Sprocket Security
Ahead of the Breach
Welcome to the Ahead of the Breach, the podcast dedicated to equipping security experts and practitioners with the knowledge and insights needed to excel in the future of cybersecurity. Join us as we explore innovative strategies, emerging trends, actionable takeaways to help security leaders stay ahead.
Author
Sprocket Security
Category
Podcast website
Latest episode
May 1, 2026
Where to listen?
Podcasts in the app Replaio Radio Coming soonPodcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts
Episodes
How Do You Prepare for the Future of Pentesting? 10.06.2025 1:53
Welcome to a special edition of Ahead of the Breach, where our host Casey Cammilleri answers the top questions our listeners have asked us. In today's episode, Casey addresses how to prepare for the future of pentesting. Would you like to have Casey answer one of your questions in a future episode? Email podcast@sprocketsecurity.com with your question and a short summary of why you're looking for...
Digital Turbine’s Vivek Menon on Quarterly Pentesting Frameworks 03.06.2025 16:24
The shift from annual compliance-driven security testing to continuous validation represents one of the most critical evolutions in modern cybersecurity practice. Vivek Menon , CISO & Head of Data at Digital Turbine , discovered this firsthand when his team's focus on modern cloud applications nearly missed a critical legacy system that could have triggered cascading failures across their enti...
What’s Broken About Legacy Pentesting? 29.05.2025 1:55
Welcome to a special edition of Ahead of the Breach, where our host Casey Cammilleri answers the top questions our listeners have asked us. In today's episode, Casey addresses what is broken about legacy pentesting. Would you like to have Casey answer one of your questions in a future episode? Email podcast@sprocketsecurity.com with your question and a short summary of why you're looking for an a...
WhoisXML’s Alex Ronquillo on Domain Age as a Security Signal 19.05.2025 27:56
From a casual gaming project at NASA's JPL to powering 700+ cybersecurity vendors, WhoisXML API has become the foundation of modern threat intelligence. In this episode of Ahead of the Breach, recorded at RSA Conference 2025, Casey sits down with Vice President Alex Ronquillo to explore how domain registration data has become critical infrastructure for security tools and how penetration testers c...
Why Continuous Pentesting Outperforms Bug Bounties 15.05.2025 3:27
Welcome to a special edition of Ahead of the Breach, where our host Casey Cammilleri answers the top questions our listeners have asked us. In today’s episode, Casey addresses “Why does continuous penetration testing outperform bug bounties?” Would you like to have Casey answer one of your questions in a future episode? Email podcast@sprocketsecurity.com with your question and a short summary of...
Sentry’s Cody Florek on AppSec Programs That Create Partnerships Not Problems 06.05.2025 40:12
How do you effectively measure security operations in a world where vulnerabilities never stop coming? Cody Florek , Director of Information Security Operations at Sentry , brings a refreshing approach that combines agile methodology with practical security execution. In this episode of Ahead of the Breach, he tells Casey how his journey from computer repair technician to security leader shaped hi...
Block Harbor’s Ayyappan Rajesh on Advanced RF Exploitation Techniques for Automotive Systems 22.04.2025 34:09
From intercepting key fob signals with HackRF devices to setting up rogue cellular networks with USRP transceivers, Ayyappan Rajesh , Offensive Security Engineer at Block Harbor Cybersecurity , takes Casey deep into the technical underbelly of wireless security testing in this illuminating episode of Ahead of the Breach. As an offensive security engineer with Block Harbor's VCL team, Ayyappan spe...
OX Security’s Eyal Paz on Vulnerability Triage That Actually Works in Production 08.04.2025 39:36
Implementing effective DevSecOps requires balancing security controls with developer experience — a challenge Eyal Paz , VP of Research at OX Security , tackles with practical strategies drawn from his network security background. In this episode of Ahead of the Breach, Eyal explains to Casey how organizations can gradually build shift-left security programs without disrupting development workflow...
