Sign in

Jack Poller

@poller.bsky.social
329 followers 327 following 451 posts

Principle Cyber Security Industry Analyst, expert at leading Marketing, Engineering & Technology functions to deliver programs that translate strategy into actions to trigger growth for technology-led companies.

PostsRepliesMedia
Jack Poller @poller.bsky.social · 14/07/2026
DoD paused CMMC Phase II third-party audits for self-attestation. Zero trust's still right — but we just watched self-reporting fail in federal healthcare fraud. Who watches the watchers?
securityboulevard.com
Quis Custodiet Ipsos Custodes? What DoD’s CMMC Pause Gets Wrong About Trust - Security Boulevard
Two thousand years ago, the Roman poet Juvenal asked a question that every security professional eventually confronts.
010
Jack Poller @poller.bsky.social · 08/07/2026
"Air-gapped" isn't a defense — it's an assumption. TrojPix turns an HDMI cable into a covert radio transmitter, exfiltrating data at 8.1 Mbps with zero network footprint. Your EDR, DLP, and SIEM never see it leave. The only lever left: Zero Trust. My analysis: securityboulevard.co...
000
Jack Poller @poller.bsky.social · 02/07/2026
100% GPU utilization. 60% of cycles wasted on recomputation. @Solidigm and @MinIO showed at #AIIFD5 why that's an architecture problem — and what the fix actually looks like. paradigmtechnica.com...
000
Jack Poller @poller.bsky.social · 01/07/2026
Recovery and trustworthiness aren't the same thing. Commvault made that distinction the centerpiece of their #AIIFD5 presentation — and it reframes how enterprises should think about AI resilience entirely. paradigmtechnica.com...
000
Jack Poller @poller.bsky.social · 30/06/2026
The file system isn't passive infrastructure anymore. @CTERA made that case precisely at #AIIFD5 — and the argument lands hard for anyone deploying agents at scale. paradigmtechnica.com...
000
Jack Poller @poller.bsky.social · 29/06/2026
5–10% GPU utilization. The model's fine. The storage layer is the problem. @Scality's ADI presentation at #AIIFD5 was the most precise systems-level diagnosis of enterprise AI's real bottleneck I've seen. paradigmtechnica.com...
000
Jack Poller @poller.bsky.social · 24/06/2026
Vuln exploitation just overtook credential abuse in the 2026 DBIR. So the password is dead? 86,000 cracked Fortinet credentials in FortiBleed say otherwise—no zero-day needed. A ranking change isn't a risk change. My case for going passwordless:
securityboulevard.com
Credentials Lost the Top Spot. They Didn’t Lose Their Teeth - Security Boulevard
The 2026 Verizon Data Breach Investigations Report delivered a finding that many security leaders read as a turning point.
000
Jack Poller @poller.bsky.social · 03/06/2026
Govts worldwide are catching a bad case of VC envy—and Sen. Sanders just made it policy. Seizing 50% of AI companies wouldn't democratize AI. It would lobotomize it. Government's job is to build the conditions for business to thrive, not to confiscate the upside. wp.me/p91vu9-8OYo
000
Jack Poller @poller.bsky.social · 28/05/2026
NIST just advanced 9 candidates to Round 3 of its additional PQC digital signatures process. Four mathematical families. Two-year timeline. And a hard lesson from SIKE and Rainbow: cryptographic monoculture is a systemic risk. My analysis on Security Boulevard: securityboulevard.co...
000
Jack Poller @poller.bsky.social · 27/05/2026
Before your next PAM or IGA investment, do you actually know what you're protecting? @SPHERETechSol is building the identity hygiene layer the industry has been missing. My RSAC 2026 Vendor Spotlight: paradigmtechnica.com...
000
Jack Poller @poller.bsky.social · 26/05/2026
The U.S. just committed $2B to quantum computing via the CHIPS Act — and took equity stakes in all 9 recipients. @IBM, D-Wave, Rigetti, Quantinuum & more. Shor's algorithm started a clock. Washington is racing to answer it. securityboulevard.co...
