3347: Bitsight on the Hidden Risks Inside Global Supply Chains
Tech Talks Daily15 Jul 2025

3347: Bitsight on the Hidden Risks Inside Global Supply Chains

When we talk about cybersecurity, it's often easy to think in terms of firewalls, passwords, and high-profile breaches. But what happens when the vulnerability isn't within your own systems but somewhere deep in your third or fourth-tier supply chain? In this episode, I spoke with Ben Edwards from Bitsight about the unseen infrastructure propping up much of the global digital economy and the new risks emerging from it.

Our conversation begins by challenging the assumption that larger technology providers are automatically safer. Bitsight's research reveals that scale often introduces complexity and a larger attack surface, which can make it even harder to stay secure. In fact, UK supply chains are now around 10 percent larger than the global average, reflecting a more advanced digital economy but also introducing more room for hidden weaknesses.

One of the most sobering parts of the discussion focused on geopolitics. Around 30 percent of UK and US supply chains rely on Chinese military-linked companies like Huawei and China Telecom. That's not just a cybersecurity concern. It's a geopolitical time bomb. Ben broke down the ripple effects that potential restrictions or bans could have, including costs, infrastructure overhauls, and widespread operational disruption.

Then there are the "hidden pillars," smaller vendors like Aptiv and Yardi, which may not be household names but play disproportionately influential roles in sectors like aerospace, education, and real estate. Their obscurity makes them dangerous single points of failure, especially when regional dependencies form without anyone noticing.

The bottom line? End-to-end supply chain visibility remains elusive. Shadow IT, employee workarounds, and a constantly shifting tech landscape mean organizations must approach cybersecurity as an ongoing process, not a checklist. Ben urges companies to continually assess the criticality of their providers and, just as importantly, understand their own role in others' ecosystems.

If you're curious about how internet balkanization, AI, and outsourcing are shaping the next phase of cybersecurity strategy, this episode will give you a lot to think about. Y

Episoder(2000)

From Data Overload To Decision Advantage: Inside  Anticipatory Intelligence with Ansel Stein

From Data Overload To Decision Advantage: Inside Anticipatory Intelligence with Ansel Stein

In this episode, I'm joined by Ansel Stein, Vice President of Operations at Crisis24, and the leader behind AiiA powered by Palantir, an intelligence platform built to help executives cut through nois...

28 Feb 23min

From FBI Gag Order To Privacy-First Telco: The Nicholas Merrill Story

From FBI Gag Order To Privacy-First Telco: The Nicholas Merrill Story

How did a routine request from the FBI turn into a decade-long legal battle that helped reshape modern privacy law and ultimately inspire a new kind of mobile network? In this episode, I sit down with...

28 Feb 29min

AI Fraud vs AI Scams, Alloy CEO Tommy Nicholas Explains The Difference

AI Fraud vs AI Scams, Alloy CEO Tommy Nicholas Explains The Difference

Have you noticed how every week brings a new headline about AI driven fraud, yet it still feels hard to tell what is real risk and what is noise? In this Tech Talks Daily episode, I'm joined by Tommy ...

27 Feb 54min

How Lenovo Is Preparing Classrooms For The AI Era

How Lenovo Is Preparing Classrooms For The AI Era

How do you prepare an entire generation for a world where AI is already shaping how we work, create, and solve problems? In this episode of Tech Talks Daily, I'm joined by Dr. Tara Nattrass, Chief Inn...

26 Feb 30min

ServiceNow, Dynatrace And The Future Of End-To-End IT Autonomy

ServiceNow, Dynatrace And The Future Of End-To-End IT Autonomy

What does autonomous IT really look like when you move beyond the slideware and start wiring systems together in the real world? At Dynatrace Perform in Las Vegas, I sat down with Pablo Stern, EVP and...

25 Feb 30min

Scrut Automation And The Security Blind Spot Facing The 99%

Scrut Automation And The Security Blind Spot Facing The 99%

What happens when nearly half of organizations admit they have no AI-specific security controls, yet AI-driven data leaks are accelerating at the same time? In this episode of Tech Talks Daily, I spok...

24 Feb 24min

Inside Epicor's Approach To Inclusive, High-Performing Tech Teams

Inside Epicor's Approach To Inclusive, High-Performing Tech Teams

How do you build enterprise software for the companies that keep the world turning, while also building a leadership culture where people can actually thrive? In this episode of Tech Talks Daily, I sp...

24 Feb 33min

Miro CIO Tomás Dostal Freire On Reclaiming Creative Time With AI

Miro CIO Tomás Dostal Freire On Reclaiming Creative Time With AI

Why do so many of us feel busy all day, yet struggle to point to the meaningful work we actually completed? In this episode of Tech Talks Daily, I sit down with Tomás Dostal Freire, CIO of Miro, to un...

23 Feb 27min

Populært innen Politikk og nyheter

giver-og-gjengen-vg
aftenpodden
forklart
aftenpodden-usa
popradet
stopp-verden
lydartikler-fra-aftenposten
det-store-bildet
rss-gukild-johaug
dine-penger-pengeradet
nokon-ma-ga
fotballpodden-2
hanna-de-heldige
aftenbla-bla
rss-ness
rss-espen-lee-usensurert
rss-penger-polser-og-politikk
rss-dannet-uten-piano
frokostshowet-pa-p5
rss-utenrikskomiteen-med-bogen-og-grasvik