Discover
Deploy Securely
47 Episodes
Reverse
I chatted with Mario Platt, Chief Information Security Officer at LastPass (and a StackAware client) about:- How to balance AI deployment speed with security and compliance- Blind spots companies face when using AI- Adapting to regulatory requirementsand a bunch more!Here is the LastPass 2026 State of AI and SaaS Security Report that Mario mentioned: https://www.lastpass.com/resources/reports/state-of-ai-and-saas-security-2026
For the September 2026 Aware AI Brief, Cameron and I talked about:How to turn AI policies into enforceable controlsWhat organizations should log with AI agentsWhat should trigger a review their permissionsWhat risk thresholds should justify ending a vendor relationshipWho should have authority to accept residual AI riskTransparency vs. explainabilityAI slop chic vs. plain old AI slop
For September's round-up, Steve and I chatted about:- Iran Integrates Artificial Intelligence into Air Defense Systems: https://wanaen.com/iran-integrates-artificial-intelligence-into-air-defense-systems/- OpenAI’s call for collective action on cyber defense: https://openai.com/collective-cyberdefense/- Artificial intelligence making scams harder to detect, experts warn: https://www.msn.com/en-us/news/other/artificial-intelligence-making-scams-harder-to-detect-experts-warn/ar-AA2blFZ1- OpenAI ending model access for Cursor after acquisition by SpaceX: https://www.cnbc.com/2026/08/29/openai-cursor-spacex-model-access.html- ‘Superhuman’ AI tool spots heart disease in less than 2 seconds: https://www.theguardian.com/technology/2026/aug/31/superhuman-ai-tool-spots-heart-disease
I recently had the chance to speak with Dan VanBeek, who runs governance, risk, and compliance at MarketAxess, a publicly-traded financial technology firm. It is also a StackAware customer. We chatted about how:Managing different AI modalities can create challenges for GRC teams.What the best practices are for dealing with tool and system requests.When it makes sense to seek help with AI governance.
For the August 2026 Aware AI Brief, Cameron and I talked about:- What makes an AI inventory useful and current.- How ISO 42001 works when organizations switch models.- Governing third-party AI tools you do not fully control.- AI transparency, disclosures, and defining "trustworthy" AI.- Which AI risk topics are over-, properly-, or under-rated.Here are the resources we discussed:- AI risk readiness kit: https://kit.stackaware.com/- Security and AI contractual addendum: https://docs.google.com/document/d/1841jerY4QNQ9X0hlXO8XC5kvWfAKeohAUivm_u3h3t0




