Cloud Security Podcast cover image

Cloud Security Podcast

Fixing Cloud Security with AWS Lambda

Jul 23, 2024
Security expert Lily Chau discusses AWS Lambda for cloud security, auto-remediation, IAM roles, and challenges with CSPM. They cover cultural shifts, high-impact playbooks, and monitoring CloudTrail logs for security. Also, they talk about preventing subdomain takeovers, using Terraform for security, and a favorite restaurant in San Francisco.
21:25

Episode guests

Podcast summary created with Snipd AI

Quick takeaways

  • Utilize IAM roles for read-only security auditing and tagging non-compliant instances for effective tracking without relying on databases.
  • Implement custom auto remediation Lambda functions to proactively address security risks beyond CSPM and CNAB tools in AWS cloud environments.

Deep dives

IAM Roles for Read-Only Security Auditor and Security Tagger

Two key IAM roles are deployed in each AWS account: the read-only security auditor role for read-only configurations and the security tagger role for tagging instances that are non-compliant. Tagging instances is crucial for tracking non-compliance economically without database use. The approach emphasizes tagging instances as non-compliant or remediated.

Get the Snipd
podcast app

Unlock the knowledge in podcasts with the podcast player of the future.
App store bannerPlay store banner

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode

Save any
moment

Hear something you like? Tap your headphones to save it with AI-generated key takeaways

Share
& Export

Send highlights to Twitter, WhatsApp or export them to Notion, Readwise & more

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode