POPULARITY
What separates organizations that pass audits from those that survive real incidents? In this episode of The Segment, host Raghu Nandakumara sits down with Phil Park, global cybersecurity and risk leader at IBM. With more than 25 years advising financial institutions across the U.S., Europe, and Asia-Pacific, Phil brings a practical perspective on how supervision is rapidly evolving from compliance checklists to real-world operational readiness. Together, Raghu and Phil unpack the industry's biggest mindset shift: regulators no longer ask “Are you protected?” — they ask “Can you operate through disruption?” They explore why prevention alone is no longer enough, why containment and recovery now define security maturity, and how CISOs are moving from siloed operators to enterprise-wide risk leaders accountable to boards and regulators alike. The conversation also dives into: Why regulators evaluate response quality rather than technical perfection How organizations are turning tabletop exercises into realistic resilience testing The growing pressure created by third-party and supply-chain dependencies Why evidence and outcomes matter more than policies and frameworks How overlapping reporting requirements are reshaping incident response playbooks The double-edged role of AI in both defense and attack, including deepfake risks Why security fundamentals matter even more in the AI era This episode is a must-listen for security leaders and executives navigating a world where passing the audit is no longer the goal — proving you can withstand disruption is. Also, if you're attending FSISAC, join Illumio, IBM, and Palo Alto Networks for an exclusive dinner at Capital Grille! Save your seat here: https://lp.illumio.com/20260302-Steak-And-Security-Dinner.html?utm_medium=email&utm_source=marketo
The Monday Microsegment for the week of February 23. All the cybersecurity news you need to stay ahead, from Illumio's The Segment podcast. Hackers hijack nearly half a million dollars in New York school fraud. Government agencies breached after attackers exploit Ivanti zero-day vulnerability. And state-backed hackers weaponize generative AI to sharpen cyber operations. And Christer Swartz joins us to unpack this month's Boos and Bravos. Head to The Zero Trust Hub: hub.illumio.com Join us at RSAC in San Francisco: https://www.illumio.com/resources/events/rsac-2026-registration
The Monday Microsegment for the week of February 16. All the cybersecurity news you need to stay ahead, from Illumio's The Segment podcast.Hackers hijack nearly half a million dollars in New York school fraud.Government agencies breached after attackers exploit Ivanti zero-day vulnerability.And state-backed hackers weaponize generative AI to sharpen cyber operations.And Michael Adjei explains why the cybersecurity “talent shortage” might actually be an allocation problem.Head to The Zero Trust Hub: hub.illumio.comJoin us at RSAC in San Francisco: https://www.illumio.com/resources/events/rsac-2026-registration
For year now, Asia's cyber threat landscape has been marked by escalating nation-state attacks and rampant cloud breaches. In 2026, it stands to be transformed by integrating agentic AI for proactive threat detection. This autonomous technology could pre-empt lateral movements, reduce alert fatigue, and enable real-time breach containment, bolstering defences for organisations amid high cloud saturation and sophisticated adversarial tactics.In this PodChats for FutureCISO, we are joined by Andrew Kay, Director of Systems Engineering APJ at Illumio, to share with us his views on how CISOs in Asia can use behavioural AI to shields against multi-cloud vulnerabilities.1. How are Asian organisations employing machine learning algorithms, such as graph neural networks, within AI frameworks to manage hybrid cloud complexities and mitigate nation-state-sponsored APTs?2. What specific vulnerabilities in multi-cloud environments, exacerbated by Asia's high cloud saturation, enable east-west lateral movement, and how can agentic AI utilise behavioural analytics to pre-empt such exploits?3. How do AI-driven security graphs, leveraging real-time entity resolution and anomaly detection via unsupervised learning, offer a dynamic topology of workloads, users, and communications to identify subtle deviations indicative of threats?4. Amid Asia's exposure to APTs, how can agentic AI leverage multi-agent systems for real-time threat correlation, accelerating decision trees and automating containment protocols like micro-segmentation?5. What capabilities might agentic AI provide in tailoring threat intelligence feeds and remediation workflows to specific roles, such as integrating with SOAR platforms for threat hunters or generating compliance-aligned reports for analysts?6. What technical risks arise from agentic AI deployment, including prompt injection vulnerabilities or model drift leading to erroneous autonomous decisions, and what mitigation strategies, such as human-in-the-loop safeguards, are suitable for Asian regulatory environments?7. Under which conditions could agentic AI interoperate with existing EDR (Endpoint Detection and Response) and XDR (Extended Detection and Response) tools to orchestrate automated responses, such as dynamic access controls, in expansive cloud infrastructures?
