The B2B Podcast Index
Index
All categories
MarketingSalesSaaSFinanceHROpsLeadershipCustomer SuccessAI & DataProductStartups & FoundersRevOpsEngineering & DevTools
MethodologySubmit
Best of:MarketingSalesSaaSFinanceHROpsLeadershipCustomer SuccessAI & DataProductStartups & FoundersRevOpsEngineering & DevTools
An independent project byFame
SearchBest episodesGuestsInsightsMethodologySubmit a podcast
#427Genealogy of Cybersecurity - Startup Podcast77.0 / 100Get badge
← The Index
Genealogy of Cybersecurity - Startup Podcast artwork
Engineering & DevToolsNEW this period

Genealogy of Cybersecurity - Startup Podcast

Hosted by Paul Shomo

Interviews with founders, startup-advising CISOs, venture capitalists, and analysts discussing the issues of cybersecurity, new threats, and emerging technology.

17 episodes · publishes fortnightly · latest 2023-10-23 · ~25 min/episode

Rank

#427

Substance

77.0

/ 100

Breakdown

Scored 2026-07
Updated monthly

Engineering & DevTools rank

#49 of 289

Best B2B Engineering & DevTools Podcasts →

Across the index

#427 of 6182

Substance

Top 7%

outscores 93% of the index

Why it scores where it does

Genealogy of Cybersecurity - Startup Podcast ranks #427 on The B2B Podcast Index with a substance score of 77.0 out of 100, scored across 5 recent episodes. It scores highest on guest caliber and insight density. Yoni is a co-founder/CEO of Valence Security with prior experience building and exiting a cybersecurity startup (SCADA Fence) and military cyber roles, giving him legitimate practitioner credibility. However, he is primarily a vendor pitch guest rather than a battle-hardened operator reflecting on lessons learned at a major organization, and the conversation doesn't extract enough of his hard-won operational experience.

The five-dimension breakdown

Averaged across 5 recently scored episodes, with cited evidence.

Insight Density

16.0 / 20

The episode covers several concrete technical concepts - shadow SaaS integrations, OAuth token theft via vendor compromise (Heroku/CircleCI), decentralized IT vs. centralized security, and the difference between posture management and integration-layer security. However, significant portions repeat the same shadow integration concept across multiple explanations, and the discussion lacks novel depth on remediation mechanics or financial impact metrics that would help operators prioritize risk.

“They breached organizations like Heroku and traverse the iron circle CI, which are very legitimate vendors that most organizations in the world would trust with access to their code repositories. They stole their OAuth tokens and API keys, and they leveraged them in order to gain unauthorized access to GitHub repositories”

“The difference between what we're doing and what the more password management solutions are doing is that we go beyond that. We look at third party integrations, OAuth connected applications, and third party apps managed identities”

Originality

14.6 / 20

The framing of lateral SaaS-to-SaaS integrations as a distinct security surface is relatively fresh and underexplored compared to traditional identity/access and posture management. However, the core insights (decentralized IT creates risk, vendors get breached, shadow tools proliferate) are known within security circles. The guest avoids strong contrarian positions and doesn't challenge conventional thinking in unexpected ways.

“In the modern decentralized IP model, where every business user is adopting and managing their best of breed SaaS, IT and security don't really have the full control and visibility into all the changes that are made within these applications”

“The vast majority of companies in the world never go and off board these unnecessary vendors”

Guest Caliber

18.0 / 20

Yoni is a co-founder/CEO of Valence Security with prior experience building and exiting a cybersecurity startup (SCADA Fence) and military cyber roles, giving him legitimate practitioner credibility. However, he is primarily a vendor pitch guest rather than a battle-hardened operator reflecting on lessons learned at a major organization, and the conversation doesn't extract enough of his hard-won operational experience.

“My name is yoni. I'm one of the cofounders and the CEO of valence”

“Before I started a company called the SCADA fence focused on industrial IoT cybersecurity. And beforehand, they served for several years in the morning intelligence forces in various cyber related positions during the military service”

Specificity & Evidence

14.4 / 20

The episode names specific real-world breach cases (Heroku/CircleCI OAuth token theft, LastPass, SolarWinds, GitHub) and real tools (Gong, Calendly, Office 365, Zapier, Microsoft Power Platform). However, there are no concrete metrics on breach frequency, financial impact, remediation timelines, or customer data (e.g., how many shadow integrations a typical Fortune 500 discovers, what % lead to breaches). The depth of case-study analysis is shallow.

“They breached organizations like Heroku and traverse the iron circle CI”

“Even GitHub reach directly LastPass was preached over the past couple of last year a few times”

Conversational Craft

14.0 / 20

The host (Paul Shomo) asks solid architectural questions - how Valence differs from posture management, what data flows laterally, why centralized security fails with decentralized IT - and attempts to clarify the mesh concept. However, the host rarely pushes back on claims, accepts vendor framing uncritically, and doesn't challenge the guest on remediation trade-offs, customer friction, or whether the decentralized security model he pitches is actually feasible at scale.

“Could you kind of describe what you're being calling the shadow SaaS assess integrations problem?”

“Are you more on the detection response site or are you more on the protection side?”

Standout episodes

  • Ep 11. Valence Security on SaaS-to-SaaS Mesh, Shadow Integrations and Generative AI

    2023-08-08

    82
  • Ep 13. Zama on the Holy Grail of AI Privacy, Fully Homomorphic Encryption

    2023-09-12

    78
  • Ep. 15 Founder Mike Fey on Incubating Startups, AI and the Future of Web Browsing

    2023-10-10

    76

Rank over time

First period on the Index - history builds from here.

