Who is Danny Jenkins?
Danny Jenkins is a security-industry executive whose remarks track how businesses are adopting generative AI tools and how attackers are exploiting them. His commentary centers on the tension between employee-driven AI adoption and the controls meant to govern it.
Track record
- Dec 2025 - Jenkins said he has never had a ransomware customer who wasn’t ignoring obvious signs, and that 70-80% of support tickets have nothing to do with his company.
- Dec 2025 - He reported onboarding people in hours and said 90% of customers start from a clean slate.
- Sep 2026 - Jenkins said internal demand for company chatbot accounts arrived within weeks to months, with licenses well north of 100.
- Sep 2026 - He argued that depending on user controls is useless because users can’t tell whether Claude is acting well or not.
- Sep 2026 - Jenkins said AI gives attackers speed, letting them create in minutes what previously took hours, days, or months.
On the record
What named speakers have said about Danny Jenkins.
After ThreatLocker blocked free ChatGPT on work devices, more than 100 employees quickly requested paid company ChatGPT accounts, exposing widespread unsanctioned AI use.
“The number of people that came out of the woodwork in a very short period of time to say, "Hi, can we get a company chatbt account, please?" I can tell you I know I know cuz it's actually on my credit card, but that's a different story. I know the current count for chatbt licenses is well north of 100 within Threat Locker.”Danny Jenkins · 2 Sep 2026
Danny Jenkins on permission-prompt guardrails in agentic AI tools being effectively useless for enterprise security.
“Having or depending on those controls is as good as useless because you can't depend on a user to know the difference between claude doing something good and claude up to something it shouldn't be.”Danny Jenkins · 2 Sep 2026
Danny Jenkins on AI giving attackers a dramatic speed advantage in malware creation.
“What it's basically giving attackers is speed and the ability to create things in minutes that previously would have created that you know taken them hours or days or months potentially to create.”Danny Jenkins · 2 Sep 2026
Danny Jenkins on ransomware victims at ThreatLocker's customer base, observing a consistent pattern of ignored warnings.
“I have never had a customer with a ransomware case that wasn't ignoring obvious signs.”Danny Jenkins · 23 Dec 2025
ThreatLocker, a zero-trust application whitelisting platform serving 70,000 companies, is worth watching as a representative of the default-deny endpoint control category increasingly adopted as a post-EDR layer.
“I have never had a customer with a ransomware case that wasn't ignoring obvious signs.”Danny Jenkins · 23 Dec 2025
90 percent of ThreatLocker's customers start zero-trust deployment from a clean network, meaning proactive adoption drives uptake far more than incident response.
“For ninety percent of customers, they're starting from a clean slate.”Danny Jenkins · 23 Dec 2025
ThreatLocker is actively grappling with agentic AI governance, making it a bellwether for how endpoint security vendors adapt controls to LLM-driven tools.
“The business is putting us under pressure to allow these things to run and they terrify us. And that happened in a matter of probably weeks maybe months at most.”Danny Jenkins · 2 Sep 2026
70 to 80 percent of ThreatLocker support tickets are unrelated to ThreatLocker, as users misattribute pre-existing application issues to the zero-trust product.
“I would say seventy to eighty percent of our support tickets have nothing to do with us.”Danny Jenkins · 23 Dec 2025
Danny Jenkins on zero-trust onboarding speed, pushing back on the assumption that implementation takes months.
“I've onboarded people in hours.”Danny Jenkins · 23 Dec 2025
Zero-trust application whitelisting can be deployed in hours, not months, contradicting the widespread belief that such implementations require extended planning cycles.
“I've onboarded people in hours.”Danny Jenkins · 23 Dec 2025