Resilient Cyber brings listeners discussions from a variety of Cybersecurity and Information Technology (IT) Subject Matter Experts (SME) across the Public and Private domains from a variety of industries. As we watch the increased digitalization of our society, striving for a secure and resilient ecosystem is paramount.
…
continue reading
Mitch Michals Podcasts

1
Resilient Cyber w/ Mitch Herckis - Securing the Public Sector
39:02
39:02
Play later
Play later
Lists
Like
Liked
39:02In this episode, I sit down with Mitchel Herckis, Global Head of Government Affairs at cloud security leader Wiz. We will be discussing all things public sector and cybersecurity, including the evolution of the FedRAMP program, modernizing vulnerability management, and the future of Continuous ATO (cATO). We covered a lot of ground, including: Mitc…
…
continue reading

1
Resilient Cyber w/ Kenny Scott - Following the Future of FedRAMP
42:16
42:16
Play later
Play later
Lists
Like
Liked
42:16By Chris Hughes
…
continue reading

1
Resilient Cyber w/ Snehal Antani - AI and Autonomous Pen Testing
38:46
38:46
Play later
Play later
Lists
Like
Liked
38:46In this episode of Resilient Cyber, I sit down with repeat guest Snehal Antani, who serves as the Co-Founder & CEO of Autonomous Pen Testing leader Horizon3.ai. We will discuss the latest developments in AI and Autonomous Pen Testing, as well as the tremendous growth and success of Horizon3.ai, as Snehal balances technical topics with business-cent…
…
continue reading

1
Resilient Cyber w/ Alon Jackson - Enterprise Agentic Security
18:46
18:46
Play later
Play later
Lists
Like
Liked
18:46In this episode of Resilient Cyber, I sit down with Astrix Security Co-Founder and CEO Alon Jackson to discuss the need for secure agentic adoption across the enterprise. This includes Astrix’s approach, which involves enabling enterprises to discover, secure, and deploy AI agents responsibly at scale.…
…
continue reading

1
Resilient Cyber w/ Emre Tinaztepe - Forensics at the Frontline
20:44
20:44
Play later
Play later
Lists
Like
Liked
20:44In this episode of Resilient Cyber, I sit down with Binalyze Founder/CEO Emre Tinaztepe. We will discuss how AI and automation are impacting the future of the SOC and the role that forensics-level data can play in incident response and recovery, as well as proactive threat hunting.By Chris Hughes
…
continue reading

1
Resilient Cyber w/ Andy Ellis - Effective Cyber Marketing, Sales & Leadership
45:03
45:03
Play later
Play later
Lists
Like
Liked
45:03In this episode, I sit down with Andy Ellis, a longtime industry security leader who has turned investor, advisor, and mentor. We will discuss how security vendors can build effective marketing and sales teams and Andy's experience identifying and investing in industry-leading security startups. Don't miss this chance to hear from an industry legen…
…
continue reading

1
Resilient Cyber w/ Cory Michal (AppOmni) - Unpacking the SaaS Security Supply Chain Landscape
24:52
24:52
Play later
Play later
Lists
Like
Liked
24:52- One of the biggest SaaS security incidents recently of course is the Salesloft Drive/Salesforce incident, which impacted hundreds of organizations and involved compromised OAuth tokens. Can you tell us a bit about the incident and the fallout? - In an AppOmni blog on the incident, you all discuss attackers taking advantage of persistent OAuth acc…
…
continue reading

1
Resilient Cyber w/ Rob T. Lee - Navigating AI's Impact on Cyber & the Workforce
39:08
39:08
Play later
Play later
Lists
Like
Liked
39:08In this episode of Resilient Cyber, I sit down with the SANS Institute's Chief of Research (COR) & Chief AI Officer (CAIO), Rob T. Lee to discuss AI's impact on cybersecurity and the workforce. We will discuss SANS Critical AI Security Guidelines, the opportunities and obstacles AI presents for cybersecurity, and how practitioners should navigate A…
…
continue reading

