PodcastsBusinessCISO Series Podcast

CISO Series Podcast

David Spark, Mike Johnson, and Andy Ellis
CISO Series Podcast
Latest episode

410 episodes

  • CISO Series Podcast

    Boards Love to Hear Jargon," Says Soon-to-Be-Fired CISO (LIVE in Boston)

    2026-06-16 | 48 mins.
    All links and images can be found on CISO Series
    This week's episode is hosted by me, David Spark, producer of CISO Series and Andy Ellis, principal of Duha. Joining us is Dmitriy Sokolovskiy, senior vice president, information security, Semrush.
    This episode was recorded in front of a live audience at the offices of Aqueduct Technologies in Canton, MA. See photos from the event.
    In this episode:
    A clock on everything
    The oversight loop
    Not a better tool, a different one
    It's not the alerts
    A huge thanks to our sponsor, Strike48

    It's no secret that AI is only as good as the data available to it. Strike48 unifies agentic AI with unmatched log visibility while avoiding the typical hefty price tag. Build and deploy agents for phishing detection, alert triage, threat correlation and more. Queries existing logs where they currently live, so you can keep the technology you already have. Learn more at Strike48.com.
     
    A huge thanks to our sponsor, Dropzone AI


    Dropzone AI delivers a team of AI agents that investigate alerts, hunt threats, and respond to attacks across your full security stack. No playbooks required. No hidden humans in the critical path. Your analysts stay in control, directing strategy while AI agents handle the investigation workload at machine speed. Learn more at dropzone.ai.
  • CISO Series Podcast

    There's Nothing an LLM Can Screw Up That the Cloud Didn't Do First

    2026-06-09 | 44 mins.
    All links and images can be found on CISO Series
    This week's episode is hosted by David Spark, producer of CISO Series and Andy Ellis, principal of Duha. Joining is our sponsored guest, Danny Jenkins, CEO, ThreatLocker.
    In this episode:
    Permission creep at machine speed
    The pattern we keep calling a mistake
    Stop authenticating the human
    Vibe coded out of existence
    A huge thanks to our sponsor, ThreatLocker

    ThreatLocker delivers Zero Trust Network Access and Zero Trust Cloud Access that verifies both user and device before granting access to specific applications. No broad access, nothing exposed, and no reliance on credentials alone. It's a smarter way to control access and reduce risk. Learn more at ThreatLocker.com/CISO.
  • CISO Series Podcast

    Our Data Security Policy Is Transparent in That It Doesn't Exist

    2026-06-02 | 37 mins.
    Our Data Security Policy Is Transparent in That It Doesn't Exist
    All links and images can be found on CISO Series
    This week's episode is hosted by David Spark, producer of CISO Series, and Mike Johnson, CISO, Rivian. Joining is Mike Melo, CISO, TMX Group.
    In this episode:
    The weight of old controls
    Data you can actually see
    68 vendors and counting
    Authority you never had to claim
    A huge thanks to our sponsor, Vanta

    Still stuck on the quarterly audit treadmill? Meet Calm-pliance. Vanta combines compliance, risk, and proof on one Agentic Trust Platform—and continuously monitors your controls, keeping you audit-ready all year round. Find your Calm-pliance here.
  • CISO Series Podcast

    If You Love Cloud Misconfigurations So Much, Why Don't You Marry Them!

    2026-05-26 | 40 mins.
    All links and images can be found on CISO Series
    This week's episode is hosted by David Spark, producer of CISO Series, and Andy Ellis, principal of Duha. Joining them is their sponsored guest Amit Megiddo, CEO and founder, Native.
    In this episode:
    The CISO you don't need
    Misconfigurations aren't a cloud problem
    Secure by design means enforcing it
    Finding bugs faster isn't the bottleneck
    A huge thanks to our sponsor, Native

    Native makes secure-by-design inherent to how the cloud operates. It's the control plane for built-in cloud security, unifying and governing native controls, so security intent is defined once and applied consistently across providers. Learn more at native.security.
  • CISO Series Podcast

    Why Be Responsible When We Can Just Blame AI?

    2026-05-19 | 41 mins.
    All links and images can be found on CISO Series
    This week's CISO Series Podcast features David Spark, producer of CISO Series, and Andy Ellis, principal of Duha. Joining us is our sponsored guest, Jadee Hanson, CISO, Vanta.
    In this episode:
    The compliance receipt nobody reads
    Who signs off on the AI that wrote the code
    The agent that wouldn't stop
    The questionnaire that should not exist
    A huge thanks to our sponsor, Vanta

    Risk and regulation ramping up—and customers expect proof of security just to do business. Vanta's automation brings compliance, risk, and customer trust together on one AI-powered platform. So whether you're prepping for a SOC 2 or running an enterprise GRC program, Vanta keeps you secure—and keeps your deals moving. Learn more at vanta.com/ciso.
More Business podcasts
About CISO Series Podcast
Discussions, tips, and debates from security practitioners and vendors on how to work better together to improve security for themselves and everyone else.
Podcast website

Listen to CISO Series Podcast, Odd Lots and many other podcasts from around the world with the radio.net app

Get the free radio.net app

  • Stations and podcasts to bookmark
  • Stream via Wi-Fi or Bluetooth
  • Supports Carplay & Android Auto
  • Many other app features