Cybersecurity Architecture Podcast aims to help security professionals to rethink their approach to infosec design and simplify their decision-making process while they face the overcrowded innovative cybersecurity market.
LaunchPad Glimps Advanced Malware Detection
The podcast features an insightful interview with Frederic from Gleams, a French startup specializing in advanced malware detection and investigation using artificial intelligence. Frederic discusses the company's role in protecting file flows, the differences between malware and viruses, common vectors of attack, challenges of static and dynamic detection, deployment options including air gap environments, and the company's focus on delivering effective threat detection and analysis.
Frederic:
https://www.linkedin.com/in/fr%C3%A9d%C3%A9ric-grelot-3243052a/
Frédéric Grelot began his career at CNES in Toulouse, spending three years in the Spacecraft's Embedded Computers department. There, he worked on designing a hardened computer chip for satellites and handled its validation from VHDL to integration in a satellite model and simulated space environment. In 2012, he joined the cyberdefense teams of the French Ministry of Armed Forces, specializing in reverse-engineering of computer systems and programs for seven years.
In 2016-2017, Grelot initiated Artificial Intelligence work at DGA, identifying defense sectors where AI could be applied and helped establish a dedicated AI team. From 2017 to 2019, he led a team of 25 reverse-engineering analysts and continued enhancing his knowledge in Artificial Intelligence and Big Data.
In 2019, Grelot co-founded GLIMPS, a company specializing in code analysis and malware detection using AI, and served as Scientist Lead. He contributed significantly to the company's outreach and communication. In 2023, he moved to Toronto, Canada, to open GLIMPS's first international office, engaging actively with the local tech and cybersecurity communities. Known for his distinctive profile, he also participated in various conferences and appeared on the national Radio Canada network. Grelot is committed to ecological sustainability, incorporating this perspective into his entrepreneurial endeavors.
Glimps:
GLIMPS is a cybersecurity company established in 2019 by four experts with a background in reverse-engineering. It offers innovative cybersecurity solutions leveraging a proprietary technology capable of automatically reading and understanding computer code. This technology is designed to enhance the detection and automation of binary analysis and threat identification, providing a significant boost to existing defense lines against increasingly sophisticated cyber threats. GLIMPS's solutions, which include GLIMPS Malware, are available in both SaaS and On-premise formats, catering to a broad spectrum of French and international companies and governmental bodies. The firm has achieved recognition within the cybersecurity community, evidenced by prices such as the European Cyber Week award, twice in a row.
At the core of GLIMPS's offerings is its Deep Engine, a specialized AI engine based on Deep Learning. This engine excels in deep file analysis, enabling quick detection and characterization of advanced cyber threats. By conceptualizing code, GLIMPS's technology can identify all forms of malware, providing a comprehensive and scientifically validated approach to cybersecurity. This platform processes over one million files daily and serves more than a hundred customers, demonstrating its effectiveness and the trust it has garnered within the industry. GLIMPS also emphasizes collaboration within the French ecosystem, aiming to integrate its solutions where beneficial. The company's growth is underscored by its successful fundraising efforts, which include a €6 million round in 2021, and its continuous search for new talent to join its expanding team.
Our guest for the show is Ganesh Pa. Ganeshi is Founder & CEO of Uptycs, He was previously Chief Architect, Carrier Products & Strategy for Akamai Technologies, a leading provider of content delivery network services. Prior to Akamai, Ganesh was Founder & VP Systems Architecture of Verivue. Prior to Verivue, he was Principal Architect for NetDevices
Whitepaper:
https://www.uptycs.com/resources/white-papers/cloud-security-fundamentals
Demo link:
https://www.uptycs.com/request-demo
About Uptycs
Uptycs, the first unified CNAPP and XDR platform, reduces risk by prioritizing your responses to threats, vulnerabilities, misconfigurations, sensitive data exposure, and compliance mandates across clouds, containers, servers, and workspaces—all from a single UI and data model. Only Uptycs gives you the ability to tie together threat activity as it traverses on-prem and cloud boundaries. The result is a cloud security early warning system that identifies and stops threat actors before they can access critical data and services in the cloud. Take control of your security data, get the correlated insights you care about most, faster, and take decisive action.
