Most Security Problems Are Really Access Control Problems
Thomas Owen, CISO at SoSafe
28 September 2026 · 53 min
Thomas Owen explains why he sees almost all security failures as access control failures rooted in human identity, and how measurable, causal testing can actually shift intrinsic staff behaviour rather than just producing a click rate on a dashboard. He also sets out where AI has changed the economics of phishing and deepfakes, and where he draws the line between protecting staff and quietly surveilling them.
Listen and subscribe
Spotify
Apple Podcasts
YouTube
RSS