Secured with Dr. KJ

Kenneth Johnson

Welcome to Secured with Dr. KJ—the podcast that explores the evolving world of cybersecurity, the technologies driving it, and the companies shaping our digital future. Hosted by Dr. Kenneth Johnson, cybersecurity leader and strategist, this podcast simplifies complex security topics into actionable insights. In today’s digital world, cybersecurity is a business imperative. Each episode dives into cloud security, Zero Trust, identity management, AI-driven security, and more. We’ll assess how industry leaders, including Microsoft, are tackling security challenges—and where there’s room for improvement. Featuring expert insights from security professionals, industry leaders, and technologists, Secured with Dr. KJ delivers real-world strategies to protect businesses and individuals. Join the conversation! Subscribe today to explore what it takes to stay secure in a rapidly changing digital world—securing tomorrow, one episode at a time.

  1. Risk before Technology

    Episode 1

    Risk before Technology

    Secured with Dr. KJ — Season 4, Episode 1 Risk Before Technology with Nett Lynch Episode Summary Season 4 premiere, Dr. KJ sits down with Nett Lynch, CISO at Kraft Kennedy and Emperor of Legion, to explore what it truly means to get left of boom in cybersecurity. Nett shares how she helps organizations move beyond checkbox compliance by leading with risk instead of fear, uncertainty, and doubt. Drawing on 28 years of IT experience and nearly two decades in the managed service provider space, she breaks down why SMART goals should drive every security roadmap, how AI-powered threats are reshaping the attack landscape, and what it takes to earn executive trust through listening and long-term partnership. What You Will Learn Why compliance is not the same as security and how the treasure and crown jewels analogy helps executives understand where their real risk lives. How AI-powered threats have shifted from technical sophistication to credibility and speed, and why passwordless authentication should be at the top of every organization's priority list. The importance of including the CFO in tabletop exercises and how to build security roadmaps that align to three- and five-year business goals. Top 3 Takeaways Lead with risk, not fear, uncertainty, and doubt. Clients who feel scared into a decision walk away uncomfortable and are less eager to have the next conversation. Framing security as a business enabler through SMART goals creates lasting partnerships.Identity is now the primary attack surface. Threat actors are using AI to conduct faster reconnaissance and build attacks that are indistinguishable from real business activity. Passwordless authentication and strong multifactor are no longer optional.Trust is built through listening, not credentials. Asking open-ended questions, understanding the politics and growth plans of a business, and meeting clients where they are will always outperform a list of certifications. Memorable Quotes "Compliance is not security. They are not the same thing. It is kind of like a Venn diagram. There is a little bit of overlap, but there is stuff on either side that one does not equal the other." "All of their data is treasure. It is all valuable, but not all treasure are the crown jewels." "It is not your credentials. It is not your experience. It is how much you care." "You have one mouth and two ears. You should listen more than you speak." Connect with the Guest Nett Lynch on LinkedIn: https://www.linkedin.com/in/nett-s-lynch-mba Listen and Subscribe Like, follow, and subscribe to Secured with Dr. KJ: https://swdrkj.riverside.com Apple Podcasts: https://podcasts.apple.com/us/podcast/secured-with-dr-kj/id1805058517 Spotify YouTube Support the Show If this episode brought you value, share it with a colleague, leave a review, and help us grow the community. Securing tomorrow, one episode at a time.