The perimeter will fail. What matters is whether your business turns one incident into a disaster. Andrew Rubin, Founder and CEO of Illumio, explains how breach containment reduces blast radius, why category timing is “luck,” and what leaders must do as AI speeds up attackers and defenders. Listen for a founder-level playbook on building security that scales with growth. Andrew: https://www.linkedin.com/in/andrewsrubin Illumio: https://www.illumio.com Jon: https://www.linkedin.com/in/jon-mclachlan Sasha: https://www.linkedin.com/in/aliaksandr-sinkevich YSecurity: https://www.ysecurity.io
The Monday Microsegment for the week of February 9. All the cybersecurity news you need to stay ahead, from Illumio's The Segment podcast.A massive espionage campaign infiltrates government networks in 37 countries.Hackers go for the gold as the Winter Olympics and the Super Bowl create a perfect storm.And a new social engineering tactic crashes your browser to steal your data.And John Kindervag joins us to discuss why cybersecurity dashboards may be measuring the wrong things. Head to The Zero Trust Hub: hub.illumio.comJoin us at RSAC in San Francisco: https://www.illumio.com/resources/events/rsac-2026-registration
The Monday Microsegment for the week of February 2nd. All the cybersecurity news you need to stay ahead, from Illumio's The Segment podcast.Major consumer brands caught in a fresh wave of cyberattacksNike scrambles as hackers leak years of prototype and R&D dataAnd the White House shelves proposed Biden-era software security rulesAnd Gary Barlet joins us to unpack the NSA's newly released Zero Trust Guideline PrimerHead to The Zero Trust Hub: hub.illumio.comJoin us at RSAC in San Francisco: https://www.illumio.com/resources/events/rsac-2026-registration
The Monday Microsegment for the week of January 26th. All the cybersecurity news you need to stay ahead, from Illumio's The Segment podcast.A critical vulnerability is being actively exploited in core infrastructure, VMware warns.Hackers looking for extortion payoff tell Nike to… just do it.And a massive database leak exposes 149 million stolen credentials.And Christer Swartz joins us for January's Boos and Bravos. Head to The Zero Trust Hub: hub.illumio.comDownload The 2025 Global Cloud Detection and Response Report: https://www.illumio.com/resource-center/global-cloud-detection-and-response-report-2025
The Monday Microsegment for the week of January 19th. All the cybersecurity news you need to stay ahead, from Illumio's The Segment podcast.Europe's space agency suffers a massive data breach.Attackers keep cashing in on Oracle's old breach.And credit card skimmers go digital.And Aishwarya Ramani joins us to discuss executive sponsorship. Head to The Zero Trust Hub: hub.illumio.comDownload The 2025 Global Cloud Detection and Response Report: https://www.illumio.com/resource-center/global-cloud-detection-and-response-report-2025
What happens when we finally admit that stopping every cyberattack was never realistic in the first place? That is the thread running through this conversation, recorded at the start of the year when reflection tends to be more honest and the noise dial is turned down a little. I was joined by returning guest Raghu Nandakumara from Illumio, nearly three years after our last discussion, to pick up a question that has aged far too well. How do organizations talk about cybersecurity value when breaches keep happening anyway? This episode is less about shiny tools and more about uncomfortable truths. We spend time unpacking why security teams still struggle to show value, why prevention-only thinking keeps setting leaders up for disappointment, and why the conversation is slowly shifting toward resilience and containment. Raghu is refreshingly direct on why reducing cyber risk, rather than chasing impossible guarantees, is the only metric that really holds up under boardroom scrutiny. We also talk about the strange contradiction playing out across industries. Attackers are often using familiar paths like misconfigurations, excessive permissions, and missing patches, yet many organizations still fail to close those gaps. The issue, as Raghu explains, is rarely a lack of tools. It is usually fragmented coverage, outdated processes, and a talent pipeline that blocks capable people from entering the field while claiming there is a skills shortage. One of the most practical parts of this conversation centers on mindset. Instead of asking whether an attacker got in, Raghu argues that leaders should be asking how far they were able to go once inside. That shift alone changes how success is measured, how teams prepare for incidents, and how pressure-filled P1 moments are handled when boards want answers every fifteen minutes. We also touch on how legal action, public claims campaigns, and customer lawsuits are changing the stakes after a breach, forcing executives to rethink how they frame cyber investment. From there, Raghu shares how Illumio has been working with Microsoft to strengthen internal resilience at massive scale, and why visibility and segmentation are becoming harder to ignore. This is a conversation about realism, responsibility, and growing up as an industry. If cybersecurity is really about safety and not slogans, what would you want your organization to stop saying, and what would you rather hear instead? Please feel free to upload the podcast. Here are also the links we discussed on the call: Useful Links Connect with Raghu Nandakumara on LinkedIn and Twitter Learn more about Illumio Lateral Movement in Cyberattacks Illumio Podcast Follow on Facebook, Twitter, LinkedIn, and YouTube Thanks to our sponsors, Alcor, for supporting the show.