Episodes

9 scored on substance · 17 tracked in total.

  • Ep 16. Varun Badhwar on Pioneering Security Posture Management, and the Story of RedLock

    2023-10-23 · 28 min

    74 / 100
  • Ep. 15 Founder Mike Fey on Incubating Startups, AI and the Future of Web Browsing

    2023-10-10 · 24 min

    76 / 100
  • Ep 14. Privacy is in the Code: Relyance AI's Solution for DevOps Data Flows

    2023-09-25 · 29 min

    75 / 100
  • Ep 13. Zama on the Holy Grail of AI Privacy, Fully Homomorphic Encryption

    2023-09-12 · 29 min

    78 / 100
  • Ep 11. Valence Security on SaaS-to-SaaS Mesh, Shadow Integrations and Generative AI

    2023-08-08 · 24 min

    82 / 100
  • Ep 10. Endor Labs on Code Vulnerabilities, Sketchy Open Source Developers, and Software Supply Chain

    2023-07-24 · 27 min

    85 / 100
  • Ep 9. Concentric AI on NLP, ChatGPT, and Data Security Posture Management

    2023-07-11 · 22 min

    85 / 100
  • Ep. 8 CISO Sebastian Goodwin on Advising DSPM and Automation Startups

    2023-06-26 · 31 min

    81 / 100
  • Ep 7. Security Practitioner Trends from 2,400 RSA Conference Submissions

    2023-06-13 · 19 min

    75 / 100

Frequently asked

What is Genealogy of Cybersecurity - Startup Podcast's substance score?
Genealogy of Cybersecurity - Startup Podcast scores 77.0 out of 100 for substance and ranks #427 on The B2B Podcast Index. That puts it ahead of 93% of the B2B podcasts we rank and #49 of 289 in Engineering & DevTools. The score reflects insight density, originality, guest caliber, specificity and conversational craft across recent episodes - not downloads.
Is Genealogy of Cybersecurity - Startup Podcast worth listening to?
Yes - Genealogy of Cybersecurity - Startup Podcast outscores 93% of the B2B engineering & devtools podcasts and shows we rank on substance, so a engineering & devtools operator is likely to come away with something useful.
Who hosts Genealogy of Cybersecurity - Startup Podcast?
Genealogy of Cybersecurity - Startup Podcast is hosted by Paul Shomo.
How often does Genealogy of Cybersecurity - Startup Podcast publish?
Genealogy of Cybersecurity - Startup Podcast publishes fortnightly, has 17 episodes, released its most recent episode on 2023-10-23.
Which Genealogy of Cybersecurity - Startup Podcast episode should I start with?
Our highest-scoring recent episode is "Ep 11. Valence Security on SaaS-to-SaaS Mesh, Shadow Integrations and Generative AI" (82/100) - a good place to start.

Show off your #49 rank in Engineering & DevTools

Add this badge to your site - it links back here and updates automatically as you rank.

Ranked #49 on The B2B Podcast Index
Embed code
<a href="https://index.fame.so/show/genealogy-of-cybersecurity-startup-podcast" target="_blank" rel="noopener">
  <img src="https://index.fame.so/badge/genealogy-of-cybersecurity-startup-podcast/badge.svg" alt="Ranked #49 on The B2B Podcast Index" width="360" height="136" />
</a>
Markdown & other formats →

Track Genealogy of Cybersecurity - Startup Podcast's rank

Get an email whenever this show moves up or down the Index. Monthly at most, no spam.

Listen / subscribe:WebsiteRSS

Guests who've appeared

Varun Badhwar · 2Mike FeyAbhi SharmaBenoit Chavallier MamesYoni ShohetKarthik ChristianSebastian GoodwinBritta Glade

Topics this show covers

The themes that come up most across this show's episodes.

CASB (Cloud Access Security Broker) · 2Redlock · 2Large language models · 2Supply chain security · 2Data Security Posture Management (DSPM) · 2Cloud security posture management (CSPM)Palo Alto Prisma CloudAWS S3 bucket misconfigurationCloud Security Intelligence (CSI) research teamAPI-driven security assessmentSalesforce.com SaaS migrationCipherCloudTwistlock (container security)Island (enterprise browser)Quantum computing encryption threatsChatGPT and OpenAI data learning risksGrammarly privacy concernsMITRE Atlas (ML attack framework)

More Engineering & DevTools podcasts

See all →
  • Mik + One

    Dr. Mik Kersten: Author of Project to Product and Founder and CEO of Tasktop

    96.0
  • DevOps Daily with Fexingo

    Fexingo

    91.0
  • The Developer Tools Podcast with Fexingo

    Fexingo

    90.4
  • Rust in Production

    Matthias Endler

    90.0
  • mnemonic security podcast

    mnemonic

    88.8
  • Software Unscripted

    Richard Feldman

    88.0

Similar shows

Podcasts that dig into the same topics.

  • B2B Marketing with Fexingo

    Fexingo

    83.0
  • AI Security, Cyber Risk, and Cloud Strategy on ClearTech Loop

    ClearTech Research / Jo Peterson

    74.0
  • The SaaS Revolution Show

    The SaaS Revolution Show, Alex Theuma

    71.0
  • Amazic

    Amazic

    59.0
  • B2B SaaS Talks with Fexingo

    Fexingo

    84.4
  • The Road to Accountable AI

    Kevin Werbach

    84.0