The B2B Podcast Index
Index
All categories
MarketingSalesSaaSFinanceHROpsLeadershipCustomer SuccessAI & DataProductStartups & FoundersRevOpsEngineering & DevTools
MethodologySubmit
Best of:MarketingSalesSaaSFinanceHROpsLeadershipCustomer SuccessAI & DataProductStartups & FoundersRevOpsEngineering & DevTools
An independent project byFame
SearchBest episodesGuestsInsightsMethodologySubmit a podcast
Index/AI & Data/What's Up with Tech?
What's Up with Tech? artwork

How GTT Rebuilt Global Security For The AI Era

What's Up with Tech? · 2026-06-25 · 25 min

0:00--:--

Key moments - from our scoring

Substance score

71 / 100

Five dimensions, 20 points each

Insight Density14 / 20
Originality13 / 20
Guest Caliber17 / 20
Specificity & Evidence15 / 20
Conversational Craft12 / 20

GTT Communications has fundamentally redesigned its global security posture around zero-trust principles, eliminating wide-area and local-area networks entirely and implementing micro-segmentation where employees must VPN to access any resources - even from offices. Under James Karimi's leadership as CIO and CISO, the company built proprietary security infrastructure including the Envision platform (a software-defined edge solution supporting SD-WAN, routing, and firewall services) and three AI factories in New York, London, and Prague running NVIDIA H100/200 GPUs. These factories power an advanced network detection and response system that ingests logs, netflows, and packet captures to detect behavioral anomalies across 10,000+ hosts using dynamic per-host language models, achieving 90%+ accuracy while reducing noise by 32%. GTT also deployed AI operators for CVE analysis (matching firmware against CVE databases twice daily with mitigation recommendations), resume screening (reducing recruiting review time by 60%), and invoice processing (cutting a two-week manual process to minutes). The approach prioritizes security-first AI governance with role-based access controls, operator isolation, and secure orchestration layers - principles Karimi emphasizes are essential for avoiding the failures seen at larger enterprises attempting poorly-governed AI deployments.

Key takeaways

  • →GTT eliminated traditional network perimeters entirely, ripping out WANs and LANs to implement zero-trust micro-segmentation where even office employees must VPN and face firewall contexts between applications with granular, documented TCP/UDP rules.
  • →The Envision Edge platform runs multiple vendor services (SD-WAN, routing, firewall) as software images on standardized hardware, enabling vendor interoperability without hardware replacement every software cycle and reducing customer downtime.
  • →GTT's AI factories use NVIDIA GPUs to run dynamic per-host language models that detect behavioral anomalies (new daemons, unusual login times, new commands) with 90%+ accuracy, catching threats like Salt Typhoon that would have been invisible with traditional monitoring.
  • →Successful AI implementation requires governance-first approach: intake via PMO, subject-matter experts from requesting departments, security/IT approval of datasets, and financial analysis of cost vs. benefit - with benefits exceeding simple efficiency gains.
  • →Machine-speed threat detection requires machine-speed mitigation; GTT's autonomous SOC operators perform real-time mitigation via virtual agents, APIs, or ticketing systems, not human-speed incident response.

Guests

James Karimi

Topics in this episode

Zero trust architectureMicro-segmentationMITRE ATT&CK frameworkGTT CommunicationsNVIDIA AI factoriesEnvision Edge platformNetwork detection and response (NDR)AI observability agentCVE analyzerDynamic language models (per-host SLMs)

Questions this episode answers

How did GTT implement zero-trust networking without traditional WANs and LANs?

GTT ripped out all WAN and LAN infrastructure and requires all employees - even in offices - to VPN into the network to access any data or applications, combined with firewall contexts (demilitarized zones) between applications to eliminate lateral movement.

What is GTT's Envision Edge platform and how does it differ from traditional networking hardware?

Envision Edge is a software-defined box that runs multiple vendor services (SD-WAN, firewall, custom proprietary routing) as interchangeable software images on standardized hardware, eliminating the need to replace hardware when software reaches end-of-life and allowing vendor changes without platform swaps.

How does GTT's AI-powered network detection system catch threats like Salt Typhoon?

The system creates dynamic per-host language models that monitor behaviors like new daemons spinning up, unusual login times, and new commands executed by engineers; it would have immediately detected Salt Typhoon's unauthorized daemon activity that had zero visibility three years ago.

