Security Café
Host: Menno van der Horst Regular Guest & Chief Storyteller: Quint Ketting Special Guest: Jan Paul Oosterom (EMEA Regional Business Lead for Security, Microsoft) EPISODE SUMMARY In this episode, the trio dives into the rapidly shifting threat landscape. While geopolitical tensions remain the "elephant in the room," the real tactical shift is happening within the realm of AI Agents. Jan Paul explains why identity management is no longer just about people—it’s about governing the thousands of non-human entities now operating within corporate environments. The team discusses the "Assume Breach" mindset, the death of "badly written" phishing emails, and why protecting your Intellectual Property (IP) requires a deep understanding of who exactly is targeting you. ---------------------------------------- KEY TAKEAWAYS * The Identity of Agents: We are moving beyond managing human access. Organizations now face the challenge of managing non-human identities (AI Agents) that have their own permissions, access levels, and potential for "rogue" behavior. * Assume Breach as a Culture: Security isn't just a set of tools; it’s a mindset. "Assume Breach" means every employee and executive must operate with the default action of verifying before acting, especially regarding financial transactions or data access. * The Intellectual Property Target: Threat intelligence isn't one-size-fits-all. A camera manufacturer faces different risks (IP theft) than a national tax office (financial disruption). Knowing your "Why" helps you build the right "How." ---------------------------------------- TIMESTAMPED HIGHLIGHTS * [01:10] – Jan Paul Oosterom’s role at Microsoft and his remit across EMEA. * [03:45] – The "Elephant in the Room": Geopolitical risks and the pace of AI evolution. * [05:50] – The 10,000 Agent Problem: How one customer already has a massive fleet of autonomous agents running. * [07:20] – Deep dive into Identity Management: Protecting non-human identities. * [12:15] – The evolution of phishing: Why attackers are now "spot on" with their messaging. * [15:30] – The "Assume Breach" mindset: Moving from "Can we stop it?" to "How do we respond when it fails?" * [18:45] – Threat Intel: Identifying your specific enemies based on your business IP. * [24:10] – Closing thoughts: Why the Board needs to be challenged on security. ---------------------------------------- MEMORABLE QUOTES > "The days that we were able to easily recognize something bad are over." — Jan Paul Oosterom > "What you need to protect is probably not what you have budget for. You need to get those things in line." — Quint Ketting > "If you cannot truly verify that what you see is real or good—stop it and start asking questions." — Jan Paul Oosterom ---------------------------------------- THE RECOMMENDATION CORNER * Movie: Minority Report (Recommended by Jan Paul Oosterom) * Why: It explores the philosophical and ethical boundaries of "Predictive Systems"—how far can we go in flagging "criminal behavior" before a crime is even committed? * Quint was referring to a movie which was actually a Serie called: Hannah
25 Folgen
Kommentare
0Sei die erste Person, die kommentiert
Melde dich jetzt an und werde Teil der Security Café-Community!