
Security & GRC Decoded · 2025-05-15 · 55 min
In this episode of Security and GRC Decoded , Raj Krishnamurthy sits down with Andrew Spangler , Director of Security and GRC at Harness , to explore how compliance engineering can go far beyond checkboxes - and actually drive innovation. Andrew shares his journey from building the compliance engineering function at Datadog to scaling automation and visibility across the SDLC at Harness. He dives into how using internal platforms for security workflows (aka “drinking your own champagne”) can unlock time savings and risk reduction, especially in areas like vulnerability management and secure software delivery. Key Takeaways: How compliance automation builds credibility and supports innovation. Lessons from building compliance engineering at Datadog. Harnessing the power of SBOMs and supply chain security. Practical uses of generative AI and ChatGPT for GRC workflows. The future of democratized threat modeling. Advice for new grads entering security and GRC. Podcast recommendations that go beyond the security bubble.
Other episodes covering the same guests and topics, from across The B2B Podcast Index.