- 33 minutes 26 secondsCan SMBs Get the Same Security as Everyone Else?
All links and images can be found on CISO Series
Check out this post for the discussion that is the basis of our conversation for this week's episode co-hosted by me, David Spark, the producer of CISO Series, and Steve Zalewski. Joining us is their sponsored guest, Mark Stockley, cybersecurity evangelist, ThreatDown.
In this episode:
- The ripple effect
- The economics of ignoring SMB
- Let the defaults do the work
- Accountability doesn't get outsourced
A huge thanks to our sponsor, ThreatDown
ThreatDown MDR is a 24/7/365 security analyst service that explains and resolves suspicious endpoint events. Our team of cybersecurity experts delivers proactive monitoring, investigation, and remediation, catching threats before they escalate. With ThreatDown's always-on protection, organizations gain peace of mind and safeguard their data, reputation, and finances - backed by real analyst expertise, not just automation. Learn more at threatdown.com
8 October 2026, 10:00 am - 33 minutes 41 secondsWhy Do We Keep Complaining About the Same Issues in Cybersecurity?
All links and images can be found on CISO Series
LinkedIn used to have a decent reputation among cybersecurity professionals. But lately, it feels like our feeds are relitigating the same debates every day, just with different faces. Has the situation changed?
Check out this post by Allan Alford of NTT Global Data Centers for the discussion that is the basis of our conversation on this week's episode co-hosted by me, David Spark, the producer of CISO Series, and Geoff Belknap. Joining us is Howard Holton, founder, Phronia Counsel.
In this episode:
- The clichés that say nothing
- A discipline without shared answers
- Old topics, new lenses
- A people problem, not a security problem
A huge thanks to our sponsor, Teleskope
Most DSPMs stop at finding the risk. Teleskope fixes this: it automatically finds sensitive data, including IP documents or board decks, and remediates exposure across cloud, SaaS, and AI environments natively, with human-in-the-loop controls, improving your team's efficiency tenfold. Trusted by Ramp, Polymarket, and Chevron Phillips, and more. teleskope.ai
1 October 2026, 10:00 am - 35 minutesSecuring AI-Generated Open Source Code
All links and images can be found on CISO Series
Check out this post for the discussion that is the basis of our conversation on this week's episode co-hosted by me, David Spark, the producer of CISO Series, and Steve Zalewski. Joining us is our sponsored guest, Abby Kearns, CEO, ActiveState.
In this episode:
- Trust, but nobody verifies
- The economics of trust just changed
- Implicit trust doesn't scale anymore
- Rethinking what "open" even means
A huge thanks to our sponsor, ActiveState
ActiveState gives security and engineering teams a single governed source for open source software. With 79 million components built from source, continuously remediated, and delivered directly into the tools teams already use, ActiveState eliminates the CVE backlog and the developer toil that comes with it. Companies see a 60 to 99% reduction in CVEs and reclaim up to 30% of developer time. Learn more at activestate.com.
24 September 2026, 10:00 am - 21 minutes 17 secondsBONUS EPISODE: Super Cyber Friday Express - Hacking Vendor Selection
All links and images can be found on CISO Series
This is a bonus episode of our brand new podcast, Super Cyber Friday Express — a 20-minute highlight version of our live one-hour show we do every available Friday at 1 p.m. Eastern.
In this episode, David Spark is joined by Karl Mattson, founder and managing director of Squared Circle Ventures, and Howard Holton, founder and principal analyst at Phronia Counsel LLC, to discuss how your existing environment shapes what you buy next — and whether that's a strategy or just inertia.
Watch the full one-hour show at Crowdcast.
Subscribe to Super Cyber Friday Express, or any show on CISO Series, at CISOseries.com/subscribe.
21 September 2026, 1:57 pm - 26 minutes 20 secondsHow AppSec Needs to Change For the Speed of AI
All links and images can be found on CISO Series
Check out this post by Anand Singh, CSO, Symmetry Systems, for the discussion that is the basis of our conversation on this week's episode co-hosted by me, David Spark, the producer of CISO Series, and Steve Zalewski. Joining us is Ryan Barrett, svp, security, Intermedia Cloud Communications.
In this episode:
- Risk by default, not by decision
- Identity, not just speed
- Building security into the pipeline, not around it
- Letting the machine make the fix
A huge thanks to our sponsor, ThreatLocker
An AI-generated attack may be new, but it still needs to execute, access data, and move through your environment. ThreatLocker applies enforceable controls at each of those points, limiting what attackers can do regardless of how their code was created. Book a demo at threatlocker.com/ciso.
17 September 2026, 10:00 am - 27 minutes 43 secondsBuilding Resilience for Microsoft 365
All links and images can be found on CISO Series
Check out this post for the discussion that is the basis of our conversation on this week's episode co-hosted by me, David Spark, the producer of CISO Series, and Brett Conlon, CISO, American Century Investments. Joining us is our sponsored guest, Simon Hughes, vp of field security at CoreView.
