<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" encoding="UTF-8" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:sy="http://purl.org/rss/1.0/modules/syndication/" xmlns:admin="http://webns.net/mvcb/" xmlns:atom="http://www.w3.org/2005/Atom/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:googleplay="http://www.google.com/schemas/play-podcasts/1.0" xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd" xmlns:fireside="http://fireside.fm/modules/rss/fireside">
  <channel>
    <fireside:hostname>web01.fireside.fm</fireside:hostname>
    <fireside:genDate>Wed, 22 Apr 2026 15:46:43 -0500</fireside:genDate>
    <generator>Fireside (https://fireside.fm)</generator>
    <title>Three Buddy Problem - Episodes Tagged with “Iam”</title>
    <link>https://securityconversations.fireside.fm/tags/iam</link>
    <pubDate>Thu, 21 Dec 2023 11:00:00 -0700</pubDate>
    <description>The Three Buddy Problem is a popular Security Conversations podcast that goes beyond industry talking points to discuss what others won’t -- nation-state malware, attribution, cyberwar, ethics, privacy, and the messy realities of securing computers and corporate networks. 
Hosted by three veteran security pros -- journalist Ryan Naraine and malware paleontologists Costin Raiu and Juan Andres Guerrero-Saade -- the weekly show attracts a highly engaged audience of security researchers, corporate defenders, CISOs, and policymakers.
&lt;a href="https://twitter.com/ryanaraine"&gt;Connect with Ryan on Twitter&lt;/a&gt; (Open DMs).
</description>
    <language>en-us</language>
    <itunes:type>episodic</itunes:type>
    <itunes:subtitle>A Security Conversations podcast</itunes:subtitle>
    <itunes:author>Security Conversations</itunes:author>
    <itunes:summary>The Three Buddy Problem is a popular Security Conversations podcast that goes beyond industry talking points to discuss what others won’t -- nation-state malware, attribution, cyberwar, ethics, privacy, and the messy realities of securing computers and corporate networks. 
Hosted by three veteran security pros -- journalist Ryan Naraine and malware paleontologists Costin Raiu and Juan Andres Guerrero-Saade -- the weekly show attracts a highly engaged audience of security researchers, corporate defenders, CISOs, and policymakers.
&lt;a href="https://twitter.com/ryanaraine"&gt;Connect with Ryan on Twitter&lt;/a&gt; (Open DMs).
</itunes:summary>
    <itunes:image href="https://media24.fireside.fm/file/fireside-images-2024/podcasts/images/5/5f0c01ff-49f1-4c51-a8f8-f14c0d9bc72e/cover.jpg?v=15"/>
    <itunes:explicit>no</itunes:explicit>
    <itunes:keywords>cybersecurity, ciso, infosec, security, hacking, information security, research</itunes:keywords>
    <itunes:owner>
      <itunes:name>Security Conversations</itunes:name>
      <itunes:email>naraine@gmail.com</itunes:email>
    </itunes:owner>
<itunes:category text="Technology"/>
<itunes:category text="News">
  <itunes:category text="Tech News"/>
</itunes:category>
<itunes:category text="Technology"/>
<item>
  <title>Allison Miller talks about CISO life, protecting identities at scale</title>
  <link>http://securityconversations.fireside.fm/allison-miller-cartomancy-labs</link>
  <guid isPermaLink="false">28dec282-d91f-4cce-9500-6459abf30cdf</guid>
  <pubDate>Thu, 21 Dec 2023 11:00:00 -0700</pubDate>
  <author>Security Conversations</author>
  <enclosure url="https://aphid.fireside.fm/d/1437767933/5f0c01ff-49f1-4c51-a8f8-f14c0d9bc72e/28dec282-d91f-4cce-9500-6459abf30cdf.mp3" length="30309172" type="audio/mpeg"/>
  <itunes:episodeType>full</itunes:episodeType>
  <itunes:author>Security Conversations</itunes:author>
  <itunes:subtitle>Episode sponsors: 

- Binarly, the supply chain security experts (https://binarly.io)
- FwHunt (https://fwhunt.run)

Allison Miller is founder and CEO of Cartomancy Labs and former CISO and VP of Trust at Reddit. She has spent the past 20 years scaling teams and technology at Bank of America, Google, Electronic Arts, PayPal/eBay, and Visa International. 

In this conversation, we discuss the convergence of security with fraud prevention and anti-abuse, the challenges and complexities in IAM implementations, the post-pandemic labor market, the evolving role of CISOs and new realities around CISO exposure to personal liability, thoughts on the 'build vs buy' debate and the nuance and dilemma of paying ransomware demands. </itunes:subtitle>
  <itunes:duration>38:12</itunes:duration>
  <itunes:explicit>no</itunes:explicit>
  <itunes:image href="https://media24.fireside.fm/file/fireside-images-2024/podcasts/images/5/5f0c01ff-49f1-4c51-a8f8-f14c0d9bc72e/episodes/2/28dec282-d91f-4cce-9500-6459abf30cdf/cover.jpg?v=1"/>
  <description>Episode sponsors:
Binarly, the supply chain security experts (https://binarly.io)
FwHunt (https://fwhunt.run)
Allison Miller is founder and CEO of Cartomancy Labs and former CISO and VP of Trust at Reddit. She has spent the past 20 years scaling teams and technology at Bank of America, Google, Electronic Arts, PayPal/eBay, and Visa International. 
In this conversation, we discuss the convergence of security with fraud prevention and anti-abuse, the challenges and complexities in IAM implementations, the post-pandemic labor market, the evolving role of CISOs and new realities around CISO exposure to personal liability, thoughts on the 'build vs buy' debate and the nuance and dilemma of paying ransomware demands. 
</description>
  <itunes:keywords>CISO, Identity and Access, Fraud Prevention, CISO liability</itunes:keywords>
  <content:encoded>
    <![CDATA[<p><strong>Episode sponsors:</strong></p>

