AppSec, Shopify-Style; State of Mobile Security; the News - Andrew Dunbar, Kern Smith - ESW #470

AppSec, Shopify-Style; State of Mobile Security; the News - Andrew Dunbar, Kern Smith - ESW #470

Author: Security Weekly Productions August 3, 2026 Duration: 1:37:00

Interview with Andrew Dunbar, CISO at Shopify

After 13 years at Shopify, Andrew has some valuable insights to share on application security. In this episode, we discuss how AI has changed application security processes where bug bounty now fits in a post-Mythos, post-AI harness world.

Andrew's Resources:

Interview with Kern Smith

Kern Smith, VP of Global Solutions at Zimperium, joins us to talk about the state of mobile security. This was a great conversation, talking about the history of mobile devices in the enterprise and how challenging securing mobile apps is in the age of vibe-coding.

Segment Resources

Enterprise Security News

Finally, in the enterprise security news,

  1. Pre-black hat funding goes nuts
  2. we have 4 new cybersecurity unicorns!
  3. Cyera acquires Oasis for one BILLION dollars
  4. Lots of new product announcements with hacker summer camp next week
  5. Hugging Face got hacked by a competitor's agent and are cool with it?
  6. Finding out that wiping a burner phone is illegal the week before DEF CON is not ideal
  7. Are open, local models the future of AI?
  8. AI isn't coming for your job
  9. lots of vendor reports
  10. bad cybersecurity takes are apparently mainstream memes now???

All that and more, on this episode of Enterprise Security Weekly.

Show Notes: https://securityweekly.com/esw-470


Hosted by Adrian Sanabria, Enterprise Security Weekly (Video) is a deep dive into the complex world of protecting large organizations. This isn't just a headline recap; it's a practical, analyst-level discussion for security professionals who need to understand the "why" behind the news. Each episode from Security Weekly Productions brings together a seasoned panel including co-hosts like Katie Teitler-Santullo, Ayman Elsawah, Jason Wood, Jackie McGuire, and Sean Metcalf to dissect emerging threats, architectural shifts, and the tools that promise to help. You'll hear candid evaluations as they put security vendors and their claims under the microscope, separating hype from genuine utility. The conversation revolves around actionable intelligence and strategic trends that empower defenders to build more resilient environments. Tuning into this podcast provides a consistent, informed perspective that cuts through the noise of the daily alert cycle, offering clarity and context that's often hard to find. It’s a video format that adds a layer of connection and detail to these technical discussions, making complex topics more accessible. If your work involves making critical decisions about enterprise security posture, this series serves as a vital resource for staying informed and ahead of the curve.
Author: Language: English Episodes: 50

Enterprise Security Weekly (Video)
Podcast Episodes
Why are cybersecurity predictions so bad? - ESW #440 [not-audio_url] [/not-audio_url]

Duration: 1:29:41
For our first episode of the new year, we thought it would be appropriate to dig into some cybersecurity predictions. First, we cover the very nature of predictions and why they're often so bad. To understand this, we ge…