Cybersecurity News & Analysis by Cyber Sidekicks - Your Weekly Update’ · Christina Richmond | Rory Duncan - Cybersecurity Experts | Richmond Advisory Group

Identities for AI Agents? Cybersecurity expert Harold Moss discusses bots, visibility & why skills matter

·31 min·2 clips
Harold Moss says an agent handling password resets could save about $1.75 each time.
1. Cyber Sidekicks by Cybersecurity News & Analysis by Cyber Sidekicks focuses on military veterans, agentic AI, and guest Harold Moss’s identity argument for AI agents. 2. Rory Duncan and Christina Richmond host the show as principal analysts at Richmond Advisory Group, and Harold Moss joins as a longtime friend, cybersecurity researcher, innovator, author, former CTO, and former CEO. 3. The episode asks whether AI agents should be treated as identities inside networks and whether veterans and greybeards bring needed operational discipline to cyber defense. 4. Christina Richmond cites a Dark Reading article on military veterans in cybersecurity and recalls a 2013 briefing with SecureWorks during her Worldwide Security Services Research work at IDC. 5. She says many veterans are mission driven, like detail, and often fit forensic analysis, incident response, and other high-stakes cyber defense roles. 6. Rory Duncan connects that discussion to cybersecurity’s shift toward critical infrastructure and national security, where confidentiality and strict information sharing matter more than in traditional IT. 7. Christina says veterans often carry a critical-infrastructure and national-security mindset into private-sector customer protection after leaving military service. 8. The hosts then turn to MATE, a cybersecurity startup that emerged from stealth with $15.5 million in seed funding led by Team 8 and Insight Partners. 9. Rory and Christina describe MATE as using advanced reasoning models and autonomous agents to work inside the SOC, connected to SIEMs, EDRs, and email security systems. 10. They say the platform absorbs organizational knowledge in real time, resolves simpler incidents autonomously, and escalates more complex cases with enriched context for human analysts. 11. Moss says AI is “moving faster than people realize” and that the field is trying to apply “old paradigms to a new technology.” 12. He argues that AI inside a company is more like an employee than an external attacker and that the same controls used for bots and DDoS tools should be applied inside networks. 13. Moss says AI agents should have identities, should be monitored for what they touch, and should be governed with visibility because chatbots already warn that they “make mistakes.” 14. He criticizes U.S. policy discussions, saying the people defining AI risk often have never built an AI solution, written an AI agent, or used an LLM directly. 15. He points to Singapore’s banking rules as an example of regulation that can accelerate AI use rather than block it. 16. Moss also warns that state-by-state AI policies in the U.S. could create major compliance friction across borders, similar to the shock of GDPR. 17. The conversation turns serious and then playful, with Rory Duncan and Christina Richmond comparing their greybeard experience to the speed of AI development and joking about the abacus, slide rule, and fire. 18. Moss says the security community needs older institutional knowledge because many experienced operators are aging out and younger builders are moving too fast to absorb lessons from earlier technologies. 19. People interested in SOC automation, AI governance, and cybersecurity operations would get the most from this episode. 20. People looking for light commentary without policy detail or technical debate may skip it.
Listen to the show on