What governance model did GTT use to successfully deploy AI factories at scale?

GTT implemented intake via PMO, subject-matter experts from requesting departments, security/IT approval of datasets, and financial analysis requiring benefits beyond simple efficiencies; the company also paused for six months to map all data sources before building any AI systems.

What specific AI use cases has GTT delivered besides security and threat detection?

GTT built a resume analyzer that reduced recruiting time by 60% and accelerated onboarding by 10-14 weeks, and an invoice processing AI operator that reduced a two-week manual process to minutes with full compliance against European employment law.

What our scoring noted

Our reviewer’s read on each dimension, with quotes from the episode.

Insight Density

14 / 20

The episode delivers concrete architectural and operational insights (zero-trust micro-segmentation, AI factory governance models, CVE-analyzer with real-time mitigation, dynamic SLM scaling) that a security leader would find immediately applicable. However, it mixes substantive technical depth with some repetitive framing and marketing language ('game changer,' 'blockbuster approach') that dilutes density. The guest avoids obvious platitudes in favor of specific implementation details, but pacing meanders and some claims lack supporting metrics.

we ripped out our wide area networks, we ripped out our local area networks, and we have actually zero lateral movement capabilities within the organization today
we created ingestion models to ingest any type of log, any type of net flow, and any type of packet capture. Then we created operators that actually review, given AI analysis on any event that's notable

Originality

13 / 20

The episode presents genuinely non-obvious approaches - operator siloing in AI systems to prevent over-permissiveness, dynamic per-host SLM models that retrain every 100 events, and the decision to remove WAN/LAN entirely rather than defend perimeters. These contradict common industry playbooks. However, the zero-trust and AI governance frameworks themselves are not new; the originality lies in GTT's specific implementation choices rather than foundational thinking.

we found that operators they love to talk, they love to tell each other what they do, how they do it. And what they do is they start training each other so that you now have an operator that was intended to do one thing and now it's over permissive
every subsequent 100 events learned from that host, the model retunes and retrains. So if you have 10,000 hosts in your environment, you'll have 10,000 SLM models running within our platform

Guest Caliber

17 / 20

James Karimi is a rare guest: CIO/CISO for a tier-one telecom operator (third largest globally) with real P&L accountability, 44 M&A integrations, and a decade-plus tenure. He speaks from deep operational scale - 16 Gbps telemetry, 10,000+ hosts, global regulatory constraints - not theory. His credibility is strengthened by NVIDIA and partner validation. This is a practicing infrastructure operator, not a consultant or thought-leader.

I'm James Karimi. I am the CIO and CISO for GTT Communications. GTT is now the third largest tier one internet operator in the world
I've been here at GTT for well over a decade

Specificity & Evidence

15 / 20

The episode includes concrete numbers and technical specifics: 16 Gbps telemetry ingestion, 32-64 GPUs per AI factory, 32% noise reduction, two-week cash-app processing reduced to minutes, six months of data documentation, 10,000+ SLM models per host, 10-14 week faster onboarding. However, many claims lack supporting data - 'high 90s accuracy' is vague, revenue impact metrics are mentioned but not detailed, and some architectural decisions lack quantified justification. Salt Typhoon example adds credibility but is illustrative rather than evidential.

our telemetry data alone is somewhere in the realm of 16 gigabits per second uh all the time
we've probably cut out about 32% of noise at the last uh check we made

Conversational Craft

12 / 20

Evan asks competent setup questions and follows on AI governance and architecture, but rarely pushes back, asks for supporting data, or probes inconsistencies. When James makes claims (e.g., 'one of few non-hyperscalers doing this successfully'), Evan accepts without challenge. There are no sharp follow-ups on failure cases, trade-offs, or cost-benefit tradeoffs. The host enables a fluent narrative but doesn't create productive friction or test claims rigorously. Questions are softball invitations to expand, not pressure tests.

Yeah, it's an amazing proposition
Fantastic. Uh, love the insider perspective here

Conversation analysis

Computed from the transcript - who did the talking, and the words that came up most.

