Do You Think These Compliance Boxes Check Themselves? (LIVE in Clearwater, FL)

Do You Think These Compliance Boxes Check Themselves? (LIVE in Clearwater, FL)

Author: David Spark, Mike Johnson, and Andy Ellis March 31, 2026 Duration: 43:30

All links and images can be found on CISO Series.

This week's episode is hosted by David Spark, producer of CISO Series and Pam Lindemoen, CSO, vp of strategy, Retail and Hospitality-ISAC. Joining them is Jason Mayor, deputy CISO, Raymond James Financial.

This episode was recorded in front of a live audience at the National Cybersecurity Alliance's Convene conference in Clearwater, Florida.

In this episode:

  • Coaching security
  • Planned security theater
  • Making "nothing bad happened" a compelling story
  • Getting security teams to think like the business

A huge thanks to our sponsor, Adaptive Security

Sponsored by Adaptive Security – the first security awareness platform built to stop AI-powered social engineering. AI impersonation and deepfakes have made trust the new attack surface. Adaptive runs social-engineering simulations and instantly turns threats, policies, and compliance needs into interactive, multilingual training. Trusted by Fortune 500s. Learn more at adaptivesecurity.com.

A huge thanks to our sponsor, Zepo

Zepo Intelligence transforms employee behavior into measurable security capability. Moving beyond check-box compliance, our human risk management platform uses hyper-personalized simulations to turn your workforce into a proactive defense layer. We don't just improve human behavior; we enable mastery against modern social engineering threats. Learn more at zepo.ai.

A huge thanks to our sponsor, KnowBe4

KnowBe4 empowers workforces to make smarter security decisions every day. Trusted by over 70,000 organizations worldwide, we help strengthen security culture and manage human risk. Our comprehensive AI-driven HRM+ platform includes modules for awareness and compliance training, cloud email security, real-time coaching, crowdsourced anti-phishing, AI Defense Agents, and more. As the only global security platform of its kind, KnowBe4 utilizes personalized and relevant cybersecurity content, tools, and techniques to keep the modern workforce—both humans and AI agents—cybersafe from phishing, vishing, deepfakes, and all forms of social engineering. Learn more at knowbe4.com.


Hosted by David Spark, Mike Johnson, and Andy Ellis, the CISO Series Podcast digs into the often complex, sometimes contentious, but always critical relationships that define modern cybersecurity. This isn't a lecture from a lone expert; it's a conversation built on the real-world friction and collaboration between the security teams who implement solutions and the vendors who create them. Each episode moves beyond theory to explore the practical mechanics of how these groups can actually work together more effectively. You'll hear frank debates, tactical advice, and shared stories that reveal what truly improves security posture for organizations of all sizes. The discussions are grounded in the daily challenges and strategic decisions faced by practitioners, offering listeners a unique, dual-perspective on the technology and news shaping the industry. Tune into this podcast for an unvarnished look at the partnerships that build stronger defenses, proving that better security is ultimately a team effort forged through open dialogue and shared goals.
Author: Language: English Episodes: 100

CISO Series Podcast
Podcast Episodes
Red Flag? My Vendor Just Asked for My Mother's Maiden Name [not-audio_url] [/not-audio_url]

Duration: 37:50
All links and images for this episode can be found on CISO Series. This week's episode is hosted by me, David Spark (@dspark), producer of CISO Series and Andy Ellis (@csoandy), operating partner, YL Ventures. Joining us…
I Said I Was Technically a CISO, Not a Technical CISO [not-audio_url] [/not-audio_url]

Duration: 42:14
All links and images for this episode can be found on CISO Series. This week's episode is hosted by me, David Spark (@dspark), producer of CISO Series and Andy Ellis (@csoandy), operating partner, YL Ventures. Joining us…
Why Are Fortune 500 Companies Swiping Right on 3-Person Startups? [not-audio_url] [/not-audio_url]

Duration: 39:13
All links and images for this episode can be found on CISO Series. This week's episode is hosted by me, David Spark (@dspark), producer of CISO Series and Andy Ellis (@csoandy), operating partner, YL Ventures. Joining us…
We Make Threat Actors Read Our Resiliency Policy Before Attacking Us [not-audio_url] [/not-audio_url]

Duration: 37:39
All links and images for this episode can be found on CISO Series. This week's episode is hosted by me, David Spark (@dspark), producer of CISO Series and Andy Ellis (@csoandy), operating partner, YL Ventures. Joining us…
Incident Response Is So Important We Might Try Getting Good At It [not-audio_url] [/not-audio_url]

Duration: 35:26
All links and images for this episode can be found on CISO Series. This week's episode is hosted by me, David Spark (@dspark), producer of CISO Series and Steve Zalewski. Joining us is our sponsored guest, Amir Khayat, C…
Everyone Has a Zero-Trust Plan Until They Get Punched in the Face [not-audio_url] [/not-audio_url]

Duration: 39:12
All links and images for this episode can be found on CISO Series. This week's episode is hosted by me, David Spark (@dspark), producer of CISO Series and Mike Johnson, CISO, Rivian. Joining us is our sponsored guest, Da…
I Don't Want Insider Risk. You Take It. [not-audio_url] [/not-audio_url]

Duration: 34:15
All links and images for this episode can be found on CISO Series. This week's episode is hosted by me, David Spark (@dspark), producer of CISO Series and Andy Ellis (@csoandy), operating partner, YL Ventures. Joining us…
How to Get the Most for Yourself Through Altruism [not-audio_url] [/not-audio_url]

Duration: 38:45
All links and images for this episode can be found on CISO Series. This week's episode is hosted by David Spark (@dspark), producer of CISO Series and Mike Johnson, CISO, Rivian. Joining us is Jana Moore, CISO, Belron. I…
Who Owns AI Risk? NOT IT! [not-audio_url] [/not-audio_url]

Duration: 38:46
All links and images for this episode can be found on CISO Series. This week's episode is hosted by me, David Spark (@dspark), producer of CISO Series and Mike Johnson, CISO, Rivian. Joining us is our sponsored guest, Ja…