https://www.linkedin.com/in/ganesh-pai/
Ganesh Pai, Founder and CEO at Uptycs
Ganesh Pai is Founder & CEO of Uptycs. He was previously Chief Architect, Carrier Products & Strategy for Akamai Technologies, a leading provider of content delivery network services. Prior to Akamai, Ganesh was Founder & VP Systems Architecture of Verivue. Prior to Verivue, he was Principal Architect for NetDevices. Prior to NetDevices, Ganesh served as Engineering Manager and Software Architect for Sonus Networks. He is a Boston-based entrepreneur and technologist and has been awarded multiple U.S. patents. Ganesh received a BE degree in electronics and communication engineering from Mangalore University and a MS in computer science from Temple University.
11/24/2023 • 33 minutes, 27 seconds
Season 5 - Kickoff -Cloud-Native Application Protection Platform (CNAPP) - Fernando Montenegro-Fernando
Join us for the kickoff episode of Season 5. This season, we are transitioning to explore the best ways to protect infrastructure as a service (IaaS) environments. We will be focusing on the Cloud-Native Application Protection Platform (CNAPP) and examining how many vendors in the industry address this important domain.
We have our dear friend Fernando Montenegro joining us to kick off the season.
Fernando is a Senior Principal Analyst on Omdia’s cybersecurity research team, based in Toronto, Canada. He focuses on the Infrastructure Security Intelligence Service, which provides vendors, service providers, and enterprise clients with insights and data on network security, content security, and more.
Fernando’s experience in enterprise security environments includes network security, security architecture, cloud security, endpoint security, content security, and antifraud. He has a deep interest in the economic aspects of cybersecurity and is a regular speaker at industry events.
Before joining Omdia in 2021, Fernando was an industry analyst with 451 Research. He previously held a variety of operations, consulting, and sales engineering roles over his 25+ years in cybersecurity, always focusing on enterprise security at organizations including vArmour, RSA, Crossbeam, Hewlett Packard, and Nutec/Terra. Fernando holds a Bachelor of Science in computer science and different industry certifications.
8/22/2023 • 31 minutes, 39 seconds
Mammoth (Browser Security) - Season 4/11 - Episode #48
Our guest for the show is Sandro, Sandro is a cybersecurity veteran with over 20 years of experience architecting network, cloud, CASB, and remote access security. Sandro manages the technical tasks of the Mammoth Cyber Customer Engagement programs. Before Mammoth Cyber, Sandro launched cloud and network security solutions and customer success services at Valtix, Palo Alto Networks, and Fortinet.
Season 4 KickOff episode with Chase
• Season 4 Kickoff ...
White Paper Link:
https://d7qns16l91y68.cloudfront.net/...
Demo:
https://mammothcyber.com/contact
About Sando:
A cybersecurity veteran with over 20 years of experience architecting network, cloud, CASB and remote access security, Sandro manages the technical tasks of the Mammoth Cyber Customer Engagement programs. Before Mammoth Cyber, Sandro launched cloud and network security solutions and customer success services at Valtix, Palo Alto Networks and Fortinet.
About Mammoth:
Mammoth Cyber’s Enterprise Access Browser is a new approach with unsurpassed visibility, context and control to provide secure access to remote users and contractors.
8/1/2023 • 33 minutes, 3 seconds
SURF Security (Browser Security) - Season 04/10 - Episode #47
Our guest for the show is Moty Jacob CEO of Surf, Moty is cyber security expert with more than 20 years of experience as global CISO and cyber security professional, from the military to the enterprise, Moty has led information security for major enterprises, including Telefonica, Dunnhumby (Tesco), Traiana, and CME group.
