The Cyber Security Transformation Podcast

The Cyber Security Transformation Podcast

By Corix Partners

An independent podcast with a different take on what’s happening in the cybersecurity industry and an essential resource for CIOs and CISOs

Drawing on decades of real-life experience, JC Gaillard and his guests share their views on key topics across all cybersecurity domains

The tone of the podcast reflects the alternative approach which has been at the heart of the Corix Partners spirit from the start: Looking beyond the technical horizon into strategy, organisation, governance, corporate culture and the real dynamics of large organisations to deliver real long term protection and value
Available on
Apple Podcasts Logo
Overcast Logo
Pocket Casts Logo
Spotify Logo
Currently playing episode

Series 4 - "Everybody is talking about Cyber Resilience, but what do they really mean?" - Episode 22

The Cyber Security Transformation PodcastOct 12, 2023
00:00
12:13
Series 6 - "The Role of the CISO and Real Governance Dynamics at C-Level" - Episode 24

Series 6 - "The Role of the CISO and Real Governance Dynamics at C-Level" - Episode 24

JC Gaillard ends Series 6 by revisiting a number of topics addressed in earlier episodes around the role of the CISO, authority, accountability and real governance dynamics at C-level.

Nov 27, 202508:33
Series 6 - Launching "The First 100 Days of the New CISO - A Leadership Guide to Lasting Impact" - Episode 23

Series 6 - Launching "The First 100 Days of the New CISO - A Leadership Guide to Lasting Impact" - Episode 23

JC Gaillard talks about his new book "The First 100 Days of the New CISO - A Leadership Guide to Lasting Impact" ; he highlights its structure and why this is truly a blueprint for the next decade of cybersecurity leadership

Nov 20, 202509:17
Series 6 - "First 100 Days of the New CISO: The Context of Cybersecurity Transformation" - Episode 22

Series 6 - "First 100 Days of the New CISO: The Context of Cybersecurity Transformation" - Episode 22

JC Gaillard continues his journey through the "First 100 Days of the New CISO" and focuses on the context of cybersecurity transformation and why it is key to map it from the start

Nov 13, 202513:01
Series 6 - "First 100 Days of the New CISO: Building Trust and Managing Expectations" - Episode 21

Series 6 - "First 100 Days of the New CISO: Building Trust and Managing Expectations" - Episode 21

JC Gaillard continues with his exploration of the "First 100 Days of the New CISO" and highlights why building trust and managing expectations from the start are key to long-term success

Nov 06, 202511:51
Series 6 - "First 100 Days of the New CISO: The Importance of Cultural and Contextual Alignment" - Episode 20

Series 6 - "First 100 Days of the New CISO: The Importance of Cultural and Contextual Alignment" - Episode 20

JC Gaillard continues to revisit the "First 100 Days of the New CISO" and explains why understanding culture and context from the start is more important than early action

Oct 30, 202513:06
Series 6 - "First 100 Days of the New CISO: A Leadership Transition, Not a Technical Project" - Episode 19

Series 6 - "First 100 Days of the New CISO: A Leadership Transition, Not a Technical Project" - Episode 19

JC Gaillard revisits under a leadership lens the "First 100 Days of the New CISO" paradigm that was explored at length in Series 3 of the podcast

Oct 23, 202508:06
Series 6 - "Three More Cybersecurity Clichés That Need Debunking" - Episode 18

Series 6 - "Three More Cybersecurity Clichés That Need Debunking" - Episode 18

⁠JC Gaillard⁠ follows up on the three cybersecurity clichés he discussed in Episode 7 and expands on the topic, and why it is key to go beyond semantics on those matters; read his original article on the theme ⁠here on Forbes

Oct 16, 202508:14
Series 6 - "Zero Trust, Agentic AI, and the Future of Identity Management" - Episode 17 - with guest Mark Jacob

Series 6 - "Zero Trust, Agentic AI, and the Future of Identity Management" - Episode 17 - with guest Mark Jacob

JC Gaillard and guest Mark Jacob from Cyrista look back at zero trust, what it really means for cybersecurity professionals and the impact of Agentic AI on identity and access management

Oct 09, 202519:10
Series 6 - "Role of the CISO: Why It’s Time to Split the Job Before It Breaks the Business" - Episode 16

