Find partners
Scale to Zero - No Security Questions Left Unanswered

Scale to Zero - No Security Questions Left Unanswered

Hosted by Scale To Zero

TechnologyInterviews guests

Episodes

112

Latest episode

Aug 2026

Language

EN

About the show

We know security is challenging, but a timely understanding of security is far more challenging! Scale to Zero is built for all the security professionals for helping them to be more privacy and security-sensitive. With this show, we hope to address all the security-related issues that are challenging to understand and resolve without the help of experts. We believed that a community space like Scale to Zero would make things a little bit simpler for everyone after we discovered the discomfort of constantly switching back and forth.

Listen to episodes

60 recent
August 5, 2026Episode 11347 min

Enterprise Security Restructuring & The AI Vulnerability Boom | ft. Alma Paul - Senior Corporate Security Engineer | Ep.113 | Cloudanix

As AI accelerates vulnerability discovery to machine speed, enterprise security teams are facing a seismic shift. Is your vulnerability management model keeping up, or is it time to pivot toward continuous Detection and Response? In this episode of the ScaleToZero podcast, we sit down with a Senior Corporate Security Engineer to break down how to restructure an enterprise security program from the ground up.Alma Paul: https://www.linkedin.com/in/alma-paul/Host: https://www.linkedin.com/in/mpurusottamc/Cloudanix: https://www.cloudanix.com/00:00 Introduction and Teaser03:35 Strong educational foundation in security05:50 Near future of relevance of formal education09:09 Starting with restructuring enterprise security program12:15 North star for security organizations14:10 Measuring The Health of Enterprise Security Program17:40 Balancing Security and Engineering Speed24:45 AI-driven vulnerability discovery and management29:09 AI-Driven Vulnerability Boom31:25 Shifting from VM to Detection and Response33:33 Prioritising Vulnerabilities36:33 AI for Application Security39:20 Consider AI for Security or Runaway44:16 Learning recommendations and Summary#CorporateSecurity #AppSec #VulnerabilityManagement #DetectionAndResponse #AISecurity #SecurityLeadership #TechPodcast #CybersecurityCareers #DevSecOps #ScaleToZero

July 22, 2026Episode 1121 hr 0 min

The Mythos Era: TPRM Evolution, AI Ethics, and Project Glasswing | ft. Matthew Moog - Senior CISA & Principal TPRM | ScaleToZero Podcast | Cloudanix

The traditional checklist approach to Third-Party Risk Management (TPRM) is officially obsolete. With frontier AI models like Anthropic's Mythos demonstrating autonomous zero-day chaining capabilities, security leaders are facing unprecedented threat velocity.In this episode of the ScaleToZero podcast, we sit down with Matthew Moog - a Senior CISA and also a Principal TPRM to unpack the radical evolution of supply chain risk, the reality of Project Glasswing, and how security teams must structurally adapt over the next two years.00:00 Teaser and Introduction11:06 Evolution of TPRM16:30 Benefits and Challenges of AI in TPRM24:00 Change with AI in the next 2 years29:00 Anthropic's Project Glasswing for Security Leaders35:00 AI ethics in TPRM44:35 Role of Mythos in the security world or TPRM49:20 AI Security in SDLC53:35 Impact on security team size with AI Security57:57 Learning recommendations#TPRM #AISecurity #ProjectGlasswing #ClaudeMythos #CISA #ThirdPartyRisk #VendorRisk #SDLC #InformationSecurity #ScaleToZero #TechPodcast

July 8, 2026Episode 11154 min

AI: Your Next Tool or New Colleague? | Next-Gen Security Skills | Ft.Priyanka Chatterjee | Cloudanix | ScaleToZero Podcast

Is AI just an efficiency booster, or are we actively training our next team member? In this episode of the ScaleToZero podcast, we sit down with a Senior Cloud Security Architect to explore the profound operational and philosophical shifts happening in security teams today.We move beyond basic automation talk to dissect the fundamental operational differences between traditional and AI-driven architecture, the evolving "Skill Economy," and how modern security professionals can future-proof their careers.00:00 Teaser and Introduction04:55 Progress and Challenges of Using AI09:19 AI - Tool or Colleague?16:00 AI and its Operational Wins20:25 Fundamental Operational Differences with AI vs Traditional24:15 Next Gen Skills for Security Teams29:05 Why Learn in the Age of AI32:40 Knowledge vs Skill Economy37:05 Breaking the Chicken and Egg Problem in Cybersecurity43:21 Prioritizing Life or Work50:30 Learning Recommendations53:42 Summary#CloudSecurity #AISecurity #SecurityArchitecture #DevSecOps #TechPodcast #CybersecurityCareers #FutureOfWork #Infosec #GenerativeAI #ScaleToZero

June 24, 2026Episode 1101 hr 1 min

Beyond the Tools: Bridging Product Security Gaps | ft. Neelu Tripathy | Senior Security Architect | Cloudanix | ScaleToZero Podcast

