
The Cyber Mettle Podcast with Alyson & Omar
by The Cyber Mettle Podcast with Alyson & Omar
Is this your podcast?Insights from recent episode analysis
Audience Interest
Podcast Focus
Publishing Consistency
Platform Reach
Insights are generated by CastFox AI using publicly available data, episode content, and proprietary models.
Total monthly reach
Estimated from 1 chart position in 1 market.
By chart position
- 🇳🇿NZ · Technology#141500 to 3K
- Per-Episode Audience
Est. listeners per new episode within ~30 days
150 to 900🎙 Daily cadence·20 episodes·Last published today - Monthly Reach
Unique listeners across all episodes (30 days)
500 to 3K🇳🇿100% - Active Followers
Loyal subscribers who consistently listen
200 to 1.2K
Market Insights
Platform Distribution
Reach across major podcast platforms, updated hourly
Total Followers
—
Total Plays
—
Total Reviews
—
* Data sourced directly from platform APIs and aggregated hourly across all major podcast directories.
On the show
Recent episodes
Data Brokers, Doxxing & Digital Privacy with Yael Grauer | The Cyber Mettle Podcast S1E26
May 26, 2026
43m 39s
The Future of Cybersecurity Jobs in the AI Era | James McQuiggan S1E25
May 19, 2026
41m 05s
Why Cybersecurity Hiring Is Breaking the Talent Pipeline: Pete Strouse on AI, GRC & Recruiting S1E24
May 12, 2026
46m 38s
Cert Corner | CISM Explained: 2026 Exam Changes, What It Really Means, and Who Should Get It S1E23
May 5, 2026
41m 00s
The Revenge of the Generalist: AI, Risk, and the Future of Cybersecurity Leadership | Fred Descloux S1E22
Apr 28, 2026
55m 20s
Social Links & Contact
Official channels & resources
Official Website
Login
RSS Feed
Login
| Date | Episode | Description | Length | ||||||
|---|---|---|---|---|---|---|---|---|---|
| 5/26/26 | ![]() Data Brokers, Doxxing & Digital Privacy with Yael Grauer | The Cyber Mettle Podcast S1E26 | Yael Grauer joins The Cyber Mettle Podcast for a candid conversation about data brokers, cybersecurity journalism, OSINT culture, digital privacy, surveillance technology, and the growing tension between public information and personal safety. The discussion explores how investigative journalists and hackers navigate trust, why personal information is so easy to obtain online, and what individuals can realistically do to reduce their exposure. The episode also dives into online investigation culture, doxxing, public records, and the ethical complexity of privacy in the digital age — all mixed with surprisingly relatable stories from the jiu-jitsu world. | 43m 39s | ||||||
| 5/19/26 | ![]() The Future of Cybersecurity Jobs in the AI Era | James McQuiggan S1E25 | Cybersecurity veteran James McQuiggan joins The Cyber Mettle Podcast to discuss AI disruption, cybersecurity careers, deepfakes, human risk, ransomware, vibe coding, and why human judgment still matters in an AI-driven world. From SCADA systems and Stuxnet to SOC analysts and generative AI, James delivers practical advice for cybersecurity professionals trying to stay relevant while navigating one of the biggest technology shifts in decades. The episode also explores mentorship, community, security awareness, and the surprisingly strategic role of dad jokes in cybersecurity presentations. | 41m 05s | ||||||
| 5/12/26 | ![]() Why Cybersecurity Hiring Is Breaking the Talent Pipeline: Pete Strouse on AI, GRC & Recruiting S1E24 | Cybersecurity hiring is changing fast — and not always for the better. In this episode, recruiter Pete Strouse joins The Cyber Mettle Podcast to discuss how AI, automation, and risk-averse hiring practices are reshaping the cybersecurity workforce. From disappearing entry-level opportunities to the rise of GRC engineering and AI governance, Pete explains what employers are really looking for and why networking and transferable skills matter more than ever. The conversation also dives into hiring bias, private equity’s growing role in cybersecurity, compliance automation trends, and the long-term risks of failing to build future talent pipelines. A must-listen for cybersecurity professionals, GRC practitioners, hiring managers, and anyone trying to navigate the modern cybersecurity job market. | 46m 38s | ||||||
