing on his experience leading the Israeli Navy's cyber unit and serving as a CISO before founding Cyolo, Almog shares why the rise of AI-powered attacks demands a renewed focus on the security fundamentals many organizations have overlooked.</p><p>One of the strongest messages from our conversation is that AI has dramatically lowered the barrier for attackers. Capabilities that once required highly skilled specialists are now becoming accessible to a much wider range of threat actors. Rather than spending weeks researching vulnerable systems, attackers can now automate reconnaissance, identify weak points, and prepare attacks at unprecedented speed. That leaves defenders with far less time to react.</p><p>Instead of relying solely on detection and response, Almog argues that businesses must build security into their environments from the beginning. We discuss why identity controls, multi-factor authentication, segmentation, and tightly governed access remain some of the most effective ways to reduce cyber risk, even as AI continues to reshape the threat landscape. Sometimes the simplest security controls still prevent the biggest attacks.</p><p>Our conversation also examines why traditional VPN-based remote access has become increasingly difficult to justify inside critical infrastructure. Almog explains why giving users access to an entire network creates unnecessary exposure when modern approaches can limit access to only the specific systems people need to perform their work. That principle sits at the heart of mature zero trust strategies, where every connection is verified and every action is tightly controlled.</p><p>Another area we explore is microsegmentation and why it is becoming an increasingly important part of protecting operational technology. Rather than assuming attacks can always be prevented, organizations should prepare for the possibility of compromise and focus on limiting how far an attacker can move through a network. Reducing the blast radius can often make the difference between a contained security incident and a major operational disruption.</p><p>We also discuss the practical challenges security leaders face every day. Replacing legacy remote access tools, introducing zero trust without disrupting production, supporting third-party vendors, and maintaining always-on access for mission-critical operations all require careful planning. Almog explains why cybersecurity cannot come at the expense of uptime, particularly in industries where every minute of disruption carries real-world consequences.</p><p>This conversation serves as a timely reminder that while AI is changing both sides of cybersecurity, the strongest defenses are still built on solid foundations. As attackers become faster and more automated, organizations must ensure that identity, access, segmentation, and resilience are designed into their environments from the start rather than added after an incident occurs.</p><p>If AI is making attacks faster, should security teams spend less time chasing alerts and more time reducing opportunities for attackers altogether? And are the foundations of your security strategy strong enough for the threats that already exist today? I'd love to hear your thoughts after listening.</p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/2964429</link>
      <enclosure url="https://content.rss.com/episodes/325985/2964429/the-business-of-cybersecurity/2026_07_05_13_04_32_6abce644-d2bf-4e2d-895b-19a00fba179f.mp3" length="31030361" type="audio/mpeg"/>
      <guid isPermaLink="false">20066326-1533-49ce-a3d7-cc17563b3b79</guid>
      <itunes:duration>1939</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>37</itunes:episode>
      <podcast:episode>37</podcast:episode>
      <pubDate>Sun, 05 Jul 2026 13:04:38 GMT</pubDate>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20260705_010716_0e9157bebee44aee3c6c880d742fa20b.png"/>
    </item>
    <item>
      <title><![CDATA[Mimecast CISO On Why AI Has Become A Cybersecurity Risk]]></title>
      <itunes:title><![CDATA[Mimecast CISO On Why AI Has Become A Cybersecurity Risk]]></itunes:title>
      <description><![CDATA[<p>What happens when the technology designed to make us more productive quietly becomes one of the biggest security risks inside the enterprise? In this episode of The Business of Cybersecurity, I sit down with Leslie Nielsen, CISO at Mimecast, to discuss the growing tension between AI adoption and cybersecurity, and why many organizations may be exposing sensitive information faster than they realize.</p><p>As businesses race to deploy generative AI, AI agents, and Model Context Protocol integrations, Leslie explains why AI models themselves are becoming valuable targets. When organizations pool large volumes of sensitive data into centralized AI systems, they create what he describes as a corporate brain, one that can quickly become attractive to attackers if the right controls are not in place.</p><p>We explore the rise of shadow AI, where employees use unsanctioned AI tools to meet deadlines and improve productivity, often without understanding the long-term consequences. Leslie shares why a simple upload of financial data, customer information, or proprietary documents into a public AI platform can create risks that traditional security teams struggle to contain once the information has entered a large language model.</p><p>The conversation also examines the changing nature of insider threats. From negligent behavior to deliberate misuse of credentials, attackers are increasingly targeting employees directly. Leslie discusses how AI is making it easier for threat actors to identify vulnerable individuals, while growing concerns around job displacement may create new pressures inside organizations.</p><p>We also discuss why visibility remains one of the biggest cybersecurity challenges facing modern enterprises. As AI changes data flows, communication channels, and user behavior, many organizations are discovering that traditional security controls were never designed for the speed and complexity of today's AI-powered environments. Leslie explains why cybersecurity leaders need to become AI champions rather than blockers, helping businesses adopt AI safely while maintaining visibility, governance, and trust.</p><p>Looking ahead, Leslie remains optimistic about using AI to strengthen cyber defenses. As attackers embrace AI, defenders are doing the same, creating a new chapter in cybersecurity where automation, intelligence, and human expertise will work together to protect organizations from emerging threats. How is your organization balancing AI innovation with security, and are you confident you can see where your data is really going? Share your thoughts with me.</p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/2871456</link>
      <enclosure url="https://content.rss.com/episodes/325985/2871456/the-business-of-cybersecurity/2026_05_30_15_33_37_4a02674c-0894-4192-b4c5-2196837fcb37.mp3" length="21868660" type="audio/mpeg"/>
      <guid isPermaLink="false">a3eea3fe-f3fe-4be6-b46f-e9ce891225cc</guid>
      <itunes:duration>1366</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>36</itunes:episode>
      <podcast:episode>36</podcast:episode>
      <pubDate>Tue, 02 Jun 2026 23:41:00 GMT</pubDate>
      <itunes:explicit>false</itunes:explicit>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20260530_030514_9bbb5f47befca45c51ba4211e15ec117.jpg"/>
      <podcast:transcript url="https://transcripts.rss.com/325985/2871456/transcript" type="text/vtt"/>
    </item>
    <item>
      <title><![CDATA[Orange Cyberdefense On The New FCA Cyber Reporting Rules]]></title>
      <itunes:title><![CDATA[Orange Cyberdefense On The New FCA Cyber Reporting Rules]]></itunes:title>
      <description><![CDATA[<p>What happens when your biggest cybersecurity risk isn't inside your organization at all, but somewhere deep within your supply chain? In this episode of The Business of Cybersecurity, I sit down with Ben Gibbins, Head of Financial Services and Insurance at Orange Cyberdefense UK, to discuss the Financial Conduct Authority's new cyber incident and third-party reporting requirements and what they mean for financial institutions facing a March 2027 compliance deadline.</p><p>The conversation begins with a striking statistic. More than 40% of cyber incidents reported to the FCA involved at least one third party, highlighting how interconnected digital ecosystems have created new points of vulnerability across financial services. Ben explains why attackers are increasingly targeting suppliers, service providers, and technology partners to gain access to larger organizations, and why regulators are becoming increasingly concerned about concentration risk across critical infrastructure.</p><p>We also tackle one of the biggest misconceptions surrounding the new FCA requirements. Many organizations assume that compliance with the EU's Digital Operational Resilience Act (DORA) automatically prepares them for the UK's reporting obligations. Ben explains why that assumption could leave firms exposed, outlining the differences between the two frameworks and the additional work many organizations still need to complete.</p><p>Our discussion explores operational resilience, supply chain visibility, incident reporting, and the practical realities of responding to cyber incidents while simultaneously meeting regulatory expectations. Ben shares insights on why organizations need a far better understanding of third-, fourth-, and even fifth-party dependencies, and why traditional approaches to supplier risk management are struggling to keep pace with today's interconnected business environment.</p><p>We also examine how collaboration between regulators, cybersecurity providers, threat intelligence specialists, and financial institutions could help strengthen collective defenses against increasingly sophisticated threats. From cyber extortion campaigns to supply chain attacks affecting hundreds of organizations simultaneously, the discussion highlights why resilience has become as important as prevention.</p><p>If your organization assumes compliance is already covered, this conversation may prompt a second look. Are businesses truly prepared for the next phase of cyber resilience reporting, or are many still underestimating the risks hidden within their supply chains? Share your thoughts with me.</p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/2871427</link>
      <enclosure url="https://content.rss.com/episodes/325985/2871427/the-business-of-cybersecurity/2026_05_30_15_08_29_4572effa-c054-4515-879e-9140897ecbc0.mp3" length="38518064" type="audio/mpeg"/>
      <guid isPermaLink="false">be7e7164-8ad8-4867-808a-49ee70ac497f</guid>
      <itunes:duration>2407</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>35</itunes:episode>
      <podcast:episode>35</podcast:episode>
      <pubDate>Sun, 31 May 2026 23:08:00 GMT</pubDate>
      <itunes:explicit>false</itunes:explicit>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20260530_030510_9a025fc8389ac8d5165db6dc63fc17b8.jpg"/>
      <podcast:transcript url="https://transcripts.rss.com/325985/2871427/transcript" type="text/vtt"/>
    </item>
    <item>
      <title><![CDATA[Deepfakes, AI Agents, and the Collapse of Traditional Identity Security]]></title>
      <itunes:title><![CDATA[Deepfakes, AI Agents, and the Collapse of Traditional Identity Security]]></itunes:title>
      <description><![CDATA[<p>How do you defend trust in a world where AI can imitate voices, generate highly convincing phishing attacks, and automate fraud at a scale humans can barely keep up with?</p><p>In this episode of Business of Cybersecurity, I sit down with Mary Ann Miller from Prove to discuss how AI is reshaping fraud, identity, and cybersecurity in ways many organizations are still struggling to understand fully. With decades of experience across banking, fintech, and fraud prevention, Mary Ann brings a unique perspective on the growing collision between customer experience, digital identity, and AI-driven attacks.</p><p>We explore how cybercriminals are using contextual AI-powered phishing campaigns that feel increasingly believable, why account takeover attacks are evolving into AI-assisted operations, and what happens when human intuition is no longer enough to identify deepfakes and manipulated content online. Mary Ann explains why the traditional idea of identity verification at login is beginning to break down, especially as one-time passwords and legacy authentication methods become easier to exploit.</p><p>The conversation also examines the rise of “continuous identity,” in which organizations must continually evaluate trust signals across the customer journey rather than relying on a single authentication event. Mary Ann shares why many organizations are investing heavily in AI innovation while simultaneously lacking the controls needed to defend themselves against AI-driven fraud. We also discuss how non-human identities, AI agents, and automated interactions are introducing new risks that many businesses are still unprepared for.</p><p>There is also a fascinating discussion around how AI has quietly powered fraud detection systems for decades, from early neural networks monitoring payment anomalies to today’s far more advanced machine learning systems. But as organizations race to introduce AI-powered customer experiences, Mary Ann warns that customer trust and adoption cannot be taken for granted. She shares the example of Walmart reportedly seeing a major drop in conversions during an AI-driven commerce experiment, highlighting how businesses are still learning where AI genuinely improves experiences and where it creates friction.</p><p>Mary Ann also offers practical advice for boards and security leaders on how to proactively test their defenses through fraud red-team exercises, why organizations need to recognize AI-generated attack patterns earlier, and how businesses can rethink identity in a world where both humans and machines participate in digital interactions.</p><p>If you care about the future of trust, authentication, fraud prevention, and cybersecurity in the AI era, this conversation offers a valuable look at the challenges already unfolding behind the scenes.</p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/2862208</link>
      <enclosure url="https://content.rss.com/episodes/325985/2862208/the-business-of-cybersecurity/2026_05_27_09_01_17_614168a9-3671-4053-9f09-1a9a3d623f41.mp3" length="25820882" type="audio/mpeg"/>
      <guid isPermaLink="false">aa7f0eea-ad14-4542-bf76-306ae7a397af</guid>
      <itunes:duration>1613</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>34</itunes:episode>
      <podcast:episode>34</podcast:episode>
      <pubDate>Wed, 27 May 2026 09:01:37 GMT</pubDate>
      <itunes:explicit>false</itunes:explicit>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20260527_090502_06c1c9054e6cf63ed46c31141f11f1a3.jpg"/>
      <podcast:transcript url="https://transcripts.rss.com/325985/2862208/transcript" type="text/vtt"/>
    </item>
    <item>
      <title><![CDATA[When Identity Becomes The Front Line Of Cybersecurity]]></title>
      <itunes:title><![CDATA[When Identity Becomes The Front Line Of Cybersecurity]]></itunes:title>