Most-used words

data26security19network14built11system11operators10operator9call9different9governance9type8role7access7systems7area7envision7

Episode notes

Interested in being a guest? Email us at admin@evankirstel.com The fastest attackers don’t “hack” like they used to, they drift through systems, blend into normal behavior, and move at machine speed. That reality forces a hard question: if you cannot defend the perimeter anymore, what should a modern security architecture look like? We sit down with James Karimi, CIO and CISO of GTT Communications, one of the world’s largest tier one internet operators, to break down the practical moves behind a containment-first strategy. We talk candidly about the human layer of risk, why awareness training still matters, and why GTT chose a draconian but effective approach: eliminating lateral movement so a compromise stays small. James also shares what it really takes to “unflatten” applications with firewall contexts, explicit network rules, and the painful discovery work most teams underestimate. From there, we zoom into the GTT Envision platform and how software-based service chaining at the edge improves resiliency, agility, and managed security.

Full transcript

25 min

Transcribed and scored by The B2B Podcast Index.

Hey everybody, excited to speak with the global networking and security powerhouse, that is GTT, and where DTT is headed in an AI-driven world, with James thinking about uh his role as a security leader, technologist, and CISO, and how AI is both a risk and an opportunity in this new dynamic. James, how are you? I'm great. Evan, how are you?

Great. Good to see you. Thanks for being here. Before we dive into the topics at hand, maybe introduce yourself and how do you describe GTT these days?

Absolutely. I'm James Karimi. I am the CIO and CISO for GTT Communications. GTT is now the third largest tier one internet operator in the world.

But we have a plethora of security and managed networking services that we overlay on top of those services such as internet that we provide to customers. We have a global reach in over 100 countries, and we can provide secure data access to anywhere in the world, to any customer. Yeah, it's an amazing proposition. And talk a little bit about your role as both CIO and CSO, wearing two hats, uh, and uh your journey at GTT.

Yes, I've been here at GTT for well over a decade. I started here uh from a company called UNSI, which was acquired. GTT was a very, very acquisitive company. We did 44 acquisitions under my tenure, of which I had the uh role of integrating.

Uh, but originally I led the network and the voice teams and the global network expansion, building out the tier one operation. Uh, always led IT for GTT and in previous companies where I was CTO. So I always had IT under me here, but officially moved into the CIO, CIS role in 2017 when the company really uh took off in growth with some large acquisitions such as Hibernia Networks and Interroot, which everyone was aware of. Uh and been leading IT, systems engineering, DevOps, uh, as well as three security departments and the SOC for the last uh eight, nine years here.

Wow, what a journey. And the mission is pretty singular to connect people and agents to data and applications anywhere in the world. It sounds so simple, but there's a lot behind it. Uh, talk about um some of the key things that keep you up at night uh in terms of planning and delivering effective security globally.

Oh, absolutely. I I think look, for for most folks in the security role, what keeps us up most nights is our employee base. Uh it doesn't matter how much we build at the edge of our perimeter or how much tooling we put in place, it's always that accidental oops that happened by somebody clicking on something, somebody going to a site that we hadn't blocked and they somehow got there and introduced some type of malicious activity into our environments. So we're very, very keen on uh focusing on awareness training and continuing to do.

We we like to do probably two a month to keep it fresh in everyone's mind versus the traditional way of doing one large one every October during cyber week. Uh so that that's been very helpful here. But I think the biggest thing we came to a realization uh probably about three years ago that there is no way to defend the perimeter anymore. Uh moving into the uh AI era with things moving at machine speed, uh, you need machine speed to detect.

But even with that detection, we really move towards a containment strategy. And what I mean by a containment strategy, we actually went very draconian. We ripped out our wide area networks, we ripped out our local area networks, and we have actually zero lateral movement capabilities within the organization today. So if an infection or a compromise did occur, it would affect a single VPN user or a single office location, giving us that micro segmentation to keep build business resiliency and business operations going.

Fantastic. Uh, love the insider perspective here. Um, given the complexity these days, uh, you know, so many vendors, so many standards, so many requirements, so many threats, you're really focused on simplicity, which is interesting in helping customers fundamentally simplify the complexity of securing and connecting their business. Again, it sounds so simple and elegant, but what's involved underneath the hood uh doing that?

Uh, it's it's a paradigm shift. I the the first complexity is really getting an organization to understand not having a wide area network, not having a local area network. We are so used to the the last 30 years of being able to move anywhere within our networks to access any type of information. That was fundamentally the the biggest challenge for us was really explaining to our employees they must VPN in, even if they're in an office.

