Do Human Work

7AI

Do Human Work is a forward-looking exploration of the future of cybersecurity through the lens of AI with an emphasis on enabling people to do work that’s creative, meaningful, and strategic. Each episode highlights people, their time, and how AI can empower us to focus on what matters most in cybersecurity operations.

  1. 25 ago

    Fifteen Months Away: What Stepping Back Teaches Leaders featuring Matt Sharp

    Matt Sharp walked away from cybersecurity for fifteen months, hiked the Camino, trekked to Everest Base Camp, and came back to an industry that had rewritten itself while he was gone.  Now CISO at Xactly, co-author of The CISO Evolution, and a top 20 finalist for TIME's CISO of the Year, he argues the gap in security leadership was never technical skill. It was the ability to read a financial statement. Recorded on location at Black Hat with Nate Burke and Lior Div, the conversation also turns to China's open-weight model releases: nation-state capability, handed to every ransomware group with a laptop. Impactful Moments 00:00 – Introduction 00:30 – Why Black Hat is the show that matters 01:15 – Taking over the Sphere in Vegas 02:15 – Fifteen months off, and a non-stick pan commercial 04:30 – The echo chamber nobody could actually execute on 06:15 – The empty RSA session that became a book 07:00 – Why books can't keep pace with AI anymore 09:15 – Empathy as an antidote to vendor noise 10:15 – SOC 2 and the collapse of traditional bona fides 12:15 – What changes when you leave the industry 13:45 – China's open-weight models as a weapons transfer 17:15 – PLAID: people-led, AI-driven 19:00 – AI-native versus SaaS, 24 hours versus six months 20:30 – Twenty-five percent of your time back, and the river 24:00 – The AI classifier they built and never shipped Interested in being a guest or want to recommend someone? Reach out to us at DoHumanWork@7ai.com

  2. 30 jul

    Rethinking Cybersecurity's Foundations for the AI Era featuring Jatarra Warren

    Season Two of Do Human Work opens with Jatarra Warren, Senior Director of Information Security at Lovesac, tracing her journey from teaching soldiers how to trust battlefield communication systems in the Army National Guard, straight into cybersecurity leadership.  Ninety days into her new role, she talks candidly about the humility-and-confidence balance required to lead a team you don't yet fully understand, why AI is forcing security teams to finally fix the foundations they've been skipping, and why fighting AI-driven attackers still comes down to the same basic controls that mattered a decade ago.  She's also a certified life coach, and makes the case that coaching, not code, is the skill security leaders need most right now. It's a reminder that in security, the hardest skill to automate is still the ability to lead people through change. Impactful Moments:  00:00 – Introduction 01:25 – Why season two: rethinking cybersecurity from the foundations up 01:55 – Meet Jatarra Warren, Senior Director of Information Security at Lovesac 02:30 – The Foundation segment: Jatarra’s origin story from Army National Guard to cyber 04:00 – What teaching soldiers to trust life-or-death tech taught her about security 07:50 – The hardest jump: military discipline meets corporate culture shock 10:50 – Why AI won't remove the human element from security 12:20 – Fighting fire with fire: using AI to counter AI-powered attackers 17:00 – PLAID (People-Led AI Driven) and leading teams through change with empathy 18:40 – Mythos, vulnerability management, and getting the basics right first 23:00 – 90 days into Jatarra’s job at Lovesac: leading new territory with humility and confidence 30:15 – Life coaching, ministry roots, and leadership as influence 34:00 – Lightning round: best security book everyone should read, best Tampa food, and couch vs. desk Interested in being a guest or want to recommend someone? Reach out to us at DoHumanWork@7ai.com