To promote our work and support the podcast, please review us here https://www.podchaser.com/podcasts/security-architecture-podcast-1313281
Season 4 KickOff episode with Chase:
https://www.youtube.com/watch?v=YWB05cb7XRQ&feature=youtu.be
Season 4 KickOff episode with Chase
https://www.youtube.com/watch?v=YWB05cb7XRQ&feature=youtu.be
Demo:
https://www.surf.security/book-a-demo
Whitepaper:
https://blog.surf.security/solution-brief-zero-trust
About Moty
https://www.linkedin.com/in/motyacov/
A cyber security expert with more than 20 years of experience as global CISO and cyber security professional, from the military to the enterprise, Moty has led information security for major enterprises, including Telefonica, Dunnhumby (Tesco), Traiana, and CME group. He is a founder of the influential group CyberKingdom – a CISO network that includes more than 200 CISOs from a variety of industries across the UK.
About Surf
SURF provides users with freedom of work, letting them interact with applications, data, and each other securely. It addresses the critical business asset neglected by security experts for years: The browser.
The browser is the access frontier for everything: users, data, corporate assets, applications, development activities - and cybercriminals, too.
SURF Security has transformed the browser into your strongest security asset while providing complete end-user privacy – all with full compliance. Through this centralized platform, SURF insists on identity-first access to all SaaS and corporate assets to guarantee a secured and frictionless user experience. SURF enhances security, performance, and productivity for end-users and applications – faster than ever before.
4/1/2023 • 32 minutes, 3 seconds
Lacework CSPM - (Launchpad) #37
Cloud computing has been around for more than a decade, but only in the last eight years has it started to get real momentum while having small and large companies undergoing digital transformation. It's especially accelerated between 2019 and 2021. Also, COVID forced people to work from home and motivated companies to move their computing and services to IaaS providers and rapidly adopt SaaS solutions.
We had the pleasure to have Nicolas St-Pierre with us, he is a Field CTO at Lacework walking us thru their solution.
About Nick
https://www.linkedin.com/in/nickstpierre/
Nicolas is Field CTO at Lacework and is responsible for providing technical leadership in Cloud Security to our customers, partners, and product groups. He has over 20 years of expertise in security products and virtual platform deployments with global Tier-1 Communication Service Providers and large enterprises worldwide in a CTO and Field CTO capacity. Author of multiple patents in the field of Telecommunications, 5G, Digital Advertising, Security, and Analytics, Nicolas continues to provide Cloud Security insights and leadership from the Greater Toronto Area where he resides.
About Lacework: Lacework is a data-driven cloud security company. It’s the only company to deliver end-to-end visibility and automated insight into risk across multi-cloud environments so organizations of all shapes and sizes can innovate with speed and safety. Lacework sees security not as a blocker, but as an enabler for innovation — and automation as the path to transformative business outcomes.
Link to the website
https://www.lacework.com/schedule-demo/
4/5/2022 • 32 minutes, 31 seconds
MoneyBall(AppSec) - Season 03/05 - Episode #33
This Season is dedicated to Application security, our guests for the show are Dino Boukouris and Setu Kulkarni. They are joining us to talk about the Application Security market.
To promote our work and support the podcast, please review us here https://www.podchaser.com/podcasts/security-architecture-podcast-1313281
Season 3 KickOff episode with Tanya Janca
Season 3 kickoff Episode - Application Security - Tanya Janca - YouTube
About Dino:
https://www.linkedin.com/in/konstantinosboukouris/
Dino Boukouris is a Founding & Managing Director at Momentum Cyber, the premier strategic advisor to the Cybersecurity industry. Dino has spent over 16 years in the technology industry with expertise in cybersecurity, finance, strategy, operations, and venture capital & private equity. Dino has been a speaker at Cybersecurity conferences across the country including the RSA Conference, Cybertech Tel Aviv, Structure Security, Global Cyberspace Coop Summit, IoT Security Panel, M&A East, as well as at numerous private events and corporate gatherings. Dino was also professional faculty at the University of California, Berkeley – Haas School of Business, where he taught a top ranked Venture Capital & Private Equity course for the MBA program.
About Setu
https://www.linkedin.com/in/setu-kulkarni-6552251/
Setu is a Corporate Strategy & Product Management executive with feet on the ground experience in NAM, Europe & APAC. Currently, he leads product management at Venafi, the leader in Machine Identity Management.
