<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet href="https://rss.buzzsprout.com/styles.xsl" type="text/xsl"?>
<rss version="2.0" xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd" xmlns:podcast="https://podcastindex.org/namespace/1.0" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:psc="http://podlove.org/simple-chapters" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <atom:link href="https://rss.buzzsprout.com/2616250.rss" rel="self" type="application/rss+xml" />
  <atom:link href="https://pubsubhubbub.appspot.com/" rel="hub" xmlns="http://www.w3.org/2005/Atom" />
  <title>The GIST of Govt IT </title>

  <lastBuildDate>Mon, 08 Jun 2026 10:09:20 -0400</lastBuildDate>
  <link>https://www.buzzsprout.com/2616250</link>
  <language>en-us</language>
  <copyright>© 2026 The GIST of Govt IT </copyright>
  <podcast:locked>yes</podcast:locked>
    <podcast:guid>e26cbdad-8202-5c19-9c56-946ad2829b89</podcast:guid>
  <podcast:txt purpose="verify">blake@swishdata.com</podcast:txt>
  <itunes:author>Swish </itunes:author>
  <itunes:type>episodic</itunes:type>
  <itunes:explicit>false</itunes:explicit>
  <description><![CDATA[<p>The weekly show that breaks down ideas, innovations and decisions that cut through complexity and offer real insights from the intersection of technology and the mission.&nbsp;</p>]]></description>
  <generator>Buzzsprout (https://www.buzzsprout.com)</generator>
  <itunes:owner>
    <itunes:name>Swish </itunes:name>
    <itunes:email>blake@swishdata.com</itunes:email>
  </itunes:owner>
  <image>
     <url>https://storage.buzzsprout.com/33ig3o0lzmedstpa26gjfd77anhv?.jpg</url>
     <title>The GIST of Govt IT </title>
     <link></link>
  </image>
  <itunes:image href="https://storage.buzzsprout.com/33ig3o0lzmedstpa26gjfd77anhv?.jpg" />
  <itunes:category text="Government" />
  <itunes:category text="Business">
    <itunes:category text="Management" />
  </itunes:category>
  <itunes:category text="Technology" />
  <podcast:person role="co-host" href="https://www.linkedin.com/in/brianslake/" img="https://storage.buzzsprout.com/bqar0tppwowa37wpeuygz5eaud7s">Brian Lake</podcast:person>
  <podcast:person role="co-host" href="https://www.linkedin.com/in/seanapplegate/" img="https://storage.buzzsprout.com/b60y1zklcfoc78b71aoln8g31hdu">Sean Applegate</podcast:person>
  <item>
    <itunes:title>Minutes, Not Months: Inside the New Cyber Velocity Facing Federal Agencies</itunes:title>
    <title>Minutes, Not Months: Inside the New Cyber Velocity Facing Federal Agencies</title>
    <itunes:summary><![CDATA[48 hours. That's the time it took for a federal employee credentials to be stolen as a result of a phishing attack, to being listed on a dark web marketplace. In Episode 8 of The GIST of Govt IT, Brian and Sean sit down at Check Point's Engage Summit in DC with Yochai Corem, General Manager of Check Point's Exposure Management division, to unpack what happens when both sides of cyber warfare have agentic AI — and why the next three years will not be kind to defenders. Yochai shares why pen te...]]></itunes:summary>
    <description><![CDATA[<p>48 hours. That&apos;s the time it took for a federal employee credentials to be stolen as a result of a phishing attack, to being listed on a dark web marketplace. In Episode 8 of The GIST of Govt IT, Brian and Sean sit down at Check Point&apos;s Engage Summit in DC with Yochai Corem, General Manager of Check Point&apos;s Exposure Management division, to unpack what happens when both sides of cyber warfare have agentic AI — and why the next three years will not be kind to defenders. Yochai shares why pen testing once a quarter is no longer relevant, how a single Chinese developer built an entire attack program in a week using an army of agents, and what Iranian threat actors targeting Israeli hospitals look like in real-time during active kinetic conflict. The conversation digs into agentic red teaming vs. automated red teaming (and why the difference matters), why &quot;safe remediation&quot; still keeps a human in the loop, how to use the firewalls, WAFs, and IPS you already own as compensating controls when patching takes weeks, and the under-discussed reality that government leaders must put their hands on the keyboard with AI. Plus: Yochai&apos;s family cookbook and other vibe-coding stories.</p><p><br/><b>RESOURCES MENTIONED IN THIS EPISODE</b></p><p><br/><b>Featured Guest</b></p><p>- <a href='https://www.linkedin.com/in/yochaicorem/'>Yochai Corem, GM, Exposure Management, Check Point</a><br/>- <a href='https://www.corem-travel.com/'>Corem Travel — Yochai&apos;s travel planning app</a></p><p> <b>Check Point</b><br/>- <a href='https://www.checkpoint.com/'>Check Point</a></p><p>- <a href='https://www.checkpoint.com/exposure-management/'>Check Point Exposure Management</a><br/>- <a href='https://events.govexec.com/engage-public-sector/'>Check Point Engage Summit - Washington, DC</a> </p><p><br/><b>Check Point&apos;s Exposure Management Acquisitions</b><br/>- <a href='https://cyberint.com/'>Cyberint (now part of Check Point&apos;s external risk management)</a><br/>- <a href='https://veriti.ai/'>Veriti (automated security control management)</a><br/>- <a href='https://www.cyclops.security/'>Cyclops (now Check Point&apos;s CAASM offering)</a></p><p><br/><b>Exposure Management &amp; CTEM Framework</b><br/>- <a href='https://www.gartner.com/en/cybersecurity/topics/continuous-threat-exposure-management'>Gartner Continuous Threat Exposure Management (CTEM) overview</a><br/>- <a href='https://www.cisa.gov/known-exploited-vulnerabilities-catalog'>CISA Known Exploited Vulnerabilities (KEV) Catalog</a> </p><p><br/><b>Agentic AI &amp; Red Teaming</b><br/>- <a href='https://genai.owasp.org/llm-top-10/'>OWASP Top 10 for LLM Applications</a><br/>- <a href='https://aivss.owasp.org/'>OWASP AIVSS — AI Vulnerability Scoring System for Agentic AI</a><br/>- <a href='https://atlas.mitre.org/'>MITRE ATLAS (Adversarial Threat Landscape for AI Systems)</a></p><p><br/><b>Threat Actor Tracking</b></p><p>- <a href='https://research.checkpoint.com/'>Check Point Research (threat intelligence blog)</a></p><p>- <a href='https://www.checkpoint.com/infinity/threatcloud-ai/'>Check Point ThreatCloud AI</a></p><p><br/><b>Concepts &amp; References</b></p><p>- <a href='https://csrc.nist.gov/pubs/sp/800/82/r3/final'>Air-gapped network security guidance (NIST SP 800-82)</a></p><p>- <a href='https://www.cisa.gov/news-events/cybersecurity-advisories/aa23-335a'>IRGC (Iranian threat actor background — CISA advisory on CyberAv3ngers)</a></p><p><br/><b>Related Episodes</b></p><p>- Episode 7: <em>Iran Came for the Dams and We Got Lucky: Frontline Insights into the OT Fight</em><br/>- Episode 6: <em>Cupcakes &amp; OODA Loops: Inside(r) Insights Into the New Federal AI Cyber Playbook</em><b><br/></b>- Episode 5: <em>Vibe Hacking and Nation State Cyber Threats</em></p><p><b>Upcoming Events</b></p><p>- <a href='https://gist360.swishdata.com/gist360-breakfast-briefing-ot-perimeter-security'>GIST 360 Breakfast Briefing at the National Press Club, July 14, 2026 - When the Perimeter Disappears </a></p><p><br/><b>The Hosts &amp; Show<br/></b>- <a href='https://www.swishdata.com/'>Swish</a> <br/>- <a href='https://gist360.com/'>GIST 360</a> </p><p><b>CONNECT WITH US</b></p><p><b>Got an idea for a future episode? Want to be a guest? Let us know.</b></p><p><a href='https://www.linkedin.com/in/brianslake/'>Brian Lake</a> - blake@swishdata.com</p><p><a href='https://www.linkedin.com/in/seanapplegate/'>Sean Applegate</a> - sapplegate@swishdata.com<br/><br/>Subscribe wherever you get your podcasts: Apple Podcasts, Spotify, or gist360.com.</p><p><br/></p>]]></description>
    <content:encoded><![CDATA[<p>48 hours. That&apos;s the time it took for a federal employee credentials to be stolen as a result of a phishing attack, to being listed on a dark web marketplace. In Episode 8 of The GIST of Govt IT, Brian and Sean sit down at Check Point&apos;s Engage Summit in DC with Yochai Corem, General Manager of Check Point&apos;s Exposure Management division, to unpack what happens when both sides of cyber warfare have agentic AI — and why the next three years will not be kind to defenders. Yochai shares why pen testing once a quarter is no longer relevant, how a single Chinese developer built an entire attack program in a week using an army of agents, and what Iranian threat actors targeting Israeli hospitals look like in real-time during active kinetic conflict. The conversation digs into agentic red teaming vs. automated red teaming (and why the difference matters), why &quot;safe remediation&quot; still keeps a human in the loop, how to use the firewalls, WAFs, and IPS you already own as compensating controls when patching takes weeks, and the under-discussed reality that government leaders must put their hands on the keyboard with AI. Plus: Yochai&apos;s family cookbook and other vibe-coding stories.</p><p><br/><b>RESOURCES MENTIONED IN THIS EPISODE</b></p><p><br/><b>Featured Guest</b></p><p>- <a href='https://www.linkedin.com/in/yochaicorem/'>Yochai Corem, GM, Exposure Management, Check Point</a><br/>- <a href='https://www.corem-travel.com/'>Corem Travel — Yochai&apos;s travel planning app</a></p><p> <b>Check Point</b><br/>- <a href='https://www.checkpoint.com/'>Check Point</a></p><p>- <a href='https://www.checkpoint.com/exposure-management/'>Check Point Exposure Management</a><br/>- <a href='https://events.govexec.com/engage-public-sector/'>Check Point Engage Summit - Washington, DC</a> </p><p><br/><b>Check Point&apos;s Exposure Management Acquisitions</b><br/>- <a href='https://cyberint.com/'>Cyberint (now part of Check Point&apos;s external risk management)</a><br/>- <a href='https://veriti.ai/'>Veriti (automated security control management)</a><br/>- <a href='https://www.cyclops.security/'>Cyclops (now Check Point&apos;s CAASM offering)</a></p><p><br/><b>Exposure Management &amp; CTEM Framework</b><br/>- <a href='https://www.gartner.com/en/cybersecurity/topics/continuous-threat-exposure-management'>Gartner Continuous Threat Exposure Management (CTEM) overview</a><br/>- <a href='https://www.cisa.gov/known-exploited-vulnerabilities-catalog'>CISA Known Exploited Vulnerabilities (KEV) Catalog</a> </p><p><br/><b>Agentic AI &amp; Red Teaming</b><br/>- <a href='https://genai.owasp.org/llm-top-10/'>OWASP Top 10 for LLM Applications</a><br/>- <a href='https://aivss.owasp.org/'>OWASP AIVSS — AI Vulnerability Scoring System for Agentic AI</a><br/>- <a href='https://atlas.mitre.org/'>MITRE ATLAS (Adversarial Threat Landscape for AI Systems)</a></p><p><br/><b>Threat Actor Tracking</b></p><p>- <a href='https://research.checkpoint.com/'>Check Point Research (threat intelligence blog)</a></p><p>- <a href='https://www.checkpoint.com/infinity/threatcloud-ai/'>Check Point ThreatCloud AI</a></p><p><br/><b>Concepts &amp; References</b></p><p>- <a href='https://csrc.nist.gov/pubs/sp/800/82/r3/final'>Air-gapped network security guidance (NIST SP 800-82)</a></p><p>- <a href='https://www.cisa.gov/news-events/cybersecurity-advisories/aa23-335a'>IRGC (Iranian threat actor background — CISA advisory on CyberAv3ngers)</a></p><p><br/><b>Related Episodes</b></p><p>- Episode 7: <em>Iran Came for the Dams and We Got Lucky: Frontline Insights into the OT Fight</em><br/>- Episode 6: <em>Cupcakes &amp; OODA Loops: Inside(r) Insights Into the New Federal AI Cyber Playbook</em><b><br/></b>- Episode 5: <em>Vibe Hacking and Nation State Cyber Threats</em></p><p><b>Upcoming Events</b></p><p>- <a href='https://gist360.swishdata.com/gist360-breakfast-briefing-ot-perimeter-security'>GIST 360 Breakfast Briefing at the National Press Club, July 14, 2026 - When the Perimeter Disappears </a></p><p><br/><b>The Hosts &amp; Show<br/></b>- <a href='https://www.swishdata.com/'>Swish</a> <br/>- <a href='https://gist360.com/'>GIST 360</a> </p><p><b>CONNECT WITH US</b></p><p><b>Got an idea for a future episode? Want to be a guest? Let us know.</b></p><p><a href='https://www.linkedin.com/in/brianslake/'>Brian Lake</a> - blake@swishdata.com</p><p><a href='https://www.linkedin.com/in/seanapplegate/'>Sean Applegate</a> - sapplegate@swishdata.com<br/><br/>Subscribe wherever you get your podcasts: Apple Podcasts, Spotify, or gist360.com.</p><p><br/></p>]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2616250/episodes/19308725-minutes-not-months-inside-the-new-cyber-velocity-facing-federal-agencies.mp3" length="29371605" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/cq0omqp8xufg5lvim9hr56vl8fcr?.jpg" />