Series 6 - "Role of the CISO: Why It’s Time to Split the Job Before It Breaks the Business" - Episode 16

JC Gaillard brings together a number of aspects previously discussed on the podcast around the role of the CISO in response to a recent article on CSOonline; read his original article on the theme here

Oct 02, 202511:31
Series 6 - "How Agentic AI Challenges Cybersecurity Fundamentals" - Episode 15 - with guest Mark Jacob

Series 6 - "How Agentic AI Challenges Cybersecurity Fundamentals" - Episode 15 - with guest Mark Jacob

⁠JC Gaillard⁠ and guest ⁠Mark Jacob⁠ from ⁠Cyrista ⁠highlight the multi-dimensional challenges of Agentic AI for cybersecurity professionals, and why good governance from the start is essential

Sep 25, 202513:32
Series 6 - "Cybersecurity Strategic Transformation: Why Is It So Hard?" - Episode 14
Sep 18, 202508:47
Series 6 - "Changing the Dynamics Around Cybersecurity Awareness" - Episode 13

Series 6 - "Changing the Dynamics Around Cybersecurity Awareness" - Episode 13

⁠JC Gaillard⁠ highlights a number of issues in relation with cybersecurity awareness programs and why we might have been doing awareness the wrong way for the last two decades; read his original article on the theme here

Sep 11, 202507:46
Series 6 - "The Future of Cybersecurity Leadership: Breaking the CISO Deadlock" - Episode 12

Series 6 - "The Future of Cybersecurity Leadership: Breaking the CISO Deadlock" - Episode 12

JC Gaillard explores why the traditional CISO role has struggled to evolve and highlights what needs to change; read his original interview on the topic here

Jul 31, 202508:01
Series 6 - "From Risk to Reality: The Board’s New Cyber Mandate" - Episode 11

Series 6 - "From Risk to Reality: The Board’s New Cyber Mandate" - Episode 11

⁠JC Gaillard⁠ revisits once again a number of aspects in relation to the role of the Board around cybersecurity and highlights why it is essential for the conversation to be grounded in reality; read his original interview on the topic here

Jul 24, 202506:21
Series 6 - "The Challenges of Post-Quantum Cryptography" - Episode 10 - with guest Mark Jacob

Series 6 - "The Challenges of Post-Quantum Cryptography" - Episode 10 - with guest Mark Jacob

JC Gaillard and guest Mark Jacob from Cyrista revisit the challenges of post-quantum cryptography, and highlight why it is essential to take it seriously and start acting now

Jul 17, 202518:32
Series 6 - "Organizational Culture is Foundational to Cybersecurity" - Episode 9

Series 6 - "Organizational Culture is Foundational to Cybersecurity" - Episode 9

JC Gaillard highlights the complexities of cybersecurity transformation, emphasizing the importance of leadership, governance, and cultural change; read his original interview on the theme here

Jul 10, 202508:16
Series 6 - "Holding Leadership Accountable Around Cybersecurity" - Episode 8

Series 6 - "Holding Leadership Accountable Around Cybersecurity" - Episode 8

JC Gaillard revisits one more time the role of the Board around cybersecurity, this time in the light of a recent article in the Harvard Business Review; read his original article on the theme here

Jul 03, 202507:02
Series 6 - "Debunking Three Cliches Deeply Entrenched in the Cybersecurity Industry Echo Chamber" - Episode 7

Series 6 - "Debunking Three Cliches Deeply Entrenched in the Cybersecurity Industry Echo Chamber" - Episode 7

JC Gaillard deconstructs three topics which embody the problems still facing the cybersecurity narrative and highlights why it is key to avoid shallow and outdated positions on those matters; read his original article on the theme here on Forbes


Jun 26, 202509:57
Series 6 - "Still Fighting the Wrong Fight? The CISO Paradox in 2025" - Episode 6

Series 6 - "Still Fighting the Wrong Fight? The CISO Paradox in 2025" - Episode 6

JC Gaillard looks back at the CISO Report 2025 from Splunk, the interaction between CISOs and the Board, and the aspects that really matter; read his original article on the theme here

Jun 19, 202506:52
Series 6 - "Can We Really Put a Price on Data Breaches?" - Episode 5

