Discover
Adopting Zero Trust
Adopting Zero Trust
Author: Adopting Zero Trust
Subscribed: 12Played: 199Subscribe
Share
© Copyright 2026 All rights reserved.
Description
Adopting Zero Trust offers an ongoing conversation that elevates cybersecurity conversations that encourages you to rethink how you build strategies, defend against threat actors, and implement new technology. We go beyond the millions in marketing budgets fueled by VCs, and chat with practitioners like you who want to make a difference (or hack the planet, which ever happens first).
Hosted on Acast. See acast.com/privacy for more information.
58 Episodes
Reverse
As organizations push return-to-office (RTO) mandates and chase efficiency, many security teams are quietly accumulating debt they don’t know how to unwind.In this episode, we are joined by Lea Cure Thorpe and Kayne McGladrey to unpack the less-discussed consequences of recent security decisions: RTO exposure, endpoint blind spots, tooling overload, analyst burnout, and the slow erosion of junior talent (thanks AI).Rather than going too crazy on hot takes and obvious trends, we focus in on operational reality, business risk, and what security leaders need to confront before these issues compound further.Where to Skim02:00 | Is the perimeter really dead?06:30 | RTO fallout and the return of local network risk12:30 | Endpoint sprawl, dirty devices, and SOC fatigue18:30 | Cloud tooling, visibility gaps, and false assurances26:00 | AI adoption: risk appetite vs. reality33:30 | Identity, agentic AI, and trust amplification risk41:00 | Workforce erosion and the efficiency trap50:30 | The business math CISOs can’t avoid58:30 | Career development, communication, and relevance Hosted on Acast. See acast.com/privacy for more information.
In this episode, we break down Whisper Leak, a newly disclosed side-channel issue affecting encrypted LLM communications. JBO explains how attackers can infer conversation topics using packet size and timing metadata without breaking encryption. The discussion covers how the research team discovered the issue, how vendors (including Microsoft and OpenAI) mitigated it, and what it means for the future of secure AI systems.01:30 – What Whisper Leak Actually Is02:30 – Understanding Side-Channel Attacks04:00 – Why LLMs Are Uniquely Vulnerable08:00 – Stream Ciphers vs Block Ciphers13:30 – “Did You Break Encryption?” Clearing Up Misconceptions16:00 – Fixes & Mitigations Across LLM Vendors18:30 – Why Some Vendors Were More Vulnerable Than Others20:00 – Could High-End Adversaries Still Pull This Off?24:00 – How API Users Can Protect Themselves25:00 – Designing LLM Systems with Side Channels in MindGuests: Jonathan (JBO) Bar Or, Principal Security Researcher, Microsoft Threat Intelligence, who just joined CrowdStrikeHosts: Elliot Volkman & Neal Dennis Hosted on Acast. See acast.com/privacy for more information.
In this episode of Adopting Zero Trust, hosts Elliot Volkman and Neal Dennis discuss critical infrastructure security with expert guest Ian Branson, Vice President of Global Industrial Cybersecurity at Black and Veatch.The discussion centers around the philosophical and strategic approaches to handling incidents and breaches, especially in the operational technology (OT) realm. Branson highlights the importance of understanding what needs protection, the integration of IT and OT security, and the crucial role of threat intelligence. They also explore the evolving need for converging physical and digital security data to manage risks effectively. 01:37 Starting Point for Protecting Critical Infrastructure04:52 Funding and Resource Allocation for Cybersecurity10:57 Threat Intelligence and Incident Response16:25 IT and OT Convergence23:47 Discussing Employee and Equipment Management26:19 Integrating Physical and Cyber Security34:39 Proactive Security Measures in New Constructions40:46 Balancing Rapid Response and Availability Hosted on Acast. See acast.com/privacy for more information.
In this episode of Adoption Zero Trust (AZT), host Neal Dennis and producer Elliot Volkman sit down with Bradon Rogers, Chief Customer Officer at Island, to discuss how AI is compounding the already existing problems tied to shadow IT. The conversation explores how modern enterprises handle the growing complexities of unregulated software use, the role of enterprise browsers in mitigating risks, and the dynamic between user experience and cybersecurity.01:16 Shadows within shadows04:15 AI in Approved Solutions09:14 Enterprise Browser and Security14:25 Transition to Browser-Based Applications16:23 Enterprise Browser Capabilities18:45 Data Protection and Shadow IT24:39 Shepherding Data in the Enterprise Browser25:17 Policy Perspectives on AI and Data Flow28:16 Exploring SBOM and AI Integration35:39 Browser Security and Application Boundaries41:40 BYOD and Privacy Concerns44:48 Third-Party Scenarios and Onboarding Hosted on Acast. See acast.com/privacy for more information.
Catch this episode on YouTube, Apple, Spotify, or Amazon. You can read the show notes here.Live from ThreatLocker’s Zero Trust World (ZTW), cybersecurity heavyweights Dave Bittner, host of CyberWire Daily and Dr. Chase Cunningham AKA Dr. Zero Trust shared their unfiltered thoughts on the state of cybersecurity, AI, and government regulations. From the shifting landscape of compliance enforcement to the role of hitting critical mass of AI in both defense and cybercrime, we can expect an extraordinary level of change in the years ahead.01:37 Cybersecurity Landscape Overview01:58 Government and Cybersecurity02:39 Leadership and Appointments in Cybersecurity03:47 Future of CISA and Compliance06:41 Managing Cybersecurity News14:54 The Role of LLMs in Cybersecurity16:22 Global Perspective on AI and LLMs18:47 Reflecting on Past Technological Predictions20:18 The Double-Edged Sword of AI and Surveillance24:21 The Dark Side of Technological Advancements26:17 Debating the Term 'AI' and Its Implications28:43 Historical Anecdotes and Unanswered Questions Hosted on Acast. See acast.com/privacy for more information.