The Monday Microsegment for the week of January 12th. All the cybersecurity news you need to stay ahead, from Illumio's The Segment podcast.A cyber incident snarls operations at a major European port.Ransomware gangs go after cloud backups.And Ivanti warns that its VPN devices are being actively exploited.And Gary Barlet joins us to unpacks cyber warfare hitting critical infrastructure. https://www.wsj.com/articles/venezuela-raid-highlights-cyber-vulnerability-of-critical-infrastructure-28aed054?mod=author_content_page_1_pos_1Head to The Zero Trust Hub: hub.illumio.comDownload The 2025 Global Cloud Detection and Response Report: https://www.illumio.com/resource-center/global-cloud-detection-and-response-report-2025
The Monday Microsegment for the week of January 5th. All the cybersecurity news you need to stay ahead, from Illumio's The Segment podcast.New year, new zero-day vulnerability in Windows Server.Ransomware rings in 2026 by hitting healthcare in Europe.And attackers cash in on holiday passwords.And Ashwarya Ramani joins us for a special Book Club segment! Head to The Zero Trust Hub: hub.illumio.comDownload The 2025 Global Cloud Detection and Response Report: https://www.illumio.com/resource-center/global-cloud-detection-and-response-report-2025
The Monday Microsegment for the week of December 15th. All the cybersecurity news you need to stay ahead, from Illumio's The Segment podcast.Apple tells users not to ho-ho-hold off on emergency patches as it warns about state-backed spyware.Cyber grinches disrupt UK education and water services.And Microsoft flags a not-so-jolly zero-day flaw in SharePoint.And Christer Swartz joins us for a Boos and Bravos segment! Head to The Zero Trust Hub: hub.illumio.comDownload The 2025 Global Cloud Detection and Response Report: https://www.illumio.com/resource-center/global-cloud-detection-and-response-report-2025
Federal Tech Podcast: Listen and learn how successful companies get federal contracts
Connect to John Gilroy on LinkedIn https://www.linkedin.com/in/john-gilroy/ Want to listen to other episodes? www.Federaltechpodcast.com We are at the point where AI is almost expected in any technology offering. Today, we sat down with John Kindervag from Illumio to learn how AI can be applied to the world of federal Zero Trust. Some have characterized today's current cybersecurity situation as an arms race; some call it a whack-a-mole game. An innovative technology, such as AI, becomes popularized, and adversaries use it to improve attacks. As a result, the defenders of data must bolster their response, and they, in turn, use AI to defend. He highlights the importance of visibility, using AI to quickly parse logs, and the concept of dwell time, in which attackers can remain undetected for extended periods. To protect valuable data, Kindervag distinguishes between the attack surface and the defense surface. Although a malicious actor can instigate AI-driven attacks across any surface, sensitive information can be protected by thorough segmentation of the protected surface. During the interview, Kindervag provides tactics to manage legacy technology, fragmented data, and the critical topic of risk-averse culture.
The Monday Microsegment for the week of December 8th. All the cybersecurity news you need to stay ahead, from Illumio's The Segment podcast.CISA uncovers a new Chinese backdoor in U.S. networks.A massive breach hits South Korea's largest e-commerce platform.And a record-breaking DDoS attack pounds the financial sectorAnd Gary Barlet joins us for his 2026 predictions! Head to The Zero Trust Hub: hub.illumio.comDownload The 2025 Global Cloud Detection and Response Report: https://www.illumio.com/resource-center/global-cloud-detection-and-response-report-2025
Andrew Rubin is co-founder and CEO of Illumio. Illumio is a breach containment and network segmentation company that has become a mainstay in the cybersecurity market over the last decade. Illumio was last valued at almost $3 billion dollars and is now on the verge of going public as we discuss in the episode. Before Illumio, Andrew grew his career in sales at VoiceNet in the late 90s and early 2000s before moving to Cymtec, where he was VP of Sales for two years before taking over as CEO. That led him to love the CEO role and then start Illumio. In the episode, we discuss everything from redefining sales goals, meeting a co-founder (spoiler: in Andrew's case it was a lot of luck), preparing to IPO, including why the "IPO window" concept is silly, and more.Website
The Monday Microsegment for the week of November 17th. All the cybersecurity news you need to stay ahead, from Illumio's The Segment podcast.CISA flags new risks in both cloud and industrial systems.Congress calls Anthropic to explain AI-enabled threats.And a real-estate tech breach may spill into major U.S. banks.And John Kindervag joins us for his 2026 predictions! Head to The Zero Trust Hub: hub.illumio.comDownload The 2025 Global Cloud Detection and Response Report: https://www.illumio.com/resource-center/global-cloud-detection-and-response-report-2025
On this episode of The Cybersecurity Defenders Podcast we speak with Erik Bloch, VP of Security at Illumio, about better tools to combat burnout rate and discuss the reality of AI in security.Erik Bloch has 30+ years of information and cyber security experience, both as an IC and as a leader of teams. “People first” has always been his approach. He has led entire security and IT functions at smaller companies, and been the CISOs leading big teams at larger orgs. Erik also spent time on the product side, trying to make better tooling for people like him. With a mix of security, IT and product under his belt, Erik is at a place where connections, making meaningful change and driving impact in peoples lives, mean a lot to him. The smartest person he knows once said "Problems are really opportunities in disguise", and that's something Erik always tries to see.Support our show by sharing your favorite episodes with a friend, subscribe, give us a rating or leave a comment on your podcast platform. This podcast is brought to you by LimaCharlie, maker of the SecOps Cloud Platform, infrastructure for SecOps where everything is built API first. Scale with confidence as your business grows. Start today for free at limacharlie.io.
