Épisodes

  • Zero Trust principles and AI agents with George Finney
    Aug 26 2025
    In this episode, Jaye and John engage with George Finney to explore the intersection of Zero Trust principles and AI agents. They discuss the challenges and opportunities presented by AI in cybersecurity, emphasizing the importance of identity management, governance, and the role of humans in overseeing AI systems. The conversation also touches on the future of AI, the necessity of pre-mortems in project planning, and the need for continuous education in cybersecurity. George shares insights from his experience as a CISO and offers advice for leaders navigating the evolving landscape of digital security. Key Takeaways: • AI agents pose significant security challenges. • Zero Trust principles must adapt to include AI. • Identity management is crucial for both humans and AI. • Governance structures are needed for AI oversight. • Investing in people is key to a secure future. • Pre-mortems can help identify potential AI risks. • Human involvement is essential in critical AI decisions. • AI's blending of control and data planes raises security concerns. • Continuous education in cybersecurity is vital for all staff. • The future of AI in cybersecurity is uncertain but requires critical thinking. Follow & Subscribe on all Podcast platforms. link.chtbl.com/XIW5zsAn What is the Zero Trust Forum about? It’s about empowering zero trust security professionals with strategies, architecture, and real world journeys to secure the digital future, the right way! Follow the Zero Trust Forum on LinkedIn www.linkedin.com/company/zero-trust-forum/. Follow Jaye Tillson on LinkedIn - www.linkedin.com/in/jaye-tillson/ Follow John Spiegel on LinkedIn - www.linkedin.com/in/john-spiegel-2011543/
    Voir plus Voir moins
    48 min
  • From Special Ops to Cybersecurity: A New Perspective with Chase Cunningham
    Aug 22 2025
    In this episode, Jaye and John engage with Chase Cunningham, a retired Navy cryptologic chief, to explore the concept of Zero Trust through the lens of military experience. They discuss the importance of situational awareness, effective leadership, and the necessity of building trust within teams. The conversation delves into crisis management, emphasizing the need for flexibility and adaptability in high-pressure situations. They also highlight the significance of after action reviews in learning from both successes and failures, and the critical role of empowered leadership in navigating cybersecurity challenges. Key Takeaways: • The mindset from special ops can enhance cybersecurity strategies. • Situational awareness is crucial in both military and civilian life. • Crisis management requires flexibility and the ability to adapt. • Effective leadership is essential during high-pressure situations. • Building trust within teams is vital for successful operations. • Organizations must have a clear mission to align efforts. • Regular after action reviews can improve response strategies. • Learning from past mistakes is critical to avoid future breaches. • Crisis response should prioritize isolation of threats. • Empowered leadership can facilitate better decision-making during crises. Follow & Subscribe on all Podcast platforms. link.chtbl.com/XIW5zsAn What is the Zero Trust Forum about? It’s about empowering zero trust security professionals with strategies, architecture, and real world journeys to secure the digital future, the right way! Follow the Zero Trust Forum on LinkedIn www.linkedin.com/company/zero-trust-forum/. Follow Jaye Tillson on LinkedIn - www.linkedin.com/in/jaye-tillson/ Follow John Spiegel on LinkedIn - www.linkedin.com/in/john-spiegel-2011543/
    Voir plus Voir moins
    54 min
  • Networking & Security Over Whiskey with Jennifer (JJ) Minella
    Aug 19 2025
    In this episode, the No Trust team speaks with Jennifer Minella about her extensive experience in technology, particularly in wireless security and networking. They discuss the challenges of maintaining security in wireless networks, the evolution of networking technologies, and the complexities of implementing Network Access Control (NAC) in a hybrid work environment. The conversation also touches on the future of Zero Trust architecture, the importance of unique device identity, and the challenges posed by IoT and OT devices. The episode concludes with a light-hearted discussion about whiskey. • Jennifer Minella has over 30 years of experience in technology, focusing on infrastructure and security. • Wireless security protocols have not significantly changed in over 20 years, posing challenges for security professionals. • The majority of Wi-Fi technology is consumer-based, complicating enterprise security efforts. • Understanding the basics of networking is crucial for entering the cybersecurity field today. • NAC implementations are often challenging and can lead to significant operational disruptions. • Zero Trust architecture requires a shift in how organizations approach network security, especially with remote work. • Unique device identity is essential for effective security in IoT and OT environments. • The complexity of modern networks makes it difficult to manage security policies effectively. • The rise of ransomware attacks on IoT devices highlights the need for better security measures. • Whiskey culture provides a fun and engaging way to connect with others in the tech industry. Follow & Subscribe on all Podcast platforms. link.chtbl.com/XIW5zsAn What is the Zero Trust Forum about? It’s about empowering zero trust security professionals with strategies, architecture, and real world journeys to secure the digital future, the right way! Follow the Zero Trust Forum on LinkedIn www.linkedin.com/company/zero-trust-forum/. Follow Jaye Tillson on LinkedIn - www.linkedin.com/in/jaye-tillson/ Follow John Spiegel on LinkedIn - www.linkedin.com/in/john-spiegel-2011543/