<ul>
<li>Binarly, the supply chain security experts (<a href="https://binarly.io" rel="nofollow">https://binarly.io</a>)</li>
<li>FwHunt (<a href="https://fwhunt.run" rel="nofollow">https://fwhunt.run</a>)</li>
</ul>

<p>Allison Miller is founder and CEO of Cartomancy Labs and former CISO and VP of Trust at Reddit. She has spent the past 20 years scaling teams and technology at Bank of America, Google, Electronic Arts, PayPal/eBay, and Visa International. </p>

<p>In this conversation, we discuss the convergence of security with fraud prevention and anti-abuse, the challenges and complexities in IAM implementations, the post-pandemic labor market, the evolving role of CISOs and new realities around CISO exposure to personal liability, thoughts on the &#39;build vs buy&#39; debate and the nuance and dilemma of paying ransomware demands.</p><p>Links:</p><ul><li><a title="Allison Miller on LinkedIn" rel="nofollow" href="https://www.linkedin.com/in/allisonmiller/">Allison Miller on LinkedIn</a></li><li><a title="Cartomancy Labs" rel="nofollow" href="https://www.linkedin.com/company/cartomancy-labs/">Cartomancy Labs</a></li><li><a title="Security Leaders Spooked by SEC Lawsuit Against SolarWinds CISO" rel="nofollow" href="https://www.securityweek.com/cisos-spooked-by-sec-lawsuit-against-solarwinds-ciso/">Security Leaders Spooked by SEC Lawsuit Against SolarWinds CISO</a></li><li><a title="New SEC rule on breach disclosure (PDF)" rel="nofollow" href="https://www.sec.gov/files/rules/final/2023/33-11216.pdf">New SEC rule on breach disclosure (PDF)</a></li><li><a title="Follow Allison Miller on Twitter" rel="nofollow" href="https://twitter.com/selenakyle">Follow Allison Miller on Twitter</a></li><li><a title="Sponsor: Binarly Supply Chain Security Platform" rel="nofollow" href="https://binarly.io/capabilities/index.html">Sponsor: Binarly Supply Chain Security Platform</a></li></ul>]]>
  </content:encoded>
  <itunes:summary>
    <![CDATA[<p><strong>Episode sponsors:</strong></p>

<ul>
<li>Binarly, the supply chain security experts (<a href="https://binarly.io" rel="nofollow">https://binarly.io</a>)</li>
<li>FwHunt (<a href="https://fwhunt.run" rel="nofollow">https://fwhunt.run</a>)</li>
</ul>

<p>Allison Miller is founder and CEO of Cartomancy Labs and former CISO and VP of Trust at Reddit. She has spent the past 20 years scaling teams and technology at Bank of America, Google, Electronic Arts, PayPal/eBay, and Visa International. </p>

<p>In this conversation, we discuss the convergence of security with fraud prevention and anti-abuse, the challenges and complexities in IAM implementations, the post-pandemic labor market, the evolving role of CISOs and new realities around CISO exposure to personal liability, thoughts on the &#39;build vs buy&#39; debate and the nuance and dilemma of paying ransomware demands.</p><p>Links:</p><ul><li><a title="Allison Miller on LinkedIn" rel="nofollow" href="https://www.linkedin.com/in/allisonmiller/">Allison Miller on LinkedIn</a></li><li><a title="Cartomancy Labs" rel="nofollow" href="https://www.linkedin.com/company/cartomancy-labs/">Cartomancy Labs</a></li><li><a title="Security Leaders Spooked by SEC Lawsuit Against SolarWinds CISO" rel="nofollow" href="https://www.securityweek.com/cisos-spooked-by-sec-lawsuit-against-solarwinds-ciso/">Security Leaders Spooked by SEC Lawsuit Against SolarWinds CISO</a></li><li><a title="New SEC rule on breach disclosure (PDF)" rel="nofollow" href="https://www.sec.gov/files/rules/final/2023/33-11216.pdf">New SEC rule on breach disclosure (PDF)</a></li><li><a title="Follow Allison Miller on Twitter" rel="nofollow" href="https://twitter.com/selenakyle">Follow Allison Miller on Twitter</a></li><li><a title="Sponsor: Binarly Supply Chain Security Platform" rel="nofollow" href="https://binarly.io/capabilities/index.html">Sponsor: Binarly Supply Chain Security Platform</a></li></ul>]]>
  </itunes:summary>
</item>
  </channel>
</rss>
