
Sign up to save your podcasts
Or


Welcome back to Zero Signal! In this episode, Conor and Stuart are joined by Matt Stamper, co-author of the CISO Desk Reference Guide and chair of the FBI InfraGard CISO Cross-Sectional Council. With experience spanning Gartner research and national critical infrastructure, Matt dives into the "four persistent failures" that AI is rapidly turning into existential risks: identity governance, data governance, third-party risk, and vulnerability management.
Matt explains why the "Hustle Hard" era of manual triage is fundamentally broken. As attack timescales collapse from weeks to seconds—evidenced by AI-driven compromises occurring in under eight minutes—security leaders must shift from a "secure-first" mindset to one of radical resiliency and "continuous zero-day" preparedness.
In this conversation, Conor, Stuart, and Matt discuss the necessity of "autopilot" for security operations, the legal and geopolitical fallout of "Glasswing" and "Mythos" level capabilities, and why boards must move past the "single slide" and lean into the technical details of enterprise risk.
Continued Reading:
CISO Desk Reference Guide: https://www.cisodesk.com/
FBI InfraGard: https://www.infragard.org/
Cloud Security Alliance (CSA) Analysis on Glasswing/Mythos: https://cloudsecurityalliance.org/
VulnCheck State of Exploitation 2026: https://www.vulncheck.com/blog/state-of-exploitation-2026
Securing AI agents: the defining cybersecurity challenge of 2026: https://www.bvp.com/atlas/securing-ai-agents-the-defining-cybersecurity-challenge-of-2026
The State of AI Cybersecurity 2026: Unveiling insights from over 1,500 security leaders: https://www.darktrace.com/blog/the-state-of-ai-cybersecurity-2026
About the Guest:
Matt Stamper is a globally recognized security leader, executive advisor, and the co-author of the CISO Desk Reference Guide. A former Gartner Research Director covering incident response architecture, Matt currently serves as the chair of the FBI InfraGard CISO Cross-Sector Council, where he represents nearly a thousand CISOs across critical infrastructure sectors. His work focuses on transforming technical security into business-aligned risk management and building resilient enterprise architectures.
Key Topics:
01:11 Meet Matt Stamper: The Voice of Critical Infrastructure
01:50 The Four Persistent Failures AI Just Accelerated
03:26 The Collapse of the Zero-Day Clock: From Weeks to Seconds
04:31 Why Security is a "Whole of Enterprise" Problem
05:41 Customized Daisy-Chained Exploits (The Glasswing Effect)
08:24 Leaning In: How Security Leaders Become the Hero
11:47 Why 15 Minutes for Security in the Boardroom is "Borderline Negligence"
13:01 The Business Impact Analysis (BIA) as a Risk Vehicle
15:52 Incident Response in the Age of Agents
17:15 Hands-Off Keyboard: Trusting the System to Counter Swarms
20:41 The Advantage Shifts: Why Attackers Aren't Waiting for Budget Sign-Off
22:52 Crossing the "Four-Minute Mile" of AI Capabilities
25:10 A Manhattan Project Moment for Critical Infrastructure
31:54 Resilience vs. Protection: Designing for Failure
38:34 Geopolitical, Climatic, and Technical Risk Concurrency
42:05 The Strategic Move to Open Source for Transparency
46:00 The Autopilot Mindset: Continuous Preparedness
50:24 Why the Airline Safety Model is the Future of Cyber Metrics
Meet our Sponsors:
Hampton North is the premier US based cybersecurity search firm.Start building your security team with Hampton North: https://hamptonnorth.com/?utm_source=website&utm_medium=podcast&utm_campaign=aware_global_swsd_all&utm_content=zero-signal
Sysdig is the leader in AI-powered real-time cloud defense; stop watching and start defending: https://www.sysdig.com/?utm_source=website&utm_medium=podcast&utm_campaign=aware_global_swsd_all&utm_content=zero-signal
By Conor ShermanWelcome back to Zero Signal! In this episode, Conor and Stuart are joined by Matt Stamper, co-author of the CISO Desk Reference Guide and chair of the FBI InfraGard CISO Cross-Sectional Council. With experience spanning Gartner research and national critical infrastructure, Matt dives into the "four persistent failures" that AI is rapidly turning into existential risks: identity governance, data governance, third-party risk, and vulnerability management.
