<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0" xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd" xmlns:psc="http://podlove.org/simple-chapters" xmlns:podcast="https://podcastindex.org/namespace/1.0"><channel><title><![CDATA[Somaini's Trust Issues]]></title><description><![CDATA[<p>With constantly increasing threats, the need for Security to innovate faster is paramount.  With more than three decades in the Security industry, I've lived through these problems and been on the bleeding edge of our industry's innovation. </p><p></p><p>Join me as we dive into what new waves of innovation that are coming at us but also look at the founding teams that are in them.  Along the way, we'll talk to industry leading experts for their unique perspective on what's needed and where we need to go.</p>]]></description><link>somainistrustissues.com</link><generator>Riverside.fm (https://riverside.com)</generator><lastBuildDate>Fri, 12 Jun 2026 02:21:43 GMT</lastBuildDate><atom:link href="https://api.riverside.com/hosting/mR8VIJgB.rss" rel="self" type="application/rss+xml"/><author><![CDATA[Justin Somaini]]></author><pubDate>Tue, 04 Nov 2025 15:49:49 GMT</pubDate><copyright><![CDATA[2025 Justin Somaini]]></copyright><language><![CDATA[en]]></language><ttl>60</ttl><category><![CDATA[Business]]></category><category><![CDATA[Technology]]></category><itunes:author>Justin Somaini</itunes:author><itunes:summary>&lt;p&gt;With constantly increasing threats, the need for Security to innovate faster is paramount.  With more than three decades in the Security industry, I&apos;ve lived through these problems and been on the bleeding edge of our industry&apos;s innovation. &lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;Join me as we dive into what new waves of innovation that are coming at us but also look at the founding teams that are in them.  Along the way, we&apos;ll talk to industry leading experts for their unique perspective on what&apos;s needed and where we need to go.&lt;/p&gt;</itunes:summary><itunes:type>episodic</itunes:type><itunes:owner><itunes:name>Justin Somaini</itunes:name><itunes:email>justin@somaini.net</itunes:email></itunes:owner><itunes:explicit>no</itunes:explicit><itunes:category text="Business"/><itunes:category text="Technology"/><itunes:image href="https://hosting-media.riverside.com/media/podcasts/d12142d4-2233-4bd4-b386-701ab9656d07/logos/665271c7-01fb-4665-94f2-5345ab20a1e0.jpeg"/><item><title><![CDATA[EP 17: Jacques Benkoski (USVP)]]></title><description><![CDATA[<p>Discussion with Jacques Benkoski, General Partner at U.S. Venture Partners (USVP) and author of The Market Entry Strategy.</p><p></p><p>USVP: <a rel="noopener noreferrer nofollow" href="http://www.usvp.com" target="_blank"><b>http://www.usvp.com</b></a></p><p>Jacques Benkoski: <a rel="noopener noreferrer nofollow" href="https://www.linkedin.com/in/jacques-benkoski-ab9133/" target="_blank">https://www.linkedin.com/in/jacques-benkoski-ab9133/</a></p><p>The Market Entry Strategy: <a rel="noopener noreferrer nofollow" href="https://a.co/d/0b1W3euC" target="_blank">https://a.co/d/0b1W3euC</a></p><p></p><p><b>Support the show and Donate to NCMEC</b>: <a rel="noopener noreferrer nofollow" href="https://give.missingkids.org/TrustIssues" target="_blank">https://give.missingkids.org/TrustIssues</a></p><p></p><p><b>Summary</b></p><p>In this conversation, Justin Somaini interviews Jacques Benkoski, a general partner at US Venture Partners, discussing his extensive background in engineering and venture capital. They explore the evolution of cybersecurity innovations, the impact of AI on software development, and the intricacies of due diligence in venture capital investments. Jacques shares insights on the challenges entrepreneurs face, the changing landscape of technology, and the importance of understanding customer needs in the investment process. In this conversation, Jacques Benkoski and Justin Somaini discuss critical aspects of startup growth, particularly in the cybersecurity sector. They emphasize the importance of understanding unique value propositions, navigating market entry strategies, and recognizing valuation traps that can hinder a startup's success. The discussion also highlights the need for founders to be disciplined in their approach to funding and market differentiation, ensuring they target the right customers and avoid unnecessary pitfalls in their growth journey.</p><p></p><p><b>Chapters</b></p><p>00:00 Introduction to Jacques Benkoski and His Journey</p><p>08:04 Transitioning from Engineering to Venture Capital</p><p>12:09 The Evolution of Cybersecurity Innovations</p><p>19:59 AI's Impact on Software Development and Security</p><p>30:03 Due Diligence in Venture Capital Investments</p><p>34:57 Understanding Unique Value Propositions</p><p>46:11 Navigating Market Entry Strategies</p><p>55:14 Valuation Traps and Their Implications</p><p>62:44 Key Takeaways for Founders and Security Leaders</p><p></p><p>Keywords</p><p>venture capital, cybersecurity, AI, software development, market entry strategy, entrepreneurship, innovation, investment strategies, technology trends, business growth unique value proposition, market entry strategy, valuation traps, cybersecurity, startup funding, founder-led sales, go-to-market strategy, customer differentiation, venture capital, business growth</p>]]></description><guid isPermaLink="false">dea8a692-a6a5-4369-88f6-bb5b181f9c63</guid><dc:creator><![CDATA[Justin Somaini]]></dc:creator><pubDate>Thu, 11 Jun 2026 01:00:00 GMT</pubDate><enclosure url="https://api.riverside.com/hosting-analytics/media/6d10a3dc5cf80b0de00857159bb316ece5cc0c0f2796cc220d9132574406dd68/eyJlcGlzb2RlSWQiOiJkZWE4YTY5Mi1hNmE1LTQzNjktODhmNi1iYjViMTgxZjljNjMiLCJwb2RjYXN0SWQiOiJkMTIxNDJkNC0yMjMzLTRiZDQtYjM4Ni03MDFhYjk2NTZkMDciLCJhY2NvdW50SWQiOiI2OGU3Y2M1OWVjZmE2NTQ3OGNlODhkNTMiLCJwYXRoIjoibWVkaWEvY2xpcHMvNmEyOWIwMzQ0YmZjMjAzYTQ5YTBjNjgzL2p1c3Rpbi1zb21haW5pcy1zdHVkaW8tY29tcG9zZXItMjAyNi02LTEwX18yMC00My0wLm1wMyJ9.mp3" length="130023906" type="audio/mpeg"/><podcast:transcript url="https://hosting-media.riverside.com/media/podcasts/d12142d4-2233-4bd4-b386-701ab9656d07/episodes/dea8a692-a6a5-4369-88f6-bb5b181f9c63/transcripts.txt" type="text/plain"/><itunes:summary>&lt;p&gt;Discussion with Jacques Benkoski, General Partner at U.S. Venture Partners (USVP) and author of The Market Entry Strategy.&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;USVP: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;http://www.usvp.com&quot; target=&quot;_blank&quot;&gt;&lt;b&gt;http://www.usvp.com&lt;/b&gt;&lt;/a&gt;&lt;/p&gt;&lt;p&gt;Jacques Benkoski: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://www.linkedin.com/in/jacques-benkoski-ab9133/&quot; target=&quot;_blank&quot;&gt;https://www.linkedin.com/in/jacques-benkoski-ab9133/&lt;/a&gt;&lt;/p&gt;&lt;p&gt;The Market Entry Strategy: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://a.co/d/0b1W3euC&quot; target=&quot;_blank&quot;&gt;https://a.co/d/0b1W3euC&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Support the show and Donate to NCMEC&lt;/b&gt;: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://give.missingkids.org/TrustIssues&quot; target=&quot;_blank&quot;&gt;https://give.missingkids.org/TrustIssues&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Summary&lt;/b&gt;&lt;/p&gt;&lt;p&gt;In this conversation, Justin Somaini interviews Jacques Benkoski, a general partner at US Venture Partners, discussing his extensive background in engineering and venture capital. They explore the evolution of cybersecurity innovations, the impact of AI on software development, and the intricacies of due diligence in venture capital investments. Jacques shares insights on the challenges entrepreneurs face, the changing landscape of technology, and the importance of understanding customer needs in the investment process. In this conversation, Jacques Benkoski and Justin Somaini discuss critical aspects of startup growth, particularly in the cybersecurity sector. They emphasize the importance of understanding unique value propositions, navigating market entry strategies, and recognizing valuation traps that can hinder a startup&apos;s success. The discussion also highlights the need for founders to be disciplined in their approach to funding and market differentiation, ensuring they target the right customers and avoid unnecessary pitfalls in their growth journey.&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Chapters&lt;/b&gt;&lt;/p&gt;&lt;p&gt;00:00 Introduction to Jacques Benkoski and His Journey&lt;/p&gt;&lt;p&gt;08:04 Transitioning from Engineering to Venture Capital&lt;/p&gt;&lt;p&gt;12:09 The Evolution of Cybersecurity Innovations&lt;/p&gt;&lt;p&gt;19:59 AI&apos;s Impact on Software Development and Security&lt;/p&gt;&lt;p&gt;30:03 Due Diligence in Venture Capital Investments&lt;/p&gt;&lt;p&gt;34:57 Understanding Unique Value Propositions&lt;/p&gt;&lt;p&gt;46:11 Navigating Market Entry Strategies&lt;/p&gt;&lt;p&gt;55:14 Valuation Traps and Their Implications&lt;/p&gt;&lt;p&gt;62:44 Key Takeaways for Founders and Security Leaders&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;Keywords&lt;/p&gt;&lt;p&gt;venture capital, cybersecurity, AI, software development, market entry strategy, entrepreneurship, innovation, investment strategies, technology trends, business growth unique value proposition, market entry strategy, valuation traps, cybersecurity, startup funding, founder-led sales, go-to-market strategy, customer differentiation, venture capital, business growth&lt;/p&gt;</itunes:summary><itunes:explicit>no</itunes:explicit><itunes:duration>01:07:43</itunes:duration><itunes:image href="https://hosting-media.riverside.com/media/podcasts/d12142d4-2233-4bd4-b386-701ab9656d07/logos/665271c7-01fb-4665-94f2-5345ab20a1e0.jpeg"/><itunes:season>1</itunes:season><itunes:episode>17</itunes:episode><itunes:title>EP 17: Jacques Benkoski (USVP)</itunes:title><itunes:episodeType>full</itunes:episodeType></item><item><title><![CDATA[EP 16: Opal]]></title><description><![CDATA[<p>Discussion with Howard Ting, CEO and Co-Founder at Opal Security </p><p></p><p>Opal: <a rel="noopener noreferrer nofollow" href="http://opal.dev" target="_blank">opal.dev</a></p><p>Howard Ting: <a rel="noopener noreferrer nofollow" href="https://www.linkedin.com/in/howardting/" target="_blank">https://www.linkedin.com/in/howardting/</a></p><p><br /><b>Support the show and Donate to NCMEC</b>: <a rel="noopener noreferrer nofollow" href="https://give.missingkids.org/TrustIssues" target="_blank">https://give.missingkids.org/TrustIssues</a></p><p></p><p><b>Summary</b></p><p>In this conversation, Howard Ting, CEO of Opal, discusses the evolution of identity and access management, sharing insights from his extensive career in cybersecurity. He highlights the challenges of managing access and authorization, particularly in the context of modern development practices and the rise of non-human identities. Ting emphasizes the need for a unified access platform that can handle both human and agent identities, advocating for just-in-time access management and fine-grained authorization to enhance security and efficiency in organizations. In this conversation, Justin Somaini discusses the evolving landscape of identity and access management, emphasizing the importance of automation, AI integration, and continuous auditing. He highlights the shift towards just-in-time access models and the need for organizations to adapt to the increasing complexity of managing both human and non-human identities. The discussion also touches on the challenges of delegating authority to agents and the future of company building in a rapidly changing technological environment.</p><p></p><p><b>Chapters</b></p><p>00:00 Introduction to Identity Management Challenges</p><p>03:13 Howard Ting's Journey in Identity and Cybersecurity</p><p>05:55 The Evolution of Authorization and Identity Solutions</p><p>09:04 The Shift Towards Just-in-Time Access Management</p><p>11:49 Understanding the Role of Agents in Identity Management</p><p>15:02 The Future of Authorization: Fine-Grained Control</p><p>17:53 Building a Unified Access Platform</p><p>21:07 Integrating Identity Solutions in Modern Enterprises</p><p>23:56 Automating Access Management Processes</p><p>29:27 Automating Access Management Workflows</p><p>33:29 Just-in-Time Access and AI Integration</p><p>36:17 Continuous Auditing and Risk Management</p><p>39:40 The Evolution of Identity and Access Management</p><p>42:52 AI's Role in Identity Management</p><p>47:12 Navigating Non-Human Identities</p><p>51:57 Delegating Authority to Agents</p><p>56:06 The Future of Company Building and Identity Management</p><p></p><p>Keywords</p><p>identity management, access control, authorization, cybersecurity, just-in-time access, identity governance, cloud security, fine-grained permissions, automation, identity solutions identity management, access control, AI integration, just-in-time access, continuous auditing, non-human identities, agentic identities, automation, risk management, security innovation</p>]]></description><guid isPermaLink="false">a06fc281-706c-435a-9d0c-2ad2550c1905</guid><dc:creator><![CDATA[Justin Somaini]]></dc:creator><pubDate>Thu, 04 Jun 2026 00:15:00 GMT</pubDate><enclosure url="https://api.riverside.com/hosting-analytics/media/44722f0e6e4bdc1072fcdcd1d590df5c05cf0cc6abd0cfbc576db3f9b2bf1bc1/eyJlcGlzb2RlSWQiOiJhMDZmYzI4MS03MDZjLTQzNWEtOWQwYy0yYWQyNTUwYzE5MDUiLCJwb2RjYXN0SWQiOiJkMTIxNDJkNC0yMjMzLTRiZDQtYjM4Ni03MDFhYjk2NTZkMDciLCJhY2NvdW50SWQiOiI2OGU3Y2M1OWVjZmE2NTQ3OGNlODhkNTMiLCJwYXRoIjoibWVkaWEvY2xpcHMvNmEyMGE3MjYxNjVhYzIwMTk3Y2IwYTk5L2p1c3Rpbi1zb21haW5pcy1zdHVkaW8tY29tcG9zZXItMjAyNi02LTRfXzAtMTMtNTgubXAzIn0=.mp3" length="112750489" type="audio/mpeg"/><podcast:transcript url="https://hosting-media.riverside.com/media/podcasts/d12142d4-2233-4bd4-b386-701ab9656d07/episodes/a06fc281-706c-435a-9d0c-2ad2550c1905/transcripts.txt" type="text/plain"/><itunes:summary>&lt;p&gt;Discussion with Howard Ting, CEO and Co-Founder at Opal Security &lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;Opal: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;http://opal.dev&quot; target=&quot;_blank&quot;&gt;opal.dev&lt;/a&gt;&lt;/p&gt;&lt;p&gt;Howard Ting: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://www.linkedin.com/in/howardting/&quot; target=&quot;_blank&quot;&gt;https://www.linkedin.com/in/howardting/&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;br /&gt;&lt;b&gt;Support the show and Donate to NCMEC&lt;/b&gt;: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://give.missingkids.org/TrustIssues&quot; target=&quot;_blank&quot;&gt;https://give.missingkids.org/TrustIssues&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Summary&lt;/b&gt;&lt;/p&gt;&lt;p&gt;In this conversation, Howard Ting, CEO of Opal, discusses the evolution of identity and access management, sharing insights from his extensive career in cybersecurity. He highlights the challenges of managing access and authorization, particularly in the context of modern development practices and the rise of non-human identities. Ting emphasizes the need for a unified access platform that can handle both human and agent identities, advocating for just-in-time access management and fine-grained authorization to enhance security and efficiency in organizations. In this conversation, Justin Somaini discusses the evolving landscape of identity and access management, emphasizing the importance of automation, AI integration, and continuous auditing. He highlights the shift towards just-in-time access models and the need for organizations to adapt to the increasing complexity of managing both human and non-human identities. The discussion also touches on the challenges of delegating authority to agents and the future of company building in a rapidly changing technological environment.