000
Jack Poller @poller.bsky.social · 21/05/2026
The unsolved problem in container security isn't detection — it's the 80-day gap between a published fix and when your engineers can use it. My RSAC Vendor Spotlight on Echo.AI paradigmtechnica.com... #DevSecOps #RSAC2026
010
Jack Poller @poller.bsky.social · 21/05/2026
One government agency. 11 PAM platforms. That's not a security strategy—it's a liability. Keeper Security is making the case for consolidation, and it's compelling. My RSAC 2026 Vendor Spotlight: paradigmtechnica.com... #PAM #IdentitySecurity
000
Jack Poller @poller.bsky.social · 20/05/2026
AI coding agents are pulling open source packages faster than any developer can audit them. ActiveState is building the answer — a curated, hermetically sealed catalog of verified components. My RSAC 2026 Vendor Spotlight: paradigmtechnica.com...
000
Jack Poller @poller.bsky.social · 20/05/2026
92% of security teams are confident in detection. 70% still have vulns hitting production. The gap isn't the scanner — it's everything after. My Ryan Vendor Spotlight on @ArmorCode and why the control plane wins. paradigmtechnica.com...
000
Jack Poller @poller.bsky.social · 19/05/2026
70% of cyberattacks start with harvested credentials. SSO doesn't fix it. Your password manager probably covers 25% of your workforce. Dashlane is rethinking the whole model — and their MCP trust layer for agentic AI is worth your attention. paradigmtechnica.com...
000
Jack Poller @poller.bsky.social · 19/05/2026
GRC has a smoke alarm problem: CISOs drowning in signals with no business context. @TrustCloud is fixing that with a data fabric that connects controls to revenue, risk, and board-level decisions. My RSAC Vendor Spotlight: paradigmtechnica.com...
110
Jack Poller @poller.bsky.social · 18/05/2026
AI cyber autonomy is doubling every 5 months—5x faster than Moore's Law. That's not a projection. It's a measured, accelerating reality that's already outrunning your threat models. The window for building resilience is open now.
securityboulevard.com
Beyond Moore’s Law: The Hyper-Acceleration of Autonomous AI Cyber Capabilities
The UK’s AI Security Institute (AISI) has documented something that should reorder every CISO’s threat model and every board’s risk conversation: the
000
Jack Poller @poller.bsky.social · 18/05/2026
Agentic AI in your email security? The code-data boundary is gone — and prompt injection is the new SQL injection. My Ryan spotlight on @SublimeSecurity breaks down why enforcement has to live in the architecture, not the LLM. paradigmtechnica.com...
020
Jack Poller @poller.bsky.social · 15/05/2026
By end of 2026, AI agents may outnumber employees 100:1 — with keys to your most sensitive systems. Most orgs are managing them blind. SailPoint's Agentic Fabric changes that. New analysis: paradigmtechnica.com...
000
Jack Poller @poller.bsky.social · 12/05/2026
100% of orgs granted security exceptions last year. Not most. Every single one. The Exception Economy isn't an anomaly — it's the operating model. New @ReplicaCyber research puts numbers to what security leaders already know. My Anslysis
securityboulevard.com
The Exception Economy: When Security Teams Stop Protecting and Start Negotiating - Security Boulevard
There is a term that has quietly become the most accurate description of how enterprise security operates in 2026.
000
Jack Poller @poller.bsky.social · 12/05/2026
Your AI agents are touching everything. When one goes wrong, do you know what it touched, what it changed, and how to undo it? @Veeam's DataAI Command Platform was built for exactly that moment. My analysis: paradigmtechnica.com... #VeeamON
010
Jack Poller @poller.bsky.social · 04/05/2026
78% of enterprise security spend goes to keeping threats out. Almost nothing goes to getting back up and running. @Dell is fixing that — and the architecture is worth your attention. #XFD15 #Cybersecurity #CyberResilience paradigmtechnica.com...
010
Jack Poller @poller.bsky.social · 30/04/2026
Fortinet's platform bet centers on one OS running everything—firewalls, SASE, and now FortiSOC unifying SIEM, SOAR, XDR, ITDR, and agentic AI in a single service. At 36K attack scans/sec, fragmented stacks benefit attackers. Full take: paradigmtechnica.com... #XFD15
020
Jack Poller @poller.bsky.social · 28/04/2026
You're paying for DDoS protection you've never actually validated. Configuration gaps — not mitigation failures — are why attacks still land. My #RSAC2026 vendor spotlight on @MazeBolt: paradigmtechnica.com...
000
Jack Poller @poller.bsky.social · 23/04/2026
Insider threat programs have always been a Fortune 500 luxury. Above Security is changing that—agentic AI investigators, zero config, five-minute deploy. My RSAC Vendor Spotlight: paradigmtechnica.com... #InsiderRisk #AgenticAI
020
Jack Poller @poller.bsky.social · 17/04/2026
Cyber regulation isn't a technical discipline anymore — it's an extension of geopolitics. @NCCGroupplc's Global Cyber Policy Radar maps what that means for your board, your AI stack, and your supply chain. My take: securityboulevard.co...