Series 6 - "Can We Really Put a Price on Data Breaches?" - Episode 5

JC Gaillard looks back at the limitations of surveys detailing the costs of data breaches, and re-iterates that cybersecurity cannot just be reduced to a mere numbers game; read his original article on the theme here

Jun 12, 202508:13
Series 6 - "The “What”, the “How” and the “Who” of Change" - Episode 4

Series 6 - "The “What”, the “How” and the “Who” of Change" - Episode 4

JC Gaillard goes back to the dynamics of success and failure around cybersecurity and why it is key to look beyond budgets and investments; read his original article on the theme here

Jun 05, 202508:12
Series 6 - "Cybersecurity Transformation Cannot Be Reduced to a Mere Matter of Investments" - Episode 3

Series 6 - "Cybersecurity Transformation Cannot Be Reduced to a Mere Matter of Investments" - Episode 3

JC Gaillard revisits the importance trust and relationships for CISOs, looking beyond the mere justification of cybersecurity investments; read his original article on the theme here

May 29, 202507:58
Series 6 - "The CISO, the CSO and the Future of the Cybersecurity Organization" - Episode 2

Series 6 - "The CISO, the CSO and the Future of the Cybersecurity Organization" - Episode 2

In this second episode of Series 6, JC Gaillard revisits his views of the role of the CISO and the CSO and the real dynamics of cybersecurity transformation; read his original article on the theme here

May 22, 202509:25
Series 6 - "What Ever Happened with Cybersecurity Strategic Thinking?" - Episode 1

Series 6 - "What Ever Happened with Cybersecurity Strategic Thinking?" - Episode 1

JC Gaillard introduces the first episode in Series 6 of the Cybersecurity Transformation Podcast and highlights the various themes that will be covered in the series; read his original article covering the theme here on the Corix Partners blog

May 15, 202509:53
Series 5 - Final Episode - "A Look Back at the CrowdStrike Incident and the Meaning of Cyber Resilience" - Episode 25

Series 5 - Final Episode - "A Look Back at the CrowdStrike Incident and the Meaning of Cyber Resilience" - Episode 25

In this final episode of the series, JC Gaillard and guest Steve Lamb take another look at the CrowdStrike incident and analyze what cyber resilience needs to mean for businesses.

Oct 17, 202415:43
Series 5 - "A Round-up of Key Issues around Cybersecurity and Generative AI" - Episode 24

Series 5 - "A Round-up of Key Issues around Cybersecurity and Generative AI" - Episode 24

In this episodes, JC Gaillard focuses on the impact generative AI could be having on cybersecurity practices and goes back to number of key aspects he has been exploring in earlier episodes in this series.

Oct 03, 202408:40
Series 5 - "The Cybersecurity Spiral of Failure: What It Is, and How to Break out of It" - Episode 23
Sep 24, 202413:07
Series 5 - "The Way Forward with Cybersecurity Operating Models" - Episode 22
Sep 17, 202409:39
Series 5 - "Three Questions and a Reality Check around the Role of the Board with Cybersecurity" - Episode 21
Sep 10, 202409:01
Series 5 - "Post-Quantum Cryptography: Why It Matters, and What to Do Now?" - Episode 20

Series 5 - "Post-Quantum Cryptography: Why It Matters, and What to Do Now?" - Episode 20

In this episode, JC Gaillard and guest Steven O'Sullivan from Cystel look at the challenges of post-quantum cryptography in the light of the release by the U.S. NIST of new standards in that space

Sep 03, 202419:38
Series 5 - "Teaching the Board to Talk to CISOs" - Episode 19
Aug 27, 202407:11
Series 5 - "Cyber Resilience: Real New Practice or Just a Coat of Paint on Some Old Concepts?" - Episode 18
Aug 20, 202408:05
Series 5 - "Using AI to Talk to the Board about Cyber: Clever Ploy or False Good Idea?" - Episode 17

Series 5 - "Using AI to Talk to the Board about Cyber: Clever Ploy or False Good Idea?" - Episode 17

In this episode, JC Gaillard revisits the intersection between generative AI and cybersecurity, in a complement to the topics explored in episodes 6 and 12 in the first part of Series 5