&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Chapters&lt;/b&gt;&lt;/p&gt;&lt;p&gt;00:00 Introduction to Identity Management Challenges&lt;/p&gt;&lt;p&gt;03:13 Howard Ting&apos;s Journey in Identity and Cybersecurity&lt;/p&gt;&lt;p&gt;05:55 The Evolution of Authorization and Identity Solutions&lt;/p&gt;&lt;p&gt;09:04 The Shift Towards Just-in-Time Access Management&lt;/p&gt;&lt;p&gt;11:49 Understanding the Role of Agents in Identity Management&lt;/p&gt;&lt;p&gt;15:02 The Future of Authorization: Fine-Grained Control&lt;/p&gt;&lt;p&gt;17:53 Building a Unified Access Platform&lt;/p&gt;&lt;p&gt;21:07 Integrating Identity Solutions in Modern Enterprises&lt;/p&gt;&lt;p&gt;23:56 Automating Access Management Processes&lt;/p&gt;&lt;p&gt;29:27 Automating Access Management Workflows&lt;/p&gt;&lt;p&gt;33:29 Just-in-Time Access and AI Integration&lt;/p&gt;&lt;p&gt;36:17 Continuous Auditing and Risk Management&lt;/p&gt;&lt;p&gt;39:40 The Evolution of Identity and Access Management&lt;/p&gt;&lt;p&gt;42:52 AI&apos;s Role in Identity Management&lt;/p&gt;&lt;p&gt;47:12 Navigating Non-Human Identities&lt;/p&gt;&lt;p&gt;51:57 Delegating Authority to Agents&lt;/p&gt;&lt;p&gt;56:06 The Future of Company Building and Identity Management&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;Keywords&lt;/p&gt;&lt;p&gt;identity management, access control, authorization, cybersecurity, just-in-time access, identity governance, cloud security, fine-grained permissions, automation, identity solutions identity management, access control, AI integration, just-in-time access, continuous auditing, non-human identities, agentic identities, automation, risk management, security innovation&lt;/p&gt;</itunes:summary><itunes:explicit>no</itunes:explicit><itunes:duration>00:58:43</itunes:duration><itunes:image href="https://hosting-media.riverside.com/media/podcasts/d12142d4-2233-4bd4-b386-701ab9656d07/logos/665271c7-01fb-4665-94f2-5345ab20a1e0.jpeg"/><itunes:season>1</itunes:season><itunes:episode>16</itunes:episode><itunes:title>EP 16: Opal</itunes:title><itunes:episodeType>full</itunes:episodeType></item><item><title><![CDATA[EP 15: Alex Pinto]]></title><description><![CDATA[<p>Discussion with Alex Pinto, Associate Director at Verizon and Manager of the Verizon DBIR report.</p><p></p><p>Verizon DBIR: <a rel="noopener noreferrer nofollow" href="https://www.verizon.com/business/resources/reports/dbir/" target="_blank">https://www.verizon.com/business/resources/reports/dbir/</a></p><p>Alex Pinto: <a rel="noopener noreferrer nofollow" href="https://www.linkedin.com/in/alexcpsec/" target="_blank">https://www.linkedin.com/in/alexcpsec/</a></p><p></p><p><b>Support the show and Donate to NCMEC</b>: <a rel="noopener noreferrer nofollow" href="https://give.missingkids.org/TrustIssues" target="_blank">https://give.missingkids.org/TrustIssues</a></p><p></p><p><b>Summary</b></p><p>In this conversation, Justin Somaini speaks with Alex Pinto, the Associate Director of Threat Intelligence at Verizon, about the Verizon Data Breach Investigations Report (DBIR). They discuss Alex's background in cybersecurity, the importance of the DBIR in guiding security programs, and the extensive data collection process that informs the report. The conversation also delves into current trends in cybersecurity, particularly the rise in exploitation of vulnerabilities and the challenges of vulnerability management. Alex emphasizes the need for collaboration and data sharing in the cybersecurity community to effectively combat threats. In this conversation, Justin Somaini discusses the evolving landscape of cybersecurity, focusing on the distinctions between phishing and pretexting, the rise of social engineering attacks, and the impact of AI on cyber threats. He emphasizes the importance of understanding human factors in security processes and the necessity of robust controls like MFA and effective backup strategies. The discussion also highlights the need for innovation in defensive measures and the importance of community collaboration in addressing cybersecurity challenges.</p><p></p><p><b>Chapters</b></p><p>00:00 Introduction to Trust Issues and Guest Background</p><p>09:46 The Verizon DBIR Report: Overview and Importance</p><p>19:45 Data Collection and Collaboration for the DBIR</p><p>29:52 Trends in Cybersecurity: Vulnerability Management and Exploitation</p><p>37:47 Initial Access Vectors: Credential Theft and Pretexting</p><p>40:09 Understanding Phishing and Pretexting</p><p>43:04 The Evolution of Social Engineering Attacks</p><p>48:44 The Role of AI in Cybersecurity Threats</p><p>55:44 Innovations in Cyber Defense</p><p>61:45 Key Controls for Effective Cyber Defense</p><p>69:40 The Future of Cybersecurity and Community Collaboration</p><p></p><p>Keywords</p><p>cybersecurity, Verizon DBIR, threat intelligence, vulnerability management, data analysis, initial access, credential theft, pretexting, machine learning, security trends phishing, pretexting, social engineering, AI in cybersecurity, cyber defense, ransomware, MFA, vulnerability management, cybersecurity trends, community collaboration</p>]]></description><guid isPermaLink="false">41574e2f-044d-4696-9a84-7f30c7c3fe4f</guid><dc:creator><![CDATA[Justin Somaini]]></dc:creator><pubDate>Fri, 22 May 2026 00:38:33 GMT</pubDate><enclosure url="https://api.riverside.com/hosting-analytics/media/32ed24eebed7a9016bb53e84291f2bfbc93fec2c3d15e3db0cb660c0bddd2308/eyJlcGlzb2RlSWQiOiI0MTU3NGUyZi0wNDRkLTQ2OTYtOWE4NC03ZjMwYzdjM2ZlNGYiLCJwb2RjYXN0SWQiOiJkMTIxNDJkNC0yMjMzLTRiZDQtYjM4Ni03MDFhYjk2NTZkMDciLCJhY2NvdW50SWQiOiI2OGU3Y2M1OWVjZmE2NTQ3OGNlODhkNTMiLCJwYXRoIjoibWVkaWEvY2xpcHMvNmEwZjliYWU1YmY2OTk4OGNkNjVkYjExL2p1c3Rpbi1zb21haW5pcy1zdHVkaW8tY29tcG9zZXItMjAyNi01LTIyX18xLTU2LTMwLm1wMyJ9.mp3" length="152085463" type="audio/mpeg"/><podcast:transcript url="https://hosting-media.riverside.com/media/podcasts/d12142d4-2233-4bd4-b386-701ab9656d07/episodes/41574e2f-044d-4696-9a84-7f30c7c3fe4f/transcripts.txt" type="text/plain"/><itunes:summary>&lt;p&gt;Discussion with Alex Pinto, Associate Director at Verizon and Manager of the Verizon DBIR report.&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;Verizon DBIR: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://www.verizon.com/business/resources/reports/dbir/&quot; target=&quot;_blank&quot;&gt;https://www.verizon.com/business/resources/reports/dbir/&lt;/a&gt;&lt;/p&gt;&lt;p&gt;Alex Pinto: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://www.linkedin.com/in/alexcpsec/&quot; target=&quot;_blank&quot;&gt;https://www.linkedin.com/in/alexcpsec/&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Support the show and Donate to NCMEC&lt;/b&gt;: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://give.missingkids.org/TrustIssues&quot; target=&quot;_blank&quot;&gt;https://give.missingkids.org/TrustIssues&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Summary&lt;/b&gt;&lt;/p&gt;&lt;p&gt;In this conversation, Justin Somaini speaks with Alex Pinto, the Associate Director of Threat Intelligence at Verizon, about the Verizon Data Breach Investigations Report (DBIR). They discuss Alex&apos;s background in cybersecurity, the importance of the DBIR in guiding security programs, and the extensive data collection process that informs the report. The conversation also delves into current trends in cybersecurity, particularly the rise in exploitation of vulnerabilities and the challenges of vulnerability management. Alex emphasizes the need for collaboration and data sharing in the cybersecurity community to effectively combat threats. In this conversation, Justin Somaini discusses the evolving landscape of cybersecurity, focusing on the distinctions between phishing and pretexting, the rise of social engineering attacks, and the impact of AI on cyber threats. He emphasizes the importance of understanding human factors in security processes and the necessity of robust controls like MFA and effective backup strategies. The discussion also highlights the need for innovation in defensive measures and the importance of community collaboration in addressing cybersecurity challenges.&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Chapters&lt;/b&gt;&lt;/p&gt;&lt;p&gt;00:00 Introduction to Trust Issues and Guest Background&lt;/p&gt;&lt;p&gt;09:46 The Verizon DBIR Report: Overview and Importance&lt;/p&gt;&lt;p&gt;19:45 Data Collection and Collaboration for the DBIR&lt;/p&gt;&lt;p&gt;29:52 Trends in Cybersecurity: Vulnerability Management and Exploitation&lt;/p&gt;&lt;p&gt;37:47 Initial Access Vectors: Credential Theft and Pretexting&lt;/p&gt;&lt;p&gt;40:09 Understanding Phishing and Pretexting&lt;/p&gt;&lt;p&gt;43:04 The Evolution of Social Engineering Attacks&lt;/p&gt;&lt;p&gt;48:44 The Role of AI in Cybersecurity Threats&lt;/p&gt;&lt;p&gt;55:44 Innovations in Cyber Defense&lt;/p&gt;&lt;p&gt;61:45 Key Controls for Effective Cyber Defense&lt;/p&gt;&lt;p&gt;69:40 The Future of Cybersecurity and Community Collaboration&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;Keywords&lt;/p&gt;&lt;p&gt;cybersecurity, Verizon DBIR, threat intelligence, vulnerability management, data analysis, initial access, credential theft, pretexting, machine learning, security trends phishing, pretexting, social engineering, AI in cybersecurity, cyber defense, ransomware, MFA, vulnerability management, cybersecurity trends, community collaboration&lt;/p&gt;</itunes:summary><itunes:explicit>no</itunes:explicit><itunes:duration>01:19:13</itunes:duration><itunes:image href="https://hosting-media.riverside.com/media/podcasts/d12142d4-2233-4bd4-b386-701ab9656d07/logos/665271c7-01fb-4665-94f2-5345ab20a1e0.jpeg"/><itunes:season>1</itunes:season><itunes:episode>15</itunes:episode><itunes:title>EP 15: Alex Pinto</itunes:title><itunes:episodeType>full</itunes:episodeType></item><item><title><![CDATA[EP 14: Opti]]></title><description><![CDATA[<p>Discussion with Barak Perelman, CEO and Co-Founder at Opti </p><p></p><p>Opti: <a rel="noopener noreferrer nofollow" href="https://opti.ai" target="_blank">https://opti.ai</a></p><p>Barak Perelman: <a rel="noopener noreferrer nofollow" href="https://www.linkedin.com/in/barakperelman/" target="_blank">https://www.linkedin.com/in/barakperelman/</a></p><p></p><p><b>Support the show and Donate to NCMEC</b>: <a rel="noopener noreferrer nofollow" href="https://give.missingkids.org/TrustIssues" target="_blank">https://give.missingkids.org/TrustIssues</a></p><p></p><p><b>Summary</b></p><p>In this conversation, Justin Somaini and Barak Perelman discuss the evolving landscape of Identity and Access Management (IAM) and the founding of Opti, a company aimed at revolutionizing this space. They explore the challenges and opportunities within the cybersecurity market, particularly focusing on critical infrastructure vulnerabilities and the role of AI in enhancing security solutions. The discussion highlights the importance of understanding authorization, the need for entitlement intelligence, and the unique approach Opti takes to streamline identity management processes. In this conversation, Justin Somaini discusses the complexities of identity and access management, focusing on the challenges of navigating various authorization models and the role of automation in streamlining processes. He emphasizes the importance of context in access reviews and the need for robust AI infrastructure to enhance security measures. The discussion also touches on real-world outcomes of implementing identity solutions and how to differentiate in a competitive landscape, ultimately highlighting the future of identity management as a critical area for organizations to address.</p><p></p><p><b>Chapters</b></p><p>00:00 The Evolving Landscape of Identity and Access Management</p><p>10:05 Founding Opti: A Journey Through Cybersecurity</p><p>19:59 Understanding the Identity and Access Management Market</p><p>29:54 Opti's Approach to Identity and Access Management</p><p>30:23 Navigating Authorization Models</p><p>35:08 The Role of Automation in Identity Management</p><p>39:18 Challenges of Access Management</p><p>43:13 The Importance of Context in Access Reviews</p><p>47:54 Building AI Infrastructure for Identity Management</p><p>52:16 Real-World Outcomes of Identity Solutions</p><p>55:38 Differentiating in a Competitive Landscape</p><p>60:00 The Future of Identity and Access Management</p><p></p><p>Keywords</p><p>Identity Management, Access Management, Cybersecurity, AI Security, Opti, Authorization, Compliance, Technology, Critical Infrastructure, Automation identity management, access control, automation, security, AI, authorization models, compliance, risk management, enterprise security, user access reviews</p>]]></description><guid isPermaLink="false">f35cb922-757e-4966-a92a-f5dae908bc41</guid><dc:creator><![CDATA[Justin Somaini]]></dc:creator><pubDate>Thu, 14 May 2026 00:43:34 GMT</pubDate><enclosure url="https://api.riverside.com/hosting-analytics/media/35596c707df9be544803fdb8045a46feb78d79edd1450165af6f6a05c7dc836f/eyJlcGlzb2RlSWQiOiJmMzVjYjkyMi03NTdlLTQ5NjYtYTkyYS1mNWRhZTkwOGJjNDEiLCJwb2RjYXN0SWQiOiJkMTIxNDJkNC0yMjMzLTRiZDQtYjM4Ni03MDFhYjk2NTZkMDciLCJhY2NvdW50SWQiOiI2OGU3Y2M1OWVjZmE2NTQ3OGNlODhkNTMiLCJwYXRoIjoibWVkaWEvY2xpcHMvNmEwNTE2MjE3NzAxOTJkODM1NjM0NzI0L2p1c3Rpbi1zb21haW5pcy1zdHVkaW8tY29tcG9zZXItMjAyNi01LTE0X18yLTI0LTAubXAzIn0=.mp3" length="116882433" type="audio/mpeg"/><podcast:transcript url="https://hosting-media.riverside.com/media/podcasts/d12142d4-2233-4bd4-b386-701ab9656d07/episodes/f35cb922-757e-4966-a92a-f5dae908bc41/transcripts.txt" type="text/plain"/><itunes:summary>&lt;p&gt;Discussion with Barak Perelman, CEO and Co-Founder at Opti &lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;Opti: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://opti.ai&quot; target=&quot;_blank&quot;&gt;https://opti.ai&lt;/a&gt;&lt;/p&gt;&lt;p&gt;Barak Perelman: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://www.linkedin.com/in/barakperelman/&quot; target=&quot;_blank&quot;&gt;https://www.linkedin.com/in/barakperelman/&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Support the show and Donate to NCMEC&lt;/b&gt;: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://give.missingkids.org/TrustIssues&quot; target=&quot;_blank&quot;&gt;https://give.missingkids.org/TrustIssues&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Summary&lt;/b&gt;&lt;/p&gt;&lt;p&gt;In this conversation, Justin Somaini and Barak Perelman discuss the evolving landscape of Identity and Access Management (IAM) and the founding of Opti, a company aimed at revolutionizing this space. They explore the challenges and opportunities within the cybersecurity market, particularly focusing on critical infrastructure vulnerabilities and the role of AI in enhancing security solutions. The discussion highlights the importance of understanding authorization, the need for entitlement intelligence, and the unique approach Opti takes to streamline identity management processes. In this conversation, Justin Somaini discusses the complexities of identity and access management, focusing on the challenges of navigating various authorization models and the role of automation in streamlining processes. He emphasizes the importance of context in access reviews and the need for robust AI infrastructure to enhance security measures. The discussion also touches on real-world outcomes of implementing identity solutions and how to differentiate in a competitive landscape, ultimately highlighting the future of identity management as a critical area for organizations to address.