#AuditTuesday GRC Podcast

YouAttest

Every Tuesday we're sharing valuable content for you with the leading authorities in GRC, Compliance and Identity Security. 

  1. Sep 29

    Worried About Rogue AI? Start with Identity Governance - #AuditTuesday w/ Justin Roy and Jeff Kushner

    Worried About Rogue AI? Start with Identity Governance Enterprises are increasingly worried about rogue AI agents operating inside their environments. But one of the biggest risks may not be an unauthorized AI agent breaking in. It may be an authorized AI agent using the legitimate identity and access of an employee who is already inside. AI coding assistants and autonomous agents such as Claude Code and similar tools can operate directly from an employee's workstation. Depending on how they're configured, these agents may be able to interact with files, applications, APIs, databases, cloud resources, and other systems using credentials and permissions already available to that user. And here's the problem: many employees don't know how much access they actually have. An AI agent can rapidly discover what resources are available, what systems it can reach, and what actions its user's identity is permitted to perform. In effect, the agent can perform reconnaissance from inside the enterprise—starting with a legitimate, authenticated identity. If that employee is overprivileged, has accumulated unnecessary access, or hasn't had their permissions reviewed recently, the risk becomes significantly greater. AI doesn't create the entitlement problem. It magnifies it. That's why securing enterprise AI starts with strong Identity Governance. Organizations need to understand what their users can access, whether that access is still appropriate, when it was last reviewed, and which identities represent the greatest risk before AI agents begin operating with those same privileges. Join us for this #AuditTuesday discussion as we explore how organizations can prepare their identity environments for the rapidly growing use of internal AI agents. You'll learn: Understand the risk — How AI agents can inherit and leverage legitimate user identities and entitlements.Understand the impact — Why excessive, stale, and unreviewed access becomes significantly more dangerous when AI can act on a user's behalf.Reduce the risk — How Identity Governance and YouAttest can help organizations identify excessive access, continuously review entitlements, and establish stronger governance before deploying AI agents at scale.Featuring: Jeff Kushner —Compliance Expert/CMO, AllgressJustin Roy — Security Engineer, MicrosoftGarret Grajek — CEO, YouAttest

  2. Aug 4

    The CFO’s Role in Cybersecurity & Compliance, w/ Steve Shaw, Fractional CFO - #AuditTuesday GRC Podcast

    The CFO's Role in Cybersecurity & Compliance  Cybersecurity and compliance are no longer just IT responsibilities—they're business priorities that increasingly land on the CFO's desk. From financial audits and regulatory compliance to cybersecurity investments, board reporting, AI governance, and mergers & acquisitions, today's finance leaders play a critical role in managing organizational risk. Join Steve Shaw, Founder of Shaw Financial Growth and experienced Fractional CFO, together with Garret Grajek, CEO of YouAttest, as they discuss how finance and security leaders can work together to build stronger, more resilient organizations. We'll discuss: Why CFOs are becoming key stakeholders in cybersecurity and complianceHow finance teams evaluate cyber risk, governance, and ROIPreparing for financial, SOX, and cybersecurity auditsBudgeting for security while supporting business growthThe CFO's role in AI governance and regulatory readinessHow identity governance helps reduce risk and improve audit outcomesLessons learned from board reporting, M&A due diligence, and executive leadershipFeaturing Steve Shaw – Founder & Fractional CFO, Shaw Financial GrowthGarret Grajek – CEO, YouAttestBring your questions for a live Q&A as we explore how finance and cybersecurity leaders can better align to reduce risk, strengthen compliance, and enable business growth. #AuditTuesday #CFO #CyberSecurity #Compliance #GRC #SOX #IdentityGovernance #RiskManagement #CorporateGovernance #Finance #YouAttest

  3. Jun 9

    Turning Identity Data Into Cyber Risk Intelligence - RKON + YouAttest, #AuditTuesday

    Identity data is everywhere — but turning it into actionable cyber risk insight? That’s where most organizations struggle. IAMs get deployed, 2FA turned on,  Access reviews get completed.   But the real question remains: 👉 What is your identity risk right now? After a year in the making, RKON has developed the IAM Maturity Intelligence Center — a cyber risk portal designed to transform identity activity into real-time, measurable risk. In this live session, RKON and YouAttest will walk through how organizations can move beyond static governance and into continuous identity risk intelligence. 🔍 What you’ll learn: -  How to turn identity audits into real cyber risk signals -  The KPIs that actually matter (audit coverage, user review cadence, stale access) -  How the IAM Maturity Intelligence Center delivers a single view of identity risk -  How YouAttest integrates to provide continuous identity GRC visibility 👥 Featuring: Duane Clouse – Senior Manager, IAM & Zero Trust, RKON Garret Grajek – CEO, YouAttest Kashif Mehmood – Technical Field Director, YouAttest If you’re still relying on periodic reviews and spreadsheets to understand identity risk, this session will challenge that model — and show what’s next. For more information, reach out to us  @YouAttest , https://youattest.com and info@youattest.com.    RKON can be reached at sales@youattest.com, https://rkon.com.

About

Every Tuesday we're sharing valuable content for you with the leading authorities in GRC, Compliance and Identity Security.