
Sign up to save your podcasts
Or


Interested in being a guest? Email us at [email protected]
AI isn’t just changing cybersecurity tools, it’s changing the pace of the entire fight. When attackers can scale campaigns with automation and operate at machine speed, the old rhythm of annual pen tests and quarterly reviews stops making sense. We sit down with Hom Bahmanyar Global Enablement Officer at Ridge Security, to talk about what security teams are up against right now and how continuous security validation can turn an endless backlog of findings into a short list of exposures that truly matter.
We dig into the problem every enterprise security team feels: information overload. Vulnerability scanners generate massive reports, but severity scores don’t reliably predict what gets exploited in the wild. Our focus shifts to a more practical approach to vulnerability management and exposure management, prioritizing issues based on exploitability in your specific environment and whether the weakness is actually visible to a threat actor. That perspective helps reduce alert fatigue and aligns remediation work with real-world risk.
From there, we explore how agentic AI and autonomous security testing change the workflow. Hom explains why being model agnostic matters, especially for organizations that must run in air-gapped environments and rely on open source or open weight models. We also talk about why remediation is the bottleneck, how compensating controls like firewalls can buy time while patching catches up, and what early results can look like when teams start validating continuously, including uncovering previously missed SQL injection.
If you care about continuous security validation, AI-powered penetration testing, and keeping pace with modern cyber threats, subscribe, share this episode with a teammate, and leave a review. What part of vulnerability triage or remediation slows your team down the most?
Listen on: Apple Podcasts Spotify
Support the show
More at https://linktr.ee/EvanKirstel
By Evan KirstelInterested in being a guest? Email us at [email protected]
AI isn’t just changing cybersecurity tools, it’s changing the pace of the entire fight. When attackers can scale campaigns with automation and operate at machine speed, the old rhythm of annual pen tests and quarterly reviews stops making sense. We sit down with Hom Bahmanyar Global Enablement Officer at Ridge Security, to talk about what security teams are up against right now and how continuous security validation can turn an endless backlog of findings into a short list of exposures that truly matter.
We dig into the problem every enterprise security team feels: information overload. Vulnerability scanners generate massive reports, but severity scores don’t reliably predict what gets exploited in the wild. Our focus shifts to a more practical approach to vulnerability management and exposure management, prioritizing issues based on exploitability in your specific environment and whether the weakness is actually visible to a threat actor. That perspective helps reduce alert fatigue and aligns remediation work with real-world risk.
From there, we explore how agentic AI and autonomous security testing change the workflow. Hom explains why being model agnostic matters, especially for organizations that must run in air-gapped environments and rely on open source or open weight models. We also talk about why remediation is the bottleneck, how compensating controls like firewalls can buy time while patching catches up, and what early results can look like when teams start validating continuously, including uncovering previously missed SQL injection.
If you care about continuous security validation, AI-powered penetration testing, and keeping pace with modern cyber threats, subscribe, share this episode with a teammate, and leave a review. What part of vulnerability triage or remediation slows your team down the most?
Listen on: Apple Podcasts Spotify
Support the show
More at https://linktr.ee/EvanKirstel