&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Chapters&lt;/b&gt;&lt;/p&gt;&lt;p&gt;00:00 The Evolving Landscape of Identity and Access Management&lt;/p&gt;&lt;p&gt;10:05 Founding Opti: A Journey Through Cybersecurity&lt;/p&gt;&lt;p&gt;19:59 Understanding the Identity and Access Management Market&lt;/p&gt;&lt;p&gt;29:54 Opti&apos;s Approach to Identity and Access Management&lt;/p&gt;&lt;p&gt;30:23 Navigating Authorization Models&lt;/p&gt;&lt;p&gt;35:08 The Role of Automation in Identity Management&lt;/p&gt;&lt;p&gt;39:18 Challenges of Access Management&lt;/p&gt;&lt;p&gt;43:13 The Importance of Context in Access Reviews&lt;/p&gt;&lt;p&gt;47:54 Building AI Infrastructure for Identity Management&lt;/p&gt;&lt;p&gt;52:16 Real-World Outcomes of Identity Solutions&lt;/p&gt;&lt;p&gt;55:38 Differentiating in a Competitive Landscape&lt;/p&gt;&lt;p&gt;60:00 The Future of Identity and Access Management&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;Keywords&lt;/p&gt;&lt;p&gt;Identity Management, Access Management, Cybersecurity, AI Security, Opti, Authorization, Compliance, Technology, Critical Infrastructure, Automation identity management, access control, automation, security, AI, authorization models, compliance, risk management, enterprise security, user access reviews&lt;/p&gt;</itunes:summary><itunes:explicit>no</itunes:explicit><itunes:duration>01:00:52</itunes:duration><itunes:image href="https://hosting-media.riverside.com/media/podcasts/d12142d4-2233-4bd4-b386-701ab9656d07/logos/665271c7-01fb-4665-94f2-5345ab20a1e0.jpeg"/><itunes:season>1</itunes:season><itunes:episode>14</itunes:episode><itunes:title>EP 14: Opti</itunes:title><itunes:episodeType>full</itunes:episodeType></item><item><title><![CDATA[EP 13: Spectrum]]></title><description><![CDATA[<p>Discussion with Meny Har, CEO and Co-Founder at Spectrum Security </p><p></p><p>Spectrum Security: <a rel="noopener noreferrer nofollow" href="https://spectrum.security" target="_blank"><b>https://spectrum.security</b></a></p><p>Meny Har: <a rel="noopener noreferrer nofollow" href="https://www.linkedin.com/in/meny-har/" target="_blank">https://www.linkedin.com/in/meny-har/</a></p><p></p><p><b>Support the show and Donate to NCMEC</b>: <a rel="noopener noreferrer nofollow" href="https://give.missingkids.org/TrustIssues" target="_blank">https://give.missingkids.org/TrustIssues</a></p><p></p><p><b>Summary</b></p><p>In this conversation, Justin Somaini speaks with Meny Har, CEO and co-founder of Spectrum, about the challenges and evolution of detection tools in cybersecurity. They discuss the importance of expecting more from detection tools, the journey of founding startups, and the lessons learned along the way. Meny shares insights on navigating the VC landscape, the mission of Spectrum in detection engineering, and the challenges organizations face in maintaining effective detection and response systems. The conversation emphasizes the need for proactive detection and the future of cybersecurity. In this conversation, Justin Somaini discusses the complexities and challenges of detection engineering in cybersecurity. He emphasizes the importance of contextual understanding, integration, and automation in improving detection capabilities. The conversation also touches on the need for organizations to expect more from their detection tools and the potential for convergence in the SOC space. Somaini highlights the role of AI in enhancing detection processes and reducing false positives, ultimately aiming for a more efficient and effective security landscape.</p><p></p><p><b>Chapters</b></p><p>00:00 Expecting More from Detection Tools</p><p>03:05 Meny Har's Journey in Cybersecurity</p><p>05:53 Lessons Learned from Founding Startups</p><p>09:14 The Importance of Problem Validation</p><p>12:09 Navigating the VC Landscape</p><p>14:59 Spectrum's Mission in Detection Engineering</p><p>17:49 Challenges in Detection and Response</p><p>21:05 The Future of Detection in Cybersecurity</p><p>26:43 Understanding Detection Engineering Challenges</p><p>29:03 Integration and Automation in Detection</p><p>32:57 Contextual Understanding for Effective Detection</p><p>36:17 Reducing False Positives and Improving Confidence</p><p>41:28 The Future of Detection and SOC Convergence</p><p>46:13 Surprises in Detection Engineering</p><p>52:08 Expecting More from Detection Tools</p><p></p><p>Keywords</p><p>detection tools, cybersecurity, startup journey, AI in security, VC funding, problem validation, detection engineering, Spectrum, cybersecurity challenges, proactive detection detection engineering, automation, integration, false positives, SOC convergence, contextual understanding, AI in security, detection tools, risk management, cybersecurity</p>]]></description><guid isPermaLink="false">0d31196f-727f-4aad-ad1b-aa4cf3d3d0ee</guid><dc:creator><![CDATA[Justin Somaini]]></dc:creator><pubDate>Thu, 07 May 2026 00:15:00 GMT</pubDate><enclosure url="https://api.riverside.com/hosting-analytics/media/34ba8c5dcd37ce26f1c98ed6aa9ce7bd52d9232139b2302be337aab7d408425d/eyJlcGlzb2RlSWQiOiIwZDMxMTk2Zi03MjdmLTRhYWQtYWQxYi1hYTRjZjNkM2QwZWUiLCJwb2RjYXN0SWQiOiJkMTIxNDJkNC0yMjMzLTRiZDQtYjM4Ni03MDFhYjk2NTZkMDciLCJhY2NvdW50SWQiOiI2OGU3Y2M1OWVjZmE2NTQ3OGNlODhkNTMiLCJwYXRoIjoibWVkaWEvY2xpcHMvNjlmYjg1ZjBiOWM0ODgxMmQ1ODAzMDE2L2p1c3Rpbi1zb21haW5pcy1zdHVkaW8tY29tcG9zZXItMjAyNi01LTZfXzIwLTE4LTI0Lm1wMyJ9.mp3" length="102488755" type="audio/mpeg"/><podcast:transcript url="https://hosting-media.riverside.com/media/podcasts/d12142d4-2233-4bd4-b386-701ab9656d07/episodes/0d31196f-727f-4aad-ad1b-aa4cf3d3d0ee/transcripts.txt" type="text/plain"/><itunes:summary>&lt;p&gt;Discussion with Meny Har, CEO and Co-Founder at Spectrum Security &lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;Spectrum Security: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://spectrum.security&quot; target=&quot;_blank&quot;&gt;&lt;b&gt;https://spectrum.security&lt;/b&gt;&lt;/a&gt;&lt;/p&gt;&lt;p&gt;Meny Har: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://www.linkedin.com/in/meny-har/&quot; target=&quot;_blank&quot;&gt;https://www.linkedin.com/in/meny-har/&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Support the show and Donate to NCMEC&lt;/b&gt;: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://give.missingkids.org/TrustIssues&quot; target=&quot;_blank&quot;&gt;https://give.missingkids.org/TrustIssues&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Summary&lt;/b&gt;&lt;/p&gt;&lt;p&gt;In this conversation, Justin Somaini speaks with Meny Har, CEO and co-founder of Spectrum, about the challenges and evolution of detection tools in cybersecurity. They discuss the importance of expecting more from detection tools, the journey of founding startups, and the lessons learned along the way. Meny shares insights on navigating the VC landscape, the mission of Spectrum in detection engineering, and the challenges organizations face in maintaining effective detection and response systems. The conversation emphasizes the need for proactive detection and the future of cybersecurity. In this conversation, Justin Somaini discusses the complexities and challenges of detection engineering in cybersecurity. He emphasizes the importance of contextual understanding, integration, and automation in improving detection capabilities. The conversation also touches on the need for organizations to expect more from their detection tools and the potential for convergence in the SOC space. Somaini highlights the role of AI in enhancing detection processes and reducing false positives, ultimately aiming for a more efficient and effective security landscape.&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Chapters&lt;/b&gt;&lt;/p&gt;&lt;p&gt;00:00 Expecting More from Detection Tools&lt;/p&gt;&lt;p&gt;03:05 Meny Har&apos;s Journey in Cybersecurity&lt;/p&gt;&lt;p&gt;05:53 Lessons Learned from Founding Startups&lt;/p&gt;&lt;p&gt;09:14 The Importance of Problem Validation&lt;/p&gt;&lt;p&gt;12:09 Navigating the VC Landscape&lt;/p&gt;&lt;p&gt;14:59 Spectrum&apos;s Mission in Detection Engineering&lt;/p&gt;&lt;p&gt;17:49 Challenges in Detection and Response&lt;/p&gt;&lt;p&gt;21:05 The Future of Detection in Cybersecurity&lt;/p&gt;&lt;p&gt;26:43 Understanding Detection Engineering Challenges&lt;/p&gt;&lt;p&gt;29:03 Integration and Automation in Detection&lt;/p&gt;&lt;p&gt;32:57 Contextual Understanding for Effective Detection&lt;/p&gt;&lt;p&gt;36:17 Reducing False Positives and Improving Confidence&lt;/p&gt;&lt;p&gt;41:28 The Future of Detection and SOC Convergence&lt;/p&gt;&lt;p&gt;46:13 Surprises in Detection Engineering&lt;/p&gt;&lt;p&gt;52:08 Expecting More from Detection Tools&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;Keywords&lt;/p&gt;&lt;p&gt;detection tools, cybersecurity, startup journey, AI in security, VC funding, problem validation, detection engineering, Spectrum, cybersecurity challenges, proactive detection detection engineering, automation, integration, false positives, SOC convergence, contextual understanding, AI in security, detection tools, risk management, cybersecurity&lt;/p&gt;</itunes:summary><itunes:explicit>no</itunes:explicit><itunes:duration>00:53:23</itunes:duration><itunes:image href="https://hosting-media.riverside.com/media/podcasts/d12142d4-2233-4bd4-b386-701ab9656d07/logos/665271c7-01fb-4665-94f2-5345ab20a1e0.jpeg"/><itunes:season>1</itunes:season><itunes:episode>13</itunes:episode><itunes:title>EP 13: Spectrum</itunes:title><itunes:episodeType>full</itunes:episodeType></item><item><title><![CDATA[EP 12: Hitch Partners]]></title><description><![CDATA[<p>Discussion with Michael Piacente, Managing Partner at Hitch Partners</p><p></p><p>Hitch Partners: <a rel="noopener noreferrer nofollow" href="https://www.hitchpartners.com/" target="_blank">https://www.hitchpartners.com/</a></p><p>Michael Piacente: <a rel="noopener noreferrer nofollow" href="https://www.linkedin.com/in/moderncisosearch/" target="_blank">https://www.linkedin.com/in/moderncisosearch/</a></p><p></p><p><b>Support the show and Donate to NCMEC</b>: <a rel="noopener noreferrer nofollow" href="https://give.missingkids.org/TrustIssues" target="_blank">https://give.missingkids.org/TrustIssues</a></p><p></p><p><b>Summary</b></p><p>In this conversation, Justin Somaini and Michael Piacente discuss the evolving role of the Chief Information Security Officer (CISO) and the importance of community and storytelling in the cybersecurity field. They explore the journey of a CISO, the challenges faced in recruiting for these roles, and the changing expectations of organizations regarding security leadership. The discussion highlights the need for CISOs to adapt to new technologies, particularly AI, and to understand their role as influencers within their organizations. In this conversation, Justin Somaini discusses the evolving landscape of Chief Information Security Officers (CISOs) and the challenges they face in the current job market. He highlights the importance of understanding different CISO personas, the impact of COVID-19 on hiring trends, and the rise of shadow intelligence as a significant factor in security. Somaini emphasizes the need for CISOs to improve their storytelling abilities during interviews and the importance of community engagement. He also addresses the significance of D&amp;O insurance for security leaders and the complexities surrounding field CISO roles.</p><p></p><p><b>Chapters</b></p><p>00:00 Building Community and Storytelling</p><p>02:34 The Journey of a CISO: Origin Stories</p><p>09:14 The Evolution of the CISO Role</p><p>17:34 Understanding the CISO's Role in Organizations</p><p>25:10 Interviewing the Interviewers: Finding the Right CISO</p><p>31:39 Understanding CISO Personas and Market Dynamics</p><p>35:56 The Evolving CISO Landscape Post-COVID</p><p>39:40 The Rise of Shadow Intelligence and Security Challenges</p><p>43:51 Interviewing Strategies for CISOs</p><p>51:52 Navigating D&amp;O Insurance and Job Security</p><p>56:34 Field CISO Roles: Opportunities and Challenges</p><p>60:53 The Importance of Community and Storytelling</p><p></p><p>Keywords</p><p>CISO, executive search, community, storytelling, recruiting, cybersecurity, AI, business enablement, security leadership, organizational change CISO, cybersecurity, job market, shadow intelligence, interviewing, D&amp;O insurance, field CISO, storytelling, community, security leadership</p>]]></description><guid isPermaLink="false">f1a25285-9488-4710-a577-233b90ea2306</guid><dc:creator><![CDATA[Justin Somaini]]></dc:creator><pubDate>Thu, 30 Apr 2026 16:02:22 GMT</pubDate><enclosure url="https://api.riverside.com/hosting-analytics/media/8fa41a393d5402e93f872868285aeec90d000d0a6422235789f3b01557bfd933/eyJlcGlzb2RlSWQiOiJmMWEyNTI4NS05NDg4LTQ3MTAtYTU3Ny0yMzNiOTBlYTIzMDYiLCJwb2RjYXN0SWQiOiJkMTIxNDJkNC0yMjMzLTRiZDQtYjM4Ni03MDFhYjk2NTZkMDciLCJhY2NvdW50SWQiOiI2OGU3Y2M1OWVjZmE2NTQ3OGNlODhkNTMiLCJwYXRoIjoibWVkaWEvY2xpcHMvNjlmMzdjODIwMWQ4MTA0YmQzZWYwYjdkL2p1c3Rpbi1zb21haW5pcy1zdHVkaW8tY29tcG9zZXItMjAyNi00LTMwX18xOC0wLTIubXAzIn0=.mp3" length="121675589" type="audio/mpeg"/><podcast:transcript url="https://hosting-media.riverside.com/media/podcasts/d12142d4-2233-4bd4-b386-701ab9656d07/episodes/f1a25285-9488-4710-a577-233b90ea2306/transcripts.txt" type="text/plain"/><itunes:summary>&lt;p&gt;Discussion with Michael Piacente, Managing Partner at Hitch Partners&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;Hitch Partners: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://www.hitchpartners.com/&quot; target=&quot;_blank&quot;&gt;https://www.hitchpartners.com/&lt;/a&gt;&lt;/p&gt;&lt;p&gt;Michael Piacente: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://www.linkedin.com/in/moderncisosearch/&quot; target=&quot;_blank&quot;&gt;https://www.linkedin.com/in/moderncisosearch/&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Support the show and Donate to NCMEC&lt;/b&gt;: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://give.missingkids.org/TrustIssues&quot; target=&quot;_blank&quot;&gt;https://give.missingkids.org/TrustIssues&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Summary&lt;/b&gt;&lt;/p&gt;&lt;p&gt;In this conversation, Justin Somaini and Michael Piacente discuss the evolving role of the Chief Information Security Officer (CISO) and the importance of community and storytelling in the cybersecurity field. They explore the journey of a CISO, the challenges faced in recruiting for these roles, and the changing expectations of organizations regarding security leadership. The discussion highlights the need for CISOs to adapt to new technologies, particularly AI, and to understand their role as influencers within their organizations. In this conversation, Justin Somaini discusses the evolving landscape of Chief Information Security Officers (CISOs) and the challenges they face in the current job market. He highlights the importance of understanding different CISO personas, the impact of COVID-19 on hiring trends, and the rise of shadow intelligence as a significant factor in security. Somaini emphasizes the need for CISOs to improve their storytelling abilities during interviews and the importance of community engagement. He also addresses the significance of D&amp;amp;O insurance for security leaders and the complexities surrounding field CISO roles.