Listen "Mandy Andress: Assume Breach, High Fidelity Alerts and Guardrails for AI Agents"
Episode Synopsis
Andy sits down with Mandy Andress (CISO, Elastic) who has been working with deception technology since the early days of honeypots and honeynets.Mandy brings a CISO's perspective on why canaries deserve a much larger role in modern security programs, and shares her views on how the fundamentals of detection are shifting as environments become more complex and threats evolve.Timestamps:00:00 Intro02:05 Honeypots vs canaries—different objectives, different priorities05:22 Why assume breach is foundational in modern security10:45 High fidelity alerts: reducing time to investigation15:50 Practical canary deployments—S3 buckets, file shares, and cloud accounts18:30 No-code vulnerabilities and the coming security challenges19:55 AI agents going rogue—using canaries as guardrails22:11 What to communicate internally about your canary program26:16 Best advice: just get started—it's simpler than you think (edited)
ZARZA We are Zarza, the prestigious firm behind major projects in information technology.