Skip to main content
John Kindervag

John Kindervag

Search complete. 12 mentions across 7 episodes found for "John Kindervag".

Oct 8, 2026

Raghu NandakumaraHOST
0:22
AI is giving attackers new ways to move faster, but the question for defenders is a familiar one: if someone gets in, how far can they go? To help me tackle that, I'm especially thrilled to be joined by three amazing guests.
Raghu NandakumaraHOST
0:37
John Kindervag, the creator of Zero Trust and chief evangelist at Illumio; Rich Mogull, chief analyst at the Cloud Security Alliance, whose work spans cloud and AI security; and Don Yeske, who brings years of federal cybersecurity leadership to his work, helping agencies protect sensitive data.
Raghu NandakumaraHOST
0:58
John, Rich, and Don, welcome to the show.
John KindervagGUEST
1:01
Thanks, man.
Raghu NandakumaraHOST
2:50
[laughs]
Don YeskeGUEST
2:51
I, I was, I was just grateful for having been asked, frankly.
Don YeskeGUEST
2:54
I have a little bit of imposter syndrome going on here, uh, sitting next to John Kindervag on a, on a podcast.
Don YeskeGUEST
3:01
Being asked to write a chapter for a book, that kind of blew my mind actually initially.
Ken Spencer-BrownHOST
3:19
The document does say its measures could one day be written into law.
Ken Spencer-BrownHOST
3:24
Coming up after the break, our correspondent Fung-Tee Nguyen sits down with John Kindervag for this month's book club discussion featuring Think Like an Attacker by Dr.
Ken Spencer-BrownHOST
3:33
Chase Cunningham.
speaker_2ADVERTISER
3:37
Zero Trust has become a mandate.
speaker_2ADVERTISER
3:43
That's why the Cloud Security Alliance created the industry's first vendor-neutral Zero Trust certification.
speaker_2ADVERTISER
3:49
It's designed to help security leaders, architects, and practitioners build real, practical expertise, from core principles to implementation.
speaker_2ADVERTISER
3:58
all grounded in guidance from CISA, NIST, and Xero Trust Creator, John Kindervag.
speaker_2ADVERTISER
4:03
Whether you're shaping strategy or deploying controls, you'll gain the knowledge and credibility to do it right.
Dave BittnerHOST
2:12
An alleged Iranian hacker is extradited to the U.S., and law enforcement takes down KillSec.
Dave BittnerHOST
2:18
Our guests are John Kindervag and Dr.
Dave BittnerHOST
2:20
Chase Cunningham discussing their new book, Cyber Resilience at Machine Speed.
Dave BittnerHOST
2:26
And Clippy's back, and this time he wants your wallet.

8 MINS LATER

Dave BittnerHOST
10:59
Separately, US authorities indicted Dutch national Faouud El Sabrizi, also known as Arch Duke, on hacking and extortion charges tied to KillSec.
Dave BittnerHOST
11:10
He was arrested by British police on September thirtieth.
Dave BittnerHOST
11:13
[upbeat music] Coming up after the break, my conversation with John Kindervag and Dr.
Dave BittnerHOST
11:26
Chase Cunningham.
speaker_0HOST
6:18
Which brings us, finally, to a voice of hard-won perspective on all of this.
speaker_0HOST
6:23
John Kindervag, the creator of the Zero Trust Security Framework fifteen years ago, says his approach is not only still relevant against AI-powered attacks, it is more important now than ever.
speaker_0HOST
6:36
Zero Trust is built on a simple principle: trust nothing automatically, verify everything continuously, and limit what any user or system can access at any given moment.
speaker_0HOST
6:50
Kindervag argues that most organizations claiming to have adopted Zero Trust never actually implemented it correctly, mistaking a product purchase for a strategy.
speaker_0HOST
6:13
Which brings us, finally, to a voice of hard-won perspective on all of this.
speaker_0HOST
6:19
John Kindervag, the creator of the Zero Trust Security Framework 15 years ago, says his approach is not only still relevant against AI-powered attacks, it is more important now than ever.
speaker_0HOST
6:31
zero trust is built on a simple principle trust nothing automatically verify everything continuously and limit what any user or system can access at any given moment kindervag argues that most organizations claiming to have adopted zero trust never actually implemented it correctly mistaking a product purchase for a strategy His message is not glamorous, but it is grounding.
speaker_0HOST
6:57
The fundamentals work, provided you actually do them thoroughly and keep updating them as the threat evolves.
Gregory RasnerHOST
23:09
Um, and, and so y-y-yeah, I think we're just both trying to highlight this point that it is an issue that is...
Gregory RasnerHOST
23:16
Uh, uh, I see a lot of posts on LinkedIn, a lot of folks like my-- in, in this space like Jerry Chapman and John Kindervag, and all those folks have talked about this from the zero trust space because, um, the privileged access management i-in, in the AI space is just not, it's, it doesn't exist at the level that we should, we should have it.
Gregory RasnerHOST
23:31
So, uh-
Girish RedekarGUEST
23:32
Yeah.
Bob BlakleyGUEST
15:32
I think that's a, a good model.
Bob BlakleyGUEST
15:34
John Kindervag was right.
Bob BlakleyGUEST
15:36
Uh, but, [clears throat] uh, not every attack can be defeated using an identity-based defense.
Bob BlakleyGUEST
15:46
And if you look, for example, at some of the recent incidents where companies have, for example, had production databases, uh, deleted by a malfunctioning AI agent, uh, those really illustrate the problem.

We value your privacy

We use cookies to understand how you use our platform and to improve your experience. Click “Accept All” to consent, or “Decline non-essential” to opt out of non-essential cookies. Read our Privacy Policy.