    Voir plus Voir moins
    49 min
  • The Godfather of Zero Trust with John Kindervag
    Aug 5 2025
    In this episode of the No Trust Podcast, hosts Jaye Tillson and John Spiegel sit down with John Kindervag, the creator of Zero Trust, to uncover the story behind one of cybersecurity’s most transformative frameworks. Kindervag shares how Zero Trust has gained traction over the past 15 years, the cultural resistance that slowed its adoption, and how organizations can finally break through inertia by starting small and focusing on protecting what matters most. From the boardroom to the SOC, this conversation dismantles the myth that Zero Trust is “all or nothing” and reframes it as a business-driven strategy with measurable outcomes, including reduced operational costs and fewer breaches. Along the way, Kindervag reveals why the C-suite often understands Zero Trust better than technical teams, how misaligned incentives inside organizations hold security back, and why networking at conferences is still one of the best ways to drive change. Whether you’re a CISO, security architect, or business leader, this episode will challenge your assumptions and leave you with a clear, practical path toward Zero Trust. • John Kindervag is the creator of Zero Trust. • Zero Trust took 15 years to gain traction due to resistance to change. • Organizations should start small and protect specific assets. • Cybersecurity must evolve beyond traditional perimeter defenses. • Zero Trust is about protecting sensitive data, not just technology. • Incentives in organizations often hinder the adoption of new security models. • Zero Trust can lead to reduced operational costs and fewer data breaches. • The C-suite often understands Zero Trust better than technical teams. • Conferences provide valuable networking opportunities and insights. • The focus should be on business outcomes, not just technology. Follow & Subscribe on all Podcast platforms. link.chtbl.com/XIW5zsAn What is the Zero Trust Forum about? It’s about empowering zero trust security professionals with strategies, architecture, and real world journeys to secure the digital future, the right way! Follow the Zero Trust Forum on LinkedIn www.linkedin.com/company/zero-trust-forum/. Follow Jaye Tillson on LinkedIn - www.linkedin.com/in/jaye-tillson/ Follow John Spiegel on LinkedIn - www.linkedin.com/in/john-spiegel-2011543/ Takeaways • Identity is the heart of zero trust. • Most breaches occur due to weak passwords. • Identity is the key to the perimeter. • Assuming trust can lead to vulnerabilities. • Zero trust is a continuous journey. • Organizations need visibility into their identity landscape. • AI can assist in analyzing identity-related data. • Non-human identities are a growing concern. • MFA is essential but not the only solution. • The future of identity management will involve AI. Follow & Subscribe on all Podcast platforms. link.chtbl.com/XIW5zsAn What is the Zero Trust Forum about? It’s about empowering zero trust security professionals with strategies, architecture, and real world journeys to secure the digital future, the right way! Follow the Zero Trust Forum on LinkedIn www.linkedin.com/company/zero-trust-forum/. Follow Jaye Tillson on LinkedIn - www.linkedin.com/in/jaye-tillson/ Follow John Spiegel on LinkedIn - www.linkedin.com/in/john-spiegel-2011543/
    Voir plus Voir moins
    58 min
  • From Theory to Practice: The Zero Trust Journey - Episode 2, with John Kindervag and Dr Chase Cunningham
    Apr 17 2025
    From Theory to Practice: The Zero Trust Journey - Episode 2, with John Kindervag and Dr Chase Cunningham by "No Trust" by Zero Trust Forum
    Voir plus Voir moins
    44 min
  • Surviving the Ransomware Threat with Art Ocain
    Apr 1 2025
    In this conversation, Art Ocain discusses the current landscape of cybersecurity threats with the No Trust crew, particularly focusing on ransomware attacks. They explore how attackers gain access to systems, the importance of multi-factor authentication, and the vulnerabilities of small and medium-sized businesses. The conversation delves into immediate actions organizations should take during a ransomware attack, the balance between recovery and forensic investigation, and the critical role of communication during incidents. They also address the ethical dilemma of paying ransoms and share lessons learned from past incidents, emphasizing the need for ongoing security improvements and preparedness for future threats. Takeaways • VPN is currently the main vector for attacks • Small and medium businesses are often less prepared for attacks • Many companies still lack MFA on their VPNs • Organizations often believe they are immune to attacks until it's too late • Hypervisors are a primary target for ransomware attacks • Minimizing the attack surface