Matt explains why the "Hustle Hard" era of manual triage is fundamentally broken. As attack timescales collapse from weeks to seconds—evidenced by AI-driven compromises occurring in under eight minutes—security leaders must shift from a "secure-first" mindset to one of radical resiliency and "continuous zero-day" preparedness.
In this conversation, Conor, Stuart, and Matt discuss the necessity of "autopilot" for security operations, the legal and geopolitical fallout of "Glasswing" and "Mythos" level capabilities, and why boards must move past the "single slide" and lean into the technical details of enterprise risk.
Continued Reading:
CISO Desk Reference Guide: https://www.cisodesk.com/
FBI InfraGard: https://www.infragard.org/
Cloud Security Alliance (CSA) Analysis on Glasswing/Mythos: https://cloudsecurityalliance.org/
VulnCheck State of Exploitation 2026: https://www.vulncheck.com/blog/state-of-exploitation-2026
Securing AI agents: the defining cybersecurity challenge of 2026: https://www.bvp.com/atlas/securing-ai-agents-the-defining-cybersecurity-challenge-of-2026
The State of AI Cybersecurity 2026: Unveiling insights from over 1,500 security leaders: https://www.darktrace.com/blog/the-state-of-ai-cybersecurity-2026
About the Guest:
Matt Stamper is a globally recognized security leader, executive advisor, and the co-author of the CISO Desk Reference Guide. A former Gartner Research Director covering incident response architecture, Matt currently serves as the chair of the FBI InfraGard CISO Cross-Sector Council, where he represents nearly a thousand CISOs across critical infrastructure sectors. His work focuses on transforming technical security into business-aligned risk management and building resilient enterprise architectures.
Key Topics:
01:11 Meet Matt Stamper: The Voice of Critical Infrastructure
01:50 The Four Persistent Failures AI Just Accelerated
03:26 The Collapse of the Zero-Day Clock: From Weeks to Seconds
04:31 Why Security is a "Whole of Enterprise" Problem
05:41 Customized Daisy-Chained Exploits (The Glasswing Effect)
08:24 Leaning In: How Security Leaders Become the Hero
11:47 Why 15 Minutes for Security in the Boardroom is "Borderline Negligence"
13:01 The Business Impact Analysis (BIA) as a Risk Vehicle
15:52 Incident Response in the Age of Agents
17:15 Hands-Off Keyboard: Trusting the System to Counter Swarms
20:41 The Advantage Shifts: Why Attackers Aren't Waiting for Budget Sign-Off
22:52 Crossing the "Four-Minute Mile" of AI Capabilities
25:10 A Manhattan Project Moment for Critical Infrastructure
31:54 Resilience vs. Protection: Designing for Failure
38:34 Geopolitical, Climatic, and Technical Risk Concurrency
42:05 The Strategic Move to Open Source for Transparency
46:00 The Autopilot Mindset: Continuous Preparedness
50:24 Why the Airline Safety Model is the Future of Cyber Metrics
Meet our Sponsors:
Hampton North is the premier US based cybersecurity search firm.Start building your security team with Hampton North: https://hamptonnorth.com/?utm_source=website&utm_medium=podcast&utm_campaign=aware_global_swsd_all&utm_content=zero-signal
Sysdig is the leader in AI-powered real-time cloud defense; stop watching and start defending: https://www.sysdig.com/?utm_source=website&utm_medium=podcast&utm_campaign=aware_global_swsd_all&utm_content=zero-signal