Andrew Rose (UK)

speaker
140 appearances 3 recordings 1 series first heard Jun 2024 last heard Mar 2025

Andrew Rose (UK)’s voice in public audio — every appearance, attributed to the second.

Trend

recordings per month · last 12 months
No recordings in the last 12 months.Older appearances are listed below; set an alert to hear about the next one.

Appearances

newest first · ▶ plays the moment
and and then started to wrap controls around all of those those pieces uh to make sure that we could be safe but it's it's interesting andrew talked about sort of anarchy and how long it takes with air traffic control we didn't worry about that too much but certainly when i was at mastercard um you know we were doing all these interbank transfers and we knew that it wouldn't be long if that's those systems failed you know if you couldn't go and buy you know food for your children how long would it be before you were smashing down the windows and just taking the food 48 hours something like that and so we knew that we were running systems which were critical
and had a really short time base before we created anarchy on the streets of our society. So it is something that people can build up a knowledge of, certainly, but it's not a natural thing. This OT security piece is still pretty rare. We talked about it at RSA, and there's not that many people around with this disability or this way to think through these situations from that angle.
what they do and they're really good at it they have a long memory and they have a long reach to do so so don't be afraid to report if something happens so in terms of future threats from my perspective i think there's there's a couple and we've touched on some already actually i think the global threats the the nation-state threats against uh critical infrastructure are escalating um we're seeing you know nation states looking to impact the economies of the competitors and the the enemies as it were
And this is being done in a multifaceted way, whether it's political intervention using disinformation, whether it's attacks on systems and capabilities just to undermine the trust in that society and create division. But I think, as Andrew mentioned, the food, agriculture environment is vulnerable to this and could be such a force multiplier.
So we can expect really competent cyber attackers to start looking at this space. And that worries me because obviously the new technologies are coming out right now. And we've all talked about AI and all those sort of things in every other conversation we ever have. But those things are going to enable the attackers to amplify their capabilities.
And we'll start to see hyper-personalized attacks coming in. So today that's always been talked about spear phishing. figures out that Kirsten likes skiing. And so we're going to invite her to the local skiing club or whatever it is. But that takes time for an attacker to do. So it's relatively rare.
But actually with AI, hyper-personalization delivered in grammatical perfection with a really compelling lure and a compelling push linking back to news stories that you're interested in because they know what news stories you follow. That's Now that's on the verge of coming out.
And then that could be supported by a deep fake video, which is your partner or your boss or someone like saying, you must do this. You must click on this link. So we're going to see all those new technologies being utilized in the next wave or two of cyber attacks being utilized by these very competent nation states to disrupt our societies. And again, agriculture is right in the middle of this.
So I'm worried about where that goes. And I think the thing we need to do is we need to start raising awareness of the capabilities first. Because if people understand what a deep fake is, they understand what AI can do, then they're much better protected about it. They're more inoculated to the possibility because they go, oh, I've heard about it. This could be really weird, couldn't it?
It doesn't look quite right. So we need to educate, definitely. But we also need to start building those controls in. Because Andrew and I have done a podcast together before, or a webinar, I think it was. And there was lots of discussion about all of the innovation that's going on in the agri-food environment. All of these startups come here with brilliant ideas for improving our capabilities.
And that's awesome. Love it. But I'm really concerned that those guys are doing this with not enough of a focus on cybersecurity. Very early on in sort of the physical security phase, when suddenly everyone realized that you could actually connect your iPhone to your front door and you could actually open your front door with an iPhone and you could sort of have a doorbell.
pushes that all those products, the first wave of those products came out, no security embedded because it just wasn't seen. They just wanted to create functionality. That was key. First to market with functionality, all they wanted. And I'm concerned that perhaps that happens again in this industry. And that would be a devastating mistake.
Because if those are adopted and put into systems, put into processes where we know critical infrastructure has a problem with legacy tech, you buy it once and you keep it for 20, 30 years and you don't change it. If they're going to embrace these new technologies and put it on their farms, it's going to be there for a while.
And if that's not capable of being secured properly, then we're building huge problems for a long period of time here. So there's a lot here. That's a lot that concerns me, which is why I think it's great that we have this podcast and other conversations to try and raise awareness.
So those startup companies can perhaps think twice when they're creating this great new function and thinking, well, perhaps I should build security and perhaps that will enable us to be better in the future. Absolutely it will.
We absolutely do. And there's one sort of incentive to this because there was a product that was released into aviation and aviation is very picky about products, but this was released into aviation and it was put into pretty much every jet and every airliner. but it wasn't really built with security in mind. And so it can do its little function, its little dumb function, and that's all it does.
The problem is if they built security into that from the off, then that would have had so much more potential for growth. They could have got that little system to grow and do more functions and bring more functionality and more operation capability to the cockpit if only they built security in from day one.
they never did and so now it's hamstrung entirely to only do a dumb job so think if you're a product developer and you're in the space think very much about if i want to create the the length of delivery to create a value chain that can get longer and longer with my product then i need this to be secure it needs to talk in a secure way to authenticate correctly using zero trust principles
It needs to be able to be scalable. All of these other security things need to be built in. And if you do that, then you have a product which you can maintain and build upon for years. And that's where your company will grow.
We have to find the other Andrew Rose. Yes.
Showing 121–140 of 140 · page 7 of 7 ← Previous