Defending at AI Speed as Quantum Threats and AI Policies Won’t Save You – Nolan Karpinski – BSW #467
Nolan Karpinski is a Group Product Manager for Google Security Operations, where he leads Detection and AI Platform. Prior to Google, he led product teams at Lacework, specializing in cloud-native application protection (CNAPP), and at Carbon Black, focusing on endpoint detection and response (EDR). He is currently pioneering the integration of AI into detection engineering, actively shaping the future of the Agentic SOC to modernize defense against emerging threats. Nolan is based in San Francisco.
- Your backlog is full. Your budget isn't. And somehow you're still expected to reduce cyber risk.If you're leading security in financial services, every decision has tradeoffs between resilience, compliance, customer trust, and business growth.Join us October 14 for the FinSec Virtual Summit to hear how leading CISOs are making those decisions and where they're investing to stay ahead of what's coming next.Register for free at https://securityweekly.com/finsec using the discount code CSS26-SW
- InfoSec World is introducing a fresh experience for 2026, with new voices, a new venue, and new topics reflecting the challenges security teams are facing now. Join practitioners and leading professionals from across industries in Orlando, October 12–14. Listeners save 30% on their pass with code ISW26-SWSAVINGS at securityweekly.com/infosecworld2026.
Matt Alderman
- CISOs can no longer ignore the nation-state threat
AI is lowering the barrier to sophisticated attacks and shrinking defenders’ response time, forcing CISOs to treat geopolitical threats as an increasingly urgent enterprise risk.
- Quantum threats: What CISOs should do to prepare
The quantum threat might seem years away, but the risk of ‘harvest now, decrypt later’ attacks is real. Here’s what CISOs should do to prepare...
- How the CISO-CMO Alliance Builds Trust Before Crisis Strikes
Cybersecurity and brand reputation are inextricably linked. Security and marketing leaders who establish regular touchpoints, develop joint crisis communications plans, and translate security risks into their brand impact position their organizations to significantly outperform those treating security as an operational IT concern.
- AI Policies Won’t Save You If You Can’t See The Risk
Many still struggle to fully and accurately define the AI tools their people rely on, what those tools can reach, and who is responsible for them. Attempting governance on that footing is like working on a puzzle without knowing the full picture or if you even have all the pieces.
- The Invisible Work Draining Your Best Employees
Most leaders assess workload through hours, deadlines, and output, but these measures overlook the mental load employees carry: the ongoing cognitive and emotional effort required to manage tasks, relationships, and coordination at work and at home. When these loads collide, they fragment attention, complicate prioritization, and create persistent exhaustion. The result is reduced focus, slower decision-making, and increased risk of burnout and attrition. Managing mental load is less about reducing work itself than about redesigning how it is structured and distributed, so employees can sustain focus, effectiveness, and engagement. Fortunately, leaders can take steps to mitigate this mental load–by making it visible, establishing clearer boundaries around availability, and reducing unnecessary demands during high-pressure periods. They must also play a role in modeling recovery and realistic expectations. Employees won’t believe they have permission to set boundaries if leaders don’t model them.
- Cybersecurity burnout is an operational threat: AI can help
Analyst burnout is more than just a wellness issue; it's a critical security risk. At the Billington Cybersecurity Summit, experts discussed how to fix the crisis.