| 5/5/26 | ![]() Cert Corner | CISM Explained: 2026 Exam Changes, What It Really Means, and Who Should Get It S1E23 | The CISM certification is evolving and so is what it signals about your career. In this Cert Corner episode, we unpack the upcoming November 3, 2026 exam changes, what ISACA is prioritizing, and why the CISM is less about technical execution and more about leading security programs and teams. You’ll learn: What’s changing in the exam structure How CISM differs from CISSP and CRISC The mindset shift required to pass Real-world career impact from someone who’s lived it If you’re moving into cybersecurity leadership or program management, this is essential listening. | 41m 00s | ||||||
| 4/28/26 | ![]() The Revenge of the Generalist: AI, Risk, and the Future of Cybersecurity Leadership | Fred Descloux S1E22 | AI isn’t eliminating cybersecurity roles—it’s redefining them. In this episode, Fred Descloux joins The Cyber Mettle Podcast to explore how automation is shifting value away from execution and toward decision-making, accountability, and systems thinking. From dismantling silos to redefining talent development, this conversation challenges long-held assumptions about expertise, career paths, and leadership in cybersecurity. If you’ve ever wondered whether being a generalist is a weakness or a strength—this episode makes a compelling case for the latter. | 55m 20s | ||||||
| 4/21/26 | ![]() Protecting Seniors from Scams, AI Impersonation & Data Brokers | Cat Karow (ZoraSafe) S1E21 | Scams are evolving, and they’re getting personal. In this episode, cybersecurity expert Cat Karow joins The Cyber Mettle Podcast to break down how AI impersonation, data brokers, and emotional manipulation are reshaping fraud. From real-world stories to practical strategies, this conversation focuses on protecting seniors and vulnerable family members while removing the stigma around being targeted. A must-listen for anyone navigating today’s digital world with family in mind. | 53m 59s | ||||||
| 4/14/26 | ![]() From Historian to AI Governance Leader: How to Break Into Privacy & AI (Dr. Kyle David) S1E20 | Dr. Kyle David (Dr. David Privacy) shares how he transitioned from academia into privacy and AI governance and what that journey reveals about breaking into today’s most in-demand tech-adjacent careers. This episode explores the current state of AI governance jobs, the role of regulation, and practical strategies for gaining experience, even without a traditional background. From certifications to volunteering to internal career pivots, this conversation offers a clear, realistic roadmap for professionals looking to enter privacy, cybersecurity, or AI governance. | 47m 21s | ||||||
| 4/7/26 | ![]() AI Governance Is Already Broken — Here’s How to Fix It | Graeme Rudd (Arise Framework) S1E19 | AI is forcing organizations to rethink everything—from security and compliance to leadership and ethics. In this episode, Graeme Rudd (Assessed Intelligence) explains why treating AI like traditional software is a critical mistake, and how organizations can take a practical, structured approach to governance using the Arise Framework. A must-listen for leaders navigating AI adoption in regulated, high-risk, or fast-moving environments. | 56m 01s | ||||||
| 3/31/26 | ![]() Cybersecurity Career Paths Decoded: Red, Blue, Purple & Beyond | The Cyber Mettle Podcast S1E18 | Most people entering cybersecurity know they want in. Very few know which role actually fits them — and the field does remarkably little to bridge that gap. In this episode of The Cyber Mettle Podcast, Dr. Omar Sangurima and Alyson Laderman, Esq. break down the InfoSec color wheel in practical terms: red, blue, white, purple, orange, yellow, and green teams — what each one actually does, what kind of thinker thrives there, and why the industry’s chaotic approach to job titles and role definitions makes it harder than it needs to be for aspiring professionals to find their fit. Omar draws from 12 years in cybersecurity, including his work at Memorial Sloan Kettering and years of informal mentorship, to walk through how he helps people reverse-engineer a career path — starting with what they are curious about, not what certification they should chase. Alyson applies the legal profession’s structured specialization model as a lens for what cybersecurity has yet to build. The conversation also covers the NICE framework as a practical tool for hiring managers and workforce developers, the cultural problem behind misaligned job specs, and why hiring quality almost always starts with tone from leadership. Alyson shares an update on Cyber Mettle Inc., a newly approved 501(c)(3) focused on creating supervised, entry-level cybersecurity jobs while providing affordable security services to nonprofits and qualifying small businesses. The organization is targeting a fall 2026 launch for job applications and services. Learn more at https://cybermettle.org. Subscribe for new episodes every Tuesday on all major platforms and YouTube. | 49m 43s | ||||||
