HomePodcastDefense in Depth

Defense in Depth

DEFENSE IN DEPTH

How Should We Measure the Performance of a CISO?

How does the business determine what counts as success for a CISO? What warrants a raise in salary? Check out this post for the discussion...

How to Be Less Busy and More Effective in Cyber

There's no shortage of frameworks that offer ways to manage and configure your security program. While they may be providing some guidance, are they...

How to Engage With a CISO When They Express Interest

When a CISO walks up to a vendor booth, it should be a golden opportunity to connect. So why do so many vendors not...

Who is Responsible for the Conflict Between Security and Developers?

We know there's tension between security teams and developers. But where does this tension start? Is the constant friction between developers and security teams...

Are Your Security Tools Creating More Work for Your Team?

Security tools are supposed to solve problems and make our lives easier. Why does it seem like they're doing the opposite and creating more...

Why Overpromising is a Dangerous Sales Tactic

Cybersecurity sales lives and dies on trust. So why do so many vendors burn bridges just to get a foot in the door? Check out...

Should You Phish Your Employees or Not?

We know that phishing is a major threat vector. So why does it seem like phishing tests only make things worse? Check out this post...

How Much Autonomy Should You Give AI Agents in Your SOC?

Agentic AI was the buzzword of the year in 2025. Everyone wants to figure out how to use agents, but how do you know...

Cybersecurity’s Broken Hiring Process

Something is wrong with the math in the cybersecurity job market. If there are "millions" of unfilled jobs out there, why are so many...

Simple Security Solutions That Deliver a Big Impact

We all know what gets our attention in cybersecurity. But those big ticket flashy items are often not what pay the biggest dividends. What...

How Best to Prepare Your Data for Your Tools

If customers want cybersecurity vendors to solve a problem, it should be clear how to market the solution. Unfortunately, too many vendors are marketing...

How Best to Prepare Your Data for Your Tools

You can put practically anything into an LLM and the output will look acceptable if not fantastic. Unlike most things in technology, beautiful results...

Don’t Try to Win with Technical Expertise. Win by Partnering.

In security leadership, being right on a technical level only goes so far. How can we shift our mindset to embrace building consensus rather...

What Makes a Successful CISO?

It's pretty well established that the CISO's role is moving away from technical to that of a business leader. But all business leaders have...

How Should CISOs Talk to the Business

Most CISOs can talk tech inside and out. But when they have to communicate that to the business, the conversation doesn't flow nearly as...