DTF Cyber Podcast
In this episode of the DTF Cyber Podcast, Damian, Troy, and Fern tackle the terrifying reality of 2026: Identity is the new weapon of mass destruction. From the architectural suicide pact that allowed a 200,000-device wipe at Stryker to the personal blackmail engines fueled by the Match Group data breach, the team explores why your own IT tools are being turned against you. Timestamps 00:00 – The "Architectural Suicide Pact" (Stryker & Match overview). 00:44 – Vegas Recording: Fern introduces the location (Findlay Automotive Group conference room). 03:00 – The 2026 Trend: Troy explains why exfiltration is the new ransomware end-game. 04:44 – The Match Incident: Troy breaks down the "Blackmail Engine" and voice-cloning risks. 07:09 – Governance Failures: Damian explains Multi-Admin Approval (MAA) and why it failed at Stryker. 10:00 – The Platform Myth: Troy discusses the "Holy Grail" of full-stack identity. 12:54 – Just-In-Time (JIT) Access: Damian breaks down automating validation for critical tasks. 18:30 – Observability Strategy: Troy discusses mapping security tools to the MITRE ATT&CK framework. 20:50 – The Cost of Downtime: Analyzing the $10M/day loss of the MGM hack. 25:40 – The SaaS Trap: Troy identifies over-privileged accounts in Salesforce and stale SaaS apps. 30:40 – Executive Friction: The Reporting Structure debate: Where the CIO and CISO clash. 33:00 – The Reporting Debate: Troy argues why the CISO should report to Legal or Risk. 38:50 – Innovate or Die: Damian's take on why blocking AI is a losing strategy. 40:40 – Closing Thoughts: Troy’s final plea to fix the Basics before moving to AI. 44:59 – Final Wrap-up: Thanking Findlay Automotive Group and the Henderson, NV hosts.
44 episodios
Comentarios
0Sé la primera persona en comentar
¡Regístrate ahora y únete a la comunidad de DTF Cyber Podcast!