Jess Hebenstreit

Jess builds and matures the security programs that actually survive contact with reality. She's currently AVP of Information Security at Benevity, with previous stops at Quorum Software, Eptura, and Booz Allen Hamilton, where she's led global teams across security operations, GRC, and engineering — and lived to tell the tale.

She's the creator of the DREAMR framework, a former COO of the Diana Initiative, and has consulted for many of the largest companies on the planet, including a healthy chunk of the Fortune 100. Translation: she can explain your risk to the board without putting them to sleep, then turn around and explain it to your SOC without insulting them.

Her wheelhouse: security leadership, cyber fusion centers, attack surface management, and building programs that don't fall over the first time something goes wrong. You'll find her speaking at RSA and on podcasts like DtSR and Detections — and now co-hosting the one you're reading about.

On Breach Please, Jess brings the operator-and-leader lens: what actually works, what just looks good in a QBR, and the difference between the two.