In this episode:
- Ecosystem, not platform
- Beyond backup, into resilience
- What survives the restore
- Toward a digital twin
A huge thanks to our sponsor, CoreView
Attackers don't break into Microsoft 365. They log in and reconfigure it. When tenant configurations drift or get tampered with, recovery can take weeks and missed settings can reopen the door. The Cyber Resilience Framework for Microsoft 365 covers the five pillars, harden, govern, detect, respond, recover, and shows exactly where today's tools leave gaps. Download the free practical guide
10 September 2026, 10:00 am - 28 minutes 15 secondsRecommendations to Reboot the Security Vendor Pitch
All links and images can be found on CISO Series
Check out this post by Val Tsanev of CyberRisk Alliance, for the discussion that is the basis of our conversation on this week's episode co-hosted by David Spark, the producer of CISO Series, and Edward Contreras, senior evp and CISO, Frost Bank. Joining is Jill Rhodes, svp, CISO, Option Care Health.
In this episode:
- The ten-minute test
- Relevance beats format
- Price the problem or lose the room
- Whose meeting is it, really
A huge thanks to our sponsor, Teleskope
Most DSPMs stop at finding the risk. Teleskope fixes this: it automatically finds sensitive data, including IP documents or board decks, and remediates exposure across cloud, SaaS, and AI environments natively, with human-in-the-loop controls, improving your team's efficiency tenfold. Trusted by Ramp, Polymarket, and Chevron Phillips, and more. teleskope.ai
3 September 2026, 10:00 am - 29 minutes 47 secondsMarket Confusion Is Responsible for the Biggest Gaps in Cybersecurity
All links and images can be found on CISO Series
Check out this post from Joe Head of RELEX Solutions for the discussion that is the basis of our conversation on this week's episode co-hosted by David Spark, the producer of CISO Series, and Edward Contreras, senior evp and CISO, Frost Bank. Joining is Mary Rose Martinez, CISO, and vp of digital technology services, Marathon Petroleum Corporation.
In this episode:
- Left behind
- A hypothetical sale
- The philosophy problem
- Stop shifting the problems
A huge thanks to our sponsor, ActiveState
ActiveState gives security and engineering teams a single governed source for open source software. With 79 million components built from source, continuously remediated, and delivered directly into the tools teams already use, ActiveState eliminates the CVE backlog and the developer toil that comes with it. Companies see a 60 to 99% reduction in CVEs and reclaim up to 30% of developer time. Learn more at activestate.com.
27 August 2026, 10:00 am - 35 minutes 13 secondsWill AI Replace Detection Roles in Cybersecurity?
All links and images can be found on CISO Series
Check out this post from Caleb Sima of Whiterabbit for the discussion that is the basis of our conversation on this week's episode co-hosted David Spark, the producer of CISO Series, and Yaron Levi, CISO, Dolby. Joining is Adrian Ludwig, CSO, Rippling.
In this episode:
- The messy middle
- The automatable part
- Where automation stops
- The influence gap
A huge thanks to our sponsor, ThreatLocker
ThreatLocker delivers Zero Trust Network Access and Zero Trust Cloud Access that verifies both user and device before granting access to specific applications. No broad access, nothing exposed, and no reliance on credentials alone. It's a smarter way to control access and reduce risk. Learn more at ThreatLocker.com/CISO.
20 August 2026, 10:00 am - 31 minutes 19 secondsWhat Makes a Good AI Security Deployment?
What Makes a Good AI Security Deployment?
All links and images can be found on CISO Series
Check out this post by Chris Matthews of UpGuard for the discussion that is the basis of our conversation on this week's episode co-hosted by me, David Spark, the producer of CISO Series, and Edward Contreras, senior evp and CISO, Frost Bank. Joining us is Peter Liebert, CISO, Salesloft & Clari.
In this episode:
- Non-determinism changes everything
- The foundation problem
- Nobody owns the whole problem
- The authorization gap
A huge thanks to our sponsor, CoreView
Attackers don't break into Microsoft 365. They log in and reconfigure it. When tenant configurations drift or get tampered with, recovery can take weeks and missed settings can reopen the door. The Cyber Resilience Framework for Microsoft 365 covers the five pillars, harden, govern, detect, respond, recover, and shows exactly where today's tools leave gaps. Download the free practical guide
13 August 2026, 10:00 am - 28 minutes 48 secondsThe Office Politics of Remediation
All links and images can be found on CISO Series
Check out this post for the discussion that is the basis of our conversation on this week's episode co-hosted by David Spark, the producer of CISO Series, and Dan Walsh, CISO, Datavant. Joining is our sponsored guest, Elizabeth Nammour, founder and CEO, Teleskope.
In this episode:
- Data ownership before automation
- A shared vocabulary for agent risk
- Maturing from crawl to run
- Trust earns automation its place
A huge thanks to our sponsor, Teleskope
Most DSPMs stop at finding the risk. Teleskope fixes this: it automatically finds sensitive data, including IP documents or board decks, and remediates exposure across cloud, SaaS, and AI environments natively, with human-in-the-loop controls, improving your team's efficiency tenfold. Trusted by Ramp, Polymarket, and Chevron Phillips, and more. teleskope.ai
6 August 2026, 10:00 am - More Episodes? Get the App