The Cyber Mettle Podcast with Alyson & Omar
The Cyber Mettle Podcast makes technology, and its impact on real life, understandable.
In a world where technology shapes how we work, communicate, govern, and make decisions, this podcast explores how technology, business, law, resilience, and the human experience intersect in practice, not just in theory.
Hosted by experienced professionals with backgrounds spanning technology, law, business, and risk, The Cyber Mettle Podcast focuses on helping listeners make sense of complexity without dumbing it down.
We talk about:
-
Technology and innovation in everyday life and work
-
Cybersecurity, privacy, and data without the jargon
-
Business decisions shaped by regulation and risk
-
Leadership, accountability, and resilience in moments of change or crisis
-
The human behaviors and incentives behind technical and legal outcomes
This isn’t a podcast about gadgets or headlines. It’s about how technology actually shows up in people’s lives and organizations, and what that means for the choices we make.
Why “Cyber Mettle”?
Because modern challenges don’t just test systems — they test judgment, adaptability, and character.
Cyber mettle is the ability to respond thoughtfully when technology, policy, and human behavior collide.
Who This Podcast Is For
The Cyber Mettle Podcast is for curious, thoughtful listeners who want to understand the world they’re operating in:
-
Business leaders and professionals
-
Legal, compliance, and technology practitioners
-
Founders, operators, and advisors
-
Anyone navigating work, leadership, or decision-making in a tech-shaped world
You don’t need to be technical, just interested in how things really work.
What Makes This Podcast Different
-
Accessible conversations grounded in real experience
-
Cross-disciplinary perspectives without silos
-
No fear-mongering, no hype, no unnecessary jargon
-
Respect for nuance, context, and human impact
We connect dots others treat in isolation.
Release Schedule
🎙️ New full episodes every Tuesday morning
🎧 Available on Podbean and all major podcast platforms and YouTube
Subscribe to The Cyber Mettle Podcast for conversations that help you better understand technology’s role in modern life and your place within it.
Keywords: Technology podcast, cybersecurity podcast, business and technology, law and technology, digital resilience, human factors, leadership, risk and decision-making, privacy, innovation, tech and society, business succession planning, sexploitation, data privacy
To learn more about our hosts, visit their LinkedIn profiles at:
Dr. Omar Sangurima: https://www.linkedin.com/in/dromars/
Alyson M. Laderman, Esq.: https://www.linkedin.com/in/alysonladerman/
Visit https://cybermettle.org for more information about Cyber Mettle Inc., a 501(c)(3) non-profit organization dedicated to community cyber resilience and workforce development.
The Cyber Mettle Podcast makes technology, and its impact on real life, understandable.
In a world where technology shapes how we work, communicate, govern, and make decisions, this podcast explores how technology, business, law, resilience, and the human experience intersect in practice, not just in theory.
Hosted by experienced professionals with backgrounds spanning technology, law, business, and risk, The Cyber Mettle Podcast focuses on helping listeners make sense of complexity without dumbing it down.
We talk about:
-
Technology and innovation in everyday life and work
-
Cybersecurity, privacy, and data without the jargon
-
Business decisions shaped by regulation and risk
-
Leadership, accountability, and resilience in moments of change or crisis
-
The human behaviors and incentives behind technical and legal outcomes
This isn’t a podcast about gadgets or headlines. It’s about how technology actually shows up in people’s lives and organizations, and what that means for the choices we make.
Why “Cyber Mettle”?
Because modern challenges don’t just test systems — they test judgment, adaptability, and character.
Cyber mettle is the ability to respond thoughtfully when technology, policy, and human behavior collide.
Who This Podcast Is For
The Cyber Mettle Podcast is for curious, thoughtful listeners who want to understand the world they’re operating in:
-
Business leaders and professionals
-
Legal, compliance, and technology practitioners
-
Founders, operators, and advisors
-
Anyone navigating work, leadership, or decision-making in a tech-shaped world
You don’t need to be technical, just interested in how things really work.
What Makes This Podcast Different
-
Accessible conversations grounded in real experience
-
Cross-disciplinary perspectives without silos
-
No fear-mongering, no hype, no unnecessary jargon
-
Respect for nuance, context, and human impact
We connect dots others treat in isolation.
Release Schedule
🎙️ New full episodes every Tuesday morning
🎧 Available on Podbean and all major podcast platforms and YouTube
Subscribe to The Cyber Mettle Podcast for conversations that help you better understand technology’s role in modern life and your place within it.
Keywords: Technology podcast, cybersecurity podcast, business and technology, law and technology, digital resilience, human factors, leadership, risk and decision-making, privacy, innovation, tech and society, business succession planning, sexploitation, data privacy
To learn more about our hosts, visit their LinkedIn profiles at:
Dr. Omar Sangurima: https://www.linkedin.com/in/dromars/
Alyson M. Laderman, Esq.: https://www.linkedin.com/in/alysonladerman/
Visit https://cybermettle.org for more information about Cyber Mettle Inc., a 501(c)(3) non-profit organization dedicated to community cyber resilience and workforce development.
Episodes

Jul 21, 2026
Jul 21, 2026
38 min
Is cybersecurity really facing a talent shortage—or are we looking at the problem the wrong way?
In this episode of The Cyber Mettle Podcast, Omar and Alyson welcome Jakub Zvernia, Technical Program Lead for Cyber Path, Australia's national cyber workforce professionalization pilot delivered by the Australian Computer Society.
Together they explore why thousands of aspiring cybersecurity professionals struggle to land their first role despite persistent workforce shortages, why organizations need to rethink hiring, and how skills-first career pathways could reshape the future of the industry.
The conversation also examines:
• Why traditional recruiting models may be holding organizations back• The value of neurodiversity and diverse thinking in cybersecurity• How employers can better support career changers and veterans• Why cybersecurity education alone isn't enough• Building practical career pathways beyond entry-level roles• Why organizations—not just individuals—must invest in workforce development• Lessons from Australia's CyberPath initiative that have global relevance
Whether you're a cybersecurity practitioner, hiring manager, executive, educator, student, or someone considering a career transition into cyber, this discussion offers practical insights into building a stronger, more resilient workforce.
Chapters00:00 Opening & Introducing Jakub Zvernia
02:18 What Is Cyber Path?
05:07 Why Graduates Still Can't Get Hired
08:55 The Business Case for Skills-Based Hiring
12:23 Career Changers, Veterans & Hidden Talent
16:55 Building Cyber Talent from Nontraditional Backgrounds
19:33 Why Entry-Level Isn't the Real Skills Gap
25:52 Preparing for an Aging Cyber Workforce
28:43 Learning Beyond Certifications
32:10 Why Employers Must Change Too
35:14 A Call to Action for the Cybersecurity Industry
37:01 Final Thoughts
If you enjoyed this conversation, subscribe to The Cyber Mettle Podcast for more discussions at the intersection of cybersecurity, leadership, resilience, governance, and human performance.
#Cybersecurity #CyberWorkforce #CyberCareers #Leadership #SkillsBasedHiring #CyberPath #CyberMettlePodcast
Jul 21, 2026
38 min

Jul 14, 2026
Jul 14, 2026
1 hr 3 min
The IAPP AIGP certification is becoming one of the most sought-after credentials in AI governance, but what does preparing for it actually teach you?
In this episode of The Cyber Mettle Podcast, Omar Sangurima and Alyson Laderman go beyond exam prep to discuss something much bigger: how professionals actually learn.
As Alyson works through an intensive 28-day AIGP bootcamp with Dr. Kyle David (Dr. Privacy), the conversation explores:
Why memorization isn't enough
How certification exams can better validate real-world skills
AI governance versus legal practice
Different learning styles
Study strategies that actually work
Why asking questions is a professional strength, not a weakness
The surprising value of learning communities
The discussion also highlights Dr. Kyle David's AIGP Master Class and why community, mentorship, and collaboration may ultimately become the most valuable part of the certification experience.
Whether you're studying for the AIGP, working in AI governance, cybersecurity, privacy, compliance, legal, or risk management, this conversation offers practical advice that extends far beyond one exam.