At the time of this recording, Setu led product strategy at NTT Security. Prior to NTT Security, he established and led the corporate strategy & PM functions during critical growth years at WhiteHat Security, resulting in its acquisition by NTT Security. Earlier in his career, Setu led platform product strategy & management at TIBCO for Operation Intelligence, Cloud, SOA & BPM products.
Setu is a company spokesperson, a speaker at industry & investor events, a podcast host and thought-leader in the Application Security space.
11/11/2021 • 23 minutes, 56 seconds
Snyk(AppSec) - Season 03/03 - Episode #31
This Season is dedicated to Application security, our guest for the show is Gareth Rushgrove from Snyk. He joins us to discuss their SAST and SCA solutions. Gareth is VP of Product at Snyk, He is building interesting tools for people to better secure infrastructure and applications
To promote our work and support the podcast, please review us here https://www.podchaser.com/podcasts/security-architecture-podcast-1313281
Season 3 KickOff episode with Tanya Janca
Season 3 kickoff Episode - Application Security - Tanya Janca - YouTube
Demo/POC: https://snyk.io/what-is-snyk/
Whitepaper: https://go.snyk.io/oreilly-cnas.html
Guest's Bio:
Gareth Rushgrove is VP of Product at Snyk, working remotely from Cambridge, UK, helping to build interesting tools for people to better secure infrastructure and applications. He has previously worked for the UK Government focused on infrastructure, operations and information security, as well as at Puppet and Docker. When not working he can be found curating the Devops Weekly newsletter, hiking or reading a good book.
https://www.linkedin.com/in/garethrushgrove/
Company description:
Snyk is a developer-first platform for securing code, dependencies, containers, and infrastructure as code. Snyk’s developer-first approach enables technology-driven companies to scale security in today’s fast-paced digitally transforming world. Snyk today enables over 2.5 million developers to build securely, with a vision to empower every developer to develop fast and stay secure.
9/2/2021 • 35 minutes, 29 seconds
Appgate- SASE (ZTNA) - Season 2 - #17
Jason Garbis from Appgate joins us to discuss the SASE ZTNA offering. Jason is Senior Vice President of Products for Appgate, responsible for the company's security product strategy and product management.
In Season 2 Kick-off episode we introduced the topic with Dr. Chase Cunningham.
Episode #11
For slides and please refer to our website and watch the video episode
The question we ask the vendors:
What's the name of the offering/product addressing the remote access.
Describe your overall architecture at a high level (ideally with a picture) - POPs, HA, bandwidth requirements or restrictions.
How do you license your product? (seats, devices, concurrent connections, bandwidth).
How do you tie back to the User Identity and MFA?
Describe end user access options, clientless/client (People relying these days on their browser for performing their day to day job activities, what are the options you provide to such users).
What kind of protocols your remote solution supports; VOIP, FileShare, Printing, SSCM, Password changes.
How would your solution work on slow networks or when the user is roaming between networks?
Educate us more about your product’s reporting and alerting options (including UBA).
Whitepaper :
https://d3aafpijpsak2t.cloudfront.net/docs/Whitepapers/WP_Definitive_Guide_SDP_092020.pdf?mtime=20200921102233&focal=none&utm_source=website&utm_campaign=rebranded_website2020
Demo
https://ww3.appgate.com/cp/sdp_test-drive
About Jason
Jason Garbis
Jason Garbis is Senior Vice President of Products for Appgate, responsible for the company's security product strategy and product management, and held a similar leadership role at Cryptzone prior to its acquisition by Appgate/Cyxtera. Garbis is also co-chair of the SDP Zero Trust Working Group at the Cloud Security Alliance, where he helps lead research and publication initiatives.
