The B2B Podcast Index
Index
All categories
MarketingSalesSaaSFinanceHROpsLeadershipCustomer SuccessAI & DataProductStartups & FoundersRevOpsEngineering & DevTools
MethodologySubmit
Best of:MarketingSalesSaaSFinanceHROpsLeadershipCustomer SuccessAI & DataProductStartups & FoundersRevOpsEngineering & DevTools
An independent project byFame
SearchBest episodesGuestsInsightsMethodologySubmit a podcast
Index/Engineering & DevTools/Security You Should Know
Security You Should Know artwork

Automating Offensive Security with XBOW

Security You Should Know · 2026-06-01 · 22 min

0:00--:--

Episode notes

In this episode, Nico Waisman , CISO at XBOW , explains how XBOW uses autonomous AI agents to run continuous, incremental penetration testing without triggering false-positive avalanches or taking down production systems. Joining him are Jacob Combs , CISO at Tandem Diabetes Care, and Davi Ottenheimer , president at Flying Penguin . Want to know: Why can't traditional pen tests keep up with modern attack surfaces? How XBOW's attack credit model maps to the way security teams already size testing effort? What stops an autonomous pen testing agent from causing real damage in production? How incremental testing works when a new pull request changes the application? Where XBOW is headed on prompt injection and LLM-specific vulnerabilities? How you audit what the AI actually did during an assessment? What novel vulnerability chains are emerging as AI reasoning models get more capable? Check out the episode for the answers you need. Huge thanks to our sponsor, XBOW

More from Security You Should Know

All episodes →
  • Elevating the SOC with Prophet Security55 / 100
  • Securing AI Agents with CompFly AI
  • Rethinking Tabletops with Reflex Security
  • Securing Mobile Apps with Guardsquare
  • Verifying Identities with Trusona
Explore the best B2B Engineering & DevTools podcasts →
All Security You Should Know episodes →