1
Resilient Cyber w/ Gianna & Maria - The State of Cybersecurity Marketing
17:43
17:43
Play later
Play later
Lists
Like
Liked
17:43In this episode of Resilient Cyber, I sit down with Gianna Whitver and Maria Velasquez to chat about the state of marketing in the cybersecurity industry, as well as their popular event "Cyber Marketing Con" In this episode, we discussed: The background of the CyberMarketingCon and what led Gianna and Maria to co-found the event and community Where…
…
continue reading

1
Resilient Cyber w/ Michael Bargury - The AI Agent Security Imperative
30:31
30:31
Play later
Play later
Lists
Like
Liked
30:31In this episode I sit down with Michael Bargury, Co-Founder and CTO at Zenity to discuss all things AI Agent Security. Michael and the Zenity team have recently disclosed various AI agent risks, vulnerabilities and threats.By Chris Hughes
…
continue reading

1
Resilient Cyber w Andrew Carney DARPA AI Cyber Challenge AIxCC
26:04
26:04
Play later
Play later
Lists
Like
Liked
26:04In this episode, I sit down with Andrew Carney, Program Manager for DARPA's AI Cyber Challenge (AIxCC). DARPA's AIxCC recently concluded at Black Hat, and it brought together the industry's leading experts on AI and Cybersecurity with a focus on securing software that is critical to all Americans. Teams had to create novel AI systems to secure crit…
…
continue reading

1
Resilient Cyber w/ Sid Trivedi - Black Hat, Cyber and AI Opportunities
27:31
27:31
Play later
Play later
Lists
Like
Liked
27:31In this episode we sit down with Sid Trivedi, Partner at venture capital firm Foundational Capital and host of the Inside the Network podcast. Sid brings great insights around cybersecurity market trends, industry events such as Black Hat and the impact that AI is having on the startup and venture capital ecosystem.…
…
continue reading

1
Resilient Cyber w/ Christian Posta MCP, Agents & IAM in the age of LLMs
30:44
30:44
Play later
Play later
Lists
Like
Liked
30:44In this episode, we sit down with Christian Posta, the Field CTO at Solo.io and an industry author and leader on topics such as Microservices, AI, and IAM. We will explore the rise of Agentic AI and its supporting protocols, such as MCP and A2A, and the broader challenges and considerations of Identity security in the age of LLMs.…
…
continue reading

1
Resilient Cyber w/ Daniel Bardenstein - AI Supply Chain Security Risks
43:59
43:59
Play later
Play later
Lists
Like
Liked
43:59In this episode, I sit down with Daniel Bardenstein, CTO & Co-Founder of Manifest Cyber. We discussed the AI supply chain security, including open source risks, AIBOMs, best practices for CISOs, and regulatory approaches in the U.S. and EU. We dove into: What is the same and different between the risks AI introduces across the enterprise compared t…
…
continue reading

1
Resilient Cyber w/ Jim Manico - Enhancing Software Security in the Era of AI
20:06
20:06
Play later
Play later
Lists
Like
Liked
20:06In this episode, we sit down with Jim Manico, a longtime industry AppSec Leader, Educator, and Innovator, to discuss enhancing software security in the era of AI. This includes covering recent talks Jim has given about using AI as a force multiplier for software development, the importance of security-centric prompting, and the overall impact of AI…
…
continue reading

1
Resilient Cyber w/ AJ Yawn - Transforming Compliance Through GRC Engineering
35:53
35:53
Play later
Play later
Lists
Like
Liked
35:53In this episode, we sat down with AJ Yawn, Author of the upcoming book GRC Engineering for AWS and Director of GRC Engineering at Aquia, to discuss how GRC engineering can transform compliance. We discussed the current pain points and challenges in Governance, Risk, and Compliance (GRC), how GRC has failed to keep up with software development and t…
…
continue reading

1
Resilient Cyber w/ Patrick Duffy: Securing the Modern Workspace
19:32
19:32
Play later
Play later
Lists
Like
Liked
19:32In this episode of Resilient Cyber, we chat with Patrick Duffy, Product Manager at Material Security, on Securing the Modern Workspace. The conversation will include discussions about the increased adoption of cloud office suites, limitations of traditional security approaches, and a deep dive into how Material Security is tackling issues such as s…
…
continue reading

