Season 6

Trust but Verify Isn't Enough in the Age of AI
MSP 1337 | Cybersecurity Education & Security GuidanceSeptember 08, 2026x
36
00:30:2028.08 MB

Trust but Verify Isn't Enough in the Age of AI

Every vendor has an AI roadmap. Every client has employees experimenting with AI. And increasingly, MSPs are building their own AI solutions. The challenge is that few organizations fully understand the risks that accompany this rapid adoption. In this episode of MSP 1337, Chris Johnson and Jim Harr...

Your Backup Plan Isn't a Recovery Plan
MSP 1337 | Cybersecurity Education & Security GuidanceSeptember 02, 2026x
35
00:26:3924.67 MB

Your Backup Plan Isn't a Recovery Plan

Many MSPs and businesses believe they're prepared for an outage because they have backups, redundant internet connections, or cloud-based applications. In reality, most recovery strategies fall apart when tested in real-world scenarios. In this episode of MSP 1337, Chris Johnson sits down with Charl...

Stop Waiting. Start Securing.

Stop Waiting. Start Securing.

Most MSPs don't have a compliance problem. They have a starting problem. Michael Zbarsky of Blacksmith InfoSec joins MSP1337 to challenge some of the biggest misconceptions surrounding compliance, security frameworks, and cybersecurity maturity. From the GTIA Cybersecurity Trustmark and CMMC to evid...

Why ITSPs Must Lead With AI Governance

Why ITSPs Must Lead With AI Governance

The MSP market is changing fast. Clients can buy technology anywhere, automate routine tasks, and access powerful AI tools with just a few clicks. The real question is no longer what technology you sell. It's whether you can help clients manage the business risks that technology creates. This we...

Specialize, Scale, Succeed: The Future of MSP Growth with MJ Patent

Specialize, Scale, Succeed: The Future of MSP Growth with MJ Patent

In this episode, Chris sits down with MJ Patent to explore the foundational principles that help Managed Service Providers grow, mature, and thrive in today's increasingly complex IT and cybersecurity landscape. Drawing from her extensive experience working with service providers of all sizes, MJ ex...

The Human Side of Risk Isn't Human Error

The Human Side of Risk Isn't Human Error

Human risk has become one of the most challenging and misunderstood aspects of cybersecurity. In this episode of MSP 1337, Chris Johnson sits down with Nihil Morjaria from usecure to explore why traditional security awareness training is no longer enough and what it takes to build a truly proactive ...

The Foundation Beneath Good Cybersecurity

The Foundation Beneath Good Cybersecurity

In this episode of MSP 1337, episode 300, Chris Johnson sits down with Matt Lee for a candid fireside chat on one of the most misunderstood topics in business and cybersecurity: governance. Using relatable examples, from concrete truck deliveries to vacuuming a floor, Matt breaks down why governance...

Cybersecurity Has A Noise Problem

Cybersecurity Has A Noise Problem

Most organizations don't have a security tool problem, they have a signal-to-noise problem. Chris and Tatum Treadwell dive into the realities of securing decades-old technologies against modern attackers, the rise of AI-enhanced social engineering, and the growing challenge of alert fatigue. The...

Your Phone is the Weakest Link

Your Phone is the Weakest Link

Everyone talks about email phishing, ransomware, and endpoint security, but one of the most dangerous attack vectors is sitting in your pocket. In this episode of MSP1337, Chris Johnson sits down with Mark Kreitzman of Efani to expose the growing threat of SIM swapping, mobile account takeovers, and...

Measuring What Matters in Cybersecurity Maturity

Measuring What Matters in Cybersecurity Maturity

The cybersecurity industry loves to sell tools. What it rarely talks about is the hard work required to make those tools effective. In this episode, Jim Harryman joins Chris to challenge the idea that technology alone creates security. They discuss why mature organizations focus on governance, accou...

