The threat landscape has become more interconnected, disruptive, and complex. Ransomware is now as much about extortion and data theft as it is about encryption. Supply chain events can create outages that ripple far beyond the initial target, and business interruption increasingly comes from third-party and cloud dependencies. How should CISOs prepare for these scenarios?
Dan Bowden, Global Business CISO at Marsh, joins Business Security Weekly to discuss how to connect cyber risk to the outcomes boards care about most: resilience, financial exposure, regulatory impact, and reputation. CISOs need to position cyber as an enterprise risk, not a technical risk, that can be measured, prioritized, and managed alongside other strategic risks. Dan will discuss the results of Marsh's Cyber Catalyst research and Global Cyber Claims Report.
Visit https://securityweekly.com/infosecworld2026 and save 30% on your ISW pass with code: ISW26-SWSAVINGS
The Agent Is the New Insider: Why Human Risk Doesn't Stop at People: Black Hat Interview with Leslie Nielson, CISO at Mimecast
AI agents now act with the same credentials and access as the humans who deployed them, but without the judgment or accountability that comes with actual employment. Mimecast CISO Leslie Nielsen argues that treating agentic AI as a brand new, standalone security category is the wrong instinct: agents are an extension of human risk, and the controls organizations already use to manage people are the right foundation for managing machines. In this conversation, Nielsen unpacks the growing gap between security leaders who expect AI driven attacks and those who feel prepared for them, and what that gap means for CISOs walking the floor at Black Hat.
Segment Resources:
Mimecast's new whitepaper Securing The Agentic Enterprise: https://assets.mimecast.com/api/public/content/securing-the-agentic-enterprise?v=ea66db05 Mimecast's landing page for thought leadership resources: https://www.workprotected.com/ Mimecast's State of Human Risk Report: https://www.mimecast.com/resources/ebooks/state-of-human-risk/ Mimecast's Threat Intelligence Hub: https://www.mimecast.com/threat-intelligence-hub/
For more information about Mimecast please visit: https://securityweekly.com/mimecastbh
Ransomware Moves up the Org Chart: Managers Are Prime Targets: Black Hat Interview with Brett Stone-Gross, Sr. Director, Threat Intelligence at Zscaler
When a ransomware attack makes headlines, attention usually turns to the organization that was breached, the systems encrypted, data stolen, and disruption or ransom demand that followed. Less, if anything, is revealed about the employees compromised at the start of the attack, and what makes those individuals valuable targets.
New Zscaler ThreatLabz research examines this early stage of a real-world ransomware attack. ThreatLabz identified victims of a campaign associated with a ransomware group known for gaining initial access, stealing large amounts of corporate data, and selectively encrypting critical systems. The findings show who those victims were and how their roles and authority could help an attacker move deeper into an organization.
This is part of ongoing ransomware research by ThreatLabz. The Zscaler ThreatLabz 2026 Ransomware Report, coming in the next two months, will include additional data on ransomware victims, the latest ransomware trends, targets, and tactics, and the risks enterprises should prepare for next.
This segment is sponsored by Zscaler. Visit https://securityweekly.com/zscalerbh to learn more about them!
Dan Bowden is Marsh’s Global Business Chief Information Security Officer. He’s been with the firm for over four years. Dan is in his fifth CISO role, running for 13 years. Dan’s previous CISO roles were with Marsh Risk, Sentara Healthcare, and the University of Utah. Dan has over 30 years cybersecurity and technology experience in the insurance, healthcare, higher education, financial, retail and military industries. Dan’s professional interests along-side cybersecurity, include artificial intelligence, quantum computing, and identity proofing. Dan’s personal interests focus on his family, faith and outdoor activities.
Leslie leads Mimecast’s global cybersecurity strategy as CISO, including threat intelligence, risk management, and detection and response, while ensuring regulatory compliance to protect Mimecast’s more than 42,000 global customers. With over 25 years of cybersecurity experience, he is known for driving innovative security strategies and building resilient, high-performing teams. He joined Mimecast from Klaviyo, where he served as SVP and CISO and helped scale the company to $1.3 billion in revenue, strengthen its security posture, and lead its security function through IPO. Before that, he was SVP and CISO at Nuance Communications, joining after a major malware attack to lead an accelerated security transformation that helped position the company as one of Microsoft’s largest acquisitions.
Earlier in his career, Leslie held senior security leadership roles at SAP Concur and SuccessFactors as VP and CISO, served as CTO at SOS Security, and held senior positions at IBM and ACS (acquired by Xerox); he has also served on Google’s CISO Cloud Advisory Board. Leslie holds a Bachelor of Science in Computer Science from Texas Tech University.
Dr. Brett Stone-Gross is the Senior Director of Threat Intelligence at Zscaler. He has over 20 years of experience tracking sophisticated malware threats and leading technical research teams. Brett has authored dozens of publications and presented at top cybersecurity conferences. His work has led to the disruption of numerous large-scale criminal operations in collaboration with international law enforcement agencies. Some of these operations have included GameOver Zeus, Kelihos, Dridex, Qakbot, and SmokeLoader.
Your attack surface is growing faster than your ability to manage it. Unknown assets, shadow IT, and fragmented tools are creating blind spots that increase risk and waste resources.
And leadership still wants clear answers.
At the Attack Surface Management Virtual Cybersecurity Summit on September 16th, learn how to gain visibility, reduce exposure, and align your program to real business risk.
Security Weekly listeners can register for free at https://securityweekly.com/asm using the promo code: CSS26-SW
Unlock the full InfoSec World experience with the All Access Pass, featuring premium workshops, exclusive content, VIP experiences, and expanded opportunities to connect with cybersecurity leaders across industries. Join us in Orlando, October 12–14. Listeners save 30% on their pass with code ISW26-SWSAVINGS at securityweekly.com/infosecworld2026.
