The Ledger, every show
Every statement that passed quotation and attribution checks, across all 44 shows. Pick shows below, then mix any filter with any other.
shows 




every show 44 of 44
Noon: Cybersecurity incumbents acquire startups because early-stage efficacy is unpredictable
“There's a, you know, like a truism that all cybersecurity products are just, you know, complex insurance policies or whatever, right? But the point is like that, that mushiness exists. And so what has resulted in, in, in the free market here is these incredibl…”
Noon: Top VCs avoid cybersecurity because typical outcomes cap at $200M
“A lot of the best VCs like never, you know, make bets in cybersecurity because, you know, at best you're going to get a two hundred million dollar takeout to Paladin networks or whatever, right? That's the typical outcome”
Noon: Off-the-shelf AI models eliminate fine-tuning moats for cybersecurity tasks
“I'm seeing a lot of like, you know, I need to pretend that I have a moat, so I need to, you know, fine tune all this stuff and whatever, whatever. But yeah, no, I mean, So many things that were very, very, very hard for computers, you know, 18 months ago are v…”
Noon: Generative AI solves the cybersecurity skills shortage for pennies
“Kind of classic cliches in the cybersecurity industry, like the cybersecurity skills shortage, like America needs, you know, to bring back the draft and make everyone get a security certificate or something. Okay. Like, you know, that you have like, 90% of a h…”
Noon: Open Western societies are especially vulnerable to infosec threats
“The West, I think is especially vulnerable to this, like open societies, I think are extra vulnerable when it comes to infosec stuff, because like we put it all out there. We adopt these systems. We open them up. We let the private sector totally handle them. …”
Noon: AI shovel-selling is overhyped, but long-term societal impact is underhyped
“Shovel selling is overhyped, but I think the thoughtful, you know, discourse on what our society will be like in 10 years is probably under hyped.”
Noon: Apple blocks iOS security tools while ignoring underlying vulnerabilities
“Even Apple, who's like so good at locking it down to the extent that, you know, Zuck is super sad or whatever, like we'll, we'll lock down the device and prevent, you know, the most, you know, obvious forms of cybersecurity software being made. But like, but t…”
Noon: Early cybersecurity founders should ignore Gartner categories and build utility
“Take a step back and just, like, try and build an incredibly useful thing that everyone should buy. Stop thinking about the Gartner categories and, you know, whatever, CASB, UBA, SIM, whatever, DNR, something, something, something, like, stop, like, trying to,…”
Noon: Non-technical founders default to repetitive business templates like mattress companies
“Like you need like really talented technologists on founding teams. Like I really think it's like, we're in the technology industry. Like, you know, if you leave the MBAs alone, they're going to do like Casper mattresses, but for mattress pads this time, but t…”
Noon: Duopolies bring market stability but extreme security fragility
“Duopolies are stable in the market, but very fragile when it comes to security.”
Noon: LLMs excel at filtering noise in raw cybersecurity operations
“There's a lot of just raw operational work that happens in security of just like, we need to, you know, rarefy this signal, filter out the noise, and then honestly feed it through a human being who has some experience as to what the bad guys are trying to do. …”
Ryan Noon: LLMs Excel at Static Code Analysis and Secret Detection
“The stuff that Socket's doing, just like analyzing NPM dependencies, like, you know, even just like stack analysis, like looking for like, you know, Hey, you drop sensitive information in the middle of your code base. Like that's like such a messy, hard proble…”
Noon: Using LLMs just for phishing spell checks materially increases attack success
“Like, if all they could do was, like, spell check the bad guys, and that's all you were using, like, whatever off the shelf, you know, open source LLM for, like, even that would make a difference materially on, you know, cybersecurity policy returns.”
Noon: AI allows a single hacker to execute mass social engineering attacks
“Like one human can now supervise a thousand humans. You know, you don't need a room full of like jerks trying to hack grandma or whatever when honestly like one jerk will now suffice, you know, with a for loop.”
Noon: Cybersecurity is just the waste heat of computing innovation
“My moral basis for cybersecurity existing is that is essentially like the waste heat of all other innovation in, in computing and information, which is like, you know, if a computer is doing something new for you that it wasn't doing last year, then like the u…”
Noon: LLMs can replace traditional security log parsing and aggregation pipelines
“So much of security is is, is emitting Logs and alerts and then parsing those logs alerts again and aggregating them. You know, I spent a lot of time doing, you know, data infrastructure and analytics in my life, you know, before, after my cybersecurity grad d…”
Noon: Startups Embed LLMs Deeply While Fortune 500s Run Science Projects
“Kind of the growthy companies with the nerdy founders, like immediately started integrating this into the product. Right. And then the like youngish public companies that like totally still got it. You know, would do like a thinner feature a little bit later, …”
Noon: I advised passing on Snowflake's Series B because of Redshift
“I did diligence on snowflakes B and told whoever asked me to pass. Cause I'm like redshift exists. Like AWS is not asleep at the wheel.”
Noon: Startup difficulty is the inverse of market size
“The difficulty level of the game that is starting a company is essentially just, like, the size of the market, like, the inverse of that. You know, like, the bigger the market, like, you can eat mistakes, you know, you can burn time, you know, like, it's just …”