
GCS CEO David Bloxham sits down with Ian Hill, Director of Information & Cyber Security (CISO) at Blockmoor, for a candid, practical conversation on AI risk, incident response, federated security, and the realities of defending at scale. From dark web RaaS models and data leakage to board conversations and right sizing controls, this episode breaks down what You and Your team can do now.
What you’ll learn
•How attackers operate today: dark web marketplaces, RaaS, deepfakes, automation
•Federated security: why security is everyone’s responsibility across the business
•Incident response in practice: calm leadership, containment, and controlled recovery
•IAM as a business problem: roles, data ownership, and process over tools
•Supply chain and MSP risk: due diligence, visibility, and enforcement challenges
•Making budgets land: framing security as value protection for CFOs
•Avoiding “cyber bling”: get more from the tools you already own
•Future outlook: AI driven threats, hybrid warfare, and resilience
Timestamps
00:00 Cold open: Major attacks, dark web forums, and RaaS
00:38 Host intro: David Bloxham welcomes Ian Hill (CISO, Blockmoor)
02:25 Weather chat and a “no complaining” 7 day challenge
05:17 Ian’s path into cyber: 90s ISP to global CISO and advisor
12:10 Industry collaboration: construction vs. insurance info sharing
16:56 How threat actors work: industrialized crime and support models
19:52 Breach transparency, rumor mills, and lessons for retail
23:05 Critical infrastructure and resilience: food supply risk
26:58 Cyber Resilience Bill, MSP focus, and enforcement realities
30:30 The evolving CISO role and federated security model
34:22 Strategy vs. tactics: 10 point plan and SAPS mindset
38:10 Leadership growth: trust over micromanagement
41:35 IAM done right: business process before tech
46:18 Incident response mindset: Sunday 12:30 a.m. calls
50:40 Know your environment: assets, data maps, lateral movement
54:12 Segregation, PII, GDPR reporting—containment that works
57:06 Calm under pressure: controlled recovery vs. quick wins
1:00:45 Board/CFO conversations: security protects value
1:05:02 Maximize existing tools; avoiding “cyber bling”
1:09:08 Right sizing controls by industry and risk
1:12:20 The road ahead: AI threats, hybrid warfare, resilience
1:16:05 Closing thoughts and where to learn more
Subscribe for weekly conversations with leaders across cyber, AI, cloud, and data.
Like, comment, and share Your takeaways.