Podcast Library - Safe Security
Tim Brown: SolarWinds CISO Reflects on Battling Nation-State Attackers – and the SEC

CISO Confidential

Tim Brown: SolarWinds CISO Reflects on Battling Nation-State Attackers – and the SEC

If you’re a CISO, you know the name. Tim Brown, CISO at SolarWinds during the infamous software supply chain attack in 2020. Tim led a grueling, high-speed recovery effort – and suffered a heart attack. Then, the SEC shocked CISOs by suing Tim personally (a first) for failures in security and disclosure,  claims dropped after two years. In this gripping episode of CISO Confidential with host Saket Modi, Tim speaks out in detail about the struggle to contain the incident and the legal aftermath.

All Episodes

CISO Confidential

Cyber Risk Podcast

Watch our Series
Cyber Risk Podcast

Third-Party Risk Management Goes Agentic in 2026 EP 9

Vincent Scales

Lead Director, GRC at CVS Health

In this episode, SAFE’s Chief Product Officer Saket Bajoria sits down with Vincent Scales (Lead Director, GRC at CVS Health) to unpack why TPRM is hitting a breaking point – more vendors, more risk, same headcount. They explore how Agentic AI is changing vendor assessments, reducing questionnaire churn, and turning TPRM into a faster, decision-grade function for the business.

Why Third-Party Risk Is an Insider Threat in Disguise EP 8

Hardik Mehta

Global Head of Risk and Regulatory Compliance at JPMorgan Chase (formerly of Uber)

Hardik Mehta, Global Head of Risk and Regulatory Compliance at JPMorgan Chase (formerly of Uber), explains how third-party risk can become an insider threat. Discover a blueprint – including risk quantification, flipped GRC, and AI with human oversight – to turn vendors from a liability into a managed part of your risk portfolio.

Reconciliation, Chasing, and Communication EP 7

Lindsay Baker

Third-Party Risk Leader at Instacart

Lindsay Baker, Third-Party Risk Leader at Instacart, discusses real-world pain points behind vendor-risk management. Uncover what’s broken in reconciliation, chasing, and communication – and get a roadmap to fixing it with autonomous TPRM.