O'Driscoll: Fortune 500 CISOs have months, not years, to prepare for agent attacks
“So if you're every CISO in every Fortune 500, you have to basically, you know, you were being attacked by people with bows and arrows. You're now about to be attacked by people with missiles, and you better respond accordingly, and you've got months, not years…”
Lewke: Nebulock caught an undetected Fortune 500 vulnerability in 36 hours
“What happened for us was basically in, I think it was like a day and a half, we caught something that no other tool had found. And this particular finding again, in a fortune, 500 with many layers of management was escalated all the way up to the chief informa…”
Stebbings: Enterprise AI buying frenzy will last only 18 to 24 months
“I think you have to be unwaveringly aggressive now on BD and sales, because I think you have an 18 to 24 month period where CIOs, CISOs are like, hey, we have to have it, we have to have a message for it. That won't last forever.”
Raanan: Wiz compressed sales cycles because all four buyer personas were the CISO
“For every product that you sell there are Four personas that you need to care about. The person who has the pain, the person that has the authority to buy solution like you're selling, the person that is the user that actually uses the product day to day, and …”
Summers: CISOs Fear Internal LLMs Will Uncover Existing Unintended Employee Access
“Almost every CISO I'm talking to now is, is concerned about
Giving LLMs access to data for that reason.
Not that the LLM is going to do something wrong, but it's going to let people search and find things way more powerfully and join information they didn't ev…”
Ramji: CISOs Lack Full Inventories of Internal APIs Exposed to AI
“Usually they don't even have the inventory of all the internal APIs that can be exposed, right?”
Herzberg: Wiz markets to end users over executive buyers
“No, see those are one part of it, but at the end of the day, my best friends are the users. They're the ones that at the end of the day have to love the product, have to use it, have to talk about it in their communities. So absolutely. It's not just, we don't…”
De la Garza: Security training offers highest ROI in CISO portfolio
“If you actually look at, I spend X dollars and I present Y, prevent Y breaches, training and awareness is by far the best ROI of the entire portfolio that a CISO has.”
Puri: Cyberstarts promises startups $2M revenue through loyal CISO network
“He promises teams of fresh graduates, graduates from tech units, not only investment support in the startup, but initial revenues of two million a year. This is usually their first year of revenue, which is intended to boost them above their competitors and he…”
Holland: Relying on legacy security vendors for liability safety is naive
“It's the safe way to go, but it is not the best thing for the company. It is not it is not forward facing. It is, I think it's being naive in regards to the type of attacks that are coming.”
Joel de la Garza: CISOs deploy Chromebooks to eliminate endpoint antivirus
“So when you talk to some of the more forward-leaning CISOs in large organizations, they're rolling out hundreds or thousands of Chromebooks, right? They don't need to run antivirus on those endpoints.”
Joel de la Garza: Talent shortage prevents CISOs from trying new security tools
“Finally, the other thing that you'll hear is that security skills shortage is a driving force of what most CISOs do. So you'll, you'll talk to them, you'll try to get them to look at new technology, to consider new alternatives, and they just don't have the bo…”