Securing Digital Transformation: Practical Lessons from Signal Sciences with Zane Lackey, Co-founder at Signal Sciences
Zane is a Co-founder and Chief Security Officer at Signal Sciences, a web-application security company acquired by Fastly. Zane shares what his career has taught him about security, founding teams, and what the future holds for digital transformations.

Zane Lackey
Signal Sciences Co-founder and CSO
Securing Digital Transformation: Practical Lessons from Signal Sciences with Zane Lackey, Co-founder at Signal Sciences
Zane is a Co-founder and Chief Security Officer at Signal Sciences, a web-application security company acquired by Fastly. Zane shares what his career has taught him about security, founding teams, and what the future holds for digital transformations.
1:07 The time Zane was hacked in 30 seconds
5:57 Moving from @Etsy to founding Signal Sciences
8:50 What to look for in founding teams
10:28 Biggest lessons learned from co-founding
18:37 Zane’s advice on learning from others
“You need to kind of apply those same lessons of the folks that have done digital transformation and DevOps and cloud really well and apply those to information accessibility across your organization.”

Zane Lackey
Signal Sciences Co-founder and CSO
Zane Lackey on Getting Hacked in 30 Seconds, Co-founding Signal Sciences, and Why Practitioners Make the Best Founders
Zane Lackey, Co-founder and CSO, Signal Sciences (acquired by Fastly) | Interviewed by Luke Alie of Atolio
Zane Lackey co-founded Signal Sciences, a web application security company, which was acquired by Fastly for just under a billion dollars in 2020. Before that, he was CISO at Etsy during the formative years of DevOps, when Etsy and Netflix were the companies pioneering what digital transformation would eventually look like across the entire industry. He talks about what being hacked at 16 taught him about security as a systems problem, why the shift from silos to shared visibility is the real story of DevOps, and what he looks for in founding teams.
Getting Hacked in 30 Seconds: The Pivotal Moment That Started a Career
Luke Alie (LA): Take us back to a formative moment early in your career.
Zane Lackey (ZL): I had spent months trying to get my Linux box online in the mid-90s. Custom kernel settings, modem drivers, all of it. Finally got it connected and jumped on IRC to celebrate with friends. Within 30 seconds, somebody hacked into my system and shut it down. It was just absolutely mind-blowing. My reaction wasn't: this is terrible. It was: that was amazing. I am going to learn exactly how they did it, how to defend against it, and how to understand the systems all of this relies on at a deep level. Security, for me, has never been something separate from understanding overall systems. It's part of the same thing.
Through high school and college I kept digging. After school I got an opportunity to be the first employee at a boutique security consulting firm co-founded by five partners, one of whom was Alex Stamos, who went on to become CISO at Facebook. I spent years there and then moved to New York to help build out the East Coast practice. When that firm was acquired, I got the opportunity to become the first CISO at Etsy out of Brooklyn.
The DevOps Shift: What Etsy and Netflix Were Doing That No One Else Was
LA: What made the Etsy CISO role so formative?
ZL: At the time, Etsy and Netflix were basically the only companies pioneering what we now call DevOps. It was before the term was really established. I was one of the first two security leaders, along with my counterpart at Netflix, to actually live through this shift from traditional IT to cloud and DevOps. And so much of what the industry had taken for granted about security just no longer held true in that environment.
In 2011, I stood on stage and said Etsy makes production changes 30 times a day. At a time when banks were deploying code changes once a year. The room thought that was insane. But the lesson that started to emerge was this: the way organizations were able to move faster and faster was to break down silos and bring capabilities, information, and visibility that had previously been locked inside one team to the entire organization. Whether that was monitoring tools, observability, or institutional knowledge, the pattern was always the same. Empower the whole org, not just a small group.
From CISO to Founder: A Much Less Deliberate Story Than It Sounds
LA: Did you always want to start a company?
ZL: Not at all. The actual story is that I and one of my future co-founders had both left Etsy at different times. We happened to be giving a talk together on security at the end of 2013. Afterward, a friend came up to us and said: don't you guys miss working together? We said yes. He said: after you got off stage, a million people asked if they could buy something that would solve the problems you just talked about, and you told them all no. Maybe just turn that into a product. And we said: well, when you put it like that.
We built Signal Sciences for close to seven years. By the time we sold to Fastly in 2020 for just under a billion dollars, we had 150 employees and about 30 million in revenue. We were defending a substantial portion of the Fortune 500. It was a crazy journey that started with a friend pointing out the obvious.
What to Look for in Founding Teams: Practitioners, Chemistry, and Shared History
LA: When you look at startups now as a buyer or investor, what do you look for in founding teams?
ZL: Whether I'm wearing the buyer hat or the investor hat, I always click on the About page or anything about the founders' backstory first. Have they been practitioners? Have they lived in the space they're working in? Do they actually understand the problem from the inside? That is by far the most powerful pattern I look for. Practitioners who have lived the problem they are solving.
And then: have they worked together before? Even if only briefly? The founding teams behind iconic companies almost always have real shared history. When you're building something genuinely hard, the moments of stress will be intense. You need people around you that you like, deeply respect, and fully trust. If you don't have that alignment with your co-founders, it is not going to work.
The Biggest Macro Lesson from DevOps, Applied to Information Management
LA: What's the biggest lesson from your DevOps experience that still applies today?
ZL: The techniques that allow you to move faster are the ones that win. And historically the way you enable speed is by taking things that were siloed and sharing them with the entire organization. Monitoring tools that only operations saw. Security data that only the security team understood. Institutional knowledge that lived in one person's head. Making all of those accessible and contextual to everyone is what enabled Etsy, Netflix, and companies like them to move at speeds that seemed impossible to everyone watching from the outside.
That same shift is now happening at the institutional knowledge level. You used to solve this on a personal level: go to floor seven, ask so-and-so. That doesn't scale, especially post-COVID in distributed environments. The companies that figure out how to apply the DevOps playbook to information accessibility across their organizations are going to have real structural advantages.
The Nicest Thing: How Open Founders Were When Signal Sciences Was Nobody
LA: Last question: what's the nicest thing anyone has done for you?
ZL: The thing that surprised me most and positively in the early days of Signal Sciences was how many successful founders were willing to just get on the phone and share advice. We were three people, no seed round yet, completely unknown. And founders of really successful companies would jump on a call and share lessons, feedback, and perspective with no expectation of anything in return.
That is also the piece of advice I would leave anyone listening with: reach out to your peers. We are all fighting the same battles a lot of the time. It is very rare to run into someone who isn't willing to share what they've learned. There is a tremendous amount of help available if you're willing to ask for it, whether you're guiding an organization through transformation, thinking about starting a company, or already in the middle of one. People want to be helpful.
LA: Zane, thank you so much for talking with me.
ZL: Yeah, happy to. This was super fun.
Latest Episodes