The Monday Microsegment for the week of November 17th. All the cybersecurity news you need to stay ahead, from Illumio's The Segment podcast.Akira turns up the heat on critical infrastructure.Did an AI model just run an espionage op?And a ghost in the cloud haunts Checkout.comAnd Aishwarya Ramani joins us for an "Ask the Expert" segment. Head to The Zero Trust Hub: hub.illumio.comDownload The 2025 Global Cloud Detection and Response Report: https://www.illumio.com/resource-center/global-cloud-detection-and-response-report-2025
The Monday Microsegment for the week of November 10th. All the cybersecurity news you need to stay ahead, from Illumio's The Segment podcast.The U.S. Justice Department says the ransomware is coming from inside the houseA foreign breach inside the U.S. CBOAnd another trusted security vendor becomes the target.And Scott Smith with a "View from the Street" segment. Head to The Zero Trust Hub: hub.illumio.comDownload The 2025 Global Cloud Detection and Response Report: https://www.illumio.com/resource-center/global-cloud-detection-and-response-report-2025
Federal Tech Podcast: Listen and learn how successful companies get federal contracts
Ep. 281 How Zero Trust Automation Helps Federal Agencies do More with Less Connect to John Gilroy on LinkedIn https://www.linkedin.com/in/john-gilroy/ Want to listen to other episodes? www.Federaltechpodcast.com As this interview was recorded, the federal government was in the middle of a shutdown. Hundreds of pundits have given interviews about the politics of the situation; very few have looked at the impact on cybersecurity during a phase of workforce reduction. Today, we sat down with Gary Barlet, the Public Sector CTO at Illumio, to see whether Zero Trust can help the federal government bridge this short personnel gap. Barlet begins by giving an overview of Zero Trust and automation. Rather than having human beings vet entry into federal systems, the concept is to use an automated process that reviews credentials and decides on permission. Barlet emphasizes the importance of Zero Trust in automating security tasks and maintaining operational resilience, especially with reduced staff. He continues to mention several other benefits of Zero Trust in a federal environment. Compliance: A well-thought-out Zero Trust architecture will enable managers to collect data to demonstrate policy enforcement. Legacy: One can effectively take existing systems and "ring fence" them off. This approach creates hundreds and hundreds of rings of defense. Design: During the interview, Gary recommends that you have a handle on the real traffic to reduce complexity. That way, when policies change, the rules can adapt to the environment. Maturity Level: Although CISA has a maturity level for Zero Trust. Barlet distills down some of the requirements for which efforts can be applied to sensitive systems. He suggests focusing on security, not necessarily on a grade. Additionally, he addresses the challenges of managing complex, hybrid environments and the emergence of shadow AI models, stressing the need for robust policies and controls.
The Monday Microsegment for the week of November 3rd. All the cybersecurity news you need to stay ahead, from Illumio's The Segment podcast.State-sponsored hackers wiretap a major telecom supplier.BadCandy creates a sour surprise for Cisco admins.Small businesses, big breaches — 2025 is on track for a grim new record.And Christer Swartz with a "Boos and Bravos" segment. Head to The Zero Trust Hub: hub.illumio.comDownload The 2025 Global Cloud Detection and Response Report: https://www.illumio.com/resource-center/global-cloud-detection-and-response-report-2025
In this episode of The Segment, host Raghu Nandakumara sits down with Carl Froggett, Chief Information Officer at Deep Instinct, the first company to apply end-to-end deep learning to cybersecurity.With nearly three decades of experience — including over 20 years at Citi leading global infrastructure defense and cybersecurity services — Carl brings a rare, full-circle perspective on how the cyber landscape, leadership, and culture have evolved from the early 2000s to today's AI-driven world.You'll learn:How Carl “accidentally” fell into cybersecurity — and what the early days of firewalls and compliance-driven security looked like What it was like to pioneer one of Citi's first dedicated cyber teams Lessons in leadership from iconic figures like Charles Blauner, Greg Lavender, and John Miller How Citi became an early adopter of technologies like Palo Alto Networks, Splunk, CrowdStrike, and Illumio Why building business alignment and trust matters more than ever for CISOs How to frame security risks in business terms — and where many leaders go wrong The massive shift from machine learning to deep learning in cybersecurity How generative AI and “dark AI” are redefining the threat landscape — and why the next era of defense demands a mindset change Packed with nostalgia, hard-won wisdom, and forward-looking insight, this episode bridges cybersecurity history, human leadership, and the AI-powered future ahead.Stay Connected with our host, Raghu on LinkedInFor more information about Illumio, check out our website at illumio.com