      <description><![CDATA[<p>What happens when the biggest cybersecurity weakness inside your organization isn’t your infrastructure, but the people using it every day?</p><p>In this episode of Business of Cybersecurity, I speak with David Cottingham, president of rf IDEAS, about why identity has become one of the most targeted attack surfaces in modern business. From phishing attacks powered by AI to the growing risks tied to compromised credentials, David explains why traditional password habits continue to expose organizations across healthcare, manufacturing, finance, and enterprise environments.</p><p>Our conversation looks at the uncomfortable reality that while businesses have spent years hardening infrastructure, attackers have shifted their attention toward human behavior. David shares why fully passwordless environments may still be out of reach for many organizations, but why the move toward stronger authentication methods, secure second factors, mobile credentials, passkeys, and biometric workflows is already reshaping how businesses think about trust and access.</p><p>We also discuss the growing tension between stronger security and employee productivity. From clinicians accessing patient records in hospitals to workers authenticating on factory floors, David explains why security tools only succeed when they fit naturally into real-world workflows. The episode also explores the convergence of physical and logical security, the dangers of outdated proximity cards, and how layered security strategies still matter in an age shaped by AI-driven threats.</p><p>Along the way, David shares what he’s hearing from organizations at industry events, why many leaders feel overwhelmed by identity decisions, and how companies can future-proof their authentication strategies without disrupting existing systems overnight.</p><p>If identity is now the new perimeter, how should organizations rethink trust before the next breach forces the conversation?</p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/2844057</link>
      <enclosure url="https://content.rss.com/episodes/325985/2844057/the-business-of-cybersecurity/2026_05_20_17_06_24_57c6ef28-918e-4db7-aa9c-4ac47008279a.mp3" length="21771275" type="audio/mpeg"/>
      <guid isPermaLink="false">73966920-a8e7-4b6a-be11-2a4af4ac1ed2</guid>
      <itunes:duration>1360</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>33</itunes:episode>
      <podcast:episode>33</podcast:episode>
      <pubDate>Wed, 20 May 2026 17:06:41 GMT</pubDate>
      <itunes:explicit>false</itunes:explicit>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20260520_050510_20d368d615679036ca251fe7d36fbf1e.jpg"/>
      <podcast:transcript url="https://transcripts.rss.com/325985/2844057/transcript" type="text/vtt"/>
    </item>
    <item>
      <title><![CDATA[Index Engines On Why Cyber Resilience Has Become A Boardroom Issue]]></title>
      <itunes:title><![CDATA[Index Engines On Why Cyber Resilience Has Become A Boardroom Issue]]></itunes:title>
      <description><![CDATA[<p>What happens when ransomware stops being treated as a cybersecurity problem and starts being viewed as a direct threat to business survival? In this episode of Business of Cybersecurity, I sat down with Jim McGann, CMO at Index Engines, to unpack why 2026 is shaping up to be one of the most dangerous years yet for organizations facing increasingly sophisticated cyberattacks.</p><p>Jim shared how ransomware gangs are evolving into highly organized operations powered by AI, automation, and ransomware-as-a-service models that dramatically lower the barrier to entry for attackers. From healthcare systems and transportation networks to retailers and city infrastructure, no sector appears off limits anymore. We explored why traditional disaster recovery strategies built for floods or hardware failures are no longer enough when attackers actively corrupt backups, manipulate databases, and target recovery systems themselves.</p><p>A major focus of our conversation centered on the idea of “Return on Risk” or ROR, a shift away from viewing cybersecurity purely through an ROI lens. Jim explained why boards and executives need to stop treating ransomware as an isolated IT issue and instead recognize it as a business continuity crisis capable of damaging reputation, customer trust, revenue, and regulatory standing in a matter of hours. He shared real-world stories of organizations discovering their backups had been deleted, deepfake scams impersonating executives, and attackers infiltrating recovery planning meetings themselves.</p><p>We also discussed how Index Engines’ CyberSense platform approaches cyber resilience differently by validating the integrity of recovery data and helping organizations identify clean copies of data with a 99.99% detection SLA for ransomware corruption. Jim explained why assuming compromise has become essential and why organizations must rehearse recovery strategies long before disaster strikes.</p><p>This conversation goes far beyond technical defenses. It examines trust, operational resilience, leadership accountability, and what happens when businesses fail to answer one simple but uncomfortable question: “How quickly can we recover if everything goes down tomorrow?”</p><p>Are organizations finally starting to accept that prevention alone is no longer enough, or are too many still hoping they will somehow avoid becoming the next headline?</p><p><strong>Useful Links</strong></p><ul><li>Connect with<a target="_blank" rel="noopener noreferrer nofollow" href="https://www.linkedin.com/in/mcgann/"> Jim McGann</a></li><li>Learn more about  <a target="_blank" rel="noopener noreferrer nofollow" href="https://indexengines.com/">Index Engines</a></li></ul><p>Please check the partners of the Tech Tech Talks Network</p><ul><li>Learn more about the <a target="_blank" rel="noopener" class="link" href="https://nordlayer.com/browser/">NordLayer Browser</a></li><li>Visit <a target="_blank" rel="noopener noreferrer nofollow" href="http://Denodo.com">Denodo.com</a></li></ul>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/2825897</link>
      <enclosure url="https://content.rss.com/episodes/325985/2825897/the-business-of-cybersecurity/2026_05_17_21_39_14_2fdd8b9d-6786-4e5c-a6e3-c0f9a41b0108.mp3" length="28873656" type="audio/mpeg"/>
      <guid isPermaLink="false">c9931a00-6519-4b4e-ba75-def5a9773633</guid>
      <itunes:duration>1804</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>32</itunes:episode>
      <podcast:episode>32</podcast:episode>
      <pubDate>Sun, 17 May 2026 21:39:23 GMT</pubDate>
      <itunes:explicit>false</itunes:explicit>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20260514_090515_c18633a3b27175b58c17329852ddff6b.jpg"/>
      <podcast:transcript url="https://transcripts.rss.com/325985/2825897/transcript" type="text/vtt"/>
    </item>
    <item>
      <title><![CDATA[The Internet Will Never Be This Secure Again, IEEE's Kevin Curran on AI and Cybersecurity]]></title>
      <itunes:title><![CDATA[The Internet Will Never Be This Secure Again, IEEE's Kevin Curran on AI and Cybersecurity]]></itunes:title>
      <description><![CDATA[<p>What happens when one of the world’s most experienced cybersecurity educators looks at the future of AI and quietly admits that the internet may never be this secure again? In this episode of Business of Cybersecurity, I sat down with IEEE member and cybersecurity professor Kevin Curran for a conversation that moved far beyond theory and into the real-world risks, opportunities, and uncomfortable truths shaping the next era of digital security.</p><p>Kevin brought a fascinating perspective to the discussion, shaped by nearly three decades teaching computer science and cybersecurity at Ulster University, alongside years working with industry leaders, legal cases, and global media. Together, we explored how cybersecurity evolved from an afterthought into one of the most in-demand career paths in the world. Kevin explained why the rise of online commerce, social media, cloud services, and cryptocurrency completely transformed the threat landscape, creating an environment where cybercrime became financially rewarding and increasingly sophisticated.</p><p>The conversation also tackled the growing cybersecurity talent gap and why AI is simultaneously creating new risks and new career opportunities. Kevin shared why he believes certifications still matter in cybersecurity, why platforms like TryHackMe are helping democratize access to cyber training, and why younger professionals have an advantage if they become truly AI-native. He also offered a candid look at how AI agents, autonomous workflows, and rapidly evolving models are reshaping both education and enterprise security practices in real time.</p><p>One of the most thought-provoking moments came when Kevin discussed the emotional side of working in technology during a period of relentless acceleration. From AI burnout to fears around agentic systems and nation-state threats, he spoke openly about the pressure many professionals are feeling as they try to keep pace with constant disruption. Rather than resisting change, Kevin argues that the future belongs to people with strong judgment, domain expertise, and the ability to work alongside AI systems responsibly.</p><p>We also discussed the balancing act facing business leaders today. Organizations want innovation and productivity gains from AI, but they also need governance, compliance, and protection against entirely new attack vectors like prompt injection, malicious plugins, and compromised AI agents. Kevin shared practical advice for anyone looking to future-proof their career in cybersecurity, particularly around understanding agent architectures, AI workflows, and how trust models are changing inside modern organizations.</p><p>If you work in cybersecurity, technology leadership, education, or simply want a clearer understanding of where AI and cyber risk are heading next, this episode offers a thoughtful and surprisingly human conversation about a rapidly changing industry. After listening, do you share Kevin’s concerns that today may eventually feel like the safest period of the internet we will ever experience?</p><p></p><p><strong>Please check the partners of the Tech Tech Talks Network</strong></p><ul><li>Learn more about the <a target="_blank" rel="noopener" class="link" href="https://nordlayer.com/browser/">NordLayer Browser</a></li><li>Visit <a target="_blank" rel="noopener noreferrer nofollow" href="http://Denodo.com">Denodo.com</a></li></ul>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/2812146</link>
      <enclosure url="https://content.rss.com/episodes/325985/2812146/the-business-of-cybersecurity/2026_05_11_06_49_01_0b0fb980-e987-4ba1-91a7-ada3b589f57b.mp3" length="33162753" type="audio/mpeg"/>
      <guid isPermaLink="false">eb1282e5-e2e8-47d2-81c4-de1fe783717f</guid>
      <itunes:duration>2072</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>31</itunes:episode>
      <podcast:episode>31</podcast:episode>
      <pubDate>Mon, 11 May 2026 06:50:47 GMT</pubDate>
      <itunes:explicit>false</itunes:explicit>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20260511_060546_d6675a497a1b6c8451261ffd8d3e87d2.jpg"/>
      <podcast:transcript url="https://transcripts.rss.com/325985/2812146/transcript" type="text/vtt"/>
    </item>
    <item>
      <title><![CDATA[Commvault On Cyber Recovery Why Disaster Plans Fall Short]]></title>
      <itunes:title><![CDATA[Commvault On Cyber Recovery Why Disaster Plans Fall Short]]></itunes:title>
      <description><![CDATA[<p>What happens when cyber resilience shifts from an IT concern to something that directly impacts revenue, operations, and even national stability?</p><p>In this episode of The Business of Cybersecurity, I sit down with Mark Molyneux, Field CTO for Northern Europe at Commvault, to break down the UK’s Cyber Security and Resilience Bill and what it really means for organizations trying to stay ahead of increasingly complex threats.</p><p>At first glance, legislation like this can feel distant, something for compliance teams to worry about later. But as Mark explains, the reality is far more immediate. This bill has been years in the making, shaped by a growing pattern of incidents that have moved beyond isolated IT problems and into events with real economic and societal impact. The conversation quickly shifts from what the bill says to why it matters right now, especially as cyber threats continue to evolve faster than regulation can keep up.</p><p>One of the most valuable takeaways from our discussion is the distinction between disaster recovery and true cyber recovery. Many organizations believe they are prepared because they have invested heavily in backup systems and failover environments. But as Mark highlights, those assumptions can break down quickly when core systems, identities, or trusted environments are compromised. In those moments, traditional recovery metrics no longer apply, and the focus turns to how quickly a business can return to a clean, operational state.</p><p>We also explore the risk of treating new regulation as a simple compliance exercise. There is always a temptation to do the minimum required and move on. However, recent real-world incidents have changed the tone of the conversation. Leadership teams are starting to recognize that resilience is about survival, not certification. That shift in mindset is where meaningful progress begins.</p><p>Mark shares practical guidance for organizations at different stages of their journey. Whether it is selecting a single cybersecurity framework, running realistic tabletop exercises with executive teams, or defining what a minimum viable company actually looks like during a crisis, the emphasis is on taking action now rather than waiting for legislation to dictate the pace.</p><p>There is also an honest discussion about the limits of regulation. Laws and frameworks will always lag behind the speed of technological change, especially as AI begins to reshape how attacks are launched and executed. That puts the responsibility back on organizations to go further than compliance and build resilience that reflects their real-world risk.</p><p>This episode is a reminder that cyber resilience is no longer about preventing every possible attack. It is about ensuring the business can continue when something goes wrong.</p><p>So as new legislation begins to take shape and expectations rise, are you confident your organization could recover quickly from a serious cyber event, or are you still relying on assumptions that have yet to be tested?</p><p></p><p><strong>Please check the partners of the Tech Tech Talks Network</strong></p><ul><li>Learn more about the <a target="_blank" rel="noopener" class="link" href="https://nordlayer.com/browser/">NordLayer Browser</a></li><li>Visit <a target="_blank" rel="noopener noreferrer nofollow" href="http://Denodo.com">Denodo.com</a></li></ul>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/2768066</link>
      <enclosure url="https://content.rss.com/episodes/325985/2768066/the-business-of-cybersecurity/2026_05_03_09_30_07_882c0467-3053-42a0-aebf-a05dd18f91ce.mp3" length="29733454" type="audio/mpeg"/>
      <guid isPermaLink="false">bb2a6ae6-830c-4522-aec8-d7f57740bd4e</guid>
      <itunes:duration>1858</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>30</itunes:episode>
      <podcast:episode>30</podcast:episode>
      <pubDate>Sun, 03 May 2026 09:30:22 GMT</pubDate>
      <itunes:explicit>false</itunes:explicit>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20260503_090552_890859ffea401ff1ae6135566e7bf33e.jpg"/>
      <podcast:transcript url="https://transcripts.rss.com/325985/2768066/transcript" type="text/vtt"/>
    </item>
    <item>
      <title><![CDATA[Why Digital Identity Is Broken And How Ditto Plans To Fix It]]></title>
      <itunes:title><![CDATA[Why Digital Identity Is Broken And How Ditto Plans To Fix It]]></itunes:title>
