Reboot of Strategy – Back to first principles with Rick Howard
Listen this Threat Talk on
Reboot of Strategy
Back to first principles with Rick Howard
I think, therefore I am, is René Descartes’ first principle. But how does that relate to cybersecurity?
In this episode of Threat Talks, host Lieuwe Jan Koning is joined by Rick Howard – former Commander of the US Army’s Computer Emergency Response Team and former CSO of Palo Alto Networks – to discuss the first principle of cybersecurity.
❓What’s the difference between cybersecurity strategy and tactics?
❓How come some random geezers are better at cybersecurity forecasting than industry pros?
❓Is resilience the ultimate cybersecurity strategy?
❓Why does Rick Howard think Zero Trust is a passive strategy?
And for the book lovers amongst us – over 500 cybersecurity books are published each year. Wanna know which are worth your time?
Rick Howard’s Cybersecurity Canon has got you covered: https://icdt.osu.edu/about-cybersecurity-canon
Explore todays hacks in detail
Find a complete overview of all attacks featured in 2025.
Your cybersecurity experts
Lieuwe Jan Koning
Co-Founder and CTO
ON2IT
Rick Howard
President
Cybersecurity Canon Project
Episode details
If you could reboot your prolific cybersecurity career, what would you do different?
Cybersecurity professionals love frameworks, models, and risk scores—but do precise, deterministic models actually improve forecasting? Or are we better off relying on educated guesses?
Enter Rick Howard, a cybersecurity heavyweight whose past roles include Commander of the US Army’s Computer Emergency Response Team and CSO of Palo Alto Networks. He joins host Lieuwe Jan Koning for this episode of Threat Talks to discuss:
- The crucial difference between strategy and tactics
- How Socrates and Descartes’ first principles relate to cybersecurity
- The surprising fact that some amateur forecasters outperform industry professionals in cybersecurity predictions
- The debate over resilience—is it the one cybersecurity strategy that matters?
Plus, as the founder of the Cybersecurity Canon, Rick explains how this nonprofit rates the over 500 cybersecurity books that are published each year; and how a surprising number of those books end up on the ‘do not read’ list.
Get your Hacker T-shirt
Join the treasure hunt!
Find the code within this episode and receive your own hacker t-shirt for free.