Garbis has over 30 years of product management, engineering, and consulting experience at security and technology firms, including RSA, where he focused on identity management and governance products. Garbis hold a CISSP certification, has a Bachelor’s degree in Computer Science from Cornell University, a High-Technology MBA from Northeastern University, and is a published author. He is also co-chair of the Boston chapter of the Cloud Security Alliance.
https://www.linkedin.com/in/jasongarbis/
About AppGate:
Appgate is a secure access company that provides cybersecurity solutions for people, devices and systems based on the principles of Zero Trust security. Through a set of differentiated cloud and hybrid security products, Appgate enables enterprises to easily and effectively shield against cyber threats. Appgate serves 3,960 customers across more than 30 countries
12/10/2020 • 36 minutes, 24 seconds
Forcepoint, SASE Outbound inspection and protection #6
This Season is dedicated to SASE Our guest for the show is Jim Fulton, Jim is Forcepoint’s director of Cloud and Edge Protection solutions.We are focusing on a small part of SASE related to user browsing and access resources on the internet.
In Kick off the episode, we introduce the topic with Anton Chuvakin
For slides and please refer to our website and watch the video episode
To promote our work and support the podcast, please review us here https://www.podchaser.com/podcasts/security-architecture-podcast-1313281
You can check the questions we ask our vendors.
About Vendor:
Forcepoint is the global cybersecurity leader for user and data protection. Forcepoint’s behavior-based solutions adapt to risk in real-time and are delivered through a converged security platform that protects network users and cloud access, prevents confidential data from leaving the corporate network, and eliminates breaches caused by insiders. Based in Austin, Texas, Forcepoint creates safe, trusted environments for thousands of enterprise and government customers and their employees in more than 150 countries.
Links to more information about Vendor:
Whitepaper
https://www.forcepoint.com/blog/tags/sase:
POC:
https://www.forcepoint.com/product/dynamic-edge-protection
More about Jim
Forcepoint is the global cybersecurity leader for user and data protection. Forcepoint’s behavior-based solutions adapt to risk in real-time and are delivered through a converged security platform that protects network users and cloud access, prevents confidential data from leaving the corporate network, and eliminates breaches caused by insiders. Based in Austin, Texas, Forcepoint creates safe, trusted environments for thousands of enterprise and government customers and their employees in more than 150 countries.
https://www.linkedin.com/in/fultonjim/
8/13/2020 • 1 hour, 26 minutes, 48 seconds
Checkpoint, SASE Outbound inspection and protection #5
This Season is dedicated to SASE Our guest for the show is Gregory Paper, Greg is a Security Architect and Evangelist with over 13 years at Check Point Software Technologies
We are focusing on a small part of SASE related to user browsing and access resources on the internet. In Kick off the episode, we introduce the topic with Anton Chuvakin
For slides and please refer to our website and watch the video episode
To promote our work and support the podcast, please review us here https://www.podchaser.com/podcasts/security-architecture-podcast-1313281
You can check the questions we ask our vendors.
About Vendor:
Whitepaper:
https://www.checkpoint.com/products/branch-cloud-security/
POC:
https://portal.checkpoint.com/signin
Check Point Software Technologies Ltd. (www.checkpoint.com) is a leading provider of cybersecurity solutions to governments and corporate enterprises globally. Its solutions protect customers from 5th generation cyber-attacks with an industry-leading catch rate of malware, ransomware and other types of attacks. Check Point offers multilevel security architecture, “Infinity” Total Protection with Gen V advanced threat prevention, which defends enterprises’ cloud, network and mobile device held information. Check Point provides the most comprehensive and intuitive, consolidated and effective security solutions in the marketplace. Check Point protects over 100,000 organizations of all sizes
More about Greg
Greg Pepper is a Security Architect and Evangelist with over 13 years at Check Point Software Technologies. Greg has been an IT professional for 20+ years with expertise in Security, Networking & Cloud Computing. Prior to Check Point, Greg has worked at well-known companies like Cisco, Sony Online Entertainment, Price Waterhouse Coopers and Organic.
https://www.linkedin.com/in/gregorypepper/
8/6/2020 • 51 minutes, 52 seconds
Netskope, SASE Outbound inspection and protection #4
This Season is dedicated to SASE Our guest for the show is Bob Gilbert, Bob is a product marketing leader with a proven track record in Silicon Valley
We are focusing on a small part of SASE related to user browsing and access resources on the internet. In Kick off the episode, we introduce the topic with Anton Chuvakin
For slides and please refer to our website and watch the video episode
To promote our work and support the podcast, please review us here https://www.podchaser.com/podcasts/security-architecture-podcast-1313281
You can check the questions we ask our vendors.