    23 min
  2. Design as Defense

    Episode 2

    Design as Defense

    SHOW NOTES Episode Summary In this episode, Dr. KJ sits down with Nick Cawthon, founder of Gauge and a leading voice in human-centered design, to explore a dimension of cybersecurity that is too often overlooked: the human one. Nick breaks down how experience design is not just a product concern but a frontline defense. From analyst fatigue to AI-accelerated social engineering to the politics of getting a seat at the security table, Nick brings a practitioner's lens to the question of how we build systems that actually work for the people using them. What You Will Learn How human-centered design reduces the conditions that lead to security failures, why the analyst experience inside security operations centers has been shaped by consumer UX patterns that were never meant for high-stakes environments, how AI is accelerating the social engineering threat and what design can do about it, what forward-deployed experience design looks like in practice, and why design teams must be present from the start of any security product conversation rather than brought in at the end. Top 3 Takeaways Fatigue is a vulnerability. Repetitive, poorly designed workflows lead to analyst burnout and missed signals. The MOOSEC framework — Methods for Understanding Security Experiences — offers a structured way to identify where human strain is creating exploitable gaps in the defense chain.Speed without strategy is a trap. AI tools have compressed development timelines, but moving faster than ever does not mean building the right thing. The most important question any security team can ask is not what can we design, but what should we design.Design earns its seat by showing up early. UX professionals who enter security conversations late are fighting for relevance. Those who are present at the start, helping teams map personas, workflows, and user needs before a single line of code is written, become indispensable strategic partners. Memorable Quotes "The sense of speed can sometimes be a fallacy if we don't stop and slow down and take the time and the strategy approach to make sure that we're designing the right thing." — Nick Cawthon "Let's make sure that we can go in with enough candor and confidence that when we do design this, we're meeting the needs of the people we intend." — Nick Cawthon "It takes a human being to recognize those kinds of hurdles." — Nick Cawthon Connect with the Guest Nick Cawthon, Founder of Gauge and Professor of Data Literacy and Visualization at California College of the Arts: https://www.linkedin.com/in/nickcawthon Listen and Subscribe Like, follow, and subscribe to Secured with Dr. KJ: https://swdrkj.riverside.com 🎙 Apple Podcasts: https://podcasts.apple.com/us/podcast/secured-with-dr-kj/id1805058517🎵 Spotify📺 YouTube Support the Show If this episode brought value, share it with a peer in your network. Every share helps grow a community built on substance over sales — real practitioners, real insights, no pitches. Securing tomorrow, one episode at a time.

    21 min
  3. Leading at the Speed of AI

    Episode 3

    Leading at the Speed of AI

    Episode Summary In this episode of Secured with Dr. KJ, M.K. Palmore, Board Director and Managing Partner at Apogee Global RMS, joins the conversation to explore the evolving threat landscape shaped by artificial intelligence, the strategic gaps organizations face in cybersecurity planning, and what it truly means to lead in an era of machine-speed risk. Drawing on his experience across the Marine Corps, FBI, and the private sector, M.K. delivers a candid, practitioner-driven perspective on where organizations are falling short and what it will take to close the gap. What You Will Learn Why AI has created a genuine parity between adversaries and defenders, and what that means for how organizations must respondThe difference between tactical tool adoption and strategic security planning, and why CISOs need both running simultaneouslyHow to evaluate AI-powered security vendors beyond the marketing label and ask the questions that surface real capabilityWhy Zero Trust remains unfinished business for most organizations even as the industry pivots to AIWhat it means to make yourself indispensable as a mid-career cybersecurity professional Top 3 Takeaways AI has leveled the playing field between attackers and defenders. The winner will not be determined by who has the most tools, but by who executes the fundamentals with the most discipline.CISOs must separate strategic planning from day-to-day tactical operations. Without a dedicated forward-looking function, organizations will always be building for yesterday's threat.Mid-career professionals who make themselves indispensable through continuous learning, visible impact, and substantiated thought leadership will be the ones retained and relied upon when organizations face pressure to cut. Memorable Quotes I do believe that in this world of AI, there is finally a parity between the adversary and the defender. The winner is left to the individual exercising the best practices, frameworks, and analysis. If the boss cannot identify something impactful that you have done in the past 12 months, you are in danger. Before we even get done being excellent at one thing, innovation moves so fast that we are already onto the next major pivot. Zero Trust is a great example. Most organizations still have not gotten that right. Connect with the Guest Connect with M.K. Palmore on LinkedIn: https://www.linkedin.com/in/mkpalmore/ Listen and Subscribe Like, follow, and subscribe to Secured with Dr. KJ: https://swdrkj.riverside.com Apple Podcasts: https://podcasts.apple.com/us/podcast/secured-with-dr-kj/id1805058517 Spotify: Search Secured with Dr. KJ YouTube: Search Secured with Dr. KJ Support the Show If this episode brought value to you, share it with a colleague, leave a review, and help us grow the community of security practitioners committed to protecting tomorrow. Securing tomorrow, one episode at a time.

    21 min

Ratings & Reviews

5
out of 5
9 Ratings

About

Welcome to Secured with Dr. KJ—the podcast that explores the evolving world of cybersecurity, the technologies driving it, and the companies shaping our digital future. Hosted by Dr. Kenneth Johnson, cybersecurity leader and strategist, this podcast simplifies complex security topics into actionable insights. In today’s digital world, cybersecurity is a business imperative. Each episode dives into cloud security, Zero Trust, identity management, AI-driven security, and more. We’ll assess how industry leaders, including Microsoft, are tackling security challenges—and where there’s room for improvement. Featuring expert insights from security professionals, industry leaders, and technologists, Secured with Dr. KJ delivers real-world strategies to protect businesses and individuals. Join the conversation! Subscribe today to explore what it takes to stay secure in a rapidly changing digital world—securing tomorrow, one episode at a time.