    <itunes:author>Swish </itunes:author>
    <guid isPermaLink="false">Buzzsprout-19308725</guid>
    <pubDate>Mon, 08 Jun 2026 08:00:00 -0400</pubDate>
    <podcast:transcript url="https://www.buzzsprout.com/2616250/19308725/transcript" type="text/html" />
    <podcast:transcript url="https://www.buzzsprout.com/2616250/19308725/transcript.json" type="application/json" />
    <podcast:transcript url="https://www.buzzsprout.com/2616250/19308725/transcript.srt" type="application/x-subrip" />
    <podcast:transcript url="https://www.buzzsprout.com/2616250/19308725/transcript.vtt" type="text/vtt" />
    <podcast:chapters url="https://www.buzzsprout.com/2616250/19308725/chapters.json" type="application/json" />
    <psc:chapters>
  <psc:chapter start="0:00" title="The 48 Hours to a Dark Web Sale" />
  <psc:chapter start="1:16" title="Meet Yochai Corem" />
  <psc:chapter start="3:05" title="Vibe Coding Personal Apps Fast" />
  <psc:chapter start="5:41" title="Outside Threats Facing Federal Agencies" />
  <psc:chapter start="9:03" title="Minutes To Exploit vs. Slow Government Cyber Procurement Cycles" />
  <psc:chapter start="11:44" title="Cutting Noise With Exploit Validation" />
  <psc:chapter start="16:10" title="Safe Remediation With Humans In Loop" />
  <psc:chapter start="19:02" title="Mapping Multi Vendor Controls For Fixes" />
  <psc:chapter start="20:54" title="Cyber Warfare Tied To Kinetic Conflict" />
  <psc:chapter start="25:41" title="Why Leaders Need Hands On AI" />
  <psc:chapter start="28:50" title="Supply Chain Risk And Dark Web Intel" />
  <psc:chapter start="30:55" title="Agentic Red Teaming Versus Automated Red Teaming" />
  <psc:chapter start="34:36" title="Guardrails And Safety For Agent Attacks" />
  <psc:chapter start="36:37" title="The Buy vs. Build Mentality Conundrum Facing Federal Agencies Over Next Two Years" />
  <psc:chapter start="39:27" title="Resources And Closing From DC" />
</psc:chapters>
    <itunes:duration>2440</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:episodeType>full</itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>Iran Came for US Dams and We Got Lucky: Frontline Insights from the OT Fight</itunes:title>
    <title>Iran Came for US Dams and We Got Lucky: Frontline Insights from the OT Fight</title>
    <itunes:summary><![CDATA[When Iranian-linked cyber actors hit U.S. water, energy, and government facilities through internet-exposed Rockwell Allen-Bradley PLCs during the sixth week of the U.S.–Iran military campaign, they did it with attacks that were eightfold above baseline  and got within 30 to 40 minutes of opening dam gates. In Episode 7 of The GIST of Govt IT, Brian and Sean sit down with Matthew Shalbetter, Director of Strategy for Civilian Agencies at Armis Federal and a 16-year HHS veteran, to unpack ...]]></itunes:summary>
    <description><![CDATA[<p>When Iranian-linked cyber actors hit U.S. water, energy, and government facilities through internet-exposed Rockwell Allen-Bradley PLCs during the sixth week of the U.S.–Iran military campaign, they did it with attacks that were eightfold above baseline  and got within 30 to 40 minutes of opening dam gates. In Episode 7 of The GIST of Govt IT, Brian and Sean sit down with Matthew Shalbetter, Director of Strategy for Civilian Agencies at Armis Federal and a 16-year HHS veteran, to unpack what&apos;s really happening at the convergence of IT and OT. Matthew breaks down why cyber has become the great equalizer for nation-state actors, the difference between Iranian &quot;disrupt and distract&quot; tactics, and Chinese prepositioning ahead of a potential Taiwan invasion.  The conversation digs into the cultural chasm between IT and OT teams, what the Ukrainians taught a roomful of Western OT practitioners at RSA about why red teaming beats paperwork, and the basics that still aren&apos;t done. Trump&apos;s seven-page cyber strategy and what ServiceNow&apos;s $7.75B acquisition of Armis — closed April 20 — means for federal customers. Plus: Matthew&apos;s Hacker Name...DirtTrack</p><p><br/><b>RESOURCES MENTIONED IN THIS EPISODE</b></p><p><b>Featured Guest</b></p><p>- <a href='https://www.linkedin.com/in/shallbetter/'>Matthew Shallbetter, Director of Strategy for Civilian Agencies, Armis Federal</a><br/>- <a href='https://www.armis.com/federal/'>Armis Federal</a></p><p><b>The Iranian PLC Attacks</b></p><p>- <a href='https://www.cisa.gov/news-events/cybersecurity-advisories/aa26-097a'>CISA Joint Advisory AA26-097A — Iranian-Affiliated Cyber Actors Exploit PLCs Across US Critical Infrastructure</a><br/>- <a href='https://www.rockwellautomation.com/en-us/trust-center/security-advisories.html'>Rockwell Automation security advisories</a><br/>- <a href='https://www.cisa.gov/news-events/cybersecurity-advisories/aa23-335a'>CyberAv3ngers / IRGC threat actor background</a></p><p><b>OT Discovery &amp; Exposure Research</b><br/>- <a href='https://www.shodan.io/'>Shodan — internet-exposed device search engine</a><br/>- <a href='https://search.censys.io/'>Censys — internet asset discovery</a><br/>- <a href='https://www.armis.com/research-and-resources/research-reports/'>Armis State of Cyberwarfare Report</a></p><p><b>OT/ICS Frameworks &amp; Government Guidance</b></p><p>- <a href='https://csrc.nist.gov/pubs/sp/800/82/r3/final'>NIST SP 800-82 — Guide to Operational Technology Security</a><br/>- <a href='https://www.cisa.gov/cross-sector-cybersecurity-performance-goals'>CISA Cross-Sector Cybersecurity Performance Goals (CPGs)</a><br/>- <a href='https://dodcio.defense.gov/Library/'>DoD Zero Trust Overlays (including OT guidance)</a><br/>- <a href='https://www.nerc.com/pa/Stand/Pages/CIPStandards.aspx'>NERC CIP Standards (electric sector OT)</a></p><p><b>Federal Cyber Policy</b></p><p>- <a href='https://www.whitehouse.gov/wp-content/uploads/2025/'>White House National Cyber Strategy (the seven-page version)</a><br/>- <a href='https://www.cisa.gov/resources-tools/programs/continuous-diagnostics-and-mitigation-cdm-program'>CDM Program (Continuous Diagnostics and Mitigation)</a><br/>- <a href='https://www.cisa.gov/topics/industrial-control-systems'>CISA Industrial Control Systems resources</a></p><p><b>The ServiceNow + Armis Deal</b><br/>- <a href='https://newsroom.servicenow.com/press-releases/details/2026/ServiceNow-completes-Armis-acquisition-closing-the-gap-between-asset-visibility-and-cyber-risk/default.aspx'>ServiceNow completes Armis acquisition (April 20, 2026)</a></p><p><b>Threat Actor Tracking Partners Referenced</b><br/>- <a href='https://www.armis.com/platform/'>Armis Centrix Threat Intelligence</a><br/>- <a href='https://www.dragos.com/'>Dragos</a></p><p><b>Related Episodes</b><br/>- Episode 5: <em>Vibe Hacking” and Nation State Cyber Threats</em> <br/>- Episode 6: <em>Cupcakes &amp; OODA Loops: Inside(r) Insights Into The New Federal AI Cyber Playbook</em></p><p><b>Upcoming Event</b><br/>- <a href='https://gist360.swishdata.com/gist360-breakfast-briefing-ot-perimeter-security'>GIST 360 Breakfast Briefing at the National Press Club, July 14 - When the Perimeter Disappears Securing the Converged Federal Enterprise Across IT, OT and IoT Environments </a></p><p><b>The Hosts &amp; Show</b><br/>- <a href='https://www.swishdata.com/'>Swish</a><br/>- <a href='https://gist360.com/'>GIST 360</a></p><p><b>CONNECT WITH US</b></p><p><b>Got an idea for a future episode? Want to be a guest? Let us know.</b></p><p><a href='https://www.linkedin.com/in/brianslake/'>Brian Lake</a> - blake@swishdata.com</p><p><a href='https://www.linkedin.com/in/seanapplegate/'>Sean Applegate</a> - sapplegate@swishdata.com<br/><br/>Subscribe wherever you get your podcasts: Apple Podcasts, Spotify, or gist360.com.</p><p><br/></p>]]></description>
    <content:encoded><![CDATA[<p>When Iranian-linked cyber actors hit U.S. water, energy, and government facilities through internet-exposed Rockwell Allen-Bradley PLCs during the sixth week of the U.S.–Iran military campaign, they did it with attacks that were eightfold above baseline  and got within 30 to 40 minutes of opening dam gates. In Episode 7 of The GIST of Govt IT, Brian and Sean sit down with Matthew Shalbetter, Director of Strategy for Civilian Agencies at Armis Federal and a 16-year HHS veteran, to unpack what&apos;s really happening at the convergence of IT and OT. Matthew breaks down why cyber has become the great equalizer for nation-state actors, the difference between Iranian &quot;disrupt and distract&quot; tactics, and Chinese prepositioning ahead of a potential Taiwan invasion.  The conversation digs into the cultural chasm between IT and OT teams, what the Ukrainians taught a roomful of Western OT practitioners at RSA about why red teaming beats paperwork, and the basics that still aren&apos;t done. Trump&apos;s seven-page cyber strategy and what ServiceNow&apos;s $7.75B acquisition of Armis — closed April 20 — means for federal customers. Plus: Matthew&apos;s Hacker Name...DirtTrack</p><p><br/><b>RESOURCES MENTIONED IN THIS EPISODE</b></p><p><b>Featured Guest</b></p><p>- <a href='https://www.linkedin.com/in/shallbetter/'>Matthew Shallbetter, Director of Strategy for Civilian Agencies, Armis Federal</a><br/>- <a href='https://www.armis.com/federal/'>Armis Federal</a></p><p><b>The Iranian PLC Attacks</b></p><p>- <a href='https://www.cisa.gov/news-events/cybersecurity-advisories/aa26-097a'>CISA Joint Advisory AA26-097A — Iranian-Affiliated Cyber Actors Exploit PLCs Across US Critical Infrastructure</a><br/>- <a href='https://www.rockwellautomation.com/en-us/trust-center/security-advisories.html'>Rockwell Automation security advisories</a><br/>- <a href='https://www.cisa.gov/news-events/cybersecurity-advisories/aa23-335a'>CyberAv3ngers / IRGC threat actor background</a></p><p><b>OT Discovery &amp; Exposure Research</b><br/>- <a href='https://www.shodan.io/'>Shodan — internet-exposed device search engine</a><br/>- <a href='https://search.censys.io/'>Censys — internet asset discovery</a><br/>- <a href='https://www.armis.com/research-and-resources/research-reports/'>Armis State of Cyberwarfare Report</a></p><p><b>OT/ICS Frameworks &amp; Government Guidance</b></p><p>- <a href='https://csrc.nist.gov/pubs/sp/800/82/r3/final'>NIST SP 800-82 — Guide to Operational Technology Security</a><br/>- <a href='https://www.cisa.gov/cross-sector-cybersecurity-performance-goals'>CISA Cross-Sector Cybersecurity Performance Goals (CPGs)</a><br/>- <a href='https://dodcio.defense.gov/Library/'>DoD Zero Trust Overlays (including OT guidance)</a><br/>- <a href='https://www.nerc.com/pa/Stand/Pages/CIPStandards.aspx'>NERC CIP Standards (electric sector OT)</a></p><p><b>Federal Cyber Policy</b></p><p>- <a href='https://www.whitehouse.gov/wp-content/uploads/2025/'>White House National Cyber Strategy (the seven-page version)</a><br/>- <a href='https://www.cisa.gov/resources-tools/programs/continuous-diagnostics-and-mitigation-cdm-program'>CDM Program (Continuous Diagnostics and Mitigation)</a><br/>- <a href='https://www.cisa.gov/topics/industrial-control-systems'>CISA Industrial Control Systems resources</a></p><p><b>The ServiceNow + Armis Deal</b><br/>- <a href='https://newsroom.servicenow.com/press-releases/details/2026/ServiceNow-completes-Armis-acquisition-closing-the-gap-between-asset-visibility-and-cyber-risk/default.aspx'>ServiceNow completes Armis acquisition (April 20, 2026)</a></p><p><b>Threat Actor Tracking Partners Referenced</b><br/>- <a href='https://www.armis.com/platform/'>Armis Centrix Threat Intelligence</a><br/>- <a href='https://www.dragos.com/'>Dragos</a></p><p><b>Related Episodes</b><br/>- Episode 5: <em>Vibe Hacking” and Nation State Cyber Threats</em> <br/>- Episode 6: <em>Cupcakes &amp; OODA Loops: Inside(r) Insights Into The New Federal AI Cyber Playbook</em></p><p><b>Upcoming Event</b><br/>- <a href='https://gist360.swishdata.com/gist360-breakfast-briefing-ot-perimeter-security'>GIST 360 Breakfast Briefing at the National Press Club, July 14 - When the Perimeter Disappears Securing the Converged Federal Enterprise Across IT, OT and IoT Environments </a></p><p><b>The Hosts &amp; Show</b><br/>- <a href='https://www.swishdata.com/'>Swish</a><br/>- <a href='https://gist360.com/'>GIST 360</a></p><p><b>CONNECT WITH US</b></p><p><b>Got an idea for a future episode? Want to be a guest? Let us know.