&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Chapters&lt;/b&gt;&lt;/p&gt;&lt;p&gt;00:00 Building Community and Storytelling&lt;/p&gt;&lt;p&gt;02:34 The Journey of a CISO: Origin Stories&lt;/p&gt;&lt;p&gt;09:14 The Evolution of the CISO Role&lt;/p&gt;&lt;p&gt;17:34 Understanding the CISO&apos;s Role in Organizations&lt;/p&gt;&lt;p&gt;25:10 Interviewing the Interviewers: Finding the Right CISO&lt;/p&gt;&lt;p&gt;31:39 Understanding CISO Personas and Market Dynamics&lt;/p&gt;&lt;p&gt;35:56 The Evolving CISO Landscape Post-COVID&lt;/p&gt;&lt;p&gt;39:40 The Rise of Shadow Intelligence and Security Challenges&lt;/p&gt;&lt;p&gt;43:51 Interviewing Strategies for CISOs&lt;/p&gt;&lt;p&gt;51:52 Navigating D&amp;amp;O Insurance and Job Security&lt;/p&gt;&lt;p&gt;56:34 Field CISO Roles: Opportunities and Challenges&lt;/p&gt;&lt;p&gt;60:53 The Importance of Community and Storytelling&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;Keywords&lt;/p&gt;&lt;p&gt;CISO, executive search, community, storytelling, recruiting, cybersecurity, AI, business enablement, security leadership, organizational change CISO, cybersecurity, job market, shadow intelligence, interviewing, D&amp;amp;O insurance, field CISO, storytelling, community, security leadership&lt;/p&gt;</itunes:summary><itunes:explicit>no</itunes:explicit><itunes:duration>01:03:22</itunes:duration><itunes:image href="https://hosting-media.riverside.com/media/podcasts/d12142d4-2233-4bd4-b386-701ab9656d07/logos/665271c7-01fb-4665-94f2-5345ab20a1e0.jpeg"/><itunes:season>1</itunes:season><itunes:episode>12</itunes:episode><itunes:title>EP 12: Hitch Partners</itunes:title><itunes:episodeType>full</itunes:episodeType></item><item><title><![CDATA[EP 11: Venice]]></title><description><![CDATA[<p>Discussion with Rotem Lurie, CEO and co-founder at Venice </p><p></p><p>Venice: <a rel="noopener noreferrer nofollow" href="https://venice.io" target="_blank">https://venice.io</a></p><p>Rotem Lurie: <a rel="noopener noreferrer nofollow" href="https://www.linkedin.com/in/rotem-lurie/" target="_blank">https://www.linkedin.com/in/rotem-lurie/</a></p><p><br /><b>Support the show and Donate to NCMEC</b>: <a rel="noopener noreferrer nofollow" href="https://give.missingkids.org/TrustIssues" target="_blank">https://give.missingkids.org/TrustIssues</a></p><p></p><p><b>Summary</b></p><p>In this conversation, Rotem Lurie, co-founder and CEO of Venice, shares her journey from a technology-driven upbringing in Israel to her military service in an elite intelligence unit, and then to significant roles at Microsoft and Access. She discusses the challenges of product management in startups, the evolution of cybersecurity, and the unique approach Venice takes in addressing Privileged Access Management (PAM) challenges. Rotem emphasizes the importance of understanding business impact in technology and the need for dynamic solutions in a rapidly changing environment. In this conversation, Rotem discusses the challenges and solutions in managing secrets and privileged access within organizations. She emphasizes the importance of integrating with existing systems, adapting to customer needs, and leveraging AI to streamline access management. The discussion also touches on the shift towards zero standing privileges and the need for dynamic solutions that reduce friction in access requests. Rotem highlights the unique aspects of their platform, including its hybrid nature and focus on user experience, while addressing the competitive landscape in the identity management space.</p><p></p><p><b>Chapters</b></p><p>00:00 Introduction to Rotem Lurie and her Background</p><p>02:52 Military Experience and Transition to Microsoft</p><p>06:04 From Microsoft to Access: Learning in Startups</p><p>09:09 The Challenges of Product Management in Startups</p><p>11:52 Identifying Opportunities in Cybersecurity</p><p>14:53 The Birth of Venice: Addressing PAM Challenges</p><p>18:08 Understanding Venice's Unique Approach to PAM</p><p>21:03 Integration and Implementation of Venice</p><p>24:01 The Future of PAM and Non-Human Identities</p><p>27:35 Identifying and Managing Secrets</p><p>29:08 Integrating with Homegrown Services</p><p>32:10 Adapting to Customer Needs</p><p>34:31 The Role of Privileged Access Management</p><p>38:56 Reducing Friction in Access Management</p><p>40:44 Leveraging AI for Dynamic Access Control</p><p>44:22 Towards Zero Standing Privileges</p><p>48:07 Differentiating in a Competitive Landscape</p><p>50:05 Final Thoughts and Takeaways</p><p></p><p>keywords</p><p>Rotem Lurie, Venice, PAM market, cybersecurity, product management, Microsoft, Access, startup experience, identity management, AI in cybersecurity, secrets management, privileged access management, AI in security, integration, zero standing privileges, access control, cybersecurity, identity management, customer needs, reducing friction</p><p></p>]]></description><guid isPermaLink="false">64c818bd-06a9-4333-bed1-70a150b9a6e5</guid><dc:creator><![CDATA[Justin Somaini]]></dc:creator><pubDate>Fri, 24 Apr 2026 00:15:00 GMT</pubDate><enclosure url="https://api.riverside.com/hosting-analytics/media/51fe37562829647ae02bc39ce010b6b13e3819e3b7d15c7e8c98a3b1c8ece5b3/eyJlcGlzb2RlSWQiOiI2NGM4MThiZC0wNmE5LTQzMzMtYmVkMS03MGExNTBiOWE2ZTUiLCJwb2RjYXN0SWQiOiJkMTIxNDJkNC0yMjMzLTRiZDQtYjM4Ni03MDFhYjk2NTZkMDciLCJhY2NvdW50SWQiOiI2OGU3Y2M1OWVjZmE2NTQ3OGNlODhkNTMiLCJwYXRoIjoibWVkaWEvY2xpcHMvNjllYTg0Mzc3MmU4YWE1ZGZmNDZlNzM4L2p1c3Rpbi1zb21haW5pcy1zdHVkaW8tY29tcG9zZXItMjAyNi00LTIzX18yMi00Mi0zMS5tcDMifQ==.mp3" length="107501757" type="audio/mpeg"/><podcast:transcript url="https://hosting-media.riverside.com/media/podcasts/d12142d4-2233-4bd4-b386-701ab9656d07/episodes/64c818bd-06a9-4333-bed1-70a150b9a6e5/transcripts.txt" type="text/plain"/><itunes:summary>&lt;p&gt;Discussion with Rotem Lurie, CEO and co-founder at Venice &lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;Venice: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://venice.io&quot; target=&quot;_blank&quot;&gt;https://venice.io&lt;/a&gt;&lt;/p&gt;&lt;p&gt;Rotem Lurie: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://www.linkedin.com/in/rotem-lurie/&quot; target=&quot;_blank&quot;&gt;https://www.linkedin.com/in/rotem-lurie/&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;br /&gt;&lt;b&gt;Support the show and Donate to NCMEC&lt;/b&gt;: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://give.missingkids.org/TrustIssues&quot; target=&quot;_blank&quot;&gt;https://give.missingkids.org/TrustIssues&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Summary&lt;/b&gt;&lt;/p&gt;&lt;p&gt;In this conversation, Rotem Lurie, co-founder and CEO of Venice, shares her journey from a technology-driven upbringing in Israel to her military service in an elite intelligence unit, and then to significant roles at Microsoft and Access. She discusses the challenges of product management in startups, the evolution of cybersecurity, and the unique approach Venice takes in addressing Privileged Access Management (PAM) challenges. Rotem emphasizes the importance of understanding business impact in technology and the need for dynamic solutions in a rapidly changing environment. In this conversation, Rotem discusses the challenges and solutions in managing secrets and privileged access within organizations. She emphasizes the importance of integrating with existing systems, adapting to customer needs, and leveraging AI to streamline access management. The discussion also touches on the shift towards zero standing privileges and the need for dynamic solutions that reduce friction in access requests. Rotem highlights the unique aspects of their platform, including its hybrid nature and focus on user experience, while addressing the competitive landscape in the identity management space.&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Chapters&lt;/b&gt;&lt;/p&gt;&lt;p&gt;00:00 Introduction to Rotem Lurie and her Background&lt;/p&gt;&lt;p&gt;02:52 Military Experience and Transition to Microsoft&lt;/p&gt;&lt;p&gt;06:04 From Microsoft to Access: Learning in Startups&lt;/p&gt;&lt;p&gt;09:09 The Challenges of Product Management in Startups&lt;/p&gt;&lt;p&gt;11:52 Identifying Opportunities in Cybersecurity&lt;/p&gt;&lt;p&gt;14:53 The Birth of Venice: Addressing PAM Challenges&lt;/p&gt;&lt;p&gt;18:08 Understanding Venice&apos;s Unique Approach to PAM&lt;/p&gt;&lt;p&gt;21:03 Integration and Implementation of Venice&lt;/p&gt;&lt;p&gt;24:01 The Future of PAM and Non-Human Identities&lt;/p&gt;&lt;p&gt;27:35 Identifying and Managing Secrets&lt;/p&gt;&lt;p&gt;29:08 Integrating with Homegrown Services&lt;/p&gt;&lt;p&gt;32:10 Adapting to Customer Needs&lt;/p&gt;&lt;p&gt;34:31 The Role of Privileged Access Management&lt;/p&gt;&lt;p&gt;38:56 Reducing Friction in Access Management&lt;/p&gt;&lt;p&gt;40:44 Leveraging AI for Dynamic Access Control&lt;/p&gt;&lt;p&gt;44:22 Towards Zero Standing Privileges&lt;/p&gt;&lt;p&gt;48:07 Differentiating in a Competitive Landscape&lt;/p&gt;&lt;p&gt;50:05 Final Thoughts and Takeaways&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;keywords&lt;/p&gt;&lt;p&gt;Rotem Lurie, Venice, PAM market, cybersecurity, product management, Microsoft, Access, startup experience, identity management, AI in cybersecurity, secrets management, privileged access management, AI in security, integration, zero standing privileges, access control, cybersecurity, identity management, customer needs, reducing friction&lt;/p&gt;&lt;p&gt;&lt;/p&gt;</itunes:summary><itunes:explicit>no</itunes:explicit><itunes:duration>00:55:59</itunes:duration><itunes:image href="https://hosting-media.riverside.com/media/podcasts/d12142d4-2233-4bd4-b386-701ab9656d07/logos/665271c7-01fb-4665-94f2-5345ab20a1e0.jpeg"/><itunes:season>1</itunes:season><itunes:episode>11</itunes:episode><itunes:title>EP 11: Venice</itunes:title><itunes:episodeType>full</itunes:episodeType></item><item><title><![CDATA[EP 10: Novee]]></title><description><![CDATA[<p>Discussion with Ido Geffen, CEO and Co-Founder at Novee </p><p></p><p>Novee: <a rel="noopener noreferrer nofollow" href="https://novee.security" target="_blank">https://novee.security</a></p><p>Ido Geffen: <a rel="noopener noreferrer nofollow" href="https://www.linkedin.com/in/ido-geffen/" target="_blank">https://www.linkedin.com/in/ido-geffen/</a></p><p></p><p><b>Support the show and Donate to NCMEC</b>: <a rel="noopener noreferrer nofollow" href="https://give.missingkids.org/TrustIssues" target="_blank">https://give.missingkids.org/TrustIssues</a></p><p></p><p><b>Summary</b></p><p>In this conversation, Ido Geffen, co-founder and CEO of Novee, shares his unique journey from military service in an elite engineering combat unit to becoming a leader in cybersecurity innovation. He discusses the origins of Novee, the challenges faced in the penetration testing landscape, and the integration of AI in cybersecurity solutions. Geffen emphasizes the importance of understanding the real pain points in cybersecurity and how his team aims to revolutionize penetration testing through continuous and automated solutions. In this conversation, Ido Geffen discusses the innovative approach of Novee in the realm of cybersecurity, emphasizing the integration of AI to detect vulnerabilities and personalize defense mechanisms. The discussion covers the ease of integration for new customers, the importance of continuous security testing, and the unique capabilities of Novee in identifying zero-day vulnerabilities. Geffen also highlights the competitive landscape of cybersecurity, the changing economics of offensive cyber, and the need for a proactive approach to security.</p><p></p><p><b>Chapters</b></p><p>00:00 The Journey Begins: Ido Geffen's Origin Story</p><p>05:59 From Military to Cybersecurity: Building Expertise</p><p>11:58 Founding Novi: The Vision and Initial Steps</p><p>18:02 Navigating the Penetration Testing Landscape</p><p>24:05 Building the AI-Powered Solution</p><p>30:08 Challenges and Innovations in Cybersecurity</p><p>29:07 Introducing Novi: The AI Defender</p><p>30:08 Integration Process for New Customers</p><p>31:59 Continuous Integration and Security Testing</p><p>33:12 Personalized Defense Mechanisms</p><p>35:08 Linking Code Repositories with Security Scans</p><p>37:49 The Reality of Zero-Day Vulnerabilities</p><p>38:35 Comparing AI Tools to Human Pen Testers</p><p>43:47 Surprises in Vulnerability Discovery</p><p>46:42 Differentiating Novi in a Competitive Landscape</p><p>48:01 The Changing Economics of Cybersecurity</p><p></p><p>keywords</p><p>cybersecurity, AI, penetration testing, innovation, startup, Ido Geffen, Novi, vulnerability, technology, Israeli Security Agency, AI, cybersecurity, vulnerability detection, penetration testing, Novi, integration, defense mechanisms, zero-day vulnerabilities, automated tools, security testing</p><p></p>]]></description><guid isPermaLink="false">76b521c3-b76d-4d57-a12e-5f2e6be56b8a</guid><dc:creator><![CDATA[Justin Somaini]]></dc:creator><pubDate>Thu, 16 Apr 2026 00:00:00 GMT</pubDate><enclosure url="https://api.riverside.com/hosting-analytics/media/526f21fc3ae26c9ae2b5e805e064aec4e5b6cda0b059389391e70c22731c5cbc/eyJlcGlzb2RlSWQiOiI3NmI1MjFjMy1iNzZkLTRkNTctYTEyZS01ZjJlNmJlNTZiOGEiLCJwb2RjYXN0SWQiOiJkMTIxNDJkNC0yMjMzLTRiZDQtYjM4Ni03MDFhYjk2NTZkMDciLCJhY2NvdW50SWQiOiI2OGU3Y2M1OWVjZmE2NTQ3OGNlODhkNTMiLCJwYXRoIjoibWVkaWEvY2xpcHMvNjlkZWRiY2JhZmRlNmM1ZWE4YjZhNWVlL2p1c3Rpbi1zb21haW5pcy1zdHVkaW8tY29tcG9zZXItMjAyNi00LTE1X18yLTI4LTU5Lm1wMyJ9.mp3" length="77016441" type="audio/mpeg"/><podcast:transcript url="https://hosting-media.riverside.com/media/podcasts/d12142d4-2233-4bd4-b386-701ab9656d07/episodes/76b521c3-b76d-4d57-a12e-5f2e6be56b8a/transcripts.txt" type="text/plain"/><itunes:summary>&lt;p&gt;Discussion with Ido Geffen, CEO and Co-Founder at Novee &lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;Novee: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://novee.security&quot; target=&quot;_blank&quot;&gt;https://novee.security&lt;/a&gt;&lt;/p&gt;&lt;p&gt;Ido Geffen: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://www.linkedin.com/in/ido-geffen/&quot; target=&quot;_blank&quot;&gt;https://www.linkedin.com/in/ido-geffen/&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Support the show and Donate to NCMEC&lt;/b&gt;: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://give.missingkids.org/TrustIssues&quot; target=&quot;_blank&quot;&gt;https://give.missingkids.org/TrustIssues&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Summary&lt;/b&gt;&lt;/p&gt;&lt;p&gt;In this conversation, Ido Geffen, co-founder and CEO of Novee, shares his unique journey from military service in an elite engineering combat unit to becoming a leader in cybersecurity innovation. He discusses the origins of Novee, the challenges faced in the penetration testing landscape, and the integration of AI in cybersecurity solutions. Geffen emphasizes the importance of understanding the real pain points in cybersecurity and how his team aims to revolutionize penetration testing through continuous and automated solutions. In this conversation, Ido Geffen discusses the innovative approach of Novee in the realm of cybersecurity, emphasizing the integration of AI to detect vulnerabilities and personalize defense mechanisms. The discussion covers the ease of integration for new customers, the importance of continuous security testing, and the unique capabilities of Novee in identifying zero-day vulnerabilities. Geffen also highlights the competitive landscape of cybersecurity, the changing economics of offensive cyber, and the need for a proactive approach to security.