Episode summary
Are your AI agents a security risk or your next great hire? Everpure CISO Rick Orloff explains how to secure "digital workers" at machine speed, without throwing out the security model you already have. For Cybersecurity Awareness Month, Shawn Rosemarin sits down with Rick Orloff, Chief Information Security Officer at Everpure, to turn down the AI doom scroll and focus on what security leaders can actually act on today. In this episode: – Why AI agents should be treated like employees: an identity, scoped permissions, and a human owner who is accountable – Personal-assistant agents vs.…
Chapters
- 0:00 — Turning down the AI doom scroll
- 0:54 — Meet Rick Orloff, Everpure CISO
- 1:26 — What CISOs need to focus on in the AI era
- 3:15 — Digital workers vs. human workers
- 5:11 — Agent credentials: personal assistants vs. production agents
- 7:32 — Designing security for machine speed
- 9:03 — Agents watching agents and humans in the loop
- 10:34 — Does human oversight slow AI down? Blast radius and accountability
- 12:22 — Using AI to defend against AI
- 13:22 — The credit card fraud analogy
- 14:43 — A permissions framework for agents, APIs, and MCPs
- 16:07 — Situational awareness: build for 18 months from now
- 17:52 — The horse-and-buggy era of AI
- 20:31 — Human + machine: augmented intelligence
- 21:21 — Rick's two-question test for what to fix first
- 22:08 — Closing thoughts: speed limits for digital workers

Leave a Reply