The B2B Podcast Index
Index
All categories
MarketingSalesSaaSFinanceHROpsLeadershipCustomer SuccessAI & DataProductStartups & FoundersRevOpsEngineering & DevTools
MethodologySubmit
Best of:MarketingSalesSaaSFinanceHROpsLeadershipCustomer SuccessAI & DataProductStartups & FoundersRevOpsEngineering & DevTools
An independent project byFame
SearchBest episodesGuestsInsightsMethodologySubmit a podcast
Index/Ops/Security & GRC Decoded
Security & GRC Decoded artwork

Rethinking Risk: Data-Driven Decisions for Modern CISOs ft Tony Martin-Vegue

Security & GRC Decoded · 2025-10-16 · 1h 0m

0:00--:--

Topics in this episode

Compliance automationCyber risk quantificationgrcTony Martin-VegueFAIR Institute

Episode notes

In this episode, Raj Krishnamurthy speaks with Tony Martin-Vegue , seasoned risk practitioner, speaker, and co-chair of the FAIR Institute San Francisco chapter. Tony shares decades of lessons learned from leading cyber risk management at Netflix , Gap , and other major enterprises - showing how to move from qualitative heat maps to quantitative insights that drive smarter business decisions. He breaks down Monte Carlo simulations, risk modeling, and the six levers that influence risk - all through a practical, approachable lens. Tony also explores how generative AI is transforming risk quantification and what every CISO, analyst, and engineer can do today to make risk measurable, actionable, and business-aligned. Key Takeaways CRQ doesn’t require perfection - start with what you have and refine over time. The most effective risk programs focus on directionally correct data, not precision. Good risk scenarios clearly define asset, threat, and effect to avoid misalignment. Generative AI accelerates scenario development, data research, and model creation. CISOs should demand more from risk teams - move beyond “pick a color” heat maps.

Related episodes across the Index

Other episodes covering the same guests and topics, from across The B2B Podcast Index.

  • You Can't Beat Wise on FX. So Now You Partner With Them | Samarth Bansal, General Manager at Wise PlatformPurpose Driven FinTech · on Compliance automation85 / 100
  • Datos Insights on How AI, Faster Payments, and Modernization Are Transforming BankingPayments Nerds · on Compliance automation84 / 100
  • Why Trade Compliance Fuels Growth, Not FrictionSupply Chain Optimizers · on Compliance automation84 / 100
  • The Progressive Firm Pod Podcast S2E5: Rolling out tech without rattling clientsAccountingWEB · on Compliance automation76 / 100
  • Practical Strategies for Thriving Amidst Disruption With Chad BlackburnLevelUp Podcast · on Compliance automation75 / 100
  • How One CPA Firm Is Leading Firm-Wide AI Adoption NowAccounting Voices · on Compliance automation63 / 100

More from Security & GRC Decoded

All episodes →
  • The Evolution of Modern GRC ft. James Huang, Head of GRC @ Gong86 / 100
  • The Trust Gap in AI: Why Agents Need a New Certification Model ft Rajiv Dattani & David Meyer @ AIUC76 / 100
  • Beyond Checkbox Compliance: Why GRC Must Become an Engineering Discipline ft Sheron Chakalakal, Head of GRC @ UiPath88 / 100
  • From Compliance Theater to GRC Infrastructure: Why AI Breaks Traditional GRC ft Jasmine Kaur, Principal of Security & Assurance Engineering @ CoreWeave96 / 100
  • The GRC Illusion: Why Third-Party Risk Is Still Broken ft Val Dobrushkin, Director of GRC @ Tricentis86 / 100
Explore the best B2B Ops podcasts →
All Security & GRC Decoded episodes →