Timestamps:
00:00 - Why social engineering AI threats are now more relevant than ever
02:12 - The importance of transparency about what you don't know in cybersecurity
04:25 - The ‘third why’ technique to test real expertise in security conversations
06:40 - How a podcast episode led to a future leadership role at Doppel
08:08 - Bobby's journey from military cybersecurity to startup strategy
09:52 - The early days of Pentagon incident response teams and military innovation
11:45 - De-gaussing hard drives in the 1980s and the evolution of data destruction
13:09 - The FBI's updated wiping standards and data recovery advances
14:16 - The challenge of data forensics and how little data is enough to piece together activity
14:53 - How social engineering tests can be made more realistic and effective
15:49 - The importance of testing controls, not just user awareness
16:46 - Building resilient organizations with layered digital and human defenses
18:46 - Why preventing attacks before they land is critical in AI-driven threats
19:37 - External versus internal controls and the threat from outside-in protections
22:23 - Social engineering as an effort to engineer humans for good or bad
23:42 - How generative AI makes it impossible for users to tell real from fake
24:17 - The alarming rise in convincing, AI-generated phishing emails and calls
25:54 - The necessity of shifting accountability from users to technology
27:19 - AI-to-AI attack scenarios and the future of autonomous cyber conflict
29:34 - Mirroring military AI strategies in digital cyber warfare
31:08 - The role of internet localization and firewalls in a future of AI-enabled conflict
33:41 - How security controls will evolve in an AI-powered world
36:49 - Why security is a business enabler, not just a gatekeeper
41:29 - The history of security’s “catch-up” game and embracing digital transformation
44:47 - The mindset of a cyber mercenary—focusing on outcomes and results
46:45 - The rapid evolution toward zero-day, AI-enabled breaches
49:57 - The four pillars of AI-fueled attacks: hyper-personalization, multi-channel, speed, and volume
51:13 - How a simple online search can make attack success egregiously easy
52:05 - Demonstration of AI-based social engineering at scale, terrifying yet promising defenses
56:41 - Bobby’s closing thoughts: security as outcome-driven and resilient
Doppel: https://www.doppel.com/
LinkedIn: https://www.linkedin.com/in/bobbyjford/
