Accelerate your SASE deployment with the SASE Week Backstage Series. Explore sessions

close
close
  • Why Netskope chevron

    Changing the way networking and security work together.

  • Our Customers chevron

    Netskope serves more than 3,400 customers worldwide including more than 30 of the Fortune 100

  • Our Partners chevron

    We partner with security leaders to help you secure your journey to the cloud.

A Leader in SSE.
Now a Leader in Single-Vendor SASE.

Learn why Netskope debuted as a leader in the 2024 Gartner® Magic Quadrant™️ for Single-Vendor Secure Access Service Edge

Get the report
Customer Visionary Spotlights

Read how innovative customers are successfully navigating today’s changing networking & security landscape through the Netskope One platform.

Get the eBook
Customer Visionary Spotlights
Netskope’s partner-centric go-to-market strategy enables our partners to maximize their growth and profitability while transforming enterprise security.

Learn about Netskope Partners
Group of diverse young professionals smiling
Your Network of Tomorrow

Plan your path toward a faster, more secure, and more resilient network designed for the applications and users that you support.

Get the white paper
Your Network of Tomorrow
Introducing the Netskope One Platform

Netskope One is a cloud-native platform that offers converged security and networking services to enable your SASE and zero trust transformation.

Learn about Netskope One
Abstract with blue lighting
Embrace a Secure Access Service Edge (SASE) architecture

Netskope NewEdge is the world’s largest, highest-performing security private cloud and provides customers with unparalleled service coverage, performance and resilience.

Learn about NewEdge
NewEdge
Netskope Cloud Exchange

The Netskope Cloud Exchange (CE) provides customers with powerful integration tools to leverage investments across their security posture.

Learn about Cloud Exchange
Aerial view of a city
The platform of the future is Netskope

Intelligent Security Service Edge (SSE), Cloud Access Security Broker (CASB), Cloud Firewall, Next Generation Secure Web Gateway (SWG), and Private Access for ZTNA built natively into a single solution to help every business on its journey to Secure Access Service Edge (SASE) architecture.

Go to Products Overview
Netskope video
Next Gen SASE Branch is hybrid — connected, secured, and automated

Netskope Next Gen SASE Branch converges Context-Aware SASE Fabric, Zero-Trust Hybrid Security, and SkopeAI-powered Cloud Orchestrator into a unified cloud offering, ushering in a fully modernized branch experience for the borderless enterprise.

Learn about Next Gen SASE Branch
People at the open space office
Designing a SASE Architecture For Dummies

Get your complimentary copy of the only guide to SASE design you’ll ever need.

Get the eBook
Make the move to market-leading cloud security services with minimal latency and high reliability.

Learn about NewEdge
Lighted highway through mountainside switchbacks
Safely enable the use of generative AI applications with application access control, real-time user coaching, and best-in-class data protection.

Learn how we secure generative AI use
Safely Enable ChatGPT and Generative AI
Zero trust solutions for SSE and SASE deployments

Learn about Zero Trust
Boat driving through open sea
Netskope achieves FedRAMP High Authorization

Choose Netskope GovCloud to accelerate your agency’s transformation.

Learn about Netskope GovCloud
Netskope GovCloud
  • Resources chevron

    Learn more about how Netskope can help you secure your journey to the cloud.

  • Blog chevron

    Learn how Netskope enables security and networking transformation through secure access service edge (SASE)

  • Events and Workshops chevron

    Stay ahead of the latest security trends and connect with your peers.

  • Security Defined chevron

    Everything you need to know in our cybersecurity encyclopedia.

Security Visionaries Podcast

The Future of Security: Quantum, AI, and Macro-political Change
Emily Wearmouth and Max Havey speak with Netskope CEO Sanjay Beri and CTO Krishna Narayanaswamy about the future of security.

Play the podcast Browse all podcasts
The Future of Security: Quantum, AI, and Macro-political Change
Latest Blogs

Read how Netskope can enable the Zero Trust and SASE journey through secure access service edge (SASE) capabilities.

Read the blog
Sunrise and cloudy sky
SASE Week 2024 On-Demand

Learn how to navigate the latest advancements in SASE and zero trust and explore how these frameworks are adapting to address cybersecurity and infrastructure challenges

Explore sessions
SASE Week 2024
What is SASE?

Learn about the future convergence of networking and security tools in today’s cloud dominant business model.

Learn about SASE
  • Company chevron

    We help you stay ahead of cloud, data, and network security challenges.

