Chris Schueler is helping large, complex organizations rethink cybersecurity for an AI-accelerated threat environment. At Cyderes, Chris leads a pure-play cybersecurity company focused on managed security, transformation, operations, identity, non-human identity, and proactive threat defense. Cyderes recently won a Fortress Cybersecurity Award, with Chris recognized as an executive leadership winner.
In this episode, Russ and Chris discuss how his early military experience building one of the first Army security operations centers still shapes how he builds security teams today. Chris explains why trust, buy-in, autonomy, and execution matter when security teams need authority to act quickly across complex environments.
The conversation also explores Cyderes’ Meridian platform and how it connects traditional cyber threat data with identity and non-human identity signals that are often siloed across technology stacks. Chris explains why the future of security depends not just on reacting faster, but on stitching together context so organizations can prevent threats before they spread.
Russ and Chris also discuss why the old mindset of “not if, but when” can become an excuse. Chris argues that security leaders need to keep turning over every stone, especially around identity, access, blast radius, and non-human users. As AI compresses the time between vulnerability discovery and exploitation, security operations need to move from hours to minutes.
The episode also covers agentic SOCs, zero trust, third-party risk, patching, unpatchable vulnerabilities, privileged access, dynamic recertification, budget pressure, AI-driven efficiency, and why thought leadership may now be the real barrier to building better cybersecurity systems.
Topics Covered:
[00:00] Welcome and intro, Chris Schueler and Cyderes
[01:00] What Cyderes does as a pure-play cybersecurity company
[01:30] Meridian and connecting threat data with identity signals
[02:11] Chris’s Army background and building an early SOC
[02:27] Bringing network operations and incident response together
[03:30] Why trust is earned in drops and lost in buckets
[05:15] Opportunity spotting in military versus enterprise environments
[05:54] Public sector speed, private sector speed, and different stakes
[08:52] Building analyst-recognized cybersecurity companies
[09:05] Staying aligned with customers and the direction of the market
[11:27] How Chris thinks about future-looking strategy
[13:36] Why “not if, but when” can become an excuse
[14:16] Turning over every stone again and again
[15:30] Why identity is becoming central again
[16:27] AI adversaries and compressed attack timelines
[16:54] Breakout time dropping from 61 minutes to 25 minutes
[17:52] What SOCs need to do in minutes
[18:30] Reducing blast radius before attacks happen
[20:10] Stitching telemetry together across silos
[20:40] Moving toward pre-crime security
[21:12] Massive patches, zero days, and proactive defense
[21:53] Why some vulnerabilities may be unpatchable
[23:00] Third-party breaches and shared business risk
[23:50] Why patching still matters
[24:42] Access rights, copy-paste permissions, and just-in-time controls
[25:37] Using existing controls better instead of adding more tools
[25:54] Questions CISOs should be asking now
[26:19] Budget pressure during AI investment cycles
[27:30] Data exposure fears around frontier models
[28:44] Using AI to do more, not just spend less
[29:22] Why building is easier when vision is clear
[30:02] Final thoughts on service, leadership, and cybersecurity’s future
Chris Schueler on Cyderes, Meridian, and Proactive Cyber Defense
August 11, 2026