They must always, you know, be able to connect to VPN to get to anything. There's no uh way to get to any type of data or source of information within the company if you don't. Uh, but then you know, you always have your challenges, you know, ripping out the wide area network, local area network had some challenges, but I think the biggest challenge came when we decided to unflatten what we call our applications. Uh, we run a lot of premise-based applications still versus cloud simply because we are regulated as a critical infrastructure company.

Uh, and we have a lot of regulatory requirements on how we house data and where. So it's a lot easier for us to maintain that solution in-prem. But what we did with our applications, we decided to actually create a firewall context, sort of like a demilitarized zone between applications. In most companies, you have your billing application, you have your knock application, you have this application, and everything sits in one land and can easily communicate to one another.

The challenge we brought forward was we said, no, we're gonna put everything between a firewall and only allow specific rules for the specific types of data sets that need to transpire between these applications. And that was probably the biggest, biggest complicated forklift for us because we went to our development teams and we said, okay, what TCP or UDP ports does this application need to use for communication to that application? We don't know. So painful, painful weeks and months in Wireshock discovering all these communications and what was occurring, documenting them so that we could get to that uh last piece or what we considered our phase four of a zero trust framework.

Fantastic approach. Uh, there's a lot of buzz about the GTT Envision platform. Um, how do you describe it? What is it, what is it unique, what's uh unique about it in this industry at the moment?

So Envision, Envision, we have Envision Edge, we have Envision Core, but Envision is our end-to-end solution uh for how we manage uh different types of uh what we would consider workloads at the edge for a customer. So we bring in a GTT network connectivity, we put a GTT branded box, which is what we call our Envision Edge box. But the thing about that box is we can run a multitude of vendors or different types of services, all service chained. So if you want an SD-WAN, we can put an image on there for your SD-WAN.

Uh, we have a routing image, which we wrote ourselves. It's our own proprietary uh solution. We're no longer buying routers. Uh, we can put a firewall solution on there.

So basically everything is in software. Some of the value we gain there is we can interchange or interopt vendors with ease without having to redeploy hardware. Uh, hardware tends to have a longer life cycle than does software. So when you have software tied to specific customized hardware, you have to replace both.

Where now we're just replacing images every three or four years if they EOL or EOS versus having to change out the whole platform. So that really gives us a lot of agility and flexibility, but it also increases resiliency for the customer and less downtime. Uh, and they can pick and choose and add services as needed. They don't need everything out the gate day one, but it also allows us to enable what we call our AI observability agent.

We are no longer in the realm of going out over traditional protocols such as SNMP to collect information. We are now streaming it right from the box back to our core to be fed into our observability AI systems and looked at and analyzed and results given to our NOC and operations centers. Amazing. Well, I could talk speeds and speeds with you all day, but we'd probably lose the audience.

But let's let's touch uh on the people side of the equation. I mean, even you personally, how has the rise of AI and this just uh tsunami of change that's that's hit us over the past couple of years changed the way you think about your role, your team as the technology and security leader? So three years ago, I would say we were very skeptical of what was to come with AI, uh, but we knew we needed to get on that bandwagon simply because with the amount of data we see in our network, our telemetry data alone is somewhere in the realm of 16 gigabits per second uh all the time.

That's a significant amount of information, and it's humanly impossible to go through. And in a world where we're trying to improve posture of security for our clients and improve the intelligence behind the products we offer them, we knew we had to get on that bandwagon. So we were an early adopter. We built three AI factories about 18 months ago with NVIDIA.

Uh we did that in New York, London, and uh Prague. Uh, we chose those locations because we have corporate facilities there that we operate, but also we knew that AI sovereignty would eventually become a thing, just as data sovereignty. So we wanted to be in a position to run workloads where a client chose uh if necessary. But the way we looked at it, um we we took a very different approach to AI.

Uh we heard all the stories, we heard stories of large companies failing, trying to do 800 projects or use cases. Uh, and working with NVIDIA, we came up with a model where we said, okay, the first thing we need to do is we need governance. If we have no governance, then how do we know what to ingest from our user base? Everybody's gonna come out of the woodwork with every type of use case, and we don't really know what the benefits are.

Second, without a proper governance model, how do we get the proper requirements and a subject matter expert who understands the workflow and the procedures for the department requesting this use case? Without that SME and those perfect requirements, you know, you you're just not able to turn these things around. It's not, you know, it's not like people think you go build a rag, a knowledge realm, and this thing just learns. It's a lot more to it when you get under the hood.