| 3/24/26 | ![]() Cert Corner AI Governance Certification (AIGP) — What It’s REALLY Like to Take the Exam S1E17 | In this episode of Cert Corner, Omar Sangurima shares a real-time breakdown of the AI Governance Professional (AIGP) certification from the IAPP. Recorded immediately after taking the exam, this conversation covers everything from exam structure and difficulty to preparation strategies and the broader implications of AI governance across industries. If you’re exploring careers in cybersecurity, privacy, legal compliance, or AI risk management, this episode offers practical insight into one of the fastest-growing certification paths in the field. | 32m 33s | ||||||
Want analysis for the episodes below?Free for Pro Submit a request, we'll have your selected episodes analyzed within an hour. Free, at no cost to you, for Pro users. | |||||||||
| 3/17/26 | ![]() Fixing the Cybersecurity Entry-Level Job Crisis | The Cyber Mettle Podcast S1E16 | Is cybersecurity really facing a talent shortage — or a pipeline problem? In this episode of The Cyber Mettle Podcast, Omar Sangurima and Alyson Laderman unpack the growing disconnect between cybersecurity hiring practices and workforce development. Despite hundreds of thousands of open cybersecurity roles, most require years of experience, leaving aspiring professionals unable to enter the field. The hosts explore why the industry struggles to create true entry-level opportunities, how hiring practices and AI screening contribute to the problem, and why leadership must take a more deliberate approach to training. They also introduce Cyber Mettle, a nonprofit initiative designed to create real entry-level cybersecurity jobs while helping community organizations improve their cyber resilience. This conversation challenges long-held assumptions about the cybersecurity talent shortage and offers practical ways the industry can move forward. | 52m 38s | ||||||
| 3/10/26 | ![]() Cert Corner: What Is the CTPRP Certification? Building a Third-Party Risk Program S1E15 | In this Cert Corner episode of The Cyber Mettle Podcast, Omar Sangurima shares his experience earning the Certified Third-Party Risk Professional (CTPRP) certification from Shared Assessments. While working to stand up a third-party risk program in his organization, Omar pursued the certification to better understand how vendor risk management fits within broader enterprise risk frameworks. He and Alyson Laderman discuss who the certification is designed for, how the exam works, what the study process looks like, and the practical value of the material for professionals responsible for building or formalizing third-party risk programs. The episode also explores the growing importance of vendor risk management, program governance, and reporting risk to leadership and boards. | 25m 03s | ||||||
| 3/3/26 | ![]() How AI & Cybersecurity Will Shape the Future of Farming | Securing Agriculture Before It’s Too Late S1E14 | AI is reshaping agriculture — from autonomous tractors to precision crop monitoring — but cybersecurity hasn’t kept pace. In this episode, Ezekiel “Zeke” McReynolds joins The Cyber Mettle Podcast to discuss how connected farming systems are expanding the attack surface of critical food infrastructure. We explore AI-enabled crop analytics, remote sensing, right-to-repair battles, ransomware risks, and why agriculture has a narrow window to build security in before full autonomy arrives. Food systems are more connected than ever. The question is whether they’re resilient enough. | 46m 34s | ||||||
