Episode

What Actually Works in Cybersecurity (And What Doesn't)

Podcast
Razorwire Cyber Security & InfoSec Insights
Published
Oct 15, 2025
Duration seconds
2466
Processing state
not_requested
Canonical source
https://razorwire.captivate.fm/episode/what-actually-works-in-cybersecurity-and-what-doesnt
Audio
https://op3.dev/e/episodes.captivate.fm/episode/73adde01-c603-4175-83bb-a0eae933a992.mp3
JSON
/v1/public/podcasts/razorwire-cyber-security-infosec-insights-5584923/episodes/what-actually-works-in-cybersecurity-and-what-doesn-t
Markdown
/podcast/razorwire-cyber-security-infosec-insights-5584923/what-actually-works-in-cybersecurity-and-what-doesn-t.md

Actions

  • POST https://stenobird.com/v1/public/podcasts/razorwire-cyber-security-infosec-insights-5584923/episodes/what-actually-works-in-cybersecurity-and-what-doesn-t/transcription-requests
    Idempotently request low-priority transcript generation for this episode.
  • GET https://stenobird.com/podcast/razorwire-cyber-security-infosec-insights-5584923/what-actually-works-in-cybersecurity-and-what-doesn-t.md
    Read the agent-friendly Markdown representation of this episode resource.

Summary

Are you making career moves in cybersecurity or is cybersecurity making moves around you? Welcome to Razorwire. In this episode, I sit down with Marius Poskus - CISO, consultant, podcaster and all-round cyber expert - to how to succeed in cybersecurity. We discuss career paths, why security culture fails in most organisations and the risks of rushing into AI without understanding what you're doing. Whether you're trying to break into the industry or you're leading security strategy, this conversation covers what works and what doesn't. Summary: Want to break into cybersecurity without wasting time on the wrong certifications? Wondering why your security programme keeps failing despite all the tools you've bought? We have the answers. From physical security in Lithuania to CISO at a global fintech, Marius explains why pen testing is a terrible entry route for juniors, why compliance doesn't stop breaches and why giving AI control of your SOC is riskier than most people realise. We discuss how to build actual security skills (not just a collection of certificates), why punishing people for clicking phishing links backfires and why you need to stop firefighting incidents and start preventing them. Marius also shares why so many organisations buy expensive tools that solve nothing and what happens when you remove humans from security decisions. Key Talking Points: The Truth About Career Pathways: We debunk common myths about entry routes into cybersecurity, explains why starting in a SOC makes strategic sense and shares advice for hands-on learning that goes beyond certifications. Security Culture and Human Factors: We discuss why technologists and business leaders often miss the mark on culture, how reward (not punishment) transforms security behaviours and what happens w…