      <description><![CDATA[<p>What if the real problem with cybersecurity today is not the threats we see, but the way we prove who we are online?</p><p>In this episode of the Business of Cybersecurity podcast, I sat down with Gonzalo Alonso, CEO of Ditto, to explore why digital identity has quietly become one of the most important and misunderstood challenges in our digital economy. Drawing on his experience at Microsoft, Google, and now Ditto, Gonzalo shares a perspective that challenges long-held assumptions about how identity works, who owns it, and why the current model is starting to break under pressure from AI, regulation, and evolving user expectations.</p><p>We unpack what is changing across Europe with initiatives like the European Digital Identity Wallet and what that really means in practice for both consumers and businesses. Gonzalo explains how the shift toward user-controlled identity could reshape everything from onboarding and compliance to fraud prevention and cross-border trust. At the same time, he does not shy away from the complexity this creates for organizations that have historically treated identity data as an asset they control.</p><p>Our conversation also looks at the deeper technical shift from trusting systems to relying on cryptographic proof. Gonzalo brings this to life with real-world examples, including how identity could travel with you across borders, unlock access to services, and even influence financial opportunities. But alongside the opportunity, we also discuss the risks, from device security to identity recovery, and why getting the model right matters just as much as the technology behind it.</p><p>This episode offers a clear-eyed view of where digital identity is heading, why it matters now, and what leaders need to start thinking about before the rules change around them. So as identity moves from passwords and tokens to something far more personal and portable, are we ready to give control back to the individual, and what does that mean for the businesses built on the old model?</p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/2742922</link>
      <enclosure url="https://content.rss.com/episodes/325985/2742922/the-business-of-cybersecurity/2026_04_17_08_55_08_ce86416f-4f01-4161-b955-c70ac3dd74cf.mp3" length="33881068" type="audio/mpeg"/>
      <guid isPermaLink="false">b2ca1c82-0f0d-4dab-96a4-fa65ac8ff2a9</guid>
      <itunes:duration>2117</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>29</itunes:episode>
      <podcast:episode>29</podcast:episode>
      <pubDate>Fri, 17 Apr 2026 08:57:01 GMT</pubDate>
      <itunes:explicit>false</itunes:explicit>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20260417_080450_57a8fa44bc78c9bee9d764f611b4a84f.jpg"/>
      <podcast:transcript url="https://transcripts.rss.com/325985/2742922/transcript" type="text/vtt"/>
    </item>
    <item>
      <title><![CDATA[Why Non Human Identities Are The Next Cybersecurity Challenge With Torii CEO Uri Haramati]]></title>
      <itunes:title><![CDATA[Why Non Human Identities Are The Next Cybersecurity Challenge With Torii CEO Uri Haramati]]></itunes:title>
      <description><![CDATA[<p>How prepared are businesses for a world where AI agents are quietly becoming some of the most powerful users inside their systems?</p><p>In this episode of Business of Cybersecurity, I sit down with Uri Haramati, CEO and co-founder of Torii, to unpack a shift that is happening faster than most organizations can keep up with. AI is no longer sitting on the sidelines as a productivity tool. It is now deeply embedded across platforms like Slack, Google Workspace, and CRM systems, often operating with levels of access that rival or even exceed human users. As Uri explains, that changes the entire security conversation, especially when many of these agents are effectively invisible to traditional identity and governance models.</p><p>What stood out to me in this conversation is how quickly AI adoption has moved from experimentation to something far more operational. Uri shares insights from Torii’s 2026 SaaS Benchmark Report, which reveals that enterprises added nearly 700 new AI applications in just one year, with 61 percent of all apps operating outside of IT oversight. That creates a growing blind spot, where non-human identities, API tokens, and automated workflows are interacting with sensitive data without clear ownership or lifecycle management. It is a shift that feels familiar, echoing past waves like BYOD, but this time the scale and speed are on another level.</p><p>We also explore why this is not simply a story about risk. There is a clear business driver behind this surge in AI adoption. Organizations are under pressure to control costs, reduce manual work, and get more value from their software stack. AI is stepping into that role, but it introduces new challenges around usage-based pricing, unexpected spend, and governance models that were designed for a much slower era of IT. Uri makes the case that the real issue is not adopting AI too quickly, but failing to evolve governance at the same pace.</p><p>By the end of the conversation, one idea really stayed with me. Within the next couple of years, non-human identities could outnumber human ones inside most enterprises. That raises a simple but uncomfortable question. If every actor in your system needs to be treated as an identity, how many do you actually have, and how many are you truly managing?</p><p>If this is a topic you are grappling with, I highly recommend checking out Torii’s 2026 SaaS Benchmark Report and connecting with Uri to continue the conversation. But for now, I would love to hear your perspective. Are we building the right guardrails for this new era of AI-driven access, or are we already further behind than we think?</p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/2680499</link>
      <enclosure url="https://content.rss.com/episodes/325985/2680499/the-business-of-cybersecurity/2026_04_01_14_33_23_cc69e952-6261-4f51-8ee3-6c0db978234b.mp3" length="30473403" type="audio/mpeg"/>
      <guid isPermaLink="false">ab88b7ad-a352-4e9c-a332-7b7f9fb222bb</guid>
      <itunes:duration>1904</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>28</itunes:episode>
      <podcast:episode>28</podcast:episode>
      <pubDate>Wed, 01 Apr 2026 14:47:57 GMT</pubDate>
      <itunes:explicit>false</itunes:explicit>
      <podcast:txt purpose="ai-content">false</podcast:txt>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20260401_020419_63ae30438655e0433ead3bfb3e7c45eb.jpg"/>
    </item>
    <item>
      <title><![CDATA[AI Security Teams That Work 24/7 With Machine Speed]]></title>
      <itunes:title><![CDATA[AI Security Teams That Work 24/7 With Machine Speed]]></itunes:title>
      <description><![CDATA[<p>What happens when AI makes your security teams faster, but leaves the same people carrying all the risk?</p><p>In this episode of Business of Cybersecurity, I sit down with Shan Kulkarni, CEO of Nullify, to discuss a growing tension that many security leaders are already feeling. AI is helping developers ship code faster than ever. Still, for product security teams, that speed often creates even more alerts, more vulnerabilities to review, and more pressure on already stretched teams. </p><p>Shan argues that the real issue is not productivity alone. It is accountability. When copilots increase output while ownership remains with the same engineers, the workload does not disappear. It multiplies.</p><p>We explore why Shan believes the next phase of enterprise AI will be shaped by autonomous AI employees rather than assistant-style tools. </p><p>He explains how Nullify is designed to onboard, reason, and act like a human security engineer, with access to code bases, ticketing systems, cloud environments, and internal documentation. </p><p>From validating whether a vulnerability is truly exploitable to assigning fixes and following up with developers, Shan shows how AI workers could replace several disconnected security tools and the extensive manual coordination required.</p><p>Our conversation also gets into trust, which remains one of the biggest barriers to adoption in high-risk environments. Shan talks openly about the safeguards needed before companies will feel comfortable allowing AI to take action instead of simply making suggestions. </p><p>We discuss merge-ready patches, exploit confidence scores, the rising threat surface created by AI-generated code, and why authorization, authentication, and business logic flaws may become some of the biggest risks in modern software.</p><p>It is a timely conversation about what security teams actually need right now: fewer dashboards, fewer false positives, and better ways to manage growing responsibility in a world of machine-speed software delivery. If you are trying to understand where AI fits inside security operations, and whether autonomous systems can truly ease the burden rather than increase it, this episode should give you plenty to think about.</p><p> What do you think, are we heading toward a future of AI teammates in cybersecurity, and how much responsibility are you willing to hand over?</p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/2648773</link>
      <enclosure url="https://content.rss.com/episodes/325985/2648773/the-business-of-cybersecurity/2026_03_22_09_48_37_ece4624e-52cf-43ba-aa63-aa5f678ca024.mp3" length="28449226" type="audio/mpeg"/>
      <guid isPermaLink="false">74e87124-ce47-47da-a37a-431e72a747c0</guid>
      <itunes:duration>1778</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>27</itunes:episode>
      <podcast:episode>27</podcast:episode>
      <pubDate>Wed, 25 Mar 2026 00:48:00 GMT</pubDate>
      <itunes:explicit>false</itunes:explicit>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20260322_090334_9885bf353bce2e3e9013f34b35adbcb0.jpg"/>
      <podcast:transcript url="https://transcripts.rss.com/325985/2648773/transcript" type="text/vtt"/>
    </item>
    <item>
      <title><![CDATA[AI, Social Engineering, And The New Browser Attack Surface]]></title>
      <itunes:title><![CDATA[AI, Social Engineering, And The New Browser Attack Surface]]></itunes:title>
      <description><![CDATA[<p>What if the biggest blind spot in cybersecurity today is the place where most work actually happens, the browser?</p><p>In this episode of the Business of Cybersecurity podcast, I sat down with Adam Bateman, co-founder and CEO of Push Security, to explore a growing shift in how modern attacks are carried out and why traditional defenses are increasingly struggling to keep up. Adam brings a rare perspective to the conversation, having spent years in offensive security and red team operations simulating real-world attacks against major enterprises before founding Push Security.</p><p>One of the central ideas we unpacked is the claim that the browser has quietly become the new endpoint. As organizations move more work into cloud applications and SaaS platforms, the connection between users and company systems increasingly runs through the browser rather than traditional networks or local applications. The problem is that most security tools still focus on endpoints, networks, and email. That leaves what Adam describes as a “missing middle,” the space between a user logging in and the moment a breach is discovered.</p><p>We also discuss how phishing attacks have evolved beyond the inbox. Push has observed that as much as thirty-four percent of the malicious phishing attempts they detect now originate outside email, appearing instead through platforms like LinkedIn messages, Google search results, or other online channels. These platform-native attacks bypass traditional email gateways entirely, often targeting senior executives and employees with privileged access to business systems.</p><p>Adam also shares insights from a recent campaign his team uncovered called ConsentFix, an attack technique that combines browser manipulation with OAuth consent abuse. Instead of exploiting software vulnerabilities or deploying malware, these attacks manipulate trusted workflows inside cloud platforms and identity systems. The result is a compromise that can occur entirely within a browser session, often without triggering traditional security alerts.</p><p>Throughout our conversation we explore why these browser-native threats are growing, how attackers are using AI to scale social engineering campaigns, and why visibility into browser activity may become one of the most important capabilities for modern security teams. Adam also explains how Push Security approaches this challenge by bringing real-time detection and response directly into the browser environment where work and attacks increasingly collide.</p><p>If cybersecurity teams are still focused only on networks, endpoints, and email, they may be missing the layer where attackers now spend most of their time. As work moves deeper into cloud platforms and SaaS tools, could the browser become the next frontline in enterprise defense?</p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/2616853</link>
      <enclosure url="https://content.rss.com/episodes/325985/2616853/the-business-of-cybersecurity/2026_03_10_15_22_10_c48c0ec2-8b93-4ba6-8913-d15f1c5be2ae.mp3" length="29634977" type="audio/mpeg"/>
      <guid isPermaLink="false">8d68040e-993c-4a7b-8ef2-34e4e909afc4</guid>
      <itunes:duration>1852</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>26</itunes:episode>
      <podcast:episode>26</podcast:episode>
      <pubDate>Wed, 18 Mar 2026 22:12:00 GMT</pubDate>
      <itunes:explicit>false</itunes:explicit>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20260310_030308_5f9140a6dda80f251cd81cfe173ac9d7.jpg"/>
      <podcast:transcript url="https://transcripts.rss.com/325985/2616853/transcript" type="text/vtt"/>
    </item>
    <item>
      <title><![CDATA[How Booz Allen Hamilton Prepares Organizations For A Cyber Crisis]]></title>
      <itunes:title><![CDATA[How Booz Allen Hamilton Prepares Organizations For A Cyber Crisis]]></itunes:title>
      <description><![CDATA[<p>What really determines whether a company survives a cyberattack, the sophistication of the attacker or how well the organization prepared before the breach ever happened?</p><p>In this episode of Business of Cybersecurity, I sat down with Andrew Carr, Managing Director at Booz Allen Hamilton and leader of the firm’s Commercial Threat Detection and Response practice. Andrew has spent nearly two decades working in digital forensics, ransomware response, and incident investigations across both government and enterprise environments. During our conversation, he shared lessons drawn from hundreds of cyber incidents and explained why preparation, clarity, and coordination often matter far more than the tools organizations deploy.</p><p>One of the most striking themes in this conversation was the importance of the first seventy-two hours during a cyber crisis. Andrew explained that organizations that stabilize quickly tend to have one thing in common. They understand their environments with precision. They know where critical data lives, how systems connect, and which assets attackers are most likely to target. When that visibility is missing, those early hours are often spent trying to answer basic questions rather than containing the incident.</p><p>We also explored why traditional incident response exercises sometimes fail to prepare organizations for real attacks. Many companies still run tabletop exercises within individual departments, yet real cyber incidents rarely stay confined to a single team. Andrew described why effective rehearsals must involve the entire business, from technical responders to executive leadership, and why organizations need to define what he calls the “minimum viable company,” the core functions required to keep operations running during a major disruption.</p><p>Another key takeaway from our discussion was the role of leadership. Cybersecurity can no longer be treated as a purely technical function handled by the IT or security team. Andrew argues that cyber risk is a business risk, and executives across the organization must understand how decisions, priorities, and communication shape the response when a crisis unfolds.</p><p>We also discussed emerging risks around supply chains and AI systems, and how organizations are beginning to think more seriously about resilience rather than prevention alone. In a world where no company can block every attack, the ability to respond quickly and recover effectively is becoming the true measure of cybersecurity maturity.</p><p>If you lead a technology team, oversee risk, or simply want to understand how organizations prepare for high-stakes cyber incidents, this conversation offers a clear look inside the realities of modern incident response. When the next breach happens, will your organization be scrambling to understand its environment, or ready to act within those critical first seventy-two hours?</p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/2616841</link>
