The Security Podcast of Silicon Valley

Follow The Security Podcast of Silicon Valley
Share on
Copy link to clipboard

A shame-free space to engage in open and honest discussions about what‘s going on in Security. Interviews of about 30 minutes in length explore the dilemmas and opportunities faced by real entrepreneurs, operators, engineers, and leaders. Join us and catc

Jon McLachlan


    • Jun 3, 2025 LATEST EPISODE
    • every other week NEW EPISODES
    • 41m AVG DURATION
    • 70 EPISODES


    Search for episodes from The Security Podcast of Silicon Valley with a specific topic:

    Latest episodes from The Security Podcast of Silicon Valley

    The AI Governance Expert: 3 Things Every Business Needs to Trust AI

    Play Episode Listen Later Jun 3, 2025 34:18


    Your data is moving—through APIs, AI agents, and services—and most businesses have no idea how. Abhi Sharma, CEO and Co-Founder of Relyance AI, joins us to explain how companies are getting AI governance wrong and what to fix. He reveals the 3 elements that define trust in AI—and why missing just one breaks everything. Abhi: https://www.linkedin.com/in/abhisharmab/ Relyance AI: https://www.relyance.ai Jon: www.linkedin.com/in/jon-mclachlan Sasha: www.linkedin.com/in/aliaksandr-sinkevich YSecurity: www.ysecurity.io

    Cryptography and Web3 Expert: Security vs. Speed Is a False Choice

    Play Episode Listen Later May 22, 2025 30:27


    Most founders think you have to choose between security and usability. Riad Wahby disagrees—and built Cubist to prove it. In this episode, he breaks down how startups can achieve secure key management without sacrificing speed or flexibility. Riad: www.linkedin.com/in/kwantam Cubist: www.cubist.dev Jon: www.linkedin.com/in/jon-mclachlan Sasha: www.linkedin.com/in/aliaksandr-sinkevich YSecurity: www.ysecurity.io

    From Netflix to Startup CEO: Travis McPeak Is Redesigning Security for Developers

    Play Episode Listen Later May 6, 2025 26:50


    What if security wasn't something developers had to think about at all? That's the vision Travis McPeak—former Netflix and Databricks security leader—is building at Resourcely. In this episode, he breaks down why most security tools fail, how trust between security and engineering got broken, and what it really takes to fix cloud misconfigurations before they hit production. Travis also shares what compliance is getting wrong, why developer experience is non-negotiable, and what he learned going from big tech to startup CEO. Travis: www.linkedin.com/in/travismcpeak Resourcely: www.resourcely.io Jon: www.linkedin.com/in/jon-mclachlan Sasha: www.linkedin.com/in/aliaksandr-sinkevich YSecurity: www.ysecurity.io

    Gadi Bashvitz: How Bright Security Is Redefining AppSec for Developers

    Play Episode Listen Later Apr 22, 2025 28:29


    What if your security tools are actually slowing you down? Bright Security co-founder and CEO Gadi Bashvitz shares how their team went from AI fuzzing to reshaping the way developers tackle vulnerabilities—without drowning in false positives or compliance theater. Why AppSec hasn't kept up with how engineering works today The 60x cost of fixing bugs in production What dev-first security actually looks like in the real world How Bright is helping teams fix the right issues—faster Listen to learn how Bright Security is shifting security left—without slowing teams down. Gadi: www.linkedin.com/in/bashvitz Bright Security: www.brightsec.com Jon: www.linkedin.com/in/jon-mclachlan Sasha: www.linkedin.com/in/aliaksandr-sinkevich YSecurity: www.ysecurity.io

    AI Expert Michal Pechoucek: How AI Is Targeting Your Mind Now

    Play Episode Listen Later Apr 8, 2025 31:05


    AI is no longer just writing code or generating images—it's shaping how we think. In this episode, we sit down with AI researcher, professor, and investor Michal Pechoucek to explore how artificial intelligence is shifting from targeting systems to targeting human cognition. Michal outlines four emerging threats that are redefining AI security and explains why deepfakes, behavioral data, and black-box models are putting trust itself at risk. We also discuss the growing gap between AI innovation and AI safety, how China is approaching behavioral data, and what this shift means for founders, defenders, and the future of digital trust. Michal: www.linkedin.com/in/pechoucek Evolution Equity: www.evolutionequity.com Jon: www.linkedin.com/in/jon-mclachlan Sasha: www.linkedin.com/in/aliaksandr-sinkevich YSecurity: www.ysecurity.io

    Yaron Singer, Cisco: The hard truth about deploying AI today

    Play Episode Listen Later Mar 26, 2025 29:18


    Everyone's building AI. Few know how to deploy it safely. Yaron Singer, co-founder of Robust Intelligence (acquired by Cisco), reveals what's really blocking AI from scaling—and why trust, not tech, is the biggest barrier. A must-listen for any founder navigating the AI wave. Yaron Singer: www.linkedin.com/in/yaron-singer-76ab6317 Robust Intelligence: www.robustintelligence.com Jon McLachlan: www.linkedin.com/in/jon-mclachlan Sasha Sinkevich: www.linkedin.com/in/aliaksandr-sinkevich YSecurity: www.ysecurity.io

