Episode

All the Gear and No Idea: What's Actually Going Wrong in Security with Gary Hibberd

Podcast
Razorwire Cyber Security & InfoSec Insights
Published
Mar 25, 2026
Duration seconds
2319
Processing state
not_requested
Canonical source
https://razorwire.captivate.fm/episode/all-the-gear-and-no-idea-whats-actually-going-wrong-in-security-with-gary-hibberd
Audio
https://op3.dev/e/episodes.captivate.fm/episode/1b50c71b-dbe0-4c58-9b7e-c0582065ecdc.mp3
JSON
/v1/public/podcasts/razorwire-cyber-security-infosec-insights-5584923/episodes/all-the-gear-and-no-idea-what-s-actually-going-wrong-in-security-with-gary-hibberd
Markdown
/podcast/razorwire-cyber-security-infosec-insights-5584923/all-the-gear-and-no-idea-what-s-actually-going-wrong-in-security-with-gary-hibberd.md

Actions

  • POST https://stenobird.com/v1/public/podcasts/razorwire-cyber-security-infosec-insights-5584923/episodes/all-the-gear-and-no-idea-what-s-actually-going-wrong-in-security-with-gary-hibberd/transcription-requests
    Idempotently request low-priority transcript generation for this episode.
  • GET https://stenobird.com/podcast/razorwire-cyber-security-infosec-insights-5584923/all-the-gear-and-no-idea-what-s-actually-going-wrong-in-security-with-gary-hibberd.md
    Read the agent-friendly Markdown representation of this episode resource.

Summary

The industry is full of people making security sound complicated so they can sell you the fix. Gary Hibberd and Jim talk about what actually works in cybersecurity. Welcome to Razorwire, where we bring you directly into honest conversations with the minds shaping our industry. I’m your host, Jim, and in this episode, I sit down with Gary Hibberd, co-founder of Consultants Like Us and a veteran of the security, data protection and privacy world. We talk about why so many organisations pour money into security tools and chase compliance without doing the real work underneath, and why it still leaves them exposed. Gary makes the case that one of the biggest security challenges right now is simply speed, that people and organisations are moving too fast to think clearly, and that slowing down is one of the most effective things you can do. We discuss where the industry is heading, why the focus needs to shift from cybersecurity as a purely technical discipline towards genuine organisational resilience and what it takes to cut through the noise of influencers and vendors selling quick fixes that don't exist. We also get into the challenges facing people newer to the industry who are trying to work out who to listen to, why communication and understanding risk matter just as much as technical skills, and why owning your place at the boardroom table is something the security community still needs to get better at. Key Talking Points: Why technical tools and frameworks aren't enough: Gary uses his marathon analogy to explain the issues with buying security kit without doing the work underneath. He and Jim share examples from the field and discuss why leadership and commitment matter more than the software you’ve bought. Beyond cybersecurity: why organisational resilience is th…