Cybersecurity News & Analysis by Cyber Sidekicks - Your Weekly Update’ · Christina Richmond | Rory Duncan - Cybersecurity Experts | Richmond Advisory Group

Agentic AI: Why your SecOps is at risk and what to do about it - with Rock Lambros

·37 min·2 clips
Rock proposes six must-haves: signed action records, break-glass autonomy, agent identity, short-lived tokens, memory hygiene, and a kill switch.
1. Cyber Sidekicks focuses on agentic AI security, CISO personal risk, and Varonis's planned acquisition of SlashNext. 2. Rory Duncan and Christina Richmond host the show as Richmond Advisory Group principal analysts, and Rock Lambros joins as founder and CEO of Rock Cyber. 3. The episode asks what secops should do as agentic AI, executive targeting, and email-security consolidation all move at once. 4. Rory cites a Dark Reading report on personal liability and security becoming a bigger issue for CISOs. 5. The report mentions deepfake attacks aimed at getting employees and coworkers to give up information or access. 6. Rory says attackers are using social media for travel patterns, family details, and business relationships. 7. Christina connects the story to the SEC rules and the CISO liability questions raised by the Joe Sullivan and SolarWinds cases. 8. The hosts discuss NISOS as a company that monitors executive travel, geopolitical unrest, and digital exposure for security leaders. 9. Rory and Christina note that CISOs are less public-facing than CEOs, CTOs, and CFOs, but still hold privileged access. 10. The conversation frames chief AI officers as a likely future group for similar liability concerns. 11. Rory introduces Varonis's intended acquisition of SlashNext as another example of consolidation in email security. 12. Christina says SlashNext has come up in recent conversations and was repeatedly described as solid. 13. Rock returns after earlier discussions about AI agents and says he is starting a master's of applied data science and AI at the University of Denver. 14. He describes his coursework as essential math, Python, databases, probability, statistics, machine learning, deep learning, and data visualization. 15. Christina and Rory use the OWASP agentic AI framework to discuss the current vendor landscape and how some companies appear in multiple pillars. 16. Rock says VCs are throwing money right now and cites AIM Security, Prompt Security, and Apex Security as examples of rapid movement. 17. He explains that testing is easier than development because defenders can throw inputs at the model, while deeper reasoning layers are harder to inspect. 18. Rock defines covert plan drift as an agent's mission changing through memory poisoning and malicious influence on short- or long-term memory. 19. The interview has a practical, technical tone, with Christina translating concepts like memory poisoning and non-human identities for listeners. 20. Security leaders, AI governance teams, and OWASP followers will get the most from this episode, while listeners wanting light news only may skip it.

As heard by us

A grounded cybersecurity conversation that stays focused on CISO-targeted risk and consolidation.

Cyber Sidekicks keeps its attention on cybersecurity market trends, and it does not drift far from the pressures facing security leaders. The conversation touches physical and personal security for CISOs, consolidation, and email compromise, with Rock Lambros back as guest.

Read the full review in PlayNext →

Why you'd press play

Press play for a candid look at CISO safety, market consolidation, and cybersecurity trends.

Read the full recommendation in PlayNext →
Listen to the show on