Hack Responsibly
In this episode of Hack Responsibly, Karl Fossen talks to James Albany, NetSPI’s Senior Director of Network Pentesting, about his path from a SOC analyst to a penetration testing leader. They cover how AI and continuous testing are reshaping the security industry, what common gaps still show up in assessments, and what James is up to outside of work. What’s discussed: * Advice for newcomers: understand the fundamentals so you can gut-check what AI is doing well versus poorly * The shift from point-in-time assessments to continuous testing programs and why clients are increasingly asking for it * AI's role in security testing, including generating Nuclei templates and accelerating vulnerability discovery, and when traditional automation is still the better choice * The "fire hose effect" of AI tools like Mythos compressing timelines for vulnerability discovery, proof-of-concept development, and remediation * Underrepresented topics in security: SCCM/deployment server risks, Linux and Kubernetes environments, and supply chain security * Common gaps still showing up in assessments, including Active Directory and application-level vulnerabilities that network scanners miss * TFTP and PXE booting as surprisingly persistent and effective attack vectors
6 episodios
Comentarios
0Sé la primera persona en comentar
¡Regístrate ahora y forma parte de la comunidad de Hack Responsibly!