</b></p><p><a href='https://www.linkedin.com/in/brianslake/'>Brian Lake</a> - blake@swishdata.com</p><p><a href='https://www.linkedin.com/in/seanapplegate/'>Sean Applegate</a> - sapplegate@swishdata.com<br/><br/>Subscribe wherever you get your podcasts: Apple Podcasts, Spotify, or gist360.com.</p><p><br/></p>]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2616250/episodes/19275614-iran-came-for-us-dams-and-we-got-lucky-frontline-insights-from-the-ot-fight.mp3" length="41325604" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/nzhbimf7iqairsuahl27l4ly8ayw?.jpg" />
    <itunes:author></itunes:author>
    <guid isPermaLink="false">Buzzsprout-19275614</guid>
    <pubDate>Mon, 01 Jun 2026 16:00:00 -0400</pubDate>
    <podcast:transcript url="https://www.buzzsprout.com/2616250/19275614/transcript" type="text/html" />
    <podcast:transcript url="https://www.buzzsprout.com/2616250/19275614/transcript.json" type="application/json" />
    <podcast:transcript url="https://www.buzzsprout.com/2616250/19275614/transcript.srt" type="application/x-subrip" />
    <podcast:transcript url="https://www.buzzsprout.com/2616250/19275614/transcript.vtt" type="text/vtt" />
    <podcast:chapters url="https://www.buzzsprout.com/2616250/19275614/chapters.json" type="application/json" />
    <psc:chapters>
  <psc:chapter start="0:00" title="Iran Linked Threat Hits OT" />
  <psc:chapter start="1:09" title="Meet Matthew Shallbetter aka “Dirt Track”" />
  <psc:chapter start="3:07" title="From Defacement To Real Disruption" />
  <psc:chapter start="8:41" title="The Basics Small Utilities Miss" />
  <psc:chapter start="10:45" title="AI Hype Versus Prepositioned Access" />
  <psc:chapter start="18:41" title="IT And OT Speak Different Languages" />
  <psc:chapter start="27:12" title="Red Teaming Lessons From Ukraine" />
  <psc:chapter start="32:10" title="Funding Limits And National Resilience" />
  <psc:chapter start="40:17" title="What Armis Shares With The Public" />
  <psc:chapter start="42:53" title="Policy Whiplash And What Still Works" />
  <psc:chapter start="53:36" title="ServiceNow Deal And Closing Actions" />
</psc:chapters>
    <itunes:duration>3437</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>7</itunes:episode>
    <itunes:episodeType>full</itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>Cupcakes &amp; OODA Loops: Inside(r) Insights Into the New Federal AI Cyber Playbook</itunes:title>
    <title>Cupcakes &amp; OODA Loops: Inside(r) Insights Into the New Federal AI Cyber Playbook</title>
    <itunes:summary><![CDATA[Last episode, we left you hanging with a question: when it comes to cybersecurity, what is the federal government doing to both leverage AI and defend against AI threats and most importantly, are we moving fast enough? In the conclusion of this two-part series, Sean takes us inside a White House industry day convened at the request of the Federal CISO Council. He breaks down the two themes of the day that framed very different problems: using AI to optimize cybersecurity (running a SOC, gover...]]></itunes:summary>
    <description><![CDATA[<p>Last episode, we left you hanging with a question: when it comes to cybersecurity, what is the federal government doing to both leverage AI and defend against AI threats and most importantly, are we moving fast enough? In the conclusion of this two-part series, Sean takes us inside a White House industry day convened at the request of the Federal CISO Council. He breaks down the two themes of the day that framed very different problems: using AI to optimize cybersecurity (running a SOC, governance, and compliance faster) and securing AI itself. Brian and Sean dig into the agentic SOC, the build-vs-buy question for federal agencies, why data fragmentation is the recurring obstacle in every AI conversation, the role of MCP and RAG in getting agents to the data, and live demos. Cupcakes and OODA loops make an appearance and Sean provides his verdict on whether the government is moving fast enough and his hacker name is finally revealed.</p><p><b>RESOURCES MENTIONED IN THIS EPISODE</b></p><p><b>The White House Industry Day</b></p><p>- <a href='https://georgewbush-whitehouse.archives.gov/history/eeobtour/indian-treaty_nonflash.html'>About the Indian Treaty Room, Eisenhower Executive Office Building</a> </p><p><b>Vendors &amp; Demos Featured in the Episode</b></p><p>- <a href='https://www.lasso.security/'>Lasso Security (AI red teaming and purple teaming)</a></p><p>- <a href='https://www.simspace.com/'>SimSpace (full-stack cyber range simulation</a>)</p><p>- <a href='https://www.elastic.co/security'>Elastic AI workflows (bring-your-own-LLM, air-gap deployable)</a></p><p><b>AI Security Frameworks &amp; Standards</b></p><p>- <a href='https://genai.owasp.org/llm-top-10/'>OWASP Top 10 for LLM Applications</a></p><p>- <a href='https://aivss.owasp.org/'>OWASP AIVSS — AI Vulnerability Scoring System (agentic AI)</a></p><p>- <a href='https://atlas.mitre.org/'>MITRE ATLAS (Adversarial Threat Landscape for AI Systems)</a></p><p><b>Key Technical Concepts</b><br/>- <a href='https://modelcontextprotocol.io/'>Model Context Protocol (MCP) — bringing the agent to the data</a></p><p>- <a href='https://www.ibm.com/think/topics/retrieval-augmented-generation'>Retrieval-Augmented Generation (RAG) explained</a></p><p>- <a href='https://www.cisa.gov/resources-tools/programs/continuous-diagnostics-and-mitigation-cdm-program'>CDM Program (Continuous Diagnostics and Mitigation</a>)</p><p>- <a href='https://thedecisionlab.com/reference-guide/computer-science/the-ooda-loop'>OODA Loop</a> </p><p><b>Industry &amp; Government Collaboration Communities</b></p><p>- <a href='https://atarc.org/'>ATARC — Advanced Technology Academic Research Center</a></p><p>- <a href='https://atarc.org/working-groups/'>ATARC Working Groups (Zero Trust, Agentic AI, Cyber AI Convergence)</a></p><p>- <a href='https://www.nvtc.org/'>Northern Virginia Technology Council (NVTC)</a></p><p>- <a href='https://owasp.org/'>OWASP (Open Worldwide Application Security Project)</a></p><p><b>Other References</b><br/>- <a href='https://www.geoffreyamoore.com/'>Geoffrey Moore, Crossing the Chasm (technology adoption lifecycle)</a></p><p>- <a href='https://www.amazon.com/s?k=jerry+garcia+ties&amp;adgrpid=183710912302&amp;hvadid=779542984701&amp;hvdev=c&amp;hvexpln=0&amp;hvlocphy=9003537&amp;hvnetw=g&amp;hvocijid=17518736681068768760--&amp;hvqmt=e&amp;hvrand=17518736681068768760&amp;hvtargid=kwd-186341102&amp;hydadcr=8157_13494217_2069282&amp;mcid=c3b55cd655bd3c34b66ae311a6e3aaab&amp;tag=googhydr-20&amp;ref=pd_sl_7vgw8h7n1h_e'>Jerry Garcia Ties </a></p><p>- <a href='https://store.dead.net/?srsltid=AfmBOoqnZhc7iq48rk7a-_vBvXPxFIG34kG5RC7imkrTJQK9jjNGCC6s'>Grateful Dead Merch</a></p><p>- <a href='https://www.youtube.com/playlist?list=PLa6xtERtC4LbKOwj-uVbtkOCP4xeprMes'>Phish (The Band)</a></p><p><b>Related Episodes</b><br/>- Episode 5: <em>&quot;Vibe Hacking&quot; and Nation State Cyber Threats</em></p><p>- Episode 2: <em>Fighting Fire with Fire: Federal AI Security - </em>Securing Agentic AI with Elad Schulman, CEO of Lasso Security<br/><br/><b>The Hosts &amp; Show</b><br/>- <a href='https://www.swishdata.com/'>Swish</a><br/>- <a href='https://gist360.com/'>GIST360</a></p><p><b>CONNECT WITH US</b></p><p><b>Got an idea for a future episode? Want to be a guest? Let us know.</b></p><p><a href='https://www.linkedin.com/in/brianslake/'>Brian Lake</a> - blake@swishdata.com</p><p><a href='https://www.linkedin.com/in/seanapplegate/'>Sean Applegate</a> - sapplegate@swishdata.com<br/><br/>Subscribe wherever you get your podcasts: Apple Podcasts, Spotify, or gist360.com.</p><p><br/></p>]]></description>
    <content:encoded><![CDATA[<p>Last episode, we left you hanging with a question: when it comes to cybersecurity, what is the federal government doing to both leverage AI and defend against AI threats and most importantly, are we moving fast enough? In the conclusion of this two-part series, Sean takes us inside a White House industry day convened at the request of the Federal CISO Council. He breaks down the two themes of the day that framed very different problems: using AI to optimize cybersecurity (running a SOC, governance, and compliance faster) and securing AI itself. Brian and Sean dig into the agentic SOC, the build-vs-buy question for federal agencies, why data fragmentation is the recurring obstacle in every AI conversation, the role of MCP and RAG in getting agents to the data, and live demos. Cupcakes and OODA loops make an appearance and Sean provides his verdict on whether the government is moving fast enough and his hacker name is finally revealed.