logo
episode-header-image
Aug 20
36m 23s

SPOTLIGHT: Cyber loyal wingmen – how fro...

MOMENTUM MEDIA
About this episode

An adversary's numerical advantage is something Australia faces across all domains, but the cyber domain is one area where Australia can offset that advantage, building true asymmetric capabilities.

The cyber battlespace has undergone a step change with the arrival of frontier AI models. What took penetration testers two years to accomplish, Tom Scully from Palo Alto Networks completed in three weeks when paired with Claude's Mythos model. That compression has collapsing vulnerability windows and forces a fundamental rethink of how Defence operates its security operations centres.

The asymmetry cuts both ways. Attackers now possess tools that dramatically compress exploitation timelines. But for the first time in cyber space, defenders can achieve parity through agentic AI – autonomous agents embedded in security operations that multiply human operator capacity by orders of magnitude.

Palo Alto's own security operations centre covers 23,000 users across eight data centres and 85,000 customers with just 15 people across two global locations operating 24/7/365. That scale is impossible without AI and machine learning disciplined into an integrated platform. Now, agentic AI adds the next layer: individual security operators deploying multiple AI agents to handle discrete tasks – network analysis, endpoint evaluation, reverse engineering – each agent maintaining human oversight yet operating with delegated authority.

The critical challenge is governance. Only 6 per cent of organisations possess AI governance frameworks. Scully emphasises that the framing is not about free will; it resembles a military command structure. Commanders delegate authority, set rules of engagement, define reporting protocols and remain accountable for outcomes. AI agents operate identically – given clear direction, guardrails and escalation paths.

Australia must urgently establish governance standards aligned to ISO 42001 or NIST frameworks, then enforce those standards through security tooling. Without that foundation, organisations will struggle to defend against attackers armed with frontier AI.

The decisive question is not whether to deploy agentic AI, but whether Defence can implement it faster than adversaries exploit the window before our cyber defences mature.

Enjoy the podcast,
The Defence Connect Spotlight team

Up next
Yesterday
CYBER UNCUT: s your Microsoft 365 tenant really secure? With CoreView's Andrew McAllister
Microsoft 365 is the backbone of many Australian businesses – but are organisations doing enough to secure the platform itself? Tune in to David Hollingworth and CoreView's vice president of APAC sales, Andrew McAllister, as they tackle the risks and what businesses can do to bui ... Show More
24m 12s
Aug 21
Drones over Williamtown, radar exports and Australia's evolving defence partnerships
How can Australia strengthen the protection of critical defence infrastructure while navigating the modern drone-heavy environment? In this episode of the Defence Connect Podcast, Stephen Kuper and Robert Dougherty unpack a series of developments across Australia's defence and na ... Show More
17m 3s
Aug 18
SPOTLIGHT: Building Australia's missing middle – how DIDS reshapes defence industry economics
Australia's 2026 Defence Industry Development Strategy (DIDS) signals a significant shift in how Defence acquires capability, moving beyond traditional procurement models towards earlier collaboration with industry and a greater focus on innovation, software and continuous capabi ... Show More
37m 13s
Recommended Episodes
Mar 2022
Why lawyers need to heed PM's warning regarding Russian cyber-attack reprisals
<p style="font-weight: 400;">In this episode of The Lawyers Weekly Show, CyberSecurity Connect director Phil Tarrant and MAJGEN (Ret'd) Marcus Thompson, former head of the Department of Defence<strong>'</strong>s Information Warfare Division, discuss Russia's history of cyber war ... Show More
41m 22s
Aug 2022
Placing Cyber Diplomacy at the Top of the Agenda
In this episode, co-hosts Jim Lewis and Chris Painter talk with William Middleton, Cyber Director of the United Kingdom’s Foreign, Commonwealth and Development Office. They discuss the direction of UK cyber policy, international cooperation, next steps in the United Nations, and ... Show More
47m 48s
Nov 2022
Assessing Australia's long-range strike capabilities
<p>In this special episode, the editors of Defence Connect and Australian Aviation, Liam Garman and Adam Thorn, talk through the biggest industry topics.<br /> <br /> First up, they discuss the need for long-range strike capability, with tensions in the region rising and Australi ... Show More
26m 59s
Aug 2024
How to Make Cyber Policy a Headline in Brussels
In this episode hosts Jim Lewis and Chris Painter talk to Estonia's former ambassador at large for cyber diplomacy Heli Tirmaa-Klaar. They discuss the IT coalition’s work on the ‘future of warfare’ in Ukraine, NATO and EU collaboration, and the state of the UN’s work on cyber. 
41m 57s
Mar 2023
The big Latitude problem
<p>The Mortgage Business Uncut podcast is your weekly analysis of the biggest themes shaping the Australian mortgage market.</p> <p><span style="font-weight: 400;">Join Alex Whitlock and Annie Kane as they discuss Latitude Financial's major cyber incident impacting millions of Au ... Show More
23m 17s