What if you could get a no-nonsense look at security solutions in just 15 minutes? Security You Should Know, the latest podcast from the CISO Series, does just that. Hosted by Rich Stroffolino, each episode brings together one security vendor and two security leaders to break down a real-world problem and the solution trying to fix it. Expect straight answers on: How to explain the issue to your CEO What the solution actually does (and doesn’t do) How the pricing model works Then, our securi ...
…
continue reading
Large language models are most useful to your business when they have access to your data. But these models also overshare by default, providing need-to-know information without sophisticated access controls. But organizations that try to limit the data accessed by an LLM risk undersharing within their organization, not giving the information users…
…
continue reading

1
Navigating Unauthorized Site Access with ThreatLocker
15:12
15:12
Play later
Play later
Lists
Like
Liked
15:12Unauthorized site access remains a significant security concern for organizations. But why does this issue persist, and how can it be effectively addressed? In this episode, Rob Allen, chief product officer at ThreatLocker, discusses the core functionality of ThreatLocker's Web Control solution: blocking access to unauthorized sites without meddlin…
…
continue reading

1
Getting Linux Visibility with Sandfly Security
18:18
18:18
Play later
Play later
Lists
Like
Liked
18:18Linux is the backbone of critical infrastructure, yet it often flies under the radar when it comes to endpoint monitoring. From legacy servers to embedded systems, Linux devices are frequently unprotected, either due to operational risk, overlooked assets, or the false assumption that Linux is “secure by default.” In this episode, Craig Rowland, fo…
…
continue reading

1
Solving Patch Management with ThreatLocker
17:28
17:28
Play later
Play later
Lists
Like
Liked
17:28For years, patch management has been treated as a solved problem—until reality strikes. Outdated applications, portable executables, patch conflicts, and shadow software leave organizations unknowingly exposed. The tools may exist, but the process often breaks down. In this episode, Rob Allen, chief product officer at ThreatLocker, discusses why th…
…
continue reading
Automated attacks are growing in speed and sophistication, far outpacing the human defenses most organizations rely on. Whether it’s credential stuffing, scraping, or denial-of-wallet attacks, bots can drain your resources before they even steal a cent. In this episode, Sam Crowther, founder of Kasada, discusses how their bot detection and mitigati…
…
continue reading

1
Containing Elevated Privileges with ThreatLocker
17:36
17:36
Play later
Play later
Lists
Like
Liked
17:36Managing privileged access across a sprawling IT environment remains one of cybersecurity’s toughest balancing acts. Admin privileges are often granted too broadly and retained for too long, opening dangerous pathways for lateral movement and ransomware. In this episode, Rob Allen, chief product officer at ThreatLocker, introduces their Elevation C…
…
continue reading
Security operations centers (SOCs) are drowning in alerts, forcing analysts to waste time chasing down false positives while real threats slip through. The problem isn’t just efficiency—it’s burnout, missed signals, and limits on what security teams can reasonably triage. In this episode, Edward Wu, CEO and founder of Dropzone AI, explains how thei…
…
continue reading

1
Securing Endpoints in a Hybrid World with ThreatLocker
16:22
16:22
Play later
Play later
Lists
Like
Liked
16:22Securing endpoints is a persistent challenge, especially in a hybrid working environment. The human factor is an unavoidable element with endpoint security, which means you have to be ready for a lot of unexpected behavior. Centrally managed policies for endpoints can only enhance security if they don’t compromise the flexibility the business needs…
…
continue reading
Customer security reviews often miss their mark, leaving organizations scrambling to compensate with extensive questionnaires that divert attention away from genuine risk management. The inconsistency of these processes and the lack of clear authority or visibility contribute to prolonged timelines and increased frustration. So, how can companies m…
…
continue reading

1
Getting Ahead of Compromised Credentials with Permiso Security
15:51
15:51
Play later
Play later
Lists
Like
Liked
15:51We hear all the time that identity is the new perimeter. If we place that much importance on identity, then compromised credentials can give away the keys to the kingdom. In an environment where hybrid infrastructures introduce visibility challenges, the need for advanced monitoring techniques for identities becomes clear. In this episode, Paul Ngu…
…
continue reading

1
Understanding Application Control with ThreatLocker
15:38
15:38
Play later
Play later
Lists
Like
Liked
15:38Managing application control amid increasing ransomware threats while not impeding business flow remains a challenge. Organizations need a layered defense to bolster their security posture without overinvesting in overlapping tooling. In this episode, Rob Allen, chief product officer at ThreatLocker, discusses how their deny-by-default approach to …
…
continue reading

1
Managing Compliance and Risk with Hyperproof
15:54
15:54
Play later
Play later
Lists
Like
Liked
15:54The tendency to focus on merely checking boxes to achieve compliance can lead to superficial solutions that may not effectively reduce operational risk. A strategic pivot towards ensuring compliance through holistic security measures is key; long-term, it demands less effort and provides more substantial protection. In this episode, Craig Unger, fo…
…
continue reading

1
Getting Visibility into SaaS with Nudge Security
16:26
16:26
Play later
Play later
Lists
Like
Liked
16:26SaaS visibility remains a mixed bag. Within company sanctioned tools we have visibility. But when it comes to visibility across tools, we struggle. And don't forget all of the SaaS apps your employees use that you don't know about. How do you start to address that SaaS visibility gap? In this episode, Russell Spitler, co-founder and CEO of Nudge Se…
…
continue reading

1
Securing the Software Supply Chain with HeroDevs
14:45
14:45
Play later
Play later
Lists
Like
Liked
14:45Open source is a bedrock of modern enterprise software. But support for various components is all over the place. The ecosystem doesn't have the right incentives in place, leading to end-of-life security issues many organizations aren't ready to address. When community support for open-source components dries up over time, what is your recourse? In…
…
continue reading

1
Prioritizing Your Security Gaps with Pentera
16:51
16:51
Play later
Play later
Lists
Like
Liked
16:51The velocity of innovation necessitates an agile approach to infrastructure management, which often leads to complexity and, consequently, vulnerabilities. Organizations are in a relentless race to identify and prioritize security gaps, but how can we effectively manage and mitigate these risks? In this episode, Jay Mar-Tang, field CISO at Pentera,…
…
continue reading

1
Getting Actionable Intelligence with Stellar Cyber
16:34
16:34
Play later
Play later
Lists
Like
Liked
16:34The sheer volume of security alerts and data being generated by various sources like firewalls, servers, and endpoint devices is daunting. The challenge lies in sifting through this vast amount of information to identify genuine threats without throwing manual effort at it. Traditional security logs merely tell us what happened but do not provide i…
…
continue reading

1
Address Data Loss from Insider Threats with DTEX Systems
15:18
15:18
Play later
Play later
Lists
Like
Liked
15:18Understanding and mitigating insider risk has taken a front seat in organizational security strategies. What once was a niche concern, we’re seeing significant escalation in insider threats, particularly from nation-state actors, with insiders becoming victims of coercion or identity theft. In this episode, Mohan Koo, president & co-founder, DTEX S…
…
continue reading
The fragmentation and vast amount of data generated from enterprise tools create a convoluted landscape for cybersecurity professionals to navigate. This complexity is exacerbated in large companies with dynamic environments, where innovation and growth must be balanced with the ever-present need for security. In this episode, Piyush Sharrma, CEO a…
…
continue reading
What if you could get a no-nonsense look at security solutions in just 15 minutes? Security You Should Know, the latest podcast from the CISO Series, does just that. Hosted by Rich Stroffolino, each episode brings together one security vendor and two security leaders to break down a real-world problem and the solution trying to fix it. Expect strai…
…
continue reading