  • Careers chevron

    Join Netskope's 3,000+ amazing team members building the industry’s leading cloud-native security platform.

  • Customer Solutions chevron

    We are here for you and with you every step of the way, ensuring your success with Netskope.

  • Training and Accreditations chevron

    Netskope training will help you become a cloud security expert.

Supporting sustainability through data security

Netskope is proud to participate in Vision 2045: an initiative aimed to raise awareness on private industry’s role in sustainability.

Find out more
Supporting Sustainability Through Data Security
Help shape the future of cloud security

At Netskope, founders and leaders work shoulder-to-shoulder with their colleagues, even the most renowned experts check their egos at the door, and the best ideas win.

Join the team
Careers at Netskope
Netskope’s talented and experienced Professional Services team provides a prescriptive approach to your successful implementation.

Learn about Professional Services
Netskope Professional Services
Secure your digital transformation journey and make the most of your cloud, web, and private applications with Netskope training.

Learn about Training and Certifications
Group of young professionals working
Post Thumbnail

This episode features an interview with Rehman Khan, Director of Security Strategy Research & Design at Charles Schwab. Rehman has over 20 years of technology innovation and transformation experience in the financial, biotechnology, hospitality, and technology industries.

On this episode, Rehman shares his love for teaching the next generation of security leaders, how cloud security is changing the security landscape, and what goes into a successful security team.

Focusing on security design and making sure that the way we approach security is not just with a whole bunch of tools, we should be really stepping back and designing security into the overall organization and process.

—Rehman Khan, Director of Security Strategy Research & Design at Charles Schwab
Rehman Khan

 

Timestamps

*(1:53) - Rehman’s background
*(18:17) - A.I and cyber security
*(4:25) - Segment: Deep Dive*(22:03) - How cloud security is changing the landscape
*(7:28) - Rehman’s most/least favorite security domains
*(26:41) - Best career decisions Rehman has made
*(10:37) - Teaching the next generation of security leaders
*(30:20) - Segment: The Future
*(16:11) - How to keep up with the industry*(32:48) - Segment: Quick Hits

 

Other ways to listen:

green plus

On this episode

Rehman Khan
Director of Security Strategy Research & Design at Charles Schwab

chevron

Rehman Khan

Over the last five years, Rehman has focused on leading enterprises to public cloud services securely and enabled digital transformation initiatives. At TD Ameritrade, he leads the Cloud and Data Security team and reports to the CISO. He holds a BS in computer science and an MS in software engineering, along with CCSP and CISSP certifications. He is an Adjunct Professor at the University of Missouri Graduate Computer Science and Washington University Graduate Cyber Security programs. Khan is a University of Missouri, IS and Technology Advisory Board member. He has presented talks at RSA Conference about innovation in the cloud securely. Rehman is also an Adjunct Professor at the University of St Louis Graduate Computer Science Department Adjunct Professor at Washington University St Louis Cybersecurity Graduate Program and Speaker at the 2019 RSA conference.

Connect with Rehman on LinkedIn

Follow Rehman on Twitter

Jason Clark
Chief Strategy and Marketing Officer at Netskope

chevron

Jason Clark

Jason brings decades of experience building and executing successful strategic security programs to Netskope.

He was previously the chief security and strategy officer for Optiv, developing a comprehensive suite of solutions to help CXO executives enhance their security strategies and accelerate alignment of those strategies with the business. Prior to Optiv, Clark held a leadership role at Websense, where he was a driving force behind the company’s transformation into a provider of critical technology for chief information security officers (CISOs). In a prior role as CISO and vice president of infrastructure for Emerson Electric, Clark significantly decreased the company’s risk by developing and executing a successful security program for 140,000 employees across 1,500 locations. He was previously CISO for The New York Times, and has held security leadership and technical roles at EverBank, BB&T and the U.S. Army.

Rehman Khan

Over the last five years, Rehman has focused on leading enterprises to public cloud services securely and enabled digital transformation initiatives. At TD Ameritrade, he leads the Cloud and Data Security team and reports to the CISO. He holds a BS in computer science and an MS in software engineering, along with CCSP and CISSP certifications. He is an Adjunct Professor at the University of Missouri Graduate Computer Science and Washington University Graduate Cyber Security programs. Khan is a University of Missouri, IS and Technology Advisory Board member. He has presented talks at RSA Conference about innovation in the cloud securely. Rehman is also an Adjunct Professor at the University of St Louis Graduate Computer Science Department Adjunct Professor at Washington University St Louis Cybersecurity Graduate Program and Speaker at the 2019 RSA conference.

