Drata And The Rise Of The Chief Trust Officer In The AI Era

Drata And The Rise Of The Chief Trust Officer In The AI Era

Have you ever wondered why "compliance" still gets treated like a slow, spreadsheet-heavy chore, even though the rest of the business is moving at machine speed?

In this episode of Tech Talks Daily, I sit down with Matt Hillary, Chief Information Security Officer at Drata, to talk about what actually changes when AI and automation land in the middle of governance, risk, and compliance. Matt brings a rare viewpoint because he lives this day-to-day as "customer zero," running Drata internally while also leading IT, security, GRC, and enterprise apps.

We get practical fast. Matt shares how AI-assisted questionnaire workflows can turn a 120-question security assessment from a late-afternoon time sink into something you can complete with confidence in minutes, then still make it upstairs in time for dinner. He also explains how automation flips the audit dynamic by moving from random sampling to continuous, full-population checks, using APIs to validate evidence at scale, without hounding control owners unless something is actually wrong.

We also talk about what security leadership really looks like when the stakes rise. Matt reflects on lessons from his time at AWS, why curiosity and adaptability matter when the "canvas" keeps changing, and how customer focus becomes the foundation of trust. That theme runs through the whole conversation, including the idea that the CISO role is steadily turning into a chief trust officer role, where integrity, transparency, and credibility under pressure matter as much as tooling.

And because burnout is never far away in security, we dig into the human side too. Matt unpacks how automation can reduce cognitive load, but also warns about swapping one kind of pressure for another, especially when teams get trapped producing endless dashboards and vanity metrics instead of focusing on the few measures that actually reduce risk.

To wrap things up, Matt leaves a song for the playlist, Illenium's "You're Alive," plus a book recommendation, "Lessons from the Front Lines, Insights from a Cybersecurity Career" by Asaf Karen, which he says stands out for how it treats the human side of security leadership. If you're thinking about modernizing compliance in 2026 without losing the human element, his parting principle is simple and powerful: be intentional, keep asking why, and spend your limited time on what truly matters.

So where do you land on this shift toward continuous trust, do you see it becoming the default expectation for buyers and auditors, and what should leaders do now to make sure automation reduces pressure instead of quietly adding more? Share your thoughts with me, I'd love to hear how you're approaching it.

Det här avsnittet är hämtat från ett öppet RSS-flöde och publiceras inte av Podme. Det kan innehålla reklam.

Avsnitt(2000)

Building AI Data Readiness With Kiteworks

Building AI Data Readiness With Kiteworks

Could your organization produce a complete record of everything its AI systems accessed, sent, or shared within one business day? In this episode of Tech Talks Daily, I welcome Tim Freestone, Chief St...

31 Aug 22min

Testing the Blast Radius of Agentic AI With NTT DATA

Testing the Blast Radius of Agentic AI With NTT DATA

What happens when an AI agent follows your documented process perfectly, but that process bears little resemblance to how decisions are actually made? In this episode, I speak with Bill Wilson, Execut...

30 Aug 29min

Building Legal Accountability for AI Agents With Norm AI

Building Legal Accountability for AI Agents With Norm AI

Who carries responsibility when an AI agent begins reviewing contracts, applying regulatory rules or making commercial decisions on behalf of an organization? In this episode of Tech Talks Daily, I sp...

29 Aug 25min

Moving Enterprise AI From Hype to Accountable Results With Freshworks

Moving Enterprise AI From Hype to Accountable Results With Freshworks

Has enterprise AI finally reached the point where impressive demonstrations are no longer enough? In this episode, I speak with Murali Swaminathan, CTO at Freshworks, about the growing pressure on AI ...

28 Aug 22min

Building Infrastructure That Can Govern AI Agents With Broadcom

Building Infrastructure That Can Govern AI Agents With Broadcom

What happens when an organization writes careful AI governance policies but its infrastructure cannot enforce any of them? In this episode of Tech Talks Daily, I speak with Sabina Anja, Chief Technolo...

27 Aug 25min

Turning Rising AI Cloud Costs Into Business Value With Unravel Data

Turning Rising AI Cloud Costs Into Business Value With Unravel Data

What does a rising cloud bill actually tell you about the value your business is creating? Eight years after our first conversation, I welcome Kunal, co-founder and CEO of Unravel Data, back to Tech T...

27 Aug 27min

Testing AI That Never Stops Changing With UL Solutions

Testing AI That Never Stops Changing With UL Solutions

How can an independent safety evaluation remain meaningful when the AI inside a product may change after its next update? In this episode of Tech Talks Daily, I speak with Dr. Robert Slone, Senior Vic...

26 Aug 29min

Reducing NHS Waiting Times Through Patient Self Scheduling With Nordic

Reducing NHS Waiting Times Through Patient Self Scheduling With Nordic

Could allowing patients to choose their own appointment times help reduce missed visits and shorten NHS waiting lists? In this episode of Tech Talks Daily, I speak with Alison MacDonald, European Lead...

26 Aug 36min

Populärt inom Politik & nyheter

aftonbladet-krim
svenska-fall
p3-krim
rss-krimstad
en-runda-till
aftonbladet-daily
flashback-forever
politiken
rss-sanning-konsekvens
rss-vad-fan-hande
kungligt
rss-krimreportrarna
motiv
svd-ledarredaktionen
rss-frandfors-horna
rss-flodet
fordomspodden
spar
rss-expressen-dok
krimmagasinet