    Building a Billion-Dollar Security Company: Lessons from Drata's Co-Founder and CTO

    Play Episode Listen Later Mar 11, 2025 28:33


    What happens when a seasoned entrepreneur tackles one of the biggest security challenges for startups? Daniel Marashlian, Co-Founder and CTO of Drata, built a billion-dollar company by automating security audits. In this episode, he breaks down compliance headaches, AI's role in security, and why automation is the future. Daniel Marashlian: https://www.linkedin.com/in/danielzev/ Drata: https://drata.com/ Jon McLachlan: www.linkedin.com/in/jon-mclachlan Sasha Sinkevich: www.linkedin.com/in/aliaksandr-sinkevich YSecurity: www.ysecurity.io

    Buying more security tools? You might be making things worse

    Play Episode Listen Later Feb 25, 2025 38:41


    Too many startups fall into the “more tools = more security” trap. Instead of better protection, they end up with data silos, integration nightmares, and security teams buried in alerts—while real threats slip through the cracks. Kabir Mathur, CEO of Lean, breaks down why adding more security tools might be your biggest mistake, the hidden costs of tool sprawl, and how to actually build a security stack that works. Kabir Mathur: www.linkedin.com/in/mathurkabir Leen: www.leen.dev Jon McLachlan: www.linkedin.com/in/jon-mclachlan Sasha Sinkevich: www.linkedin.com/in/aliaksandr-sinkevich YSecurity: www.ysecurity.io

    The 4-Hour AI Scam: Hackers steal millions—and no one sees it happening

    Play Episode Listen Later Feb 11, 2025 47:29


    Imagine waking up to thousands of customers scammed—using your brand's name. The website looked real. The emails were flawless. No one saw it coming. This is the new reality of AI-powered fraud. Cybercriminals don't need weeks to set up a scam anymore—they need just 4 hours. Rod Schultz, CEO of Bolster AI, exposes the rise of automated phishing, brand impersonation, and large-scale fraud, plus the strategies businesses need to stop attacks before they escalate. Rod: www.linkedin.com/in/rodschultz Bolster AI: www.bolster.ai Jon: www.linkedin.com/in/jon-mclachlan Sasha: www.linkedin.com/in/aliaksandr-sinkevich YSecurity: www.ysecurity.io

    The Father of SSL: Passwords are holding us back

    Play Episode Listen Later Jan 23, 2025 43:46


    What if the way you secure your company is all wrong? Taher Elgamal, the ‘Father of SSL,' reveals why passwords are failing us, what smarter security looks like, and how businesses can thrive with it. Taher: www.linkedin.com/in/taherelgamal Evolution Equity: evolutionequity.com Jon: www.linkedin.com/in/jon-mclachlan Sasha: www.linkedin.com/in/aliaksandr-sinkevich YSecurity: www.ysecurity.io

    Damon Fleury, CPO at SpyCloud, on Navigating the Darknet to Combat Cybercrime.

    Play Episode Listen Later Jan 7, 2025 37:38


    What does it take to stop a trillion-dollar criminal enterprise? Damon Fleury, Chief Product Officer of SpyCloud, dives into the murky world of cybercrime and the economy driving it. Fleury shares his journey from code and network stacks to facing off against an elaborate cybercrime ecosystem — one that's as organized as a traditional business but designed purely to exploit and harm. Discover how SpyCloud turns the tables on cybercriminals, enabling companies to actively access stolen data from within hacker communities. Damon explains how this invaluable intelligence can enable proactive defenses, prevent ransomware attacks, and disrupt cybercrime operations before they gain a foothold. Damon: www.linkedin.com/in/damonfleury SpyCloud: spycloud.com Jon: www.linkedin.com/in/jon-mclachlan Sasha: www.linkedin.com/in/aliaksandr-sinkevich YSecurity: www.ysecurity.io/

    Neil Serebryany, Founder & CEO of CalypsoAI: Securing AI's Future and Tackling Tomorrow's Risks

    Play Episode Listen Later Dec 4, 2024 41:33


    In this episode of the Security Podcast of Silicon Valley, Jon and Sasha of YSecurity sit down with Neil Serebryany, the visionary Founder and CEO of CalypsoAI. Neil shares his fascinating journey from the National Geospatial-Intelligence Agency to leading a cutting-edge AI security company. We dive into the evolving landscape of AI risks, data protection, and regulatory challenges while exploring the future of AI as it transforms industries and society. Learn how CalypsoAI is paving the way for secure AI adoption and what it means for the future of business and innovation.  #AI #CyberSecurity #TechInnovation #CalypsoAI #AIRegulation #DataSecurity #AIAdoption #AICompliance #SecureAI

