The Boring AppSec Podcast S2E07 - Jonathan Cran

The seventh episode of Season 2 is out now! In this episode, we chat with Jonathan Cran. Jon has been a security industry veteran with more than 17 years of experience. He has had multiple roles with Rapid7. He was the CTO of Pwnie Express which later got acquired by Outpost24. He is a pioneer in the bug bounty industry where he was in multiple roles with Bugcrowd. He was the VP of Operations, Advisor and their Chief Product Officer. He was the head of research for Kenna Security. He is also the founder of Intrigue that later got acquired into Mandiant, where he then served as VP of Attack Surface Management. After Google acquired Mandiant, he became a product & engineering leader at Google. Jon is a partner in Resilient Thesis where they do early stage investments in security companies. Since the last few months, Jon has founded a stealth company in the GenAI + Cybersecurity space, tackling threat intelligence. You can find more about Jon at his personal website.

Below are some of the key takeaways from the episode.

Key Takeaways

  • AI agents are still in early development stages.
  • Consistency is crucial for AI adoption in enterprises.
  • Automation can significantly enhance security processes.
  • Contextual understanding is key for effective risk scoring.
  • Generative AI can both solve security problems and create new ones.
  • The demand for automated remediation solutions is growing.
  • Attack surface management is evolving with new technologies.
  • Understanding vulnerabilities requires a comprehensive approach.
  • Entrepreneurs should focus on market problems, not just technology.
  • Investors prioritize team, timing, and traction when evaluating startups.

We hope you tune in and, if you like the episode, please do subscribe!


If you like the content and don't want to miss out on new posts, enter your email and hit the Subscribe button below. I promise I won't spam. Only premium content!