

Cloud Security Podcast
Cloud Security Podcast Team
Learn Cloud Security in Public Cloud the unbiased way from CyberSecurity Experts solving challenges at Cloud Scale. We can be honest because we are not owned by Cloud Service Provider like AWS, Azure or Google Cloud.
We aim to make the community learn Cloud Security through community stories from small - Large organisations solving multi-cloud challenges to diving into specific topics of Cloud Security.
We LIVE STREAM interviews on Cloud Security Topics every weekend on Linkedin, YouTube, Facebook and Twitter with over 150 people watching and asking questions and interacting with the Guest.
We aim to make the community learn Cloud Security through community stories from small - Large organisations solving multi-cloud challenges to diving into specific topics of Cloud Security.
We LIVE STREAM interviews on Cloud Security Topics every weekend on Linkedin, YouTube, Facebook and Twitter with over 150 people watching and asking questions and interacting with the Guest.
Episodes
Mentioned books

May 31, 2020 • 37min
What is GOOD COMPANY CULTURE (WITH EXAMPLE ) during COVID19 with remote employees!
In this episode sponsored by Virtual Coffee with Ashish edition, we spoke with Graeme Cantu-Park, CISO of Matilion
Host: Ashish Rajan - Twitter @hashishrajan
Guest: Graeme Cantu-Park - Linkedin
What is culture - why is it important and how does it intersect with security?
How is culture done right for remote employees, thanks COVID!
Why is culture in Growth organisations so important?
Can you tell me some examples from experience of what worked well there?
Security often isn't included in a growth organisation until a later stage (look at zoom). How do you apply security without disrupting culture?
Anyone starting in a CISO/Head of Security role with a small team or brought into building the team, what should they focus on in the beginning?
Is it more a low cost security product or build first approach you prefer to doing security in a growth environment?
ShowNotes and Episode Transcript on www.cloudsecuritypodcast.tv
Twitter - @kaizenteq @hashishrajan
If you want to watch the previous episodes:
- Twitch Channel: https://lnkd.in/gxhFrqw
- Youtube Channel: https://lnkd.in/gUHqSai

May 24, 2020 • 1h 3min
What is a Connected Car | How to secure api in connected cars? - Virtual Coffee with Ashish - Alissa Knight
In this episode of the Virtual Coffee with Ashish edition, we spoke with Alissa Knight, Car Hacker, Author, Cybersecurity Influencer and Entrepreneur
Host: Ashish Rajan - Twitter @hashishrajan
Guest: Alissa Knight - Twitter @alissaknight
What is a Connected Car?
What is API?
How do I secure APIs?
How can someone secure API for Connected Cars?
What should you do to monitor API?
Can I buy a Tesla?
Apple has API to record body contact, which cannot be turned OFF
COVID Safe apps and the future of how freely information is collected by internet aware smart devices?
Who do you report to when you are concerned about your connected car?
ShowNotes and Episode Transcript on www.cloudsecuritypodcast.tv
Twitter - @kaizenteq @hashishrajan @alissaknight

May 17, 2020 • 41min
What is SRE? When should i have SRE? - Virtual Coffee with Ashish - Tim Heckman
In this episode of the Virtual Coffee with Ashish edition, we spoke with Tim Heckman, Sr. SRE Netflix.
Host: Ashish Rajan - Twitter @hashishrajan
Guest: Tim Heckman
What is SRE?
Is it helpful to have SRE team when you already have a Security team?
What does Security in Netflix look like?
How can people scale maturity in security when dealing with cloud and multi-cloud?
ShowNotes and Episode Transcript on www.cloudsecuritypodcast.tv
Twitter - @kaizenteq @hashishrajan @theckman

May 10, 2020 • 57min
NIST CyberSecurity Metrics for the Board - Taylor Hersom
In this episode of the Virtual Coffee with Ashish edition, we spoke with @Taylor Hersom about
Why do CyberSecurity Professionals need to think about talking Cyber Security to the board?
What kind of cybersecurity metrics works best for Board?
Is Fear, Uncertainty, Doubt (FUD) the right way to approach presenting cybersecurity to the board?
FAIR methodology to put $ value against each RISK - Risk and Governance is a great space to start for those who want to start in cybersecurity but are not too technical?
Does being knowledgable in datacenter governance beneficial in world of Cloud?
Can companies get NIST Certified or is it only NIST Compliance?
NIST vs ISO vs CMMC and Department of Defence affecting the industry?
ShowNotes and Episode Transcript on www.cloudsecuritypodcast.tv
Twitter - @kaizenteq @hashishrajan