Chapters
00:00 Welcome Back to Cyber Mettle
03:04 Alyson Announces Her AIGP Journey
06:04 Why the AIGP Is Such a Challenging Certification
07:10 Should Certification Exams Test Memorization?
11:26 Real AI Governance vs. Passing the Test
16:03 What Better Certification Exams Could Look Like
20:54 Everyone Learns Differently
27:37 Inside an AIGP Master Class
33:17 Why Smart People Stay Quiet
39:57 Alyson's Personal Study Strategy
43:20 Learning, Humor & (Yes) Clown College
46:12 Ego Is the Enemy of Learning
53:45 Building Real Professional Relationships
55:09 Omar's Toastmasters Leadership Lesson
1:00:24 How to Create Better Learning Communities
1:02:22 Final Thoughts: Be Human
🎙 Subscribe for conversations on cybersecurity, AI governance, leadership, privacy, resilience, and professional growth.
#CyberMettlePodcast #AIGP #AIGovernance #Cybersecurity #ArtificialIntelligence #Privacy #Leadership #ProfessionalDevelopment
Jul 14, 2026
1 hr 3 min

Jun 30, 2026
Jun 30, 2026
43 min
Can AI actually improve penetration testing, or does it create an entirely new attack surface?
In this episode of The Cyber Mettle Podcast, Omar Sangurima and Alyson Laderman sit down with cybersecurity researcher and executive Dan Shallom to explore how agentic AI is reshaping offensive security, vulnerability discovery, and security assessments.Dan explains why today's AI isn't simply making penetration testing faster—it's changing how security teams think about attack surfaces, business risk, and human expertise.
Topics include:
• Traditional penetration testing vs. AI-assisted assessments• Why consistency and coverage remain major security challenges• Building AI agents that understand application workflows—not just vulnerabilities• OWASP Top 10 for LLMs and the new risks AI introduces• Why AI needs layered security, guardrails, and governance• Business-contextualized vulnerability prioritization• Human judgment vs. AI reasoning in cybersecurity• Why AI should augment—not replace—security professionals
Whether you're a CISO, security leader, penetration tester, application security engineer, or simply trying to understand where AI fits into cybersecurity, this conversation offers practical insights grounded in real-world experience.If you enjoy conversations about cybersecurity, resilience, leadership, governance, and emerging technology, subscribe to The Cyber Mettle Podcast for future episodes.
Chapters
00:00 Opening and Inspector Gadget nostalgia
01:22 Meet Dan Shallom
02:34 Traditional Pen Testing vs Agentic AI
05:42 Why Coverage and Consistency Matter
07:35 Hidden Attack Surfaces Inside Modern Applications
08:47 AI Guardrails and Secure Implementation
10:14 Can AI Discover Novel Attacks?
15:18 Why Access Control Remains a Major Challenge
17:45 Business Context Beats Raw CVSS Scores
23:08 Moving Beyond Traditional Vulnerability Scanners
25:20 Human Judgment Still Matters
29:21 OWASP for LLMs and AI Attack Surfaces
33:16 Security by Design
36:16 Can Legacy Organizations Adopt AI?
40:14 Infrastructure, LLMs and Modern Risk
43:14 Final Advice for Organizations Using AI
44:49 Closing Thoughts
#CyberSecurity #ArtificialIntelligence #ApplicationSecurity #PenTesting #AgenticAI #CISO #CyberMettlePodcast
Jun 30, 2026
43 min

Jun 23, 2026
Jun 23, 2026
41 min
Thinking about the AAIR certification from ISACA?Just hours after completing the Advanced AI Risk (AAIR) exam, Omar Sangurima sits down with Alyson Laderman to share his candid experience, preparation approach, key takeaways, and lessons learned from one of ISACA’s newest AI-focused certifications.In this Cert Corner episode, Omar discusses how the AAIR exam compares to certifications like the AIGP, why "ISACA mode" matters when approaching certification exams, the role of AI risk within broader enterprise risk management programs, and what cybersecurity, governance, and risk professionals should understand about AI risk today.The conversation explores practical study strategies, exam structure, governance frameworks, AI risk management concepts, and why understanding business risk may be just as important as understanding the technology itself.Whether you're considering the AAIR certification, working in AI governance, cybersecurity, risk management, compliance, audit, or simply trying to understand how AI risk is evolving inside organizations, this episode offers a real-world perspective from someone who just completed the exam.