000
Jack Poller @poller.bsky.social · 13/04/2026
Finding bugs was never the hard part. Anthropic's Project Glasswing will surface vulnerabilities faster than any tool in history. The remediation queue is already overflowing. This is a faster way to drown. #cybersecurity #AI securityboulevard.co...
000
Jack Poller @poller.bsky.social · 13/04/2026
96% of ransomware attacks target your backups first. If your immutability setting can be disabled, it's not immutable—it's theatrical. New post on what absolute immutability actually requires. paradigmtechnica.com...
010
Jack Poller @poller.bsky.social · 10/04/2026
Your AI agents have God Mode access to sensitive data. No governance. No audit trail. No undo button. Veeam at #TFDxRSAC is building exactly that — and it's more urgent than most security teams realize. 🔗 paradigmtechnica.com...
000
Jack Poller @poller.bsky.social · 09/04/2026
Your private cloud delivers compute, storage & networking—but developers are still waiting weeks for a database. VCF 9's DBaaS finally fixes the provisioning bottleneck that's been undermining private cloud ROI for years. paradigmtechnica.com...
000
Jack Poller @poller.bsky.social · 09/04/2026
Google DeepMind just named a threat class attackers are already exploiting: AI Agent Traps. 86% commandeer rates. 93% mobile attack success. Your agents are reading the web — and the web is ready for them.
securityboulevard.com
The Web Is Full of Traps — and AI Agents Walk Right into Them
The enterprise is deploying AI agents at a pace that has outrun every security framework written to govern them. These agents don’t just answer questions
100
Jack Poller @poller.bsky.social · 09/04/2026
The Pentagon's new Joint Cyber Hunt Kit is a standardized SOC in a suitcase. SMBs can't afford a 24/7 SOC. MSSPs serve dozens of wildly different environments. The JCHK blueprint solves both problems. Here's the lesson the commercial sector needs to learn.
securityboulevard.com
Standardize or Suffer: The JCHK Blueprint for MSSPs Defending SMB and SME Clients
Advanced persistent threats don't discriminate by organization size — they discriminate by defense capability. Nation-state actors and their proxies
000
Jack Poller @poller.bsky.social · 08/04/2026
Anthropic leaked 512K lines of Claude Code source. 🚫Insider threat tools missed it. 🚫DLP missed it. 🚫AppSec missed it. That's not an Anthropic failure — that's a security industry failure. My latest: paradigmtechnica.com...
130
Jack Poller @poller.bsky.social · 08/04/2026
Your printers are Linux servers with open ports, stored credentials & no owner. 56% of orgs had a print-related breach. @SymphionSecure is fixing that. New #RSAC2026 spotlight: paradigmtechnica.com...
000
Jack Poller @poller.bsky.social · 07/04/2026
Attackers don't break in — they log in. 57% of cyberattacks start with compromised identity. At #RSAC2026, Commvault showed why identity resilience isn't optional — and why ResOps changes everything. 🔗 paradigmtechnica.com... #cybersecurity #NHI #identity #TFDxRSAC #TFDxRSAC2026
000
Jack Poller @poller.bsky.social · 06/04/2026
96% of ransomware attacks target your backups first. If your immutability setting can be disabled, it's not immutable—it's theatrical. New post on what absolute immutability actually requires. paradigmtechnica.com...
000
Jack Poller @poller.bsky.social · 03/04/2026
Your AI agents have God Mode access to sensitive data. No governance. No audit trail. No undo button. Veeam at #TFDxRSAC is building exactly that — and it's more urgent than most security teams realize. 🔗 paradigmtechnica.com...
040
Jack Poller @poller.bsky.social · 02/04/2026
Your private cloud delivers compute, storage & networking—but developers are still waiting weeks for a database. VCF 9's DBaaS finally fixes the provisioning bottleneck that's been undermining private cloud ROI for years. paradigmtechnica.com...
