Cyber Sentries: AI Insight to Cloud Security cover art

Cyber Sentries: AI Insight to Cloud Security

Cyber Sentries: AI Insight to Cloud Security

By: TruStory FM
Listen for free

Cyber Sentries explores the critical convergence of AI, cloud, and cybersecurity, diving deep into how these three pillars are actively redefining the modern Security Operations Center (SOC). As the threat landscape grows in complexity, we showcase the accelerating role of AI in defending cloud infrastructure, applications, and data. Join us as we illuminate this high-stakes intersection—a space where cutting-edge innovation meets the necessity for continuous vigilance—to transform how organizations approach resilience in a digital-first world.© TruStory FM Politics & Government
Episodes
  • Beyond the Token: How to Secure Agent Identity Across the Full Permission Chain with Jasson Casey
    35 mins
  • People-Pleasers: Why AI Agents Go Rogue and How to Govern Them at Scale with Shreyans Mehta
    May 6 2026

    Agent Gone Rogue: How to Build Behavioral Guardrails for Agentic AI in the Enterprise with Shreyans Mehta

    Host John Richards welcomes back Shreyans Mehta, CTO and co-founder of Cequence, for a return visit that couldn't be more timely. Two years ago, they were talking about securing AI at the application layer. Now enterprises are running thousands of autonomous agents around the clock, and the security perimeter has fundamentally changed. In this episode, John and Shreyans dig into the new class of risk that comes with agentic AI—and what it actually takes to govern it.

    When Your AI Agent Deletes the System to Delete the Email

    Shreyans opens with a concept that reframes the whole conversation: AI agents aren't just a productivity tool—they're autonomous actors with access to your most sensitive systems. The problem isn't that they'll go rogue on purpose. It's that they're people-pleasers. They will exhaust every available path to complete a task, which means broad access will get used in ways you never anticipated.

    He shares two stories that land hard. First, a research case study called Agents of Chaos, where an agent tasked with deleting a saved password—lacking email-delete permissions—resolved the problem by deleting the system instead. Second, a real customer scenario where a Claude Code-based agent spent an entire weekend trying to upgrade a legacy codebase and, when it couldn't fetch a file due to a missing SHA value, started guessing characters one by one—for hours.

    The fix isn't just identity and access management—it's a new layer Shreyans calls agent behavioral analytics. Start with a plain-English job description. Cequence translates that into deterministic rules: what the agent can access, what it can send, what it can never do. Every interaction is monitored against that job description in real time—not just logged, but enforced. When the email assistant starts forwarding sensitive data to an unknown address, it gets stopped, not flagged.

    Questions We Answer in This Episode

    • Why is identity management alone not enough to secure AI agents?
    • What is the token flattening problem, and why does it matter for enterprise security?
    • How do you translate a plain-English agent job description into deterministic access controls?
    • What does agent behavioral analytics look like in practice—and who owns it inside an organization?

    Key Takeaways

    • AI agents are already in your environment—the only question is whether you're governing them.
    • Every agent needs a job description that converts into deterministic rules, not just an identity token.
    • Monitoring must be tied to behavior, not just access logs—and it has to stop bad actions, not just detect them.
    • Agent sprawl demands a new security category built for non-human, 24/7 actors.

    If your organization is running agentic AI and nobody owns the behavioral layer yet, this episode is a good place to start. The enterprises getting it right aren't waiting for security teams to green-light every agent—they're using tools that translate intent into guardrails automatically. Give it a listen, then check out the resources below.

    Resources

    • Shreyans Mehta, Cequence: LinkedIn
    • Cequence AI Gateway
    • Cequence on LinkedIn
    • CyberProof
    • Learn more about Paladin Cloud
    • Got a question? Ask us here!
    • (00:00) - Welcome to Cyber Sentries
    • (01:08) - Shreyans Mehta
    • (01:57) - Changes Since His First Visit
    • (04:03) - Finding Ways to Feel More Comfortable
    • (11:24) - Getting a Handle on It
    • (16:11) - Access and Profiles
    • (21:55) - Transitioning to Rules
    • (24:24) - How Teams Use This
    • (26:49) - Playing Out in the Real World
    • (27:49) - Learning More
    • (29:07) - Wrap Up
    Show More Show Less
    31 mins
  • Five Seconds to Fraud: Detecting AI Deepfakes Before They Strike with Ben Colman
    Apr 1 2026

    Inside the AI Deepfake Threat

    What if the voice confirming your wire transfer wasn't actually your client? Ben Colman, founder and CEO of Reality Defender, joins host John Richards to unpack one of the fastest-growing attack surfaces in cybersecurity: AI-generated deepfakes. Once the exclusive domain of Hollywood studios and nation-state actors, real-time voice and video impersonation is now accessible to anyone with a laptop—and fraudsters are scaling up fast.

    From Specialized Hardware to Your Home Computer

    Ben traces the evolution from the specialized machinery required six years ago to today's world where anyone can clone a voice with less than five seconds of audio—locally, for free, using open-source models. He walks through the modern fraud landscape, from grandparent scams and bank account takeovers to an eye-opening story about fake job applicants that will make any recruiting team rethink its screening process.

    Reality Defender's approach is built for how organizations actually work—plugging directly into call centers, video conferencing platforms, and identity verification tools through a simple API, rather than asking teams to adopt yet another standalone product. Their probabilistic detection models scan in real time across thousands of indicators, all without storing or comparing against any biometric data.

    John and Ben also get into the emerging frontier of agentic AI—what happens when you need to authenticate an AI voice agent rather than a human—and how smart permission gates can define exactly what those agents are and aren't allowed to do.

    Questions We Answer in This Episode

    • How has the barrier to creating convincing deepfakes changed in the last six years?
    • What are the most common deepfake fraud vectors hitting businesses and consumers right now?
    • How does Reality Defender detect AI-generated media without storing any biometric data?
    • What does deepfake defense look like as agentic AI becomes mainstream?

    Key Takeaways

    • Voice cloning now requires less than five seconds of audio and runs locally on consumer hardware
    • Deepfake fraud spans a wide range—from grandparent scams to fake job applicants to wire transfer hijacking
    • Real-time detection can plug directly into tools organizations already use, with no new workflow required
    • Agentic AI is creating a new category of identity challenge—and the defenses are already being built

    The deepfake threat isn't coming—it's already here, hitting call centers, recruiting pipelines, and financial institutions every day. Whether you're a developer looking to integrate detection into your stack or a security leader trying to get ahead of the next wave, this conversation is a essential listen.

    Resources

    • Reality Defender
    • Ben Colman
    • Reality Defender on LinkedIn
    • Follow Reality Defender on X
    • CyberProof
    • Learn more about Paladin Cloud
    • Got a question? Ask us here!
    • (00:04) - Welcome to Cyber Sentries
    • (00:35) - Meet Ben Colman, Reality Defender
    • (01:23) - Ben’s Beginnings
    • (02:36) - Changing Landscape
    • (03:57) - What It Looks Like Today
    • (05:07) - Differences
    • (06:16) - Main Ways Fraud’s Committed
    • (09:21) - Way to Tackle It
    • (11:07) - Distinguishing the AI
    • (13:14) - Response Time
    • (14:09) - Recommended Next Steps
    • (15:55) - Where It’s Heading
    • (19:21) - How to Use as Organization
    • (20:52) - Developer Community
    • (22:23) - Audio and Video
    • (23:34) - Risk Assessment
    • (24:41) - Prevalence
    • (26:09) - Wrap Up
    Show More Show Less
    29 mins
adbl_web_anon_alc_button_suppression_t1
No reviews yet