Aug 12, 202408:08
Series 5 - "The CrowdStrike Outage Under the Spotlight: Cybersecurity Incident ? or Not?"" - Episode 16
Aug 05, 202416:25
Series 5 - "Cybersecurity: The Key Ingredient is Trust, not Money" - Episode 15

Series 5 - "Cybersecurity: The Key Ingredient is Trust, not Money" - Episode 15

In this episode, JC Gaillard analyses a recent article from Hacker News and highlights his take on the 5 key questions CISOs should ask about their cybersecurity strategy; read his original article on the theme ⁠here

Jul 30, 202407:07
Series 5 - "The Misleading Messages of the Technology Industry around Cybersecurity" - Episode 14
Jun 06, 202408:32
Series 5 - "Knee-Jerk Reactions to Data Breaches are damaging the case for Cybersecurity" - Episode 13
May 30, 202408:24
Series 5 - "Generative AI in Cybersecurity: Incremental or Disruptive Innovation?" - Episode 12
May 23, 202409:32
Series 5 - "Large Enterprises Can’t Cope With More Cybersecurity Tools" - Episode 11

Series 5 - "Large Enterprises Can’t Cope With More Cybersecurity Tools" - Episode 11

In this episode, JC Gaillard goes back to the topic of security tools proliferation discussed in previous series and highlights why it should be central to the role of the CISO to build a vision and a product strategy, and drive the decluttering of cybersecurity landscapes

May 16, 202407:35
Series 5 - "Leadership: The Real Secret Sauce for the CISO" - Episode 10
May 09, 202412:60
Series 5 - "Time to Start Focusing on the Decluttering of the Cyber Security Toolkit Landscape" - Episode 9
May 02, 202412:24
Series 5 - "Why Are Security Vendors So Obsessed with Board Attention?" - Episode 8
Apr 25, 202407:48
Series 5 - "A Look Back at the Role of the Board around Cybersecurity Oversight" - Episode 7
Apr 18, 202409:53
Series 5 - "Generative AI and Cybersecurity: The Big Untold Problem" - Episode 6
Apr 11, 202408:28
Series 5 - "From Threat to Risk: A "threat" is not a "risk" if you are well protected" - Episode 5
Apr 04, 202409:22
Series 5 - "Looking Back at the Role of the Virtual CISO and the Reality of Small Firms" - Episode 4

Series 5 - "Looking Back at the Role of the Virtual CISO and the Reality of Small Firms" - Episode 4

In this episode, ⁠JC Gaillard⁠ looks back at the role of the virtual CISO and in particular why many small firms would often benefit from looking internally first, before jumping to externalised cybersecurity solutions; read his original article on the theme ⁠⁠here

Mar 27, 202407:50
Series 5 - "Cybersecurity is Not Working: Time to Try Something Else" - Episode 3

Series 5 - "Cybersecurity is Not Working: Time to Try Something Else" - Episode 3

In this episode, JC Gaillard continues his journey across cybersecurity governance matters, and in particular he goes back to the construction of the role of the CISO and why it is essential to put it back in its historical perspective; read his original article on the theme ⁠here

Mar 21, 202409:50
Series 5 - "Don’t Expect Cybersecurity to Work in Firms where Nothing Does" - Episode 2

Series 5 - "Don’t Expect Cybersecurity to Work in Firms where Nothing Does" - Episode 2

In this episode, JC Gaillard continues to explore cybersecurity governance and in particular, why it is essential to place it in a broader corporate governance context; read his original article on the theme ⁠here

Mar 14, 202408:22
Series 5 - "Cybersecurity Governance, Compliance and Window-Dressing" - Episode 1

Series 5 - "Cybersecurity Governance, Compliance and Window-Dressing" - Episode 1

In this first episode of the series, JC Gaillard explores issues around cybersecurity governance and ownership and in particular, why cyber resilience needs clear accountability from the top; read his original article on the theme here


The UK Government "call for views" around a proposed "Cyber Governance Code of Practice" mentioned in the episode can be found here

Mar 07, 202410:34
Series 4 - Final Episode in the Series - "One Last Look at the Role of the Board around Cybersecurity" - Episode 24
Oct 26, 202311:59