All links and images can be found on CISO Series. This week's episode is hosted by David Spark, producer of CISO Series and Jerich Beason, CISO, WM. Joining them on stage is Jack Leidecker, CISO, Gong. This episode was recorded live at HOU SEC CON 2025. In this episode: The open source sustainability problem AI levels the geopolitical playing field Cutting through AI vendor hype Why the fundamentals still hurt Thanks to Erik Bloch from Illumio for providing our "What's Worse" scenario. Huge thanks to our sponsor, Vorlon Security SaaS data moves fast—Vorlon gives security teams the context to move faster. Vorlon combines posture and secrets management, data flow visibility, and detection and response — so you can see the full picture: what's connected, what's at risk, and what needs immediate action. Learn more at https://vorlon.io/
The Monday Microsegment for the week of October 27th. All the cybersecurity news you need to stay ahead, from Illumio's The Segment podcast.Patch Tuesday just got a zero-dayNuclear secrets exposed through a SharePoint holeFormer cybersecurity executive charged with selling secrets to RussiaAnd Gary Barlet joins us for an "Ask the Expert" segment. Head to The Zero Trust Hub: hub.illumio.comDownload The 2025 Global Cloud Detection and Response Report: https://www.illumio.com/resource-center/global-cloud-detection-and-response-report-2025
The Monday Microsegment for the week of October 20th. All the cybersecurity news you need to stay ahead, from Illumio's The Segment podcast.F5 breach shakes confidence in core cyber defensesEurope takes down a SIM-farm empireAnd China flips the script with hacking accusation against the U.S.And Gary Barlet joins us for an "Ask the Expert" segment. Head to The Zero Trust Hub: hub.illumio.comDownload The 2025 Global Cloud Detection and Response Report: https://www.illumio.com/resource-center/global-cloud-detection-and-response-report-2025
The Monday Microsegment for the week of October 13th. All the cybersecurity news you need to stay ahead, from Illumio's The Segment podcast.New details on a serious Oracle vulnerabilityMama mia! Nintendo faces a possible data leakAnd payroll pirates plunder HR accounts. Argh.And Gary Barlet joins us for an "Ask the Expert" segment. Head to The Zero Trust Hub: hub.illumio.comDownload The 2025 Global Cloud Detection and Response Report: https://www.illumio.com/resource-center/global-cloud-detection-and-response-report-2025
Host Matt Staney, VP Community at HIGHER, sits down with Jennifer Anker Kaufman, VP of Talent Acquisition at Illumio, for a rich, honest conversation about how recruiting becomes a trusted business partner. Jennifer shares her unexpected start as a dolphin trainer, how she built credibility across hyper-growth tech companies, and why she believes in “talent partners,” not “order takers.”They discuss Illumio's shift to Ashby, how data reshapes executive conversations, and the future of AI and capacity planning in TA. Along the way, Jennifer reveals her NICE framework and the leadership lessons that turn small wins into lasting impact.
The Monday Microsegment for the week of October 6th. All the cybersecurity news you need to stay ahead, from Illumio's The Segment podcast.Hackers hit Oracle customers with extortion emails.CISA's lights are still on, but most of its defenders are home on furlough.And Palo Alto login portals face a flood of suspicious scans.And Christer Swartz joins us for a "Boos and Bravos" segment. Head to The Zero Trust Hub: hub.illumio.comDownload The 2025 Global Cloud Detection and Response Report: https://www.illumio.com/resource-center/global-cloud-detection-and-response-report-2025
The Monday Microsegment for the week of September 29th. All the cybersecurity news you need to stay ahead, from Illumio's The Segment podcast.CISA orders an emergency patch after attackers weaponize Cisco firewall flaws.AI and malware are working hand-in-hand, but it's not actually romanticAnd a string of new breaches could ruin the friendship between customers and major brands.And Michael Adjei joins us for an "Ask the Expert" segment. Head to The Zero Trust Hub: hub.illumio.comRegister to attend The Illumio World Tour: https://www.illumio.com/illumio-world-tour
The Monday Microsegment for the week of September 22nd. All the cybersecurity news you need to stay ahead, from Illumio's The Segment podcast.Travel chaos across Europe after attackers hit airport systemsFactories remain stalled as Jaguar Land Rover hack drags onAnd key cyber intel-sharing law hits a snag in the SenateAnd Scott Smith joins us for a "View from the Street" segment. Head to The Zero Trust Hub: hub.illumio.comRegister to attend The Illumio World Tour: https://www.illumio.com/illumio-world-tour
In this episode of The Segment, host Raghu Nandakumara sits down with Greg Mitchell, Application Administration Manager at Spokane Teachers Credit Union (STCU), for a candid, insightful look at what it really takes to drive security and innovation inside a modern, mission-driven financial institution.Greg shares how his team is building resilience from the inside out—applying zero trust principles not as a buzzword, but as a practical, culture-driven framework for protecting core systems. From his roots in school district IT to leading major modernization efforts at STCU, Greg walks us through what it means to lead with intention, assume breach, and drive results with lean teams and strong partnerships.You'll learn:Why disaster recovery isn't a one-time exercise, but a team muscle worth training How segmentation led to better cross-team relationships—not just better security The power of small wins (and small apps) to kickstart transformation Why enforcement beats perfection when it comes to securing infrastructure What zero trust really looks like in day-to-day operations—and how to start using tools you already have How STCU is approaching cloud expansion with Illumio