      <enclosure url="https://content.rss.com/episodes/325985/2616841/the-business-of-cybersecurity/2026_03_10_15_16_51_435fd7e3-ed80-4821-b2ee-6ce7b6d4dc27.mp3" length="24142993" type="audio/mpeg"/>
      <guid isPermaLink="false">b2e9d07b-08e9-4f7a-815e-e183efd10e59</guid>
      <itunes:duration>1508</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>25</itunes:episode>
      <podcast:episode>25</podcast:episode>
      <pubDate>Thu, 12 Mar 2026 13:16:40 GMT</pubDate>
      <itunes:explicit>false</itunes:explicit>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20260310_030349_a5519c348d3aba1e8465105a1344f7a1.jpg"/>
      <podcast:transcript url="https://transcripts.rss.com/325985/2616841/transcript" type="text/vtt"/>
    </item>
    <item>
      <title><![CDATA[Why Object First Says Most Immutable Backups Are Not Truly Immutable]]></title>
      <itunes:title><![CDATA[Why Object First Says Most Immutable Backups Are Not Truly Immutable]]></itunes:title>
      <description><![CDATA[<p>What happens when the backup you trusted turns out to be anything but immutable?</p><p>In this episode of Business of Cybersecurity, I sit down with Anthony Cusimano from Object First to unpack one of the most misunderstood words in cyber resilience right now: immutability. It is a term that appears in countless vendor pitches and product pages, but as Anthony explains, the reality behind those claims can vary wildly. In a world where attackers are actively targeting backups as part of modern ransomware campaigns, that gap between promise and reality can have serious consequences.</p><p>Anthony helps me separate marketing language from real architectural protection. We explore why a simple checkbox or software setting is not enough to make backup data truly safe, and why organizations need to think much more carefully about how backup storage is designed, isolated, and protected. He also explains why backup strategy can no longer sit quietly in the background as a routine IT function. It now sits right at the heart of cyber resilience.</p><p>One of the biggest takeaways from this conversation is how ransomware operators have changed their tactics. Backups used to be the fallback plan, the thing that gave businesses a path back after an attack. Now, attackers know that too, which is why backup systems themselves have become a priority target. Anthony explains how this shift has changed the role of backup admins, raised the stakes for recovery planning, and forced security leaders to rethink what “safe” really means.</p><p>We also get into the role of Zero Trust in backup storage, the risks of false confidence when immutability is poorly implemented, and the practical questions CIOs, CISOs, and infrastructure teams should be asking vendors before they trust them with business-critical recovery data. This is where the conversation gets especially useful, because Anthony does not stay at the theory level. He brings it back to what teams should be checking, testing, and validating right now.</p><p>Another part of the discussion looks at how AI is changing the threat picture. As attacks become more automated and more adaptive, organizations will need recovery strategies that are built for pressure, not just written for compliance. Anthony shares his perspective on why long-standing best practices still matter, and why businesses should be far more intentional about where their most important data lives and how quickly it can be recovered.</p><p>I also appreciated Anthony’s strong defense of backup professionals, the people who often carry enormous responsibility without much recognition until something goes wrong. This episode is a reminder that resilience is never just about technology. It is also about the people trusted to keep the business standing when everything else is under pressure.</p><p>So if your organization believes its backups are immutable, the real question is simple. Are they truly protected at the architecture level, or are you trusting a label that might not hold up when it matters most?</p><p></p><ul><li><a target="_blank" rel="noopener noreferrer nofollow" href="https://linkedin.com/in/anthonycusimano89">Connect with Anthony Cusimano</a></li><li><a target="_blank" rel="noopener noreferrer nofollow" href="https://objectfirst.com/">Learn more about Object First</a></li><li><a target="_blank" rel="noopener noreferrer nofollow" href="https://objectfirst.com/pdf/white_paper/EN_Absolute-Immutability.pdf">Absolute Immutability: The Ultimate Ransomware Defense</a></li><li><a target="_blank" rel="noopener noreferrer nofollow" href="https://www.youtube.com/channel/UCIi-WYFWGZlseKlrrCTtYuA">YouTube</a></li></ul>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/2608622</link>
      <enclosure url="https://content.rss.com/episodes/325985/2608622/the-business-of-cybersecurity/2026_03_07_16_58_12_80be99cc-4556-4890-8340-7d86b834c76f.mp3" length="34721540" type="audio/mpeg"/>
      <guid isPermaLink="false">fca2c06c-2042-441c-93b3-e26b7b7d5820</guid>
      <itunes:duration>2170</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>24</itunes:episode>
      <podcast:episode>24</podcast:episode>
      <pubDate>Mon, 09 Mar 2026 02:00:00 GMT</pubDate>
      <itunes:explicit>false</itunes:explicit>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20260307_040310_7e8ada3fbc078ce9c2c4ae4915626f61.jpg"/>
    </item>
    <item>
      <title><![CDATA[Goldilock Secure On Cutting The Blast Radius In Overconnected Networks]]></title>
      <itunes:title><![CDATA[Goldilock Secure On Cutting The Blast Radius In Overconnected Networks]]></itunes:title>
      <description><![CDATA[<p>For two decades, the mantra in technology has been simple: connect everything. More APIs, more integrations, more remote access, more cloud. But what happens when that hyper-connectivity becomes the very thing that amplifies risk?</p><p>In this episode of Business of Cybersecurity, I sit down with Steven Brodie, Chief Revenue Officer at Goldilock Secure, a NATO-backed cybersecurity firm challenging the industry’s long-standing assumptions. Steven argues that in 2026 we are finally confronting the downside of overconnectivity, where sprawling networks and forgotten links create enormous blast radiuses when breaches occur. Instead of defaulting to constant connection, he introduces the idea of “right-sized connectivity,” where systems are connected only when required, no more and no less.</p><p>We explore why so many modern breaches spread so quickly, and how architectural decisions made in the name of speed and convenience have left organizations exposed. Steven explains how most attacks are software-driven, moving laterally at machine speed, often faster than teams can patch. In that arms race, patching alone is no longer enough. Goldilock Secure approaches the problem differently by adding a physical layer of segmentation that can remotely connect or disconnect assets without sending commands over the public internet. The goal is simple: buy time, contain incidents, and prevent a localized breach from becoming a company-wide crisis.</p><p>We also discuss the tension between security and operational continuity. How do you introduce deliberate firebreaks into a network without slowing down the business? Steven is clear that this is not about returning to air-gapped islands everywhere. It is about controlled connection and controlled disconnection. Boards, he argues, should rethink cybersecurity metrics away from checklist compliance and toward containment, resilience, and clear audit trails that demonstrate who accessed what, and when.</p><p>As AI accelerates attack automation and zero-day vulnerabilities shrink response windows, the question facing every CISO and board is whether their architecture has grown beyond what is defensible. Are you relying purely on logical controls that can be subverted in software, or are you prepared to add physical boundaries that act as real firebreaks?</p><p>I would love to hear your take. Has hyper-connectivity become a strategic liability in your organization, or is it still viewed as a competitive advantage?</p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/2589543</link>
      <enclosure url="https://content.rss.com/episodes/325985/2589543/the-business-of-cybersecurity/2026_03_02_16_16_10_add5a975-5ca9-44b2-b8d2-259f9457bfa6.mp3" length="25281976" type="audio/mpeg"/>
      <guid isPermaLink="false">a3f6ab77-16be-4add-a077-7829778c7024</guid>
      <itunes:duration>1580</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>23</itunes:episode>
      <podcast:episode>23</podcast:episode>
      <pubDate>Tue, 03 Mar 2026 09:16:00 GMT</pubDate>
      <itunes:explicit>false</itunes:explicit>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20260228_050221_57e49e8d4d192e7d177970d6b4d5941b.jpg"/>
    </item>
    <item>
      <title><![CDATA[How Kiteworks Is Preparing Enterprises For AI-Driven Risk In 2026]]></title>
      <itunes:title><![CDATA[How Kiteworks Is Preparing Enterprises For AI-Driven Risk In 2026]]></itunes:title>
      <description><![CDATA[<p>How prepared are enterprises and government agencies for the next wave of AI-driven risk?</p><p>I sit down with Tim Freestone, Chief Strategy Officer at Kiteworks, to unpack the findings from the Kiteworks 2026 Data Security &amp; Compliance Risk Forecast and what it reveals about the true state of data resilience today. As AI accelerates business processes and agentic systems gain more autonomy, Tim argues that the real challenge is no longer about adding another security tool. It is about gaining repeatable control over how sensitive data moves across organizations, partners, and automated systems.</p><p>We explore why third-party involvement in breaches has surged to nearly one in three incidents and what that means for board-level accountability. Tim explains how traditional third-party risk assessments struggle to scale in an AI-enabled world, and why data-layer controls and modern digital rights management approaches are being revisited in a more practical form. We also examine the shift from ransomware headlines to the rising dominance of social engineering, and why micro-learning and human error prevention may offer a more realistic path forward than annual compliance training.</p><p>Our conversation also tackles the regulatory pressure building across regions, from evolving GDPR requirements to the EU AI Act. Tim makes the case for unified, data-centric compliance models that provide file-level visibility and auditability, rather than fragmented controls across siloed systems. We discuss the growing relevance of data security posture management, the shrinking timeline for quantum risk, and the “harvest now, decrypt later” threat that leaders can no longer afford to dismiss as a distant concern.</p><p>Finally, we turn to identity as the new perimeter in a world where AI agents act with increasing autonomy. Tim shares why identity alone is insufficient and why combining identity with data location defines the modern security boundary. For leaders facing limited budgets and skill constraints, his advice is pragmatic: start with visibility, align with established frameworks like NIST, and use AI-enabled copilots to accelerate cyber maturity rather than fall behind.</p><p>If you are responsible for security, compliance, or risk outcomes, this episode offers a clear-eyed look at what is changing, accelerating, and must be addressed now. Are you truly in control of every send, share, receive, and save of sensitive data across your ecosystem?</p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/2589527</link>
      <enclosure url="https://content.rss.com/episodes/325985/2589527/the-business-of-cybersecurity/2026_02_28_17_41_44_97444810-325e-45db-be46-ce8248dc2346.mp3" length="25959443" type="audio/mpeg"/>
      <guid isPermaLink="false">a8e58f88-83a6-4107-8db6-f93c9ce8ac42</guid>
      <itunes:duration>1622</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>22</itunes:episode>
      <podcast:episode>22</podcast:episode>
      <pubDate>Sat, 28 Feb 2026 17:41:55 GMT</pubDate>
      <itunes:explicit>false</itunes:explicit>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20260228_050241_55080c20efb33a3c0a0b9da80f7b37fe.jpg"/>
    </item>
    <item>
      <title><![CDATA[Building Trust Through Cybersecurity in a Zero Trust World]]></title>
      <itunes:title><![CDATA[Building Trust Through Cybersecurity in a Zero Trust World]]></itunes:title>
      <description><![CDATA[<p>How can cybersecurity stop being treated as a tax on growth and start becoming something founders actually lean on to win trust, customers, and long-term advantage?</p><p>In this episode of Business of Cybersecurity, I reconnect with <strong>Taylor Hersom</strong>, Founder and CEO of <strong>Eden Data</strong>, for a wide-ranging and honest conversation about what security really looks like in an AI-first world. Taylor has built his career inside compliance, risk, and cybersecurity, from Deloitte to launching Eden Data during COVID, and now helping venture-backed startups and global enterprises rethink how security fits into the business itself. Rather than framing cybersecurity as fear-driven insurance, he explains why it works best when treated as a signal of maturity, discipline, and credibility.</p><p>We spend time unpacking how generative AI and agentic systems are changing the risk landscape, often faster than regulation and enforcement can keep up. Taylor shares why data, not models, remains the real asset worth protecting, and why so many organizations are still operating in a kind of AI Wild West. Without slipping into alarmism, he explains where companies are most exposed today, from training data to shadow AI tools quietly entering workflows, and why governance, transparency, and basic controls matter more than flashy security spending.</p><p>What really stands out is Taylor’s practical take on turning compliance into a growth lever. We talk about SOC 2 and ISO standards, not as box-checking exercises, but as tools that can actually improve operations, customer confidence, and sales conversations when done properly. He explains why oversharing security posture can be a competitive advantage, how founders should think differently than large enterprises, and why bad audits and rubber-stamp certifications may create more risk than they remove.</p><p>We also explore the human side of cybersecurity, including why most breaches still come down to everyday mistakes, not elite hackers, and how automation, monitoring, and better system design can reduce risk without burning out teams. Taylor shares a grounded view of how AI could finally help solve staffing shortages and alert fatigue inside security teams, and why emerging AI security standards may soon become the next credibility badge companies want to display.</p><p>We close on a lighter note with book and music recommendations, but the core message is clear. Cybersecurity no longer lives in a silo, and the organizations that understand this are already using trust as a business advantage rather than a defensive posture. As AI becomes woven into every workflow, the companies that communicate clearly about how they protect data and customers may be the ones that stand out most.</p><p>So as security, compliance, and AI continue to collide over the next few years, will your organization treat cybersecurity as a burden to manage, or as a story worth telling?</p><p><strong>Useful Links</strong></p><ul><li><a target="_blank" rel="noopener noreferrer nofollow" href="https://linkedin.com/in/taylorhersom">Connect with Taylor Hersom on LinkedIn</a></li><li><a target="_blank" rel="noopener noreferrer nofollow" href="https://www.edendata.com/">Learn more about Eden Data</a></li><li><a target="_blank" rel="noopener noreferrer nofollow" href="https://www.linkedin.com/company/eden-data/">Follow on LinkedIn</a></li></ul><p></p><p>Thanks to our sponsors, <a target="_blank" rel="noopener" class="link" href="https://alcor.com/podcast/?utm_source=podcast&amp;utm_medium=audio&amp;utm_campaign=tech_talks_daily&amp;utm_content=tech_talks_network">Alcor,</a> for supporting the show.</p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/2469040</link>
