Techzine TV podcast
In the Techzine TV podcast we analyze B2B IT solutions, strategies, and trends. IT companies are happy to invite us to talk about what they are working on and what they are going to bring to market. We visit them all around the world, and in some cases, they visit us in our office.
We have a good understanding of how technologies work, or how they should work. We also hear a lot from the market about what companies need or where things go wrong. This gives us the ability to have really in-depth conversations on technology, strategies, and products, but we always try to keep it practical and easy to understand.
We explain innovations, interpret new IT concepts, and use practical examples to make complex technology understandable for everyone. Where necessary, we bring in experts to clarify matters further. The goal is to help IT professionals, decision makers, and other listeners better understand IT developments, but also to help them in their search for new solutions for their business and not get stuck on buzzwords and one-liners.
The Techzine TV podcast is an evolution of the previous Techzine Talks on Tour series. We still bring a lot of conversations and interviews from events to this series. We record so many video interviews nowadays, so we can select the best ones for this podcast series.
The topics still vary greatly, as Coen and Sander attend a total of 50 to 60 events each year, ranging from open-source events like KubeCon to events hosted by Cisco, IBM, Salesforce and ServiceNow, to name only a few. With a lot of experience in many walks of IT life, Coen and Sander always manage to produce an engaging, in-depth discussion on general trends, but also on technology itself.
So follow the Techzine TV podcast and stay in the know. We might just tell you a thing or two you didn't know yet, but which might be very important for your next project or for your organization in general. Stay tuned and follow Techzine TV.
Techzine TV podcast
Risk operations: moving beyond vulnerability whack-a-mole
Alex Kreilein, VP of Product Security at Qualys, discusses the shift from vulnerability management to risk operations at the company's Risk Operations Conference (ROCon). He explains why focusing solely on vulnerability counts misses the point and how organizations can achieve better security outcomes through risk-based approaches.
Kreilein breaks down the practical challenges of the concept of the SBOM (Software Bill of Materials), introducing VEX (Vulnerability Exploitability Exchange) as the missing piece for effective vulnerability communication. He shares insights on developer friction points, the real reasons for vulnerability debt, and why test efficacy matters more than compliance checkboxes.
Key takeaways:
• Why risk operations differs fundamentally from vulnerability management
• How SBOMs become actionable with VEX status messages (affected, not affected, under investigation, fixed)
• The hidden cost of technical debt and fragile applications
• Real-world approaches to secure by design and developer productivity
• How agentic AI can help security teams focus on strategic outcomes
• Why compliance is a floor, not a ceiling for security
0:07 - Introduction to Qualys RiskOps Conference
0:33 - Understanding risk versus vulnerabilities
2:21 - The role of VP Product Security
3:03 - Software bills of materials explained
9:08 - VEX for vulnerability communication
10:51 - Agentic AI in security
13:38 - Building secure protocols
15:58 - Developer challenges with security