Improv in Cybersecurity and Stopping People Pleaser AI | Unhack the Podcast with David Finn
Episode Description
June 31, 2026: David Finn has watched health IT security evolve from a compliance checkbox to an enterprise risk conversation, and now into an AI agentic era that's rewriting the rules again. Now teaching courses and advising across the industry, he unpacks what the recent OpenAI and Hugging Face breaches really exposed, and it wasn't a technology failure. It was a governance failure. David draws on decades of building security programs, including a stint as an "accidental CIO," to explain why healthcare keeps solving the wrong problem, why third-party risk is still underestimated, and why AI agents need constant behavioral monitoring instead of one-time guardrails.
Key Points:
04:42 Governance Over Controls
10:43 Pace Change: Get It Right
16:12 Third Party Risk Reality
20:34 Start With Executives
22:39 AI Jobs Policies Monitoring
37:56 Guardrails to Behavior Monitoring
Keep up to date on the latest in health IT:
https://thisweekhealth.com/news/
Donate: Alex’s Lemonade Stand: Foundation for Childhood Cancer











