CISO Tradecraft®

#263 - Stopping Attacks To Your Cloud Office Environment (with Rajan Kapoor)

24 snips
Dec 15, 2025
In this talk, Rajan Kapoor, VP of Security at Material Security, shares his valuable expertise in cloud workspace security. He discusses the expanding attack surfaces in cloud platforms like Google Workspace and Microsoft 365, emphasizing the need for robust protective measures. Rajan explains the importance of unified platforms to streamline investigations and reduce dwell time. He offers insights on using frameworks like MITRE to assess security maturity and addresses the risks posed by AI in data exposure, all while highlighting actionable steps for organizations to enhance their security posture.
Ask episode
AI Snips
Chapters
Books
Transcript
Episode notes
INSIGHT

Cloud Workspaces Increase Attack Surface

  • Cloud workspace platforms like Google Workspace and Microsoft 365 expand your attack surface beyond traditional on-prem servers.
  • Rajan Kapoor says platform providers don't give everything needed to manage the full cloud office attack surface.
INSIGHT

Attackers Use Many Cloud Vectors

  • Attackers exploit many vectors beyond email, including apps, supply chain, social engineering, and endpoints.
  • Rajan Kapoor notes attackers are pivoting to those diverse entry points.
ADVICE

Unify Workspace Detections

  • Replace scattered tools with a unified platform that ingests workspace telemetry and shows the full attack chain.
  • Rajan Kapoor advises centralizing detections to reduce dwell time and speed investigations.
Get the Snipd Podcast app to discover more snips from this episode
Get the app