ABOUT THIS EPISODE
Asian enterprises remain prime cyberattack targets, with adversaries increasingly bypassing traditional defences through sophisticated delivery models. From AI-generated phishing to software supply chain poisoning, attackers exploit trusted channels and legitimate services to infiltrate networks. These novel approaches demand a fundamental security strategy shift toward containment and resilience rather than prevention alone.
In this PodChats for FutureCISO, Raghu Nandakumara, Vice President of Industry strategy, Illumio, talks about strategies CISOs and security practitioners will want to consider mitigating trust should it be used as an attack vector.
1. How should AI governance evolve to address both the risks of using AI tools and the risks of attackers exploiting AI interest?
2. How would you assess current user training and AI-themed social engineering?
3. What are the SOC implications of attackers increasingly targeting the software acquisition workflow?
4. Strategies to mitigate trust as an attack vector
How should enterprises rethink "trust" in software supply chains when legitimate update mechanisms are being compromised?
5. With AI enabling personalised phishing at machine speed, what role should behavioural controls and containment play where human detection inevitably fails?
6. How do enterprises defend against a campaign where the malware is old and the delivery method is new?
7. For Asian organisations where unsanctioned AI adoption is widespread, how can security teams govern what they cannot see?
8. Does this represent a broader shift in attack patterns that should influence 2027 security investment priorities?
9. 2027 is just around the corner, what is your advice for CISOs as they set in place strategies to mitigate trust as an attack vector, including investment priorities.