</p><p><b>RESOURCES MENTIONED IN THIS EPISODE</b></p><p><b>The White House Industry Day</b></p><p>- <a href='https://georgewbush-whitehouse.archives.gov/history/eeobtour/indian-treaty_nonflash.html'>About the Indian Treaty Room, Eisenhower Executive Office Building</a> </p><p><b>Vendors &amp; Demos Featured in the Episode</b></p><p>- <a href='https://www.lasso.security/'>Lasso Security (AI red teaming and purple teaming)</a></p><p>- <a href='https://www.simspace.com/'>SimSpace (full-stack cyber range simulation</a>)</p><p>- <a href='https://www.elastic.co/security'>Elastic AI workflows (bring-your-own-LLM, air-gap deployable)</a></p><p><b>AI Security Frameworks &amp; Standards</b></p><p>- <a href='https://genai.owasp.org/llm-top-10/'>OWASP Top 10 for LLM Applications</a></p><p>- <a href='https://aivss.owasp.org/'>OWASP AIVSS — AI Vulnerability Scoring System (agentic AI)</a></p><p>- <a href='https://atlas.mitre.org/'>MITRE ATLAS (Adversarial Threat Landscape for AI Systems)</a></p><p><b>Key Technical Concepts</b><br/>- <a href='https://modelcontextprotocol.io/'>Model Context Protocol (MCP) — bringing the agent to the data</a></p><p>- <a href='https://www.ibm.com/think/topics/retrieval-augmented-generation'>Retrieval-Augmented Generation (RAG) explained</a></p><p>- <a href='https://www.cisa.gov/resources-tools/programs/continuous-diagnostics-and-mitigation-cdm-program'>CDM Program (Continuous Diagnostics and Mitigation</a>)</p><p>- <a href='https://thedecisionlab.com/reference-guide/computer-science/the-ooda-loop'>OODA Loop</a> </p><p><b>Industry &amp; Government Collaboration Communities</b></p><p>- <a href='https://atarc.org/'>ATARC — Advanced Technology Academic Research Center</a></p><p>- <a href='https://atarc.org/working-groups/'>ATARC Working Groups (Zero Trust, Agentic AI, Cyber AI Convergence)</a></p><p>- <a href='https://www.nvtc.org/'>Northern Virginia Technology Council (NVTC)</a></p><p>- <a href='https://owasp.org/'>OWASP (Open Worldwide Application Security Project)</a></p><p><b>Other References</b><br/>- <a href='https://www.geoffreyamoore.com/'>Geoffrey Moore, Crossing the Chasm (technology adoption lifecycle)</a></p><p>- <a href='https://www.amazon.com/s?k=jerry+garcia+ties&amp;adgrpid=183710912302&amp;hvadid=779542984701&amp;hvdev=c&amp;hvexpln=0&amp;hvlocphy=9003537&amp;hvnetw=g&amp;hvocijid=17518736681068768760--&amp;hvqmt=e&amp;hvrand=17518736681068768760&amp;hvtargid=kwd-186341102&amp;hydadcr=8157_13494217_2069282&amp;mcid=c3b55cd655bd3c34b66ae311a6e3aaab&amp;tag=googhydr-20&amp;ref=pd_sl_7vgw8h7n1h_e'>Jerry Garcia Ties </a></p><p>- <a href='https://store.dead.net/?srsltid=AfmBOoqnZhc7iq48rk7a-_vBvXPxFIG34kG5RC7imkrTJQK9jjNGCC6s'>Grateful Dead Merch</a></p><p>- <a href='https://www.youtube.com/playlist?list=PLa6xtERtC4LbKOwj-uVbtkOCP4xeprMes'>Phish (The Band)</a></p><p><b>Related Episodes</b><br/>- Episode 5: <em>&quot;Vibe Hacking&quot; and Nation State Cyber Threats</em></p><p>- Episode 2: <em>Fighting Fire with Fire: Federal AI Security - </em>Securing Agentic AI with Elad Schulman, CEO of Lasso Security<br/><br/><b>The Hosts &amp; Show</b><br/>- <a href='https://www.swishdata.com/'>Swish</a><br/>- <a href='https://gist360.com/'>GIST360</a></p><p><b>CONNECT WITH US</b></p><p><b>Got an idea for a future episode? Want to be a guest? Let us know.</b></p><p><a href='https://www.linkedin.com/in/brianslake/'>Brian Lake</a> - blake@swishdata.com</p><p><a href='https://www.linkedin.com/in/seanapplegate/'>Sean Applegate</a> - sapplegate@swishdata.com<br/><br/>Subscribe wherever you get your podcasts: Apple Podcasts, Spotify, or gist360.com.</p><p><br/></p>]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2616250/episodes/19239702-cupcakes-ooda-loops-inside-r-insights-into-the-new-federal-ai-cyber-playbook.mp3" length="27702102" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/wkv6vmwstg9lrx63g2p4ec5ucn29?.jpg" />
    <itunes:author>Swish </itunes:author>
    <guid isPermaLink="false">Buzzsprout-19239702</guid>
    <pubDate>Mon, 25 May 2026 23:00:00 -0400</pubDate>
    <podcast:transcript url="https://www.buzzsprout.com/2616250/19239702/transcript" type="text/html" />
    <podcast:transcript url="https://www.buzzsprout.com/2616250/19239702/transcript.json" type="application/json" />
    <podcast:transcript url="https://www.buzzsprout.com/2616250/19239702/transcript.srt" type="application/x-subrip" />
    <podcast:transcript url="https://www.buzzsprout.com/2616250/19239702/transcript.vtt" type="text/vtt" />
    <podcast:soundbite startTime="1065.483" duration="52.0" />
    <podcast:chapters url="https://www.buzzsprout.com/2616250/19239702/chapters.json" type="application/json" />
    <psc:chapters>
  <psc:chapter start="0:00" title="The Federal AI Cyber Question" />
  <psc:chapter start="1:21" title="Hacker Names And Fresh Press Suits" />
  <psc:chapter start="2:26" title="The White House Calls" />
  <psc:chapter start="7:11" title="Speed, Culture, And OODA Loops" />
  <psc:chapter start="9:36" title="Inside The Indian Treaty Room" />
  <psc:chapter start="14:29" title="Data Silos And SOC Automation" />
  <psc:chapter start="22:20" title="Red Teaming Demos And Cyber Ranges" />
  <psc:chapter start="26:22" title="Build Vs Buy Agentic SOC" />
  <psc:chapter start="30:31" title="Shared Services And Workforce Reskilling" />
  <psc:chapter start="32:46" title="Is the Government Moving Fast Enough" />
</psc:chapters>
    <itunes:duration>2301</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>6</itunes:episode>
    <itunes:episodeType>full</itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>Vibe Hacking and Nation State Cyber Threats </itunes:title>
    <title>Vibe Hacking and Nation State Cyber Threats </title>
    <itunes:summary><![CDATA[Your router may not be your router. It could be a Russian surveillance device. In Episode 5 of The GIST of Govt IT, Brian and Sean unpack a stunning two weeks in cybersecurity: the FBI's court-authorized takedown of a Russian GRU operation that silently hijacked thousands of TP-Link routers across 23 American states, an Iranian-linked APT group actively disrupting U.S. water and energy systems through Allen-Bradley PLCs, and Anthropic's release of Claude Mythos — a frontier model so capable a...]]></itunes:summary>
    <description><![CDATA[<p>Your router may not be your router. It could be a Russian surveillance device. In Episode 5 of The GIST of Govt IT, Brian and Sean unpack a stunning two weeks in cybersecurity: the FBI&apos;s court-authorized takedown of a Russian GRU operation that silently hijacked thousands of TP-Link routers across 23 American states, an Iranian-linked APT group actively disrupting U.S. water and energy systems through Allen-Bradley PLCs, and Anthropic&apos;s release of Claude Mythos — a frontier model so capable at finding zero-day vulnerabilities that the company chose not to release it publicly. They break down what Project Glasswing means for industry, how AI is becoming both the most dangerous offensive weapon and the most powerful defensive tool a CISO has ever had, why &quot;vibe hacking&quot; is democratizing cyber attacks (one low-skill actor compromised 600 FortiGate firewalls across 55 countries), and why the old playbook for SOC operations needs to be blown up entirely. What the unresolved tension between Anthropic and the DoD over supply chain risk designation means for federal agencies trying to defend critical infrastructure while CISA operates at 38% capacity. Plus Sean shares his hacker name (maybe) if he wasn&apos;t a CTO and instead worked in a windowless office in Pyongyang. </p><p>----------<br/><b>RESOURCES MENTIONED IN THIS EPISODE</b></p><p><b>The Russian GRU Router Operation</b></p><p>- <a href='ttps://www.justice.gov/opa/pr/justice-department-conducts-court-authorized-disruption-dns-hijacking-network-controlled'>DOJ announcement: Operation Masquerade — court-authorized disruption of DNS hijacking network</a> <br/>- <a href='https://www.ic3.gov/PSA/2026/PSA260407'>FBI Public Service Announcement on GRU exploitation of TP-Link routers</a></p><p> - <a href='https://www.nsa.gov/Press-Room/Press-Releases-Statements/Press-Release-View/Article/4453919/nsa-supports-fbi-in-highlighting-russian-gru-threats-against-routers/'>NSA statement on Russian GRU router threats </a><br/><a href='https://nvd.nist.gov/vuln/detail/CVE-2023-50224'>- CVE-2023-50224 (the TP-Link vulnerability exploited)</a> </p><p><b>Iranian-Linked Attacks on U.S. Critical Infrastructure</b></p><p>- <a href='https://www.cisa.gov/news-events/cybersecurity-advisories/aa26-097a'>CISA Joint Advisory AA26-097A — Iranian-Affiliated Cyber Actors Exploit PLCs Across US Critical Infrastructure</a><br/>- <a href='https://www.rockwellautomation.com/en-us/trust-center/security-advisories.html'>Rockwell Automation security guidance</a></p><p><b>Anthropic, Claude Mythos &amp; Project Glasswing</b></p><p>- <a href='https://www.anthropic.com/news/project-glasswing'>Anthropic on Project Glasswing</a><br/>- <a href='https://www.anthropic.com/news/statement-comments-secretary-war'>Anthropic&apos;s statement on the DoD supply chain risk designation</a><br/>- <a href='https://labs.cloudsecurityalliance.org/research/ai-vuln-discovery-containment-claude-mythos-v1-0-csa-styled/'>Cloud Security Alliance whitepaper on Mythos vulnerability discovery</a></p><p><b>Recommended Consumer Protections<br/></b>- <a href='https://1.1.1.1/'>Cloudflare&apos;s free 1.1.1.1 DNS resolver</a><br/>- <a href='https://blog.cloudflare.com/introducing-1-1-1-1-for-families/'>Cloudflare DNS family options (malware and adult content filtering)</a></p><p><b>Cybersecurity Frameworks &amp; Government Resources</b><br/>- <a href='https://www.cisa.gov/topics/cybersecurity-best-practices/securing-edge-devices'>CISA Edge Device Security</a><br/>- <a href='https://www.cisa.gov/cross-sector-cybersecurity-performance-goals'>CISA Cross-Sector Cybersecurity Performance Goals (CPGs 2.0)</a><br/>- <a href='https://attack.mitre.org/'>MITRE ATT&amp;CK Framework</a><br/>- <a href='https://www.cisa.gov/topics/industrial-control-systems'>CISA Industrial Control Systems advisories</a></p><p><b>Related Episodes</b><br/>- Episode 2: <em>Fighting Fire with Fire: Federal AI Security - </em>Securing Agentic AI with Elad Schulman, CEO of Lasso Security<br/>- Episode 3: <em>Chaos, Change, and Opportunity in Federal IT - </em>$50B in Q4 federal IT contracting, Golden Dome, and the Anthropic supply chain risk designation</p><p><b>The Hosts &amp; Show</b></p><p>- <a href='https://www.swishdata.com/'>Swish</a> <br/>- <a href='https://gist360.com/'>GIST360</a></p><p><b>CONNECT WITH US</b></p><p><b>Got an idea for a future episode? Want to be a guest? Let us know.</b></p><p><a href='https://www.linkedin.com/in/brianslake/'>Brian Lake</a> - blake@swishdata.com</p><p><a href='https://www.linkedin.com/in/seanapplegate/'>Sean Applegate</a> - sapplegate@swishdata.com<br/><br/>Subscribe wherever you get your podcasts: Apple Podcasts, Spotify, or gist360.com.</p><p><br/></p>]]></description>
    <content:encoded><![CDATA[<p>Your router may not be your router. It could be a Russian surveillance device. In Episode 5 of The GIST of Govt IT, Brian and Sean unpack a stunning two weeks in cybersecurity: the FBI&apos;s court-authorized takedown of a Russian GRU operation that silently hijacked thousands of TP-Link routers across 23 American states, an Iranian-linked APT group actively disrupting U.S. water and energy systems through Allen-Bradley PLCs, and Anthropic&apos;s release of Claude Mythos — a frontier model so capable at finding zero-day vulnerabilities that the company chose not to release it publicly. They break down what Project Glasswing means for industry, how AI is becoming both the most dangerous offensive weapon and the most powerful defensive tool a CISO has ever had, why &quot;vibe hacking&quot; is democratizing cyber attacks (one low-skill actor compromised 600 FortiGate firewalls across 55 countries), and why the old playbook for SOC operations needs to be blown up entirely. What the unresolved tension between Anthropic and the DoD over supply chain risk designation means for federal agencies trying to defend critical infrastructure while CISA operates at 38% capacity. Plus Sean shares his hacker name (maybe) if he wasn&apos;t a CTO and instead worked in a windowless office in Pyongyang. </p><p>----------<br/><b>RESOURCES MENTIONED IN THIS EPISODE</b></p><p><b>The Russian GRU Router Operation</b></p><p>- <a href='ttps://www.justice.gov/opa/pr/justice-department-conducts-court-authorized-disruption-dns-hijacking-network-controlled'>DOJ announcement: Operation Masquerade — court-authorized disruption of DNS hijacking network</a> <br/>- <a href='https://www.ic3.gov/PSA/2026/PSA260407'>FBI Public Service Announcement on GRU exploitation of TP-Link routers</a></p><p> - <a href='https://www.nsa.gov/Press-Room/Press-Releases-Statements/Press-Release-View/Article/4453919/nsa-supports-fbi-in-highlighting-russian-gru-threats-against-routers/'>NSA statement on Russian GRU router threats </a><br/><a href='https://nvd.nist.gov/vuln/detail/CVE-2023-50224'>- CVE-2023-50224 (the TP-Link vulnerability exploited)</a> </p><p><b>Iranian-Linked Attacks on U.S. Critical Infrastructure</b></p><p>- <a href='https://www.cisa.gov/news-events/cybersecurity-advisories/aa26-097a'>CISA Joint Advisory AA26-097A — Iranian-Affiliated Cyber Actors Exploit PLCs Across US Critical Infrastructure</a><br/>- <a href='https://www.rockwellautomation.com/en-us/trust-center/security-advisories.html'>Rockwell Automation security guidance</a></p><p><b>Anthropic, Claude Mythos &amp; Project Glasswing</b></p><p>- <a href='https://www.anthropic.com/news/project-glasswing'>Anthropic on Project Glasswing</a><br/>- <a href='https://www.anthropic.com/news/statement-comments-secretary-war'>Anthropic&apos;s statement on the DoD supply chain risk designation</a><br/>- <a href='https://labs.cloudsecurityalliance.org/research/ai-vuln-discovery-containment-claude-mythos-v1-0-csa-styled/'>Cloud Security Alliance whitepaper on Mythos vulnerability discovery</a></p><p><b>Recommended Consumer Protections<br/></b>- <a href='https://1.1.1.1/'>Cloudflare&apos;s free 1.1.1.1 DNS resolver</a><br/>- <a href='https://blog.cloudflare.com/introducing-1-1-1-1-for-families/'>Cloudflare DNS family options (malware and adult content filtering)</a></p><p><b>Cybersecurity Frameworks &amp; Government Resources</b><br/>- <a href='https://www.cisa.gov/topics/cybersecurity-best-practices/securing-edge-devices'>CISA Edge Device Security</a><br/>- <a href='https://www.cisa.gov/cross-sector-cybersecurity-performance-goals'>CISA Cross-Sector Cybersecurity Performance Goals (CPGs 2.0)</a><br/>- <a href='https://attack.mitre.org/'>MITRE ATT&amp;CK Framework</a><br/>- <a href='https://www.cisa.gov/topics/industrial-control-systems'>CISA Industrial Control Systems advisories</a></p><p><b>Related Episodes</b><br/>- Episode 2: <em>Fighting Fire with Fire: Federal AI Security - </em>Securing Agentic AI with Elad Schulman, CEO of Lasso Security<br/>- Episode 3: <em>Chaos, Change, and Opportunity in Federal IT - </em>$50B in Q4 federal IT contracting, Golden Dome, and the Anthropic supply chain risk designation</p><p><b>The Hosts &amp; Show</b></p><p>- <a href='https://www.swishdata.com/'>Swish</a> <br/>- <a href='https://gist360.com/'>GIST360</a></p><p><b>CONNECT WITH US</b></p><p><b>Got an idea for a future episode? Want to be a guest? Let us know.</b></p><p><a href='https://www.linkedin.com/in/brianslake/'>Brian Lake</a> - blake@swishdata.com</p><p><a href='https://www.linkedin.com/in/seanapplegate/'>Sean Applegate</a> - sapplegate@swishdata.com<br/><br/>Subscribe wherever you get your podcasts: Apple Podcasts, Spotify, or gist360.com.</p><p><br/></p>]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2616250/episodes/19191667-vibe-hacking-and-nation-state-cyber-threats.mp3" length="24292841" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/4s89t40izu2r0aezw13tr34m9c5a?.jpg" />
    <itunes:author>Swish </itunes:author>
    <guid isPermaLink="false">Buzzsprout-19191667</guid>
    <pubDate>Mon, 18 May 2026 08:00:00 -0400</pubDate>
    <podcast:transcript url="https://www.buzzsprout.com/2616250/19191667/transcript" type="text/html" />
    <podcast:transcript url="https://www.buzzsprout.com/2616250/19191667/transcript.json" type="application/json" />
    <podcast:transcript url="https://www.buzzsprout.com/2616250/19191667/transcript.srt" type="application/x-subrip" />
    <podcast:transcript url="https://www.buzzsprout.com/2616250/19191667/transcript.vtt" type="text/vtt" />
    <podcast:soundbite startTime="1394.433" duration="30.5" />
    <podcast:chapters url="https://www.buzzsprout.com/2616250/19191667/chapters.json" type="application/json" />
    <psc:chapters>
  <psc:chapter start="0:00" title="Routers Turned Into Spy Gear" />
  <psc:chapter start="3:10" title="How The GRU Hijacked DNS" />
  <psc:chapter start="6:09" title="Iranian Attacks On Water And Power" />
  <psc:chapter start="7:08" title="Small Town OT Security Reality" />
  <psc:chapter start="9:29" title="AI Supply Chain Breach Explained" />
  <psc:chapter start="14:11" title="Mythos And Autonomous Zero Days" />
  <psc:chapter start="19:19" title="Rebuilding The SOC With Agents" />
  <psc:chapter start="25:38" title="Project Glasswing And Guardrails Fight" />
  <psc:chapter start="31:43" title="Next Steps And Listener Challenge" />
</psc:chapters>
    <itunes:duration>2017</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>5</itunes:episode>
    <itunes:episodeType>full</itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>A New Playbook for Small Businesses and Startups in Federal IT</itunes:title>
    <title>A New Playbook for Small Businesses and Startups in Federal IT</title>
    <itunes:summary><![CDATA[From a startup consulting shop to a $1.4B IBM acquisition, Octo Consulting Group's story is one of the great growth journeys in government IT. Brian and Sean sit down with Jay Shah, Octo's former COO, who helped guide the company through every inflection point — the pivot to DevSecOps and agile, the move from sub to prime, the strategic (and intentional non-) use of the 8(a) program, the 2019 Arlington Capital investment, four acquisitions, the launch of OLabs, and the IBM exit in December 20...]]></itunes:summary>
    <description><![CDATA[<p>From a startup consulting shop to a $1.4B IBM acquisition, Octo Consulting Group&apos;s story is one of the great growth journeys in government IT. Brian and Sean sit down with Jay Shah, Octo&apos;s former COO, who helped guide the company through every inflection point — the pivot to DevSecOps and agile, the move from sub to prime, the strategic (and intentional non-) use of the 8(a) program, the 2019 Arlington Capital investment, four acquisitions, the launch of OLabs, and the IBM exit in December 2022. Jay shares the unvarnished playbook for scaling in the federal market: why diversification matters more than the 8(a) badge, when to be bold with primes (and when to bluff), how to turn billable services into IP, why OLabs only worked because they had base hits first, and what most founders get wrong about working capital. Plus, Brian and Jay geek out on funk master flautist Karl Denson.<br/>----------<br/><br/><b>RESOURCES MENTIONED IN THIS EPISODE<br/></b><br/><b>Featured Guest<br/></b>- <a href='https://www.linkedin.com/in/jayhshah/'>Jay Shah</a><br/>- <a href='https://www.octo.us/'>Octo</a><br/>- <a href='https://www.ibm.com/consulting/olabs'>OLabs</a></p><p><b>Capital, Mentorship &amp; Workforce Development<br/></b>- <a href='https://business.gmu.edu/apex-accelerator'>Mason Enterprise — APEX Accelerator </a><br/>- <a href='https://www.nationalvip.org/'>Veterans Institute for Procurement (VIP)</a><br/>- <a href='https://a16z.com/american-dynamism/'>Andreessen Horowitz American Dynamism</a><br/>- <a href='https://www.paxventures.com/'>Pax Ventures</a><br/><br/><b>Books &amp; Frameworks Referenced<br/></b>- <a href='https://trustedadvisor.com/why-trust-matters/the-trusted-advisor-book'>The Trusted Advisor by David Maister, Charles Green, and Robert Galford</a><br/>- T<a href='https://scaledagileframework.com/'>he Scaled Agile Framework (SAFe)</a><br/>- <a href='https://itrevolution.com/articles/westrums-organizational-model-in-tech-orgs/'>Westrum Organizational Culture Typology</a><br/>- <a href='https://itrevolution.com/product/the-phoenix-project/'>Gene Kim &amp; The Phoenix Project</a><br/>- <a href='https://dora.dev/'>DORA (DevOps Research and Assessment</a>)<br/><br/><b>Live Music Worth Checking Out<br/></b>- <a href='https://youtu.be/0nAgCw0Elss?si=L2bCbSSycEyfNDTt'>Karl Denson&apos;s Tiny Universe</a><br/>- <a href='https://youtu.be/AOShmlQvBQQ?si=SAHeslytoe9ctLOS'>The Greyboy Allstars</a><br/>- <a href='https://youtu.be/7hx4gdlfamo?si=5lP26Knw1dNqSE2a'>Kenny Rogers</a> </p><p><a href='https://youtu.be/qusYTWQFIF8?si=Gc8VbYAzslhDkurN'><b>Insane Knuckleballs</b></a></p><p><b>Jay&apos;s Nonprofit Work<br/></b>- T<a href='https://childrensinn.org/'>he Children&apos;s Inn at NIH</a><br/>- <a href='https://www.wolftrap.org/'>Wolf Trap Foundation for the Performing Arts</a><br/>- <a href='https://www.loudounhunger.org/'>Loudoun Hunger Relief</a><br/><br/><b>The Hosts &amp; Show<br/></b>- <a href='https://www.swishdata.com/'>Swish</a><br/>- <a href='https://gist360.com/'>GIST360</a></p><p><b>CONNECT WITH US</b></p><p><b>Got an idea for a future episode? Want to be a guest? Let us know.</b></p><p><a href='https://www.linkedin.com/in/brianslake/'>Brian Lake</a> - blake@swishdata.com</p><p><a href='https://www.linkedin.com/in/seanapplegate/'>Sean Applegate</a> - sapplegate@swishdata.com<br/><br/>Subscribe wherever you get your podcasts: Apple Podcasts, Spotify, or gist360.com.</p><p><br/></p>]]></description>
    <content:encoded><![CDATA[<p>From a startup consulting shop to a $1.4B IBM acquisition, Octo Consulting Group&apos;s story is one of the great growth journeys in government IT. Brian and Sean sit down with Jay Shah, Octo&apos;s former COO, who helped guide the company through every inflection point — the pivot to DevSecOps and agile, the move from sub to prime, the strategic (and intentional non-) use of the 8(a) program, the 2019 Arlington Capital investment, four acquisitions, the launch of OLabs, and the IBM exit in December 2022. Jay shares the unvarnished playbook for scaling in the federal market: why diversification matters more than the 8(a) badge, when to be bold with primes (and when to bluff), how to turn billable services into IP, why OLabs only worked because they had base hits first, and what most founders get wrong about working capital. Plus, Brian and Jay geek out on funk master flautist Karl Denson.<br/>----------<br/><br/><b>RESOURCES MENTIONED IN THIS EPISODE<br/></b><br/><b>Featured Guest<br/></b>- <a href='https://www.linkedin.com/in/jayhshah/'>Jay Shah</a><br/>- <a href='https://www.octo.us/'>Octo</a><br/>- <a href='https://www.ibm.com/consulting/olabs'>OLabs</a></p><p><b>Capital, Mentorship &amp; Workforce Development<br/></b>- <a href='https://business.gmu.edu/apex-accelerator'>Mason Enterprise — APEX Accelerator </a><br/>- <a href='https://www.nationalvip.org/'>Veterans Institute for Procurement (VIP)</a><br/>- <a href='https://a16z.com/american-dynamism/'>Andreessen Horowitz American Dynamism</a><br/>- <a href='https://www.paxventures.com/'>Pax Ventures</a><br/><br/><b>Books &amp; Frameworks Referenced<br/></b>- <a href='https://trustedadvisor.com/why-trust-matters/the-trusted-advisor-book'>The Trusted Advisor by David Maister, Charles Green, and Robert Galford</a><br/>- T<a href='https://scaledagileframework.com/'>he Scaled Agile Framework (SAFe)</a><br/>- <a href='https://itrevolution.com/articles/westrums-organizational-model-in-tech-orgs/'>Westrum Organizational Culture Typology</a><br/>- <a href='https://itrevolution.com/product/the-phoenix-project/'>Gene Kim &amp; The Phoenix Project</a><br/>- <a href='https://dora.dev/'>DORA (DevOps Research and Assessment</a>)<br/><br/><b>Live Music Worth Checking Out<br/></b>- <a href='https://youtu.be/0nAgCw0Elss?si=L2bCbSSycEyfNDTt'>Karl Denson&apos;s Tiny Universe</a><br/>- <a href='https://youtu.be/AOShmlQvBQQ?si=SAHeslytoe9ctLOS'>The Greyboy Allstars</a><br/>- <a href='https://youtu.be/7hx4gdlfamo?si=5lP26Knw1dNqSE2a'>Kenny Rogers</a> </p><p><a href='https://youtu.be/qusYTWQFIF8?si=Gc8VbYAzslhDkurN'><b>Insane Knuckleballs</b></a></p><p><b>Jay&apos;s Nonprofit Work<br/></b>- T<a href='https://childrensinn.org/'>he Children&apos;s Inn at NIH</a><br/>- <a href='https://www.wolftrap.org/'>Wolf Trap Foundation for the Performing Arts</a><br/>- <a href='https://www.loudounhunger.org/'>Loudoun Hunger Relief</a><br/><br/><b>The Hosts &amp; Show<br/></b>- <a href='https://www.swishdata.com/'>Swish</a><br/>- <a href='https://gist360.com/'>GIST360</a></p><p><b>CONNECT WITH US</b></p><p><b>Got an idea for a future episode? Want to be a guest? Let us know.</b></p><p><a href='https://www.linkedin.com/in/brianslake/'>Brian Lake</a> - blake@swishdata.com</p><p><a href='https://www.linkedin.com/in/seanapplegate/'>Sean Applegate</a> - sapplegate@swishdata.com<br/><br/>Subscribe wherever you get your podcasts: Apple Podcasts, Spotify, or gist360.com.</p><p><br/></p>]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2616250/episodes/19161867-a-new-playbook-for-small-businesses-and-startups-in-federal-it.mp3" length="48286832" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/pe8pjha4bl1kgwlu0rfj7vg8ib4o?.jpg" />