In this episode:
• Omar's immediate reaction after completing the AAIR exam• How the exam compares to AIGP and other ISACA certifications• Understanding "ISACA mode" and certification mindset• AI Risk Management Framework (AI RMF) preparation strategies• Governance, risk, and AI integration challenges• Why context matters when answering certification questions• The relationship between AI risk and enterprise risk management• Whether AI risk deserves its own certification domain• Lessons learned for cybersecurity and risk professionals
Chapters
00:00 - Fresh Off the Exam: Initial AAIR Reactions02:02 - What Is the AAIR Certification?04:15 - Exam Format, Cost, and Proctoring Experience06:39 - Comparing AAIR and AIGP Preparation08:21 - Understanding “ISACA Mode”11:44 - Certification Study Pitfalls and Exam Dumps13:11 - Study Strategy and Preparation Approach20:14 - How the Exam Questions Are Structured27:04 - Key Domains and AI Risk Concepts31:25 - Does AI Risk Deserve Its Own Certification?36:46 - The Real Value of the Certification40:35 - Final Advice for Future Candidates42:48 - Why Studying AI Risk Matters
#CyberMettlePodcast #AIRisk #AAIR #ISACA #Cybersecurity #Governance #RiskManagement #ArtificialIntelligence #AIGP #CyberLeadership
Jun 23, 2026
41 min

Jun 16, 2026
Jun 16, 2026
44 min
Your backups may be protected. Your data may be protected. But what happens if you lose access to the systems that let you access everything else?In this episode of @TheCyberMettlePodcast , Omar Sangurima and Alyson Laderman sit down with Muli Motola, CEO and Co-Founder of Acsense, to discuss one of the most overlooked areas of cybersecurity and resilience: Identity and Access Management (IAM). As organizations continue moving to the cloud and embracing Zero Trust architectures, identity systems have become the foundation of modern operations. Yet many businesses still lack a recovery strategy for the very systems that control access to everything else. Muli shares the real-world incident that inspired Acsense, lessons learned from large-scale identity-related breaches, and why identity resilience is becoming a board-level business issue. Topics include:
Why IAM has become a critical business dependency
The hidden risks of cloud-based identity systems
Shared responsibility between vendors and customers
Lessons from MGM and Caesars Palace
Identity resilience and disaster recovery planning
Operational mistakes versus cyberattacks
AI, automation, and identity management risk
Single points of failure in modern IT environments
What boards and executives should be asking today
How organizations can prepare for identity-related disruptions
If your organization relies on cloud services, SaaS applications, remote work, customer portals, or Zero Trust security models, this conversation is essential listening. RESOURCES FROM ACSENSE Want to learn more about Identity Resilience, IAM Recovery, and Disaster Recovery Planning? Muli Motola and the Acsense team have published several free resources, including their Disaster Recovery Guidebook for Identity and Access Management. Explore the full resource library: https://acsense.com/resources/white-papers/ Recommended resource: Disaster Recovery Guidebook for Identity & Access Management Whether you're a CISO, IT leader, MSP, security practitioner, or business executive, these guides provide practical frameworks for thinking about identity resilience, recovery planning, and operational continuity. 🎙 About The Cyber Mettle Podcast The Cyber Mettle Podcast explores the intersection of law, business, cybersecurity, technology, resilience, and leadership. Hosted by Omar Sangurima and Alyson Laderman 🔔 Subscribe for future conversations on cybersecurity, resilience, business continuity, leadership, AI, governance, and emerging technology. CHAPTERS 00:00 Introduction 01:07 Meet Muli Motola 02:12 What Is Identity and Access Management? 04:31 Why IAM Is More Critical Than Most Organizations Realize 05:42 The Incident That Inspired Acsense 08:12 The Butterfly Effect of Identity Systems 09:31 Cloud Identity and the New Single Point of Failure 10:56 Lessons from MGM and Caesars Palace 13:56 AI, Automation, and Identity Risk 15:26 Why Identity Recovery Is So Difficult 17:24 Cyber Resilience and Immutable Recovery 19:03 Shared Responsibility in Identity Security 22:11 Who Understands Identity Resilience Today? 24:24 Operational Mistakes vs Cyberattacks 26:52 The Importance of Recovery Autonomy 29:00 AI Agents and Privileged Access Risks 32:34 Why Customers Are Worried About AI Modifying History 34:14 What CEOs and Boards Need to Understand 36:34 Building Effective Recovery Objectives 39:27 Why Identity Is Foundational to Business Continuity 43:33 The Future of Identity Resilience 48:25 Final Thoughts
Jun 16, 2026
44 min

Jun 9, 2026
Jun 9, 2026
48 min
Can AI make organizations more effective without replacing people?
