Menu
Sign In Search Podcasts Libraries Charts People & Topics Add Podcast API Blog Pricing

Danny Jenkins

πŸ‘€ Speaker
215 total appearances

Appearances Over Time

Podcast Appearances

CISO Series Podcast
There's Nothing an LLM Can Screw Up That the Cloud Didn't Do First

And now, just joining this meeting, just opening the Google Docs beforehand,

CISO Series Podcast
There's Nothing an LLM Can Screw Up That the Cloud Didn't Do First

It was such a pain in the backside to go through the code, the push notification, all of this, my password to get in.

CISO Series Podcast
There's Nothing an LLM Can Screw Up That the Cloud Didn't Do First

And at the end of the day, if I'm a weak user, if I'm a human, I could have given it all away.

CISO Series Podcast
There's Nothing an LLM Can Screw Up That the Cloud Didn't Do First

just as easy as I could have entered it into the computer.

CISO Series Podcast
There's Nothing an LLM Can Screw Up That the Cloud Didn't Do First

So I think Andy's absolutely right.

CISO Series Podcast
There's Nothing an LLM Can Screw Up That the Cloud Didn't Do First

I think the word identity is often referred to as the identity of a person.

CISO Series Podcast
There's Nothing an LLM Can Screw Up That the Cloud Didn't Do First

It should not be the identity of a person.

CISO Series Podcast
There's Nothing an LLM Can Screw Up That the Cloud Didn't Do First

It should be the identity of a person combined with the identity of a device and making sure nobody can access something if it's not from a trusted device.

CISO Series Podcast
There's Nothing an LLM Can Screw Up That the Cloud Didn't Do First

And we had...

CISO Series Podcast
There's Nothing an LLM Can Screw Up That the Cloud Didn't Do First

This is what makes me really, really nervous.

CISO Series Podcast
There's Nothing an LLM Can Screw Up That the Cloud Didn't Do First

We did a pen test a few months ago before Zero Trust World, and we managed to fish, which I thought was five, but it's eight of our engineers to put their Office 365 credentials into a page and accept the dual factor push and put the code in.

CISO Series Podcast
There's Nothing an LLM Can Screw Up That the Cloud Didn't Do First

Ouch.

CISO Series Podcast
There's Nothing an LLM Can Screw Up That the Cloud Didn't Do First

And it's embarrassing to me because I always thought salespeople, they're going to get phished.

CISO Series Podcast
There's Nothing an LLM Can Screw Up That the Cloud Didn't Do First

Finance people, they'll get phished.

CISO Series Podcast
There's Nothing an LLM Can Screw Up That the Cloud Didn't Do First

Engineers don't get phished.

CISO Series Podcast
There's Nothing an LLM Can Screw Up That the Cloud Didn't Do First

And engineers got phished.

CISO Series Podcast
There's Nothing an LLM Can Screw Up That the Cloud Didn't Do First

So I think the most important thing is I've heard too much about human identity and we should be thinking about device identity, something that you cannot give away to a very nice man on the phone or a webpage.

CISO Series Podcast
There's Nothing an LLM Can Screw Up That the Cloud Didn't Do First

I completely agree.

CISO Series Podcast
There's Nothing an LLM Can Screw Up That the Cloud Didn't Do First

And that's exactly what we've been trying to do with Zero Trust Cloud Access and Zero Trust Network Access is, hey, you can get my Office 365 credentials.

CISO Series Podcast
There's Nothing an LLM Can Screw Up That the Cloud Didn't Do First

You can get me to push a dual factor push.