    Jacob Berry, Field CISO at Clumio, On Balancing Security with Business Growth in the Cloud

    Play Episode Listen Later Nov 17, 2024 46:05


    In this episode of the Security Podcast of Silicon Valley, a YSecurity Production, Jon and Sasha sit down with Jacob Berry, Field CISO at Clumio, to explore the intricate balance between security and business growth. Jacob shares his journey from a "punk hacker" to leading security for a cutting-edge cloud data protection company. We delve into the evolving role of the CISO, the complexities of managing security for cloud-based services, and the importance of balancing confidentiality, integrity, and availability. Jacob also discusses the human side of security, from customer conversations to the challenges and opportunities in the fast-paced world of startups. Tune in to learn how Jacob navigates the intersection of technology, privacy, and business strategy.

    Vijay Balasubramaniyan, Co-Founder and CEO of Pindrop Security: The Voice Behind Cutting-Edge Security

    Play Episode Listen Later Oct 30, 2024 46:14


    In this episode of the Security Podcast of Silicon Valley, a YSecurity.io production, Hosts Jon McLahlan and Sasha Sinkevich sit down with Vijay Balasubramaniyan, the visionary Co-Founder and CEO of Pindrop Security. From his roots in voice technology at giants like Google and IBM to pioneering security innovations at Pindrop, Vijay shares his unique journey of merging voice and security. Discover how Pindrop is leading the charge against deepfake fraud, revolutionizing voice authentication, and even protecting democracy. Tune in for a deep dive into the future of voice and security, with insights from one of the industry's leading minds. 

    Kayne McGladrey, Field CISO at Hyperproof, SEC 10-K and Cybersecurity Leaders

    Play Episode Listen Later Oct 15, 2024 48:20


    Join us in this episode of the Security Podcast in Silicon Valley, where host Jon McLachlan sits down with Kayne McGladrey, Field CISO at Hyperproof. Kayne shares his unique journey from theater to cybersecurity, offering insights into risk management, regulatory compliance, and the evolving landscape of cyber threats. Discover how his background in improv and theater has shaped his approach to cybersecurity, the importance of SEC 10-K disclosures, and practical advice for startups and security professionals. Don't miss this engaging and informative conversation! #Cybersecurity #CISO #RiskManagement #TheaterToTech #Hyperproof #SecurityLeadership #Podcast #Ysecurity

    Haseeb Awan, Founder and CEO of Efani, Revolutionizing Mobile Security for the Digital Age

    Play Episode Listen Later Oct 1, 2024 31:39


    In this episode of The Security Podcast of Silicon Valley, host Jon McLachlan sits down with Haseeb Awan, the visionary Founder and CEO of Efani Secure Mobile. Join us as Haseeb shares his inspiring journey from co-founding BitAccess to creating a bulletproof mobile service designed to protect against the rising threat of SIM swapping and digital identity theft. Haseeb opens up about his personal experiences with security breaches, the challenges he faced, and the innovative solutions Efani offers to ensure top-notch security for its users. Tune in for an engaging conversation filled with insights, resilience, and a commitment to making the digital world a safer place.

    Simon Wijckmans, Founder and CEO of cside.dev, Revolutionizing Client-Side Security

    Play Episode Listen Later Sep 17, 2024 49:09


    In this episode of the Security Podcast of Silicon Valley, a YSecurity production, hosts Jon McLachlan and Sasha Sinkevich dive into an engaging conversation with Simon Wijckmans, Founder and CEO of cside.dev. Simon shares his journey from working at Hydra, Vercel, and Cloudflare to founding cside.dev, a security startup focused on client-side security. He discusses the evolution of web security, the unique challenges of client-side attacks, and how cside.dev is pioneering solutions to make web security more accessible. Simon's insights into the dynamic landscape of cybersecurity and his passion for innovative solutions make this episode a must-listen. Join us as we explore the future of web security with one of the industry's brightest minds.

    Lorenzo Thione, Co-Founder and Chairman of StartOut, on AI's Role in Security and the Power of Diverse Investment

    Play Episode Listen Later Sep 1, 2024 46:48


    In this episode of The Security Podcast of Silicon Valley, a YSecurity production, Host Jon McLachlan talks with Lorenzo Thione, a philanthropist, LGBTQ advocate, and investor. As the co-founder and chairman of StartOut, the only LGBTQ incubator, and managing director of Gaingels, Lorenzo shares his unique insights into the intersection of AI and security. They explore the ethical implications of advanced AI technologies, the importance of diversity in the tech industry, and how inclusive investment strategies can drive innovation. Tune in for a thought-provoking conversation on shaping a more equitable future in tech.

