logo
episode-header-image
Sep 13
59m 42s

The Godfather of Zero Trust - A Discussi...

Jim Love
About this episode

Inside Zero Trust: John Kindervag and the Evolution of Cybersecurity

In this episode of Cybersecurity Today: Weekend Edition, host Jim Love speaks with John Kindervag, the pioneer behind the Zero Trust model of cybersecurity. With over 25 years of industry experience, John delves into how the concept originated from his early work with firewalls, advocating for a system where no packet is trusted by default. He discusses the fundamental principles of Zero Trust, including defining protect surfaces, mapping transaction flows, and implementing microsegmentation. The conversation also touches on overcoming cultural and organizational challenges in cybersecurity, the inadequacies of traditional risk models, and adapting Zero Trust methodologies in the evolving landscape, including AI. Through thoughtful discourse and practical insights, John underscores the importance of strategic and tactical implementations in building resilient and secure systems.

00:00 Introduction to Cybersecurity Today
00:25 Meet John Kindervag: The Godfather of Zero Trust
01:50 The Birth of Zero Trust
04:08 Challenges and Evolution of Zero Trust
06:03 From Forrester to Practical Implementations
11:40 The Concept of Protect Surfaces
17:30 Risk vs. Danger in Cybersecurity
30:54 Farmers and Technology
31:48 The Importance of IT in Business
32:26 Introduction to Zero Trust
32:41 Five Steps to Zero Trust
33:14 Mapping Transaction Flows
34:25 Custom Architecture for Zero Trust
34:55 Defining Policies with the Kipling Method
36:04 Monitoring and Maintaining Zero Trust
36:28 The Concept of Anti-Fragile Systems
38:47 Challenges and Success Stories in Zero Trust
42:02 Microsegmentation and Protect Surfaces
45:39 AI and Zero Trust
49:22 Advice for Implementing Zero Trust
50:37 Military Insights and Decision Making
57:19 The Future of Zero Trust
59:07 Conclusion and Final Thoughts

Up next
Today
Checkout.com Takes a Bold Stance, SolarWinds Case Dismissed, and FCC Reverses Mandate
<p>In this episode, host David Shipley discusses some of the most pressing issues in cybersecurity today. Checkout.com refuses to pay a ransom to cyber extortion group Shiny Hunters and instead donates to cybersecurity research. The U.S. SEC ends its long-standing case against So ... Show More
15m 53s
Nov 22
Understanding Cybersecurity Threats: Insights from Intelligence Experts
<p>In this episode of Cybersecurity Today, host Jim Love welcomes retired intelligence officer Neil Bisson and regular guest David Shipley for an in-depth discussion on current cybersecurity threats facing both Canada and the US. They explore the roles of major state actors like ... Show More
47m 7s
Nov 21
Major CloudFlare Outages, Black Friday Phishing Surge, AI Privacy Breach at Ontario Hospital, and Salesforce Data Theft Investigation
<p>In this episode of Cybersecurity Today, host Jim Love discusses several major cybersecurity events. CloudFlare faced significant outages affecting major platforms like Amazon and YouTube, along with continued issues for Microsoft 365 users. NordVPN warned of a surge in fake sh ... Show More
12m 28s
Recommended Episodes
Jun 2023
2406: Zscaler - Harnessing Zero Trust Architecture for Resilience & Performance
Today, Nathan Howe, the VP of Emerging Technology and 5G at Zscaler, makes a return appearance to delve into the increasingly relevant topic of Zero Trust architecture. In an era marked by hybrid workforces, global economic instability, and evolving cybersecurity threats, Nathan ... Show More
34m 25s
Jul 2024
2975: AI in Cybersecurity: Balancing Innovation and Risk
Are you prepared for the ever-evolving cybersecurity threats that challenge today's businesses? In this episode of Tech Talks Daily, we sit down with Dave Merkel, CEO of Expel, to delve into the dynamic world of cybersecurity. With threats becoming more sophisticated and frequent ... Show More
24m 29s
Oct 8
LIVE from RareEvo: TradFi vs DeFi Stablecoins (Lessons from Hacks, Policy, and Global Adoption)
Gerrit, developer relations at Curve Finance, discusses the unique risks and rewards associated with DeFi stablecoins, and how increased regulatory clarity has fueled the rise of TradFi stablecoins. He also spotlights the crucial role of platforms like Curve in providing essentia ... Show More
19m 14s
Dec 2024
Behind the Scenes with Palo Alto Networks CIO and CISO Securing Business Success with Frictionless Cybersecurity
In this episode of Threat Vector, David Moulton speaks with Meerah Rajavel, CIO of Palo Alto Networks, and Niall Browne, CISO of the organization, about the importance of aligning IT strategy with cybersecurity.  Meerah and Niall discuss how frictionless security, AI integration ... Show More
39m 17s
Oct 2024
Security Posture
In the latest episode of Life of a CISO, Dr. Eric Cole emphasizes the importance of continually evolving cybersecurity practices and re-examining fundamental principles. Unlike static industries like accounting or legal, cybersecurity is in constant flux, requiring companies to s ... Show More
30m 11s
Aug 7
#463: Andrew Cheung, CEO of 01 Quantum Inc, on Building a Quantum-Safe Cryptocurrency and Quantum’s Threat to Crypto
<p>Andrew Cheung boasts over 25 years of invaluable experience as a Chief Executive Officer and Chief Technology Officer of 01 Quantum Inc. Throughout his illustrious career, he has consistently spearheaded cutting-edge innovations, and driven product development, resulting in a ... Show More
34m 35s
Oct 2023
Zero trust with zero problems
<p>Alex and cofounder/CTO Paul Querna started <a href="https://www.conductorone.com/" target="_blank">ConductorOne</a> because they saw that traditional identity governance (IGA) and privileged access management (PAM) needed to be rethought for cloud-forward companies.</p><p>Befo ... Show More
24m 2s
Oct 2024
Balancing Security with Usability in Cybersecurity
In this episode of Threat Vector, host David Moulton talks with guest speaker Brian Wrozek, Forrester Principal Analyst in Security & Risk, about the complexities of aligning security strategies across global teams. Brian draws on his extensive experience in cybersecurity, operat ... Show More
41m 41s
Aug 22
AI and Accelerationism with Marc Andreessen
<p>Marc Andreessen, cofounder Andreessen Horowitz, joins the Hermitix podcast for a conversation on AI, accelerationism, energy, and the future.</p><p>From the thermodynamic roots of effective accelerationism (E/acc) to the cultural cycles of optimism and fear around new technolo ... Show More
1h 9m
Sep 2
163: Ola
<p>In 2019, Ola Bini, a Swedish programmer and privacy advocate, was arrested in Ecuador for being a Russian hacker.</p><p>Find Ola on X: <a href="https://x.com/olabini"><strong>https://x.com/olabini</strong></a>. Or visit his website <a href="https://olabini.se/blog/"><strong>ht ... Show More
1h 22m