Uh so we structured a governance model where intake is our PMO, subject matter expert comes from the department requesting it. We have security and IT in that workflow to approve the data sets that are gonna be utilized and make sure we have no regulatory uh requirements around that data set. And then it goes to FPNA because if we're gonna do a use case, there's cost. My my teams have a cost of their man hours.

So FPNA will put together a model on this business case of what is the benefit versus the cost. And those benefits have to be more than efficiencies for GTT. Efficiency is great, but you can get efficiencies out of the box with simple things like Gemini and Copilot. We're looking to really replace manual efforts with a lot of what we did.

Once we had that stood up, we paused for six months. And for six months, we did nothing but document and study our data. We went to every system, every platform. Is it structured data?

Is it unstructured data? How do we access that data? Is it an API? Is it a database call?

Is it an RPA screen scrape? And we built this large matrix so that when we came time to build out our AI, we really had a fundamental understanding of our data because we found that most organizations that failed did not have a good handle around their data. And the reality is without data, there's no AI. You have to feed massive amounts of data to train, teach, and have our AI operators do the things we want them to do.

So we really spent a lot of time, and I'm happy to say we've been very successful. Uh, we've now delivered over uh a dozen uh enterprise use cases, as well as, as I said before, we built out an observability AI agent. We've also built out a product that we will be releasing soon. It's a network real-time detection and response system, looking at any type of anomaly or behavioral change in any system, user, or device that can send a log, net flow, or a packet capture.

Um, so a lot of focus there. But some of the successes that I would talk about, we always had a real fear of what the security risk with AI was. Uh, so we spent a lot of time around security and that risk. Uh, we got to a point where we took a lot of case studies away from NVIDIA.

So one of the first things we did was we made a decision that no operator can ever know about any other operator in GTT. Why? Well, we found that operators they love to talk, they love to tell each other what they do, how they do it. And what they do is they start training each other so that you now have an operator that was intended to do one thing and now it's over permissive, knowing how to do many, many other things that we never intended it to do.

So we kind of took that DMZ zero trust philosophy and we built that in at our operator level. Now we do have an overall operator at top that we secure with role-based access, like you would in a traditional Active Directory. Uh, but what we did is because that operator does need information or pieces of data from many, many different operators, we built a complete secure orchestration layer that operates between what we would consider our chatbot operator and all of the operators that do work or interface with knowledge realms and MCP servers to our different systems and platform.

So we really uh took a heavy hand to security with our AI. We've run it by NVIDIA as well as others that we work with in the partner ecosystem we have. Um, and by far, they feel that we have built one of the secure models of modeling out an AI factory in the fashion we did. Uh so to answer your question, yes, we were very concerned about the risk, but we took a very heavy hand and approach, almost draconian, to make sure that we weren't going to repeat the mistakes or the errors that some of our peers made.

Amazing. Wow, congratulations on that. And you mentioned this AI factory, which you know sounds a little bit like marketing hype, but it's actually, I think, enabling you to enhance threat detection and response. Maybe talk about the AI factory you created, the blueprint, the architecture behind it.

Yeah, so the AI factories, um, it's it's complete Dell and NVIDIA, uh, which are the two partners we've partnered with. Uh, we're running, you know, all H100, 200 GPUs uh still. We'd like to get with some larger ones, but we're waiting for our data centers to catch up with uh water cooling. They're not all retrofitted just yet.

Uh, but yeah, we built that out on their on their standard platforms. We're running somewhere in the realm of 32 going to 64 GPUs, if I remember correctly. Um, so yeah, these factories, in addition to you know, all the GPUs and processing and memory that go into these big large servers, there's an enormous amount of cabling that goes behind this. Infiniband, uh, all these interconnects because the GPUs need direct network access to different parts of the system and the server.

So they're pretty massive build-outs. Uh, the first one we did with a partner so we could learn how to do it right. And then subsequently, we did the second two ourselves. But what we've done with the network detection, we've originally started out, as I said, we wanted to monetize our data and look how to improve security posture across all our products for our customers.

Uh, but what this evolved into was what not what we expected. Uh, a couple of things that we enabled there, uh, we decided to really focus on behavior. And when I say behavior, we created ingestion models to ingest any type of log, any type of net flow, and any type of packet capture. Then we created operators that actually review, given AI analysis on any event that's notable that comes in.

