The Access‑Trust Gap: Why security can’t see what work depends on

The Access‑Trust Gap: Why security can’t see what work depends on

In our final episode of 2025, Dave Lewis, global advisory CISO for 1Password, joins Greg Otto to unpack the “access‑trust gap”: the growing mismatch between what employees (and tools like AI assistants) can access at work and what security teams can actually see, verify, and control. Dav explains how this gap shows up in everyday ways—logins that bypass intended controls, personal devices used for work, and teams adopting apps or AI tools faster than IT can govern them—and why that combination creates quiet but serious risk. You’ll hear practical advice on narrowing the gap with stronger identity checks, smarter device trust, cleaner SaaS governance, and simple guardrails for safe AI use that don’t crush productivity.

Denne episoden er hentet fra en åpen RSS-feed og er ikke publisert av Podme. Den kan derfor inneholde annonser.

Episoder(139)

Inside Operation Disruption Week: Taking Down Southeast Asia's Scam Machine

Inside Operation Disruption Week: Taking Down Southeast Asia's Scam Machine

What does it actually take to dismantle an industrial-scale scam operation running bulletproof hosting, distributed ASNs, and crypto laundering across multiple countries? Mike Sweeney of Silent Push w...

25 Jun 35min

Zero days, zero order: The chaos reshaping vulnerability disclosure

Zero days, zero order: The chaos reshaping vulnerability disclosure

The rules of responsible disclosure were written for a different era — one where humans found bugs, humans reported them, and 90 days felt like plenty of time to patch. That era is over. In this epis...

18 Jun 40min

Why the autonomous SOC Is the wrong goal

Why the autonomous SOC Is the wrong goal

On this week's episode, we're joined by Mike Nichols, General Manager of Security at Elastic, fresh off the Gartner Security and Risk Summit in the D.C. area, where AI dominated every conversation on ...

11 Jun 33min

The last layer standing

The last layer standing

What happens when an "assume breach" scenario turns into a total corporate wipeout? In this episode of Safe Mode, host Greg welcomes Brandon Willitts, Director of Cyber Resilience at Everpure, to pull...

4 Jun 35min

From Two Weeks to Three Days: The KEV Deadline Debate

From Two Weeks to Three Days: The KEV Deadline Debate

Drawing on his experience from his time in government working directly on CISA’s Known Exploited Vulnerabilities (KEV) catalog, Todd Beardsley, VP of Security Research at runZero, explains what it act...

29 Mai 37min

Can specialized security survive Daybreak and Mythos?

Can specialized security survive Daybreak and Mythos?

In this episode, we sit down with Lior Div, CEO of 7AI, at a moment when the ground is shifting under the entire security industry. With AI lowering the barrier to entry for attackers, supply chain co...

21 Mai 38min

Why access brokers have stubbornly remained successful

Why access brokers have stubbornly remained successful

Anna Pham of Huntress joins Safe Mode to discuss the current landscape of initial access brokers and how their tactics continue to support ransomware operations. She explains that attackers are still ...

14 Mai 31min

Can you prove which agent did what?

Can you prove which agent did what?

In this week's episode, Greg Otto talks with Howard Ting, CEO of Opal Security, about the growing security challenges created by AI agents inside the enterprise, especially around identity governance,...

7 Mai 28min

Populært innen Politikk og nyheter

giver-og-gjengen-vg
aftenpodden
aftenpodden-usa
forklart
fotballpodden-2
stopp-verden
popradet
det-store-bildet
nokon-ma-ga
lydartikler-fra-aftenposten
rss-espen-lee-usensurert
rss-gukild-johaug
dine-penger-pengeradet
hanna-de-heldige
rss-ness
rss-penger-polser-og-politikk
frokostshowet-pa-p5
aftenbla-bla
rss-utenrikskomiteen-med-bogen-og-grasvik
ta-dokumentar