May 3, 2020 • 1h
Virtual Coffee with Ashish - Cloud Security Podcast & Hacker Valley Studio
In this episode, we sit with Chris Cochran & Ronald Eddings from Hacker Valley Studio.
Chris Cochran & Ronald Eddings from Hacker Valley Studio & Ashish spoke about
How did you get into CyberSecurity?
What is Cloud Security?
Is multi-cloud a thing?
What is a good maturity in the Cloud Security space?
How does Security change in a world of COVID19?
What are people not talking enough about cloud security ?
Mentorship and CyberSecurity Podcast
More info and show notes transcript on www.cloudsecuritypodcast.tv
Twitter - @kaizenteq @hashishrajan @theHackerValley @chriscochrcyber @ronaldeddings

Apr 26, 2020 • 41min
Scaling a DevSecOps model | SERVERLESS SECURITY BEST PRACTICES with Abhay Bhargav , CTO , we45
In this episode, we sit with Abhay Bhargav, CTO, we45.
Abhay & Ashish spoke about
What is Cloud Security?
Is multi-cloud a thing?
What is DevSecOps?
What is a good maturity in the DevSecOps space?
What’s a free tool to get started today for developers?
What about starting with Threat Modelling as a beginner?
Doing Application Security (AppSec) at scale, what does that look like?
How does Security change in a world of serverless?
Can there be too many functions?
Lack of servers in serverless, mean that Static code analysis, Software Compositions important?
What’s the most common misconception of cloud?
What are people not talking enough about in the appsecurity and cloud security space?
More info and show notes on www.cloudsecuritypodcast.tv
Twitter - @kaizenteq @hashishrajan @abhaybhargav

Apr 19, 2020 • 10min
CORONAVIRUS & CYBERSECURITY | ISOLATION LIFE
In this episode, we are covering a trending topic CORONAVIRUS OR COVID19 and how it is affecting businesses around me and my friends & colleagues. I also talk about my personal challenge with starting a new job in this COVID world with a remote team.
I hope you are reaching out to your friends and family to check on them and staying indoors to keep the community safe too.
You can reach me on ashish@kaizenteq.com
Ashish's Website: www.ashishrajan.com
Previous episodes videos are available on www.cloudsecuritypodcast.tv

Apr 11, 2020 • 52min
How to secure and improve cloud environment - Merritt Baer, Principal Security Architect, AWS
In this episode, we sit with Merritt Baer, Principal Security Architect, AWS.
Merritt & Ashish spoke about
What is Cloud Security?
What does security look like in a mature organisation?
How can security integrate into the business? How does AWS do it?
What is the AWS Rapid Prototyping team?
What are the signs of an organisation with mature security?
Importance of being technical as a women in cybersecurity?
What is Tech and Roses Group?
More info and show notes on www.cloudsecuritypodcast.tv
Twitter - @kaizenteq @hashishrajan @merrittbaer

Apr 5, 2020 • 37min
Cloud Center of Excellence in AWS | How Atlassian manages Risk and Compliance - Atlassian 2020
In this episode, we sit with Michael Fuller, Cloud Centre of Excellence, Atlassian.
Michael & Ashish spoke about
Importance of being standardisation of security across the cloud footprint?
Challenges of having standardised security when a M&A bring companies which are lot more mature in cloud?
What were the challenges of implementing this in a global company like Atlassian?
How do you classify maturity in cloud? What does the maturity scale look for you?
How do global teams at Atlassian do effective decision making while working remotely?
More info and show notes on www.cloudsecuritypodcast.tv
Twitter - @kaizenteq @hashishrajan Michael Fuller

Mar 29, 2020 • 31min
A TECHNICAL WOMEN DELIVERING NON-TECHNICAL TRAINING IN CYBERSECURITY | HOW TO BUILD CYBERSECURITY TRAINING PROGRAM- Fareedah Shaheed, Online Safety and Security Strategist, Sekuva
In this episode, we sit with Fareedah Shaheed, Online Safety and Security Strategist @Sekuva.
Fareedah & Ashish spoke about
Importance of being technical for women in cybersecurity?
Challenges of training cybersecurity to a non-technical audience?
How to work safely from home during COVID Season?
Example of SCAMs for elderly during this time?
How to start building a cybersecurity online course?
More info and show notes on www.cloudsecuritypodcast.tv
Twitter - @kaizenteq @hashishrajan @cyberfareedah