1
Resilient Cyber w/ Bob Ritchie - Securing Federal & Defense Digital Modernization
40:58
40:58
Play later
Play later
Lists
Like
Liked
40:58In this episode, I sit down with SAIC Chief Technology Officer (CTO) and longtime Federal/Defense leader Bob Ritchie to discuss his experience securing public sector digital modernization, including everything from large multi-cloud environments to zero trust, identity, and where things are headed with AI. Bob starts discussing SAIC and his backgro…
…
continue reading

1
Resilient Cyber w/ Wade Baker - Data Driven Incident Impact Analysis
45:55
45:55
Play later
Play later
Lists
Like
Liked
45:55In this episode, I sit down with longtime industry researcher Wade Baker to dive into Cyentia's latest IRIS report. The report provides a data-driven look at incident trends, impacts, costs, and more. Are cyber incidents becoming more or less frequent? Are specific industries doing better than others? What does the average incident impact actually …
…
continue reading

1
Resilient Cyber w Phil Venables Security Leadership: Vulnerabilities to VC
30:37
30:37
Play later
Play later
Lists
Like
Liked
30:37In this episode, I sit down with longtime industry leader and visionary Phil Venables to discuss the evolution of cybersecurity leadership, including Phil's own journey from CISO to Venture Capitalist. We chatted about: A recent interview Phil gave about CISOs transforming into business-critical digital risk leaders and some of the key themes and a…
…
continue reading

1
Resilient Cyber w/ Vineeth Sai Narajala: Model Context Protocol (MCP) - Potential & Pitfalls
18:32
18:32
Play later
Play later
Lists
Like
Liked
18:32In this episode, I discuss the Model Context Protocol (MCP) with the OWASP GenAI Co-Lead for Agentic Application Security, Vineeth Sai Narajala. We will discuss MCP's potential and pitfalls, its role in the emerging Agentic AI ecosystem, and how security practitioners should consider secure MCP enablement. We discussed: MCP 101, what it is and why …
…
continue reading

1
Resilient Cyber w/ Jay Jacobs & Michael Roytman - VulnMgt Modernization & Localized Modeling
33:53
33:53
Play later
Play later
Lists
Like
Liked
33:53In this episode, I sit with long-time vulnerability management and data science experts Jay Jacobs and Michael Roytman, who recently co-founded Empirical Security. We dive into the state of vulnerability management, including: How it is difficult to quantify and evaluate the effectiveness of vulnerability prioritization and scoring schemes, such as…
…
continue reading

1
Resilient Cyber: Ravid Circus - Tackling the Prioritization Crisis in Cyber
23:02
23:02
Play later
Play later
Lists
Like
Liked
23:02In this episode, we sit down with the Co-Founder and CPO of Seemplicity, Ravid Circus, to discuss tackling the prioritization crisis in cybersecurity and how AI is changing vulnerability management. We dove into a lot of great topics, including: The massive challenge of not just finding and managing vulnerabilities but also remediation, with Seempl…
…
continue reading

1
Resilient Cyber w/ Varun Badhwar - AI for AppSec - Beyond the Buzzwords
26:44
26:44
Play later
Play later
Lists
Like
Liked
26:44In this episode, we sit down with Varun Badhwar, Founder and CEO of Endor Labs, to discuss the state of AI for AppSec and move beyond the buzzwords. We discussed the rapid adoption of AI-driven development, its implications for AppSec, and how AppSec can leverage AI to address longstanding challenges and mitigate organizational risks at scale. Varu…
…
continue reading

1
Resilient Cyber w/ Jit - Agentic AI for AppSec is Here
28:03
28:03
Play later
Play later
Lists
Like
Liked
28:03In this episode, we sit down with David Melamed and Shai Horovitz of the Jit team. We discussed Agentic AI for AppSec and how security teams use it to get real work done. We covered a lot of key topics, including: What some of the systemic problems facing AppSec are, even before the widespread adoption of AI, such as vulnerability prioritization, s…
…
continue reading

