Yaron Levi: Security continues to be about the basics
In this episode of the Core Strength Podcast, we sit down with Yaron Levi, CISO of Dolby, to explore one of the most overlooked realities in cybersecurity: most companies don’t get breached because they lack the most advanced tools or controls, they get breached because of the lack of operational discipline. Yaron breaks down why the majority of security incidents still come down to the same foundational issues they did decades ago - misconfigurations, weak access controls, unpatched systems, and network complexity - despite endless innovation across the security industry. We discuss why concepts like inventory management, configuration management, change control, patching, and segmentation remain the backbone of security, even as the industry constantly chases new technologies and shiny objects.
The conversation dives deep into the operational realities behind modern enterprise security. Yaron explains how cloud, identity systems, SaaS, and AI have not eliminated networks or perimeters, but instead multiplied them exponentially, creating an explosion of complexity that organizations struggle to manage. We explore why operational rigor often loses out to speed and efficiency, how technical debt compounds over time, and why many security tools still overwhelm teams with endless lists of problems without helping them take meaningful action. Yaron also shares his perspective on the future of AI in security - not as a replacement for humans, but as a way to process massive amounts of context, automate operational discipline, and help security teams make better decisions at scale while keeping humans in control.