&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Chapters&lt;/b&gt;&lt;/p&gt;&lt;p&gt;00:00 The Journey Begins: Ido Geffen&apos;s Origin Story&lt;/p&gt;&lt;p&gt;05:59 From Military to Cybersecurity: Building Expertise&lt;/p&gt;&lt;p&gt;11:58 Founding Novi: The Vision and Initial Steps&lt;/p&gt;&lt;p&gt;18:02 Navigating the Penetration Testing Landscape&lt;/p&gt;&lt;p&gt;24:05 Building the AI-Powered Solution&lt;/p&gt;&lt;p&gt;30:08 Challenges and Innovations in Cybersecurity&lt;/p&gt;&lt;p&gt;29:07 Introducing Novi: The AI Defender&lt;/p&gt;&lt;p&gt;30:08 Integration Process for New Customers&lt;/p&gt;&lt;p&gt;31:59 Continuous Integration and Security Testing&lt;/p&gt;&lt;p&gt;33:12 Personalized Defense Mechanisms&lt;/p&gt;&lt;p&gt;35:08 Linking Code Repositories with Security Scans&lt;/p&gt;&lt;p&gt;37:49 The Reality of Zero-Day Vulnerabilities&lt;/p&gt;&lt;p&gt;38:35 Comparing AI Tools to Human Pen Testers&lt;/p&gt;&lt;p&gt;43:47 Surprises in Vulnerability Discovery&lt;/p&gt;&lt;p&gt;46:42 Differentiating Novi in a Competitive Landscape&lt;/p&gt;&lt;p&gt;48:01 The Changing Economics of Cybersecurity&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;keywords&lt;/p&gt;&lt;p&gt;cybersecurity, AI, penetration testing, innovation, startup, Ido Geffen, Novi, vulnerability, technology, Israeli Security Agency, AI, cybersecurity, vulnerability detection, penetration testing, Novi, integration, defense mechanisms, zero-day vulnerabilities, automated tools, security testing&lt;/p&gt;&lt;p&gt;&lt;/p&gt;</itunes:summary><itunes:explicit>no</itunes:explicit><itunes:duration>00:53:29</itunes:duration><itunes:image href="https://hosting-media.riverside.com/media/podcasts/d12142d4-2233-4bd4-b386-701ab9656d07/logos/665271c7-01fb-4665-94f2-5345ab20a1e0.jpeg"/><itunes:season>1</itunes:season><itunes:episode>10</itunes:episode><itunes:title>EP 10: Novee</itunes:title><itunes:episodeType>full</itunes:episodeType></item><item><title><![CDATA[EP 9: AirMDR]]></title><description><![CDATA[<p>Discussion with Kumar Saurabh, CEO and Co-Founder at AirMDR. </p><p></p><p>AirMDR: <a rel="noopener noreferrer nofollow" href="https://airmdr.com" target="_blank">https://airmdr.com</a></p><p>Kumar Saurabh: <a rel="noopener noreferrer nofollow" href="https://www.linkedin.com/in/kumar1729/" target="_blank">https://www.linkedin.com/in/kumar1729/</a></p><p><br /><b>Support the show and Donate to NCMEC</b>: <a rel="noopener noreferrer nofollow" href="https://give.missingkids.org/TrustIssues" target="_blank">https://give.missingkids.org/TrustIssues</a></p><p></p><p><b>Summary</b></p><p>In this conversation, Justin Somaini interviews Kumar Saurabh, the CEO and co-founder of AirMDR, who shares his journey in the cybersecurity field, the evolution of managed detection and response (MDR) technologies, and the impact of AI on security operations. Kumar discusses his experiences at ArcSight and Sumo Logic, the challenges of building new solutions, and the importance of effective go-to-market strategies. He emphasizes the transformative potential of AI in enhancing SOC capabilities and the need for organizations to adapt to these advancements. In this conversation, Justin Somaini discusses the integration of AI in detection engineering, emphasizing the importance of operationalizing AI for effective security operations. He highlights the role of human oversight in automation, the challenges of integration, and the need for quality metrics in security operations. The discussion also covers behavioral detection techniques, customer insights, and how to differentiate in the competitive AI security market.</p><p></p><p><b>Chapters</b></p><p>00:00 The Arrival of Agentic MDR</p><p>02:47 Kumar Saurabh's Journey in Cybersecurity</p><p>06:04 Lessons from ArcSight and Sumo Logic</p><p>08:59 The Transition to Building New Solutions</p><p>11:48 Navigating the Go-to-Market Challenges</p><p>15:03 The Evolution of SOC and AI Integration</p><p>17:53 Understanding AirMDR and Its Impact</p><p>32:34 AI in Detection Engineering</p><p>34:24 Operationalizing AI for Security</p><p>39:05 Human in the Loop Automation</p><p>42:21 Integration and Implementation Challenges</p><p>47:11 Quality Metrics in Security Operations</p><p>50:46 Behavioral Detection Techniques</p><p>54:37 Customer Insights and Unexpected Outcomes</p><p>60:18 Differentiation in the AI Security Market</p><p></p><p>Keywords</p><p>Agentic MDR, cybersecurity, AI, SOC, SumoLogic, ArcSight, threat detection, managed detection and response, go-to-market strategy, innovation AI, detection engineering, security operations, human in the loop, automation, integration, quality metrics, behavioral detection, customer insights, market differentiation</p>]]></description><guid isPermaLink="false">f8ceaace-44e6-4bb7-8910-8f9d4d35f8a3</guid><dc:creator><![CDATA[Justin Somaini]]></dc:creator><pubDate>Thu, 09 Apr 2026 00:00:00 GMT</pubDate><enclosure url="https://api.riverside.com/hosting-analytics/media/757635401c873420b0631f0909f581aca209136530dc7953577546945267a37a/eyJlcGlzb2RlSWQiOiJmOGNlYWFjZS00NGU2LTRiYjctODkxMC04ZjlkNGQzNWY4YTMiLCJwb2RjYXN0SWQiOiJkMTIxNDJkNC0yMjMzLTRiZDQtYjM4Ni03MDFhYjk2NTZkMDciLCJhY2NvdW50SWQiOiI2OGU3Y2M1OWVjZmE2NTQ3OGNlODhkNTMiLCJwYXRoIjoibWVkaWEvY2xpcHMvNjlkNmE4Y2JkNGE0YzdhYjEzZmJlMDM1L2p1c3Rpbi1zb21haW5pcy1zdHVkaW8tY29tcG9zZXItMjAyNi00LThfXzIxLTEzLTE1Lm1wMyJ9.mp3" length="93454776" type="audio/mpeg"/><podcast:transcript url="https://hosting-media.riverside.com/media/podcasts/d12142d4-2233-4bd4-b386-701ab9656d07/episodes/f8ceaace-44e6-4bb7-8910-8f9d4d35f8a3/transcripts.txt" type="text/plain"/><itunes:summary>&lt;p&gt;Discussion with Kumar Saurabh, CEO and Co-Founder at AirMDR. &lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;AirMDR: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://airmdr.com&quot; target=&quot;_blank&quot;&gt;https://airmdr.com&lt;/a&gt;&lt;/p&gt;&lt;p&gt;Kumar Saurabh: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://www.linkedin.com/in/kumar1729/&quot; target=&quot;_blank&quot;&gt;https://www.linkedin.com/in/kumar1729/&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;br /&gt;&lt;b&gt;Support the show and Donate to NCMEC&lt;/b&gt;: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://give.missingkids.org/TrustIssues&quot; target=&quot;_blank&quot;&gt;https://give.missingkids.org/TrustIssues&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Summary&lt;/b&gt;&lt;/p&gt;&lt;p&gt;In this conversation, Justin Somaini interviews Kumar Saurabh, the CEO and co-founder of AirMDR, who shares his journey in the cybersecurity field, the evolution of managed detection and response (MDR) technologies, and the impact of AI on security operations. Kumar discusses his experiences at ArcSight and Sumo Logic, the challenges of building new solutions, and the importance of effective go-to-market strategies. He emphasizes the transformative potential of AI in enhancing SOC capabilities and the need for organizations to adapt to these advancements. In this conversation, Justin Somaini discusses the integration of AI in detection engineering, emphasizing the importance of operationalizing AI for effective security operations. He highlights the role of human oversight in automation, the challenges of integration, and the need for quality metrics in security operations. The discussion also covers behavioral detection techniques, customer insights, and how to differentiate in the competitive AI security market.&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Chapters&lt;/b&gt;&lt;/p&gt;&lt;p&gt;00:00 The Arrival of Agentic MDR&lt;/p&gt;&lt;p&gt;02:47 Kumar Saurabh&apos;s Journey in Cybersecurity&lt;/p&gt;&lt;p&gt;06:04 Lessons from ArcSight and Sumo Logic&lt;/p&gt;&lt;p&gt;08:59 The Transition to Building New Solutions&lt;/p&gt;&lt;p&gt;11:48 Navigating the Go-to-Market Challenges&lt;/p&gt;&lt;p&gt;15:03 The Evolution of SOC and AI Integration&lt;/p&gt;&lt;p&gt;17:53 Understanding AirMDR and Its Impact&lt;/p&gt;&lt;p&gt;32:34 AI in Detection Engineering&lt;/p&gt;&lt;p&gt;34:24 Operationalizing AI for Security&lt;/p&gt;&lt;p&gt;39:05 Human in the Loop Automation&lt;/p&gt;&lt;p&gt;42:21 Integration and Implementation Challenges&lt;/p&gt;&lt;p&gt;47:11 Quality Metrics in Security Operations&lt;/p&gt;&lt;p&gt;50:46 Behavioral Detection Techniques&lt;/p&gt;&lt;p&gt;54:37 Customer Insights and Unexpected Outcomes&lt;/p&gt;&lt;p&gt;60:18 Differentiation in the AI Security Market&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;Keywords&lt;/p&gt;&lt;p&gt;Agentic MDR, cybersecurity, AI, SOC, SumoLogic, ArcSight, threat detection, managed detection and response, go-to-market strategy, innovation AI, detection engineering, security operations, human in the loop, automation, integration, quality metrics, behavioral detection, customer insights, market differentiation&lt;/p&gt;</itunes:summary><itunes:explicit>no</itunes:explicit><itunes:duration>01:04:54</itunes:duration><itunes:image href="https://hosting-media.riverside.com/media/podcasts/d12142d4-2233-4bd4-b386-701ab9656d07/logos/665271c7-01fb-4665-94f2-5345ab20a1e0.jpeg"/><itunes:season>1</itunes:season><itunes:episode>9</itunes:episode><itunes:title>EP 9: AirMDR</itunes:title><itunes:episodeType>full</itunes:episodeType></item><item><title><![CDATA[EP 8: Native Security]]></title><description><![CDATA[<p>Discussion with Amit Megiddo, CEO and Co-Founder at Native Security </p><p></p><p>Native Security: <a rel="noopener noreferrer nofollow" href="https://native.security/" target="_blank">https://native.security/</a></p><p>Amit Megiddo: <a rel="noopener noreferrer nofollow" href="https://www.linkedin.com/in/amit-megiddo/" target="_blank">https://www.linkedin.com/in/amit-megiddo/</a></p><p><br /><b>Support the show and Donate to NCMEC</b>: <a rel="noopener noreferrer nofollow" href="https://give.missingkids.org/TrustIssues" target="_blank">https://give.missingkids.org/TrustIssues</a></p><p></p><p><b>Summary</b></p><p>In this conversation, Justin Somaini discusses the evolution of cloud security, his personal journey from military service to entrepreneurship, and the challenges faced in multi-cloud security environments. He emphasizes the need for operationalizing security measures and the importance of having the right team and timing when starting a new venture. In this conversation, Justin Somaini discusses the integration of security in multi-cloud environments, emphasizing the importance of onboarding, identifying security gaps, and the role of AI in enhancing security measures. He highlights the need for operationalizing security policies and the significance of strategic partnerships with cloud providers. The discussion also touches on transformational moments in customer experiences and the evolving landscape of cloud security.</p><p></p><p><b>Chapters</b></p><p>00:00 The Evolution of Cloud Security</p><p>10:05 Personal Journey and Military Influence</p><p>19:59 Transitioning to Entrepreneurship</p><p>30:11 Challenges in Multi-Cloud Security</p><p>32:25 Onboarding in Multi-Cloud Environments</p><p>36:45 Identifying Security Gaps and Recommendations</p><p>39:42 Driving Change in Security Policies</p><p>43:58 Operationalizing Security Policies</p><p>48:42 The Role of AI in Security</p><p>54:57 Strategic Partnerships with Cloud Providers</p><p>60:16 Transformational Moments and Use Cases</p><p></p><p>Keywords</p><p>cloud security, entrepreneurship, military experience, AWS, multi-cloud, security challenges, startup journey, policy enforcement, technology innovation, cybersecurity multi-cloud, security architecture, onboarding, AI in security, cloud providers, security policies, operational efficiency, customer experience, cloud security, integration</p>]]></description><guid isPermaLink="false">de674991-6d46-43df-bee8-bd4002709f4d</guid><dc:creator><![CDATA[Justin Somaini]]></dc:creator><pubDate>Fri, 03 Apr 2026 00:00:00 GMT</pubDate><enclosure url="https://api.riverside.com/hosting-analytics/media/6dceee8d48fb9f688a98b7e26d8ec71caf6ef6ce6781124eb8ab011fa2fdd9b0/eyJlcGlzb2RlSWQiOiJkZTY3NDk5MS02ZDQ2LTQzZGYtYmVlOC1iZDQwMDI3MDlmNGQiLCJwb2RjYXN0SWQiOiJkMTIxNDJkNC0yMjMzLTRiZDQtYjM4Ni03MDFhYjk2NTZkMDciLCJhY2NvdW50SWQiOiI2OGU3Y2M1OWVjZmE2NTQ3OGNlODhkNTMiLCJwYXRoIjoibWVkaWEvY2xpcHMvNjljZTk1ZDExZmYwM2YzOTFmODZhNDQ4L2p1c3Rpbi1zb21haW5pcy1zdHVkaW8tY29tcG9zZXItMjAyNi00LTJfXzE4LTE0LTkubXAzIn0=.mp3" length="93584552" type="audio/mpeg"/><podcast:transcript url="https://hosting-media.riverside.com/media/podcasts/d12142d4-2233-4bd4-b386-701ab9656d07/episodes/de674991-6d46-43df-bee8-bd4002709f4d/transcripts.txt" type="text/plain"/><itunes:summary>&lt;p&gt;Discussion with Amit Megiddo, CEO and Co-Founder at Native Security &lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;Native Security: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://native.security/&quot; target=&quot;_blank&quot;&gt;https://native.security/&lt;/a&gt;&lt;/p&gt;&lt;p&gt;Amit Megiddo: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://www.linkedin.com/in/amit-megiddo/&quot; target=&quot;_blank&quot;&gt;https://www.linkedin.com/in/amit-megiddo/&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;br /&gt;&lt;b&gt;Support the show and Donate to NCMEC&lt;/b&gt;: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://give.missingkids.org/TrustIssues&quot; target=&quot;_blank&quot;&gt;https://give.missingkids.org/TrustIssues&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Summary&lt;/b&gt;&lt;/p&gt;&lt;p&gt;In this conversation, Justin Somaini discusses the evolution of cloud security, his personal journey from military service to entrepreneurship, and the challenges faced in multi-cloud security environments. He emphasizes the need for operationalizing security measures and the importance of having the right team and timing when starting a new venture. In this conversation, Justin Somaini discusses the integration of security in multi-cloud environments, emphasizing the importance of onboarding, identifying security gaps, and the role of AI in enhancing security measures. He highlights the need for operationalizing security policies and the significance of strategic partnerships with cloud providers. The discussion also touches on transformational moments in customer experiences and the evolving landscape of cloud security.&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Chapters&lt;/b&gt;&lt;/p&gt;&lt;p&gt;00:00 The Evolution of Cloud Security&lt;/p&gt;&lt;p&gt;10:05 Personal Journey and Military Influence&lt;/p&gt;&lt;p&gt;19:59 Transitioning to Entrepreneurship&lt;/p&gt;&lt;p&gt;30:11 Challenges in Multi-Cloud Security&lt;/p&gt;&lt;p&gt;32:25 Onboarding in Multi-Cloud Environments&lt;/p&gt;&lt;p&gt;36:45 Identifying Security Gaps and Recommendations&lt;/p&gt;&lt;p&gt;39:42 Driving Change in Security Policies&lt;/p&gt;&lt;p&gt;43:58 Operationalizing Security Policies&lt;/p&gt;&lt;p&gt;48:42 The Role of AI in Security&lt;/p&gt;&lt;p&gt;54:57 Strategic Partnerships with Cloud Providers&lt;/p&gt;&lt;p&gt;60:16 Transformational Moments and Use Cases&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;Keywords&lt;/p&gt;&lt;p&gt;cloud security, entrepreneurship, military experience, AWS, multi-cloud, security challenges, startup journey, policy enforcement, technology innovation, cybersecurity multi-cloud, security architecture, onboarding, AI in security, cloud providers, security policies, operational efficiency, customer experience, cloud security, integration&lt;/p&gt;</itunes:summary><itunes:explicit>no</itunes:explicit><itunes:duration>01:04:59</itunes:duration><itunes:image href="https://hosting-media.riverside.com/media/podcasts/d12142d4-2233-4bd4-b386-701ab9656d07/logos/665271c7-01fb-4665-94f2-5345ab20a1e0.jpeg"/><itunes:season>1</itunes:season><itunes:episode>8</itunes:episode><itunes:title>EP 8: Native Security</itunes:title><itunes:episodeType>full</itunes:episodeType></item><item><title><![CDATA[EP 7: Beacon Security]]></title><description><![CDATA[<p>Discussion with Gal Tal-Hochberg, CEO and Co-Founder at Beacon Security</p><p></p><p>Beacon Security: <a rel="noopener noreferrer nofollow" href="https://beacon.security" target="_blank">https://beacon.security</a></p><p>Gal Tal-Hochberg: <a rel="noopener noreferrer nofollow" href="https://www.linkedin.com/in/galhochberg/" target="_blank">https://www.linkedin.com/in/galhochberg/</a></p><p></p><p><b>Support the show and Donate to NCMEC</b>: <a rel="noopener noreferrer nofollow" href="https://give.missingkids.org/TrustIssues" target="_blank">https://give.missingkids.org/TrustIssues</a></p><p></p><p><b>Summary</b></p><p>In this conversation, Justin Somaini shares his journey from a tech-savvy child to a successful entrepreneur in the cybersecurity space. He discusses his early experiences in technology, the challenges and lessons learned from various startups, and the founding of Beacon, a company focused on revolutionizing security telemetry. Justin emphasizes the importance of team dynamics, innovative solutions, and the seamless integration process that Beacon offers to its clients, aiming to simplify cybersecurity challenges and improve overall security outcomes. In this conversation, Justin Somaini discusses the innovative approaches Beacon is taking to optimize data processing and management in security operations. He emphasizes the importance of efficient data reduction techniques, cost-effective solutions for data storage, and the integration of in-stream analytics to enhance user experience. Somaini also highlights Beacon's unique position in the competitive landscape, focusing on their ability to provide tailored solutions that meet the diverse needs of their clients. He concludes with a vision for the future of security telemetry, emphasizing the opportunities for growth and improvement in the field.