is crucial for security • Isolating from the internet is a key first step during an attack • The decision to pay ransom is complex and often driven by immediate business needs • A full forensic investigation is essential after an attack • Ransomware trends continue to evolve and are not declining Follow & Subscribe on all Podcast platforms. link.chtbl.com/XIW5zsAn What is the Zero Trust Forum about? It’s about empowering zero trust security professionals with strategies, architecture, and real world journeys to secure the digital future, the right way! Follow the Zero Trust Forum on LinkedIn www.linkedin.com/company/zero-trust-forum/. Follow Jaye Tillson on LinkedIn - www.linkedin.com/in/jaye-tillson/ Follow John Spiegel on LinkedIn - www.linkedin.com/in/john-spiegel-2011543/ Takeaways • Identity is the heart of zero trust. • Most breaches occur due to weak passwords. • Identity is the key to the perimeter. • Assuming trust can lead to vulnerabilities. • Zero trust is a continuous journey. • Organizations need visibility into their identity landscape. • AI can assist in analyzing identity-related data. • Non-human identities are a growing concern. • MFA is essential but not the only solution. • The future of identity management will involve AI. Follow & Subscribe on all Podcast platforms. link.chtbl.com/XIW5zsAn What is the Zero Trust Forum about? It’s about empowering zero trust security professionals with strategies, architecture, and real world journeys to secure the digital future, the right way! Follow the Zero Trust Forum on LinkedIn www.linkedin.com/company/zero-trust-forum/. Follow Jaye Tillson on LinkedIn - www.linkedin.com/in/jaye-tillson/ Follow John Spiegel on LinkedIn - www.linkedin.com/in/john-spiegel-2011543/
    Voir plus Voir moins
    46 min
  • Identity in the Age of Zero Trust with David Morimanno
    Mar 10 2025
    In this conversation, David Morimanno and the No Trust crew delve into the critical role of identity in the context of zero trust security. They discuss how identity serves as the new perimeter, the importance of multi-factor authentication, and the challenges organizations face in implementing effective identity management strategies. The conversation also touches on the significance of non-human identities, the potential of AI in enhancing security measures, and the future trends in identity and cybersecurity. Takeaways • Identity is the heart of zero trust. • Most breaches occur due to weak passwords. • Identity is the key to the perimeter. • Assuming trust can lead to vulnerabilities. • Zero trust is a continuous journey. • Organizations need visibility into their identity landscape. • AI can assist in analyzing identity-related data. • Non-human identities are a growing concern. • MFA is essential but not the only solution. • The future of identity management will involve AI. Follow & Subscribe on all Podcast platforms. link.chtbl.com/XIW5zsAn What is the Zero Trust Forum about? It’s about empowering zero trust security professionals with strategies, architecture, and real world journeys to secure the digital future, the right way! Follow the Zero Trust Forum on LinkedIn www.linkedin.com/company/zero-trust-forum/. Follow Jaye Tillson on LinkedIn - www.linkedin.com/in/jaye-tillson/ Follow John Spiegel on LinkedIn - www.linkedin.com/in/john-spiegel-2011543/
    Voir plus Voir moins
    47 min
  • From Theory to Practice: The Zero Trust Journey with John Kindervag and Dr Chase Cunningham
    Feb 27 2025
    In this episode of No Trust, Jaye Tillson, John Spiegel, John Kindervag, and Chase Cunningham discuss the evolution and significance of the Zero Trust cybersecurity model. They explore its origins, the pivotal moments that have shaped its adoption, and the importance of aligning organizational culture and leadership with Zero Trust principles. The conversation highlights the need for a strategic approach to cybersecurity that transcends traditional methods, emphasizing the importance of protecting data and assets in a constantly evolving threat landscape. Takeaways • Zero Trust originated from the limitations of traditional security models. • The concept of trust in digital systems is flawed and should be eliminated. • Zero Trust has evolved to address modern cybersecurity threats. • A strategic approach to Zero Trust is essential for effective implementation. • Incentives from leadership can drive the adoption of Zero Trust. • Understanding what to protect is crucial for a successful Zero Trust strategy. • Zero Trust should be seen as a continuous journey, not a one-time project. • Cultural shifts within organizations are necessary for Zero Trust to succeed. • The cybersecurity landscape is constantly changing, requiring ongoing adaptation. • Community engagement and charity initiatives can enhance the mission of cybersecurity professionals. Follow & Subscribe on all Podcast platforms. link.chtbl.com/XIW5zsAn What is the Zero Trust Forum about? It’s about empowering zero trust security professionals with strategies, architecture, and real world journeys to secure the digital future, the right way! Follow the Zero Trust Forum on LinkedIn www.linkedin.com/company/zero-trust-forum/. Follow Jaye Tillson on LinkedIn - www.linkedin.com/in/jaye-tillson/ Follow John Spiegel on LinkedIn - www.linkedin.com/in/john-spiegel-2011543/
    Voir plus Voir moins
    45 min