EPISODE · Jun 13, 2026 · 50 MIN
Should Fraud and Cybersecurity Teams Converge?
from The Saturday Fraud Strategist
Every few years our industry rediscovers the same debate: should fraud and cybersecurity teams actually sit together?And honestly, usually both sides hate the idea immediately.Not because they dislike each other. Mostly because both teams are already overwhelmed and nobody wants another meeting.But over the last couple of years, something changed.The signals started converging.Credential stuffing became account takeover. Account takeover became fraud. Fraud became phishing. Phishing became invoice fraud and ACH fraud. And suddenly the same security telemetry that detects compromised infrastructure also helps identify fraudulent users before they ever reach checkout.That is where things start getting weird.In this episode, I sat down with Cy Khormaee, who helped build Recaptcha at Google and now runs Aegis AI, to talk about why AI phishing detection is forcing fraud and cybersecurity teams closer together whether they like it or not.And honestly, once you realize the same behavioral signals can stop both account takeover and payment fraud detection, the organizational separation starts feeling a little artificial.We get into AI email security, AI-powered fraud, fraudster ROI, upstream fraud detection, and why modern attackers are moving faster than most enterprise security stacks were designed for.Also, I learned that Google literally tracked the market price of breaking CAPTCHA systems like a stock ticker.Which honestly feels extremely fraud-brained.What you’ll hear in this episode:A practical look at why fraud and cybersecurity teams are starting to share the same signalsHow credential stuffing and account takeover pushed security tools into fraud prevention use casesWhy AI phishing detection depends on more than static email rules or reputation checksHow AI email security is changing as attackers use AI to generate more targeted phishing attacksWhere invoice fraud, ACH fraud, and accounts payable fraud sit between security and fraud operationsWhy security telemetry and fraud telemetry become more useful when teams connect the full user journeyHow Recaptcha evolved from image puzzles into behavioral detection and fraud prevention infrastructureWhy “good people leave tracks” still applies across both fraud and security signalsHow upstream fraud detection helps stop problems before money leaves the platformWhy fraudster ROI is one of the most useful ways to think about modern defenseWhat teams should ask vendors before buying AI-powered fraud or AI security toolsExpect a conversation about tools, signals, attacker economics, and the awkward reality that fraud and security may already be converging, whether the org chart admits it or not. Who should listen:Fraud leaders and fraud analystsCybersecurity professionalsTrust and safety teamsFinTech fraud prevention teamsEmail security teamsAccounts payable and payment risk teamsTeams evaluating AI phishing detection or AI email security vendorsAnyone working on credential stuffing, account takeover, invoice fraud, ACH fraud, or upstream fraud detectionBasically, if your fraud team and cybersecurity team only meet during incident review, this one may be worth playing in both rooms.
Embed this episode
Ready to play
Should Fraud and Cybersecurity Teams Converge?
No transcript for this episode yet
Similar Episodes
No similar episodes found.
Similar Podcasts
No similar podcasts found.