</p><p></p><p><b>Chapters</b></p><p>00:00 The Genesis of a Tech Entrepreneur</p><p>09:26 Navigating the Startup Landscape</p><p>20:16 The Birth of Beacon: A New Vision in Cybersecurity</p><p>26:46 Understanding Beacon's Unique Approach</p><p>37:13 Seamless Integration and Onboarding Process</p><p>39:56 Accelerating Data Processing and Optimization</p><p>42:47 Data Reduction Techniques and Efficiency</p><p>46:50 Cost-Effective Data Management Solutions</p><p>50:55 In-Stream Analytics and User Experience</p><p>54:09 Integrating with Security Operations</p><p>60:09 Differentiating Beacon in a Competitive Landscape</p><p>66:47 Future Vision for Security Telemetry</p><p>78:41 Embracing Opportunities in Security Technology</p><p></p><p>Keywords</p><p>cybersecurity, startup, technology, entrepreneurship, telemetry, logs, Beacon, integration, AI, data management data processing, optimization, data reduction, cost-effective solutions, in-stream analytics, security operations, competitive landscape, security telemetry, technology opportunities</p>]]></description><guid isPermaLink="false">a690dc13-abc4-4aac-9619-47b8c3c2c290</guid><dc:creator><![CDATA[Justin Somaini]]></dc:creator><pubDate>Wed, 01 Apr 2026 00:16:36 GMT</pubDate><enclosure url="https://api.riverside.com/hosting-analytics/media/b545aa8d4a28b39cc00ec8bd913f64f7da05aa51d758395de2730f4ac28f6f92/eyJlcGlzb2RlSWQiOiJhNjkwZGMxMy1hYmM0LTRhYWMtOTYxOS00N2I4YzNjMmMyOTAiLCJwb2RjYXN0SWQiOiJkMTIxNDJkNC0yMjMzLTRiZDQtYjM4Ni03MDFhYjk2NTZkMDciLCJhY2NvdW50SWQiOiI2OGU3Y2M1OWVjZmE2NTQ3OGNlODhkNTMiLCJwYXRoIjoibWVkaWEvY2xpcHMvNjljYzI1ZWQzNDc2OGM2ZDdiMTE4OTJiL2p1c3Rpbi1zb21haW5pcy1zdHVkaW8tY29tcG9zZXItMjAyNi0zLTMxX18yMS01Mi0xMi5tcDMifQ==.mp3" length="114607063" type="audio/mpeg"/><podcast:transcript url="https://hosting-media.riverside.com/media/podcasts/d12142d4-2233-4bd4-b386-701ab9656d07/episodes/a690dc13-abc4-4aac-9619-47b8c3c2c290/transcripts.txt" type="text/plain"/><itunes:summary>&lt;p&gt;Discussion with Gal Tal-Hochberg, CEO and Co-Founder at Beacon Security&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;Beacon Security: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://beacon.security&quot; target=&quot;_blank&quot;&gt;https://beacon.security&lt;/a&gt;&lt;/p&gt;&lt;p&gt;Gal Tal-Hochberg: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://www.linkedin.com/in/galhochberg/&quot; target=&quot;_blank&quot;&gt;https://www.linkedin.com/in/galhochberg/&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Support the show and Donate to NCMEC&lt;/b&gt;: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://give.missingkids.org/TrustIssues&quot; target=&quot;_blank&quot;&gt;https://give.missingkids.org/TrustIssues&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Summary&lt;/b&gt;&lt;/p&gt;&lt;p&gt;In this conversation, Justin Somaini shares his journey from a tech-savvy child to a successful entrepreneur in the cybersecurity space. He discusses his early experiences in technology, the challenges and lessons learned from various startups, and the founding of Beacon, a company focused on revolutionizing security telemetry. Justin emphasizes the importance of team dynamics, innovative solutions, and the seamless integration process that Beacon offers to its clients, aiming to simplify cybersecurity challenges and improve overall security outcomes. In this conversation, Justin Somaini discusses the innovative approaches Beacon is taking to optimize data processing and management in security operations. He emphasizes the importance of efficient data reduction techniques, cost-effective solutions for data storage, and the integration of in-stream analytics to enhance user experience. Somaini also highlights Beacon&apos;s unique position in the competitive landscape, focusing on their ability to provide tailored solutions that meet the diverse needs of their clients. He concludes with a vision for the future of security telemetry, emphasizing the opportunities for growth and improvement in the field.&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Chapters&lt;/b&gt;&lt;/p&gt;&lt;p&gt;00:00 The Genesis of a Tech Entrepreneur&lt;/p&gt;&lt;p&gt;09:26 Navigating the Startup Landscape&lt;/p&gt;&lt;p&gt;20:16 The Birth of Beacon: A New Vision in Cybersecurity&lt;/p&gt;&lt;p&gt;26:46 Understanding Beacon&apos;s Unique Approach&lt;/p&gt;&lt;p&gt;37:13 Seamless Integration and Onboarding Process&lt;/p&gt;&lt;p&gt;39:56 Accelerating Data Processing and Optimization&lt;/p&gt;&lt;p&gt;42:47 Data Reduction Techniques and Efficiency&lt;/p&gt;&lt;p&gt;46:50 Cost-Effective Data Management Solutions&lt;/p&gt;&lt;p&gt;50:55 In-Stream Analytics and User Experience&lt;/p&gt;&lt;p&gt;54:09 Integrating with Security Operations&lt;/p&gt;&lt;p&gt;60:09 Differentiating Beacon in a Competitive Landscape&lt;/p&gt;&lt;p&gt;66:47 Future Vision for Security Telemetry&lt;/p&gt;&lt;p&gt;78:41 Embracing Opportunities in Security Technology&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;Keywords&lt;/p&gt;&lt;p&gt;cybersecurity, startup, technology, entrepreneurship, telemetry, logs, Beacon, integration, AI, data management data processing, optimization, data reduction, cost-effective solutions, in-stream analytics, security operations, competitive landscape, security telemetry, technology opportunities&lt;/p&gt;</itunes:summary><itunes:explicit>no</itunes:explicit><itunes:duration>01:19:35</itunes:duration><itunes:image href="https://hosting-media.riverside.com/media/podcasts/d12142d4-2233-4bd4-b386-701ab9656d07/logos/665271c7-01fb-4665-94f2-5345ab20a1e0.jpeg"/><itunes:season>1</itunes:season><itunes:episode>7</itunes:episode><itunes:title>EP 7: Beacon Security</itunes:title><itunes:episodeType>full</itunes:episodeType></item><item><title><![CDATA[EP 6: Prime Security]]></title><description><![CDATA[<p>Discussion with Michael Nov, CEO and co-founder at Prime Security.</p><p></p><p>Prime Security: <a rel="noopener noreferrer nofollow" href="https://www.primesec.ai/" target="_blank">https://www.primesec.ai/</a></p><p>Michael Nov: <a rel="noopener noreferrer nofollow" href="https://www.linkedin.com/in/michael-nov/" target="_blank">https://www.linkedin.com/in/michael-nov/</a></p><p></p><p><b>Support the show and Donate to NCMEC</b>: <a rel="noopener noreferrer nofollow" href="https://give.missingkids.org/TrustIssues" target="_blank">https://give.missingkids.org/TrustIssues</a></p><p></p><p><b>Summary</b></p><p>In this conversation, Justin Somaini speaks with Michael Nov, CEO and co-founder of Prime Security, about the rapid advancements in AI and its impact on engineering and application security. They discuss the challenges faced in integrating security into the engineering process, the importance of automation, and the cultural shifts needed to prioritize security in fast-paced development environments. Michael shares his journey from backup recovery to founding Prime Security, highlighting the need for innovative solutions to bridge the gap between security and engineering teams. In this conversation, Justin Somaini discusses the architecture of AI solutions in security, focusing on outcomes for security teams, identifying gaps in security standards, defining and quantifying risk, and the evolving role of security in engineering. He emphasizes the importance of context in AI applications and how it can enhance engineering processes. The discussion also touches on the competitive landscape in the AppSec market and the challenges of building a company in this space.</p><p></p><p><b>Chapters</b></p><p>00:00 The Acceleration of AI in Engineering</p><p>01:13 Introduction to Prime Security and Its Innovations</p><p>02:33 Michael Nov's Background and Journey</p><p>06:13 Transitioning from Backup Recovery to Application Security</p><p>08:34 The Motivation Behind Starting Prime Security</p><p>11:55 Identifying Problems in Security and Engineering Collaboration</p><p>15:46 The Impact of Agile Development on Security</p><p>18:37 Cultural Challenges in Security Integration</p><p>20:59 Automating Security Processes</p><p>23:52 Understanding Customer Environments and Integration</p><p>27:51 The Future of Engineering and Security with AI</p><p>34:03 Understanding the Architecture of AI Solutions</p><p>37:04 Outcomes for Security Teams</p><p>40:21 Identifying Gaps in Security Standards</p><p>46:04 Defining and Quantifying Risk</p><p>51:45 The Role of Security in Engineering</p><p>56:13 Differentiating in the AppSec Market</p><p>61:04 Building a Company in the Security Space</p><p></p><p>Keywords</p><p>AI, engineering, application security, automation, Prime Security, security architecture, Agile development, collaboration, security tools, software development AI, security, SaaS, risk management, engineering, architecture, outcomes, AppSec, automation, differentiation</p><p></p>]]></description><guid isPermaLink="false">9385a08a-943f-4d20-8996-0924e9d51b50</guid><dc:creator><![CDATA[Justin Somaini]]></dc:creator><pubDate>Thu, 19 Mar 2026 00:15:00 GMT</pubDate><enclosure url="https://api.riverside.com/hosting-analytics/media/38847485ebe6bb0851fd8c8e241b1e51287ea4f35fcff42a6adea1a86b71b8f0/eyJlcGlzb2RlSWQiOiI5Mzg1YTA4YS05NDNmLTRkMjAtODk5Ni0wOTI0ZTlkNTFiNTAiLCJwb2RjYXN0SWQiOiJkMTIxNDJkNC0yMjMzLTRiZDQtYjM4Ni03MDFhYjk2NTZkMDciLCJhY2NvdW50SWQiOiI2OGU3Y2M1OWVjZmE2NTQ3OGNlODhkNTMiLCJwYXRoIjoibWVkaWEvY2xpcHMvNjliYjE3YzYxODQxYzAwMWUwZTg4ZjZlL2p1c3Rpbi1zb21haW5pcy1zdHVkaW8tY29tcG9zZXItMjAyNi0zLTE4X18yMi0yMy0xOC5tcDMifQ==.mp3" length="97148072" type="audio/mpeg"/><podcast:transcript url="https://hosting-media.riverside.com/media/podcasts/d12142d4-2233-4bd4-b386-701ab9656d07/episodes/9385a08a-943f-4d20-8996-0924e9d51b50/transcripts.txt" type="text/plain"/><itunes:summary>&lt;p&gt;Discussion with Michael Nov, CEO and co-founder at Prime Security.&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;Prime Security: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://www.primesec.ai/&quot; target=&quot;_blank&quot;&gt;https://www.primesec.ai/&lt;/a&gt;&lt;/p&gt;&lt;p&gt;Michael Nov: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://www.linkedin.com/in/michael-nov/&quot; target=&quot;_blank&quot;&gt;https://www.linkedin.com/in/michael-nov/&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Support the show and Donate to NCMEC&lt;/b&gt;: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://give.missingkids.org/TrustIssues&quot; target=&quot;_blank&quot;&gt;https://give.missingkids.org/TrustIssues&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Summary&lt;/b&gt;&lt;/p&gt;&lt;p&gt;In this conversation, Justin Somaini speaks with Michael Nov, CEO and co-founder of Prime Security, about the rapid advancements in AI and its impact on engineering and application security. They discuss the challenges faced in integrating security into the engineering process, the importance of automation, and the cultural shifts needed to prioritize security in fast-paced development environments. Michael shares his journey from backup recovery to founding Prime Security, highlighting the need for innovative solutions to bridge the gap between security and engineering teams. In this conversation, Justin Somaini discusses the architecture of AI solutions in security, focusing on outcomes for security teams, identifying gaps in security standards, defining and quantifying risk, and the evolving role of security in engineering. He emphasizes the importance of context in AI applications and how it can enhance engineering processes. The discussion also touches on the competitive landscape in the AppSec market and the challenges of building a company in this space.&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Chapters&lt;/b&gt;&lt;/p&gt;&lt;p&gt;00:00 The Acceleration of AI in Engineering&lt;/p&gt;&lt;p&gt;01:13 Introduction to Prime Security and Its Innovations&lt;/p&gt;&lt;p&gt;02:33 Michael Nov&apos;s Background and Journey&lt;/p&gt;&lt;p&gt;06:13 Transitioning from Backup Recovery to Application Security&lt;/p&gt;&lt;p&gt;08:34 The Motivation Behind Starting Prime Security&lt;/p&gt;&lt;p&gt;11:55 Identifying Problems in Security and Engineering Collaboration&lt;/p&gt;&lt;p&gt;15:46 The Impact of Agile Development on Security&lt;/p&gt;&lt;p&gt;18:37 Cultural Challenges in Security Integration&lt;/p&gt;&lt;p&gt;20:59 Automating Security Processes&lt;/p&gt;&lt;p&gt;23:52 Understanding Customer Environments and Integration&lt;/p&gt;&lt;p&gt;27:51 The Future of Engineering and Security with AI&lt;/p&gt;&lt;p&gt;34:03 Understanding the Architecture of AI Solutions&lt;/p&gt;&lt;p&gt;37:04 Outcomes for Security Teams&lt;/p&gt;&lt;p&gt;40:21 Identifying Gaps in Security Standards&lt;/p&gt;&lt;p&gt;46:04 Defining and Quantifying Risk&lt;/p&gt;&lt;p&gt;51:45 The Role of Security in Engineering&lt;/p&gt;&lt;p&gt;56:13 Differentiating in the AppSec Market&lt;/p&gt;&lt;p&gt;61:04 Building a Company in the Security Space&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;Keywords&lt;/p&gt;&lt;p&gt;AI, engineering, application security, automation, Prime Security, security architecture, Agile development, collaboration, security tools, software development AI, security, SaaS, risk management, engineering, architecture, outcomes, AppSec, automation, differentiation&lt;/p&gt;&lt;p&gt;&lt;/p&gt;</itunes:summary><itunes:explicit>no</itunes:explicit><itunes:duration>01:07:28</itunes:duration><itunes:image href="https://hosting-media.riverside.com/media/podcasts/d12142d4-2233-4bd4-b386-701ab9656d07/logos/665271c7-01fb-4665-94f2-5345ab20a1e0.jpeg"/><itunes:season>1</itunes:season><itunes:episode>6</itunes:episode><itunes:title>EP 6: Prime Security</itunes:title><itunes:episodeType>full</itunes:episodeType></item><item><title><![CDATA[EP 5: Aegis AI]]></title><description><![CDATA[<p>Discussion with Cy Khormaee and Ryan Luo, Co-Founders at Aegis AI (<a rel="noopener noreferrer nofollow" href="http://aegisai.ai" target="_blank">aegisai.ai</a>)</p><p></p><p>Aegis: <a rel="noopener noreferrer nofollow" href="https://aegisai.ai/" target="_blank">https://aegisai.ai/</a></p><p>Cy Khormaee: <a rel="noopener noreferrer nofollow" href="https://www.linkedin.com/in/cykho/" target="_blank">https://www.linkedin.com/in/cykho/</a></p><p>Ryan Luo: <a rel="noopener noreferrer nofollow" href="https://www.linkedin.com/in/rllluo/" target="_blank">https://www.linkedin.com/in/rllluo/</a></p><p></p><p><b>Support the show and Donate to NCMEC: </b><a rel="noopener noreferrer nofollow" href="https://give.missingkids.org/TrustIssues" target="_blank">https://give.missingkids.org/TrustIssues</a></p><p></p><p><b>Summary</b></p><p>In this conversation, Justin Somaini speaks with Sy Cormé and Ryan Liu, co-founders of Aegis Security, about the rapid evolution of AI threats, particularly in the realm of email security. They discuss their backgrounds, the inception of Aegis, and the persistent challenges of email security, especially with the rise of AI-powered phishing attacks. The conversation highlights the need for innovative solutions in cybersecurity and the unique approach Aegis is taking to address these challenges. In this conversation, Justin Somaini discusses the evolving landscape of email security, focusing on the challenges posed by malicious hosts, the importance of active learning in detection systems, and the need for effective email authentication. He highlights the significant improvements in detection efficacy that can be achieved through innovative methodologies and the importance of understanding the context of attacks. The discussion also touches on the acceleration of AI threats and the need for better integration of security solutions across different platforms.