Spektrum Labs’ Joshua Brown on Why Control is an Illusion in Modern Security 25.03.2025 27:37
"It's kind of like homeowners’ insurance," says Joshua Brown , Founder of Digital Defense Consulting & CISO at Spektrum Labs , about security programs — they’re helping to mitigate risks, not remove them entirely. “If you have homeowners insurance and your house never burns down, it doesn't mean you wasted money. You were there to mitigate the impact of that potentially catastrophic event.” On...
Fraunhofer Institute’s Donika Mirdita on Novel Attack Methods Against Internet Routing Security 11.03.2025 15:14
In this episode of Ahead of the Breach, Donika Mirdita , Security Researcher at Fraunhofer Institute for Secure Information Technology , details the technical discovery and exploitation of RPKI manifest file vulnerabilities in BGP routing infrastructure. Through precise manipulation of relay party processing patterns and repository query timing, her "Stellaris downgrade attack" exploits manifest f...
NerdWallet’s DK Koran on Building Proactive Security Through Red Teams 25.02.2025 29:16
From testing critical infrastructure and IoT devices to leading application security at NerdWallet , DK Koran , BISO, draws from his experience finding vulnerabilities in police cruisers and SCADA systems to discuss his transition to building and managing proactive security teams. On this episode of Ahead of the Breach, he and Casey explore the challenges of implementing security guardrails, runni...
Rapyd’s Nir Rothenberg on Why Security Needs Constant Testing, Not Annual Checkups 11.02.2025 30:23
What can a controversial cyber weapon teach us about everyday security? From chemistry labs to cyber weapons development, Rapyd ’s CISO/CIO, Nir Rothenberg ’s, journey is anything but conventional. In his conversation with Casey on Ahead of the Breach, he cuts through the headlines about Pegasus to get down to the complex realities of intelligence operations and why most companies are focusing on...
Eptura’s Sean Finley on Building Risk-Based Application Security Programs 28.01.2025 26:27
What if vulnerability management was less about filling backlogs with findings and more about strategic risk reduction? Sean Finley , Director of Application & Product Security at Eptura , brings a refreshing perspective to application security to his conversation with Casey on this episode of Ahead of the Breach. Shaped by years of experience as both a software analyst and security leader, h...
Microsoft’s Vladimir Tokarev on Discovering Critical OpenVPN Vulnerabilities 14.01.2025 28:33
From a friendly gaming challenge to uncovering critical vulnerabilities, Vladimir Tokarev 's journey showcases the power of curiosity in cybersecurity. As a Senior Security Researcher at Microsoft , Tokarev recently unveiled four significant vulnerabilities in OpenVPN's Windows implementation at Black Hat 2024, which he tells Casey all about in this episode of Ahead of the Breach. Vladimir’s disc...
N-able’s Keiran Smith on Building Better Security Through Development Experience 07.01.2025 23:59
From executing his first SQL injection at age 14 to contributing to the Linux kernel, Keiran Smith ’s path to becoming Lead Pentest Engineer at N-able is anything but conventional, as he tells Casey in this episode of Ahead of the Breach. His journey weaves through roles as a senior developer, architect, and DevOps engineer — experiences that transformed him into a security leader who speaks both...
RSA’s Lorenzo Pedroncelli on Identity Security as the New Cyber Perimeter 17.12.2024 42:36
In this episode of Ahead of the Breach, Casey speaks with Lorenzo Pedroncelli , Senior Manager at RSA , who shares his insights on the evolving landscape of cybersecurity, emphasizing the critical role of identity security. He discusses the importance of fostering a security culture within organizations, where employees feel empowered to report suspicious activities. Lorenzo also highlights the c...
DigiCert’s Bindi Davé on Digital Trust in Cybersecurity 03.12.2024 28:24
In this episode of Ahead of the Breach, Casey speaks with Bindi Davé , Deputy CISO at DigiCert , who shares her extensive experience in cybersecurity, focusing on the critical importance of digital trust in today’s interconnected world. She discusses how organizations can establish trust in digital communications and the role of zero trust principles in enhancing security. Bindi also explores t...