1
Resilient Cyber w/ Piyush Sharrma - AI-Powered Defense & Security Mesh
29:10
29:10
Play later
Play later
Lists
Like
Liked
29:10In this episode, we sit down with Piyush Sharrma, CEO and co-founder of the Tuskira team. They're an AI-powered defense optimization platform innovating around leveraging an Agentic Security Mesh. We will dive into topics such as Platform vs. Point Solutions, Security Tool Sprawl, Alert Fatigue, and how AI can create "intelligent" layers to unify a…
…
continue reading

1
Resilient Cyber w/ Elad Schulman - Secure Enterprise LLM/GenAI Adoption
32:33
32:33
Play later
Play later
Lists
Like
Liked
32:33We sit with Lasso Security CEO and Co-Founder Elad Schulman in this episode. Lasso focuses on secure enterprise LLM/GenAI adoption, from LLM Applications, GenAI Chatbots, Code Protection, Model Red Teaming, and more. Check them out at https://lasso.security We dove into a lot of great topics, such as: Dealing with challenges around visibility and g…
…
continue reading

1
Resilient Cyber w/ Sergej Epp - Cloud-native Runtime Security & Usage
32:13
32:13
Play later
Play later
Lists
Like
Liked
32:13In this episode, we sit with security leader and venture investor Sergej Epp to discuss the Cloud-native Security Landscape. Sergej currently serves as the Global CISO and Executive at Cloud Security leader Sysdig and is a Venture Partner at Picus Capital. We will dive into some insights from Sysdig's recent "2025 Cloud-native Security and Usage Re…
…
continue reading

1
Resilient Cyber w/ Lior Div & Nate Burke - Agentic AI & the Future of Cyber
36:25
36:25
Play later
Play later
Lists
Like
Liked
36:25In this episode, we sit down with Lior Div and Nate Burke of 7AI to discuss Agentic AI, Service-as-Software, and the future of Cybersecurity. Lior is the CEO/Co-Founder of 7AI and a former CEO/Co-Founder of Cybereason, while Nate brings a background as a CMO with firms such as Axonius, Nagomi, and now 7AI. Lior and Nate bring a wealth of experience…
…
continue reading

1
Resilient Cyber w/ Chenxi Wang - The Intersection of AI & Cybersecurity
36:25
36:25
Play later
Play later
Lists
Like
Liked
36:25In this episode, we sit down with Investor, Advisor, Board Member, and Cybersecurity Leader Chenxi Wang to discuss the interaction of AI and Cybersecurity, what Agentic AI means for Services-as-a-Software, as well as security in the boardroom Chenxi and I covered a lot of ground, including: When we discuss AI for Cybersecurity, it is usually divide…
…
continue reading

1
Resilient Cyber w/ Rob Shavell - Personal Data & Online Privacy
28:49
28:49
Play later
Play later
Lists
Like
Liked
28:49In this episode, we sit down with Rob Shavell, CEO and Co-Founder of DeleteMe, an organization focused on safeguarding exposed personal data on the public web and addressing user privacy challenges. We dove into a lot of great topics, such as: The rapidly growing problem of personal data ending up on the public web and some of the major risks many …
…
continue reading

1
Resilient Cyber w/ Steve Martano - CISO's, Security Budgets & Careers
25:06
25:06
Play later
Play later
Lists
Like
Liked
25:06In this episode of Resilient Cyber, we sit down with Steve Martano, Partner in the cyber Security Practice at Artico Search, to discuss the recent IANS & Artico Search Publications on the 2025 State of the CISO, security budgets, and broader security career dynamics. Steve and I touched on some great topics, including: The 2025 State of the CISO re…
…
continue reading

1
Resilient Cyber w/ Katie Norton - AppSec Industry Analysis & Trends
47:19
47:19
Play later
Play later
Lists
Like
Liked
47:19In this episode of Resilient Cyber, we catch up with Katie Norton, an Industry Analyst at IDC who focuses on DevSecOps and Software Supply Chain Security. We will dive into all things AppSec, including 2024 trends and analysis and 2025 predictions. Katie and I discussed: Her role with IDC and transition from Research and Data Analytics into being a…
…
continue reading

