Cloud Security Podcast cover image

Cloud Security Podcast

Latest episodes

undefined
Oct 2, 2024 • 35min

The Role of Cloud Security Research in 2024

Scott Piper is a leading cloud security researcher at Wiz, known for his insights into vulnerabilities within cloud environments. He discusses the crucial role of cloud security research as distinct from traditional security testing. Scott explains how his team enhances detection tools and safeguards data while navigating multi-tenant challenges. Additionally, he shares about request collapsing and the evolving collaboration between developers and security teams, highlighting proactive measures that are shaping the future of cloud security.
undefined
Sep 20, 2024 • 27min

Edge Security is the Key to Cloud Protection

Brian McHenry, the Global Head of Cloud Security Engineering at Check Point, delves into the future of cloud protection and the critical role of edge security. He discusses how automation reshapes security management and the dangers of misconfigurations. Brian emphasizes the limitations of traditional Cloud Security Posture Management (CSPM) and the need for proactive measures. He also highlights the challenges of securing multi-cloud environments and how AI can help address rising concerns in cloud security. Tune in for expert insights!
undefined
Sep 13, 2024 • 30min

Is your CI/CD Pipeline your Biggest Security Risk?

Mike Ruth, a Senior Staff Security Engineer at Rippling, discusses the hidden vulnerabilities in CI/CD pipelines during a live segment from BlackHat 2024. He reveals how tools like GitHub Actions and Terraform can pose serious security risks, such as bypassing code reviews and unauthorized command execution. Mike emphasizes the importance of granular access control and offers actionable strategies to mitigate these vulnerabilities, enhancing security in cloud environments and safeguarding against insider and external threats.
undefined
Sep 4, 2024 • 56min

State of Cloud Security - Practitioner Edition

In this episode of the Cloud Security Podcast, we bring together an incredible panel of experts to explore the evolving landscape of cloud security in 2024. Hosted by Ashish Rajan, the discussion dives deep into the challenges and realities of today’s multi-cloud environments. With perspectives ranging from seasoned veterans to emerging voices this episode offers a broad spectrum of insights from cloud security practitioners who are living and breathing cloud security everyday. We are very grateful to our panelist who took part in 1st of its kind edition for the State of Cloud Security - Meg Ashby, Damien Burks, Chris Farris, Rich Mogull, Patrick Sanders, Ammar Alim and Abdie Mohamed. The conversation covers essential topics such as the pitfalls of multi-cloud adoption, the persistent security issues that remain even as cloud technologies advance, and the importance of specializing in one cloud platform while maintaining surface-level knowledge of others. The panelists also share their thoughts on the future of cloud security, including the increasing relevance of Kubernetes and edge security. Podcast Twitter - ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠@CloudSecPod⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠ ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠ If you want to watch videos of this LIVE STREAMED episode and past episodes - Check out our other Cloud Security Social Channels: - ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Cloud Security Podcast- Youtube⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠ - ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Cloud Security Newsletter ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠ - ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Cloud Security BootCamp Questions asked: (00:00) Introduction (02:22) How much has Cloud Security Changed? (07:05) Is the expectation to be MultiCloud? (19:07) What’s top of mind in Cloud Security in 2024? (27:17) The current Cloud Service Provider Landscape (39:26) Where to start in Cloud Security ? (52:10) The Fun Section Resources discussed during the episode: fwd:cloudsec conference Cloud Security Bootcamp DevSecBlueprint YouTube Channel - Damien Burks Rich Mogull’s Cloud Security Lab of the Week
undefined
Aug 28, 2024 • 40min

BlackHat USA 2024 Highlights and Recap

Explore cutting-edge themes from BlackHat USA 2024, including the vital push for resiliency in cybersecurity. The conversation dives into the growing complexities of cloud security and the evolving nature of identity-centric security. Learn about the increasing importance of data protection and the potential game-changing role of AI in security practices. The notion of shared responsibility is illuminated, alongside a provocative discussion on whether Cloud Security Posture Management has lost its relevance amid emerging threats.
undefined
Aug 22, 2024 • 27min

Building an Incident Response Team for High-Growth Companies

In this discussion, Santiago, a Senior Security Engineer at Canva, shares insights on building incident response teams in high-growth companies. He explains how incident response differs in fast-paced versus established environments and the vital skills needed for effective management. Santiago also touches on the importance of communication, the dynamic between Red Teams and incident responders, and strategies for enhancing endpoint security. Additionally, he highlights the role of data visualization in security monitoring, emphasizing the need for effective dashboard design.
undefined
Aug 6, 2024 • 26min

State of Cloud Security 2024 - Leadership Edition

Srinath Kuruvadi, a cloud security veteran with over 20 years of experience, shares invaluable insights into the evolving landscape of cloud security. He discusses the crucial role of proactive incident response teams and emphasizes the need for a prevention-first strategy in a multi-cloud world. The importance of stakeholder management and robust data security practices also takes center stage. Srinath highlights the challenges of talent acquisition and the significance of tailored AI solutions for enhancing security measures.
undefined
Jul 30, 2024 • 22min

Cloud Native Strategies from a FinTech CISO

Adrian Asher, CISO and Cloud Architect at Checkout.com, discusses his transition from monolithic to cloud-native structures in fintech. He emphasizes the importance of using AWS technologies like Lambda and Fargate for better security and scalability. Adrian explores the differences between cloud-native and cloud-naive approaches, stressing the need for cultural shifts within organizations. He shares insights on preparing security teams for generative AI, showcasing the evolving relationship between development and security practices.
undefined
Jul 23, 2024 • 21min

Fixing Cloud Security with AWS Lambda

Security expert Lily Chau discusses AWS Lambda for cloud security, auto-remediation, IAM roles, and challenges with CSPM. They cover cultural shifts, high-impact playbooks, and monitoring CloudTrail logs for security. Also, they talk about preventing subdomain takeovers, using Terraform for security, and a favorite restaurant in San Francisco.
undefined
Jul 16, 2024 • 22min

What is confidential computing? Explained for 2024

Zvonko Kaiser, Nvidia's Principal Systems Software Engineer, discusses confidential computing, secure enclaves, and attestations. He highlights the importance of GPUs in enhancing AI workloads and the transition to confidential containers for data protection. The podcast explores threat models, industry sectors utilizing confidential computing, and the value of isolation and attestation in cloud security.

Get the Snipd
podcast app

Unlock the knowledge in podcasts with the podcast player of the future.
App store bannerPlay store banner

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode

Save any
moment

Hear something you like? Tap your headphones to save it with AI-generated key takeaways

Share
& Export

Send highlights to Twitter, WhatsApp or export them to Notion, Readwise & more

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode