CISO Series

Security You Should Know

What if you could get a no-nonsense look at security solutions in just 15 minutes? Security You Should Know, the latest podcast from the CISO Series, does just that. Hosted by Rich Stroffolino, each episode brings together one security vendor and two security leaders to break down a real-world problem and the solution trying to fix it. Expect straight answers on:How to explain the issue to your CEOWhat the solution actually does (and doesn't do)How the pricing model worksThen, our security leaders ask the tough questions to see what sets this vendor apart. Subscribe now and and stay ahead of t...

Author

CISO Series

Category

Technology

Podcast website

cisoseries.com

Latest episode

Jun 15, 2026

Where to listen?

Podcasts in the app Replaio Radio Coming soon

Podcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts

Get it on Google Play Install for free Android 5M+ downloads · 4.8 rating iOS soon

Episodes

Reducing SIEM Costs with Scanner 11.08.2025

SIEM costs are spiraling out of control for organizations. Increasing log volumes, longer compliance-driven retention requirements, and the habit of collecting everything "just in case," the list goes on. Traditional SIEM architecture forces painful choices between cost control and security visibility, with teams constantly fighting to keep log volumes down while still maintaining adequate coverag...

Evolving Security Awareness with Adaptive Security 04.08.2025

All links and images can be found on CISO Series Security awareness is critical to cultivate in your organization. But security awareness training can often miss the mark. Traditional training is slow and reactive. As deepfakes and LLM-enhanced attacks become common, organizations need training solutions that can adapt and provide relevant training. In this episode, Brian Long , CEO of Adaptive Se...

Securing the Human Element with Trustmi 28.07.2025

All links and images can be found on CISO Series . Wire fraud and payment security remain persistent challenges for organizations, with the FBI reporting a 33% increase in BEC losses between 2023 and 2024. The complexity of B2B payment processes creates multiple attack vectors that traditional email security solutions can't fully address. In this episode, Shai Gabay , co-founder and CEO of Trustmi...

Navigating Cloud Security with TrustOnCloud 21.07.2025

Implmenting new technologies for the business is already a daunting task. Cloud and SaaS have made some of the implementation easier, but it also makes it easier to not fully comprehend the risks you're taking on. All it can take is a company credit card. Organizations struggle with shadow IT, misconfigurations, and unauthorized access across multiple cloud environments, often lacking visibility i...

Coordinating Security Tools with Tines 14.07.2025

Security orchestration sounds great in theory, but in practice, coordinating between different security tools remains a headache. As workflows need to move faster to keep pace with AI-driven attacks, security professionals find themselves overwhelmed with manual "muck work" rather than focusing on business enablement. In this episode, Matt Muller , field CISO at Tines , explains how their no-code...

Embracing AI-Native DLP with Orion Security 07.07.2025

All links and information can be found on CISO Series. DLP can be a bit of a four-letter word in cybersecurity. False positives are a major problem with any traditional DLP solution because setting the right policy for your organization's needs is always a moving target. In this episode, Nitay Milner , co-founder and CEO of Orion Security , explains how they provide a "zero-policy" approach to DLP...

Quantifying, Prioritizing, and Remediating Risk with Qualys 30.06.2025

Managing risk is the name of the game for a CISO. Quantification is a major part of that job, but it doesn't end there. Without a means of communicating that quantification to the rest of the business, quantification just adds to the noise. In this episode, UJ Desai , Senior Director of Product Management, Partner Programs at Qualys explains how they provide a comprehensive solution for the Risk O...

Maximizing the Value of MDR with ThreatLocker 02.06.2025

Security teams today are expected to manage two fronts—building and maintaining proactive defenses, and staying ready to respond at any moment to threats that slip through. But unless someone actively watches those alerts 24/7, your detection tools are expensive noise generators. In this episode, Rob Allen , chief product officer at ThreatLocker , lays out why their Cyber Hero® MDR offering is bui...

Stopping AI Oversharing with Knostic 28.05.2025

Large language models are most useful to your business when they have access to your data. But these models also overshare by default, providing need-to-know information without sophisticated access controls. But organizations that try to limit the data accessed by an LLM risk undersharing within their organization, not giving the information users need to do their jobs more efficiently. In this e...

Navigating Unauthorized Site Access with ThreatLocker 19.05.2025

Unauthorized site access remains a significant security concern for organizations. But why does this issue persist, and how can it be effectively addressed? In this episode, Rob Allen , chief product officer at ThreatLocker , discusses the core functionality of ThreatLocker's Web Control solution: blocking access to unauthorized sites without meddling with DNS servers—a common pitfall among other...

Getting Linux Visibility with Sandfly Security 12.05.2025

Linux is the backbone of critical infrastructure, yet it often flies under the radar when it comes to endpoint monitoring. From legacy servers to embedded systems, Linux devices are frequently unprotected, either due to operational risk, overlooked assets, or the false assumption that Linux is "secure by default." In this episode, Craig Rowland , founder and CEO of Sandfly Security , introduces an...

Solving Patch Management with ThreatLocker 07.05.2025

For years, patch management has been treated as a solved problem—until reality strikes. Outdated applications, portable executables, patch conflicts, and shadow software leave organizations unknowingly exposed. The tools may exist, but the process often breaks down. In this episode, Rob Allen , chief product officer at ThreatLocker , discusses why their new patch management solution goes beyond le...

Beating the Bots with Kasada 05.05.2025

Automated attacks are growing in speed and sophistication, far outpacing the human defenses most organizations rely on. Whether it's credential stuffing, scraping, or denial-of-wallet attacks, bots can drain your resources before they even steal a cent. In this episode, Sam Crowther , founder of Kasada , discusses how their bot detection and mitigation solution flips the economics of attacks. By d...

Containing Elevated Privileges with ThreatLocker 30.04.2025

Managing privileged access across a sprawling IT environment remains one of cybersecurity's toughest balancing acts. Admin privileges are often granted too broadly and retained for too long, opening dangerous pathways for lateral movement and ransomware. In this episode, Rob Allen , chief product officer at ThreatLocker , introduces their Elevation Control tool — a solution designed to help securi...

Solving Alert Fatigue with Dropzone AI 28.04.2025

Security operations centers (SOCs) are drowning in alerts, forcing analysts to waste time chasing down false positives while real threats slip through. The problem isn't just efficiency—it's burnout, missed signals, and limits on what security teams can reasonably triage. In this episode, Edward Wu , CEO and founder of Dropzone AI , explains how their AI-powered SOC analyst automates triage and in...

Securing Endpoints in a Hybrid World with ThreatLocker 23.04.2025

Securing endpoints is a persistent challenge, especially in a hybrid working environment. The human factor is an unavoidable element with endpoint security, which means you have to be ready for a lot of unexpected behavior. Centrally managed policies for endpoints can only enhance security if they don't compromise the flexibility the business needs. In this episode,  Rob Allen , chief product offi...

Build Customer Trust with Conveyor 21.04.2025

Customer security reviews often miss their mark, leaving organizations scrambling to compensate with extensive questionnaires that divert attention away from genuine risk management. The inconsistency of these processes and the lack of clear authority or visibility contribute to prolonged timelines and increased frustration. So, how can companies maintain trust without drowning in the complex proc...

Getting Ahead of Compromised Credentials with Permiso Security 16.04.2025

We hear all the time that identity is the new perimeter. If we place that much importance on identity, then compromised credentials can give away the keys to the kingdom. In an environment where hybrid infrastructures introduce visibility challenges, the need for advanced monitoring techniques for identities becomes clear. In this episode, Paul Nguyen , co-founder and co-CEO at Permiso Security ,...

Understanding Application Control with ThreatLocker 14.04.2025

Managing application control amid increasing ransomware threats while not impeding business flow remains a challenge. Organizations need a layered defense to bolster their security posture without overinvesting in overlapping tooling. In this episode,  Rob Allen , chief product officer at  Th r eatLocker , discusses how their deny-by-default approach to application control helps simplify this pers...

Managing Compliance and Risk with Hyperproof 09.04.2025

The tendency to focus on merely checking boxes to achieve compliance can lead to superficial solutions that may not effectively reduce operational risk. A strategic pivot towards ensuring compliance through holistic security measures is key; long-term, it demands less effort and provides more substantial protection. In this episode,  Craig Unger , founder and CEO of  HyperProof , discusses the com...

Getting Visibility into SaaS with Nudge Security 07.04.2025

SaaS visibility remains a mixed bag. Within company sanctioned tools we have visibility. But when it comes to visibility across tools, we struggle. And don't forget all of the SaaS apps your employees use that you don't know about. How do you start to address that SaaS visibility gap? In this episode,  Russell Spitler , co-founder and CEO of  Nudge Security , discusses how using email as the found...

Securing the Software Supply Chain with HeroDevs 02.04.2025

Open source is a bedrock of modern enterprise software. But support for various components is all over the place. The ecosystem doesn't have the right incentives in place, leading to end-of-life security issues many organizations aren't ready to address. When community support for open-source components dries up over time, what is your recourse? In this episode, Aaron Frost , founder and CEO, Hero...

Prioritizing Your Security Gaps with Pentera 13.03.2025

The velocity of innovation necessitates an agile approach to infrastructure management, which often leads to complexity and, consequently, vulnerabilities. Organizations are in a relentless race to identify and prioritize security gaps, but how can we effectively manage and mitigate these risks? In this episode, Jay Mar-Tang , field CISO at Pentera , discusses how Pentara blends the efficiency of...

Getting Actionable Intelligence with Stellar Cyber 11.03.2025

The sheer volume of security alerts and data being generated by various sources like firewalls, servers, and endpoint devices is daunting. The challenge lies in sifting through this vast amount of information to identify genuine threats without throwing manual effort at it. Traditional security logs merely tell us what happened but do not provide insights on what's happening now. The demand is for...

Address Data Loss from Insider Threats with DTEX Systems 04.03.2025

Understanding and mitigating insider risk has taken a front seat in organizational security strategies. What once was a niche concern, we're seeing significant escalation in insider threats, particularly from nation-state actors, with insiders becoming victims of coercion or identity theft. In this episode, Mohan Koo, president & co-founder,  DTEX Systems , explains why understanding human behavio...

Listen to the Security You Should Know podcast in Replaio

Radio and podcasts in one app - free, with no sign-up. Install today and do not miss the launch

Get it on Google Play

Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.