Collectors’ Arif Basha on Proactive Security and Attack Surface Management 19.11.2024 15:58
In this episode of Ahead of the Breach, Casey speaks with cybersecurity leader and expert, Arif Basha . Arif offers his insights on the critical importance of attack surface management in today’s cybersecurity landscape. Arif highlights how the dissolution of traditional network perimeters has shifted the focus to identity as the new perimeter, emphasizing the need for proactive security measures....
Ryerson’s Joe Mariscal on Building a Resilient Cybersecurity Culture 05.11.2024 18:58
In this episode of Ahead of the Breach, Casey speaks with Joe Mariscal , Director of Cybersecurity and Compliance at Ryerson . Joe brings his extensive experience in the cybersecurity field to discuss topics such as the critical issue of burnout among cybersecurity professionals. He emphasizes the importance of leadership in fostering a supportive work environment. Joe also highlights strategie...
Cubic’s Konrad Fellmann on Proactive Strategies for Identifying Cybersecurity Vulnerabilities 22.10.2024 28:40
In this episode of Ahead of the Breach, Casey speaks with Konrad Fellmann , VP of IT Infrastructure and CISO at Cubic . Konrad explores critical topics in cybersecurity, including privacy implications of data collection in the automotive industry, for example car manufacturers are reportedly selling consumer data. Konrad also discusses the evolving role of the CISO, emphasizing the importance o...
MillerKnoll’s Al Imran Husain on Securing IT and OT in Manufacturing 08.10.2024 23:41
In this episode of Ahead of the Breach, Casey speaks with Al Imran Husain , CISO & VP of Global Infrastructure at MillerKnoll . Al Imran shares his journey into cybersecurity and discusses the unique challenges faced by manufacturing companies, particularly the convergence of IT and OT systems. He emphasizes the importance of implementing robust security measures, such as network segmentati...
Gong’s Jack Leidecker on Balancing Innovation and Security 24.09.2024 23:32
In this episode of Ahead of the Breach, Casey speaks with Jack Leidecker , CISO at Gong , who shares his extensive experience in cybersecurity, emphasizing the importance of proactive measures to enhance organizational security. He discusses the value of hiring offensive security professionals to identify vulnerabilities and strengthen defenses. Jack also highlights the need to balance rapid in...
Allegiant’s Dan Creed on Navigating the Risks of Deepfakes in Corporate Security 16.09.2024 27:46
In this episode of Ahead of the Breach, Casey speaks with Dan Creed , CISO of Allegiant Travel Company , who shares his expertise on the evolving landscape of cybersecurity. They discuss the alarming rise of deepfake technology and its implications for corporate security, including a compelling example of its use in social engineering. Dan emphasizes the importance of building strong relationsh...
Odyssey Group’s Mario DiNatale on Understanding Your Cybersecurity Attack Surface 09.09.2024 26:22
In this episode of Ahead of the Breach, Casey speaks with Mario DiNatale , CISO at Odyssey Group . Mario shares his insights on the importance of understanding your organization's attack surface and the necessity of hiring skilled professionals to address modern cyber threats. He emphasizes the value of staying informed about the latest trends and tactics used by threat actors to effectively miti...
Sprocket’s Pen Test Team on Bypassing Web Application Security 03.09.2024 54:03
In this episode of Ahead of the Breach, Casey chats with Nicholas Anastasi , Director of Technical Operations; Nate Fair , Penetration Tester & Cyber Security Consultant; Juan Pablo “JP” Gomez Postigo , Penetration Tester; and Willis Vandevanter , Senior Staff Security Researcher — all of whom are members of the Sprocket team! They met up at the Black Hat conference to share their expertise in...
Similar podcasts
Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.