    <itunes:author>Swish </itunes:author>
    <guid isPermaLink="false">Buzzsprout-19161867</guid>
    <pubDate>Mon, 11 May 2026 23:00:00 -0400</pubDate>
    <podcast:transcript url="https://www.buzzsprout.com/2616250/19161867/transcript" type="text/html" />
    <podcast:transcript url="https://www.buzzsprout.com/2616250/19161867/transcript.json" type="application/json" />
    <podcast:transcript url="https://www.buzzsprout.com/2616250/19161867/transcript.srt" type="application/x-subrip" />
    <podcast:transcript url="https://www.buzzsprout.com/2616250/19161867/transcript.vtt" type="text/vtt" />
    <podcast:soundbite startTime="1647.533" duration="60.0" />
    <podcast:chapters url="https://www.buzzsprout.com/2616250/19161867/chapters.json" type="application/json" />
    <psc:chapters>
  <psc:chapter start="0:00" title="Why Government IT Is Opening Up" />
  <psc:chapter start="1:26" title="Karl Denson the Funk Flautist, Jay Shah And Octo’s Arc" />
  <psc:chapter start="4:36" title="Trusted Advisor Roots And Pivot" />
  <psc:chapter start="12:51" title="Diversify First Then Prime Work" />
  <psc:chapter start="16:14" title="Bringing In Leaders To Scale" />
  <psc:chapter start="18:15" title="Private Equity And Acquisition Growth" />
  <psc:chapter start="19:17" title="OLabs And Demonstrating Innovation" />
  <psc:chapter start="23:43" title="A Playbook For Base Hits" />
  <psc:chapter start="33:56" title="Partnerships Require Bold Negotiation" />
  <psc:chapter start="38:43" title="LPTA, Scope Fit, And 8(a) Scrutiny" />
  <psc:chapter start="46:09" title="Turning Past Performance Into Wins" />
  <psc:chapter start="53:51" title="Risk And Working Capital Reality" />
  <psc:chapter start="1:01:23" title="Choosing The Right Capital Partner" />
  <psc:chapter start="1:04:03" title="If Jay Could Do It All Over Again" />
  <psc:chapter start="1:06:05" title="Go See Live Music This Summer and Closing" />
</psc:chapters>
    <itunes:duration>4018</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>4</itunes:episode>
    <itunes:episodeType>full</itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>Chaos, Change, and Opportunity in Federal IT</itunes:title>
    <title>Chaos, Change, and Opportunity in Federal IT</title>
    <itunes:summary><![CDATA["Chaos." "Change." "Opportunity." Three words that surfaced in a room full of federal contractors when asked to describe today's government IT environment. Sean and Brian unpack what's really driving the disruption, from RIFs and FAR overhauls to FedRAMP changes, the Anthropic supply chain risk designation, and the brain drain hitting agencies like NIST. They dig into the structural changes reshaping how government buys and builds technology — OTAs gaining momentum, Golden Dome's six-month ID...]]></itunes:summary>
    <description><![CDATA[<p>&quot;Chaos.&quot; &quot;Change.&quot; &quot;Opportunity.&quot; Three words that surfaced in a room full of federal contractors when asked to describe today&apos;s government IT environment. Sean and Brian unpack what&apos;s really driving the disruption, from RIFs and FAR overhauls to FedRAMP changes, the Anthropic supply chain risk designation, and the brain drain hitting agencies like NIST. They dig into the structural changes reshaping how government buys and builds technology — OTAs gaining momentum, Golden Dome&apos;s six-month IDIQ award turnaround, and CDOs finally getting real budget authority to break down data silos. Then they pivot to where the real opportunity lives: $50B in federal IT contracting in Q4 FY25, $13B for autonomy and AI at the Department of War, mission Genesis investments at DOE, and the massive energy build-out required to keep pace with China. Brian gets smart on Markdown files. <br/><br/>----------<br/><br/><b>RESOURCES MENTIONED IN THIS EPISODE<br/></b><br/><b>Federal AI Policy &amp; Executive Orders<br/></b>- <a href='https://www.whitehouse.gov/wp-content/uploads/2025/02/M-25-21-Accelerating-Federal-Use-of-AI-through-Innovation-Governance-and-Public-Trust.pdf'>OMB M-25-21 — Accelerating Federal Use of AI through Innovation, Governance, and Public Trust </a><br/>- <a href='https://www.whitehouse.gov/wp-content/uploads/2025/02/M-25-22-Driving-Efficient-Acquisition-of-Artificial-Intelligence-in-Government.pdf'>OMB M-25-22 — Driving Efficient Acquisition of Artificial Intelligence in Government </a><br/>- <a href='https://www.whitehouse.gov/presidential-actions/2025/01/removing-barriers-to-american-leadership-in-artificial-intelligence/'>Executive Order 14179 — Removing Barriers to American Leadership in AI</a><br/>- <a href='https://www.whitehouse.gov/wp-content/uploads/2025/07/Americas-AI-Action-Plan.pdf'>America&apos;s AI Action Pla</a>n<br/>- <a href='https://ai.gov/'>AI.gov</a><br/><br/><b>NIST AI Standards &amp; Frameworks<br/></b>- <a href='https://www.nist.gov/news-events/news/2026/02/announcing-ai-agent-standards-initiative-interoperable-and-secure'>NIST AI Agent Standards Initiative (launched Feb 17, 2026)</a><br/>- <a href='https://www.nist.gov/itl/ai-risk-management-framework'>NIST AI Risk Management Framework</a><br/>- <a href='https://nvlpubs.nist.gov/nistpubs/ai/NIST.AI.600-1.pdf'>NIST AI 600-1 (Generative AI Profile)</a><br/><br/><b>Acquisition Reform &amp; Contract Vehicles<br/></b>- F<a href='https://www.acquisition.gov/far-overhaul'>AR Overhaul (Revolutionary FAR Overhaul)</a><br/>- <a href='https://www.sewp.nasa.gov/'>GSA SEWP V extension and SEWP VI updates</a><br/>- <a href='https://www.mda.mil/news/news.html'>Missile Defense Agency Golden Dome IDIQ</a><br/>- <a href='ttps://aaf.dau.edu/aaf/ota/'>Other Transaction Authorities (OTAs) — DAU guide</a><br/><br/><b>Department of War / Defense AI<br/></b>- <a href='https://www.ai.mil/'>DoD Chief Digital and AI Office (CDAO)</a><br/>- <a href='https://www.diu.mil/'>Defense Innovation Unit</a><br/><br/><b>Department of Energy<br/></b>- <a href='https://www.energy.gov/science/mission-genesis-doe'>Mission Genesis</a></p><p><b>Workforce &amp; Learning Resources</b><br/>- <a href='https://www.freecodecamp.org/'>freeCodeCamp</a><br/>- <a href='https://docs.claude.com/'>Anthropic&apos;s Claude documentation (markdown skills &amp; agent files)</a><br/>- <a href='https://modelcontextprotocol.io/'>Model Context Protocol (MCP)</a><br/><br/><b>The Hosts &amp; Show<br/></b>- <a href='https://www.swishdata.com/'>Swish</a>  <br/>- <a href='https://gist360.com/'>GIST360</a></p><p><b>CONNECT WITH US</b></p><p><b>Got an idea for a future episode? Want to be a guest? Let us know.</b></p><p><a href='https://www.linkedin.com/in/brianslake/'>Brian Lake</a> - blake@swishdata.com</p><p><a href='https://www.linkedin.com/in/seanapplegate/'>Sean Applegate</a> - sapplegate@swishdata.com<br/><br/>Subscribe wherever you get your podcasts: Apple Podcasts, Spotify, or gist360.com.</p><p><br/></p>]]></description>
    <content:encoded><![CDATA[<p>&quot;Chaos.&quot; &quot;Change.&quot; &quot;Opportunity.&quot; Three words that surfaced in a room full of federal contractors when asked to describe today&apos;s government IT environment. Sean and Brian unpack what&apos;s really driving the disruption, from RIFs and FAR overhauls to FedRAMP changes, the Anthropic supply chain risk designation, and the brain drain hitting agencies like NIST. They dig into the structural changes reshaping how government buys and builds technology — OTAs gaining momentum, Golden Dome&apos;s six-month IDIQ award turnaround, and CDOs finally getting real budget authority to break down data silos. Then they pivot to where the real opportunity lives: $50B in federal IT contracting in Q4 FY25, $13B for autonomy and AI at the Department of War, mission Genesis investments at DOE, and the massive energy build-out required to keep pace with China. Brian gets smart on Markdown files. <br/><br/>----------<br/><br/><b>RESOURCES MENTIONED IN THIS EPISODE<br/></b><br/><b>Federal AI Policy &amp; Executive Orders<br/></b>- <a href='https://www.whitehouse.gov/wp-content/uploads/2025/02/M-25-21-Accelerating-Federal-Use-of-AI-through-Innovation-Governance-and-Public-Trust.pdf'>OMB M-25-21 — Accelerating Federal Use of AI through Innovation, Governance, and Public Trust </a><br/>- <a href='https://www.whitehouse.gov/wp-content/uploads/2025/02/M-25-22-Driving-Efficient-Acquisition-of-Artificial-Intelligence-in-Government.pdf'>OMB M-25-22 — Driving Efficient Acquisition of Artificial Intelligence in Government </a><br/>- <a href='https://www.whitehouse.gov/presidential-actions/2025/01/removing-barriers-to-american-leadership-in-artificial-intelligence/'>Executive Order 14179 — Removing Barriers to American Leadership in AI</a><br/>- <a href='https://www.whitehouse.gov/wp-content/uploads/2025/07/Americas-AI-Action-Plan.pdf'>America&apos;s AI Action Pla</a>n<br/>- <a href='https://ai.gov/'>AI.gov</a><br/><br/><b>NIST AI Standards &amp; Frameworks<br/></b>- <a href='https://www.nist.gov/news-events/news/2026/02/announcing-ai-agent-standards-initiative-interoperable-and-secure'>NIST AI Agent Standards Initiative (launched Feb 17, 2026)</a><br/>- <a href='https://www.nist.gov/itl/ai-risk-management-framework'>NIST AI Risk Management Framework</a><br/>- <a href='https://nvlpubs.nist.gov/nistpubs/ai/NIST.AI.600-1.pdf'>NIST AI 600-1 (Generative AI Profile)</a><br/><br/><b>Acquisition Reform &amp; Contract Vehicles<br/></b>- F<a href='https://www.acquisition.gov/far-overhaul'>AR Overhaul (Revolutionary FAR Overhaul)</a><br/>- <a href='https://www.sewp.nasa.gov/'>GSA SEWP V extension and SEWP VI updates</a><br/>- <a href='https://www.mda.mil/news/news.html'>Missile Defense Agency Golden Dome IDIQ</a><br/>- <a href='ttps://aaf.dau.edu/aaf/ota/'>Other Transaction Authorities (OTAs) — DAU guide</a><br/><br/><b>Department of War / Defense AI<br/></b>- <a href='https://www.ai.mil/'>DoD Chief Digital and AI Office (CDAO)</a><br/>- <a href='https://www.diu.mil/'>Defense Innovation Unit</a><br/><br/><b>Department of Energy<br/></b>- <a href='https://www.energy.gov/science/mission-genesis-doe'>Mission Genesis</a></p><p><b>Workforce &amp; Learning Resources</b><br/>- <a href='https://www.freecodecamp.org/'>freeCodeCamp</a><br/>- <a href='https://docs.claude.com/'>Anthropic&apos;s Claude documentation (markdown skills &amp; agent files)</a><br/>- <a href='https://modelcontextprotocol.io/'>Model Context Protocol (MCP)</a><br/><br/><b>The Hosts &amp; Show<br/></b>- <a href='https://www.swishdata.com/'>Swish</a>  <br/>- <a href='https://gist360.com/'>GIST360</a></p><p><b>CONNECT WITH US</b></p><p><b>Got an idea for a future episode? Want to be a guest? Let us know.</b></p><p><a href='https://www.linkedin.com/in/brianslake/'>Brian Lake</a> - blake@swishdata.com</p><p><a href='https://www.linkedin.com/in/seanapplegate/'>Sean Applegate</a> - sapplegate@swishdata.com<br/><br/>Subscribe wherever you get your podcasts: Apple Podcasts, Spotify, or gist360.com.</p><p><br/></p>]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2616250/episodes/19161859-chaos-change-and-opportunity-in-federal-it.mp3" length="30259191" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/4trjyy6kqw9l6qdpxrw3jcsiymf9?.jpg" />