The Monday Microsegment for the week of September 15th. All the cybersecurity news you need to stay ahead, from Illumio's The Segment podcast.FInsurance claims show ransomware is still king — but AI is giving phishing a major boost.DoubleDragon goes to Washington, posing as a U.S. lawmaker.And scam factories in Asia hit with the U.S. sanctions hammer.And John Kindervag joins us for an "Ask the Expert" segment. Head to The Zero Trust Hub: hub.illumio.comRegister to attend The Illumio World Tour: https://www.illumio.com/illumio-world-tour
The Monday Microsegment for the week of September 1st. All the cybersecurity news you need to stay ahead, from Illumio's The Segment podcast.Fallout continues from the Salesforce-Salesloft supply chain breach.A cyberattack clips the claws of Jaguar Land Rover.Congress races the clock to keep cyber threat intel sharing alive.And Christer Swartz joins us for a "Boos and Bravos" segment. Head to The Zero Trust Hub: hub.illumio.comRegister to attend The Illumio World Tour: https://www.illumio.com/illumio-world-tour
The Monday Microsegment for the week of September 1st. All the cybersecurity news you need to stay ahead, from Illumio's The Segment podcast.Federal agencies scramble in the wake of major cyber lapses.A new ransomware strain uses AI to write its own attacks in real time.And to keep rivals out, hackers are patching the very security flaws they exploit.And John Kindervag joins us for an "Ask the Expert" segment. Head to The Zero Trust Hub: hub.illumio.comRegister to attend The Illumio World Tour: https://www.illumio.com/illumio-world-tour
The Monday Microsegment for the week of August 25th. All the cybersecurity news you need to stay ahead, from Illumio's The Segment podcast.Android VPNs promised users privacy — and tracked them instead.That urgent call from the boss? It may not be the boss.And Apple zero-day flaw makes a picture worth a thousand lines of malicious code.And Trevor Dearing joins us for a "Myth Buster" segment. Head to The Zero Trust Hub: hub.illumio.comRegister to attend The Illumio World Tour: https://www.illumio.com/illumio-world-tour
Recorded live at Black Hat 2025, this episode takes you straight to the frontlines of cybersecurity innovation. Host, Raghu Nandakumara first sits down with Bennett Moe, a cartographer turned N2K CyberWire VP, reveals how mapping skills can turn massive data into actionable cyber insights and why fundamentals still matter in an AI-driven world. Then, Jim Reavis, CEO of the Cloud Security Alliance and ISSA Hall of Famer, shares his urgent warning on cloud risks, the impact of generative AI, and why security leaders must rethink old playbooks.We discussed:How cartography principles help prioritize and visualize cybersecurity data The evolution of AI in security and where it's moving beyond buzzwords Why fundamentals like security hygiene and the right people in the right roles are still critical Systemic risks in cloud environments and why old security playbooks may no longer suffice How security leaders can become their company's most informed voices on AI The importance of actionable insights over overwhelming data for decision-makingThe role of cloud as a foundation for AI innovations like ChatGPT Distinguishing between securing AI and defending against AI-powered attacks How continuous learning, communication, and community collaboration are essential in cybersecurity The CSA's mission and legacy as a navigator for the cybersecurity community Stay Connected with our host, Raghu on LinkedInFor more information about Illumio, check out our website at illumio.com
The Monday Microsegment for the week of August 18th. All the cybersecurity news you need to stay ahead, from Illumio's The Segment podcast.Windows admins, start your updates — the latest Patch Tuesday is a doozy.Hackers are packing RomCom exploits into a popular file-archiving app, but no one's laughing.And phishers are turning stolen logins into stock pump-and-dump scams.And Christer Swartz joins us for an "Ask the Expert" segment. Head to The Zero Trust Hub: hub.illumio.comRegister to attend The Illumio World Tour: https://www.illumio.com/illumio-world-tour
The Monday Microsegment for the week of August 11th. All the cybersecurity news you need to stay ahead, from Illumio's The Segment podcast.Federal courts scramble to tighten security after sealed files spill in cyber breach.Less than 24 hours in, ChatGPT-5 is already breaking bad.And federal agencies: today's the deadline to apply a critical Exchange fix.And Christer Swartz joins us for an "Ask the Expert" segment. Head to The Zero Trust Hub: hub.illumio.comRegister to attend The Illumio World Tour: https://www.illumio.com/illumio-world-tour
The Monday Microsegment for the week of August 4th. All the cybersecurity news you need to stay ahead, from Illumio's The Segment podcast.A cyberattack shuts down the city of St. Paul — and draws in the National Guard.Spiders and dragons and rats — oh my! U.S. authorities issue new cybersecurity warning.And AI-powered bots are making DDoS attacks almost as easy as cheating on your homework.And John Kindervag joins us for a "Kindervag's Compass" segment. Head to The Zero Trust Hub: hub.illumio.comRegister to attend The Illumio World Tour: https://www.illumio.com/illumio-world-tour
