Security Operations with Elliott Abraham and Jason Bisson

Security Operations with Elliott Abraham and Jason Bisson

We're discussing security operations on the podcast this week with your hosts Priyanka Vergadia and Mark Mirchandani. They're joined by Elliott Abraham and Jason Bisson who start the interview explaining that they created the CLAM framework to help customers use Google Cloud security features to their fullest potential to create safe projects and relaxed clients.

The CLAM (Cloud Logging Alerting and Monitoring) framework came about specifically to help customers transition products to, and run products securely in, the cloud. Using the Mitre GCP Matrix, the security team addressed each element with GCP product solutions, from initial access to persistence and beyond. CLAM is GCP specific, taking into account the default security measures GCP already provides and supplementing these measures with appropriate procedures for each client. Once the framework is in place and things are secure, clients can build on that with operational controls, such as SRE best practices.

Elliott explains the shared security model and how clients can shift more of the security responsibility to the cloud service provider by employing more managed services. Jason tells us about VPC Service Controls and how they allow clients to set specific security rules such as from where data can be accessed. They go on to describe the GCP Security Command Center and the tools available there.

We wrap up the interview with some tips from our guests, including what to do if you are compromised.

Elliott Abraham

Elliott Abraham is a Security and Compliance Specialist based in Atlanta. Elliott works with Financial Services, Healthcare and Life Sciences and other Select Accounts migrating to or expanding their footprint on the Google Cloud Platform. Elliott has helped many customers to operationalize GCP Security solutions in alignment with their security, compliance, and regulatory requirements.

Jason Bisson

Jason Bisson is a Security and Compliance Specialist based in NYC. He works with Financial Services, Healthcare, Government, and Retail customers to explain the security, compliance, and regulatory abilities of Google Cloud Platform.

Cool things of the week
  • Announcing Google Cloud Next '20: OnAir blog
  • Celebrating a decade of data: BigQuery turns 10 blog
    • A very special BigQuery Day (The Data Show, w/ Felipe Hoffa & Yufeng Guo) video
Interview
  • CLAM Framework pdf
  • Mitre site
  • Mitre ATT&CK site
  • Mitre GCP Matrix site
  • SRE Handbook site
  • VPC Service Controls site
  • Cloud Audit Logs site
  • Cloud Data Loss Prevention site
  • GCP Podcast Episode 218: Chronicle Security with Dr. Anton Chuvakin and Ansh Patniakpodcast
  • GCP Podcast Episode 221: BeyondCorp with Robert Sadowski podcast
Tip of the week

Yuri Grinshteyn talks about the new logging feature.

What's something cool you're working on?

Priyanka is working on Building an Unbreakable DevOps Pipeline with Google Cloud.

Mark is working on more videos and will be speaking at Next.

Jaksot(335)

Working with Kubernetes and KRM with Megan O'Keefe

Working with Kubernetes and KRM with Megan O'Keefe

This week on the podcast, we welcome guest Megan O'Keefe to talk about KRM and Kubernetes with your hosts Mark Mirchandani and Anthony Bushong. To start the show, Megan gives us a quick rundown of Kub...

25 Elo 202135min

GKE Turns Six with Anthony Bushong, Gari Singh, and  Kaslin Fields

GKE Turns Six with Anthony Bushong, Gari Singh, and Kaslin Fields

Kaslin Fields and Mark Mirchandani host this week's episode of the podcast as we celebrate one of our favorite Google products, Google Kubernetes Engine! Anthony Bushong and Gari Singh join the party ...

18 Elo 202148min

The Future of Service Networking with Ryan Przybyl

The Future of Service Networking with Ryan Przybyl

Guest Ryan Przybyl is back this week to tell hosts Lorin Price and Stephanie Wong more about service networking and what the future holds for the networking field. Picking up from last week, Ryan star...

11 Elo 202142min

Traditional vs. Service Networking with Ryan Przybyl

Traditional vs. Service Networking with Ryan Przybyl

This week on the show, Lorin Price and Stephanie talk about the differences between traditional and service networking with guest Ryan Przybyl. Ryan starts the show telling us how customer needs and a...

3 Elo 202133min

Cloud Logging with Philip O'Toole and Reed Taylor

Cloud Logging with Philip O'Toole and Reed Taylor

Philip O'Toole and Reed Taylor talk with Stephanie and guest host Terry Ryan all about the new features in Google Cloud Logging on this episode of the podcast. Cloud Logging provides users with manage...

28 Heinä 202128min

Secure Software Supply Chain with Nikhil Kaul and Victor Szalvay

Secure Software Supply Chain with Nikhil Kaul and Victor Szalvay

This week on the podcast, hosts Stephanie Wong and Bukola Ayodele speak with Nikhil Kaul and Victor Szalvay about security in the software supply chain. Cloud OnAir will be offering a virtual event o...

21 Heinä 202133min

Cloud Firestore for Users who are new to Firestore

Cloud Firestore for Users who are new to Firestore

Brian Dorsey and Mark Mirchandani are talking intro to Firestore this week with fellow Googler Allison Kornher. Allison, a Cloud Technical Resident, starts the show telling us about the program and ho...

14 Heinä 202135min

Data Analytics Launches with Bruno Aziza and Eric Schmidt

Data Analytics Launches with Bruno Aziza and Eric Schmidt

Stephanie Wong and Jenny Brown are your hosts this week, discussing data analytics with the yin and yang of the field, Bruno Aziza and Eric Schmidt. Our guests introduce us to three new Google offerin...

7 Heinä 202144min

Suosittua kategoriassa Politiikka ja uutiset

uutiscast
aikalisa
rss-ootsa-kuullut-tasta
politiikan-puskaradio
ootsa-kuullut-tasta-2
tervo-halme
viisupodi
rss-vaalirankkurit-podcast
rss-podme-livebox
rss-asiastudio
rikosmyytit
the-ulkopolitist
et-sa-noin-voi-sanoo-esittaa
otetaan-yhdet
io-techin-tekniikkapodcast
linda-maria
radio-antro
rss-sanna-ukkola-show-verkkouutiset
aihe
rss-tasta-on-kyse-ivan-puopolo-verkkouutiset