Our Theoretical Controls Work Great Against Hypothetical Attacks

Our Theoretical Controls Work Great Against Hypothetical Attacks

Author: David Spark, Mike Johnson, and Andy Ellis April 14, 2026 Duration: 43:12

Our Theoretical Controls Work Great Against Hypothetical Attacks

All links and images can be found on CISO Series

This week's episode is hosted by David Spark, producer of CISO Series and Andy Ellis, principal of Duha. Joining is David Nolan, former CISO, Asurion.

In this episode:

  • Influence, not control
  • The initiative gap
  • Skip the framework, patch the server
  • Confident code with no owner

A huge thanks to our sponsor, ThreatLocker

ThreatLocker makes Zero Trust practical. With Default Deny, Ringfencing, and Elevation Control, CISOs get real control that's easy to manage and built to scale. Stop threats before they execute and reduce operational noise without adding complexity. See how simple prevention can be at ThreatLocker.com/CISO.


Hosted by David Spark, Mike Johnson, and Andy Ellis, the CISO Series Podcast digs into the often complex, sometimes contentious, but always critical relationships that define modern cybersecurity. This isn't a lecture from a lone expert; it's a conversation built on the real-world friction and collaboration between the security teams who implement solutions and the vendors who create them. Each episode moves beyond theory to explore the practical mechanics of how these groups can actually work together more effectively. You'll hear frank debates, tactical advice, and shared stories that reveal what truly improves security posture for organizations of all sizes. The discussions are grounded in the daily challenges and strategic decisions faced by practitioners, offering listeners a unique, dual-perspective on the technology and news shaping the industry. Tune into this podcast for an unvarnished look at the partnerships that build stronger defenses, proving that better security is ultimately a team effort forged through open dialogue and shared goals.
Author: Language: English Episodes: 100

CISO Series Podcast
Podcast Episodes
Take Two-Factor Authentication and Call Me in the Morning [not-audio_url] [/not-audio_url]

Duration: 38:43
All links and images can be found on CISO Series. This week's episode is hosted by David Spark, producer of CISO Series, and Andy Ellis, principal of Duha. Joining them is Janet Heins, CISO, ChenMed. In this episode: Inb…
AI Is Very Efficient at Making Us Forget the Value of Humans [not-audio_url] [/not-audio_url]

Duration: 41:07
All links and images can be found on CISO Series. This week's episode is hosted by David Spark, producer of CISO Series and Andy Ellis, principal of Duha. Joining them is Sara Madden, CISO, Convera. In this episode: Hold…
I'm Worried That We're Not Worried About the Right Worries With AI [not-audio_url] [/not-audio_url]

Duration: 39:56
All links and images can be found on CISO Series. This week's episode is hosted by David Spark, producer of CISO Series and Mike Johnson, CISO, Rivian. Joining them is their sponsored guest, Danny Jenkins, CEO, ThreatLoc…
You Can't Fall Behind in AI if You Never Start [not-audio_url] [/not-audio_url]

Duration: 35:08
All links and images can be found on CISO Series. This week's episode is hosted by me, David Spark, producer of CISO Series, and Mike Johnson, CISO, Rivian. Joining us is John Barrow, CISO, JB Poindexter & Co. In this ep…