Cybersecurity leader Joshua Copeland joins Omar Sangurima and Alyson Laderman to discuss AI, workforce development, cybersecurity, governance, and the unintended consequences of automation.
In this episode:• Why AI should augment people rather than replace them
• The hidden costs of AI adoption
• AI-generated code and cybersecurity risks
• Workforce development and employee retention
• AI bias and accountability
• The future of human judgment in an AI-driven world
Joshua also shares the story behind his widely followed "Unpopular Opinion" posts and explains why honest conversations are essential for the cybersecurity profession.
Key Topics
Artificial Intelligence
Cybersecurity
AI Governance
Workforce Development
Business Resilience
Leadership
Risk Management
Compliance
Connect with The Cyber Mettle Podcast
LinkedIn: https://www.linkedin.com/company/the-cyber-mettle-podcastWebsite: https://cybermettle.org
Chapters
00:00 Introduction and Guest Welcome
02:18 Joshua Copeland's Cybersecurity Journey
05:16 The Origin of "Unpopular Opinions"
08:33 Why Cybersecurity Needs More Honest Conversations
11:40 AI Should Augment People, Not Replace Them
15:00 The Real Cost of Replacing Employees
18:26 Startup Growth, Retention, and Innovation
21:00 Ego, Venture Capital, and AI Adoption
22:25 AI Coding, Vibe Coding, and Security Risks
24:23 Why Data Breaches Can End Small Businesses
26:55 The Hidden Costs of AI
30:31 Dependency, Skills Decline, and AI Reliance
32:57 Which Jobs Will Survive AI?
35:43 Human Judgment vs Artificial Intelligence
39:22 AI, Law, Liability, and Accountability
43:28 Hiring Bias and AI Training Data
46:45 Governance, Risk, and Organizational Responsibility
50:59 Final Thoughts on AI
Jun 9, 2026
48 min

Jun 2, 2026
Jun 2, 2026
55 min
Most cybersecurity career advice focuses on technical skills.
This episode explores the skill that often determines long-term success: building genuine relationships.
What does it take to build a successful cybersecurity career when your background isn't technical?
In this episode of The Cyber Mettle Podcast, Omar Sangurima and Alyson Laderman sit down with Arielle Cireseanu-Acevedo, Esq. to discuss career growth, networking, leadership, mentorship, storytelling, and the power of authentic relationships in cybersecurity and beyond.
Ari shares her journey from healthcare operations and legal work into cybersecurity leadership, proving that career transitions are possible when organizations invest in people and individuals remain committed to learning.
Topics include:
Transitioning into cybersecurity without a technical background
Why networking is really about relationships, not business cards
Career development and internal mobility
Building trust and professional credibility
The value of mentorship and sponsorship
Storytelling as a cybersecurity and leadership skill
Soft skills that accelerate career growth
Why kindness is a competitive advantage
Creating opportunities through authentic human connection
Whether you're early in your career, considering a transition into cybersecurity, or leading teams, this conversation offers practical advice for building a career that lasts.