      <enclosure url="https://content.rss.com/episodes/325985/2469040/the-business-of-cybersecurity/2026_01_19_13_21_59_87e4f084-da89-4de0-929a-d9495d9c258b.mp3" length="32294913" type="audio/mpeg"/>
      <guid isPermaLink="false">44bd90fc-d514-4659-b8a3-3c02b0446e98</guid>
      <itunes:duration>2018</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>21</itunes:episode>
      <podcast:episode>21</podcast:episode>
      <pubDate>Mon, 19 Jan 2026 13:22:04 GMT</pubDate>
      <itunes:explicit>false</itunes:explicit>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20260119_010129_aab90b2d4e766e4d8c952126db958200.jpg"/>
    </item>
    <item>
      <title><![CDATA[Avanade on Preparing Organizations for a World of Stronger Cybersecurity Expectations]]></title>
      <itunes:title><![CDATA[Avanade on Preparing Organizations for a World of Stronger Cybersecurity Expectations]]></itunes:title>
      <description><![CDATA[<p>What does the UK’s new Cyber Security and Resilience Bill actually mean for mid-sized businesses that sit quietly inside complex supply chains, often assuming the rules are aimed at someone else?</p><p>In this episode of Business of Cybersecurity, I sit down with Jason Revill, Global Security Practice Technology Lead at Avanade, to unpack why this legislation represents a genuine shift in how cyber risk will be judged, enforced, and felt across the UK mid-market. While much of the public debate has focused on critical national infrastructure, Jason explains why managed service providers and mid-sized firms are now firmly in scope, particularly those that underpin larger enterprises. Mandatory incident reporting, tougher expectations, and turnover-based penalties are changing cyber resilience from a technical concern into a board-level business issue.</p><p>We explore why outsourcing cybersecurity no longer reduces accountability, even though nearly half of UK mid-market firms rely on third parties to manage their defenses. Jason shares real-world insight into how supply chain vulnerabilities are driving a growing share of breaches, why identity and access management has become a weak link, and how attackers increasingly exploit trust between organizations rather than technical flaws alone. The conversation also looks at the rising threat of legal action following breaches, with group claims against well-known UK brands signaling a wider shift in public and regulatory expectations.</p><p>Crucially, this is not a fear-driven discussion. Jason offers a grounded perspective on how mid-sized organizations can move beyond checkbox compliance and embed security into everyday operations without grinding the business to a halt. We talk openly about cost, trade-offs, and why resilience planning only works when it is owned by the whole organization, not just the security team. For leaders heading into a new year facing tighter scrutiny and higher stakes, this episode offers clarity on what good looks like in practice and how to start building it.</p><p>If cyber resilience is quickly becoming a license to operate rather than an optional safeguard, how prepared is your organization for the expectations that customers, regulators, and even the public are about to place on it, and what would it take to get ahead of that curve rather than react after the fact?</p><p><strong>Useful Links</strong></p><ul><li><a target="_blank" rel="noopener noreferrer nofollow" href="https://www.linkedin.com/in/jason-revill-7131308/">Connect With Jason Revill</a></li><li><a target="_blank" rel="noopener noreferrer nofollow" href="https://www.avanade.com/en/insights/articles/ai-transformative-power-data-security">Learn More About Avanade</a></li><li><a target="_blank" rel="noopener noreferrer nofollow" href="https://www.gov.uk/government/collections/cyber-security-and-resilience-bill">Cyber Security and Resilience Bill</a></li></ul><p></p><p>Tech Talks Network is sponsored by<a target="_blank" rel="noopener noreferrer nofollow" href="https://www.denodo.com/en"> Denodo</a></p><p></p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/2402824</link>
      <enclosure url="https://content.rss.com/episodes/325985/2402824/the-business-of-cybersecurity/2025_12_20_21_59_55_db1a7f55-be00-4c7e-8831-e23d24e147ef.mp3" length="26869803" type="audio/mpeg"/>
      <guid isPermaLink="false">82f74cbd-af5f-44ec-85f9-067f541cedd6</guid>
      <itunes:duration>1679</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>20</itunes:episode>
      <podcast:episode>20</podcast:episode>
      <pubDate>Mon, 22 Dec 2025 08:56:13 GMT</pubDate>
      <itunes:explicit>false</itunes:explicit>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20251220_091239_db3c8bbbcf82e0ae3cbaad5906dc5137.jpg"/>
    </item>
    <item>
      <title><![CDATA[When IT Meets OT, Can Endpoint Security Hold The Line]]></title>
      <itunes:title><![CDATA[When IT Meets OT, Can Endpoint Security Hold The Line]]></itunes:title>
      <description><![CDATA[<p>How do you protect factory floors, utilities, and critical infrastructure when IT and OT finally run on the same nervous system? That is the challenge at the heart of my latest conversation with John Walsh, Field CTO at IGEL Technology, recorded live at the IGEL Now and Next event in Frankfurt.</p><p>Back in March in Miami, John and I talked about zero trust as an ecosystem rather than a product, a way to bring unified management and strong policy enforcement to the endpoint. This time, we take that thinking to the operational technology world, where the stakes feel very different. When a cyberattack hits a factory, it is not only data at risk. It can stop production lines, damage equipment, and cost millions in downtime. John explains how a prevention first mindset, backed by IGEL’s immutable OS, Universal Management Suite, and OEM ready integrations, is helping manufacturers and OEMs move security out to the edge where attacks actually begin.</p><p>Across the episode, John lifts the lid on IGEL’s work with partners such as Intel, Honeywell, Zscaler, and others who see OT as a growth frontier. We talk about US Department of Defense zero trust 2.0 requirements, European regulation, and what it really takes to extend zero trust thinking from the office to the plant. From dark industrial networks to containerized workloads at the edge, from sensor attestation to the kill chain, this is a grounded look at how endpoint security, confidential compute, and sovereign architectures are reshaping industrial resilience.</p><p>This one is for anyone who cares about the future of secure infrastructure, whether you work in manufacturing, utilities, or simply want a clearer view of where zero trust is heading as AI powered threats accelerate. Do you believe prevention first security can truly keep pace with autonomous attacks, or are we still leaning too heavily on detection and response thinking from an older era of cyber? I would love to hear your thoughts.</p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/2331974</link>
      <enclosure url="https://content.rss.com/episodes/325985/2331974/the-business-of-cybersecurity/2025_11_17_13_01_51_c1af6752-eacd-4b97-9c04-7f1844ed2de3.mp3" length="22655520" type="audio/mpeg"/>
      <guid isPermaLink="false">eef8e770-e087-4f4a-b70c-83ff8b26cccb</guid>
      <itunes:duration>1415</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>19</itunes:episode>
      <podcast:episode>19</podcast:episode>
      <pubDate>Mon, 17 Nov 2025 13:02:05 GMT</pubDate>
      <itunes:explicit>false</itunes:explicit>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20251117_011136_f12160bb9b982533aeb651f7084c2b72.jpg"/>
    </item>
    <item>
      <title><![CDATA[Why Endpoint Resilience Is the Missing Piece in Cybersecurity Strategy]]></title>
      <itunes:title><![CDATA[Why Endpoint Resilience Is the Missing Piece in Cybersecurity Strategy]]></itunes:title>
      <description><![CDATA[<p>What does business continuity really mean when thousands of devices across a hospital or enterprise go dark? In this episode, Jason Mafera, Chief Technology Officer for Healthcare at IGEL, joins me at the Now and Next event in Frankfurt to explore why endpoint resilience has become one of the most overlooked priorities in cybersecurity.</p><p>Jason explains why hospitals and healthcare providers have zero tolerance for downtime, and how the same principle applies across every industry where endpoint failure halts operations. He breaks down how IGEL’s prevention-first approach and its Business Continuity and Disaster Recovery solution can restore access within minutes, even during a ransomware event that would otherwise take weeks or months to recover from.</p><p>For cybersecurity analysts evaluating endpoint protection, Jason offers valuable insight into what a prevention-first model looks like in practice. He describes how secure-by-design, read-only operating systems, dual boot capabilities, and layered recovery options create an architecture that is both lightweight and resilient. Analysts looking to compare endpoint strategies will find this discussion useful for understanding how organizations can combine operational uptime, rapid recovery, and measurable ROI without adding complexity or cost.</p><p>We also discuss how prevention-first design changes the economics of IT. Jason shares examples of how organizations are cutting costs, improving patient safety, and aligning endpoint strategy with Zero Trust frameworks to strengthen both security and productivity.</p><p>It is a fascinating look at how the business of cybersecurity is changing, and why protecting the endpoint is no longer optional. Are enterprises finally ready to treat endpoint continuity as part of their core business strategy? I would love to hear your thoughts after the episode.</p><p></p><p><strong>Useful Links</strong></p><ul><li>Connect with Klaus Oestermann on LinkedIn<ul><li><a target="_blank" rel="noopener noreferrer nofollow" href="https://www.igel.com/nowandnext/">Learn more about IGEL</a></li><li><a target="_blank" rel="noopener noreferrer nofollow" href="https://www.linkedin.com/company/igel-technology">Follow on LinkedIn,</a> <a target="_blank" rel="noopener noreferrer nofollow" href="https://x.com/IGEL_Technology/">Twitter</a> and <a target="_blank" rel="noopener noreferrer nofollow" href="https://www.youtube.com/user/IGELTechnologyTV">YouTube</a></li></ul></li></ul><p></p><p><strong>Tech Talks Daily is Sponsored by NordLayer:</strong></p><p>Get the exclusive <a target="_blank" rel="noopener" class="editor-rtfLink" href="https://nordlayer.com/techtalksdaily/">Black Friday offer: 28% off NordLayer yearly plans</a> with the coupon code: techdaily-28. Valid until December 10th, 2025. Try it risk-free with a 14-day money-back guarantee.</p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/2320506</link>
      <enclosure url="https://content.rss.com/episodes/325985/2320506/the-business-of-cybersecurity/2025_11_10_22_17_14_50f57faa-a464-4a84-b409-c09c0335d14f.mp3" length="22859066" type="audio/mpeg"/>
      <guid isPermaLink="false">3af01b81-6d04-4f30-8253-c1109e52cb4a</guid>
      <itunes:duration>1428</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>18</itunes:episode>
      <podcast:episode>18</podcast:episode>
      <pubDate>Mon, 10 Nov 2025 22:17:21 GMT</pubDate>
      <itunes:explicit>false</itunes:explicit>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20251110_101159_9a3bf9c3a628c669a64abae4be97d415.jpg"/>
    </item>
    <item>
      <title><![CDATA[Corelight’s Brian Dye on Outsmarting AI-Powered Attackers]]></title>
      <itunes:title><![CDATA[Corelight’s Brian Dye on Outsmarting AI-Powered Attackers]]></itunes:title>
      <description><![CDATA[<p>In today’s digital battlefield, prevention is no longer enough. Firewalls and endpoint protection might keep the doors locked, but attackers are slipping in through the windows. In this episode of <em>Tech Talks Daily</em>, I sit down with <strong>Brian Dye</strong>, CEO of <strong>Corelight</strong>, to explore how the cybersecurity game has changed and why network detection and response (NDR) has become the new frontline of digital defense.</p><p>Brian brings an extraordinary track record from senior roles at <strong>Symantec</strong>, <strong>McAfee</strong>, and <strong>Citrix</strong>, giving him a rare perspective on how cyber strategy has evolved from antivirus software to AI-driven network intelligence. As he explains, “The days of when things were nice and loud and easy to find have come and gone.” Attackers now live off the land, using legitimate IT tools like PowerShell to hide in plain sight, while generative AI accelerates the weaponization of new exploits in hours instead of weeks.</p><p>We discuss why Corelight’s open-source heritage gives it a unique edge in the GenAI era, how automation is reshaping response workflows, and what it really takes to achieve sub-15-second threat response. Brian also opens up about leadership lessons learned from his years in the industry, Corelight’s growth from startup to global scale, and the cultural principles that keep innovation alive through rapid expansion.</p><p>This conversation goes far beyond cybersecurity buzzwords. It is a candid look at the reality facing modern defenders, where data is readiness, visibility is power, and resilience is built one decision at a time. Whether you are a CISO, developer, or business leader, this episode offers a grounded, human perspective on the future of cyber defense and what it means to truly understand what went “bump in the night.”</p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/2288513</link>
      <enclosure url="https://content.rss.com/episodes/325985/2288513/the-business-of-cybersecurity/2025_10_24_06_40_41_e8f91131-d402-4fd1-9d1a-560379d4b174.mp3" length="26469354" type="audio/mpeg"/>
      <guid isPermaLink="false">18ccc125-380b-4f46-81e7-04d425f172d8</guid>
      <itunes:duration>1654</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>17</itunes:episode>
      <podcast:episode>17</podcast:episode>
      <pubDate>Fri, 24 Oct 2025 06:42:00 GMT</pubDate>
      <itunes:explicit>false</itunes:explicit>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20251024_061038_084551c8429219cd4785ae570abd49fa.jpg"/>
    </item>
    <item>
      <title><![CDATA[Experian’s AI Fraud Report: SIM Swaps, Voice Cloning, and Smarter Countermeasures]]></title>
      <itunes:title><![CDATA[Experian’s AI Fraud Report: SIM Swaps, Voice Cloning, and Smarter Countermeasures]]></itunes:title>