Your Passport Isn’t the Problem, Your Security Habits Are

Your Passport Isn’t the Problem, Your Security Habits Are

Planes, hotels, and conference stages aren’t what put you at risk, it’s what you bring with you. In this episode, Dawn Sizer of 3rd Element dives into the real reasons traveling professionals become easy targets: weak policies, poor communication, unsecured devices, and total blind spots around pers...

From Reactive Security to Continuous Intelligence

From Reactive Security to Continuous Intelligence

This episode explores how cybersecurity is evolving from point-in-time assessments to continuous, intelligence-driven operations. Galina Kho of Cyberbay shares how predictive analytics, crowdsourced ethical hackers, and AI are reshaping how organizations understand and manage risk. We discuss how to...

Taking Advantage of GTIA Resources for Lasting Business Impact

Taking Advantage of GTIA Resources for Lasting Business Impact

In this special episode of MSP 1337, CJ is joined by Brooke Lee (Rev.io) and Stacey Whitley (GTIA) to unpack how ITSPs can translate industry engagement into measurable outcomes. Attending events is easy, but most organizations struggle to turn what they learn into real operational outcomes. Brooke ...

Simplifying Risk Assessments for Real Cybersecurity Impact

Simplifying Risk Assessments for Real Cybersecurity Impact

In this episode, Josh Hohbein of CentrexIT breaks down a practical, MSP-centric approach to risk assessments that moves beyond complex, consultant-driven reports and toward clear, actionable business outcomes. He shares how combining vulnerability scans, client interviews, and system configuration r...

Vulnpocalypse Isn’t Coming, It’s Already Breaking Your Patch Cycle

Vulnpocalypse Isn’t Coming, It’s Already Breaking Your Patch Cycle

In this MSP1337 fireside chat, you and Matt Lee unpack the idea of a “vulnpocalypse”, a rapidly emerging reality in which AI-driven tools are accelerating vulnerability discovery at a pace organizations can't keep up with. While much of the industry is focused on the fear and hype, the conversat...

Governance, Risk, Compliance (GRC), and the MSP Wake-up Call

Governance, Risk, Compliance (GRC), and the MSP Wake-up Call

In this episode, Chris Johnson sits down with Eric Shoemaker of Genius GRC to unpack one of the most misunderstood shifts in the MSP space: the move from tool-driven cybersecurity to standards-aligned governance, risk, and compliance programs. Eric explains why Genius GRC isn’t a software platform a...

The New Reality for MSP Security Operations Center Services

The New Reality for MSP Security Operations Center Services

In this episode of MSP1337 , Chris Johnson is joined by Jeff Majka, founder of Security Bulldog, to unpack why MSP‑delivered SOC services are at a breaking point, and how AI and automation are forcing a reset. They explore why traditional tiered SOC models and white‑label thinking no longer scale, h...

Guardrails, Drift, and Evidence: Cybersecurity Maturity is Continuous Improvements

Guardrails, Drift, and Evidence: Cybersecurity Maturity is Continuous Improvements

Chris Johnson sits down with Ido Green of Espresso Labs to explore how AI and local agents can reduce cybersecurity noise, offload Level 1 work, and continuously enforce compliance, without losing human control. They discuss guardrails for safe automation, multi-vendor telemetry, drift detection, ev...

Selling Cybersecurity to Skeptical Clients and Prospects

Selling Cybersecurity to Skeptical Clients and Prospects

A sit-down with Hamid Ganadan, author of “Not Buying It: The Art of Selling to Scientists, Doctors, and Other Professional Skeptics,” on how MSPs can sell to skeptical, highly educated buyers. This is an exploration of the psychology of decision-making, shifting prospects from skepticism to curiosit...

Compliance is the floor, not the ceiling

Compliance is the floor, not the ceiling

In this episode of MSP 1337 , Chris Johnson sits down with Jim Harryman to break down why passing audits doesn’t equal real security, and why MSPs get into trouble when frameworks turn into checklists. Drawing from firsthand experience with SOC 2 Type 2, CIS Controls, and the GTIA Cybersecurity Trus...