CISO Stories Podcast (Audio) Titelbild

CISO Stories Podcast (Audio)

CISO Stories Podcast (Audio)

Von: SC Media
Jetzt kostenlos hören, ohne Abo

Nur 0,99 € pro Monat für die ersten 3 Monate

Danach 9.95 € pro Monat. Bedingungen gelten.

Über diesen Titel

SC Media and Saviynt are proud to present this month's CISO Stories program, where CISOs share tales from the trenches and unpack leadership lessons learned along the way. Hosted by Jessica Hoffman.© 2024 CyberRisk Alliance Ökonomie
  • Keys Without People — John Heasman on Cleaning Up Non-Human Access - John Heasman - CSP #220
    Jan 12 2026

    Title: Keys Without People" — John Heasman on Cleaning Up Non-Human Access

    Summary: John breaks today's non-human identity mess into three buckets: core tools your business runs on, old/one-off integrations that linger, and engineer tokens left behind. His playbook is simple: decide what's truly critical, assign a clear owner, keep access minimal, and review it on a schedule. With AI spawning even more "non-human users," basics done well—prioritize, tighten, rotate, repeat—win the day.

    This segment is sponsored by Saviynt. Visit https://cisostoriespodcast.com/saviynt to learn more about them!

    Visit https://cisostoriespodcast.com for all the latest episodes!

    Show Notes: https://cisostoriespodcast.com/csp-220

    Mehr anzeigen Weniger anzeigen
    26 Min.
  • Agents at the Door: Vetting Non-Human Identities in External IAM - Rakesh Soni - CSP #219
    Dec 8 2025

    This episode was about agentic IAM—what it is and the risks that come with letting non-human agents act for customers. We defined external IAM, then traced how the industry moved from basic login and MFA to consent, delegation, and now agent-to-agent interactions. Along the way we unpacked key risks for CISOs and practitioners to consider.

    Segment Resources:

    https://www.loginradius.com/

    https://customeriambook.com/

    Visit https://cisostoriespodcast.com for all the latest episodes!

    Show Notes: https://cisostoriespodcast.com/csp-219

    Mehr anzeigen Weniger anzeigen
    29 Min.
  • ATT&CK → ATLAS: A CISO's Blueprint for AI Governance - Sandy Dunn - CSP #218
    Nov 10 2025

    CISO Sandy Dunn breaks down her blueprint for AI-ready defense—pairing MITRE ATT&CK v18 with MITRE ATLAS to move from policy to behavior-based detections. We hit practical AI governance, her early focus on defending and understanding AI, and how OWASP GenAI tools turn checklists into action.

    Segment Resources: Article: https://www.linkedin.com/pulse/attck-v18-atlas-blueprint-ai-ready-defense-sandy-dunn-mafoc
    AI Cheat Sheet: https://www.linkedin.com/feed/update/urn:li:activity:7388688396166238208/ OWASP LLM Governance Checklist: https://genai.owasp.org/resource/llm-applications-cybersecurity-and-governance-checklist-english/
    OWASP Threat Defense COMPASS: https://genai.owasp.org/resource/owasp-genai-security-project-threat-defense-compass-1-0/

    Visit https://cisostoriespodcast.com for all the latest episodes!

    Show Notes: https://cisostoriespodcast.com/csp-218

    Mehr anzeigen Weniger anzeigen
    28 Min.
Noch keine Rezensionen vorhanden