      <description><![CDATA[<p>Experian’s Chief Product Officer for Identity and Fraud in the UK and Ireland, Paul Weathersby, joins me to unpack how criminals are using generative tools to fabricate documents, clone voices, perfect phishing at scale, and stitch together synthetic identities. We dig into the sharp rise in SIM swap attacks, why eSIM provisioning can accelerate takeovers, and how coordinated crews now treat fraud like a business with playbooks and orchestration.</p><p>Paul explains what works on the defensive side right now. Think adaptive, multilayered authentication that reacts to real risk signals, mobile network checks to identify recent SIM changes, behavioral biometrics, enhanced document and liveness detection, and AI that accelerates investigations while reducing false positives and compliance costs. We also look at more innovative data use, graph analytics to expose fraud rings, cross-industry intelligence sharing, and the FCA’s supersized sandbox that helps teams test models at high volume.</p><p>If you care about stopping account takeovers without breaking customer experience, this conversation is a practical blueprint for 2026 and beyond.</p><p></p><p>SIM swapping increased by over <a target="_blank" rel="noopener noreferrer nofollow" class="editor-rtfLink" href="https://www.experian.co.uk/blogs/latest-thinking/guide/account-takeover">1,000%</a></p><p>How to protect yourself from <a target="_blank" rel="noopener noreferrer nofollow" class="editor-rtfLink" href="https://www.experian.com/blogs/ask-experian/how-to-protect-yourself-from-sim-swapping/">SIM swapping</a></p><p></p><p>*********</p><p>Visit the Sponsor of Tech Talks Network:</p><p>Land your first job  in tech in 6 months as a Software QA Engineering Bootcamp with Careerist</p><p><a target="_blank" rel="noopener noreferrer nofollow" href="https://crst.co/OGCLA">https://crst.co/OGCLA</a></p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/2240798</link>
      <enclosure url="https://content.rss.com/episodes/325985/2240798/the-business-of-cybersecurity/2025_09_29_11_14_27_72718ec7-2a69-4bf6-a624-9527f5f97fbb.mp3" length="27457454" type="audio/mpeg"/>
      <guid isPermaLink="false">794fc5e3-eb1e-4ad6-ad01-0e25c31e38e6</guid>
      <itunes:duration>1716</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>16</itunes:episode>
      <podcast:episode>16</podcast:episode>
      <pubDate>Mon, 29 Sep 2025 11:14:30 GMT</pubDate>
      <itunes:explicit>false</itunes:explicit>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20250929_110915_9f41c20eb6757060a0b4b77b0d621187.jpg"/>
    </item>
    <item>
      <title><![CDATA[Qualys CEO Sumedh Thakar on Moving From SOC to ROC]]></title>
      <itunes:title><![CDATA[Qualys CEO Sumedh Thakar on Moving From SOC to ROC]]></itunes:title>
      <description><![CDATA[<p>Qualys CEO Sumedh Thakar joins me to unpack what cyber risk management really looks like when budgets are tight, signals are noisy, and AI is changing the game. Sumedh’s journey started in Pune with parents who prized education above everything. He arrived in the US with one hundred dollars, joined Qualys as one of its first software engineers, and two decades later is leading a global platform that helps banks, governments, and enterprises protect their digital infrastructure.</p><p>We dig into why compliance keeps tripping companies up, why the impact of digital crime now dwarfs many physical crimes, and how leaders can talk about cyber in a language boards actually understand. Sumedh explains the shift from counting exposures to quantifying business risk, and why the Security Operations Center is giving way to a Risk Operations Center that prioritizes what truly matters, accepts what must be accepted, and transfers the rest through insurance.</p><p>We also explore the cloud security market’s next phase as AI workloads pour into public and private clouds, why “attack surface” is not the same as “risk surface,” and how to weigh AI opportunity against model and data uncertainty. Sumedh closes with hard-won leadership lessons on time, teams, and defining success, and recommends Marshall Rosenberg’s Nonviolent Communication for anyone who wants to communicate beyond the words and lead with clarity.</p><p></p><p>Visit the Sponsor of Tech Talks Network:</p><p>Land your first job  in tech in 6 months as a Software QA Engineering Bootcamp with Careerist</p><p><a target="_blank" rel="noopener noreferrer nofollow" href="https://crst.co/OGCLA">https://crst.co/OGCLA</a></p><p> </p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/2200203</link>
      <enclosure url="https://content.rss.com/episodes/325985/2200203/the-business-of-cybersecurity/2025_09_04_22_02_33_2eb7ce90-2a7d-4cd8-bfc3-e69ab6fe70fd.mp3" length="32510581" type="audio/mpeg"/>
      <guid isPermaLink="false">42299a9e-dd76-4bd2-9f87-4c922666cc6b</guid>
      <itunes:duration>2031</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>15</itunes:episode>
      <podcast:episode>15</podcast:episode>
      <pubDate>Thu, 04 Sep 2025 22:02:40 GMT</pubDate>
      <itunes:explicit>false</itunes:explicit>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20250904_100921_ac968968b2d0b457f9ad590b65a1aef1.jpg"/>
    </item>
    <item>
      <title><![CDATA[CyberArk Explains Why Machine Identities Are the New Attack Surface]]></title>
      <itunes:title><![CDATA[CyberArk Explains Why Machine Identities Are the New Attack Surface]]></itunes:title>
      <description><![CDATA[<p>What happens when there are 100 machine identities for every human one in your organisation? This is not a prediction for the future. It is the world we are already operating in, and the implications are profound.</p><p>In this episode of Business of Cybersecurity, I speak with David Higgins, Senior Director at CyberArk, about how AI agents, autonomous systems, and the sheer scale of machine credentials in the enterprise are reshaping identity security. We discuss why password reuse, unsecured personal devices, and skipped updates remain stubbornly common even though awareness training has been around for decades. David explains that the issue is rarely laziness. Instead, it is often a lack of secure and practical alternatives that still fit the way people work.</p><p>We dig into how phishing and social engineering tactics have evolved, with AI enabling deepfake audio and video that can pass casual inspection, and how attackers are increasingly bypassing tech-savvy users entirely by targeting helpdesks and third-party support teams. We also look at the commoditisation of stolen credentials and why buying access on the dark web can now be easier than running a phishing campaign.</p><p>A major theme in our conversation is the role of culture in security. David challenges the outdated idea that humans are always the weakest link, arguing instead for a more collaborative approach that blends security objectives with user experience. We explore strategies like adaptive authentication, behavioural context analysis, and just-in-time privilege models that reduce risk without slowing down legitimate work.</p><p>The discussion then turns to the identity challenges created by agentic AI. These are AI-driven systems that can interpret goals, adapt, and communicate directly with other AI agents and human colleagues. Unlike traditional machine identities, their behaviour changes over time, creating an entirely new category of security risk. David outlines how organisations can begin to secure these identities now, rather than deferring the problem until it becomes unmanageable.</p><p>By the end of this episode, you will have a clear view of why identity-first security is essential in a machine-dominated environment, what practical steps can be taken to close gaps without adding unnecessary friction, and why aligning identity strategy with your organisation’s digital roadmap is no longer optional.</p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/2162049</link>
      <enclosure url="https://content.rss.com/episodes/325985/2162049/the-business-of-cybersecurity/2025_08_11_18_26_30_a398d51e-4fc0-4776-a3bc-f36f8e278da2.mp3" length="32821960" type="audio/mpeg"/>
      <guid isPermaLink="false">20702542-2e92-4a9f-beac-6938c076a391</guid>
      <itunes:duration>2051</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>14</itunes:episode>
      <podcast:episode>14</podcast:episode>
      <pubDate>Mon, 11 Aug 2025 18:26:36 GMT</pubDate>
      <itunes:explicit>false</itunes:explicit>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20250811_060814_cb4ec10fabb63f2f9c652ab8a20b1f3b.jpg"/>
    </item>
    <item>
      <title><![CDATA[How Abnormal AI Detects Threats Before They Hit the Inbox]]></title>
      <itunes:title><![CDATA[How Abnormal AI Detects Threats Before They Hit the Inbox]]></itunes:title>
      <description><![CDATA[<p>In this episode, I sat down with Mike Britton, CIO at Abnormal AI to explore the increasingly urgent overlap between AI governance and cybersecurity. With AI accelerating faster than regulation, and attackers already using these tools for harm, Mike offers a pragmatic take on what needs to happen next.</p><p>We dig into the realities of regulating AI in a fragmented world, drawing comparisons between Europe’s application-based approach and the US’s patchwork of state-level initiatives. Mike shares why he believes regulation should focus on <strong>context and application</strong>, not just model size, and why human oversight must stay part of the loop.</p><p>We also cover:</p><ul><li>How Abnormal uses behavioral AI to catch phishing and email attacks before they hit inboxes</li><li>Why sandboxes and risk-based regulation can protect innovation without losing control</li><li>The threat of over-regulation pushing innovation toward regimes with fewer ethical safeguards</li><li>The challenge of navigating AI vendors at security events, where almost everyone claims AI capabilities</li><li>The real-world risks of AI bias, misuse, and geopolitical influence in open-source models</li></ul><p>Mike also shares practical guidance for CIOs and CISOs on model validation, audit trails, kill switches, and how to distinguish genuine AI value from marketing spin.</p><p>🧠 <strong>One key takeaway:</strong> Attackers are already using AI. If security teams don’t fight fire with fire, they’re at risk of falling behind.</p><p>🔗 For more, check out <a target="_blank" rel="noopener noreferrer nofollow" href="http://abnormal.ai">abnormal.ai</a> or connect with Mike on LinkedIn. </p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/2138428</link>
      <enclosure url="https://content.rss.com/episodes/325985/2138428/the-business-of-cybersecurity/2025_07_26_18_12_06_201492ac-511b-4a97-9683-aaf47072cd88.mp3" length="25821562" type="audio/mpeg"/>
      <guid isPermaLink="false">50f46e52-9fde-4392-83f9-044696f82a1a</guid>
      <itunes:duration>1613</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>13</itunes:episode>
      <podcast:episode>13</podcast:episode>
      <pubDate>Sat, 26 Jul 2025 18:13:22 GMT</pubDate>
      <itunes:explicit>false</itunes:explicit>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20250726_060756_3f4a2dfcfc671ac856ef7a3dba6791bc.jpg"/>
    </item>
    <item>
      <title><![CDATA[Clari: Why RevOps Is the Hidden Weapon in Cybersecurity’s AI Arms Race]]></title>
      <itunes:title><![CDATA[Clari: Why RevOps Is the Hidden Weapon in Cybersecurity’s AI Arms Race]]></itunes:title>
      <description><![CDATA[<p>In this episode of <em>The Business of Cybersecurity</em>, I’m joined by John Queally, Senior Director of Revenue Operations at Clari, for a conversation that goes far beyond spreadsheets and pipeline forecasts. We explore why RevOps has become mission-critical for cybersecurity firms facing escalating threats, intense market pressure, and growing expectations around AI.</p><p>John unpacks how cybersecurity leaders from Okta to Fortinet are rethinking the entire revenue engine to fund innovation, reduce friction, and stay ahead of attackers. We discuss the growing gap between AI ambition and data reality, and why 67% of revenue leaders are not trusting their data should be a wake-up call for anyone betting big on automation.</p><p>From real-time prospecting and clean data infrastructure to unified cross-departmental collaboration, this is a masterclass in how operational strategy, not just security tooling, is shaping the future of cyber resilience.</p><p>John also shares what it really takes to unify go-to-market teams, how RevOps is shifting from reactive reporting to proactive insight, and why the most powerful transformation starts with the "unsexy" work of cleaning up your data stack.</p><p>If you’ve ever underestimated the role of RevOps in a tech-driven industry or dismissed data hygiene as someone else’s problem, this conversation will change your mind.</p><p>🎧 Listen in to learn:</p><ul><li>Why AI can’t fix broken data</li><li>How cybersecurity firms are aligning ops, sales, and customer success in real time</li><li>What separates high-growth companies from those stuck debating dashboards</li></ul><p>Visit <a target="_blank" rel="noopener noreferrer nofollow" href="http://Clari.com">Clari.com</a> to learn more about the work John and his team are doing, or connect with him directly on LinkedIn.</p><p>Ask ChatGPT</p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/2116310</link>
      <enclosure url="https://content.rss.com/episodes/325985/2116310/the-business-of-cybersecurity/2025_07_15_20_53_33_763fc383-cf37-4e16-8b29-e3b073c15eb1.mp3" length="28186793" type="audio/mpeg"/>
      <guid isPermaLink="false">e5bd121a-20a6-468d-ab20-3af96fde31f2</guid>
      <itunes:duration>1761</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>12</itunes:episode>
      <podcast:episode>12</podcast:episode>
      <pubDate>Tue, 15 Jul 2025 20:53:48 GMT</pubDate>
      <itunes:explicit>false</itunes:explicit>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20250715_080722_fbfb5b8282ce4cbd4d3490ddbcc7a5d3.jpg"/>
    </item>
    <item>
      <title><![CDATA[From Complexity to Clarity: Cyber Resilience with Cloudflare’s Christian Reilly]]></title>
      <itunes:title><![CDATA[From Complexity to Clarity: Cyber Resilience with Cloudflare’s Christian Reilly]]></itunes:title>
      <description><![CDATA[<p>In this episode of <em>The Business of Cybersecurity</em>, I’m joined by Christian Reilly, Field CTO for EMEA at Cloudflare, to unpack what real-world cyber resilience looks like across industries and what’s holding many organisations back. From legacy systems in healthcare and education to cloud-native agility in gaming and fintech, Christian explains why some sectors are better prepared for modern cyber threats and what the rest can learn from them.</p><p>We explore the power of simplicity in cybersecurity strategy, the shift toward zero trust, and the cultural importance of treating employee training as a relentless, personal mission rather than a compliance checkbox. Christian also shares sharp insights on the growing risks posed by AI and quantum computing, the need for post-quantum cryptography, and how data protection is fast becoming the cornerstone of competitive advantage.</p><p>If your boardroom still treats security as an IT issue or your workforce sees it as a blocker, this conversation will change how you think about cyber preparedness. We discuss Cloudflare’s latest research findings, the future of AI-powered SecOps, and how organisations can move from passive defence to proactive, strategic resilience.</p><p>Listen now to learn how forward-thinking businesses are simplifying their stacks, mobilising end-user education, and building security into the core of their operations rather than bolting it on after the fact.</p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/2105026</link>
      <enclosure url="https://content.rss.com/episodes/325985/2105026/the-business-of-cybersecurity/2025_07_07_20_49_20_13f4e4e0-7d5d-4b10-ac59-5a7e61ce5102.mp3" length="27492145" type="audio/mpeg"/>
      <guid isPermaLink="false">5e9fd11e-f187-4d39-840a-0ba999a85bcd</guid>
      <itunes:duration>1718</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>11</itunes:episode>
      <podcast:episode>11</podcast:episode>
      <pubDate>Mon, 07 Jul 2025 20:49:24 GMT</pubDate>