    Suha Can, CISO at Grammarly: Safeguarding User Data in Enterprise AI Systems

    Play Episode Listen Later Aug 15, 2024 42:20


    In this episode of the Security Podcast of Silicon Valley, a YSecurity production, Hosts Jon and Sasha dive deep with Suha Can, the Chief Information Security Officer at Grammarly, who oversees the security of over 30 million users and 70,000 enterprise teams worldwide. Suha shares his journey from discovering the internet in a small Turkish café to leading security at major tech giants like Amazon and Microsoft. We explore how he's pioneering responsible AI at Grammarly, balancing product security with innovation, and preparing for the future of AI and cybersecurity. Tune in for an enlightening conversation on building trust, tackling zero-day exploits, and the evolving role of the CISO in today's AI-driven world. #CyberSecurity #AI #DataPrivacy #CISO #Grammarly #TechLeadership #SecurityPodcast #Innovation #Trust #ArtificialIntelligence #SiliconValley

    Tony Thai, Founder and CEO of HyperDraft, Revolutionizing Legal Tech with Engineering Precision

    Play Episode Listen Later Aug 2, 2024 45:17


    Join us on YSecurity Production as Jon McLachlan welcomes Tony Thai, the innovative Founder and CEO of HyperDraft. Discover how Tony's journey from software engineering to a prominent law firm attorney inspired him to create groundbreaking legal tech solutions. In this episode, Tony shares insights into the intersection of cybersecurity and legal fields, the importance of client communication, and the impact of AI in legal services. Tune in for a deep dive into how HyperDraft transforms document generation and digital workflows, making legal services more efficient and secure.

    Alan Braithwaite, Co-Founder and CTO at RunReveal: SIEM doesn't have to suck.

    Play Episode Listen Later Jul 19, 2024 38:36


    Jon McLachlan welcomes Alan Braithwaite, Co-Founder and CTO of RunReveal, to share his journey from Cloudflare to co-founding RunReveal, discussing how his company is revolutionizing the security landscape by making threat detection faster and easier. Discover how RunReveal's innovative approach to security data is changing the game, and hear Alan's insights on the future of security tools. Tune in for an engaging conversation filled with industry insights and practical advice!

    Vivek Ramachandran, Founder and CEO of SquareX, Pioneering Browser-Based Security Solutions

    Play Episode Listen Later Jul 13, 2024 46:29


    In this episode of the Security Podcast of Silicon Valley, hosts Jon McLachlan and Sasha Sinkevich welcome Vivek Ramachandran, the visionary Founder and CEO of SquareX. Vivek shares his inspiring journey into the cybersecurity field, sparked by his fascination with the power of individual hackers and their impact on massive websites. He discusses the evolution of the security landscape over the past 25 years, emphasizing the shift from lone warriors to collaborative team efforts against sophisticated cyber threats. Vivek introduces SquareX's innovative approach to web security, focusing on a browser-native solution to protect enterprise employees from online attacks. He elaborates on the challenges and breakthroughs in developing a seamless, effective browser extension that enhances security without compromising user experience. With insightful discussions on the importance of patience, community contributions, and the evolving role of AI in cybersecurity, this episode is a must-listen for entrepreneurs, security professionals, and anyone interested in the future of online protection. Tune in to hear Vivek's vision for the future and his advice for aspiring entrepreneurs in the tech industry.

    Dr. Georgianna, Chief Technologist at Foundation for Defensive Democracies, Advancing National Cybersecurity Through Innovation and Policy.

    Play Episode Listen Later Jun 29, 2024 56:50


    In this episode of The Security Podcast of Silicon Valley, host Jon McLachlan sits down with Dr. Georgianna Shea, the Chief Engineer at MITRE and Chief Technologist at the Foundation for Defense of Democracies. Dr. Shea shares her extensive experience in cybersecurity, from her work with the Department of Defense to her current role in influencing national security policy. Discover her insights on the importance of resilience in cybersecurity, the significance of Software Bill of Materials (SBOM), and how AI and quantum computing are shaping the future of cyber defense. Tune in for an inspiring conversation with one of the industry's leading experts.

    Clea Ostendorf, CISO of Code42, Securing the Unseen: on the Frontlines of Data Protection

    Play Episode Listen Later Jun 17, 2024 44:55


    Welcome to a new episode of the Security Podcast in Silicon Valley, a YSecurity production, where we delve into the ever-evolving landscape of cybersecurity, with Clea Ostendorf, Field CISO at Code42, as our distinguished guest. Clea's journey from an aspiring diplomat to a front-runner in cybersecurity offers profound insights into her unique approach that is reshaping the realm of data protection. Join us as our host Jon McLachlan, a seasoned expert in the field, engages Clea in a deep dive into how she merges traditional security methods with the pressing challenges of today's digital world. Discover how Clea advocates for a collaborative security community and navigates the complex balance of work-life harmony in a demanding field. Tune in to uncover Clea's strategies for fostering a culture of security that supports growth and innovation while protecting against insider threats. This episode is a must-listen for anyone interested in the intersections of technology, security, and corporate culture.

