DiscoverSecurity Unfiltered
Security Unfiltered
Claim Ownership

Security Unfiltered

Author: Joe South

Subscribed: 58Played: 532
Share

Description

Cyber Security can be a difficult field to not only understand but to also navigate. Joe South is here to help with over a decade of experience across several domains of security. With this podcast I hope to help more people get into IT and Cyber Security as well as discussing modern day Cyber Security topics you may find in the daily news. Come join us as we learn and grow together!
283 Episodes
Reverse
Joe and Danielle discuss how AI has accelerated an already messy SaaS security problem, especially as employees connect more tools, more agents, and more data without centralized oversight. The conversation focuses on why traditional block or allow controls are breaking down, and how security teams can use agentic automation to reduce risk without slowing the business00:00 - Why AI adoption is moving faster than cloud and SaaS ever did01:20 - The professional pressure to skill up on AI now03:19 - How cloud security and SaaS security lagged behind adoption06:13 - Why organizations can’t simply say no to AI tools08:30 - The difference between cloud-era experimentation and today’s browser-based AI10:37 - Why AI security and SaaS security are becoming the same problem12:31 - Why traditional onboarding and vendor review processes don’t scale14:43 - The Salesforce example that exposed hidden risk in a large enterprise17:00 - Why most third-party risk programs only cover part of the estate19:07 - How decentralized tech adoption bypasses security workflows20:31 - Why OAuth grants and third-party integrations are a major attack path22:25 - Why attackers usually go after credentials and tokens, not zero days23:19 - How AI lowers the barrier to entry for attackers26:55 - Why defenders need agentic capabilities too28:16 - The scale of unmanaged OAuth grants inside enterprises30:26 - Why no one can hire enough people to review every grant manually31:53 - How agents can analyze risk and recommend revocation at scale33:33 - The reality check from customer conversations about AI visibility35:24 - How security people think when told they can’t do something38:16 - Reactance theory and why employees work around controls40:25 - Incentives matter more than policy slogans41:48 - Why binary block or allow controls create shadow IT43:30 - How Nudge Security approaches SaaS and AI as one workforce problem46:14 - Why a workforce edge model matters more than network or identity alone48:26 - What just-in-time policy decisions could look like in the browser50:10 - Why policy experience is as important as policy enforcement52:08 - Danielle on Nudge Security’s free trial and LinkedIn presenceAffiliates➡️ OffGrid Faraday Bags: https://offgrid.co/?ref=gabzvajh➡️ OffGrid Coupon Code: JOE➡️ Unplugged Phone: https://unplugged.com/Unplugged's UP Phone - The performance you expect, with the privacy you deserve. Meet the alternative. Use Code UNFILTERED at checkout*See terms and conditions at affiliated webpages. Offers are subject to change. These are affiliated/paid promotions.Tesla Referral Code: https://ts.la/joseph675128Follow the Podcast on Social Media!Instagram: https://www.instagram.com/secunfpodcast/Twitter: https://twitter.com/SecUnfPodcast
Joe talks with Dominik Richter, co-founder of Mondu, about how AI is changing security work, vulnerability management, and the expectations placed on technical teams. The conversation digs into why so many security workflows still produce noise instead of action, and why speed without quality creates more problems than it solves. They also explore what this means for hiring, junior talent, and the skills that will matter most as AI becomes embedded in day-to-day work.00:00 The Evolution of AI and Its Impact06:16 Challenges in Vulnerability Management13:00 The Role of AI in Security20:19 The Future of Work in an AI-Driven World21:09 Enhancing Productivity with AI29:41 The Evolving Role of Security Professionals40:16 Navigating the AI Landscape in Security48:52 Adapting to a Rapidly Changing Tech EnvironmentAffiliates➡️ OffGrid Faraday Bags: https://offgrid.co/?ref=gabzvajh➡️ OffGrid Coupon Code: JOE➡️ Unplugged Phone: https://unplugged.com/Unplugged's UP Phone - The performance you expect, with the privacy you deserve. Meet the alternative. Use Code UNFILTERED at checkout*See terms and conditions at affiliated webpages. Offers are subject to change. These are affiliated/paid promotions.Tesla Referral Code: https://ts.la/joseph675128Follow the Podcast on Social Media!Instagram: https://www.instagram.com/secunfpodcast/Twitter: https://twitter.com/SecUnfPodcast