</p><p></p><p><b>Chapters</b></p><p>00:00 The Rise of AI Threats</p><p>01:08 Founders' Background and Journey</p><p>07:38 Inception of Aegis Security</p><p>10:00 The Persistent Email Security Problem</p><p>12:21 AI-Powered Phishing: A New Era</p><p>19:17 The Evolution of Cyber Attacks</p><p>27:18 Introducing Aegis Security</p><p>31:08 Understanding Malicious Hosts and Attack Patterns</p><p>34:02 Active Learning and Contextual Decision Making</p><p>37:44 Customer Experience and Detection Efficacy</p><p>40:36 Email Authentication Challenges and Solutions</p><p>45:43 The Evolution of Email Attacks</p><p>48:55 Future Needs in Email Security</p><p>51:42 Behavioral Controls and Identity Management</p><p>54:54 The Acceleration of AI Threats</p><p>58:07 Differentiation in the Security Market</p><p></p><p>Keywords</p><p>AI threats, email security, phishing, Aegis Security, cybersecurity, AI-powered attacks, founders' journey, email vector, machine learning, threat intelligence email security, AI threats, malicious hosts, detection efficacy, authentication, active learning, customer experience, identity management, phishing, cybersecurity</p>]]></description><guid isPermaLink="false">98996897-f6dc-4bec-ac54-cafb08c63c09</guid><dc:creator><![CDATA[Justin Somaini]]></dc:creator><pubDate>Thu, 12 Mar 2026 00:00:00 GMT</pubDate><enclosure url="https://api.riverside.com/hosting-analytics/media/7d4242937f07b58a9582dc380a1674eb8dc4700243d0b3320adf931c04283259/eyJlcGlzb2RlSWQiOiI5ODk5Njg5Ny1mNmRjLTRiZWMtYWM1NC1jYWZiMDhjNjNjMDkiLCJwb2RjYXN0SWQiOiJkMTIxNDJkNC0yMjMzLTRiZDQtYjM4Ni03MDFhYjk2NTZkMDciLCJhY2NvdW50SWQiOiI2OGU3Y2M1OWVjZmE2NTQ3OGNlODhkNTMiLCJwYXRoIjoibWVkaWEvY2xpcHMvNjliMDZkMzFiNWQ5NzUzYzZiOTU0ODA4L2p1c3Rpbi1zb21haW5pcy1zdHVkaW8tY29tcG9zZXItMjAyNi0zLTEwX18yMC0xMi00OS5tcDMifQ==.mp3" length="89293157" type="audio/mpeg"/><podcast:transcript url="https://hosting-media.riverside.com/media/podcasts/d12142d4-2233-4bd4-b386-701ab9656d07/episodes/98996897-f6dc-4bec-ac54-cafb08c63c09/transcripts.txt" type="text/plain"/><itunes:summary>&lt;p&gt;Discussion with Cy Khormaee and Ryan Luo, Co-Founders at Aegis AI (&lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;http://aegisai.ai&quot; target=&quot;_blank&quot;&gt;aegisai.ai&lt;/a&gt;)&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;Aegis: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://aegisai.ai/&quot; target=&quot;_blank&quot;&gt;https://aegisai.ai/&lt;/a&gt;&lt;/p&gt;&lt;p&gt;Cy Khormaee: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://www.linkedin.com/in/cykho/&quot; target=&quot;_blank&quot;&gt;https://www.linkedin.com/in/cykho/&lt;/a&gt;&lt;/p&gt;&lt;p&gt;Ryan Luo: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://www.linkedin.com/in/rllluo/&quot; target=&quot;_blank&quot;&gt;https://www.linkedin.com/in/rllluo/&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Support the show and Donate to NCMEC: &lt;/b&gt;&lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://give.missingkids.org/TrustIssues&quot; target=&quot;_blank&quot;&gt;https://give.missingkids.org/TrustIssues&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Summary&lt;/b&gt;&lt;/p&gt;&lt;p&gt;In this conversation, Justin Somaini speaks with Sy Cormé and Ryan Liu, co-founders of Aegis Security, about the rapid evolution of AI threats, particularly in the realm of email security. They discuss their backgrounds, the inception of Aegis, and the persistent challenges of email security, especially with the rise of AI-powered phishing attacks. The conversation highlights the need for innovative solutions in cybersecurity and the unique approach Aegis is taking to address these challenges. In this conversation, Justin Somaini discusses the evolving landscape of email security, focusing on the challenges posed by malicious hosts, the importance of active learning in detection systems, and the need for effective email authentication. He highlights the significant improvements in detection efficacy that can be achieved through innovative methodologies and the importance of understanding the context of attacks. The discussion also touches on the acceleration of AI threats and the need for better integration of security solutions across different platforms.&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Chapters&lt;/b&gt;&lt;/p&gt;&lt;p&gt;00:00 The Rise of AI Threats&lt;/p&gt;&lt;p&gt;01:08 Founders&apos; Background and Journey&lt;/p&gt;&lt;p&gt;07:38 Inception of Aegis Security&lt;/p&gt;&lt;p&gt;10:00 The Persistent Email Security Problem&lt;/p&gt;&lt;p&gt;12:21 AI-Powered Phishing: A New Era&lt;/p&gt;&lt;p&gt;19:17 The Evolution of Cyber Attacks&lt;/p&gt;&lt;p&gt;27:18 Introducing Aegis Security&lt;/p&gt;&lt;p&gt;31:08 Understanding Malicious Hosts and Attack Patterns&lt;/p&gt;&lt;p&gt;34:02 Active Learning and Contextual Decision Making&lt;/p&gt;&lt;p&gt;37:44 Customer Experience and Detection Efficacy&lt;/p&gt;&lt;p&gt;40:36 Email Authentication Challenges and Solutions&lt;/p&gt;&lt;p&gt;45:43 The Evolution of Email Attacks&lt;/p&gt;&lt;p&gt;48:55 Future Needs in Email Security&lt;/p&gt;&lt;p&gt;51:42 Behavioral Controls and Identity Management&lt;/p&gt;&lt;p&gt;54:54 The Acceleration of AI Threats&lt;/p&gt;&lt;p&gt;58:07 Differentiation in the Security Market&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;Keywords&lt;/p&gt;&lt;p&gt;AI threats, email security, phishing, Aegis Security, cybersecurity, AI-powered attacks, founders&apos; journey, email vector, machine learning, threat intelligence email security, AI threats, malicious hosts, detection efficacy, authentication, active learning, customer experience, identity management, phishing, cybersecurity&lt;/p&gt;</itunes:summary><itunes:explicit>no</itunes:explicit><itunes:duration>01:02:01</itunes:duration><itunes:image href="https://hosting-media.riverside.com/media/podcasts/d12142d4-2233-4bd4-b386-701ab9656d07/logos/665271c7-01fb-4665-94f2-5345ab20a1e0.jpeg"/><itunes:season>1</itunes:season><itunes:episode>5</itunes:episode><itunes:title>EP 5: Aegis AI</itunes:title><itunes:episodeType>full</itunes:episodeType></item><item><title><![CDATA[EP 4: Prophet]]></title><description><![CDATA[<p>Discussion with Kamal Shah, CEO and Co-Founder at Prophet.</p><p></p><p>Prophet Security: <a rel="noopener noreferrer nofollow" href="https://prophetsecurity.ai/" target="_blank">https://prophetsecurity.ai/</a></p><p>Kamal Shah: <a rel="noopener noreferrer nofollow" href="https://www.linkedin.com/in/kdshah/" target="_blank">https://www.linkedin.com/in/kdshah/</a></p><p></p><p><b>Support the show and Donate to NCMEC: </b><a rel="noopener noreferrer nofollow" href="https://give.missingkids.org/TrustIssues" target="_blank">https://give.missingkids.org/TrustIssues</a></p><p></p><p><b>Summary</b></p><p>In this conversation, Justin Somaini interviews Kamal Shah, CEO of Profit, discussing the transformative role of agentic AI in security operations. They explore Kamal's journey from Mumbai to Silicon Valley, his experiences at FedEx and various startups, and the challenges faced in the cybersecurity landscape. The discussion highlights the importance of automation in addressing alert fatigue, the unique approach of Profit in leveraging AI for security, and the need for transparency and documentation in AI solutions. In this conversation, Justin Somaini discusses the transformative impact of agentic AI on cybersecurity operations, emphasizing its role in expediting communication, enhancing incident response, and minimizing false positives. He highlights the importance of customization and context in security alerts, the future of threat hunting, and the need to address burnout in security teams. The discussion also covers the efficacy of AI solutions, differentiation in a competitive market, and the overall promise of AI in improving security operations.</p><p></p><p><b>Chapters</b></p><p>00:00 The Rise of Agentic AI in Security Operations</p><p>03:06 Kamal Shah's Journey: From Mumbai to Silicon Valley</p><p>05:53 Career Path: From FedEx to Startups</p><p>09:08 Navigating the Tech Landscape: Lessons from Startups</p><p>11:59 The Genesis of Profit: Addressing Security Challenges</p><p>14:53 Leveraging AI to Combat Alert Fatigue</p><p>18:08 Profit's Unique Approach to Security Automation</p><p>21:03 Operationalizing Profit: Integration with Existing Systems</p><p>23:49 Transparency and Explainability in AI Solutions</p><p>26:48 Building Trust: The Role of Documentation in Security</p><p>30:07 The Future of Security Operations: AI and Human Collaboration</p><p>35:39 Expediting Communication in Security Operations</p><p>38:04 The Role of Agentic AI in Incident Response</p><p>39:57 Minimizing Hallucinations in AI Solutions</p><p>41:51 Customization and Context in Security Alerts</p><p>44:38 Future of Threat Hunting with AI</p><p>46:32 Real-World Impact of AI on Security Teams</p><p>49:15 Role Elevation vs. Elimination in Cybersecurity</p><p>52:07 Addressing Burnout in Security Operations</p><p>55:57 Efficacy and Implementation of AI Solutions</p><p>60:18 Differentiating in a Competitive Market</p><p>64:30 The Promise of AI in Security Operations</p><p></p><p>Keywords</p><p>Agentic AI, Security Operations, Automation, Cybersecurity, Alert Fatigue, AI Solutions, SOC, Technology Startups, Innovation AI, cybersecurity, incident response, security operations, threat hunting, automation, security alerts</p>]]></description><guid isPermaLink="false">e32d18b9-92ec-4f5e-8e0c-9b1803e977fc</guid><dc:creator><![CDATA[Justin Somaini]]></dc:creator><pubDate>Thu, 05 Mar 2026 01:00:00 GMT</pubDate><enclosure url="https://api.riverside.com/hosting-analytics/media/becb80654e290bb4b89b6c362034c6a181e8f80c271334cc23b1675c885039eb/eyJlcGlzb2RlSWQiOiJlMzJkMThiOS05MmVjLTRmNWUtOGUwYy05YjE4MDNlOTc3ZmMiLCJwb2RjYXN0SWQiOiJkMTIxNDJkNC0yMjMzLTRiZDQtYjM4Ni03MDFhYjk2NTZkMDciLCJhY2NvdW50SWQiOiI2OGU3Y2M1OWVjZmE2NTQ3OGNlODhkNTMiLCJwYXRoIjoibWVkaWEvY2xpcHMvNjlhOGJjY2FmZjQyZDk1MGM4NzMyODQ3L2p1c3Rpbi1zb21haW5pcy1zdHVkaW8tY29tcG9zZXItMjAyNi0zLTVfXzAtMTQtMTgubXAzIn0=.mp3" length="103330316" type="audio/mpeg"/><podcast:transcript url="https://hosting-media.riverside.com/media/podcasts/d12142d4-2233-4bd4-b386-701ab9656d07/episodes/e32d18b9-92ec-4f5e-8e0c-9b1803e977fc/transcripts.txt" type="text/plain"/><itunes:summary>&lt;p&gt;Discussion with Kamal Shah, CEO and Co-Founder at Prophet.&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;Prophet Security: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://prophetsecurity.ai/&quot; target=&quot;_blank&quot;&gt;https://prophetsecurity.ai/&lt;/a&gt;&lt;/p&gt;&lt;p&gt;Kamal Shah: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://www.linkedin.com/in/kdshah/&quot; target=&quot;_blank&quot;&gt;https://www.linkedin.com/in/kdshah/&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Support the show and Donate to NCMEC: &lt;/b&gt;&lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://give.missingkids.org/TrustIssues&quot; target=&quot;_blank&quot;&gt;https://give.missingkids.org/TrustIssues&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Summary&lt;/b&gt;&lt;/p&gt;&lt;p&gt;In this conversation, Justin Somaini interviews Kamal Shah, CEO of Profit, discussing the transformative role of agentic AI in security operations. They explore Kamal&apos;s journey from Mumbai to Silicon Valley, his experiences at FedEx and various startups, and the challenges faced in the cybersecurity landscape. The discussion highlights the importance of automation in addressing alert fatigue, the unique approach of Profit in leveraging AI for security, and the need for transparency and documentation in AI solutions. In this conversation, Justin Somaini discusses the transformative impact of agentic AI on cybersecurity operations, emphasizing its role in expediting communication, enhancing incident response, and minimizing false positives. He highlights the importance of customization and context in security alerts, the future of threat hunting, and the need to address burnout in security teams. The discussion also covers the efficacy of AI solutions, differentiation in a competitive market, and the overall promise of AI in improving security operations.&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Chapters&lt;/b&gt;&lt;/p&gt;&lt;p&gt;00:00 The Rise of Agentic AI in Security Operations&lt;/p&gt;&lt;p&gt;03:06 Kamal Shah&apos;s Journey: From Mumbai to Silicon Valley&lt;/p&gt;&lt;p&gt;05:53 Career Path: From FedEx to Startups&lt;/p&gt;&lt;p&gt;09:08 Navigating the Tech Landscape: Lessons from Startups&lt;/p&gt;&lt;p&gt;11:59 The Genesis of Profit: Addressing Security Challenges&lt;/p&gt;&lt;p&gt;14:53 Leveraging AI to Combat Alert Fatigue&lt;/p&gt;&lt;p&gt;18:08 Profit&apos;s Unique Approach to Security Automation&lt;/p&gt;&lt;p&gt;21:03 Operationalizing Profit: Integration with Existing Systems&lt;/p&gt;&lt;p&gt;23:49 Transparency and Explainability in AI Solutions&lt;/p&gt;&lt;p&gt;26:48 Building Trust: The Role of Documentation in Security&lt;/p&gt;&lt;p&gt;30:07 The Future of Security Operations: AI and Human Collaboration&lt;/p&gt;&lt;p&gt;35:39 Expediting Communication in Security Operations&lt;/p&gt;&lt;p&gt;38:04 The Role of Agentic AI in Incident Response&lt;/p&gt;&lt;p&gt;39:57 Minimizing Hallucinations in AI Solutions&lt;/p&gt;&lt;p&gt;41:51 Customization and Context in Security Alerts&lt;/p&gt;&lt;p&gt;44:38 Future of Threat Hunting with AI&lt;/p&gt;&lt;p&gt;46:32 Real-World Impact of AI on Security Teams&lt;/p&gt;&lt;p&gt;49:15 Role Elevation vs. Elimination in Cybersecurity&lt;/p&gt;&lt;p&gt;52:07 Addressing Burnout in Security Operations&lt;/p&gt;&lt;p&gt;55:57 Efficacy and Implementation of AI Solutions&lt;/p&gt;&lt;p&gt;60:18 Differentiating in a Competitive Market&lt;/p&gt;&lt;p&gt;64:30 The Promise of AI in Security Operations&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;Keywords&lt;/p&gt;&lt;p&gt;Agentic AI, Security Operations, Automation, Cybersecurity, Alert Fatigue, AI Solutions, SOC, Technology Startups, Innovation AI, cybersecurity, incident response, security operations, threat hunting, automation, security alerts&lt;/p&gt;</itunes:summary><itunes:explicit>no</itunes:explicit><itunes:duration>01:11:45</itunes:duration><itunes:image href="https://hosting-media.riverside.com/media/podcasts/d12142d4-2233-4bd4-b386-701ab9656d07/episodes/e32d18b9-92ec-4f5e-8e0c-9b1803e977fc/images/f914c811-a28d-4162-8d60-3a89a027b209.png"/><itunes:season>1</itunes:season><itunes:episode>4</itunes:episode><itunes:title>EP 4: Prophet</itunes:title><itunes:episodeType>full</itunes:episodeType></item><item><title><![CDATA[EP 3: Pixee]]></title><description><![CDATA[<p>Discussion with Surag Patel, CEO and Co-Founder of Pixee.