Subscribe for more conversations at the intersection of cybersecurity, leadership, business, law, and resilience.
#Cybersecurity #CareerDevelopment #Leadership #Networking #CyberMettle #InfoSec #ProfessionalGrowth #SoftSkills
CHAPTERS
00:00 – Introduction & Meet Arielle Cireseanu-Acevedo
02:15 – Ari's Career Journey Into Cybersecurity
08:13 – Why Organizations Should Invest in Their People
12:22 – Career Growth, Retention & Boomerang Employees
16:21 – What Networking Actually Means
20:23 – Networking Beyond Business Cards
23:21 – Food, Community & Building Connections
26:15 – Toastmasters and Public Speaking Growth
31:08 – Storytelling as a Career Superpower
36:33 – How Lawyers and Non-Technical Professionals Enter Cybersecurity
40:36 – Why Relationships Matter More Than You Think
46:23 – Gatekeeping vs Mentorship
50:11 – Building Authentic Professional Relationships
56:32 – Supporting Others Without Expecting Something Back
01:00:25 – Final Thoughts on Cyber Mettle
Jun 2, 2026
55 min

May 26, 2026
May 26, 2026
43 min
What happens when cybersecurity, investigative journalism, hacker culture, and privacy rights collide? Pulitzer Award-winning journalist Yael Grauer joins @TheCyberMettlePodcast to unpack data brokers, surveillance tech, OSINT culture, online privacy, hacker paranoia, and why your personal information is far more exposed than most people realize. In this episode of The Cyber Mettle Podcast, Dr. Omar Sangurima and Alyson Laderman sit down with journalist, cybersecurity educator, and privacy advocate Yael Grauer for a wide-ranging conversation covering: * The reality of modern data brokers and why removing your information online is so difficult
* The overlap between hacker culture and investigative journalism
* Doxxing, OSINT, digital privacy, and online safety
* The ethics of public records and personal information
* Surveillance technology and the expanding privacy landscape in the United States
* Why journalists and hackers often misunderstand each other
* Social engineering, trust, and online investigation culture
* MMA, jiu-jitsu culture, and surprisingly relevant cybersecurity lessons
Yael also shares insights from her investigative reporting career, including collaborative reporting work tied to award-winning journalism projects and her experience helping people better understand how exposed their data really is online.
This episode blends cybersecurity, law, journalism, privacy, and human behavior into a candid and practical discussion about the digital world we all navigate every day. If you work in cybersecurity, privacy, journalism, tech, law, investigations, OSINT, or risk management — this conversation is packed with insight.
Subscribe for more conversations at the intersection of cybersecurity, business, law, technology, and human resilience.
#Cybersecurity #Privacy #DataBrokers #OSINT #DigitalPrivacy #Journalism #CyberMettle #InfoSec #HackerCulture #onlinesafety
CHAPTERS
00:00 — Intro & Meet Yael Grauer
01:05 — From MMA Journalism to Cybersecurity
03:24 — Jiu-Jitsu, Injuries & Hacker Culture
07:30 — Why Hackers and Journalists Clash
10:41 — Trust, Sources & Media Relationships
15:14 — Building Credibility in Cyber Journalism
19:08 — Award-Winning Investigative Reporting
23:47 — Surveillance Tech & Data Brokers
24:51 — Getting Doxxed & Why Privacy Matters
27:52 — The Legal & Ethical Gray Areas of Data Collection
30:10 — Public Records, Online Exposure & Digital Footprints
35:50 — OSINT, Investigative Skills & Ethical Boundaries
38:08 — Online Dating, Trust & Digital Verification
39:52 — Why Human Instinct Still Matters
42:02 — Upcoming Speaking Engagements & Future Work
44:26 — Jiu-Jitsu Hygiene, Essential Oils & Closing Laughs
May 26, 2026
43 min

May 19, 2026
May 19, 2026
41 min
“AI won’t take your job” is comforting. But, James McQuiggan explains why that’s not entirely true and what cybersecurity professionals must do next. In this episode of The Cyber Mettle Podcast, Dr. Omar Sangurima and Alyson M. Laderman, Esq. sit down with cybersecurity veteran James McQuiggan to discuss the uncomfortable reality of AI disruption, workforce resilience, human risk, deepfakes, and the future of cybersecurity careers.James brings more than 25 years of experience across cybersecurity, IT, SCADA systems, incident response, security awareness, AI, and cyber threat intelligence. Formerly a CISO Advisor at KnowBe4 and now founder of Apparent Security, James shares candid insights on:
Whether AI can actually replace cybersecurity jobs