The Monday Microsegment for the week of July 28th. All the cybersecurity news you need to stay ahead, from Illumio's The Segment podcast.More than 400 organizations compromised in a fast-moving SharePoint attack campaign.Researchers are blaming China-based threat groups for the attacksAnd researchers ask: did well-meaning vulnerability disclosures tip them off?And John Kindervag joins us for a "Kindervag's Compass" segment. Head to The Zero Trust Hub: hub.illumio.comIntroducing Illumio Insights: AI Cloud Detection and Response Webinar: https://lp.illumio.com/Introducing-Illumio-Insights-Webinar.On-Demand
In this dynamic episode of The Segment, two of cybersecurity's biggest names reunite with host, Raghu Nandakumara, for a no-holds-barred conversation: John Kindervag, the godfather of Zero Trust, and Dr. Chase Cunningham, aka Dr. Zero Trust. What unfolds is a fast-paced, insight-packed dialogue that spans decades of hard-earned wisdom, unexpected humor, and a shared mission to demystify modern cyber defense.John and Chase reflect on the global evolution of Zero Trust—from its scrappy beginnings to its widespread adoption by Fortune 500s, military leaders, and even elder care facilities. They dive into why context-driven maps are now indispensable, how graph-based security is reshaping the cyber terrain, and where AI and automation can give defenders a real edge. Expect candid takes on the limits of SIEMs, the failure of red teaming without strategy, and why defenders need to start thinking like attackers if they want to win.There's personal reflection too—Chase shares why he was reluctant to pick up the Zero Trust torch, and John opens up about the real heart behind the strategy. With wit, war stories, and straight talk, they make a clear case: cybersecurity isn't about perfection—it's about deterrence, resilience, and knowing what truly matters. Topics Covered:The origin and global adoption of Zero Trust Why “good maps” are critical for cyber resilience Real-world applications of AI in cyber defense Why attackers often outmaneuver defenders—and how to change that The psychology of leadership in cybersecurity strategy From Chick-fil-A to Bletchley Park: the unexpected places Zero Trust shows up Chase's take on stock-picking based on breach trends (yes, really) Resources Mentioned:Think Like an Attacker by Dr. Chase Cunningham John Kindervag's Zero Trust 5-Step Model “Zero Trust Terrain & Holding the High Ground” LinkedIn Live Stay Connected with our host, Raghu on LinkedInFor more information about Illumio, check out our website at illumio.com
The Monday Microsegment for the week of July 21st. All the cybersecurity news you need to stay ahead, from Illumio's The Segment podcast.Is Salt Typhoon's nine-month hack of a National Guard network the tip of the iceberg?CISA issues a rare 24-hour deadline to patch CitrixBleed 2 vulnerability.And a zero-day vulnerability in SharePoint is being used to breach dozens of organizations.And John Kindervag joins us for a "Kindervag's Compass" segment. Head to The Zero Trust Hub: hub.illumio.comIntroducing Illumio Insights: AI Cloud Detection and Response Webinar: https://lp.illumio.com/Introducing-Illumio-Insights-Webinar.On-Demand
This week, we are joined by Gary Barlet, former Federal CIO and Air Force Cyber Operations Officer and current Public Sector CTO at Illumio, to discuss how this approach to cybersecurity leaves some states much more at risk than others. Ben has the story of a Virginia case relating to reverse key word searches. Dave's got a highly unusual move by the DOJ against Maryland's district courts. While this show covers legal topics, and Ben is a lawyer, the views expressed do not constitute legal advice. For official legal advice on any of the topics we cover, please contact your attorney. Complete our annual audience survey before August 31. Links to today's stories: EFF Tells Virginia Court That Constitutional Privacy Protections Forbid Cops from Finding out Everyone Who Searched for a Keyword DOJ launches unusual lawsuit against entire federal district court in Maryland Get the weekly Caveat Briefing delivered to your inbox. Like what you heard? Be sure to check out and subscribe to our Caveat Briefing, a weekly newsletter available exclusively to N2K Pro members on N2K CyberWire's website. N2K Pro members receive our Thursday wrap-up covering the latest in privacy, policy, and research news, including incidents, techniques, compliance, trends, and more. This week's Caveat Briefing covers BNPL apps and the privacy issues they found associated with them. Curious about the details? Head over to the Caveat Briefing for the full scoop and additional compelling stories. Got a question you'd like us to answer on our show? You can send your audio file to caveat@thecyberwire.com. Hope to hear from you. Learn more about your ad choices. Visit megaphone.fm/adchoices
