Skip to main content

What does hospital downtime teach us about building AI-native organizations?

27 авг. 2026 г. · 21 min

Featured guest

Zach Evans

Zach Evans

Chief Technology Officer · Xsolis

Hosts

Johnny Hand

Johnny Hand

Global CISO · TrendAI™

Dustin Childs

Dustin Childs

Head of Threat Awareness · ZDI

PortableText [components.type] is missing "span"

AI Security Brief Episode 10 with guest Zach Evans

About the episode

Is your organization truly AI native, or did you just bolt AI onto existing infrastructure? Your answer could indicate how much risk you’re carrying without realizing it. Zach Evans, Chief Technology Officer at Xsolis, has a simple test for telling the difference: strip out the AI and see if your process still works. If it does, you may be exposing your organization to security blind spots and workflows that quietly erode organizational knowledge and skills.

What you'll learn
  • What makes an organization truly AI-native and why it matters
  • How to design security, redundancy, and access controls into AI workflows from the start
  • Why you should onboard AI agents like a new hire
  • How to assess MCP servers as third-party vendors
  • Why both technical redundancy and having people who can still perform critical work manually can’t be an afterthought

Episode chapters

  • 00:00 — The new risks of AI
  • 01:53 — What does it really mean to be AI native?
  • 03:40 — Breaking down data silos in healthcare
  • 05:17 — Where agentic AI can deliver real value
  • 07:16 — Automation vs. autonomous agents
  • 10:11 — Why MCP servers are an emerging attack surface
  • 12:21 — Preparing for AI downtime in high-stakes environments
  • 14:22 — What The Pitt gets right about hospital downtime
  • 15:42 — Why security must be involved from the start
  • 17:24 — Key takeaways from the conversation

"Security is going to have to have a seat at the table from the very first design session."

— Zach Evans, Chief Technology Officer, Xsolis

Hosts

Johnny Hand

As the Global CISO for TrendAI™ and veteran of enterprise security, Johnny brings a security leader’s lens to every conversation, separating exploitable risk from theoretical noise. Johnny is the person you want explaining AI-era threats before your board asks about them.

Johnny Hand
Dustin Childs

Dustin Childs

As Head of Threat Awareness for the TrendAI™ Zero Day Initiative (ZDI), Dustin brings a vulnerability researcher's eye to the AI security conversation. He’s dedicated to making sure the industry understands exploit development before it becomes a crisis.

More episodes

  • AI Security Brief Episode 9 with guest Tom Kellermann

    Episode 9 · 13 авг. 2026 г.

    What do AI-driven ‘bank heist’ attacks mean for defenders?

    Attackers aren't just using AI to steal data; they're using it to fight back while you investigate them in real time. And once an adversary is inside, why would they ever want to leave?

  • AI Security Brief Episode 8 with guest Mark Houpt

    Episode 8 · 30 июл. 2026 г.

    Is AI security actually a physical problem?

    While AI might seem abstract, something that lives in "the cloud" is concrete. The AI applications we use every day run on GPUs in physical buildings, and Mark Houpt secures them.

  • AI Security Brief Episode 7 with guest Sundari Parekh

    Episode 7 · 16 июл. 2026 г.

    Who governs your AI agents?

    Your team spent a decade maturing privileged access management. Then AI agents arrived and they don’t log in like humans.

  • AI Security Brief Episode 6 with guest Rob Bair

    Episode 6 · 2 июл. 2026 г.

    Is the next frontier model your biggest threat or your best defender?

    If you think the recent wave of AI-discovered vulnerabilities is a problem, Rob Bair of Anthropic has a reframe for you.

  • AI Security Brief Episode 5 with guest Valentina Palmiotti

    Episode 5 · 18 июн. 2026 г.

    Can agentic AI really find zero-days? Ask the hacker who won Pwn2Own Berlin 2026

    At Pwn2Own Berlin 2026, a security researcher used agentic AI to help her win. The AI surfaced real, verified bugs, then wrongly called her winning bug “not unexploitable in practice.”

  • AI Security Brief Episode 4 with guest Dr. Grace Trinidad

    Episode 4 · 4 июн. 2026 г.

    Is your enterprise AI strategy delivering ROI yet?

    Your enterprise AI strategy isn’t as far along as you think. The reality for most organizations today is that AI is disrupting existing processes more than it’s delivering outcomes… so far.