The Defender’s Log Podcast
Cybersecurity is technical. But the humans behind it? That's where it gets complicated. Nim Nadarajah—CISO and managing partner from Critical Matrix, and one of the sharpest minds in the industry—sits down with host David Redekop for a conversation that goes far beyond firewalls and frameworks. From the psychology of a breach victim who no longer knows who to trust, to cutting a client's SIEM costs by millions through process, not tools, this episode is a masterclass in what it actually takes to protect an organization in today's threat landscape. Nim shares the story behind crowdsourcing the discovery of a gold mine (yes, really), why your crown jewels are probably already inside an AI you didn't approve, and what a five-year-old opening the kitchen sink cabinet taught him about zero trust security. Whether you're a CISO, an MSP, a business owner, or someone who just wants to understand what's actually at stake with agentic AI—this one is for you. Key Discussion Points 00:00 — Intro: Welcome to The Defender's Log 01:34 — Meet Nim Nadarajah: CISO & Managing Partner, Critical Matrix 02:00 — RSAC 2025 recap: 50,000 people, 30,000 steps, and emotional overload 03:18 — The stigma of being hacked: Is the "wall of shame" finally coming down? 05:00 — Competence, confidence, and capability: The 3 Cs of incident readiness 06:04 — Psychology of a breach: The human side of incident response 09:36 — "Who can I trust?" (What it really feels like to be a cyber victim) 12:10 — Nim's origin story: From high school library networks to corporate Canada 15:00 — The Goldcorp Challenge: Crowdsourcing a gold mine before crowdsourcing was a thing 20:31 — Process vs. tools: Why the blank page doesn't care what app you're using 23:00 — AI is everywhere and it's only as good as what you feed it 24:25 — Agentic AI, crown jewels & protecting your intellectual property 26:33 — Shadow AI, 800 firewall rules, and the free-for-all that already happened 29:09 — Zero trust explained through a kitchen sink (and a curious five-year-old) 33:22 — The SIEM transformation that saved millions and paid for itself in a month 37:36 — Dashboard fatigue: Why leaders need signal, not more screens 39:00 — Agentic SOC: Fearfully excited 41:02 — 29 employees, one human: The pure agentic company Nim met at RSAC 43:26 — Vibe coding is real: A salesperson built a privacy app with zero coding experience 46:00 — Ideas are approaching zero value—execution is everything now 46:57 — One sentence for the next generation: "The power of your ideas haven't been created yet." 👍 If this hit home, give it a like — it helps more people find these conversations 🔔 Follow The Defender's Log so you don't miss the next one 💬 Drop a comment — where are you on the process vs. tools debate? 🔗 Tag someone in security or leadership who needs to hear this #CyberSecurity #CISO #IncidentResponse #AIRisk #AgenticAI #ZeroTrust #SIEM #ManagedSecurity #CyberLeadership #DataGovernance #CrownJewels #TechStrategy #ProcessOverTools #CyberResilience #TheDefendersLog #Podcast #CyberPodcast #MSP #InfoSec #DigitalTransformation #AIGovernance #CybersecurityLeadership #ToolFatigue #CyberAwareness #RSAC2025
24 episodios
Comentarios
0Sé la primera persona en comentar
¡Regístrate ahora y únete a la comunidad de The Defender’s Log Podcast!