And Security For All

And Security For All

di Kim Hakim
Leading Through the Breach: Crisis, Chaos & Critical Decisions
What does it take to make the right decisions when everything around you is moving fast and the pressure is on? On this episode of And Security For All, host Kim Hakim sits down with Sal Lifrieri, Counter Terrorism Expert, President of PCCSecure, and author of Leading Through Chaos, to talk about crisis management, leadership under pressure, and how the way we respond to uncertainty can make all the difference. Drawing from his extensive background with the NYPD, hostage negotiation, intelligence operations, and counterterrorism, Sal shares real-world lessons on staying calm, checking your ego at the door, and making thoughtful decisions when the stakes are high. Sal also breaks down his STOP Technique and why sometimes the best thing a leader can do in a crisis is slow down before reacting. Kim and Sal discuss how threats have evolved since 9/11, the role technology plays in both protecting us and creating new vulnerabilities, preparing for situations that could overwhelm even the best plans, and why situational awareness remains so important. From the boardroom to a real-world security crisis, this conversation is a reminder that strong leadership isn’t about having every answer—it’s about knowing how to think, communicate, and lead when you don’t. Tune in for a fascinating conversation on crisis management, security, preparedness, and what it really means to lead through chaos.
Beyond the Basics: The Security Risks Hiding in Your Everyday Life
How secure are the devices and networks you use every single day? In this episode of And Security For All, host Kim Hakim sits down with Jonathan Kimmitt, Chief Information Security Officer at Alias Cybersecurity, for a practical conversation about the everyday cybersecurity risks that are easy to overlook — and the simple steps that can make a big difference. Fresh off DEF CON, Jonathan shares some of his biggest takeaways from the event before diving into the security risks hiding in our daily routines. From public Wi-Fi and fake networks to mobile devices, outdated software, personal data, and the growing amount of sensitive information stored on our phones, the conversation explores how attackers can take advantage of vulnerabilities we may not even realize are there. Kim and Jonathan also discuss protecting your privacy while traveling, why keeping your phone and applications updated matters, the risks of oversharing personal and family information online, and how compromised devices can potentially become an entry point into much larger organizational systems. The conversation then turns to the human side of cybersecurity, including insider threats, extortion, privileged access, and why organizations must balance trust with verification — even when it comes to longtime employees and leadership. Key topics include: • Public Wi-Fi and fake network risks • Mobile device security and software updates • Protecting personal and business data while traveling • Passwords, MFA, and privileged access • Online privacy and protecting children's information • Social engineering, extortion, and targeted attacks • Insider threats and organizational risk • Why “trust but verify” still matters • Simple cybersecurity habits everyone should be practicing Cybersecurity isn't only about sophisticated attacks or advanced technology. Sometimes the vulnerabilities that create the biggest risks are hiding in the devices, connections, and habits we use every day. Tune in for practical advice that may make you rethink how you use your phone, connect to Wi-Fi, share information, and protect your digital life.
Taking on the Challenge Together: Building a Diverse CyberSecurity Future
In this episode of And Security For All, host Kim Hakim sits down with Dr. Shalini Kesar, Ph.D., Professor and Director of the MS-Cybersecurity and Information Assurance program at Southern Utah University and President & Co-Founder of WiCyS Utah, for a conversation about Taking on the Challenge Together: Building a Diverse CyberSecurity Future. Building a stronger cybersecurity industry isn't just about bringing more people into the field—it's about creating an environment where different perspectives are valued, future leaders are prepared to succeed, and professionals actively support one another. Kim and Dr. Kesar discuss how cybersecurity education is evolving to prepare the next generation for more than just the technical side of the profession. From critical thinking, communication, confidence, and leadership skills to hands-on learning and real-world experience, they explore what tomorrow's cybersecurity professionals need to succeed in an industry that continues to change at an incredible pace. They also dive into what it truly means to be an ally in cybersecurity, why inclusion requires participation from everyone, and how something as simple as reaching out, making an introduction, mentoring someone, or helping a new professional feel welcome can have a lasting impact. Dr. Kesar shares why diversity needs to extend beyond gender to include different perspectives, experiences, backgrounds, and individuals who may not always feel represented in the cybersecurity community. The conversation also explores the changing cybersecurity workforce, career readiness, mentorship, networking, AI in education, and why qualities such as dependability, curiosity, communication, and the ability to think outside the box are becoming increasingly important for emerging cyber professionals. The future of cybersecurity will be shaped by the people entering the industry today—and building a more united, inclusive, and resilient community is a challenge that belongs to all of us.