000
Jack Poller @poller.bsky.social · 02/04/2026
The Pentagon's new Joint Cyber Hunt Kit is a standardized SOC in a suitcase. SMBs can't afford a 24/7 SOC. MSSPs serve dozens of wildly different environments. The JCHK blueprint solves both problems. Here's the lesson the commercial sector needs to learn.
securityboulevard.com
Standardize or Suffer: The JCHK Blueprint for MSSPs Defending SMB and SME Clients
Advanced persistent threats don't discriminate by organization size — they discriminate by defense capability. Nation-state actors and their proxies
000
Jack Poller @poller.bsky.social · 02/04/2026
Data gravity isn't slowing your AI strategy—it's strangling it. Fragmented silos, legacy storage, and GPU clusters starving for data are costing you real money. Audi breaks the chain. paradigmtechnica.com...
010
Jack Poller @poller.bsky.social · 01/04/2026
Anthropic leaked 512K lines of Claude Code source. 🚫Insider threat tools missed it. 🚫DLP missed it. 🚫AppSec missed it. That's not an Anthropic failure — that's a security industry failure. My latest: paradigmtechnica.com...
020
Jack Poller @poller.bsky.social · 01/04/2026
Synthetic identity fraud jumped 8x in one year. Your next hire might not exist. The @LexisNexis 2026 Cybercrime Report exposes the explosion — and the North Korean IT worker playbook behind it.
securityboulevard.com
Your Next Employee Might Not Exist: LexisNexis Report Exposes the Synthetic Identity Explosion
The cybercrime landscape has always rewarded speed — smash-and-grab credential theft, rapid account takeovers, opportunistic phishing. But the LexisNexis
010
Jack Poller @poller.bsky.social · 19/03/2026
The White House cyber strategy is 7 pages. Critics call it thin. They're measuring the wrong thing. Policy is Washington's job. Implementation belongs to the private sector — where the real expertise lives. My take:
securityboulevard.com
The White House Got the Cyber Strategy Right — By Knowing What Not to Do
Analysis of the Trump administration’s concise 2024 cybersecurity strategy arguing for policy-led government, private-sector implementation, deregulation to spur innovation, and elevation of AI security as a national priority.
010
Jack Poller @poller.bsky.social · 17/03/2026
Meta's AI safety chief lost control of her own agent. An AI bot attacked 6 open-source repos for 10 days undetected. Your controls were built for humans. Agents aren't human. The gap between executive confidence and actual capability is the real risk.
securityboulevard.com
Meta's AI Safety Chief Couldn't Stop Her Own Agent. What Makes You Think You Can Stop Yours?
Two incidents from the last two weeks of February need to be read together, because separately they look like cautionary anecdotes and together they look
010
Jack Poller @poller.bsky.social · 12/03/2026
83% of cloud breaches start with identity. We've overprovisioned humans forever — now we've copy-pasted that problem onto NHIs and AI agents. New analysis from Google's H1 2026 Cloud Threat Horizons Report:
securityboulevard.com
83% of Cloud Breaches Start with Identity, AI Agents Are About to Make it Worse
Summary of Google’s H1 2026 Cloud Threat Horizons findings arguing identity failures, weaponized local AI tooling, and collapsing exploitation windows require AI-native security architectures and automated identity governance.
010
Jack Poller @poller.bsky.social · 12/03/2026
The White House cyber strategy is 7 pages. Critics call it thin. They're measuring the wrong thing. Policy is Washington's job. Implementation belongs to the private sector — where the real expertise lives. My take:
securityboulevard.com
The White House Got the Cyber Strategy Right — By Knowing What Not to Do
Analysis of the Trump administration’s concise 2024 cybersecurity strategy arguing for policy-led government, private-sector implementation, deregulation to spur innovation, and elevation of AI security as a national priority.
010
Jack Poller @poller.bsky.social · 10/03/2026
Meta's AI safety chief lost control of her own agent. An AI bot attacked 6 open-source repos for 10 days undetected. Your controls were built for humans. Agents aren't human. The gap between executive confidence and actual capability is the real risk.
securityboulevard.com
Meta's AI Safety Chief Couldn't Stop Her Own Agent. What Makes You Think You Can Stop Yours?
Two incidents from the last two weeks of February need to be read together, because separately they look like cautionary anecdotes and together they look
000
Jack Poller @poller.bsky.social · 26/02/2026
Every network has an expiration date. AI demand and quantum computing are rewriting the rules of enterprise infrastructure—and Cisco is making a big architectural bet to stay ahead of both. My full analysis 👇 paradigmtechnica.com...
000
Jack Poller @poller.bsky.social · 25/02/2026
Your AI cluster is only as fast as the network feeding it. A dropped packet doesn't just cause latency — it idles thousands of GPUs simultaneously. New analysis on why networking is now the defining variable in AI ROI: paradigmtechnica.com...
000