| 2/24/26 | ![]() AI Agents, Identity & Zero Standing Privilege | Ofir Stein (CTO, Apono) S1E13 | AI agents are making real-time decisions at machine speed, but most security models still rely on static controls and quarterly access reviews. In this episode, Ofir Stein, CTO and Co-Founder of Apono, joins The Cyber Mettle Podcast to discuss how identity and access management must evolve for a world of AI agents. The conversation explores zero standing privilege, prompt injection risks, balancing productivity with security, and why organizations cannot afford to “block AI” — because it’s already here. If you’re leading security, technology, or governance inside a modern organization, this episode provides a grounded, practical framework for thinking about AI risk without hype or fear. | 40m 16s | ||||||
| 2/17/26 | ![]() COSO ERM Explained for CISOs | Enterprise Risk Management for Cyber Leaders (AICPA Review) S1E12 | In this Cert Corner episode, Omar Sangurima reviews the COSO Enterprise Risk Management (ERM) certificate offered through the AICPA. As cybersecurity professionals increasingly present to boards and executive leadership, understanding enterprise risk becomes critical. Omar shares his candid experience with the course structure, exam difficulty, cost, and practical value — and reflects on how ERM reframes risk as part of business strategy and performance. Alyson Laderman adds insight into how certification exams are built and why question clarity matters. A practical conversation for CISOs, aspiring CISOs, and cyber leaders looking to bridge the business-risk gap. | 36m 25s | ||||||
| 2/13/26 | ![]() GRC Isn’t a Checkbox: Dr. Mike Brass on AI Governance, Risk & the Three Lines of Defense S1E11 | GRC isn’t a compliance checklist — it’s a strategic business function. Dr. Mike Brass joins The Cyber Mettle Podcast to break down governance, risk, and compliance through the lens of human behavior, enterprise security architecture, and AI governance. From UK cyber apprenticeships to the misuse of “GRC engineering,” this episode explores what security leaders must understand about second-line functions, AI risk management frameworks, and aligning governance to business mission. If you care about AI governance, security architecture, or evolving your GRC program beyond automation — this episode delivers clarity. | 1h 02m 02s | ||||||
| 1/27/26 | ![]() Small Business Cybersecurity Made Practical (NIST CSF 2.0 + Quick Start Guide) | Daniel Eliot S1E10 | Small businesses aren’t “too small” to be targeted, and attackers don’t need to know who you are to compromise you. In this episode, Omar and Alyson talk with Daniel Eliot from NIST, who leads small business engagement in NIST’s Applied Cybersecurity Division. They break down NIST’s Small Business Cybersecurity Corner, why cybersecurity is increasingly a competitive advantage, and how to use CSF 2.0 and the Small Business Quick Start Guide without getting overwhelmed. Daniel’s first-step recommendation is clear: turn on MFA. They also cover how small businesses can build a cybersecurity “team” through MSPs, upskilling, nonprofits, and universities and how to give feedback directly to NIST. | 44m 52s | ||||||
| 1/20/26 | ![]() Tough Conversations: How Online Grooming Actually Starts (Games, Chats, “Harmless” Apps) S1E9 | Online grooming and sexploitation rarely start with explicit messages. They start with trust. In this episode, The Cyber Mettle Podcast breaks down how exploitation happens through games, apps, and everyday digital interactions and what parents and caregivers can do to intervene early. | 1h 02m 17s | ||||||
| 1/13/26 | ![]() Cert Corner: Shared Assessments CTPRA - What’s on the Exam + Is It Worth It? S1E8 | In the first episode of Cert Corner, Omar breaks down the Shared Assessments CTPRA exam: what it tests, how scenario-based questions show up in practice, and why SIG, standardized control assessments, and risk tiering are core to third-party risk work. He also shares the proctoring experience, time expectations, prep course takeaways, and a candid view on price/value, especially if you’re considering paying out of pocket. | 30m 41s | ||||||