    Polina Morozov, Security Recruiter at Grammarly on Navigating Careers and Culture in Cybersecurity

    Play Episode Listen Later Jun 6, 2024 37:05


    Host Jon McLachlan, welcomes Polina Morozov, a distinguished Security Recruiter from Grammarly (and formerly Robinhood) onto Security Podcast of Silicon Valley, a YSecurity.io production. As we peel back the layers of security and recruiting, Polina shares her remarkable journey from aspiring diplomat to a key player in tech hiring, highlighting the crucial role communication plays in connecting talent with opportunity. Discover how Grammarly's cutting-edge tools not only enhance written communication but also serve as a catalyst for Polina's career. Through candid conversations, this episode offers a unique lens on the challenges and triumphs of recruiting in the security tech world, emphasizing the importance of pushing boundaries, fostering trust, and the undeniable impact of cultural and global influences on business practices. Tune in for an engaging exploration of what it takes to secure top talent in the ever-evolving landscape of cybersecurity, or, land your next huge opportunity and accelerate your own career in cybersecurity.

    Craig Goodwin, Co-Founder and CEO of Bleach Cyber: Imagine Cybersecurity, but not Complicated

    Play Episode Listen Later May 26, 2024 37:28


    Host Jon McLachlan sits down with Craig Goodwin, Co-Founder and CEO of Bleach Cyber. Craig shares his remarkable journey from military intelligence in the UK to leading cybersecurity roles at major corporations like Monster Worldwide, CDK Global, and Fujitsu, ultimately founding Bleach Cyber. Discover how Bleach Cyber aims to simplify cybersecurity for small businesses, making top-tier security accessible and manageable. Craig also dives into the human element of cybersecurity, the challenges of startup life, and the importance of resilience and simplicity in both business and life. Tune in for a compelling conversation filled with insights, practical advice, and Craig's vision for the future of cybersecurity.

    Benoit Chevallier-Mames, VP Privacy Preserving Cloud and ML at Zama, Unlocking the Potential of Privacy with Fully Homomorphic Encryption

    Play Episode Listen Later May 20, 2024 34:05


    Host Jon McLachlan sits down with Benoit Chevallier-Mames, VP of Privacy Preserving Cloud and Machine Learning at Zama, as our first returning guest after , The Security Podcast in Silicon Valley, a YSecurity production. Dive into the transformative world of Fully Homomorphic Encryption (FHE), a technology that promises to revolutionize data privacy in AI applications. As an expert at RSA in SF in 2024, Benoit shares insights from his journey, from pioneering efforts at Apple to pushing the boundaries of privacy tech at Zama. Discover how Zama's cutting-edge advancements set the stage for a new era where data privacy and machine learning coexist seamlessly. Please tune in to learn about the practical applications of FHE in various industries and how it's shaping the future of secure data processing.

    Avery Pennarun, Co-Founder and CEO of Tailscale, the Anti-Google: Rebuilding a Secure Internet from the Bottom-Up

    Play Episode Listen Later May 1, 2024 45:11


    Don't miss this blend of technology, ambition, and forward-thinking only of The Security Podcast of Silicon Valley, a YSecurity.io production, as we dive into Avery Pennarun's journey, the Co-Founder and CEO of Tailscale, from starting his first company in college to selling it to IBM, taking a detour at Google, and eventually creating what's known as the anti-Google of cyber startups, Tailscale. Avery gives us a candid look at the evolution of a billion-dollar valuation company. Discover how Tailscale became the first security infrastructure product adopted bottom-up by individual engineers rather than imposed from the top down. Join us as we explore the fine line between security and connectivity and how Avery's vision for Tailscale's is reshaping the future of the Internet. #CyberSecurity #Tailscale #Networking #StartupJourney #ZeroTrust #Innovation

    Michael Moore, Chief Privacy Officer at Lacework, Securing Tomorrow: Navigating the Cyber Frontier

    Play Episode Listen Later Apr 14, 2024 43:51


    Dive into the heart of cybersecurity innovation with host Jon McLachlan and guest Michael Moore, the visionary Chief Privacy Officer at Lacework, and previously Pure Storage, on this episode of The Security Podcast of Silicon Valley, a YSecurity.io production. In this compelling episode, Michael shares his path from engineer to legal expert to cybersecurity trailblazer. Michael reveals his unique insights into the critical intersection of technology, privacy, and law, illuminating how these elements are essential in shaping the security landscape. Get this exclusive inside look at Lacework's advanced strategies for combating digital threats and safeguarding the digital future, straight from the expert leading the charge. This episode is an essential listen for anyone intrigued by the balance between cutting-edge cybersecurity measures and the imperative of safeguarding personal privacy in an increasingly vulnerable digital age.   Links referenced during the show: Don't Let Your Company Reputation Be Held Ransom - By Michael Moore, Lea Kissner, Merritt Baer, 05 March, 2024 Product Privacy Done Right By Michael Moore, Lea Kissner, Alan Mulvaney, 04 March, 2024