1
Resilient Cyber w/ Ed Merrett - AI Vendor Transparency: Understanding Models, Data and Customer Impact
23:55
23:55
Play later
Play later
Lists
Like
Liked
23:55In this episode of Resilient Cyber, Ed Merrett, Director of Security & TechOps at Harmonic Security, will dive into AI Vendor Transparency. We discussed the nuances of understanding models and data and the potential for customer impact related to AI security risks. Ed and I dove into a lot of interesting GenAI Security topics, including: Harmonic’s…
…
continue reading

1
Resilient Cyber w/ Sounil Yu - The Intersection of AI and Need-to-Know
26:41
26:41
Play later
Play later
Lists
Like
Liked
26:41In this episode, we sit down with Sounil Yu, Co-Founder and CTO at Knostic, a security company focusing on need-to-know-based access controls for LLM-based Enterprise AI. Sounil is a recognized industry security leader and the author of the widely popular Cyber Defense Matrix. Sounil and I dug into a lot of interesting topics, such as: The latest n…
…
continue reading

1
Resilient Cyber w/ Grant Oviatt - Transforming SecOps with AI SOC Analysts
19:25
19:25
Play later
Play later
Lists
Like
Liked
19:25SecOps continues to be one of the most challenging areas of cybersecurity. It involves addressing alert fatigue, minimizing dwell time and meantime-to-respond (MTTR), automating repetitive tasks, integrating with existing tools, and leading to ROI. In this episode, we sit with Grant Oviatt, Head of SecOps at Prophet Security and an experienced SecO…
…
continue reading

1
Resilient Cyber w/ Mick Leach - 5 Email Threats to Watch For in 2025
31:30
31:30
Play later
Play later
Lists
Like
Liked
31:30While cybercriminals can (and do) infiltrate organizations by exploiting software vulnerabilities and launching brute force attacks, the most direct—and often the most effective—route is via the inbox. As the front door of an enterprise and the gateway upon which employees rely to do their jobs, the inbox represents an ideal access point for attack…
…
continue reading

1
Resilient Cyber w/ Rajan Kapoor - Native Cloud Workspace Gaps and Risks
30:17
30:17
Play later
Play later
Lists
Like
Liked
30:17In this episode, we sit down with Rajan Kapoor, Field CISO of Material Security, to discuss the security risks and shortcomings of native cloud workspace security offerings and the role of modern platforms for email security, data governance, and posture management. Email and Cloud Collaboration Workspace Security continues to be one of the most pe…
…
continue reading

1
Resilient Cyber w/ Greg Martin - Agentic AI and AppSec
27:13
27:13
Play later
Play later
Lists
Like
Liked
27:13We’ve heard a ton of excitement about AI Agents, Agentic AI, and its potential for Cybersecurity. This ranges in areas such as GRC, SecOps, and Application Security (AppSec). That is why I was excited to sit down with Ghost Security Co-Founder/CEO Greg Martin. In this episode, we sit down with Ghost Security CEO and Co-Founder Greg Martin to chat a…
…
continue reading

1
Resilient Cyber w/ Filip Stojkovski & Dylan Williams - Agentic AI & SecOps
22:45
22:45
Play later
Play later
Lists
Like
Liked
22:45In this episode, we will be sitting down with Filip Stojkovski and Dylan Williams to dive into AI, Agentic AI, and the intersection with cybersecurity, specifically Security Operations (SecOps). I’ve been following Filip and Dylan for a bit via LinkedIn and really impressed with their perspective on AI and its intersection with Cyber, especially Se…
…
continue reading

1
Resilient Cyber w/ Walter Haydock - Implementing AI Governance
28:31
28:31
Play later
Play later
Lists
Like
Liked
28:31In this episode, we sit down with StackAware Founder and AI Governance Expert Walter Haydock. Walter specializes in helping companies navigate AI governance and security certifications, frameworks, and risks. We will dive into key frameworks, risks, lessons learned from working directly with organizations on AI Governance, and more. We discussed Wa…
…
continue reading

