
Cloud Security Podcast by Google EP162 IAM in the Cloud: What it Means to Do It 'Right' with Kat Traxler
10 snips
Mar 4, 2024 Explore the complexities of IAM in cloud security with expert Kat Traxler. Discuss why people still struggle with IAM mistakes, resource hierarchy, and management. Learn about the importance of assigning roles at the lowest resource-level possible and how the 'big 3' got it wrong.
AI Snips
Chapters
Transcript
Episode notes
Perfection in Security
- "One IAM mistake away from a breach" implies perfection.
- Security is not about perfection; it's about risk mitigation and enabling the business.
Belts and Suspenders Security
- Think holistically about security, using "belts and suspenders."
- Implement IAM, network controls, and detective controls for layered protection.
Contextual IAM
- "Doing IAM right" is contextual and depends on various factors.
- Identifying assets, access needs, and privilege is crucial for effective IAM.
