The B2B Podcast Index
Index
All categories
MarketingSalesSaaSFinanceHROpsLeadershipCustomer SuccessAI & DataProductStartups & FoundersRevOpsEngineering & DevTools
MethodologySubmit
Best of:MarketingSalesSaaSFinanceHROpsLeadershipCustomer SuccessAI & DataProductStartups & FoundersRevOpsEngineering & DevTools
An independent project byFame
SearchBest episodesGuestsInsightsMethodologySubmit a podcast
Index/Ops/Security & GRC Decoded
Security & GRC Decoded artwork

Why Security And GRC Teams Must Act Like Service Teams ft Jiphun Satapathy from Medallia

Security & GRC Decoded · 2025-08-05 · 1h 13m

0:00--:--

Topics in this episode

CybersecurityCISOgrcinsider riskstartup advice

Episode notes

Jiphun Satapathy has built and scaled security organizations at AWS , Snowflake , and now Medallia . In this episode, he joins our host Raj to explore the evolving role of CISOs as strategic business leaders . They discuss the importance of treating security as a service organization , how to handle vendor noise , and why insider risk is often overlooked . You’ll hear practical advice for security and GRC leaders working in AI-first , high-growth environments - and how to maintain trust across engineering, compliance, and executive teams . Key Takeaways Security as a Service Function : Security should empower - not block - the business. Jiphun shares how his team supports product, engineering, and sales. Vendor Engagement Matters : CISOs who ignore vendors miss out on innovation. But filtering the noise is key. Insider Risk is Real : Not rogue employees, but everyday developer behavior is a top source of risk. Modern GRC Requires Technical Fluency : Especially in AI-first companies, GRC teams must understand the tech stack to stay relevant. Earn Trust Through Action: Metrics matter, but culture and execution are what build credibility with boards, customers, and engineers.

Related episodes across the Index

Other episodes covering the same guests and topics, from across The B2B Podcast Index.

  • CMMC Level 2: Documentation, Costs, and Audit Readiness | Interview with Bruno LecoqSecure & Simple · on Cybersecurity89 / 100
  • Mastercard CEO: AI Shopping Agents, Machine-to-Machine Payments, and the New Infrastructure of CommerceMotley Fool Hidden Gems Investing · on Cybersecurity88 / 100
  • Moving from Product Partnerships to Revenue: Jira Cooley on Owning the NumberBetween Product and Partnerships · on Cybersecurity76 / 100
  • Pipeline Gives Permission to Invest Big on Brand with Jennifer JohnsonThe B2B CMO Podcast with Jon Miller and Sydney Sloan · on Cybersecurity74 / 100
  • HackShield: Raising the Next Generation of Cyber HeroesThreat Talks · on Cybersecurity
  • Microsoft Defender Vulnerability Management - Simply ExplainedM365.FM · on Cybersecurity

More from Security & GRC Decoded

All episodes →
  • The Evolution of Modern GRC ft. James Huang, Head of GRC @ Gong86 / 100
  • The Trust Gap in AI: Why Agents Need a New Certification Model ft Rajiv Dattani & David Meyer @ AIUC76 / 100
  • Beyond Checkbox Compliance: Why GRC Must Become an Engineering Discipline ft Sheron Chakalakal, Head of GRC @ UiPath88 / 100
  • From Compliance Theater to GRC Infrastructure: Why AI Breaks Traditional GRC ft Jasmine Kaur, Principal of Security & Assurance Engineering @ CoreWeave96 / 100
  • The GRC Illusion: Why Third-Party Risk Is Still Broken ft Val Dobrushkin, Director of GRC @ Tricentis86 / 100
Explore the best B2B Ops podcasts →
All Security & GRC Decoded episodes →