In this episode of Detection at Scale, Jack speaks with Erik Bloch, VP of Security, Illumio, about why most security operations teams aren't ready for AI tools and what fundamental processes must be in place first. Erik challenges the industry's obsession with new technologies, sharing stories from his experience transforming underperforming security teams at major companies like Cisco, Salesforce, and Atlassian. His conversation with Jack explores how to measure what actually matters in security operations, from team capacity utilization to business outcome dispositions, and why proper ticketing systems and actionable metrics are prerequisites for any advanced tooling to be effective. Topics discussed: The importance of establishing fundamental processes like ticketing systems and metrics before implementing AI tools in security operations. How to measure team capacity utilization and resource allocation to identify when security operations teams are operating beyond sustainable levels. Why traditional security metrics like mean time to detect are often vanity metrics that don't provide actionable business intelligence. The critical need for security leaders to communicate in business language with concrete data rather than anecdotal risk assessments. How managed service providers will likely be the first to successfully adopt AI tools due to their standardized processes. The challenge of proving AI tool effectiveness when most organizations lack baseline metrics to measure improvement against established benchmarks. Why security teams gravitate toward building custom tools and how this impacts their approach to adopting commercial AI solutions. The role of MCP in enabling security teams to create their own agents and integrate multiple tools. How AI should focus on eliminating routine tasks like phishing email analysis rather than trying to catch advanced persistent threats. The framework for implementing AI tools by starting with business outcomes, defining metrics, identifying capabilities, and then inserting automation. Listen to more episodes: Apple Spotify YouTube Website
The Monday Microsegment for the week of July 14th. All the cybersecurity news you need to stay ahead, from Illumio's The Segment podcast.UK police round up suspects they say are behind a wave of retail hacks.That new car could be systematic. Hydromatic. Ultramatic. And hacked via a Bluetooth flaw.And a new GPU-based attack turns AI models into artificial idiots.And John Kindervag joins us for a "Kindervag's Compass" segment. Head to The Zero Trust Hub: hub.illumio.comIntroducing Illumio Insights: AI Cloud Detection and Response Webinar: https://lp.illumio.com/Introducing-Illumio-Insights-Webinar.On-Demand
The Monday Microsegment for the week of July 7th. All the cybersecurity news you need to stay ahead, from Illumio's The Segment podcast.Another week, another airline hit with a cyberattack.Iranian hackers threaten to leak more emails from Trump allies And a ransomware gang suddenly shuts down… or is it just a rebrand?And John Kindervag joins us for a "Kindervag's Compass" segment. Head to The Zero Trust Hub: hub.illumio.comIntroducing Illumio Insights: AI Cloud Detection and Response Webinar: https://lp.illumio.com/Introducing-Illumio-Insights-Webinar.On-Demand
This week, we are joined by Gary Barlet, former Federal CIO and Air Force Cyber Operations Officer and current Public Sector CTO at Illumio, to discuss how this approach to cybersecurity leaves some states much more at risk than others. Ben discusses some major Supreme Court decisions from the just concluded 2025 term. Dave's got the story of a license plate reader company dialing back access after media reports reveal potential oversharing. While this show covers legal topics, and Ben is a lawyer, the views expressed do not constitute legal advice. For official legal advice on any of the topics we cover, please contact your attorney. Complete our annual audience survey before August 31. Links to today's stories: CERTIORARI TO THE UNITED STATES COURT OF APPEALS FOR THE FIFTH CIRCUIT TRUMP, PRESIDENT OF THE UNITED STATES, ET AL. v. CASA, INC., ET AL. ON APPLICATION FOR PARTIAL STAY Flock Removes States From National Lookup Tool After ICE and Abortion Searches Revealed Get the weekly Caveat Briefing delivered to your inbox. Like what you heard? Be sure to check out and subscribe to our Caveat Briefing, a weekly newsletter available exclusively to N2K Pro members on N2K CyberWire's website. N2K Pro members receive our Thursday wrap-up covering the latest in privacy, policy, and research news, including incidents, techniques, compliance, trends, and more. This week's Caveat Briefing covers two major U.S. Supreme Court rulings that may shape the future of digital policy. The Court upheld both the FCC's authority to fund the Universal Service Fund—preserving billions for internet access in underserved communities—and a Texas law requiring age verification for adult content, sparking renewed debate over online privacy, free speech, and regulatory reach. Curious about the details? Head over to the Caveat Briefing for the full scoop and additional compelling stories. Got a question you'd like us to answer on our show? You can send your audio file to caveat@thecyberwire.com. Hope to hear from you. Learn more about your ad choices. Visit megaphone.fm/adchoices
The Monday Microsegment for the week of June 30th. All the cybersecurity news you need to stay ahead, from Illumio's The Segment podcast.A second airline hit by a cyberattack in as many weeks.Iran's hackers stay quiet — for now — after U.S. and Israeli airstrikes.And the IRS gets a security audit — and it's not good.And Christer Swartz joins us for a "Boos and Bravos" segment. Head to The Zero Trust Hub: hub.illumio.comIntroducing Illumio Insights: AI Cloud Detection and Response Webinar: https://lp.illumio.com/Introducing-Illumio-Insights-Webinar.On-Demand