    <itunes:author>Swish </itunes:author>
    <guid isPermaLink="false">Buzzsprout-19161859</guid>
    <pubDate>Mon, 04 May 2026 09:00:00 -0400</pubDate>
    <podcast:transcript url="https://www.buzzsprout.com/2616250/19161859/transcript" type="text/html" />
    <podcast:transcript url="https://www.buzzsprout.com/2616250/19161859/transcript.json" type="application/json" />
    <podcast:transcript url="https://www.buzzsprout.com/2616250/19161859/transcript.srt" type="application/x-subrip" />
    <podcast:transcript url="https://www.buzzsprout.com/2616250/19161859/transcript.vtt" type="text/vtt" />
    <podcast:soundbite startTime="1542.626" duration="29.5" />
    <podcast:chapters url="https://www.buzzsprout.com/2616250/19161859/chapters.json" type="application/json" />
    <psc:chapters>
  <psc:chapter start="0:00" title="One Word For Federal IT" />
  <psc:chapter start="1:02" title="Markdown Meets Modern AI Work" />
  <psc:chapter start="2:08" title="Why Chaos Change Opportunity Coexist" />
  <psc:chapter start="4:35" title="Chaos: Signals Worth Taking Seriously" />
  <psc:chapter start="14:53" title="Change: Acquisition Speed And OTAs" />
  <psc:chapter start="19:55" title="AI Policy And Data Modernization" />
  <psc:chapter start="28:19" title="Opportunity: Budgets Autonomy Energy" />
  <psc:chapter start="32:32" title="How Contractors Earn Government Trust" />
  <psc:chapter start="35:46" title="Build Your 2026 Survival Playbook" />
  <psc:chapter start="40:57" title="Closing And How To Reach Us" />
</psc:chapters>
    <itunes:duration>2516</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>3</itunes:episode>
    <itunes:episodeType>full</itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>Fighting Fire with Fire to Secure Federal AI Agents </itunes:title>
    <title>Fighting Fire with Fire to Secure Federal AI Agents </title>
    <itunes:summary><![CDATA[There's a workforce inside your agency that nobody hired, no one trained, and nobody is watching. We're talking about AI agents. In Episode 2 of The GIST of Govt IT, Brian and Sean sit down with Elad Schulman, CEO and co-founder of Lasso Security, to unpack what it actually takes to secure an agentic federal enterprise that seemed to arrive on the scene overnight. They dig into AI sprawl, the new attack surface created by autonomous agents, and why traditional security playbooks don't work wh...]]></itunes:summary>
    <description><![CDATA[<p>There&apos;s a workforce inside your agency that nobody hired, no one trained, and nobody is watching. We&apos;re talking about AI agents. In Episode 2 of The GIST of Govt IT, Brian and Sean sit down with Elad Schulman, CEO and co-founder of Lasso Security, to unpack what it actually takes to secure an agentic federal enterprise that seemed to arrive on the scene overnight. They dig into AI sprawl, the new attack surface created by autonomous agents, and why traditional security playbooks don&apos;t work when the system you&apos;re defending is non-deterministic. Elad shares why &quot;intent security&quot; is the new frontier, how agentic red teaming finds vulnerabilities a hundred humans never would, and what happens when an agent goes rogue (hint: it doesn&apos;t have to be malicious to cause real damage). Also, what it takes for innovative non-traditional vendors to actually move at the speed the federal government now demands. Finally, if you task an AI agent to keep your house clean, you better make sure to instruct it not to kill your family. <br/><br/>----------<br/><br/><b>RESOURCES MENTIONED IN THIS EPISODE<br/></b><br/><b>Featured Guest<br/></b>- <a href='https://www.linkedin.com/in/eschulman/'>Elad Schulman, CEO &amp; Co-Founder, Lasso Security </a><br/>- <a href='https://www.lasso.security/'>Lasso Security</a> <br/>- <a href='https://www.lasso.security/resources/intent-deputy-ai-agent-security'>Lasso Intent Security for AI Agents</a><br/><br/><b>OMB Memos &amp; Executive Orders on Federal AI<br/></b>- <a href='https://www.whitehouse.gov/wp-content/uploads/2025/02/M-25-21-Accelerating-Federal-Use-of-AI-through-Innovation-Governance-and-Public-Trust.pdf'>OMB M-25-21 — Accelerating Federal Use of AI through Innovation, Governance, and Public Trust</a> <br/>- <a href='https://www.whitehouse.gov/wp-content/uploads/2025/02/M-25-22-Driving-Efficient-Acquisition-of-Artificial-Intelligence-in-Government.pdf'>OMB M-25-22 — Driving Efficient Acquisition of Artificial Intelligence in Government </a><br/>- <a href='https://www.whitehouse.gov/presidential-actions/2025/01/removing-barriers-to-american-leadership-in-artificial-intelligence/'>Executive Order 14179 — Removing Barriers to American Leadership in AI</a> <br/>- <a href='https://www.whitehouse.gov/wp-content/uploads/2025/07/Americas-AI-Action-Plan.pdf'>America&apos;s AI Action Plan </a><br/><br/><b>Federal AI Use Case Inventories<br/></b>- <a href='https://github.com/ombegov/2025-Federal-Agency-AI-Use-Case-Inventory'>2025 Federal Agency AI Use Case Inventory (GitHub)</a> <br/>- <a href='https://swishdata.com/federal-ai-use-case-inventory/'>Federal AI Use Case Repository (Searchable) </a><br/><br/><b>AI Security Frameworks &amp; Standards<br/></b>- <a href='https://www.nist.gov/itl/ai-risk-management-framework'>NIST AI Risk Management Framework (AI RMF)</a> <br/>- <a href='https://genai.owasp.org/resource/agentic-ai-threats-and-mitigations/'>OWASP Top 10 for Agentic AI</a> <br/>- <a href='https://www.iso.org/standard/42001'>ISO/IEC 42001 — AI Management System Standard</a> <br/><br/><b>GIST360</b> <b>Webinar</b></p><p>- <a href='https://gist360.swishdata.com/adopting-intelligent-and-autonomous-zero-trust-approaches'>Securing AI at Scale: Adopting Intelligent and Autonomous Zero Trust Approaches</a> </p><p><b>Hosts</b></p><p>- <a href='https://www.swishdata.com/'>Swish</a><br/>- <a href='https://gist360.com/'>GIST360</a><br/><br/></p><p><b>CONNECT WITH US</b></p><p><b>Got an idea for a future episode? Want to be a guest? Let us know.</b></p><p><a href='https://www.linkedin.com/in/brianslake/'>Brian Lake</a> - blake@swishdata.com</p><p><a href='https://www.linkedin.com/in/seanapplegate/'>Sean Applegate</a> - sapplegate@swishdata.com<br/><br/>Subscribe wherever you get your podcasts: Apple Podcasts, Spotify, or gist360.com.</p><p><br/></p>]]></description>
    <content:encoded><![CDATA[<p>There&apos;s a workforce inside your agency that nobody hired, no one trained, and nobody is watching. We&apos;re talking about AI agents. In Episode 2 of The GIST of Govt IT, Brian and Sean sit down with Elad Schulman, CEO and co-founder of Lasso Security, to unpack what it actually takes to secure an agentic federal enterprise that seemed to arrive on the scene overnight. They dig into AI sprawl, the new attack surface created by autonomous agents, and why traditional security playbooks don&apos;t work when the system you&apos;re defending is non-deterministic. Elad shares why &quot;intent security&quot; is the new frontier, how agentic red teaming finds vulnerabilities a hundred humans never would, and what happens when an agent goes rogue (hint: it doesn&apos;t have to be malicious to cause real damage). Also, what it takes for innovative non-traditional vendors to actually move at the speed the federal government now demands. Finally, if you task an AI agent to keep your house clean, you better make sure to instruct it not to kill your family. <br/><br/>----------<br/><br/><b>RESOURCES MENTIONED IN THIS EPISODE<br/></b><br/><b>Featured Guest<br/></b>- <a href='https://www.linkedin.com/in/eschulman/'>Elad Schulman, CEO &amp; Co-Founder, Lasso Security </a><br/>- <a href='https://www.lasso.security/'>Lasso Security</a> <br/>- <a href='https://www.lasso.security/resources/intent-deputy-ai-agent-security'>Lasso Intent Security for AI Agents</a><br/><br/><b>OMB Memos &amp; Executive Orders on Federal AI<br/></b>- <a href='https://www.whitehouse.gov/wp-content/uploads/2025/02/M-25-21-Accelerating-Federal-Use-of-AI-through-Innovation-Governance-and-Public-Trust.pdf'>OMB M-25-21 — Accelerating Federal Use of AI through Innovation, Governance, and Public Trust</a> <br/>- <a href='https://www.whitehouse.gov/wp-content/uploads/2025/02/M-25-22-Driving-Efficient-Acquisition-of-Artificial-Intelligence-in-Government.pdf'>OMB M-25-22 — Driving Efficient Acquisition of Artificial Intelligence in Government </a><br/>- <a href='https://www.whitehouse.gov/presidential-actions/2025/01/removing-barriers-to-american-leadership-in-artificial-intelligence/'>Executive Order 14179 — Removing Barriers to American Leadership in AI</a> <br/>- <a href='https://www.whitehouse.gov/wp-content/uploads/2025/07/Americas-AI-Action-Plan.pdf'>America&apos;s AI Action Plan </a><br/><br/><b>Federal AI Use Case Inventories<br/></b>- <a href='https://github.com/ombegov/2025-Federal-Agency-AI-Use-Case-Inventory'>2025 Federal Agency AI Use Case Inventory (GitHub)</a> <br/>- <a href='https://swishdata.com/federal-ai-use-case-inventory/'>Federal AI Use Case Repository (Searchable) </a><br/><br/><b>AI Security Frameworks &amp; Standards<br/></b>- <a href='https://www.nist.gov/itl/ai-risk-management-framework'>NIST AI Risk Management Framework (AI RMF)</a> <br/>- <a href='https://genai.owasp.org/resource/agentic-ai-threats-and-mitigations/'>OWASP Top 10 for Agentic AI</a> <br/>- <a href='https://www.iso.org/standard/42001'>ISO/IEC 42001 — AI Management System Standard</a> <br/><br/><b>GIST360</b> <b>Webinar</b></p><p>- <a href='https://gist360.swishdata.com/adopting-intelligent-and-autonomous-zero-trust-approaches'>Securing AI at Scale: Adopting Intelligent and Autonomous Zero Trust Approaches</a> </p><p><b>Hosts</b></p><p>- <a href='https://www.swishdata.com/'>Swish</a><br/>- <a href='https://gist360.com/'>GIST360</a><br/><br/></p><p><b>CONNECT WITH US</b></p><p><b>Got an idea for a future episode? Want to be a guest? Let us know.</b></p><p><a href='https://www.linkedin.com/in/brianslake/'>Brian Lake</a> - blake@swishdata.com</p><p><a href='https://www.linkedin.com/in/seanapplegate/'>Sean Applegate</a> - sapplegate@swishdata.com<br/><br/>Subscribe wherever you get your podcasts: Apple Podcasts, Spotify, or gist360.com.</p><p><br/></p>]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2616250/episodes/19160270-fighting-fire-with-fire-to-secure-federal-ai-agents.mp3" length="28729859" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/qhe45iaoeeoiij070rtu0imahagk?.jpg" />
    <itunes:author>Swish </itunes:author>
    <guid isPermaLink="false">Buzzsprout-19160270</guid>
    <pubDate>Mon, 27 Apr 2026 09:00:00 -0400</pubDate>
    <podcast:transcript url="https://www.buzzsprout.com/2616250/19160270/transcript" type="text/html" />
    <podcast:transcript url="https://www.buzzsprout.com/2616250/19160270/transcript.json" type="application/json" />
    <podcast:transcript url="https://www.buzzsprout.com/2616250/19160270/transcript.srt" type="application/x-subrip" />
    <podcast:transcript url="https://www.buzzsprout.com/2616250/19160270/transcript.vtt" type="text/vtt" />
    <podcast:soundbite startTime="915.68" duration="35.5" />
    <podcast:chapters url="https://www.buzzsprout.com/2616250/19160270/chapters.json" type="application/json" />
    <psc:chapters>
  <psc:chapter start="0:00" title="AI Agents As The New Attack Surface" />