Connect with Rehman on LinkedIn

Follow Rehman on Twitter

Jason Clark

Jason brings decades of experience building and executing successful strategic security programs to Netskope.

He was previously the chief security and strategy officer for Optiv, developing a comprehensive suite of solutions to help CXO executives enhance their security strategies and accelerate alignment of those strategies with the business. Prior to Optiv, Clark held a leadership role at Websense, where he was a driving force behind the company’s transformation into a provider of critical technology for chief information security officers (CISOs). In a prior role as CISO and vice president of infrastructure for Emerson Electric, Clark significantly decreased the company’s risk by developing and executing a successful security program for 140,000 employees across 1,500 locations. He was previously CISO for The New York Times, and has held security leadership and technical roles at EverBank, BB&T and the U.S. Army.

Episode transcript

Open for transcript

Rehman Khan: I think it will be the design, security design. Like I said, really focusing on security design and making sure that the way we approach security is not just with a whole bunch of tools, but we should be really stepping back and designing security into the overall organization, the process.

Producer: Hello and welcome to Security Visionaries, hosted by Jason Clark, CSO at Netskope. You just heard from today's guest, Rehman Khan, Director of Security Strategy, Research & Design at Charles Schwab. With more than 20 years under his security belt, Rehman has worked with all kinds of people. With this kind of experience, there's a reason one of his top recommendations is to double down on people. Security leaders picking the right team members has a profound ripple effect. The importance of these decisions make or break careers in security. So choose wisely. Before we dive into the interview, here's a brief word from our sponsor.

Ad: The Security Visionaries podcast is powered by the team at Netskope. Netskope is the sassy leader offering everything you need to provide a fast, data-centric and cloud-smart user experience at the speed of business today. Learn more at netskope.com

Producer : Without further ado, please enjoy episode eight of Security Visionaries with Rehman Khan, Director of Security Strategy, Research & Design at Charles Schwab, and your host, Jason Clark.

Jason Clark: Welcome to Security Visionaries. I'm your host, Jason Clark, CSO of Netskope. And today, I am joined by a new guest, Rehman Khan. Rehman, tell us a little about yourself.

Rehman Khan: Hey, Jason. Yeah, glad to be here. I am basically leading the Charles Schwab Security Strategy, Research & Design Organization. And, I live in St. Louis, Missouri, and have lived there for eight years almost. And, before that, I was in Minneapolis, working in cybersecurity for roughly 12 to 15 years, and doing other things along the way. So, that's me.

Jason Clark: Yeah, in the time I've known you, you've been an architect, head of architecture for a lot of really big companies, global companies. You've made a big impact in your organizations you've been in. But, one thing I did just noticed is that your hair's a lot shorter than the last time I saw you. Was that kind of a result of the pandemic and then kind of coming out where, I don't even know how many inches you cut off just now.

Rehman Khan: Well, yeah. Hey, I think we're all kind of tinkering with our little needs and wants, I guess. Yeah, I'd probably say I got six inches off just a couple of weeks ago. Thought I'd just clean up for the new year. That goes and maybe get a fresh start, but this pandemic absolutely has given us kind of this opportunity to maybe grow our hair long.

Jason Clark: How'd your family or at work, who reacted the best or worst to you cut everything off?

Rehman Khan: I think they took me as I presented. I guess there's always something going on with me. I mean, I'll have a goatee, and then all of a sudden, a couple years later, I'll have a beard. And so I think people are sort of used to the way things change about my, I guess, look. But, I'll tell you, I think people in general were very complimentary, but I did have a couple of times where, I think it was actually one of the chairperson at Wash U, they looked at me and they're like, "Wow, were you at the Survivor show?" I mean, it was literally, their reaction was like, "Where were you?" And so, yeah, I think that there's a kind of a mixed bag, but mostly people were nice and they understood that.

Speaker 5: Deep dive. Dive. Dive. Dive. Dive.

Jason Clark: So you speak six languages. Tell us a little bit what those are and how they've been valuable to you.