  3. 29 jun

    The Bet Most Security Teams Are Losing featuring Nicole Beckwith

    Most security teams are still betting that hygiene problems and AI-scale problems live in separate categories. Nicole Beckwith, Senior Director of Security Engineering and Operations at Cribl, has seen exactly how that bet goes wrong from the inside. Nate and Lior caught up with Nicole to talk about why the basics still break organizations faster than any AI threat, what it actually takes to secure AI agents as identities rather than tools, and where defenders are quietly getting ahead of attackers for the first time in years.  Organizations are racing to get ahead of AI-driven threats while the thing that actually takes most of them down is something mundane: a stale account, a siloed team, or a SIEM nobody's feeding properly. AI doesn't replace the need for fundamentals, it raises the stakes of skipping them, and Nicole has the breach story to prove it.  Impactful Moments: 00:00 – Introduction 02:30 – Nicole Beckwith joins Do Human Work 06:30 – Why Mythos is a canary in the coal mine 09:50 – The Register story: a city water utility's ransomware breach 15:00 – Why AI agents need identity security like any employee 17:40 – Shadow AI: the new shadow IT problem 22:05 – The Cribl/7AI feedback loop and building together 27:30 – Where defenders are getting ahead 29:35 – Breaking SOC silos: intelligence, hunting, and response as one cycle 32:00 – The "push-button forensic analyst" problem, and AI's version of it 33:30 – Trust, verify, and interrogate: working with an AI investigator 37:40 – The magic wand question: what Nicole would do with 25% more time 39:20 – Lightning round questions with Nicole Beckwith Interested in being a guest or want to recommend someone? Reach out to us at DoHumanWork@7ai.com

  4. 9 jun

    The Fundamentals Don't Care About Your AI Stack featuring Mark-David McLaughlin

    When Claude Mythos dropped, the question wasn't whether AI could find vulnerabilities, it was whether defenders would move faster than the attackers who were already racing toward the same capability. The gap between those two timelines is shrinking faster than most organizations want to admit, and the teams still betting on the old playbook are about to find out what that costs. Nate and Lior sat down with Mark-David McLaughlin, Head of Security Architecture and Engineering at InterSystems, whose software quietly powers hospitals, health systems, and critical infrastructure worldwide. Mark-David came up through software engineering at Cisco, a decade in PSIRT handling incidents when things went badly wrong, and now leads product security for one of the most sensitive industries on the planet.  His take on what AI actually changes is grounded in 20+ years of hard lessons, and at least one story that will make you rethink how much you trust your SOC. Impactful Moments: 00:00 – Introduction 03:00 – Mark-David’s origin story: high school pranks, real consequences 07:00 – How incident response is changing where AI is being introduced 08:00 – We're losing the architecture review to AI 13:10 – The bad guys will have this new technology in months, act now 17:00 – The SOC model won't carry us to the future 19:50 – Ransomware, nation-states, and kinetic-cyber fusion 25:30 – If anyone goes onto a web interface in 5 years, we’ve done our jobs wrong 31:00 – How AI almost framed an innocent developer 34:30 – How your team will change as a software architecture company with AI  41:30 – Why healthcare is uniquely hard to secure 47:30 – Rapid fire questions with Mark-David Interested in being a guest or want to recommend someone? Reach out to us at DoHumanWork@7ai.com

  5. 20 may

    Not All Agents Are Created Equal featuring Brian Fricke

    Breakout time has collapsed from 285 minutes to 17 seconds. Attackers are running orchestration agents around the clock while defenders are still scheduling a meeting about it.  Brian Fricke, CISO at AutoNation, has done something rare. He's built security programs from the ground up four times across the military, government, and heavily regulated financial institutions. He joins Nate and Lior, live from RSAC, to break down the governance mistake almost every organization is making with AI agents right now, and what a risk-tiered framework actually looks like in practice. Impactful Moments:  00:00 – Introduction 01:00 – Brian's background: four programs built from scratch 05:10 – Why bad guys don't have a human-in-the-loop problem 08:00 – How to structure an information security program: the full framework 11:50 – Not everything needs AI: the case for deterministic automation 15:00 – The four agent types and why risk tiering matters for governance 19:00 – Why vendors should start agents in read-only mode and earn trust 20:50 – People on the loop, not in the loop 30:00 – Attackers are running at machine speed, defenders are running at meeting speed 33:00 – The inflection point: finding attacks no other tool caught 38:40 – Unpopular opinion: CISOs would make the best CIOs 41:00 – What security teams look like in the future: upscaling with the next agents   Interested in being a guest or want to recommend someone? Reach out to us at DoHumanWork@7ai.com

Calificaciones y reseñas

5
de 5
3 calificaciones

Acerca de

Do Human Work is a forward-looking exploration of the future of cybersecurity through the lens of AI with an emphasis on enabling people to do work that’s creative, meaningful, and strategic. Each episode highlights people, their time, and how AI can empower us to focus on what matters most in cybersecurity operations.