Green Computing and Data Unlocking: Mentorship for Tech Leaders with Andrea Gallego, Global CTO at BCG GAMMA
Andrea Gallego (Global CTO at BCG GAMMA) has taken her career from large financial institutions, to rapidly growing NGOs, and ultimately to this intersection of consulting and tech. Listen in to hear her thoughts on the value of mentorships between women, how she became interested in startup culture, possible new ways to leverage information at consulting groups, and more.

Internal Knowledge Management: Experimentation While Scaling with Paolo Negri, Co-founder at Contentful
Paolo walks us through his early career at startups across Europe, how he built a company solving a problem he faced at those very startups, why he encourages a culture based on experimentation at Contentful, and much more.

Innovation Culture: Enterprise vs. Startup Technology Scaling with Shivani Govil, CPO at CCC Intelligent Solutions
Innovation has been a central focus in Shivani Govil's career, including during her time at Silicon Valley Startups, SAP, and in her current role as Chief Product Officer at CCC Intelligent Solutions, a modern insurance solutions company. We dove into how she thinks innovation works at different scales, business units, industries, and more.

Startup to Enterprise Ops: Lessons for Serial Entrepreneurs with Greg Tacchetti, CIO at State Auto Insurance
Atolio's co-founder Mark Matta interviews Greg Tacchetti, CIO at State Auto Insurance. Greg shares his story, what he learned from his previous experience as a co-founder, which tech he's most excited about these days, and more.

SaaS Sprawl and Transparency: Scaling Internal Employee Directories with Alex Solomon, CTO and Co-founder at PagerDuty
Alex Solomon (CTO & Co-founder at PagerDuty) joins us to talk about the early days at PD and some critical decisions about transparency, documentation, employee experience, and more.

Engineering Transparency: Building a Culture of Urgency (Without Panic) with Steve Zerby, CIO at Owens Corning
Fortune 500 CIO Steve Zerby talks with us about the culture of urgency that he is helping foster at Owens Corning and how it relates to ego, transparency, service, and more.

Purposeful Innovation: Avoiding Single-Vendor Lock-in Risk with Andrew Campbell, CIO at Terex Corporation
Andrew talks with us about a number of topics, including the concept of purposeful innovation at Terex, the drawbacks to single-vendor environments, his reasons for being a servant leader, and more.

CIO Leadership Advice: Lessons from Sales and Go-to-Market with Julie Cullivan, Former Forescout CIO
Julie (Board Director at Axon, HeartFlow, and AaDya) joins us to share how she handled leading both technology & people at Forescout, why she took the leap to become a first-time CIO at FireEye, what she learned from her go-to-market roles at McAfee & Autodesk, and more.

CIO to CPTO Transition: Shaping Product Culture and Curiosity with Ramin Beheshti, CPTO at Dow Jones
Ramin is the Chief Product & Technology Officer at Dow Jones, publisher of The Wall Street Journal, Barrons, Marketwatch, and more. He talks leadership lessons, the value of curiosity, his approach to working with startups, and more.

CIO to VC: Evaluating Startup Tech and Early-Stage Bets withYousuf Khan, Former 5x CIO
Our first guest is Yousuf Khan, who discusses what he learned on his journey from accidental CIO at companies like Automation Anywhere, Moveworks, and Pure Storage to unconventional VC at Ridge Ventures.