Rehman Khan: Yeah. So really, if my background, growing up, I was born in Kuwait. I grew up there, then went to Abu Dhabi. And my dad worked for Lufthansa, so you can start seeing kind of the pattern of us being able to travel the world. And then I moved up to Minneapolis from Abu Dhabi, which was a huge change. But I guess, coming back to your question, really, I would say Abu Dhabi was a city where I got to learn and interact with international crowd. And, I've learned German. Arabic was already there, Urdu, and just kept on going. And I think that resonates with me, and it kept on building up my palette.

Jason Clark: I think about that. So I grew up globally as well, being a military brat. And, I think about the fact that, how do I give that same exposure to my kids? I want them to grow up global citizens and not just sitting in one city their whole life. And what I've decided is that, starting in two years, every single summer, we will spend that summer in a different country. And that's how I'm going to make them, as much as I can, global citizens.

Rehman Khan: Yeah. No, I think that's a great idea. I feel that we have, I mean, hoping that with the pandemic, in the next couple years, we can get that kind of a chance to freely mobilize. Because part of it is not only, you could sit at home and learn all these languages, and we do the same with cybersecurity, so on and so forth. But some of this is about interaction. And you really, when you interact with people, both in personal life, you learn. And I think that by traveling, you learn. You instill the confidence in your children. And I think that's a great plan. I myself want to do that, but I think it's about going to an environment where you have to deal with the situation and then you start-

Jason Clark: It's the culture.

Rehman Khan: Yeah.

Jason Clark: It's like, there's two types of people, the ones that go somewhere and say, "All right. Here's the 10 sites. I want to go see them," which you can basically see by Googling it, or the people that say, "I want to embrace the culture. I want to try the food. I want to meet the people. I want to go to the local bars." It's a very, very different essence of what you're trying to accomplish. So, I normally ask this question a little later, but I'm curious right now, from getting into security, what's your favorite security domain? You run architecture, and you've done that over and over again, which means you kind of get to oversee, like a CSO, every security domain. What's your favorite domain?

Rehman Khan: Boy, that's a tough one. Can I give you two?

Jason Clark: Yeah. Give me your first, and then your second.

Rehman Khan: Okay. I'll say it. Look, identity and access management is where I grew up and what I learned, and I continue to see it evolving. I think that's my first one. That's kind of the go to, and right behind it is data security. Those two are been always there. Yeah. I mean, I think that they kind of go hand in hand. You could look at it from an application security perspective. But yeah, I think those are kind of the domains.

Jason Clark: Those are great domains. And if I had to ask you, what's your one that you hate the most?

Rehman Khan: And this may apply to all the above, but it's kind of the security operations, if you will. It's such an important aspect, but I also feel that, I think security operations and maybe I can tell you why.

Jason Clark: It's a different kind of stress. Tell us why you hate operations.

Rehman Khan: Well, I'm a designer. I have always been a designer. I'm after the aesthetics. I am after the actual design. And I feel that the reason we have operations in its current state, the way it is, is that we're not focusing on design. We're not designing security solutions and applications and so on and so forth with security in mind. And well, there's a residual risk and effect of that. And that's what security operations is today. I mean, I think that's what makes me kind of stay away from it, because why do we have to be so stressed about it? Why can't it be like other operational domains that are automated. They're working, functioning, manufacturing. I mean, you take any of the other business domains, so-

Jason Clark: You don't want to be the result of other people's bad designs. You don't want to be the tail. You want to fix things and design them right.

Rehman Khan: Yes.

Jason Clark: Makes lot of sense. I get it. And so you're frustrated in operations when you see bad designs basically.

Rehman Khan: Yeah. Yeah. And then you see them over and over again. I mean, we're seeing it with Log4j. It's kind of an interesting landscape, if you will.

Jason Clark: That one, I think, hurt a lot of people's Decembers. It hurt a bunch of vacations of people. Everybody I talked to for at least 45 days was like, "Oh, what's going on?" "Yep. Log4j. That's what's going on. We're just scrambling because of that." So you teach at a couple of universities, which I always applaud, to helping the next generation. And one of them is Wash U where I got my MBA, and love, love seeing that on your background and what you're working on. So, why do you do it? What's your view on the next generation and the importance of teaching them cybersecurity? And what do you teach them?

Rehman Khan: Yeah. I look at it as a learning process, really. By teaching, I'm learning. I think that's the one thing that I really focus on, because you have this interaction with the students, and you're getting questions. And sometimes, I have the answers and sometimes I don't. It's such a different question that I was not expecting. So, part of it is that, it's something that, maybe call it kind of self-fulfilling prophecy. I'm trying to get ahe