    Jose Arrieta, Imagineer, Former Chief Information Officer and Chief Data Officer at US Health and Human Services

    Play Episode Listen Later Apr 1, 2024 47:33


    Jon McLachlan hosts the visionary Jose Arrieta, the former CIO and Chief Data Officer at the US Department of Health and Human Services, in this enthralling episode of The Security Podcast of Silicon Valley, a YSecurity production. In this revealing conversation, Jose shares insights from his dynamic career spanning government, academia, and the intersection of cybersecurity and healthcare innovation. Discover how his unique approach to challenges and opportunities is shaping the future of secure solutions in critical sectors. From tackling potential nation-state cyber threats during the pandemic to reimagining the EHR space and advocating for data ownership, Jose's journey is a testament to the power of imagination, innovation, and going all in on the things that matter. Join us for a session packed with invaluable lessons on leadership, resilience, and the transformative potential of technology in our lives and society.

    Nick Sullivan on Cryptography, Cloudflare, and Building a Better Internet

    Play Episode Listen Later Mar 9, 2024 49:55


    In this enlightening episode of The Security Podcast of Silicon Valley, a YSecurity.io production with your host Jon McLachlan, we are honored to host Nick Sullivan, a trailblazer in the realm of cryptography and security. Formerly the Head of Cryptography at Cloudflare and now a pivotal figure in startup advisory and angel investing, Nick shares his journey from delving into pure mathematics at Waterloo to shaping the security landscape of the internet. He reflects on his early career, from researching cryptography to his impactful roles at Symantec, Apple, and eventually Cloudflare, where he spent over a decade innovating and advising on next-gen security protocols. Nick offers an insider's view on the challenges and triumphs of developing Cloudflare's robust security infrastructure, emphasizing the importance of privacy, research, and the collective effort to safeguard the web. He discusses groundbreaking work on global data insights, the evolution of internet security practices, and his advisory role in nurturing startups toward solving today's most pressing security dilemmas. Join us as Nick Sullivan imparts wisdom on the significance of curiosity, the power of collaboration, and the unyielding pursuit of building a better, more secure Internet. This episode is a must-listen for anyone passionate about the future of technology, privacy, and the endless possibilities that cryptography offers in securing our digital world.

    Founder's Guide to Compliance: The Introduction SOC2, ISO, NIST, HITRUST, PCI-DSS, FIPS, and more

    Play Episode Listen Later Feb 25, 2024 17:33 Transcription Available


    Welcome to "The Founder's Guide to Compliance," a YSecurity.io production, hosted by Jon McLachlan and Sasha Sinkevich. We tear down the complexity surrounding compliance standards like SOC2, NIST, FIPS, PCI-DSS, HITRUST and the myriad facets of cybersecurity. Whether you're a startup founder knee-deep in the trenches or a seasoned executive navigating the ever-evolving landscape of digital security, this podcast is your no-BS zone for getting to the essence of what these standards mean for you and your business. Jon, a Minnesota native and security enthusiast, brings his rich background from Apple and various startups to the table, sharing insights born from a life that embraces risk for greatness. With a passion for security that's as undeniable as his love for motorcycles, Jon's journey is about leading by example, turning challenges into stepping stones for success. Sasha, starting his cybersecurity journey in Silicon Valley, has been shaped by the brilliant minds around him. His experience spans working with heavily regulated industries, creating security solutions for global financial institutions, and navigating the startup world from the ground up. Sasha's story is one of transformation, leveraging complex compliance requirements into simple, actionable strategies. Together, Jon and Sasha aim to demystify compliance, making it accessible and understandable. They're here to show you how navigating these standards isn't just about ticking boxes but seizing opportunities to elevate your business. "The Founder's Guide to Compliance" is empowers you with the knowledge and tools to not only meet but exceed the expectations of your customers and investors. Dive into a world where compliance becomes your competitive edge, enabling your startup to thrive in the digital age. Join Jon and Sasha as they guide you through the what, why, when, and how of compliance, turning potential hurdles into launchpads for success. Welcome to the podcast where compliance meets clarity, and where your startup's security journey begins.

    Feross Aboukhadijeh, Founder and CEO of Socket.dev, a startup improving security and privacy on the web

    Play Episode Listen Later Feb 1, 2024 53:40


    In this episode of The Security Podcast of Silicon Valley, host Jon McLachlan of YSecurity.io invites Feross Aboukhadijeh, Founder and CEO of Socket.dev, a supply-chain cybersecurity company, to share his compelling journey as he tackles some of the most pressing challenges in software development security. Feross, a Stanford graduate and former intern at Intel, Facebook, and Quora, shares his journey from developing PeerCDN, a pioneering peer-to-peer content network, to his current venture, Socket.dev. Discover how Socket.dev is addressing critical software supply chain vulnerabilities by utilizing innovative technologies, including heuristic analysis and the latest LLMs. This episode offers valuable insights into the evolving cybersecurity landscape and Feross's unique approach to tackling some of the most pressing challenges in software development security. Join us for a captivating discussion that's a must-listen for anyone interested in the future of cybersecurity.