1
Resilient Cyber w/ Jim Dempsey - Navigating the Cyber Regulatory Landscape
56:54
56:54
Play later
Play later
Lists
Like
Liked
56:54In this episode, we sit with the return guest, Jim Dempsey. Jim is the Managing Director of the Cybersecurity Law Center at IAPP, Senior Policy Advisory at Stanford, and Lecturer at UC Berkeley. We will discuss the complex cyber regulatory landscape, where it stands now, and implications for the future based on the recent U.S. Presidential election…
…
continue reading

1
Resilient Cyber w/ Tyler Shields and James Berthoty - Is "Shift Left" Losing its Shine?
25:12
25:12
Play later
Play later
Lists
Like
Liked
25:12In this episode of Resilient Cyber I will be chatting with industry leaders Tyler Shields and James Berthoty on the topic of "Shift Left". This includes the origins and early days of the shift left movement, as well as some of the current challenges, complaints and if the shift left movement is losing its shine. We dive into a lot of topics such as…
…
continue reading

1
Resilient Cyber w/ Shyam Sankar - The Primacy of Digital Dominance
34:03
34:03
Play later
Play later
Lists
Like
Liked
34:03In this episode we sit down Shyam Sankar, Chief Technology Officer (CTO) of Palantir Technologies. We will dive into a wide range of topics, from cyber regulation, software liability, navigating Federal/Defense cyber compliance and the need for digital defense of the modern national security ecosystem. - First off, for those unfamiliar with you and…
…
continue reading

1
Resilient Cyber w/ Mark Simos - Cybersecurity Anti-Patterns
29:30
29:30
Play later
Play later
Lists
Like
Liked
29:30In this episode we sit down with Mark Simos to dive into his RSA Conference talk "You're Doing It Wrong - Common Security AntiPatterns" to dig into several painfully true anti-patterns in cybersecurity and how we often are our own worst enemy. - - First off, for those not familiar with you or your background, can you tell us a bit about that. - So …
…
continue reading

1
Resilient Cyber w/ Ross Young - How to Become a CISO
32:57
32:57
Play later
Play later
Lists
Like
Liked
32:57- First off, for those who don't know you, can you tell us a bit about your background? - You've been providing a deep dive talk into how to become a CISO. I'm curious, what made you put together the presentation, and how has it been received so far when you've had a chance to deliver it? - You have broken down what you call "four stages of the jou…
…
continue reading

1
Resilient Cyber w/ Helen Oakley - Exploring the AI Supply Chain
20:26
20:26
Play later
Play later
Lists
Like
Liked
20:26- First off, for folks not familiar with your background, can you tell us a bit about that and how you got to the role you're in now? - We see rapid adoption of AI and security inevitably trying to keep up, where should folks start? - There are some really interesting intersections when it comes to AI and supply chain, what are some of them? - We s…
…
continue reading

1
Resilient Cyber w/ Jit - Exploring the Emerging ASPM Ecosystem
26:33
26:33
Play later
Play later
Lists
Like
Liked
26:33In this episode we sit down with Amir Kessler and Aviram Shmueli of AppSec innovator Jit to dive into the complexities of the modern AppSec landscape and explore the emerging Application Security Posture Management (ASPM) ecosystem. - First off, for folks not familiar with your backgrounds, can you tell us a bit about both of your backgrounds and h…
…
continue reading

1
Resilient Cyber w/ Christina Liaghati - Navigating Threats to AI Systems
24:58
24:58
Play later
Play later
Lists
Like
Liked
24:58- For those that don't know you, can you tell us a bit about your background and your current role? - I know you help lead the ATLAS project for MITRE, what exactly is ATLAS and how did it come about? - The AI threat landscape is evolving quickly, as organizations are rapidly adopting GenAI, LLM's and AI more broadly. We are still flushing out some…
…
continue reading

1
Resilient Cyber w/ Steve Wilson - Securing the Adoption of GenAI & LLM's
28:40
28:40
Play later
Play later
Lists
Like
Liked
28:40In this episode we sit down with GenAI and Security Leader Steve Wilson to discuss securing the explosive adoption of GenAI and LLM's. Steve is the leader of the OWASP Top 10 for LLM's and the upcoming book The Developer's Playbook for LLM Security: Building Secure AI Applications - - First off, for those not familiar with your background, can you …
…
continue reading