In our latest episode of the ScaleToZero podcast, we sat down with Neelu, a Senior Cloud Security Architect, for an incredibly pragmatic look at the state of modern product security. We bypassed the standard compliance checklists to talk about what actually works when defending a cloud ecosystem. We also tracked the massive evolution of product security and got a glimpse into Neelu’s personal motivation for driving security-first mindsets across engineering environments. Whether you’re an enterprise architect or an engineer trying to ship secure software, this episode will help you recalibrate your security and development priorities. Available on YouTube: https://youtu.be/eSxoKxDWrII Here's what we discussed in our strategy session: 00:00 Introduction04:55 Non-Negotiable Security Controls for AI-powered Workplaces07:44 Product Security Gaps and How to Bridge Them12:50 Prioritising Security in SDLC17:15 Overcomplicating Security23:15 Use of AI for Product Security34:10 Why do tools fail to stop hacks, and what actually works?40:10 Calibrating Security and Product Development45:30 AI for Developing Security Practices54:22 Neelu's Motivation for Security55:22 Evolution of Product Security57:57 Learning Recommendations59:49 Summary #CloudSecurity #ProductSecurity #AppSec #SDLC #AISecurity #SecurityArchitecture #TechPodcast #CloudArchitect #DevSecOps #ScaleToZero

May 20, 2026Episode 1091 hr 3 min

Ransomware in the AI Era | ft. Behnaz Karimi | Ep. 109 | ScaleToZero Podcast | Cloudanix

Ransomware is no longer just about encrypting files on a legacy server. In the age of AI, the attack surface has fundamentally shifted. In this episode, we sit down with Behnaz Karimi, An Independent Researcher, to deconstruct how ransomware has evolved over the last decade and what it means for modern, AI-driven infrastructure.From identifying the most overlooked entry points to mapping out a bulletproof incident response plan using the OWASP framework, this conversation is a tactical guide for securing organizations of all sizes.00:00 Teaser and Introduction04:10 Ransomware Today vs. 10 Years Ago08:13 Does Ransomware Affect AI Systems?11:42 Ransomware Attacks in the AI Age15:45 AI vs. Users vs. Attackers; Who is powerful?20:00 Compromised System Components for AI Attack22:48 Most Overlooked Entry Point26:06 Attacks on Small and Mid-Sized Orgs31:40 Where do you stand against AI attack?36:20 What is holding back organizations?40:46 Incident Response during Ransomware Attack50:20 Starting Security with OWASP Framework53:05 Security Tech Globally01:00:00 Summary01:01:30 Learning Recommendations#Ransomware #AISecurity #SRE #InfrastructureSecurity #IncidentResponse #OWASP #Cybersecurity #TechPodcast #CloudSecurity #InfoSec #ScaleToZero

April 8, 2026Episode 10348 min

IAM in 2026: From Anti-Patterns to Autonomous AI Agents | ft. Advait Patel | ScaleToZero Podcast | Ep. 108 | Cloudanix

Cloud infrastructure is moving faster than ever, but is your security keeping up? We sit down with a Senior Site Reliability Engineer to discuss the evolution of Infrastructure Security and Compliance in 2026. Whether you're an SRE, Security Engineer, or DevOps Lead, this episode will challenge how you think about "secure" infrastructure.Transcript: https://www.scaletozero.com/episodes/iam-in-2026-from-anti-patterns-to-autonomous-ai-agents-with-advait-patel/Advait Patel: https://www.linkedin.com/in/advaitpatel93/Powered by: https://cloudanix.com Also Available on our YouTube Channel: https://youtu.be/1dchqWnt1hAKey Discussion Points are as Follows:00:00 Introduction07:40 Real-world Challenges of Infrastructure Security and Compliance11:20 Automating Security Checks and Avoiding Bottlenecks13:25 Security Impact of IAM Implementation17:28 Architecting an IAM Program in 202619:38 KPIs to Measure the Effectiveness of Security Implementations22:48 Measuring the Decision Quality25:12 Most Common IAM Anti-Patterns29:40 AI Agents for Automated Root Cause Analysis of IAM Failures33:27 Will AI Agents go Fully Autonomous?35:40 Using AI to Bypass IAM Security39:14 Cloud Security Trend From 2012 Should Die42:33 Future of AI Cloud Security44:14 Summary45:24 Learning Recommendations

March 25, 2026Episode 10745 min

AI Security: Hype vs. Reality and the Roadmap to CISO | Ft. Niyati Daftary | Ep. 107 | ScaleToZero Podcast | Powered by Cloudanix

Is the security impact of AI being underrated, or are we worrying about the wrong risks? In this episode, we sit down with a Security Analyst to bridge the gap between high-level security consulting and the deep-trench reality of day-to-day defense. #Cybersecurity #SecurityAnalyst #CISO #AISecurity #SecurityResearch #Infosec #CareerRoadmap #SecurityLeadership #TechPodcast #ScaleToZero Powered by Cloudanix: https://www.cloudanix.com YouTube: https://www.youtube.com/@cloudanix 00:00 Introduction04:55 AI Security Risks Organizations are Worried09:00 Security Impact of AI - Underrated?11:33 Challenges of Security Leaders18:00 Cybersecurity Perspective of a Consultant vs. Analyst22:10 Beliefs vs. Reality in Security Practices23:53 Development of a Security Research Document31:40 Challenges of Leaders Implementing Security Research Notes36:22 Roadmap for Aspiring CISOs and Security Leaders42:22 Learning Recommendations

