What is the intersection of AI and compliance? What about Machine Learning? Are you using ChatGPT? These questions are just three of the many we will explore in this cutting-edge podcast series, Compliance and AI, hosted by Tom Fox, the award-winning Voice of Compliance. In this episode, host Tom Fox visits Brian Holyfield, Chief Product Officer at SendSafely.
Holyfield is the co-founder and Chief Product Officer at SendSafely, where his background in ethical hacking and real-world security testing shapes a practical view of cybersecurity. He believes compliance should reflect how breaches actually happen, especially through vendors and service providers, which means organizations must look beyond their own perimeter. For him, data minimization and retention controls are essential: companies should keep only the data they truly need, delete unnecessary copies, and limit where sensitive information lives. Holyfield also stresses blast radius reduction, arguing that the best defense is to assume a breach will occur and design systems so attackers can access as little data as possible for as short a time as possible.
Key Highlights
- Preventive AI governance through data minimization
- Deliberate configuration choices that shrink breach blast radius
- Aging Out Data Into Secure Backend Archives
- Native end-to-end encrypted storage for regulated attachments
- Trust Layer for End-to-End Encrypted Regulated Data
Resources
Brian Holyfield on LinkedIn
Tom Fox