And then it looks, is it a system, network, or security event? And it prioritizes that. If it's a security event, match it against the MITA framework and categorize it. Is it authentication?

Is it authorization? Is it a brute force attack? And if it is a security event, we have an additional operator that runs an algorithm that scores it on a zero to 10. Uh, what we also did, we because we wanted to use machine learning, we did something we call, we like to call dynamic scaling.

As each new unique host is learned or sends a new log, we dynamically spin up a small language model dedicated to that host. And every subsequent 100 events learned from that host, the model retunes and retrains. So if you have 10,000 hosts in your environment, you'll have 10,000 SLM models running within our platform. But the uniqueness that this gave us, we are detecting everything that can occur, change.

I'll give you an example on routers or even Linux servers, we're seeing if a new service or daemon gets spun up that wasn't noticed before, wasn't running before. Why is that so important? Well, we had zero visibility in the telecom world three years ago to salt typhoon. And everyone saw in the news what they did.

Uh, had we had the capability to monitor new daemons spinning up, they would have been caught right away. So, watching these behaviors, another example of every engineer, we're more focused on engineers who have right privileges to make changes within systems and platforms. We're able to see everything they log into, what commands they run. If they log into a system at a different time they never did, it's an anomaly.

If they run a command they never ran, it would show up as an anomaly. So we are detecting way more than just security events. Our accuracy, uh, we've probably cut out about 32% of noise at the last uh check we made. Uh, so we're really up in the high 90s right now of accuracy for actionable events uh that are occurring within the environments.

Uh, the thing we also didn't really intend for was the potential to replace monitoring systems because monitoring these behaviors, we're seeing when the database disconnects from the web front end. You're seeing everything now. So we're actually taking our monitoring data and feeding it into another system just like this and seeing what the results would be. Uh, but it's been a game changer for us.

We built two other fundamental, very unique features in there that we didn't have today. One is what we call our CV e-analyzer. And what that does, it basically goes in our inventory systems twice a day, pulls all our customer inventory, our inventory, as well as our network core inventory, corporate inventory. We track the firmwares.

Netbox goes and dynamically detects the firmware running on all of our systems every day. And twice a day, we have it run against the CVE database to see if there's any known CVE. And then we have AI analysis on everything in here, giving us the analytics, the analysis, and what to do. The importance there is generally when a CVE comes out, you don't have a patch.

It takes days, sometimes a week. So the AI insights are giving us mitigations of how to address this without a patch so that we can have some form of safety for the next couple of days while the vendor works on getting the appropriate patch out for that platform or that specific bug. What we also did was we built a stateful topological view of what we call the system galaxy, which is basically a huge galaxy. As you drill in, it shows a dot for every single host within our environment.

It shows the network communications between them. And if something showed up red anomalous, we could click on it and in seconds see a line to every other device that's communicated with it. Click on that device, see. So what took us two weeks in threat hunting is now done in real time and seconds.

Uh, so it's been a real game changer. Now we're very comfortable here at GTT with AI. So we are doing, we're also using what we call command where we are deploying virtual SOC operators. We are doing real-time autonomous mitigation for ourselves, but we do understand every customer is gonna have a different tolerance level.

So we're prepared that if you want this to go to your SOC, fine. You want it to open a ticket and service now over API, fine. You want a Teams chat or an email, fine. Uh, if you really want to be up to par in this day and age, and what Mythos has all shown us in a few weeks, you need machine speed mitigation.

It's gonna be humanly impossible. What is the point for machine speed detection if you're not gonna mitigate at that same speed? My personal view. Wow, what a what a blockbuster approach.

Your your clients must be really excited uh with this technic technology. We've had a lot of great feedback from both analysts and our clients. Uh, we're getting a lot of positive feedback, but also some good feedback of things, you know, to improve, which is always good. Amazing.

So you mentioned the SOC. What other parts of the operation do you think have the potential to be transformed by AI and and and with opex savings and all the other benefits around that? Sure. So two two big ones we did.

Uh the other one is not a C VE, it's a CV analyzer for resumes. Um, we generally have a department that does recruiting, and 12 people spent 60% of their year reviewing resumes. Wow. Uh we built a CV analyzer um in record time that basically looks at the job description, the education requirements, and it matches it with the actual resume and then gives it the score to give us the top 15 candidates.