March 11, 2026Episode 10647 min

Product Security at Scale: Minimizing Friction & Defending AI Integrations | ft. Sana Talwar | Ep.106 | ScaleToZero Podcast

In this episode of ScaleToZero Podcast, we sit down with a Product Security Engineer to discuss the delicate balance between robust security, user experience, and developer velocity. From identifying red flags in security reviews to using AI for point-in-time vulnerability assessments, we cover the tactical moves that early security teams need to make today. The landscape is shifting from "Security vs. Engineering" to "Security + Engineering." If you're an early security team looking to leverage AI to punch above your weight class, this episode is a must-listen. YouTube: https://youtu.be/wv_1NZkv9bs Cloudanix: https://www.cloudanix.com 00:00 Introduction 03:40 Developer-friendly Security in Practice 07:22 Minimizing Friction between Security and Engineering 09:15 Navigating the Trade-offs between Security and User Experience 11:32 Red Flags in Third-Party Security Reviews and Internal Security Reviews 19:00 Point-in-Time Vulnerability Assessments using AI 21:35 Managing Malicious Updates without Manual Reviews 24:55 Communicating Third-Party Security Risks to a Product Manager 28:50 Improving Product Security using AI for Early Security Teams 33:20 AI Performing Critical Security Job Functions 35:27 Patching AI Prompt Injection Attacks 41:05 AI Integration and Reshaping Security Landscape 46:04 Summary #ProductSecurity #DevSecOps #AppSec #Cybersecurity #AISecurity #ProductManagement #DeveloperVelocity #TechLeadership #ScaleToZero

February 25, 2026Episode 10548 min

eBPF, MCP Servers, and the Kernel-Level Future of AI Security | ft. Ammar Ekbote | Ep. 105 | ScaleToZero Podcast

In this episode, we sit down with a veteran Security and Cloud Infra Leader to deconstruct the architecture of modern workload monitoring and the emerging risks of AI-driven connectivity. We dive deep into eBPF—the technology providing "invisible" observability—and the security implications of MCP (Model Context Protocol) servers in the enterprise.Whether you're an infra lead or a security engineer, this episode provides the technical depth to help you stay ahead of the curve. Also available on YouTube: https://youtu.be/iCfEJlgXFBU00:00 Teaser and Introduction04:12 Architectural differences between Agentless and Agent-based scanning07:50 Losing security signals in case of Agentless scanning09:23 Challenges of Agent-based scanning10:45 Vendor checklist for production release11:45 Noisy neighbour challenge and customer application14:52 Securing large agent-based vendor machines16:40 Use of eBPF for invisible workload monitoring19:17 Securing the eBPF21:00 Does eBPF solve the stability and performance risks?23:25 Security risks when LLMs use MCP servers27:16 Detect and Avoid MCP in an organizational environment32:32 Why use eBPF for security MCP?35:10 Using eBPF to run local servers in a secure way37:00 Can eBPF secure data leaks to AI models?41:19 Justifying stakeholders for using kernel-level security43:25 Evangelizing a security-first mindset44:50 Starting point for developer-led security using eBPF46:30 Learning recommendations47:10 Summary#eBPF #CloudSecurity #AISecurity #MCPServer #DevSecOps #AgentlessScanning #CloudInfrastructure #InfoSec #CybersecurityPodcast #LLMSecurity #KernelSecurity

February 4, 2026Episode 1041 hr 9 min

The Last9 Story: Scaling Engineering, GTM Strategy, and the Reality of "Overnight Success | Ep.104 | ScaleToZero Podcast | Ft. Nishant Modak | Cloudanix

What does it take to build a company that redefines how we look at engineering reliability? In this episode, we sit down with the Founder of Last9 to peel back the curtain on the journey from a single "Aha!" moment to a scaling enterprise.We move beyond the pitch deck to discuss the raw reality of building a startup, the mental models for engineering leadership, and what Vision 2026 looks like in the age of GenAI. Transcript: https://www.scaletozero.com/episodes/the-last9-story-scaling-engineering-gtm-strategy-and-the-reality-of-overnight-success/ Cloudanix: https://cloudanix.com/ YouTube: https://youtu.be/a955CYXLRdg00:00 Introduction of Nishant Modak03:00 Birth of Last906:40 The "Aha" moment13:00 How is Last9 different?19:10 Building blocks of Last924:20 The Moments of Overnight Success33:05 Go To Market Strategy41:40 Mental Model to Separate Administration and Engineering46:00 Engineering vs Selling49:40 Hard things of hard things, which gave results over time55:00 Vision 2026 with GenAI58:04 KPIs that helped in scaling01:01:25 Personal learnings and life#StartupStory #FounderJourney #EngineeringLeadership #Last9 #GTMStrategy #Entrepreneurship #SRE #Reliability #GenAI2026 #ScalingStartups #techpodcast

Is this your show?

Claim this listing to keep it up to date, reach guests who want to pitch you, and manage bookings with Guestify.

Claim this listing

More Technology podcasts