Joe talks with Andrew Bud, founder of iProov, about how an engineer’s career across mobile communications, payments, and identity led to one of the early liveness technologies for secure remote authentication. The conversation ranges from entrepreneurship and resilience to deepfakes, digital identity wallets, and why proving a real human is present is becoming central to cybersecurity.00:00 The Importance of Family and Presence03:44 Andrew Bud's Journey in Technology09:40 The Entrepreneurial Mindset and Necessity15:28 Conviction vs. Delusion in Entrepreneurship23:11 Innovating Trust: The Birth of iProve27:55 Discovering the Core Problem29:17 The Rise of Authentication Technology30:26 Deepfakes and the Evolution of Threats35:19 The Challenge of Deepfake Detection38:56 Attribution and Accountability in the Digital Age44:51 Identity as a Defense Mechanism49:22 Cybersecurity and National DefenseAffiliates➡️ OffGrid Faraday Bags: https://offgrid.co/?ref=gabzvajh➡️ OffGrid Coupon Code: JOE➡️ Unplugged Phone: https://unplugged.com/Unplugged's UP Phone - The performance you expect, with the privacy you deserve. Meet the alternative. Use Code UNFILTERED at checkout*See terms and conditions at affiliated webpages. Offers are subject to change. These are affiliated/paid promotions.Tesla Referral Code: https://ts.la/joseph675128Follow the Podcast on Social Media!Instagram: https://www.instagram.com/secunfpodcast/Twitter: https://twitter.com/SecUnfPodcast
The conversation covers Mark's journey to the CIA, his language training, overseas assignments, and the challenges and unpredictability of his career. Mark shares insights into the preparation, language proficiency, and stress associated with overseas assignments, as well as the different roles and responsibilities within the CIA. The conversation delves into the impact of language training on CIA officers, the challenges of post-9/11 operations, the Iraq war and WMDs, and the historical context of Iran's relations with global powers. The discussion provides insights into the complexities of intelligence operations and geopolitical dynamics. The conversation delves into the history of Iran, focusing on the rise and fall of the Shahs and the country's pursuit of nuclear weapons. It explores the Shah's attempts to modernize Iran, the overthrow of Mossadegh, and the impact of the Iran-Iraq war. Additionally, it discusses the development of Iran's nuclear program and the decision-making process behind Iran's nuclear ambitions.TakeawaysLanguage training is a crucial part of CIA preparationOverseas assignments require extensive preparation and adaptation to real-time language use Language training is crucial for CIA officersPost-9/11 operations reshaped CIA priorities and focusThe Iraq war and WMDs had significant intelligence implicationsIran's historical context shapes its relations with global powers The complex history of Iran's political landscape and the role of the Shahs in modernizing the country.The motivations and implications of Iran's pursuit of nuclear weapons and the challenges it presents to global security.Chapters00:00 Introduction and Background01:00 Journey to the Agency03:10 Applying to the Agency04:04 Joining the Agency05:16 Challenges and Qualifications06:09 Language Training and Assignments07:26 Specializing in Farsi08:36 Roles in the CIA09:23 Senior Roles and Responsibilities10:20 Career Impact and Unpredictability11:08 Preparation for Overseas Assignments12:05 Language Training and Deployment13:45 Preparation for Denied Areas14:14 Cover and Role Preparation16:00 Language Learning and Proficiency17:17 Adapting to Real-Time Language Use18:14 Language Training and Stress19:30 Preparation for Overseas Assignments21:16 Language Training and Deployment22:50 Language Requirements for Different Countries24:26 Preparation for Overseas Assignments25:43 Language Training for Denied Areas26:58 Preparation for Overseas Assignments28:17 Language Proficiency and Role29:07 Adapting to Real-Time Language Use30:39 Language Learning and Proficiency31:57 Language Training and Adaptation36:00 Post 9/11 Operations and Iraq40:21 Impact of 9/11 on Operations47:36 Iraq and WMDs01:03:59 Iran's Historical Context01:08:13 The History of Iran01:18:28 Iran's Pursuit of Nuclear Weapons
Nudge Security: https://www.nudgesecurity.com/LinkedIn: https://www.linkedin.com/in/russell-spitler/In this episode, Joe chats with Russell Spitler from Nudge Security about the evolving landscape of AI, SaaS, and cybersecurity. They explore how rapid technological advancements are reshaping security challenges and solutions, especially with AI's increasing capabilities and integrations.00:00 - Russell’s cybersecurity origin story and early influences04:24 - The industry’s rapid expansion and current security workforce trends08:05 - How organizations struggle to manage SaaS security and AI integrations12:49 - The shared responsibility model in SaaS and AI platforms19:13 - How Nudge secures AI and SaaS ecosystems through API and browser insights22:39 - Challenges with agentic AI: delegation, access, and risk mitigation24:34 - The rise of agentic AI capabilities and security implications27:23 - The potential for AI to democratize security and development32:08 - Future of security automation and behavioral engagement strategies36:58 - Building secure, scalable AI security solutions compared to container security41:17 - The next phase: automation, policy enforcement, and behavioral redirects
loading
Comments