| 1/6/26 | ![]() The Cyber Pipeline Myth: Why Entry-Level Cyber Jobs Are Broken | Jennifer Cutler-Scotti S1E7 | Is there really a cybersecurity talent shortage, or are we defining “entry-level” in a way that shuts people out? In this episode of The Cyber Mettle Podcast, hosts Omar Sangurima and Alyson Laderman are joined by Jennifer Cutler-Scotti, Associate Director at the Texas A&M Institute of Data Science, to challenge the long-standing narrative of a cybersecurity “pipeline problem.” Drawing from years of experience working directly with students, faculty, and industry partners, Jennifer explains why entry-level cyber roles demanding multiple years of experience are creating real barriers, how experiential learning and student-led work count as meaningful experience, and where industry and academia are misaligned in preparing talent. The conversation explores: * Why internships aren’t the hard part — but expectations are * How unpaid, academic, and extracurricular work translates into real-world readiness * The role of small and mid-sized businesses in improving cyber resilience * The growing intersection of cybersecurity, AI, and data science * Why security must be built in from the start — not added after the fact * How training, retention, and burnout are connected This episode offers a practical, human-centered look at how cybersecurity careers actually begin, and what needs to change to make the system work better for everyone. | 59m 52s | ||||||
| 12/23/25 | ![]() Tough Conversations: Lawyers as Homies -- Why Lawyers Aren’t Your Enemy (Cyber, Business & Reality Checks) S1E6 | Lawyers often get called when everything has already gone wrong. In this episode of The Cyber Mettle Podcast, Omar Sangurima and Alyson Laderman explain why that mindset is backwards. Drawing on decades of legal and cybersecurity experience, they unpack why lawyers aren’t your enemy, why prevention matters more than cleanup, and why legal professionals and cyber teams think far more alike than most people realize. This is an honest, practical conversation about trust, risk, and why having the right experts on your side early can change everything. CHAPTERS 00:00 – Welcome to The Cyber Mettle Podcast02:30 – Why lawyers have such a bad reputation04:20 – Lawyers as bearers of bad news06:00 – Media portrayals and the “villain lawyer” trope08:00 – Why prevention is cheaper than litigation11:00 – Lawyers, cyber professionals, and shared thinking models14:30 – Personal stories: business, contracts, and buying a home17:00 – Specialization in law, medicine, and cybersecurity20:00 – Choosing the right lawyer for the right job23:30 – Courtroom experience and real-world nuance27:00 – Why lawyers are trained to learn anything quickly30:00 – The danger of lying to your lawyer33:00 – AI, ChatGPT, and legal reality checks36:00 – Instant gratification vs real legal thinking39:00 – Emotional weight and responsibility of legal work42:00 – Lawyers as allies, not friends-for-hire45:00 – Gray areas, judgment, and real-world decision-making49:00 – Final thoughts: why lawyers belong on your teamBe sure to subscribe, so that you don't miss the latest episodes of The Cyber Mettle Podcast. | 50m 58s | ||||||
| 12/16/25 | ![]() AI Isn’t “Set It and Forget It”: Model Drift, Governance, and the Real Risks Leaders Miss with Guest Aby Rao S1E5 | AI isn’t a one-time implementation. It’s a system that needs constant oversight. Aby Rao joins The Cyber Mettle Podcast to break down model drift, responsible AI ownership, and the real risks organizations overlook when deploying AI at scale. | 29m 43s | ||||||
| 12/2/25 | ![]() AI Security Essentials: Shadow AI, Data Risks & What Businesses MUST Know - The Cyber Mettle S1E4 | AI is already inside your organization. The question is not if AI is being used, but whether you know how it’s being used. Alyson and Omar break down Shadow AI, hidden data training, and the real risks leaders face when employees and vendors rely on tools you can’t see or control. | 1h 12m 56s | ||||||
| 11/18/25 | ![]() From Military to Cybersecurity: Veteran Jose Toledo on Transition, Identity & Leadership - The Cyber Mettle S1E3 | What happens when you leave the military and step into the civilian cybersecurity world? In this episode, Air Force veteran and cybersecurity consultant Jose Toledo joins us to talk about the real (and often overlooked) challenges of the military-to-tech transition. Jose’s career spans defense contracting, OT security, and strategic consulting with Google. He shares honest insights into identity loss, translating military experience into corporate language, navigating communication differences, and finding purpose after leaving a mission-driven