
Cloud Security Podcast by Google EP274 AI, Zero Trust and Secure by Design Walk into a Bar...
Apr 27, 2026
Grant Dasher, Distinguished Engineer and former CISA leader, explains secure-by-design, why bolted-on security fails, and how identity becomes the new perimeter for AI and agents. He explores agent identities, delegation, and practical steps for fast AI adoption. Short, clear takes on Zero Trust and architecting systems for agentic futures.
AI Snips
Chapters
Books
Transcript
Episode notes
Secure By Design Is An Engineering Mindset
- Secure by Design treats security as an engineering property, not just an operational add-on.
- Grant Dasher compares it to designing bridges and pacemakers, applying constraints to reduce attacker success and increase reliability.
Don't Rely On Spray On Security
- Question whether a vendor 'spray-on' product actually solves your real problem and which layer it belongs in.
- Grant Dasher urges CIOs to change demand calculus so vendors must build composable, securely usable products.
Box Agentic Systems With Deterministic Guardrails
- Bound AI systems in deterministic boxes and limit their permissions to reduce collateral damage.
- Use policy, identity and scoped permissions so agents can't e.g. delete databases or mutate systems unexpectedly.

