
11.7K
Downloads
158
Episodes
A podcast that takes a deeper look at today’s most important issues in cyber security, and beyond.
Episodes

Mar 5, 2026
Mar 5, 2026
29 min
Over the last few years, we’ve seen the resurgence of geopolitics as a driver for cybersecurity, especially in Europe. But the return of war to the continent is just one factor changing CISOs’ views of risk.
In this Insights Interview, we discuss developments in the threat landscape with Haider Pasha, CSO for EMEA at Palo Alto Networks, following the company’s recent Ignite event in London.
As he describes it, Europe faces its own pressures, as malicious actors exploit differences between countries, their policies and even cultures.
But security leaders in Europe, and elsewhere, also face challenges from AI, quantum computing, and a fragmented and increasingly complex regulatory landscape.
So how do security teams close those gaps?
Interview by Stephen Pritchard.

Feb 19, 2026
Feb 19, 2026
29 min
What, exactly, is threat intelligence? And how do CISOs use it?
Security teams now have access to multiple sources of information on threats and threat actors. These come from industry, from law enforcement, and even their own networks and SOCs.
But how effective is it against an ever-changing roster of adversaries? And how do CISOs become informed consumers of intelligence?
We invited Rafe Pilling, director of threat intelligence at Sophos, to discuss how threat intelligence has developed, in the context of some of the recent attacks and threat groups.

Feb 5, 2026
Feb 5, 2026
31 min
What is digital sovereignty, how does it relate to data sovereignty, and to resilience?
In this CISO Interview, we speak to Kim Larsen, CISO at Keepit, a service provider specialising in protecting data for SaaS applications.
With a career spanning policing, government and the private sector, he has witnessed the growing influence of geopolitics on cybersecurity. And he suggests both businesses and public sector bodies need to think about not just where their data are, but how to guarantee access to their technology if the worst does happen.
Interview by Stephen Pritchard

Jan 22, 2026
Jan 22, 2026
29 min
The cybersecurity skills gap might be narrowing. According to the latest Cybersecurity Workforce Study, from ISC2, CISOs are less concerned about the number of cyber professionals in their organisations. Instead, the focus is on whether they have the right mix of skills, to take on an increasingly complex threat landscape.
We go through the results of the research, and what it might mean for cybersecurity professionals at all points in their careers, with ISC2's COO, Casey Marks.
Interview by Stephen Pritchard

Jan 8, 2026
Jan 8, 2026
29 min
In the first episode of Series 7 of Security Insights,we welcome back Charl van der Walt, head of security research at Orange Cyber Defense.
We discuss the key findings of his team's 2026 Security Navigator report, how AI is tipping the balance of power in favour of malicious actors, and why resilience and agility should be on the CISO's agenda for this year.

Dec 18, 2025
Dec 18, 2025
29 min
Cybersecurity is about building resilient organisations. But this is impossible without resilient people.
Cyber defence is often a highly pressured working environment. And it can be lonely too. But if teams are unable to function at their best, attackers will exploit this.
In the second of our two episodes on cyber resilience, we look at its human side.
Our guests are Rebecca Taylor, threat intelligence knowledge manager and human intelligence researcher at Sophos, and Amelia Hewitt director of cyber consulting at Principle Defence. They're also known as the Cyber Agony Aunts.
They discuss steps organisations, and individuals, can take to improve their resilience with Stephen Pritchard.

Nov 26, 2025
Nov 26, 2025
29 min
Cybersecurity is changing its focus.
Increasingly, it is less about defence and more about resilience.
Organisations have to be able to withstand and recover from an attack. It's no longer about preventing breaches: the sheer volume of cyberattacks means that is no longer possible.
Instead, security teams and boards should assume an attack will happen, prepare keep the organisation operating during an incident, and aim to recover as quickly as possible.
Our guest is James Blake, VP of global cyber resilency strategy and consulting services at Cohesity.
He argues that this means integrating business continuity and disaster recovery with cybersecurity. And organisations should rehearse for cyber incidents, training staff to operate under what can be extreme pressure.
A good playbook, Blake suggests, is not enough.
Interview by Stephen Pritchard.

Nov 13, 2025
Nov 13, 2025
29 min
This year has not been easy for cybersecurity teams.
Businesses continue to face cybercrime and state-sponsored attacks, especially ransomware.
AI is proving to be a double-edged sword, helping both defenders and malicious actors.
And there are the ongoing issues of skills, recruitment and retention.
How, then, do cybersecurity professionals navigate their way through all these challanges? And what should they prioritise for 2026?
For this episode, we're pleased to welcome back Chris Dimitriadis, chief global strategy officer at ISACA.
Interview by Stephen Pritchard

Oct 30, 2025
Oct 30, 2025
29 min
Critical infrastructure is on the front line of the war in Ukraine.
And as the conflict approaches its fourth year, there is little sign of that changing.
Strikes against infrastructure, though, are only part of the picture. Since Russia’s full-scale invasion, and even before, Ukraine’s defenders have waged an equally intense, but less visible, cyber war.
What lessons can we draw from Ukraine’s experience?
And how can states and businesses protect their critical national infrastructure during war and conflict? And how do the public and private sector deal with the prospect of both kinetic and cyber threats?
We discuss this with Mihoko Matsubara, author, associate fellow at the International Institute of Strategic Studies and chief cybersecurity strategist at NTT Corporation.

Oct 16, 2025
Oct 16, 2025
29 min
A growing number of organisations now offer "bug bounties", paying hackers or security researchers rewards for finding vulnerabilities.
But how do these programmes operate, and how do CISOs ensure that they are run ethically? What are the risks of inviting researchers to hack your organisation? How do bug bounties stack up against other methods of security testing?
And what are the benefits to security researchers themselves, as the programmes cannot work without hackers?
We cover the pros and cons of bug bounties with Ottilia Westerlund, hacker engagement manager at bug bounty platform Intigriti, and herself a former software engineer and published security researcher.