    Aviv Grafi, Founder and Innovator at Votiro: from IDF 8200 to Cybersecurity Visionary

    Play Episode Listen Later Jan 8, 2024 35:10


    In this episode of The Security Podcast of Silicon Valley, your host Jon McLachlan of YSecurity.io welcomes Aviv Grafi, founder and Innovator of Votiro, who shares his journey from the IDF's prestigious 8200 unit to revolutionizing cybersecurity. Aviv's passion for hacking and reverse engineering in his youth led to his success in both military and civilian sectors. He discusses the inception of Votiro, a company that stands out for its unique approach to document security, prioritizing the extraction of safe content over traditional threat detection methods. Aviv emphasizes the importance of proactive and enabling security solutions in the digital era, particularly in response to the new challenges posed by widespread digital transformation. Offering insights into the entrepreneurial mindset, Aviv highlights the balance between embracing the highs and lows of the journey and maintaining a positive, enabling approach to security. Join us for an episode filled with invaluable experiences and forward-thinking perspectives in cybersecurity.

    Ganesh Krishnan, Co-Founder and CEO of Anzenna - Cyber Security Awareness Training

    Play Episode Listen Later Dec 1, 2023 33:18


    Ganesh Krishnan recounts his incredible 25+ year journey in security and shares why he Co-Founded Anzenna, a Cyber Security Engagement and Collaboration Platform.   Employees are key to maintaining overall security. Their actions can make a big difference. Cybersecurity teams handle monitoring and updating protocols, but employees must stay aware of trends and follow best practices. Prioritize cybersecurity by investing in security measures, providing training, and encouraging participation. When employees take responsibility for protecting data and systems, security becomes a collective effort. This is Anzenna.

    Elizabeth Nammour, Co-Founder and CEO of Teleskope

    Play Episode Listen Later Nov 1, 2023 44:24


    Join a lively discussion with Elizabeth Nammour, the Co-Founder and CEO of Teleskope, a startup focused on data security that prioritizes protection by default with AI. Lizzy previously worked with Airbnb, where she developed a passion for safeguarding PII to meet GDPR and CCPA requirements as well as other data security regulations. She also shares personal and insightful stories that inspire entrepreneurs, reflecting on how our experiences shape our paths.

    Steve Orrin, Federal CTO at Intel

    Play Episode Listen Later Oct 2, 2023 48:22


    Steve Orrin, the Federal CTO at Intel, provides valuable insights into various topics, including AI, Trusted Execution Environments, Cloud Computing, Team Building, Mergers and Acquisitions, and Entrepreneurship. Steve began his career as an entrepreneur, but after Intel acquired his company, he took his career to the next level and has been with Intel for over 18 years. As the Federal CTO at Intel, he leads Intel's efforts in the DoD and Federal Government verticals. Throughout the interview, Steve shares personal anecdotes and life lessons, discussing how he transitioned from a background in biology to a successful career in technology and private industry.

    Kevin Kane, Founder and CEO of American Binary

    Play Episode Listen Later Sep 1, 2023 94:51


    Kevin Kane is the Co-Founder and CEO of Ambit, Inc. dba American Binary, a startup specializing in protecting businesses against current and next-generation cyber threats. With expertise in post-quantum cryptography and high-performance network infrastructure, catch a glimpse into the future of quantum computing and its devastating impact on RSA and EC public key cryptography, potentially halting secure communications across the Internet and globalization as we know it. In this episode, Kevin shares vulnerable moments and thoughtful insights on religion, philosophy, self-improvement, psychology, and how security plays a crucial role in today's interconnected and globalized world. Don't miss out on this insightful and engaging conversation.

    Sergey Stelmakh, Head of Security Engineering at Yugabyte

    Play Episode Listen Later Aug 3, 2023 44:46


    Sergey Stelmakh engages the intriguing question of how to marry innovation (risk taking) with security (risk mitigation), how to build effective teams, and how his life led him down the path into security in engineering-driven companies, such as Head of Security Engineering at Yugabyte, Platform Security Architect at MuleSoft (acquired by Salesforce), Lead Security Architect at Symphony Communications, all from his roots as in mathematics as Assistant Professor at Belarusian State University.