VAULT: The Canvas Attack Proves Attackers Aren’t Slowing Down in 2026
Join us for a Vault Show from May 14th, 2026! Cyberattacks aren’t slowing down in 2026 — and the recent Canvas attack is proof. On this episode of #AndSecurityForAll, host Kim Hakim sits down with Jonathan Kimmitt, CISO at Alias CyberSecurity and former University of Tulsa CISO, to discuss the recent Canvas breach that impacted thousands of educational institutions and millions of students worldwide. Together, they explore: ▪️ How the attack unfolded ▪️ Why universities are increasingly targeted ▪️ The growing risks surrounding SaaS and third-party vendors ▪️ The rise in healthcare and enterprise breaches ▪️ Business continuity and incident response challenges ▪️ Cybersecurity burnout among practitioners The episode also touches on the Stryker Cyberattack, CareCloud Patient Records Breach, hacktivism, vendor trust, and the evolving tactics threat actors are using to disrupt organizations at scale. If you’re a security leader, IT professional, student, or simply interested in today’s cyber threat landscape, this is an episode you won’t want to miss.
The Cyber Frontline: Fighting Human Trafficking & Violent Extremism
What happens when cybersecurity extends beyond protecting networks—and starts protecting lives? In this episode of #AndSecurityForAll, Kim Hakim sits down with Matt Richardson, Head of Intelligence at the Canadian OSINT Centre, to explore how Open Source Intelligence (OSINT) is being used to combat human trafficking, child exploitation, online grooming, sextortion, and violent extremism in today's increasingly connected world. Drawing from years of experience supporting law enforcement and government agencies, Matt shares powerful real-world stories of investigations that have helped identify victims, disrupt trafficking operations, prevent suicides, and stop predators before they could cause further harm. The conversation also examines how AI, deepfakes, and social media have transformed the tactics used by criminals—and how cybersecurity professionals, parents, educators, and everyday citizens can play a role in protecting vulnerable individuals. Whether you're a cybersecurity professional, parent, educator, or simply someone who wants to better understand today's digital threats, this episode offers practical advice, eye-opening insights, and an important reminder that cybersecurity is ultimately about protecting people. In this episode, you'll learn: How OSINT is helping combat human trafficking and online exploitation Why AI and deepfakes are creating new challenges for investigators How predators and violent extremists exploit social media and gaming platforms The warning signs of online grooming and sextortion every parent should know Practical steps families can take to build safer online habits How collaboration between cybersecurity professionals, nonprofits, and law enforcement is making a real-world impact Inspiring success stories where technology helped save lives and rescue victims If you enjoyed this episode, be sure to follow, rate, and share And Security For All to help us continue bringing important conversations about cybersecurity, technology, and protecting our digital future to a wider audience.
AI Governance: Ensuring Technology Serves People, Not the Other Way Around
In this episode of And Security For All, Kim Hakim sits down with Ron Zochalski, CTO and CISO of Lake County, for a candid conversation about the rapid rise of AI, the governance challenges organizations face, and why human oversight remains critical in an increasingly automated world. Together, they explore: The growing need for AI governance and accountability How AI is changing cybersecurity—for both defenders and attackers Emerging risks surrounding deepfakes, biometric data, and AI-powered cybercrime The reality of managing cybersecurity in government and critical infrastructure Third-party risk, ransomware lessons learned, and protecting sensitive data Why AI should be viewed as a capacity amplifier—not a replacement for human judgment The future of the CISO role and the evolving cybersecurity workforce Ron shares real-world experiences from leading cybersecurity efforts in county government, discusses recent threats targeting schools and public institutions, and offers practical advice for organizations trying to balance innovation, security, and responsible AI adoption. Whether you're a security leader, IT professional, business executive, or simply curious about how AI is reshaping our digital future, this episode provides valuable insights into the opportunities, risks, and governance strategies that will define the next generation of cybersecurity.
