EPISODE · Feb 10, 2026 · 1H 1M
Provable Security: What CISOs Should Demand From Vendors
from Full Metal Packet
What does provable security mean, and why do black-box platforms fail CISOs? Maxime Lamothe-Brassard explains transparency, threat modeling, and measurable security outcomes.Security leaders will learn how treating security like cloud infrastructure can improve vendor accountability, SecOps flexibility, and responsible AI use.He explains:Why “trust me bro” security models quietly fail CISOsHow government cyber ops reshaped his view of threat modelingWhat provable security actually looks like in practiceWhy transparency beats vendor magic every timeHow AI should amplify SecOps teams, not replace themEpisode Timeline:(00:00) From hacker curiosity to cybersecurity foundations(07:45) Lessons from government cyber operations(16:07) The shock of moving into private-sector security(25:35) Why most security platforms repeat the same mistakes(32:15) Provable security vs “trust me” security(41:40) Treating security like cloud infrastructure(49:50) AI’s real role in the future of SecOps(59:52) What CISOs should demand next from security vendorsConnect with Maxime on LinkedInPowered by Control D
Embed this episode
Ready to play
Provable Security: What CISOs Should Demand From Vendors
No transcript for this episode yet
Similar Episodes
No similar episodes found.