An AWS Centric View of Google Cloud Identity

An AWS Centric View of Google Cloud Identity

Cloud Security Podcast - Yes - AWS Cloud folks are starting to look after Google Cloud security now in a lot of organisations. Caleb Tennis from Sequoia Capital joins us to share his personal experience on how from being an AWS professional he started looking after Google Cloud Identity and how to secure their Google Cloud Environment.




Episode YouTube Video - https://youtu.be/k1FrVEe1tGc


Host Twitter: Ashish Rajan (⁠⁠⁠⁠⁠@hashishrajan⁠⁠⁠⁠⁠)

Guest Socials: Caleb Tennis's Linkedin Caleb Tennis⁠

Podcast Twitter - ⁠⁠⁠⁠⁠@CloudSecPod⁠⁠⁠⁠⁠ ⁠⁠⁠⁠⁠@CloudSecureNews⁠⁠⁠⁠⁠

If you want to watch videos of this LIVE STREAMED episode and past episodes - Check out our other Cloud Security Social Channels:

- ⁠⁠⁠⁠Cloud Security Newsletter

- ⁠⁠⁠⁠⁠Cloud Security BootCamp⁠⁠⁠⁠⁠


Spotify TimeStamp for Interview Questions

A word from our sponsors - you can visit them on ⁠⁠⁠⁠⁠snyk.io/csp⁠⁠⁠⁠⁠

  • (00:00) Introduction
  • (04:51) A bit about Caleb Tennis
  • (07:27) Caleb's first impressions of GCP
  • (08:53) Google Cloud Blind Spots
  • (12:35) Where to start security GCP?
  • (15:23) Managing identities in GCP
  • (20:17) Temporary Credential in Google Cloud
  • (24:54) Managing identity with scale
  • (29:59) Is there enough Google Cloud Usage
  • (31:14) Google Cloud logging and monitoring
  • (35:48) What does Scale look like in Google Cloud?
  • (37:53) Hardest things to learn in GCP
  • (41:08) Learning GCP Security
  • (42:58) The Fun Section

  • See you at the next episode!


    Episoder(344)

    Solving Prompt Injection & Shadow AI for AI Malware

    Solving Prompt Injection & Shadow AI for AI Malware

    Are AI agents functioning like adversarial malware inside your network? In this episode of the Cloud Security Podcast, Ashish sits down with Jasson Casey, Co-founder and CEO of Beyond Identity, to spe...

    7 Apr 36min

    Browser Security Explained: Consent Phishing, "Click Fix" Attacks & The Limits of EDR

    Browser Security Explained: Consent Phishing, "Click Fix" Attacks & The Limits of EDR

    Is your security team treating your Identity Provider (IDP) like a firewall? In this episode, Adam Bateman (CEO & Co-founder of Push Security) explains why that's a dangerous mistake and how modern at...

    10 Mar 46min

    Is AI Hallucinations a Myth and the Real Threat from AI

    Is AI Hallucinations a Myth and the Real Threat from AI

    Are attackers really using AI to run end-to-end cyber campaigns? In this episode, Edward Wu (Founder and CEO, DropzoneAI) joins Ashish to separate the hype from reality when it comes to AI-driven atta...

    6 Mar 40min

    Why AI Infrastructure is Harder to Secure Than Cloud

    Why AI Infrastructure is Harder to Secure Than Cloud

    Is AI security just "Cloud Security 2.0"? Toni De La Fuente, creator of the open-source tool Prowler, joins Ashish to explain why securing AI workloads requires a fundamentally different approach than...

    20 Feb 34min

    How Attackers Bypass AI Guardrails with Natural Language

    How Attackers Bypass AI Guardrails with Natural Language

    In the world of Generative AI, natural language has become the new executable. Attackers no longer need complex code to breach your systems, sometimes, asking for a "poem" is enough to steal your pass...

    10 Feb 46min

    Vulnerability Management vs. Exposure Management

    Vulnerability Management vs. Exposure Management

    In this episode, Brad Hibbert (COO & Chief Strategy Officer at Brinqa) joins Ashish to explain why traditional risk-based vulnerability management (RBVM) is no longer enough in a cloud-first world .We...

    6 Feb 39min

    Is Developer Friendly AI Security Possible with MCP & Shadow AI

    Is Developer Friendly AI Security Possible with MCP & Shadow AI

    Is "developer-friendly" AI security actually possible? In this episode, Bryan Woolgar-O'Neil (CTO & Co-founder of Harmonic Security) joins Ashish to dismantle the traditional "block everything" approa...

    5 Feb 1h 3min

    Why AI Can't Replace Detection Engineers: Build vs. Buy & The Future of SOC

    Why AI Can't Replace Detection Engineers: Build vs. Buy & The Future of SOC

    Is the AI SOC a reality, or just vendor hype? In this episode, Antoinette Stevens (Principal Security Engineer at Ramp) joins Ashish to dissect the true state of AI in detection engineering.Antoinette...

    21 Jan 52min

    Populært innen Teknologi

    lydartikler-fra-aftenposten
    romkapsel
    teknisk-sett
    tomprat-med-gunnar-tjomlid
    rss-impressions-2
    shifter
    rss-ki-praten
    fornybaren
    rss-alt-vi-kan
    rss-ai-forklart
    smart-forklart
    nasjonal-sikkerhetsmyndighet-nsm
    elektropodden
    pedagogisk-intelligens
    energi-og-klima
    hans-petter-og-co
    rss-teknologioptimistene-energibransjens-it-podcast
    rss-praktisk-proptech
    rss-startup
    rss-polypod