About Vendor:
The Netskope security cloud provides unrivaled visibility and real-time data and threat protection when accessing cloud services, websites, and private apps from anywhere, on any device. Netskope understands the cloud and delivers data-centric security from one of the world’s largest and fastest security networks, empowering the largest organizations in the world with the right balance of protection and speed they need to enable business velocity and secure their digital transformation journey. Reimagine your perimeter with Netskope.
Link to demo or trial registration:
https://www.netskope.com/why-netskope
https://resources.netskope.com/product-demos
More about Bob Gilbert:
https://www.linkedin.com/in/bobegilbert/
Bob is a product marketing leader with a proven track record in Silicon Valley. Bob enjoys working in fast-paced start-up environments where and leverages his skills and experience to launch products and showcase innovative technology. He is a prolific speaker, evangelist, motivator, and hands-on product demonstrator. Bob loves to build world-class teams that are wicked smart, work hard, but also know how to have fun on their path towards success.
7/30/2020 • 1 hour, 9 minutes, 43 seconds
Zscaler, SASE Outbound inspection and protection #3
This Season is dedicated to SASE Our guest for the show is Patrick Foxhoven is the CIO and Vice President of Emerging Technologies at Zscaler.
We are focusing on a small part of SASE related to user browsing and access resources on the internet. In Kick off the episode, we introduce the topic with Anton Chuvakin
For slides and please refer to our website and watch the video episode.
To promote our work and support the podcast, please review us here https://www.podchaser.com/podcasts/security-architecture-podcast-1313281
You can check the questions we ask our vendors.
About Zscaler: "Zscaler is a global cloud-based security company that enables organizations to securely transform their networks and applications for a mobile and cloud-first world, and protects against cyberattacks and data loss. Zscaler is a secure access service edge (SASE) service built from the ground up for performance and scalability. Its flagship services, Zscaler Internet Access and Zscaler Private Access, create fast, secure connections between users and applications, regardless of device, location, or network. Zscaler services are 100 percent cloud-delivered and offer the simplicity, enhanced security, and improved user experience that traditional appliances are unable to match.
Links to more information about Zsclaer
Link to demo or trial registration:
www.zscaler.com/products/secure-access-service-edge
More about Patrick:
https://www.linkedin.com/in/pfoxhoven/
Patrick Foxhoven is the CIO and Vice President of Emerging Technologies at Zscaler. He is an experienced and innovative managed security entrepreneur and technologist, having spent 20 years building secure and scalable internet-enabled networks while co-authoring three books on information security and receiving multiple patents. He is currently Chief Information Officer & Vice President of Emerging Technologies at Zscaler
7/23/2020 • 1 hour, 16 minutes, 54 seconds
Welcome To Security Architecture Podcast
Meet Evgeniy and Dmitry the co-host of the Security Architecture Podcast.
Our cybersecurity focused podcast will promote the best architectural practices and gather important information from vendors while translating it into a format that can be easily consumed by the podcast audience. It will answer the main questions about a specific product, it's features and ways to use it in different environments.
Manifesto
Our manifesto based on six basic principles:
Solution providers are allowed to share only publicly available information.
Our experienced co-host team will be preparing the questions while combining your feedback with our domain knowledge.
All the companies will have to address the same questions during the podcast with slight modifications around the same context.
The vendors are allowed to show live how their products answer the questions while keeping the answers around 2 - 3 minutes by screen sharing.
Companies are not allowed to compare their solutions to their competitors in slides or verbally, we as podcast hosts always will stay neutral and not going to favor one vendor over another.
To provide the vendors with equal starting conditions, we will be publishing the podcasts in batches of 5 - 8 vendors at a time.