Security and Compliance Blog
Learn security strategies, compare vendors, and implement best practices to prevent breaches and compliance violations from risky third party communications.
Posts by Patrick Spencer

Patrick Spencer, Senior Vice President, Americas Marketing & Industry Research, Kiteworks
Patrick is charged with building thought leadership and communications programs that increase brand awareness and engagement and propel lead-generation programs. He has nearly two decades of experience in various senior marketing roles within cybersecurity at Contrast Security, Fortinet, and Symantec.
He holds a doctorate from the University of Durham and two masters and a bachelor’s degree from Abilene Christian University.
Third-Party Vendor Data Breaches Are Now the Top Legal Liability Vector for General Counsel
The Amazon One Medical Breach: When Third-Party File Storage Becomes a PHI Liability
Microsoft 365 Copilot SearchLeak (CVE-2026-42824): When Your AI Assistant Becomes an Exfiltration Tool
OpenAI Lockdown Mode Is a Warning, Not a Solution
145 AI Laws Were Passed in 2025. Privacy Teams Are Not Catching a Break.
Microsoft Named 7 Ways Your AI Agents Can Be Hacked. One Is Already Happening in Production.
OWASP Agent Memory Guard: Stop AI Agents from Being Weaponized Through Their Own Memory
OpenAI Codex Authentication Tokens Stolen in npm Supply Chain Attack
How to Govern Shadow AI Without Killing Innovation
92% of Security Professionals Are Worried About AI Agents. The Data Shows Why.
BadBone and the AI Supply Chain: When the Model Itself Is the Risk
AI Coding Tools Are Now a Supply Chain Attack Surface
Monitoring AI Behavior Is Not the Same as Governing It