Security and Compliance Blog
Learn security strategies, compare vendors, and implement best practices to prevent breaches and compliance violations from risky third party communications.
Posts by Patrick Spencer

Patrick Spencer, Senior Vice President, Americas Marketing & Industry Research, Kiteworks
Patrick is charged with building thought leadership and communications programs that increase brand awareness and engagement and propel lead-generation programs. He has nearly two decades of experience in various senior marketing roles within cybersecurity at Contrast Security, Fortinet, and Symantec.
He holds a doctorate from the University of Durham and two masters and a bachelor’s degree from Abilene Christian University.
BadBone and the AI Supply Chain: When the Model Itself Is the Risk
AI Coding Tools Are Now a Supply Chain Attack Surface
Monitoring AI Behavior Is Not the Same as Governing It
Authentication Gets You In. Governance Determines the Damage.
AI Agent Security: The Lethal Trifecta Explained
When the Guardrail Fails: AI Coding Tools and the Data-Layer Question
The AI Security Paradox: Same Technology, Opposite Verdicts
When Your Vector Database Hands Out Pre-Auth RCE, RAG Has a Data-Layer Problem
Internal Data Is the #1 Stolen Asset. Your Employees Are Exporting It Voluntarily.
When the Vendor Is the Breach: Why the 60% Surge in Third-Party Compromise Demands a Control Plane
Vulnerability Exploitation Just Overtook Credentials. The Patch Model Is Quietly Failing.
Synack 2026 Report: The Exploit Window Has Narrowed to Hours
When AI Agents Ship Insecure by Default: The PraisonAI Lesson Every CISO Needs to Read