  <psc:chapter start="1:16" title="Meet Lasso Security CEO Elad Shulman" />
  <psc:chapter start="2:49" title="Why This AI Wave Feels Different" />
  <psc:chapter start="5:58" title="Real Agent Use Cases In Federal Networks" />
  <psc:chapter start="8:09" title="Scaling Agentic AI Through FedRAMP Apps" />
  <psc:chapter start="10:02" title="Quality Problems And Why Agents Go Wrong" />
  <psc:chapter start="11:58" title="Observability And Governance For AI Sprawl" />
  <psc:chapter start="13:40" title="AI Security Framework Discovery To Runtime" />
  <psc:chapter start="16:30" title="Intent Is The New Control Plane" />
  <psc:chapter start="18:52" title="Cost Explosions Tokens And Optimization" />
  <psc:chapter start="24:32" title="Red Teaming Agents Prompt Injection And Jailbreaks" />
  <psc:chapter start="28:27" title="Bringing Startups Into Government Fast" />
  <psc:chapter start="32:27" title="Pivoting Mid Contract As Reality Changes" />
  <psc:chapter start="36:00" title="Why This Moment Pulls Everyone In" />
  <psc:chapter start="37:56" title="Instructions for the Agents " />
</psc:chapters>
    <itunes:duration>2388</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>2</itunes:episode>
    <itunes:episodeType>full</itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>Moving Ideas to Mission Outcomes </itunes:title>
    <title>Moving Ideas to Mission Outcomes </title>
    <itunes:summary><![CDATA[Sean and Brian kick off the inaugural episode of The GIST of Govt IT, and they're diving into why speed and real results are suddenly the only things that matter in federal IT, what's actually exciting in first response tech, and which consumer tech trends are about to hit the public sector harder than anyone expects. Then they turn to their big bets of 2026, where app modernization, AI, and data strategy are colliding into one massive shift, all riding on the infrastructure overhaul that's b...]]></itunes:summary>
    <description><![CDATA[<p>Sean and Brian kick off the inaugural episode of The GIST of Govt IT, and they&apos;re diving into why speed and real results are suddenly the only things that matter in federal IT, what&apos;s actually exciting in first response tech, and which consumer tech trends are about to hit the public sector harder than anyone expects. Then they turn to their big bets of 2026, where app modernization, AI, and data strategy are colliding into one massive shift, all riding on the infrastructure overhaul that&apos;s been put off for way too long. Finally, they discuss what the government is deprioritizing and deemphasizing when it comes to IT investments. Sean gets roasted about what car his wife will let him buy next. <br/>----------<br/><br/>RESOURCES MENTIONED IN THIS EPISODE<br/><br/><b>Conferences &amp; Events</b><br/>- <a href='https://gbef.tech/'>Government Business Executive Forum (GBEF)</a><br/>- <a href='https://gbef.tech/edgeces/'>EDGE@ces — GBEF&apos;s annual summit at CES</a><br/><br/><b>Government Design &amp; Modernization<br/></b>- <a href='https://americabydesign.gov'>America by Design initiative</a>  <br/>- <a href='https://ndstudio.gov'>National Design Studio</a> <br/>- J<a href='https://joegebbia.com/'>oe Gebbia — first U.S. Chief Design Officer</a> <br/>- <a href='https://www.whitehouse.gov/presidential-actions/'>Executive Order: &quot;Improving Our Nation Through Better Design&quot;</a><br/><br/><b>Industry Acquisitions Discussed<br/></b>- <a href='https://newsroom.servicenow.com/press-releases/details/2025/ServiceNow-to-acquire-Armis-to-expand-cyber-exposure-and-security-across-the-full-attack-surface-in-IT-OT-and-medical-devices-for-companies-governments-and-critical-infrastructure-worldwide/default.aspx'>ServiceNow to acquire Armis ($7.75B)</a> <br/>- <a href='https://newsroom.ibm.com/2026-03-17-ibm-completes-acquisition-of-confluent,-making-real-time-data-the-engine-of-enterprise-ai-and-agents'>IBM completes acquisition of Confluent ($11B)</a><br/><br/><b>Industry Partners &amp; Communities<br/></b>- <a href='https://atarc.org/'>ATARC — Advanced Technology Academic Research Center</a><br/>- <a href='https://atarc.org/working-groups/'>ATARC Working Groups (Zero Trust, Agentic AI, Cyber AI Convergence)</a><br/>- <a href='https://www.armis.com/'>Armis</a><br/>- <a href='https://www.dragos.com/'>Dragos — OT cybersecurity</a><br/><br/><b>OT, Cybersecurity &amp; Frameworks<br/></b>- <a href='https://www.zscaler.com/resources/security-terms-glossary/what-is-purdue-model-ics-security'>Purdue Model for ICS Security</a><br/>- <a href='https://csrc.nist.gov/pubs/sp/800/82/r3/final'>NIST SP 800-82 — Guide to Operational Technology Security</a><br/>- <a href='https://csrc.nist.gov/pubs/sp/800/53/r5/upd1/final'>NIST SP 800-53 — Security and Privacy Controls</a><br/>- <a href='https://www.cisa.gov/topics/industrial-control-systems'>CISA — Industrial Control Systems resources</a><br/>-<a href='https://www.cisa.gov/zero-trust-maturity-model'> CISA Zero Trust Maturity Model</a><br/><br/><b>Government Data &amp; Open Policy<br/></b>- <a href='https://strategy.data.gov/'>Federal Data Strategy</a><br/>- <a href='https://data.gov/'>Data.gov</a><br/><br/><b>The Hosts</b><br/>- <a href='https://www.swishdata.com/'>Swish Data</a> <br/>- <a href='https://gist360.com/'>GIST 360</a></p><p><b>CONNECT WITH US</b></p><p><b>Got an idea for a future episode? Want to be a guest? Let us know.</b></p><p><a href='https://www.linkedin.com/in/brianslake/'>Brian Lake</a> - blake@swishdata.com</p><p><a href='https://www.linkedin.com/in/seanapplegate/'>Sean Applegate</a> - sapplegate@swishdata.com<br/><br/>Subscribe wherever you get your podcasts: Apple Podcasts, Spotify, or gist360.com.</p><p><br/></p>]]></description>
    <content:encoded><![CDATA[<p>Sean and Brian kick off the inaugural episode of The GIST of Govt IT, and they&apos;re diving into why speed and real results are suddenly the only things that matter in federal IT, what&apos;s actually exciting in first response tech, and which consumer tech trends are about to hit the public sector harder than anyone expects. Then they turn to their big bets of 2026, where app modernization, AI, and data strategy are colliding into one massive shift, all riding on the infrastructure overhaul that&apos;s been put off for way too long. Finally, they discuss what the government is deprioritizing and deemphasizing when it comes to IT investments. Sean gets roasted about what car his wife will let him buy next. <br/>----------<br/><br/>RESOURCES MENTIONED IN THIS EPISODE<br/><br/><b>Conferences &amp; Events</b><br/>- <a href='https://gbef.tech/'>Government Business Executive Forum (GBEF)</a><br/>- <a href='https://gbef.tech/edgeces/'>EDGE@ces — GBEF&apos;s annual summit at CES</a><br/><br/><b>Government Design &amp; Modernization<br/></b>- <a href='https://americabydesign.gov'>America by Design initiative</a>  <br/>- <a href='https://ndstudio.gov'>National Design Studio</a> <br/>- J<a href='https://joegebbia.com/'>oe Gebbia — first U.S. Chief Design Officer</a> <br/>- <a href='https://www.whitehouse.gov/presidential-actions/'>Executive Order: &quot;Improving Our Nation Through Better Design&quot;</a><br/><br/><b>Industry Acquisitions Discussed<br/></b>- <a href='https://newsroom.servicenow.com/press-releases/details/2025/ServiceNow-to-acquire-Armis-to-expand-cyber-exposure-and-security-across-the-full-attack-surface-in-IT-OT-and-medical-devices-for-companies-governments-and-critical-infrastructure-worldwide/default.aspx'>ServiceNow to acquire Armis ($7.75B)</a> <br/>- <a href='https://newsroom.ibm.com/2026-03-17-ibm-completes-acquisition-of-confluent,-making-real-time-data-the-engine-of-enterprise-ai-and-agents'>IBM completes acquisition of Confluent ($11B)</a><br/><br/><b>Industry Partners &amp; Communities<br/></b>- <a href='https://atarc.org/'>ATARC — Advanced Technology Academic Research Center</a><br/>- <a href='https://atarc.org/working-groups/'>ATARC Working Groups (Zero Trust, Agentic AI, Cyber AI Convergence)</a><br/>- <a href='https://www.armis.com/'>Armis</a><br/>- <a href='https://www.dragos.com/'>Dragos — OT cybersecurity</a><br/><br/><b>OT, Cybersecurity &amp; Frameworks<br/></b>- <a href='https://www.zscaler.com/resources/security-terms-glossary/what-is-purdue-model-ics-security'>Purdue Model for ICS Security</a><br/>- <a href='https://csrc.nist.gov/pubs/sp/800/82/r3/final'>NIST SP 800-82 — Guide to Operational Technology Security</a><br/>- <a href='https://csrc.nist.gov/pubs/sp/800/53/r5/upd1/final'>NIST SP 800-53 — Security and Privacy Controls</a><br/>- <a href='https://www.cisa.gov/topics/industrial-control-systems'>CISA — Industrial Control Systems resources</a><br/>-<a href='https://www.cisa.gov/zero-trust-maturity-model'> CISA Zero Trust Maturity Model</a><br/><br/><b>Government Data &amp; Open Policy<br/></b>- <a href='https://strategy.data.gov/'>Federal Data Strategy</a><br/>- <a href='https://data.gov/'>Data.gov</a><br/><br/><b>The Hosts</b><br/>- <a href='https://www.swishdata.com/'>Swish Data</a> <br/>- <a href='https://gist360.com/'>GIST 360</a></p><p><b>CONNECT WITH US</b></p><p><b>Got an idea for a future episode? Want to be a guest? Let us know.</b></p><p><a href='https://www.linkedin.com/in/brianslake/'>Brian Lake</a> - blake@swishdata.com</p><p><a href='https://www.linkedin.com/in/seanapplegate/'>Sean Applegate</a> - sapplegate@swishdata.com<br/><br/>Subscribe wherever you get your podcasts: Apple Podcasts, Spotify, or gist360.com.</p><p><br/></p>]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2616250/episodes/19159685-moving-ideas-to-mission-outcomes.mp3" length="27657278" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/o8mpfel5usly5tn33t1juaz659wr?.jpg" />
    <itunes:author>Swish </itunes:author>
    <guid isPermaLink="false">Buzzsprout-19159685</guid>
    <pubDate>Mon, 20 Apr 2026 15:00:00 -0400</pubDate>
    <podcast:transcript url="https://www.buzzsprout.com/2616250/19159685/transcript" type="text/html" />
    <podcast:transcript url="https://www.buzzsprout.com/2616250/19159685/transcript.json" type="application/json" />
    <podcast:transcript url="https://www.buzzsprout.com/2616250/19159685/transcript.srt" type="application/x-subrip" />
    <podcast:transcript url="https://www.buzzsprout.com/2616250/19159685/transcript.vtt" type="text/vtt" />
    <podcast:soundbite startTime="353.043" duration="17.5" />
    <podcast:chapters url="https://www.buzzsprout.com/2616250/19159685/chapters.json" type="application/json" />
    <psc:chapters>
  <psc:chapter start="0:00" title="Introduction to the Podcast and Hosts" />
  <psc:chapter start="3:06" title="The Importance of Community in Government Technology" />
  <psc:chapter start="6:07" title="Key Themes from GBEF Conference" />
  <psc:chapter start="9:12" title="Innovations in First Response Technology" />
  <psc:chapter start="12:11" title="Consumer Technology Trends from CES" />
  <psc:chapter start="14:54" title="Federal IT Predictions for 2026" />
  <psc:chapter start="17:54" title="The Role of AI in Application Modernization" />
  <psc:chapter start="20:59" title="Data Integration as a National Asset" />
  <psc:chapter start="24:13" title="Operational Technology and Infrastructure Modernization" />
  <psc:chapter start="27:05" title="Acquisitions and Consolidation in the OT Space" />
  <psc:chapter start="30:01" title="Deprioritization of Certain Government Initiatives" />
</psc:chapters>
    <itunes:duration>2297</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>1</itunes:episode>
    <itunes:episodeType>full</itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
</channel>
</rss>