      <itunes:explicit>false</itunes:explicit>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20250707_080708_efe2e367fdb2ef60f137668b6eefa490.jpg"/>
    </item>
    <item>
      <title><![CDATA[Resilience Over Panic: Rethinking Ransomware with Trevor Dearing of Illumio]]></title>
      <itunes:title><![CDATA[Resilience Over Panic: Rethinking Ransomware with Trevor Dearing of Illumio]]></itunes:title>
      <description><![CDATA[<p>In this episode of The Business of Cybersecurity, I speak with Trevor Dearing, Director of Critical Infrastructure at Illumio, to unpack some eye-opening truths from their latest ransomware report.</p><p>We explore why more than half of global companies still have to halt operations when ransomware strikes and why so many UK businesses remain reluctant to report incidents. Trevor shares candid insights into what is working, what is not, and why shifting focus from prevention to containment could be the real key to resilience.</p><p>He explains how modern containment tactics like advanced obfuscation and one-click ringfencing can limit damage and keep critical operations running, even when attackers break through. We also discuss why only 13 percent of companies believe their cyber resilience is strong enough and what it will take to close that gap as regulations tighten worldwide.</p><p>If you want a grounded take on how to prepare for the attacks that will inevitably come, rather than just hoping they never do, this conversation is for you.</p><p>Search Tech Talks Network for more episodes that connect cybersecurity and real-world business strategy.</p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/2083473</link>
      <enclosure url="https://content.rss.com/episodes/325985/2083473/the-business-of-cybersecurity/2025_06_21_13_42_30_8456af41-0c1c-4179-b674-7e84f49c16ba.mp3" length="22234218" type="audio/mpeg"/>
      <guid isPermaLink="false">e493657f-7dc6-47c0-8cbc-d532909e7ad4</guid>
      <itunes:duration>1389</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>10</itunes:episode>
      <podcast:episode>10</podcast:episode>
      <pubDate>Sat, 21 Jun 2025 23:50:09 GMT</pubDate>
      <itunes:explicit>false</itunes:explicit>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20250621_010620_c7f37185f6acf866cb404c0a4530676a.jpg"/>
    </item>
    <item>
      <title><![CDATA[Zscaler on Building Cyber Resilience from the Ground Up]]></title>
      <itunes:title><![CDATA[Zscaler on Building Cyber Resilience from the Ground Up]]></itunes:title>
      <description><![CDATA[<p>When I spoke with <a target="_blank" rel="noopener noreferrer nofollow" href="https://uk.linkedin.com/in/marclueck">Mark Lluic, CEO in Residence at Zscaler,</a> on the Business of Cybersecurity podcast, we didn't spend time rehashing the basics. We looked at how leadership thinking must evolve. If your security posture is still built for light rain, what happens when a hurricane hits?</p><p>Mark has spent years helping organizations rethink security from the ground up. Instead of chasing alerts or layering new tools onto outdated systems, he advocates for a proactive, systems-first approach. One that prioritizes architecture and continuity over quick fixes.</p><p><strong>Zero Trust Isn't Just for Remote Work</strong></p><p>Zero Trust started as a security fix for remote access, but that's just one piece of the puzzle. Mark made a sharp observation: many companies still trust users more when they're sitting in the office. That's a dangerous assumption.</p><p></p><p>Modern Zero Trust means treating all traffic with the same level of scrutiny, regardless of its origin. Every access request should be evaluated based on its context: who is making the request, what device they're using, what they're trying to do, and whether that behavior fits a known pattern.</p><p><strong>The Problem with the Patch-and-Pray Model</strong></p><p>Security teams often react to new threats by throwing more tools into the mix. Over time, this patchwork creates more problems than it solves. Complexity grows, visibility shrinks, and attackers exploit the gaps.</p><p>Mark pointed to research showing that many teams are overwhelmed by the tools they already have in place. Others are held back by outdated systems or a lack of staff with the right skills. That creates a situation where attackers need to succeed once, while defenders must stop everything every time.</p><p><strong>A Better Way Forward: Resilient by Design</strong></p><p>So, what does a stronger strategy look like? Mark recommends starting with architecture. Build systems that expect disruption. Apply continuous risk assessment. Incorporate business continuity from the start rather than as an afterthought. And don't limit Zero Trust to a single use case. Make it your foundation.</p><p>For leaders looking to take action, Mark laid out some clear first steps:</p><p>Start by reviewing where Trust is currently assumed. Challenge those defaults. Apply the same standards inside your network as you do for external traffic. Think about context every time you evaluate access.</p><p>Ensure that your legacy systems are also included in this effort. But remember, you don't need to replace everything overnight.</p><p>Resilience is about ensuring your organization remains standing, regardless of what challenges it faces. That means planning, testing your response, and building security into your infrastructure not bolting it on later.</p><p>Listen to the full episode to hear why this shift is a leadership decision that defines how your organization faces tomorrow's threats.</p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/2062671</link>
      <enclosure url="https://content.rss.com/episodes/325985/2062671/the-business-of-cybersecurity/2025_06_07_13_40_51_e659b5ba-c936-4fa0-a263-0b43bcab0868.mp3" length="25297859" type="audio/mpeg"/>
      <guid isPermaLink="false">d6147028-26aa-4213-a810-fa466be77ade</guid>
      <itunes:duration>1581</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>9</itunes:episode>
      <podcast:episode>9</podcast:episode>
      <pubDate>Sat, 07 Jun 2025 23:40:11 GMT</pubDate>
      <itunes:explicit>false</itunes:explicit>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20250607_010641_0e39169c7a71dccad66aa2bebc3e5ad8.jpg"/>
    </item>
    <item>
      <title><![CDATA[Immersive Labs’ Max Vetter on Closing the Skills Gap Across Cyber Teams]]></title>
      <itunes:title><![CDATA[Immersive Labs’ Max Vetter on Closing the Skills Gap Across Cyber Teams]]></itunes:title>
      <description><![CDATA[<p>Are junior cybersecurity professionals outpacing their senior colleagues in readiness for modern threats?</p><p>In this episode of <em>The Business of Cybersecurity</em>, Neil C. Hughes sits down with Max Vetter, Vice President of Cyber at Immersive Labs, to examine a surprising trend: less experienced team members are consistently completing more difficult training content than veterans with eight or more years in the field. It’s a data point that challenges assumptions and raises urgent questions about how organizations approach skills development in cybersecurity.</p><p>Max shares findings from recent research that expose worrying gaps in readiness, especially at the senior level, and outlines a practical checklist for building resilient, threat-ready teams. He makes a compelling case for continuous, challenge-based learning across all levels of expertise, not just for new hires, but for seasoned professionals who may risk falling behind.</p><p>Together, Neil and Max explore:</p><ul><li>Why traditional training approaches might be failing senior professionals</li><li>How complacency and lack of tailored development can erode cyber resilience</li><li>The cultural shifts needed to make continuous learning a team-wide priority</li><li>What boards and business leaders should know about workforce readiness gaps</li></ul><p>Whether you're leading a SOC, managing risk at the executive level, or shaping your organization's cyber strategy, this episode offers real-world insight into the human dynamics behind technical defenses.</p><p><strong>Are we doing enough to upskill cybersecurity veterans before the next threat hits?</strong> Tune in and join the conversation.</p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/2054256</link>
      <enclosure url="https://content.rss.com/episodes/325985/2054256/the-business-of-cybersecurity/2025_06_01_17_36_24_45e19d56-d0e3-4342-9a82-cf2a5383d3c1.mp3" length="30716282" type="audio/mpeg"/>
      <guid isPermaLink="false">a29465f1-698c-48c7-89e9-59d9b9004737</guid>
      <itunes:duration>1919</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>8</itunes:episode>
      <podcast:episode>8</podcast:episode>
      <pubDate>Sun, 01 Jun 2025 17:36:29 GMT</pubDate>
      <itunes:explicit>false</itunes:explicit>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20250601_050609_313aeddc8377306f6b828c98ca4ab5a1.jpg"/>
    </item>
    <item>
      <title><![CDATA[Legacy Tech Meets Modern Threats as Kyndryl Rethinks Cybersecurity]]></title>
      <itunes:title><![CDATA[Legacy Tech Meets Modern Threats as Kyndryl Rethinks Cybersecurity]]></itunes:title>
      <description><![CDATA[<p>Legacy systems are everywhere, quietly powering core operations in some of the world’s largest enterprises. But behind that familiarity is risk. In this episode of <em>The Business of Cybersecurity</em>, Paul Savill, Global Practice Leader of Networking and Edge Compute at Kyndryl, joins me to break down why aging infrastructure is becoming a major liability in today’s security posture.</p><p>We talk candidly about the security implications of 44 percent of enterprise technology being “out of life” and unsupported. Paul shares how that vulnerability becomes even more exposed as IoT devices proliferate and AI-powered attacks grow more sophisticated. It’s no longer a question of whether legacy tech is a problem, but how long organizations can afford to ignore it.</p><p>This conversation moves beyond the buzzwords and straight into the operational reality. Paul explains how Kyndryl’s post-IBM spin-off transformation included shifting to a cloud-first, zero trust model—and why that decision was just as much about improving agility and cost control as it was about reducing risk.</p><p>We also explore the human side of cybersecurity. Paul outlines how Kyndryl’s internal phishing simulations and scenario-based training have led to a measurable increase in employee-reported incidents. It’s a compelling argument for why building a cybersecurity culture beats any off-the-shelf solution.</p><p>From AI-enhanced social engineering threats to the disconnect between IT and OT teams, this episode highlights the practical steps business leaders can take to modernize without compromising day-to-day operations. If your cybersecurity strategy still depends on outdated tools and last year’s training modules, it might be time to rethink the foundation.</p><p>For more insight, check out the Kyndryl Readiness Report at <a target="_blank" rel="noopener noreferrer nofollow" href="http://kyndryl.com">kyndryl.com</a>,</p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/2043065</link>
      <enclosure url="https://content.rss.com/episodes/325985/2043065/the-business-of-cybersecurity/2025_05_24_17_59_24_4d6bd2c1-8baa-4c40-b63e-f21e0fc37da2.mp3" length="25647273" type="audio/mpeg"/>
      <guid isPermaLink="false">9b2950d7-86f0-4341-889a-b2b0b021df25</guid>
      <itunes:duration>1602</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>7</itunes:episode>
      <podcast:episode>7</podcast:episode>
      <pubDate>Sat, 24 May 2025 17:59:41 GMT</pubDate>
      <itunes:explicit>false</itunes:explicit>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20250524_050511_aea39393779a2d9bbea2b6c712a49835.jpg"/>
    </item>
    <item>
      <title><![CDATA[Imperva on the Bot Surge Behind Half of Global Internet Activity]]></title>
      <itunes:title><![CDATA[Imperva on the Bot Surge Behind Half of Global Internet Activity]]></itunes:title>
      <description><![CDATA[<p>Nearly half of all internet traffic is now generated by non-human sources, and a growing share of that activity is driven by increasingly sophisticated bots. In this episode of <em>The Business of Cybersecurity</em>, Neil is joined by Lynn Marks, Senior Product Manager at Imperva, to break down the findings from the latest Bad Bot Report and explore what businesses need to know as these threats accelerate.</p><p>Lynn explains why the shift in bot activity is no longer about brute force or exploiting technical vulnerabilities. Today’s attackers are targeting business logic itself. From automated purchasing of high-demand items to manipulating pricing and availability data in the travel sector, bots are now bypassing traditional security tools by taking advantage of how platforms are designed to function.</p><p>APIs are particularly vulnerable. Nearly 50 percent of account takeover attacks now target APIs directly, largely because they are abundant, consistently structured, and often poorly monitored. Shadow APIs and lack of cross-functional visibility create significant blind spots for security teams.</p><p>Some industries are facing an outsized share of these attacks. Gaming platforms are targeted for their in-game currencies and experience systems, while travel providers contend with constant scraping of flight data and availability. In both cases, attackers are capitalizing on high user demand and competitive pressure to exploit weaknesses in systems that were never built with these threats in mind.</p><p>Lynn also discusses the rise of residential proxies and mobile user agents, which make it increasingly difficult to distinguish real users from bad actors. And with a surge in global AI regulation expected in 2025, she outlines what organizations can do to prepare. From understanding internal AI use to implementing layered protection across APIs and mobile applications, Lynn provides practical advice for teams looking to get ahead of the threat curve.</p><p>In a digital world where nearly half of all traffic is now synthetic, how confident are you in your ability to spot the difference?</p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/2033735</link>
      <enclosure url="https://content.rss.com/episodes/325985/2033735/the-business-of-cybersecurity/2025_05_17_17_09_29_f193e43d-7d16-4e20-b3aa-ae39176f5fb9.mp3" length="31062352" type="audio/mpeg"/>
      <guid isPermaLink="false">d966a9c5-a505-4eb0-88b0-29ce0563405f</guid>
      <itunes:duration>1941</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>6</itunes:episode>
      <podcast:episode>6</podcast:episode>
      <pubDate>Sat, 17 May 2025 17:10:03 GMT</pubDate>
      <itunes:explicit>false</itunes:explicit>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20250517_050514_6b42650af9e6fef867125debe82ef773.jpg"/>
    </item>
    <item>
      <title><![CDATA[ IGEL at the Edge of Cybersecurity Transformation]]></title>
      <itunes:title><![CDATA[ IGEL at the Edge of Cybersecurity Transformation]]></itunes:title>
      <description><![CDATA[<p>Recorded live at IGEL Now &amp; Next 2025 in Miami, this conversation with John Walsh, Field CTO for Critical Sectors at IGEL, explores how organizations can rethink edge security through a preventative lens. With decades of experience in high-assurance environments, </p><p>John shares how zero trust is moving from theory into applied strategy and why endpoint protection is still ground zero in the modern threat landscape.  From hybrid work challenges to AI-powered threats, this episode breaks down how IGEL’s immutable OS and collaborative approach are helping secure some of the most sensitive sectors in the world. Are your endpoints ready for what’s next?</p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/2022769</link>
      <enclosure url="https://content.rss.com/episodes/325985/2022769/the-business-of-cybersecurity/2025_05_10_19_31_49_a24b6055-9fb2-44da-a0c0-0439b9121947.mp3" length="23191345" type="audio/mpeg"/>
