Cyber Ranges, Attack Simulations & AI: Proving Cyber Readiness | Interview with Lee Rossey

In this Secure and Simple Podcast episode, host Dejan Kosutic (CEO of Advisera) speaks with Lee Rossey, CTO and co-founder of SimSpace, about why much cybersecurity training is becoming outdated as AI accelerates both threats and defensive stacks. Rossey explains “train like you fight” through realistic, hands-on, team-based cyber range exercises that emulate an organization’s environment, tools, background traffic, and real attack scenarios such as ransomware and lateral movement. They discuss how cyber ranges complement tabletop exercises, what must be most realistic (security tools, attacks, and traffic), who should participate (SOC, IT, business owners, and leadership), and what typically breaks first under pressure. The conversation covers metrics like time to detect/respond/recover, ROI, and tool rationalization, evolving ranges for cloud/OT and AI, and the need to validate and govern AI-infused security tools with trust and oversight.

Links from the episode:
- Conformio software to streamline and scale ISO 27001 implementation and maintenance for your clients: https://advisera.co/Conformio-software
- White label documentation toolkits for NIS2, DORA, ISO 27001, and other ISO standards to create all the required documents for your clients: https://advisera.co/page-all-toolkits
- Accredited Lead Auditor and Lead Implementer courses for various standards and frameworks to show your expertise to potential clients: https://advisera.co/Consultant-Courses
- Company Training Academy with numerous videos for NIS2, DORA, ISO 27001, and other frameworks to organize training and awareness programs for your client’s workforce: https://advisera.co/page-Company-Training-Account 
- Beginner's Course for ISO, Cybersecurity, and AI Consultants: https://www.youtube.com/playlist?list=PLHwD3nQun7caKFq80LxNNYKIabATlyA7t
- How to Grow Your Cybersecurity, ISO, or AI Consultancy: Advanced Course:https://advisera.co/GrowYourConsultancyTraining 
  • (00:00) - Interview with Lee Rossey
  • (01:18) - Why Training Is Outdated
  • (04:56) - What Is a Cyber Range
  • (07:53) - Building Realistic Attacks
  • (12:40) - Leadership Value and ROI
  • (15:49) - Who Should Participate
  • (19:53) - Senior Leaders in the Hot Seat
  • (23:41) - Lessons From Debriefs
  • (25:04) - Ranges Evolving With AI
  • (30:33) - Preparing For A Cyber Range
  • (32:15) - Measuring Exercise Results & Reporting
  • (34:43) - Turning Findings Into Change
  • (38:33) - AI Governance And Trust
  • (41:39) - Regulations And Standards
  • (45:41) - Resources for Consultants and Cybersecurity Professionals

Creators and Guests

person
Host
Dejan Kosutic
CEO at Advisera & Cybersecurity governance expert
Cyber Ranges, Attack Simulations & AI: Proving Cyber Readiness | Interview with Lee Rossey
Broadcast by