How Secure by Design and Public Partnerships Drive Deterrence: A Conversation with Jen Easterly

SANS Institute
SANS InstituteMar 20, 2026

Why It Matters

Easterly’s experience demonstrates that secure‑by‑design technology and robust public‑private collaboration are essential for national cyber deterrence, offering a roadmap for organizations seeking resilient defenses in an increasingly contested digital arena.

Key Takeaways

  • Jen Easterly built Iraq’s real‑time data platform saving lives.
  • She helped launch the Army’s first cyber operations battalion.
  • Easterly co‑created U.S. Cyber Command after Russian hack alert.
  • Now leads the National Cybersecurity and Communications Agency and RSAC.
  • Emphasizes public‑private partnerships and secure‑by‑design principles for national resilience.

Summary

The podcast features a deep‑dive conversation with Jen Easterly, former Army lieutenant colonel and current chief executive of the RSA Conference, about how secure‑by‑design engineering and public‑private partnerships shape U.S. cyber deterrence.

Easterly recounts her early immersion in cyber while deployed to Iraq, where she helped build the Real‑Time Regional Gateway—a data‑fusion platform that turned raw battlefield intel into actionable insights, ultimately saving thousands of lives. She later stood up the Army’s first cyber operations battalion and, as part of a small team, drafted the mission, vision, and structure of the newly created U.S. Cyber Command after a Russian intrusion dubbed Operation Buckshot Yankee.

Memorable moments include a phone call from a Navy captain ordering her to a secret office, the frantic coding sessions in a Baghdad van, and the declassified story of how early AI techniques were used to map insurgent networks. Easterly also highlights her tenure as the second director of the National Cybersecurity and Communications Agency (NCC), where she championed secure‑by‑design standards and forged critical ties with industry leaders.

The discussion underscores that modern cyber deterrence relies on resilient, architected systems and continuous collaboration between government, academia, and the private sector. For CISOs and security leaders, Easterly’s career illustrates the strategic value of integrating offensive insights, defensive rigor, and cross‑sector partnerships to protect critical infrastructure and maintain strategic advantage.

Original Description

In this episode, Ciaran and James are joined by cyber policy and practices leader Jen Easterly. Together they discuss the power of storytelling in cybersecurity, the evolution of cyber as a tool of state power, and why Secure by Design is critical to improving the security of the technologies we rely on
Contact:
Have questions or comments? Email us at ciso-network@sans.org (mailto:ciso-network@sans.org)

Comments

Want to join the conversation?

Loading comments...