      <guid isPermaLink="false">00d30034-2314-4220-9e38-6e2fb367966f</guid>
      <itunes:duration>1449</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>5</itunes:episode>
      <podcast:episode>5</podcast:episode>
      <pubDate>Sat, 10 May 2025 19:32:04 GMT</pubDate>
      <itunes:explicit>false</itunes:explicit>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20250510_070537_0af941458b1c533981a61241f5e2b414.jpg"/>
    </item>
    <item>
      <title><![CDATA[Fortinet on Making Cybersecurity a Business Priority]]></title>
      <itunes:title><![CDATA[Fortinet on Making Cybersecurity a Business Priority]]></itunes:title>
      <description><![CDATA[<p>What happens when a country aims to carve its own cybersecurity regulatory path post-Brexit while the rest of the region moves toward harmonized frameworks like the EU’s NIS2 directive? In this episode of <em>The Business of Cybersecurity Podcast</em>, we unpack the evolving conversation around the UK’s Cyber Security and Resilience Bill with Ricardo Ferreira, Field CISO at Fortinet.</p><p>Ricardo offers a sharp, comparative analysis between the UK's proposed bill and the EU's more prescriptive NIS2 directive. He explains why the UK's current approach lacks the specificity needed to tackle critical issues like supply chain security, board-level accountability, and sector-specific risk frameworks. While the UK’s legislative draft includes promising buzzwords and broad commitments, Ricardo notes that it falls short on actionable guidance and enforcement mechanisms—areas where NIS2 has already set a clearer precedent.</p><p>But amid these gaps lies a strategic opportunity. Ricardo discusses how the UK can leverage its regulatory independence to selectively adopt the most effective elements from NIS2, crafting a more agile and industry-friendly cybersecurity framework. He highlights the importance of involving diverse stakeholders—from industry bodies to international partners—in shaping regulation that’s both resilient and responsive to evolving threats.</p><p>The conversation also explores:</p><ul><li>The importance of making board members directly accountable for cybersecurity risk</li><li>Why workforce training must be mandated alongside technical requirements</li><li>Lessons from NIS2 on post-breach response and business continuity planning</li><li>The need for advisory committees and continuous legislative updates to keep regulation relevant in an AI-driven threat environment</li></ul><p>Ricardo closes the episode with a personal story about how visionary leadership early in his career helped shape his trajectory—reminding us that real resilience is built not just through technology or regulation, but through people who see potential and invest in it.</p><p>If you're navigating cybersecurity compliance, policy development, or executive accountability, this episode is a timely and thought-provoking listen.</p><p></p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/2012907</link>
      <enclosure url="https://content.rss.com/episodes/325985/2012907/the-business-of-cybersecurity/2025_05_03_13_42_38_5ea106f8-ec0e-453e-8444-140cad7b0b05.mp3" length="24354525" type="audio/mpeg"/>
      <guid isPermaLink="false">eb9c62a7-ed4c-4599-bfda-5eecd01e4597</guid>
      <itunes:duration>1522</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>4</itunes:episode>
      <podcast:episode>4</podcast:episode>
      <pubDate>Sat, 03 May 2025 13:42:43 GMT</pubDate>
      <itunes:explicit>false</itunes:explicit>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20250503_010526_30fb15489866f5da0cda13469e02f27d.jpg"/>
    </item>
    <item>
      <title><![CDATA[The Shadow API Threat Explained by Akamai Technologies]]></title>
      <itunes:title><![CDATA[The Shadow API Threat Explained by Akamai Technologies]]></itunes:title>
      <description><![CDATA[<p>What does it take to protect financial institutions when they're the number one global target for DDoS attacks? In this episode of The Business of Cybersecurity, Neil C. Hughes welcomes Richard Meeus, Director of Security Technology and Strategy EMEA at Akamai Technologies, to explore insights from Akamai's latest State of the Internet (SOTI) report focusing on cybersecurity trends in the financial services sector.</p><p>Richard shares a decade's worth of threat intelligence backed by trillions of daily DNS requests and billions of cyberattack observations, offering a data-rich perspective on why financial organizations are squarely in the crosshairs. From a 24-hour DDoS attack on Israel peaking at 800 Gbps to the rise of politically motivated hacktivism, Richard outlines why the Middle East and North Africa (MENA) region has become a hotspot for these digital assaults—and what financial firms can do about it.</p><p>The conversation also covers the emerging risk of shadow APIs—forgotten, unmanaged, or defunct APIs that can unintentionally expose sensitive personal or financial data. Richard explains how many businesses still underestimate their API footprint and shares practical steps for regaining visibility and control.</p><p>Zero Trust is another central theme. Instead of positioning it as an overwhelming overhaul, Richard suggests organizations reframe it as a modern VPN replacement, focusing first on core business systems and micro-segmentation to restrict lateral movement. With a strategic approach, implementing Zero Trust becomes feasible and a key step in limiting breach impact.</p><p>Richard also offers a candid look at balancing proactive and reactive DDoS defense, emphasizing the importance of both automatic mitigation and human-led response to more sophisticated, multi-vector attacks. He highlights how Akamai supports both fronts, including working with global authorities to help take down threat actors like Anonymous Sudan.</p><p>Finally, the conversation turns to the future. With EU regulations like the Digital Operational Resilience Act (DORA) on the horizon, financial institutions must invest in real-time visibility, intuitive data access, and actionable threat insights to stay compliant and resilient.</p><p>Whether you're in the C-suite, on the frontlines of your SOC, or guiding your enterprise's security roadmap, this episode delivers an honest and data-driven view of what it takes to defend the financial sector in a time of growing complexity and geopolitical tension.</p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/2001409</link>
      <enclosure url="https://content.rss.com/episodes/325985/2001409/the-business-of-cybersecurity/2025_04_25_07_19_38_56a3c0cd-6c4f-49b9-b6fc-0c1be5fed87e.mp3" length="27877503" type="audio/mpeg"/>
      <guid isPermaLink="false">2a9cfa59-eb22-41ce-9738-fe4b3789878f</guid>
      <itunes:duration>1742</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>3</itunes:episode>
      <podcast:episode>3</podcast:episode>
      <pubDate>Fri, 25 Apr 2025 07:19:45 GMT</pubDate>
      <itunes:explicit>false</itunes:explicit>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20250425_070425_c7c0acece1dd0be514a498f3a341b7b4.jpg"/>
    </item>
    <item>
      <title><![CDATA[Thales Data Threat Report Revals Risks to Critical Infrastructure ]]></title>
      <itunes:title><![CDATA[Thales Data Threat Report Revals Risks to Critical Infrastructure ]]></itunes:title>
      <description><![CDATA[<p>What happens when the digital systems powering our national energy, water, and healthcare services become the next frontline in cybersecurity? As smart grids, connected utilities, and cloud-first operations rapidly reshape critical infrastructure, the threats facing these systems are evolving just as quickly. In this episode, Tony Burton, Managing Director of Cyber Security &amp; Trust at Thales UK, joins the podcast to unpack the findings from the Thales Data Threat Report and explore what it really takes to secure the backbone of modern society.</p><p>With over two decades in national security and resilience, Tony brings sharp insight into the pressing risks that critical infrastructure faces—from rising ransomware attacks and insider threats to human error and the expanded digital attack surface introduced by cloud adoption and smart technologies. He explains why over 42% of critical infrastructure organizations have already reported data breaches and why 93% are seeing an uptick in cyberattacks. The conversation doesn’t stop at the threats—it goes deep into the real-world consequences, such as cascading failures across sectors, widespread outages, and compromised public safety.</p><p>We also explore how organizations can take action now. Tony outlines the importance of adopting zero trust architecture, designing systems with human behavior in mind, and implementing detection and response capabilities that reflect the physical realities of operational technology. He also shares powerful insights from Thales’ Cyber Resilience Lab in Ebbw Vale, a cutting-edge environment where real smart grid systems are tested under simulated attacks to strengthen resilience.</p><p>From preparing for quantum computing to managing complex hybrid cloud environments, Tony offers a playbook for leaders who are serious about protecting national infrastructure in a high-stakes environment. Whether you’re a CISO, infrastructure leader, or tech strategist, this episode will provide a roadmap for mitigating risk, increasing awareness, and planning ahead.</p><p>What role should technology—and leadership—play in protecting the systems that power society? Join the conversation and share your thoughts on building resilience in a connected world.</p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/1994210</link>
      <enclosure url="https://content.rss.com/episodes/325985/1994210/the-business-of-cybersecurity/2025_04_20_08_57_16_3c93dc95-8cc1-4a0c-ad20-1158b1459ddd.mp3" length="36915871" type="audio/mpeg"/>
      <guid isPermaLink="false">f08e1cd9-f165-4912-bdb7-360b78e885d2</guid>
      <itunes:duration>2307</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>2</itunes:episode>
      <podcast:episode>2</podcast:episode>
      <pubDate>Sun, 20 Apr 2025 08:57:51 GMT</pubDate>
      <itunes:explicit>false</itunes:explicit>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20250420_090413_673d781118146f49a0d197fee3bd0fac.jpg"/>
    </item>
    <item>
      <title><![CDATA[The Real Meaning of Zero Trust with Its Creator]]></title>
      <itunes:title><![CDATA[The Real Meaning of Zero Trust with Its Creator]]></itunes:title>
      <description><![CDATA[<p>What does it really mean to trust nothing and verify everything? In this first episode of The Business of Cybersecurity, Neil is joined by John Kindervag—the creator of the Zero Trust cybersecurity model for a conversation that redefines how we think about protecting digital systems.</p><p>John shares the untold story behind the creation of Zero Trust, from challenging traditional perimeter-based models to watching the concept grow into a global movement now embedded in national cybersecurity mandates. Far from being a buzzword, Zero Trust is presented here as a strategic framework that begins with a single protect surface and scales without disruption.</p><p>Together, Neil and John explore how Zero Trust is misunderstood, often mistaken for a product, and too often reduced to identity management. They break down the core five-step process for implementation, the importance of context over blind trust, and how cloud environments and AI are reshaping cybersecurity expectations.</p><p>But this conversation also carries a personal weight, as both Neil and John reflect on deeply moving experiences with childhood cancer—and how those journeys informed a new way to think about managing risk, or as John reframes it, managing danger.</p><p>This isn’t just a technical talk. It’s a story about questioning the status quo, staying adaptable in a rapidly evolving threat environment, and using strategy not assumptions to secure the systems businesses depend on.</p><p>Is your organization still relying on outdated models of trust? And what would it look like to build something truly resilient?</p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/1990300</link>
      <enclosure url="https://content.rss.com/episodes/325985/1990300/the-business-of-cybersecurity/2025_04_16_21_48_20_9ddb49ff-8df5-48bd-aa2d-7995bd1472ef.mp3" length="42646927" type="audio/mpeg"/>
      <guid isPermaLink="false">0a62fc9e-79bd-4d08-a987-ce9e0dd4cbb9</guid>
      <itunes:duration>2665</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <itunes:episode>1</itunes:episode>
      <podcast:episode>1</podcast:episode>
      <pubDate>Wed, 16 Apr 2025 21:48:37 GMT</pubDate>
      <itunes:explicit>false</itunes:explicit>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20250416_090401_711a7217207b546ce7ad0fd90148b37a.jpg"/>
    </item>
    <item>
      <title><![CDATA[What NETSCOUT's Threat Intelligence Report Means For Every Security Leader]]></title>
      <itunes:title><![CDATA[What NETSCOUT's Threat Intelligence Report Means For Every Security Leader]]></itunes:title>
      <description><![CDATA[<p>What happens when anyone with a simple AI prompt can launch a sophisticated cyberattack?</p><p>In this episode of The Business of Cybersecurity, I sit down with Darren Anstee, CTO for Security at NETSCOUT, to discuss the findings from the company's latest Threat Intelligence Report and why the cybersecurity landscape is changing faster than many organizations can respond.</p><p>We explore how conversational AI is lowering the barrier to entry for cybercriminals, making it possible for attackers with little technical expertise to orchestrate increasingly sophisticated DDoS campaigns. Darren explains why this shift isn't simply creating more attacks. It's changing who can launch them and how quickly they can adapt.</p><p>Our conversation also looks at the growing collaboration between threat actors, the continued rise of politically motivated hacktivist groups, and why attacks are increasingly targeting entire digital supply chains rather than individual organizations. As businesses become more interconnected, defending your own infrastructure is no longer enough.</p><p>We also discuss why compromised customer devices are creating new operational and reputational challenges for internet service providers, how AI is reshaping both offensive and defensive cyber capabilities, and why preparation, visibility, and threat intelligence matter far more than reacting after an attack has already begun.</p><p>Darren also shares practical advice for security leaders looking to move from reactive incident response to proactive cyber resilience. From understanding your true attack surface to building adaptive defenses that continuously learn and respond, this episode offers clear guidance for organizations preparing for the next generation of cyber threats.</p><p>If AI is making cyberattacks easier to launch, how should businesses rethink the way they defend themselves? After listening, I'd love to hear your thoughts. Is your organization ready for this new reality, or is there still work to do?</p>]]></description>
      <link>https://rss.com/podcasts/the-business-of-cybersecurity/2892570</link>
      <enclosure url="https://content.rss.com/episodes/325985/2892570/the-business-of-cybersecurity/2026_06_26_20_46_21_73fe530b-92e4-46b6-8bde-8bddd894377b.mp3" length="28606195" type="audio/mpeg"/>
      <guid isPermaLink="false">1f1583b0-8db3-4982-b3b4-2a40a64c5740</guid>
      <itunes:duration>1787</itunes:duration>
      <itunes:episodeType>full</itunes:episodeType>
      <pubDate>Fri, 26 Jun 2026 20:46:57 GMT</pubDate>
      <itunes:explicit>false</itunes:explicit>
      <itunes:image href="https://media.rss.com/the-business-of-cybersecurity/ep_cover_20260626_080604_2a3f1e015cfb5925d1b26bedba872dc4.jpg"/>
    </item>
  </channel>
</rss>