
Cloud Security Podcast by Google
Cloud Security Podcast by Google focuses on security in the cloud, delivering security from the cloud, and all things at the intersection of security and cloud. Of course, we will also cover what we are doing in Google Cloud to help keep our users' data safe and workloads secure.
We’re going to do our best to avoid security theater, and cut to the heart of real security questions and issues. Expect us to question threat models and ask if something is done for the data subject’s benefit or just for organizational benefit.
We hope you’ll join us if you’re interested in where technology overlaps with process and bumps up against organizational design. We’re hoping to attract listeners who are happy to hear conventional wisdom questioned, and who are curious about what lessons we can and can’t keep as the world moves from on-premises computing to cloud computing.
Latest episodes

Jul 1, 2024 • 23min
EP179 Teamwork Under Stress: Expedition Behavior in Cybersecurity Incident Response
Guests, Robin Shostack & Jibran Ilyas, discuss expedition behavior in cybersecurity incident response. Topics include teamwork under stress, applying knowledge to security teams, fostering expeditionary behavior, and creating it in new/existing teams. Emphasizes the significance of teamwork, communication, and trust for successful incident resolution.

7 snips
Jun 24, 2024 • 32min
EP178 Meet Brandon Wood: The Human Side of Threat Intelligence: From Bad IP to Trafficking Busts
Meet Brandon Wood, Google Threat Intelligence PM, discussing the human side of threat intelligence, breaking up human trafficking rings, moving past traditional cyber TI approaches, debunking monitoring the dark web myths, transitioning from sales to product management, and the impact on Google's threat intelligence go-to-market strategy.

14 snips
Jun 17, 2024 • 30min
EP177 Cloud Incident Confessions: Top 5 Mistakes Leading to Breaches from Mandiant
Mandiant consultants discuss top 5 mistakes in cloud incidents, challenges in securing hybrid environments, attack surface evaluation, IAM importance, and incident preparedness for organizations transitioning to the cloud.

Jun 10, 2024 • 27min
EP176 Google on Google Cloud: How Google Secures Its Own Cloud Use
Seth Vargo, Principal Software Engineer at Google, discusses how Google secures its own cloud use on GCP. Topics include unique cloud security practices, scaling controls, automation, threat analysis, and leveraging language models for anomaly detection. Seth highlights Google's emphasis on proactive security measures and balancing experimentation with security.

Jun 3, 2024 • 27min
EP175 Meet Crystal Lister: From Public Sector to Google Cloud Security and Threat Horizons
Crystal Lister discusses transitioning from public to private sector, impact on Google work, risk management, Google Threat Horizons reports, insider threats importance. Insights on cybersecurity career transitions, serverless computing threats, and empowering women in cybersecurity.

May 27, 2024 • 22min
EP174 How to Measure and Improve Your Cloud Incident Response Readiness: A New Framework
Angelika Rohrer, Sr. Technical Program Manager at Alphabet, discusses the Continuous Improvement Framework for cloud incident response readiness, emphasizing the importance of proactive preparation. Topics include overcoming easy metrics, Google's best practices, real-world examples, and practical implementation advice for organizations.

7 snips
May 20, 2024 • 33min
EP173 SAIF in Focus: 5 AI Security Risks and SAIF Mitigations
Shan Rao, Google's Group Product Manager, discusses AI security risks in cloud environments, covering 5 risks and popular SAIF mitigations. He talks about moving quickly and securely with AI, future trends in securing AI, and the integration of AI security with other domains. The podcast provides various resources for securing AI products with Google SAIF.

9 snips
May 13, 2024 • 27min
EP172 RSA 2024: Separating AI Signal from Noise, SecOps Evolves, XDR Declines?
Exploring the rise of AI buzzwords and decline of XDR in cybersecurity at RSA 2024. Is AI just hype or the real deal? SecOps evolution, cloud security's focus on CSPM, and the battle between security platforms and focused tools. Exciting risks in AI security and the challenges of managing system outputs and model theft risks.

May 6, 2024 • 27min
EP171 GenAI in the Wrong Hands: Unmasking the Threat of Malicious AI and Defending Against the Dark Side
Elie Bursztein, Google DeepMind Cybersecurity Research Lead, discusses the threats of malicious AI in the wrong hands, state-sponsored actors using AI for cyber attacks, and the debate on AI's impact on security. He also touches on vulnerability discovery and why AI favors defenders. The podcast explores real risks of AI in cyber security and the importance of securing AI systems against potential misuse.

7 snips
Apr 29, 2024 • 28min
EP170 Redefining Security Operations: Practical Applications of GenAI in the SOC
Payal Chakravarty, Director of Product Management at Google SecOps, discusses practical applications of GenAI in security operations, challenges, and risks. The podcast explores the role of AI in empowering junior analysts, automation in SOAR, and enhancing security measures. Future insights on AI in security operations and recommended reading are also discussed.
Remember Everything You Learn from Podcasts
Save insights instantly, chat with episodes, and build lasting knowledge - all powered by AI.