Spill It — A Podcast by Harmonic Security

Podcast · Season 1 · 6 Episodes

Hot takes from leaders in AI security. Hosted by Mariana Padilla.

Launches Sept 9, 2026

What To Expect

Real Hot Takes
Sharp questions and unscripted answers from security leaders who are done with security theater.
Ask Tough Questions
Every episode ends with a guest handing a surprise question forward to the next guest, on camera, by name.
Coffee (or Tea) With Every Guest
Halfway through every episode, we pause to brew it together and compare notes on small-batch coffees and teas from around the world.
Mariana Padilla
Hosted by Mariana Padilla
Community Evangelist, Harmonic Security

Come on the show

Want to be a guest on Spill It?

Leave your email and we'll reach out.

Sends to podcast@harmonic.security. We'll get back to you if it's a fit.

Prefer to just say hi? Email us directly at podcast@harmonic.security.

Season 1 — All 6 Episodes

Every episode live September 9, 2026 · Listen in any order
Episode 01 The CISO Seat

"Already Failed"

Alex Cunningham · CISO, Advisor 360

A CISO answers the question everyone is avoiding, then flips it.

Has AI governance already failed, or are we just refusing to admit it? Alex Cunningham opens with the cynical answer, then spends the episode dismantling it. What is actually different about AI is not the technology. It is that AI went around the enterprise and straight to the consumer, and organisations have been scrambling ever since. He makes the case that AI governance is a gift to security leaders, argues culture beats people, process and technology combined, and explains why a policy without a technical control is just paper.

Episode 02 The Leadership Seat

"Whose Shoulders"

Emily Choi-Greene · Founder and CEO, Clearly AI

When AI causes real harm, someone has to own it. She says it is the CEO, full stop.

When AI causes real harm inside a company, who makes the call on what to do next? Emily Choi-Greene's answer is unambiguous: the business owner, and ultimately the CEO. Drawing on a decade at Amazon running application security for Alexa AI, she makes the case for blameless post-mortems that interrogate systems rather than people, and tells the story of a shipped feature that drifted toward surveillance and never hit privacy review until it was already in beta.

Episode 03 The Vendor Seat

"Their Problem Now"

Harry Wetherald · Co-founder and CEO, Maze

A vendor on what enterprises are quietly handing over when they buy AI.

Are enterprises outsourcing their AI ethics to the companies selling them the tools? Harry Wetherald argues most of it was already outsourced years ago. The real risk sits in the murky middle, where a tool makes consequential decisions and nobody quite knows how much AI is behind them. He predicts a Big Four of AI emerging on trust alone, explains why an answer that is right seven times out of ten is worse than no answer, and makes the case that the age of AI slop is about to correct hard.

Episode 04 The Practitioner Seat

"Drunk Teenager"

Joe Hall · Threat Intelligence Researcher

Told to use an AI tool he does not trust, a threat researcher explains exactly how he breaks it.

When you are told to use an AI tool you do not trust, what do you actually do? Joe Hall's answer is to start asking it questions it should not answer, and he walks through how, step by step. A career threat intelligence researcher on why sales teams' security claims collapse under five minutes of scrutiny, why agents escape the folders you assign them, and why decades of unpatched technical debt matter more right now than any zero day an LLM might find.

Episode 05 The Policy and Governance Seat

"Wrong People"

Kirsty Kelly · Security Leader and Board Advisor

Regulation already arrived. The problem is who governments are asking.

Is AI regulation coming fast enough to matter, or will it arrive just in time to regulate yesterday's problem? Kirsty Kelly's answer: it is already here, it is fractured across every jurisdiction, and the fixation on speed misses the point. Twenty years in security and a former Group CISO twice over, she argues for rules built to survive to 2030 rather than describe 2026, and says lawmakers keep filling the room with the people who profit from the answer.

Episode 06 The Defender Seat

"Said No"

Marty Garvin · Senior Director of Information Security, Rubrik

The season finale. What a defender changed his mind about, and what still keeps him up.

What is the first AI thing you said no to that you would say yes to today, and what changed: the technology or you? Marty Garvin on why traditional access models break the moment you point an agent at them, why agents are not malicious so much as relentlessly efficient, and the exposure problem nobody planned for: an innocent question surfacing a colleague's salary. Plus the risk he thinks is underrated, which is not what AI can do but what it costs. Closing out season one, he leaves two questions on the table for whoever takes the chair next.