environment. In this conversation, we explore: • why the military-to-civilian transition can feel disorienting• how veterans can turn leadership under pressure into an advantage• the challenge of “translating” military jargon into business value• soft skills veterans bring to cybersecurity and tech roles• communication differences: directness vs. corporate nuance• how office politics land for people trained in no-excuses environments• what veterans miss most after the uniform comes off• where to find purpose, meaning, and community after service• networking strategies for introverts, ambiverts, and those who hate small talk• the truth behind: “The tech is easy. The people are hard.” Whether you're a veteran transitioning into cybersecurity, a hiring manager looking to understand veteran talent, or a cybersecurity leader navigating identity and career growth, this episode offers clarity, perspective, and actionable guidance. ⏱️ CHAPTERS 00:00 – Intro & Welcome01:12 – Meet Our Guest: Cyber Consultant & Air Force Veteran Jose Toledo04:20 – How Jose Entered Cybersecurity Through the Military07:58 – The Military Mindset: “Do More With Less”10:45 – Why Translating Military Experience Is So Difficult15:28 – Veterans Undervaluing Their Skills and Accomplishments18:40 – The Interview Moment That Changed Jose’s Career23:04 – Stress Leadership, Soft Skills & Mission Focus27:52 – Responsibility at a Young Age: The Veteran Narrative32:10 – The Mission-Shaped Hole After Leaving the Military36:58 – Communication Style Differences: Directness vs. Corporate Culture42:21 – Office Politics, Expectations & Emotional Intelligence46:30 – Networking for Introverts and Ambiverts51:12 – Teaching, Volunteering & Finding Purpose After Service55:44 – Legal vs. Cyber: Translating Meaning Across Disciplines59:20 – Final Advice: Reframing Your Value as a Veteran01:02:10 – Closing & Subscribe New episodes of The Cyber Mettle Podcast drop every other week. Follow The Cyber Mettle for conversations on cybersecurity, leadership, law, business resilience, and the human challenges behind the keyboard. | 1h 06m 52s | ||||||
| 10/20/25 | ![]() The Human Side of Cybersecurity: How to Build a Culture of Resilience - The Cyber Mettle S1E1 | In our debut of The Cyber Mettle, Omar Sangurima and Alyson Laderman dig into the human side of security — where tech, law, and everyday behavior collide. We tackle a dual challenge many organizations face: leadership that treats security as a pure cost center, and a rising apathy from digital-native generations (“my data’s already out there”). From simple cyber hygiene and school-level education to the realities of cyber insurance, we explore how to build a culture of resilience that actually sticks—top-down and bottom-up. What we cover: * Why “apathy is a hacker’s best friend” (and how to replace it with agency) * Household-level digital safety: practical norms that scale to the workplace * Cyber hygiene as a core subject in K–12 and higher ed * The patchwork of privacy/cyber laws (and why courts still look to “best practice”) * Cyber insurance without illusions: coverage, exclusions, MFA, premiums, and risk transfer * Resilience by design: breaking silos with real cross-department planning Who this helps: * Business leaders and GRC teams building security culture * Educators shaping the workforce of tomorrow * Security, IT, and legal pros who need a plain-English bridge between policy and practice About the hosts: * Alyson Laderman — CEO of AKYLADE and a 20+ year litigation attorney. Builds cybersecurity certifications that bridge learning and doing. * Omar Sangurima — GRC practitioner focused on risk, culture, and practical governance that organizations can live with Monday to Monday. Key takeaways: * Culture beats controls when it comes to day-to-day defense. * Teach the basics early: MFA, strong passwords, privacy awareness, and digital footprints. * Don’t assume your cyber policy covers you — read the terms, meet the requirements, and document controls. * Resilience improves when cybersecurity, legal, ops, and community stakeholders plan together. | 55m 57s | ||||||
Showing 25 of 25
Sponsor Intelligence
Sign in to see which brands sponsor this podcast, their ad offers, and promo codes.
Chart Positions
1 placement across 1 market.
Chart Positions
1 placement across 1 market.