Why repetitive work is most at risk
The rise of “vibe coding” and AI-generated software
Why human oversight still matters in cybersecurity
Lessons from Stuxnet, SolarWinds, ransomware, and Change Healthcare
The cybersecurity challenges facing schools and educators
Human risk management and security awareness
The importance of community, mentorship, and paying it forward
Dad jokes as a cybersecurity branding strategy
The conversation blends serious industry insight with humor, career advice, practical AI guidance, and a reminder that cybersecurity is ultimately still about people. If you're navigating AI disruption, building a cybersecurity career, or trying to future-proof your skills, this episode delivers practical perspective without the hype. ABOUT JAMES MCQUIGGAN James McQuiggan is the founder of Apparent Security, cybersecurity educator, speaker, and longtime security advocate with experience spanning IT networking, SCADA systems, incident response, AI security, and human risk management. He previously served as a CISO Advisor at KnowBe4 and teaches Cyber Threat Intelligence at Full Sail University.Subscribe to @TheCyberMettlePodcast to hear human conversations at the intersection of cybersecurity, business, law, AI, and human resilience.CHAPTERS
00:00 – Intro & Welcome
01:19 – James McQuiggan’s Cybersecurity Journey
03:56 – Can AI Take Your Job?
06:41 – Repetitive Work vs Human Judgment
09:39 – Why Humans Still Matter in Cybersecurity
11:11 – AI Mistakes, AWS Stories & Empty Databases
13:52 – Vibe Coding & AI-Generated Software Risks
16:34 – “Ship It Now, Fix Security Later” Returns
17:40 – Do We Need a Cybersecurity “Chernobyl”?
19:10 – Stuxnet & Critical Infrastructure Wake-Up Calls
20:21 – Retail Breaches, PCI & Ransomware Economics
22:32 – Why Some Organizations Still Ignore Cybersecurity
24:36 – School Systems, Human Risk & Teacher Targeting
27:56 – OT, SCADA & Availability in Critical Systems
28:46 – The Story Behind Apparent Security
29:27 – Dad Jokes, Presentations & Security Awareness
31:44 – Theater Background & Public Speaking
33:04 – Why the Company Is Called “Apparent Security”
34:35 – Wrestling, Branding & Memorable Gimmicks
37:18 – AI Career Advice & Paying It Forward
40:23 – Conferences, Community & Cyber Networking
41:58 – “The Most Secure Woman in the World” Joke
43:20 – Final Thoughts & Closing
TOPICS COVERED AI and cybersecurity careers, Human-in-the-loop security, SOC analyst evolution, Deepfakes and generative AI, Cybersecurity education, Security awareness training, Supply chain attacks, Stuxnet and critical infrastructure, Ransomware economics, Vibe coding risks, Community and mentorship in cyber
#CyberSecurity #ArtificialIntelligence #AI #CyberMettle #HumanRisk #Deepfakes #CyberCareers #InfoSec #SecurityAwareness #CyberPodcast #GenerativeAI #SOCAnalyst #Ransomware #CyberLeadership #KnowBe4 KEYWORDS: James McQuiggan Apparent Security Cybersecurity AI jobs Will AI replace cybersecurity jobs AI in cybersecurity Human risk management Cybersecurity careers 2026 Deepfake cybersecurity SOC analyst AI Generative AI security Cybersecurity podcast Cybersecurity leadership Cybersecurity education Vibe coding cybersecurity KnowBe4 cybersecurity AI workforce disruption Cybersecurity mentorship Cybersecurity community Ransomware discussion Stuxnet cybersecurity
May 19, 2026
41 min

May 12, 2026
May 12, 2026
46 min
AI is changing cybersecurity hiring faster than most companies are prepared for. Recruiter Pete Strouse joins @TheCyberMettlePodcast to explain why entry-level roles are disappearing, how GRC is evolving, and what professionals must do to stay relevant. In this episode of The Cyber Mettle Podcast, Omar Sangurima and Alyson Laderman sit down with Pete Strouse, founder of InfoSec Connect and widely known as “The GRC Recruiter,” for an unfiltered conversation about the future of cybersecurity hiring.Pete shares what he’s seeing firsthand across GRC, compliance automation, MSSPs, consulting firms, and cybersecurity startups, including:
Why companies increasingly want senior talent without building junior pipelines;
How AI and automation are reshaping GRC and SOC analyst roles;
The hiring biases most companies won’t openly discuss;
Why networking matters more than ever in cybersecurity;
The growing importance of GRC engineering and AI governance;
How transferable skills can outperform “perfect” resumes;
Why culture and motivation matter more than compensation alone; and
The hidden long-term risks of eliminating entry-level opportunities.