It does this in minutes versus days or weeks. Uh the long poll in the tent there was going through all the works councils in Europe to make sure it's not looking at age, it's not looking at gender. How to make sure that you're obfuscating all that stuff so that it it's meeting the laws, the employee movement laws in different countries. Once we got those approvals, we not only gave 60% of time back to recruiters, that 60% of time became interview time.

We are onboarding, and this is a real metric. Um, you know, I'm not a finance guy, but finance has a metric that says by onboarding at 10 to 14 weeks quicker, there's a metric that shows how much more revenue that salesperson will generate within that calendar year. So there's some hard metrics here. One, we gave a ton of time back to people to do what they really need to do, which is interview and hire, but we've also been able to onboard at a quicker pace, giving us uh some demonstrable metrics there, uh, revenue-wise.

Uh, another big one we did was our cash app, where you got all these invoices coming in. They have to be OCR'd, put into a system by a person, then they get matched to our billing system, it gets matched to our general ledger system, and then somebody's got to go and match in the bank account and make sure that payment went out. Uh well, we now have an app that does all of that. It's all done with AI operators, and it's taken a two-week job down to minutes.

Amazing. Well, you're quite the Renaissance CIO looking at all 360 degrees uh of the business and the security side. Well, well done. Just a final question.

I mean, you've you've shared this journey with partners, customers publicly. Um, for other organizations looking to transform their operations with AI. I mean, what's the best way to proceed? Any tips, tricks, best practices you think you can share briefly?

Absolutely. As I said, for us, and and we think we got it right because we've been successful. Uh, Nvidia said we're one in few on the enterprise side, non-hyperscalers that are doing this successfully. Uh, governance.

Governance, governance, governance. You can't boil the ocean, you can't take on everything. And if you're not going to demonstrate uh cost savings or reductions or driving revenue, then what's the point of focusing all that effort on doing it? So a strong governance model with a strong business case capability is key.

I think the second is really spend the time, even if it takes months, if you don't have the resources in-house, look for a partner, understand your data, document and understand your data, your data sets, how to access that data, how to access that information. And last is build your AI solutions securely. Uh, you know, I mentioned before we don't let operators see other operators. The other thing we really did and took to heart here is we dedicate an MCP server and a knowledge realm per platform.

There's no shared realms, no shared operators across platforms. So have that siloed mentality uh at least for the next couple of years until other improvements come out in the greater AI working area. Brilliant. Well, thanks for the update.

Uh, congratulations on all the success. You know, we like to throw around things like game changing, game changers in our industry. Yeah. But for once, I feel that you are changing the game and networking and security as a service.

Really well done and uh best of luck. Thank you very much. And thank you for having me, Evan. You take care now.

Yeah. Thank you, and thanks everyone for listening and watching. Also check out our TV show, techimpact.tv on Bloomberg Television and Fox Business.

Thanks, everyone. Thanks, James. Thank you.

Related episodes across the Index

Other episodes covering the same guests and topics, from across The B2B Podcast Index.

  • Mythos And The Disappearing Patch WindowAI Proving Ground Podcast · on Zero trust architecture96 / 100
  • AI Agents vs. AI Agents: The Future of Security Operations | Interview with Monzy MerzaSecure & Simple · on MITRE ATT&CK framework85 / 100
  • Security Data Pipelines: How to Cut SIEM Costs and Noise with Dina KamalCyber Sentries: AI Insight to Cloud Security · on MITRE ATT&CK framework85 / 100
  • An AI Just Out-Hacked 2 Million Humans. She Decides What Happens Next | Nidhi Aggarwal, CPO HackerOneCXO Spotlight · on Zero trust architecture80 / 100
  • Network Segmentation to Prevent Ransomware: What the UCSF Attack Taught UsThe Backup Wrap-Up · on Micro-segmentation80 / 100
  • Think Like an Attacker: Microsoft Security Exposure Management with Uros Babic [MVP-MCT]M365.FM · on Zero trust architecture78 / 100

More from What's Up with Tech?

All episodes →
  • A Physical Key Is The Missing Layer For Modern Account Security42 / 100
  • Enterprise 5G That Actually Works75 / 100
  • When AI Agents Go Off The Rails88 / 100
  • The Real Cost Of Enterprise AI77 / 100
  • Hybrid Communications That Actually Work63 / 100
Explore the best B2B AI & Data podcasts →
All What's Up with Tech? episodes →