</p><p></p><p>Pixee: <a rel="noopener noreferrer nofollow" href="https://pixee.ai/" target="_blank">https://pixee.ai/</a></p><p>Surag Patel: <a rel="noopener noreferrer nofollow" href="https://www.linkedin.com/in/suragpatel/" target="_blank">https://www.linkedin.com/in/suragpatel/</a></p><p></p><p>Support the show and Donate to NCMEC: <a rel="noopener noreferrer nofollow" href="https://give.missingkids.org/TrustIssues" target="_blank">https://give.missingkids.org/TrustIssues</a></p><p></p><p><b>Summary</b></p><p>In this conversation, Surag Patel shares his journey from growing up in San Jose to becoming a key player in the cybersecurity and application security space. He discusses his early entrepreneurial ventures, his experiences at Comscore and Contrast Security, and the challenges faced in the application security domain. Surag emphasizes the need for a balanced control model in security practices and introduces his latest venture, Pixie, which aims to streamline the remediation process in application security by leveraging AI and LLMs. The discussion highlights the importance of contextualization and the need for solutions that address the manual workload of developers and security teams. In this conversation, Justin Somaini and Surag Patel discuss the evolving landscape of application security, focusing on the integration of AI in vulnerability management and remediation processes. They explore the importance of quality and accuracy in triage, the role of human judgment in fixing vulnerabilities, and the metrics that define success in developer engagement. The discussion also touches on the competitive landscape of application security solutions and the future of AI in enhancing security processes. Ultimately, they emphasize the need for practical experience with these technologies to truly understand their value.</p><p></p><p><b>Chapters</b></p><p>00:00 Surag Patel's Journey: From Kansas to Silicon Valley</p><p>02:58 Building a Business in High School: The PC Venture</p><p>05:55 Career Path: From Comscore to Cybersecurity</p><p>09:02 Transitioning to AppSec: Lessons from Contrast Security</p><p>11:50 The Challenges of Application Security</p><p>15:11 The Need for a Balanced Control Model</p><p>17:49 Founding Pixie: Addressing Manual Work in AppSec</p><p>20:51 Implementing Pixie: Time to Value and Contextualization</p><p>23:51 Leveraging LLMs: The Future of AppSec Solutions</p><p>37:19 Triage and Remediation in Application Security</p><p>40:40 Quality and Accuracy in Vulnerability Management</p><p>43:31 Fixing Vulnerabilities: The Role of AI and Human Judgment</p><p>46:08 Measuring Success: Merge Rates and Developer Engagement</p><p>49:09 Mean Time to Remediation: Automation and Efficiency</p><p>53:54 Competitive Landscape in Application Security</p><p>61:43 The Future of AI in Security Processes</p><p>66:33 Final Thoughts: Experience Over Theory</p><p></p><p>Keywords<br />Waymo, application security, cybersecurity, developer experience, Pixie, remediation, technology, confidence, Saurabh Patel, Contrast Security AI, application security, model selection, quality assurance, developer adoption, merge rates, competitive landscape, automation, remediation, security processes</p>]]></description><guid isPermaLink="false">09b9e7eb-6dde-4454-b3c6-7d9091032988</guid><dc:creator><![CDATA[Justin Somaini]]></dc:creator><pubDate>Thu, 26 Feb 2026 01:00:00 GMT</pubDate><enclosure url="https://api.riverside.com/hosting-analytics/media/3e7a3af7174a758032192ee3e5db5b74e2d1a4635bf8cb8b34ac577d220b98e1/eyJlcGlzb2RlSWQiOiIwOWI5ZTdlYi02ZGRlLTQ0NTQtYjNjNi03ZDkwOTEwMzI5ODgiLCJwb2RjYXN0SWQiOiJkMTIxNDJkNC0yMjMzLTRiZDQtYjM4Ni03MDFhYjk2NTZkMDciLCJhY2NvdW50SWQiOiI2OGU3Y2M1OWVjZmE2NTQ3OGNlODhkNTMiLCJwYXRoIjoibWVkaWEvY2xpcHMvNjk5ODcwZTY2MjJhNWVmNjQ1ZjdjNmU4L2p1c3Rpbi1zb21haW5pcy1zdHVkaW8tY29tcG9zZXItMjAyNi0yLTIwX18xNS0zNC0xNC5tcDMifQ==.mp3" length="100575547" type="audio/mpeg"/><itunes:summary>&lt;p&gt;Discussion with Surag Patel, CEO and Co-Founder of Pixee.&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;Pixee: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://pixee.ai/&quot; target=&quot;_blank&quot;&gt;https://pixee.ai/&lt;/a&gt;&lt;/p&gt;&lt;p&gt;Surag Patel: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://www.linkedin.com/in/suragpatel/&quot; target=&quot;_blank&quot;&gt;https://www.linkedin.com/in/suragpatel/&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;Support the show and Donate to NCMEC: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://give.missingkids.org/TrustIssues&quot; target=&quot;_blank&quot;&gt;https://give.missingkids.org/TrustIssues&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Summary&lt;/b&gt;&lt;/p&gt;&lt;p&gt;In this conversation, Surag Patel shares his journey from growing up in San Jose to becoming a key player in the cybersecurity and application security space. He discusses his early entrepreneurial ventures, his experiences at Comscore and Contrast Security, and the challenges faced in the application security domain. Surag emphasizes the need for a balanced control model in security practices and introduces his latest venture, Pixie, which aims to streamline the remediation process in application security by leveraging AI and LLMs. The discussion highlights the importance of contextualization and the need for solutions that address the manual workload of developers and security teams. In this conversation, Justin Somaini and Surag Patel discuss the evolving landscape of application security, focusing on the integration of AI in vulnerability management and remediation processes. They explore the importance of quality and accuracy in triage, the role of human judgment in fixing vulnerabilities, and the metrics that define success in developer engagement. The discussion also touches on the competitive landscape of application security solutions and the future of AI in enhancing security processes. Ultimately, they emphasize the need for practical experience with these technologies to truly understand their value.&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Chapters&lt;/b&gt;&lt;/p&gt;&lt;p&gt;00:00 Surag Patel&apos;s Journey: From Kansas to Silicon Valley&lt;/p&gt;&lt;p&gt;02:58 Building a Business in High School: The PC Venture&lt;/p&gt;&lt;p&gt;05:55 Career Path: From Comscore to Cybersecurity&lt;/p&gt;&lt;p&gt;09:02 Transitioning to AppSec: Lessons from Contrast Security&lt;/p&gt;&lt;p&gt;11:50 The Challenges of Application Security&lt;/p&gt;&lt;p&gt;15:11 The Need for a Balanced Control Model&lt;/p&gt;&lt;p&gt;17:49 Founding Pixie: Addressing Manual Work in AppSec&lt;/p&gt;&lt;p&gt;20:51 Implementing Pixie: Time to Value and Contextualization&lt;/p&gt;&lt;p&gt;23:51 Leveraging LLMs: The Future of AppSec Solutions&lt;/p&gt;&lt;p&gt;37:19 Triage and Remediation in Application Security&lt;/p&gt;&lt;p&gt;40:40 Quality and Accuracy in Vulnerability Management&lt;/p&gt;&lt;p&gt;43:31 Fixing Vulnerabilities: The Role of AI and Human Judgment&lt;/p&gt;&lt;p&gt;46:08 Measuring Success: Merge Rates and Developer Engagement&lt;/p&gt;&lt;p&gt;49:09 Mean Time to Remediation: Automation and Efficiency&lt;/p&gt;&lt;p&gt;53:54 Competitive Landscape in Application Security&lt;/p&gt;&lt;p&gt;61:43 The Future of AI in Security Processes&lt;/p&gt;&lt;p&gt;66:33 Final Thoughts: Experience Over Theory&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;Keywords&lt;br /&gt;Waymo, application security, cybersecurity, developer experience, Pixie, remediation, technology, confidence, Saurabh Patel, Contrast Security AI, application security, model selection, quality assurance, developer adoption, merge rates, competitive landscape, automation, remediation, security processes&lt;/p&gt;</itunes:summary><itunes:explicit>no</itunes:explicit><itunes:duration>01:09:51</itunes:duration><itunes:image href="https://hosting-media.riverside.com/media/podcasts/d12142d4-2233-4bd4-b386-701ab9656d07/episodes/09b9e7eb-6dde-4454-b3c6-7d9091032988/images/87afee31-0e0e-43ec-9aec-89799b8ad3ed.png"/><itunes:season>1</itunes:season><itunes:episode>3</itunes:episode><itunes:title>EP 3: Pixee</itunes:title><itunes:episodeType>full</itunes:episodeType></item><item><title><![CDATA[EP 2: Minimus]]></title><description><![CDATA[<p>Discussion with John Morello, CTO and Co-Founder at Minimus.</p><p></p><p>Minimus: <a rel="noopener noreferrer nofollow" href="https://minimus.io/" target="_blank">https://minimus.io/</a></p><p>John Morello: <a rel="noopener noreferrer nofollow" href="https://www.linkedin.com/in/john-morello/" target="_blank">https://www.linkedin.com/in/john-morello/</a></p><p></p><p>Support the show and Donate to NCMEC: <a rel="noopener noreferrer nofollow" href="https://give.missingkids.org/TrustIssues" target="_blank">https://give.missingkids.org/TrustIssues</a></p><p></p><p><b>Summary</b></p><p>In this conversation, Justin Somaini interviews John Morello, CTO and co-founder of Minimus, discussing the importance of container security and the innovative approaches Minimus is taking to reduce vulnerabilities in software. They explore Morello's career journey, lessons learned from his time at Microsoft, and the evolution of security practices in the tech industry. The discussion highlights the challenges faced by security professionals and the need for a proactive approach to managing vulnerabilities in cloud environments. In this conversation, Justin Somaini discusses the complexities of building secure software at scale, emphasizing the importance of balancing security with developer flexibility. He explains how their product allows for customization while maintaining security standards, and shares insights on deployment strategies and customer experiences. The discussion also covers navigating compliance and security standards, differentiating in a competitive market, and the realities of adoption and deployment in organizations.</p><p></p><p><b>Chapters</b></p><p>00:00 Introduction to Minimus and Container Security</p><p>09:50 Career Journey and Lessons from Microsoft</p><p>19:59 The Evolution of Security Practices</p><p>29:47 Innovations in Container Image Management</p><p>39:55 The Future of Security in Cloud Environments</p><p>32:04 Balancing Security and Developer Flexibility</p><p>36:11 Deployment Strategies and Customer Experiences</p><p>42:16 Navigating Compliance and Security Standards</p><p>45:53 Differentiating in a Competitive Market</p><p>50:23 Realities of Adoption and Deployment</p><p></p><p>Keywords</p><p>Minimus, container security, cybersecurity, John Morello, software vulnerabilities, cloud security, image management, security practices, technology innovation, startup journey software security, deployment strategies, compliance, developer flexibility, container images, vulnerability management, software engineering, customer experience, market differentiation, operational efficiency</p>]]></description><guid isPermaLink="false">0531e00f-cba8-4aa4-956d-811b714eaf7f</guid><dc:creator><![CDATA[Justin Somaini]]></dc:creator><pubDate>Thu, 19 Feb 2026 15:54:05 GMT</pubDate><enclosure url="https://api.riverside.com/hosting-analytics/media/a3873c6b13252ece199d4af57ccc2fdc79106ba8fcd299034bd03faedaa3ae00/eyJlcGlzb2RlSWQiOiIwNTMxZTAwZi1jYmE4LTRhYTQtOTU2ZC04MTFiNzE0ZWFmN2YiLCJwb2RjYXN0SWQiOiJkMTIxNDJkNC0yMjMzLTRiZDQtYjM4Ni03MDFhYjk2NTZkMDciLCJhY2NvdW50SWQiOiI2OGU3Y2M1OWVjZmE2NTQ3OGNlODhkNTMiLCJwYXRoIjoibWVkaWEvY2xpcHMvNjk5NzJhMWE3ZWQ1NDU3NDQzOWEyMmZjL2p1c3Rpbi1zb21haW5pcy1zdHVkaW8tY29tcG9zZXItMjAyNi0yLTE5X18xNi0xOS01NC5tcDMifQ==.mp3" length="77735540" type="audio/mpeg"/><itunes:summary>&lt;p&gt;Discussion with John Morello, CTO and Co-Founder at Minimus.&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;Minimus: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://minimus.io/&quot; target=&quot;_blank&quot;&gt;https://minimus.io/&lt;/a&gt;&lt;/p&gt;&lt;p&gt;John Morello: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://www.linkedin.com/in/john-morello/&quot; target=&quot;_blank&quot;&gt;https://www.linkedin.com/in/john-morello/&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;Support the show and Donate to NCMEC: &lt;a rel=&quot;noopener noreferrer nofollow&quot; href=&quot;https://give.missingkids.org/TrustIssues&quot; target=&quot;_blank&quot;&gt;https://give.missingkids.org/TrustIssues&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Summary&lt;/b&gt;&lt;/p&gt;&lt;p&gt;In this conversation, Justin Somaini interviews John Morello, CTO and co-founder of Minimus, discussing the importance of container security and the innovative approaches Minimus is taking to reduce vulnerabilities in software. They explore Morello&apos;s career journey, lessons learned from his time at Microsoft, and the evolution of security practices in the tech industry. The discussion highlights the challenges faced by security professionals and the need for a proactive approach to managing vulnerabilities in cloud environments. In this conversation, Justin Somaini discusses the complexities of building secure software at scale, emphasizing the importance of balancing security with developer flexibility. He explains how their product allows for customization while maintaining security standards, and shares insights on deployment strategies and customer experiences. The discussion also covers navigating compliance and security standards, differentiating in a competitive market, and the realities of adoption and deployment in organizations.&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;b&gt;Chapters&lt;/b&gt;&lt;/p&gt;&lt;p&gt;00:00 Introduction to Minimus and Container Security&lt;/p&gt;&lt;p&gt;09:50 Career Journey and Lessons from Microsoft&lt;/p&gt;&lt;p&gt;19:59 The Evolution of Security Practices&lt;/p&gt;&lt;p&gt;29:47 Innovations in Container Image Management&lt;/p&gt;&lt;p&gt;39:55 The Future of Security in Cloud Environments&lt;/p&gt;&lt;p&gt;32:04 Balancing Security and Developer Flexibility&lt;/p&gt;&lt;p&gt;36:11 Deployment Strategies and Customer Experiences&lt;/p&gt;&lt;p&gt;42:16 Navigating Compliance and Security Standards&lt;/p&gt;&lt;p&gt;45:53 Differentiating in a Competitive Market&lt;/p&gt;&lt;p&gt;50:23 Realities of Adoption and Deployment&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;Keywords&lt;/p&gt;&lt;p&gt;Minimus, container security, cybersecurity, John Morello, software vulnerabilities, cloud security, image management, security practices, technology innovation, startup journey software security, deployment strategies, compliance, developer flexibility, container images, vulnerability management, software engineering, customer experience, market differentiation, operational efficiency&lt;/p&gt;</itunes:summary><itunes:explicit>no</itunes:explicit><itunes:duration>00:53:59</itunes:duration><itunes:image href="https://hosting-media.riverside.com/media/podcasts/d12142d4-2233-4bd4-b386-701ab9656d07/episodes/0531e00f-cba8-4aa4-956d-811b714eaf7f/images/aa132dcd-e9d4-4d3b-a692-de5c5d43b465.png"/><itunes:season>1</itunes:season><itunes:episode>2</itunes:episode><itunes:title>EP 2: Minimus</itunes:title><itunes:episodeType>full</itunes:episodeType></item><item><title><![CDATA[EP 1: Introduction]]></title><description><![CDATA[<p>Somaini's Trust Issues podcast introduction with Justin Somaini.</p>]]></description><guid isPermaLink="false">bd7ee3eb-1176-46b5-b300-170265f08011</guid><dc:creator><![CDATA[Justin Somaini]]></dc:creator><pubDate>Wed, 11 Feb 2026 01:02:09 GMT</pubDate><enclosure url="https://api.riverside.com/hosting-analytics/media/22f8fc3de28ce5c4bc956b20cbc8a4742d100563f86a21f3b6f40e6e1fcf875a/eyJlcGlzb2RlSWQiOiJiZDdlZTNlYi0xMTc2LTQ2YjUtYjMwMC0xNzAyNjVmMDgwMTEiLCJwb2RjYXN0SWQiOiJkMTIxNDJkNC0yMjMzLTRiZDQtYjM4Ni03MDFhYjk2NTZkMDciLCJhY2NvdW50SWQiOiI2OGU3Y2M1OWVjZmE2NTQ3OGNlODhkNTMiLCJwYXRoIjoibWVkaWEvY2xpcHMvNjk4YmQ0M2M2ZTcxMzNiMzE3ZjgwOTRkL2p1c3Rpbi1zb21haW5pcy1zdHVkaW8tY29tcG9zZXItMjAyNi0yLTExX18xLTU4LTM2Lm1wMyJ9.mp3" length="8913336" type="audio/mpeg"/><itunes:summary>&lt;p&gt;Somaini&apos;s Trust Issues podcast introduction with Justin Somaini.&lt;/p&gt;</itunes:summary><itunes:explicit>no</itunes:explicit><itunes:duration>00:06:11</itunes:duration><itunes:image href="https://hosting-media.riverside.com/media/podcasts/d12142d4-2233-4bd4-b386-701ab9656d07/episodes/bd7ee3eb-1176-46b5-b300-170265f08011/images/777126ae-df46-442c-9294-d0d79c16c494.png"/><itunes:season>1</itunes:season><itunes:episode>1</itunes:episode><itunes:title>EP 1: Introduction</itunes:title><itunes:episodeType>full</itunes:episodeType></item></channel></rss>