    Dominik Schürmann, Co-Founder and CEO of heylogin

    Play Episode Listen Later Jul 3, 2023 30:13


    Dominik Schürmann, the Co-Founder and CEO of heylogin, shares an incredible journey from childhood, and research, toward more usable security. How are usable security values different from "formal" or "provable" security? Why does it matter? How does that change where you spend your time and energy? And how can we integrate with human nature and our organic tendencies to build more secure software? These questions, and many more, guide Dominik to start heylogin, as he shares his outside-the-box vision for a better and more secure future.

    ceo co founders dominik sch
    Rod Schultz, VP of Product at Dust Identity

    Play Episode Listen Later Jun 3, 2023 47:16


    Rod Schultz reflects on his childhood experiences and heroes, how he got into security, how that led him to Apple's DRM FairPlay team, Zoom's Head of Product Security and Privacy, and now DUST Identity's VP of Product.

    David Carpe - How to Network, and The Myth of The Great Silent Resignation

    Play Episode Listen Later May 19, 2023 51:18


    David Carpe, Founder of Carpe Search Partners, shares deep insights on the professional value of networking (connecting with and offering service to the people around us) in the security community. We explore how to network effectively, offer a give, and how networking differs from charity, philanthropy, and everyday friends. Davides some profoundly personal views on the supposedly Great Silent Resignation, which may surprise you. We end with some gre. Youvice, you don't want to miss it.

    Colin Bitterfield - Head of Security (Acting CISO) People Data Labs

    Play Episode Listen Later Jan 16, 2023 44:22


    Colin Bitterfield connects growth and security through standardization and proper documentation at People Data Labs. In this episode, he shares his strategies and tactics for building and maintaining a business-first security team that prioritizes people, so everyone wins.

    Andrew Spangler, Head of Security and Compliance at Harness

    Play Episode Listen Later Dec 1, 2022 38:56


    Andrew Spangler, Head of Security and Compliance at Harness, shares some deep insight from his humble yet extensive experiences as a security professional. Join us for a light-hearted and profoundly human discussion on building trust, leading teams, interviewing strangers, overcoming security challenges, celebrating security victories, and career development in the security community.

    David Gurle - Founder and Executive Chairman at Hive

    Play Episode Listen Later Nov 16, 2022 56:18


    David Gurle is a serial entrepreneur whose career has been a catalyst to positive change in secure collaboration and communication, from everywhere to Thomson Reuters, Skype, Microsoft, Perzo, and Symphony Communications. Today, he's the Founder and Executive Chairman of Hive, a distributed cloud computing and storage platform that disrupts the expensive, error-prone, and insecure centralized compute and storage paradigms. He shares personal stories of growing up in Beruit, Lebanon, amid a civil war, where he quickly learned the value of empathy and diversity.

    Aman LaChapelle, Early Engineer at Modular AI

    Play Episode Listen Later Nov 1, 2022 35:57


    Aman LaChapelle shares his fresh engineering mindset on security, privacy, AI, big data, compute infrastructure, and scaling. At Modular, he's rebuilding AI infrastructure for everyone, which means that data privacy is top of mind. We end with a lively exploration of what's missing from the ecosystem, and you won't believe what it is.

    David M'Raihi: CPSO at Rivian

    Play Episode Listen Later Oct 19, 2022 51:30


    David M'Raihi is the Chief Product Security Officer at Rivian with broad expertise in cryptography and software security. Join us (guest David M'Raihi and host Jon McLachlan) as we explore what it takes to build a security team, break RSA, or just enjoy an intentional and deliberate life.

    Michael Crandell, CEO at Bitwarden Inc.

    Play Episode Listen Later Oct 1, 2022 35:10


    Michael Crandell, CEO at Bitwarden Inc., shares his inspirational vision and deep wisdom from his journey at Bitwarden. Bitwarden drives collaboration, increases security, and boosts productivity, with the power of open source + community, as the easiest way to secure all your passwords and sensitive information.

    Sergej Dechand, Co-Founder and CEO of Code Intelligence

    Play Episode Listen Later Sep 9, 2022 58:54


    Sergej Dechand shares his security journey from usable security research to Co-Founding Code Intelligence, where he is CEO. Code Intelligence delivers open-source static analysis-guided fuzz testing that enables developers to simplify software security testing without modifying their code.

    Benoit Chevallier-Mames, Team Lead of Machine Learning at Zama

    Play Episode Listen Later Sep 2, 2022 58:14


    Benoit Chevallier-Mames shares a glimpse into his amazing career as a cryptographer, engineer, and leader at Apple and now Zama, where he's built software that has made a quiet yet serious impact on data security for billions of users. We explore the hard lessons learned at Apple and the technical grit behind Zama's approach to Machine Learning specific Fully Homomorphic Encryption (FHE) open-source SDK. Benoit gracefully closes with incredible words of wisdom.

    Claim The Security Podcast of Silicon Valley

    In order to claim this podcast we'll send an email to with a verification link. Simply click the link and you will be able to edit tags, request a refresh, and other features to take control of your podcast page!

    Claim Cancel