The discussion also explores private equity’s impact on cybersecurity organizations, recruiting realities behind the scenes, and what cybersecurity professionals should focus on now to remain competitive in an AI-driven market. If you work in cybersecurity, GRC, compliance, governance, audit, risk management, or are trying to break into the industry, this episode delivers practical insight from someone who sees hiring trends every single day.
ABOUT PETE STROUSE: Pete Strouse is the founder of InfoSec Connect and a longtime recruiter specializing in Governance, Risk, Compliance (GRC), information security, audit, DFIR, MSSPs, and cybersecurity startups. Known online as “The GRC Recruiter,” Pete has spent more than a decade helping organizations hire cybersecurity talent while advising professionals on career strategy and market trends. Chapters:
00:00 – Introduction and disclaimer
01:11 – Pete Strouse’s background in GRC recruiting
02:04 – Why GRC platforms now need actual practitioners
03:02 – AI, automation, and the disappearing entry-level role
05:09 – The cybersecurity hiring market reality
06:43 – Why companies only want experienced hires
08:17 – Experience requirements and hiring bias
09:29 – Where entry-level cybersecurity talent can still gain experience
11:34 – Networking strategies that actually work
14:13 – Why human connection matters more in the AI era
15:25 – Hiring biases companies rarely admit publicly
17:20 – Private equity’s growing influence in cybersecurity
18:54 – Market consolidation and compliance automation
20:25 – Personal branding and standing out in cybersecurity
22:31 – Transferable skills hiring managers value
24:41 – Why recruiters fight for candidates with strong intangibles
26:15 – Can resumes communicate intangible skills?
27:36 – Do cover letters still matter?
29:38 – Technical skills worth learning right now
32:01 – Why portfolios and proof matter more than resumes
34:50 – The cybersecurity talent pipeline problem
36:12 – Why MSSPs should hire more junior talent
38:32 – Understanding employee motivators
40:19 – Leadership, culture, and retention strategies
44:24 – Loyalty, layoffs, and short job stints
46:09 – How Pete developed his recruiting philosophy
48:31 – Pete’s advice for fixing cybersecurity hiring
49:12 – Final thoughts and closing
#CyberSecurity #GRC #AI #CyberJobs #InfoSec #CyberCareers #GovernanceRiskCompliance #CybersecurityLeadership #Compliance #RiskManagement #CybersecurityHiring #AIinCybersecurity #CyberMettlePodcast
KEYWORDS: cybersecurity hiring, GRC careers, AI in cybersecurity, cybersecurity recruiting, Pete Strouse, InfoSec Connect, cybersecurity jobs, entry level cybersecurity, GRC engineering, cybersecurity workforce, cybersecurity talent shortage, AI automation jobs, compliance automation, cybersecurity leadership, cybersecurity recruiting trends, governance risk compliance, cybersecurity mentorship, private equity cybersecurity, AI governance, cybersecurity networking
May 12, 2026
46 min