Trust by Design —Building Confidence inan AI-Driven World
In this episode of #AndSecurityForAll, host Kim Hakim is joined by Marivell Alicea-Gamlin, cybersecurity leader, governance expert, and board member with the ISSA Puget Sound community, for a timely conversation on one of the most important topics in technology today: trust. As artificial intelligence continues to transform the way we work, communicate, and make decisions, how do individuals and organizations build confidence while managing risk? Marivell shares her perspective on why cybersecurity is ultimately about people, relationships, and trust—not just technology. Together, they discuss: What “Trust by Design” means in an AI-driven world Why cybersecurity impacts everyone, not just security professionals How AI is changing privacy, governance, and decision-making The growing importance of digital trust and transparency Recognizing phishing attacks and AI-powered scams Practical ways to use AI safely and responsibly Why trust is becoming a competitive advantage for organizations How future leaders can build successful careers in cybersecurity The role of education, mentorship, and community in creating a safer digital future Whether you're a cybersecurity practitioner, business leader, student, or everyday technology user, this episode provides practical insights on navigating AI, protecting what matters most, and building trust in an increasingly connected world. Trust isn't something that's given—it's something that's designed, earned, and protected. 🔐🤖🌎
Through the Eyes of a Pentester: Simulating Real-World Attacks
In this episode of #AndSecurityForAll, host Kim Hakim sits down with Robert McCurdy, Senior Engineer of Security Engineering & Offensive Operations at Abira Security, for a deep dive into the evolving world of penetration testing, offensive security, and red team operations. From real-world attack simulations to the growing impact of AI on cybersecurity, Robert shares firsthand stories from the field, lessons learned from years in offensive security, and what organizations are still getting wrong when it comes to protecting their environments. Topics include: How modern pentesters simulate real-world attacks The biggest security gaps organizations still overlook AI’s growing role in offensive security and automation Why visibility is critical for defending today’s environments The challenges of testing cloud, web, and enterprise systems How attackers are evolving faster than ever before The importance of proactive security, not reactive security What businesses should understand before hiring a pentesting team Whether you’re a security leader, practitioner, business owner, or simply curious about how ethical hackers think, this episode offers an inside look at the mindset, tools, and realities of modern penetration testing in 2026 🎧
AI and the Future of Offensive Security
In this episode of #AndSecurityForAll, Kim Hakim sits down with Boris Goncharov, cybersecurity strategist and offensive security expert, for a deep dive into how #AI is rapidly reshaping the future of offensive security, penetration testing, and cyber defense. From AI-powered attacks and agentic pen testing to the growing risks facing businesses of every size, this conversation breaks down the real-world implications of artificial intelligence in cybersecurity. Boris shares insights from over 20 years in the industry, discussing how organizations can better prepare for emerging threats, why traditional security approaches are struggling to keep up, and how AI is changing both the speed and scale of cyberattacks. The episode also explores the future of human-led security, third-party risk, offensive security strategies, and what companies should look for in cybersecurity partners moving forward. Topics covered in this episode include: • How AI is transforming offensive security and penetration testing • Why organizations are struggling to keep up with evolving cyber threats • The rise of agentic AI and automated vulnerability discovery • Real-world risks facing small and mid-sized businesses • Human behavior, identity security, and third-party vendor risk • The future of AI-driven cyberattacks and AI-powered defense • What companies should look for in a cybersecurity partner • Why cybersecurity fundamentals still matter more than ever If you’re interested in AI, cybersecurity leadership, offensive security, penetration testing, cyber risk, or the future of cyber defense, this is a must-listen episode packed with practical insights and expert perspective. 🔐⚛️
The Canvas Attack Proves Attackers Aren’t Slowing Down in 2026
Cyberattacks aren’t slowing down in 2026 — and the recent Canvas attack is proof. On this episode of #AndSecurityForAll, host Kim Hakim sits down with Jonathan Kimmitt, CISO at Alias CyberSecurity and former University of Tulsa CISO, to discuss the recent Canvas breach that impacted thousands of educational institutions and millions of students worldwide. Together, they explore: ▪️ How the attack unfolded ▪️ Why universities are increasingly targeted ▪️ The growing risks surrounding SaaS and third-party vendors ▪️ The rise in healthcare and enterprise breaches ▪️ Business continuity and incident response challenges ▪️ Cybersecurity burnout among practitioners The episode also touches on the Stryker Cyberattack, CareCloud Patient Records Breach, hacktivism, vendor trust, and the evolving tactics threat actors are using to disrupt organizations at scale. If you’re a security leader, IT professional, student, or simply interested in today’s cyber threat landscape, this is an episode you won’t want to miss.
1 di 19