Hosted by RSAC · EN

In today’s threat landscape, no organization can defend itself alone. In this episode, Jenny Menna, Chief Security Officer at Sallie Mae and board member at FS-ISAC, explores the critical role of threat intelligence sharing and peer collaboration in modern cybersecurity. From the rise of less sophisticated but highly motivated attackers to the growing importance of real-time insights and trusted networks, she discusses how information sharing has expanded beyond data into actionable defense strategies. Jenny also shares practical guidance on building trust, overcoming legal and cultural barriers, and turning collective intelligence into meaningful action.

Security leaders are facing a new reality: SaaS has become the path of least resistance for attackers. As organizations adopt thousands of third-party applications and shift sensitive data into public infrastructure, traditional security approaches are struggling to keep up. In this episode, we explore why SaaS risk has emerged as a critical battleground, how it differs from legacy infrastructure risk, and where many organizations are still falling short. We also examine how attackers are evolving their tactics, the emerging risks introduced by AI-powered SaaS features, and what practical steps CISOs can take to regain control. Tune in for actionable guidance on prioritizing, partnering with the business, and building a more resilient SaaS security strategy.

As AI expands across critical sectors, this podcast episode examines how it disrupts privacy and compliance, creating new risks in consent, data use, and re‑identification. Through real cases and practical guidance, listeners learn how to build privacy‑first AI systems that maintain trust and regulatory alignment. Speakers: Noor Bains, Principal Field Solutions Architect, CDW Tatyana Sanchez, Senior Coordinator, Content & Programming, RSAC Kacy Zurkus, Director of Content, RSAC

This episode explores the intersection of innovation and security, and why today’s CISOs must help shape what comes next. Nasrin Rezai, SVP & CISO at Verizon, discusses how security leaders can work with startups to drive meaningful change. She shares what makes a young company stand out, how to structure successful pilots, and where startups often miss the mark with enterprise buyers. If you’re balancing bold ideas with responsible risk management, this episode offers clear, actionable insights for leading innovation with confidence.

This podcast presents a quantum-safe blueprint for Privileged Access Management, integrating AI and Zero Trust principles. We'll explore how to protect critical access against quantum threats and AI-powered attacks, addressing the current preparedness gap. Learn actionable strategies for crypto-agility and securing all identities, human and non-human, for a resilient future. Speakers: Malhar Vora, Principal Engineer | Engineering & People Leader, ANZ Bank Tatyana Sanchez, Senior Coordinator, Content & Programming, RSAC Kacy Zurkus, Director of Content, RSAC

Speed is becoming a defining advantage in cybersecurity. In this episode, Phyllis Schneck, VP and CISO at Northrop Grumman, joins Dr. Hugh Thompson to explore how high-performance computing is reshaping cyber defense. From accelerating real-time threat detection and response to amplifying the impact of AI and automation, they discuss how increased compute power is transforming both attackers and defenders. The conversation also highlights the importance of building secure foundations, avoiding common pitfalls, and enabling organizations to move at speed without increasing risk. Guest: Dr. Phyllis Schneck, Vice President & Chief Information Security Officer, Northrop Grumman

Many organizations treat GenAI governance as a documentation or compliance exercise. This podcast episode reframes AI governance as a system-design problem and presents control-plane patterns for managing risk, accountability, and compliance across large-scale AI deployments. Speakers: Varun Raj, Associate Partner, Kyndryl Tatyana Sanchez, Senior Content Coordinator, RSAC Kacy Zurkus, Director, Content, RSAC

Guest: JR Williamson, SVP & CISO, Leidos Generative AI is accelerating innovation, but it’s also creating new blind spots. In this episode, we explore how CISOs can manage the rising risk of “shadow AI,” where employees use generative tools without oversight or safeguards. JR Williamson, SVP & CISO at Leidos, joins Dr. Hugh Thompson to share how the defense sector is approaching unauthorized AI use, from detecting activity early to putting practical guardrails around data handling, classification, and ethical use. They discuss how to balance innovation with security, bring unsanctioned tools into the light, and prepare for the emerging GenAI risks on the horizon.

Cyber resilience has become a defining priority for today’s security leaders, but translating the concept into real-world impact isn’t easy. In this episode of Cyber at the Top, Dr. Hugh Thompson is joined by Emma Smith, CISO at Vodafone, to explore what cyber resilience looks like in practice and how it shapes decision-making at scale. Drawing on her experience leading a major global security transformation, Emma shares how organizations can prepare for disruption, reduce impact, and recover more effectively over time. The conversation looks at resilience through the lens of people, culture, operating models, and measurement, and highlights why trust, accountability, and continuous improvement are essential to sustaining resilience in complex, highly regulated environments.

AI-powered impersonation and deepfakes are no longer theoretical—they are changing how trust works in real time. This discussion explores how industry and government can use existing legal frameworks, shared standards, and regulatory intent to move from abstract concern to concrete action, making trust, verification, and accountability explicit as deepfake-driven risk accelerates. Clarissa Cerda, Chief Legal Officer and Corporate Secretary, Pindrop Security Stefanie Fogel, Partner & Vice Chair, Markets & Sectors, DLA Piper Tatyana Sanchez, Senior Content Coordinator, RSAC Kacy Zurkus, Director, Content, RSAC