03/27/2026
Recorded this on Day 3 at RSAC. It took me a couple of days after that to actually find the time to post amidst meetings, after-parties😜, catching up with old colleagues and friends, and everything else.
There’s strong momentum around AI security. And the energy across the expo floor made that very clear.
A few patterns stood out.
AI SOC dominated…focused on faster detection, triaging, and prioritization of risk at scale.
Identity was front and center, especially around managing non-human identities, copilots, and agents inheriting user privileges.
And on the data side, the emphasis remained on DSPM, DLP, and traditional approaches to tokenization and encryption.
All important areas.
All seeing significant investments.
But the overall approach still feels anchored in visibility, access control, and after-the-fact response, while the nature of risk is becoming more dynamic with AI.
AI is changing how data is used. That shift will require a different approach to protection.
Sharing a short video with some observations from the RSA floor.