HOW TO BUILD SECURE ENVIRONMENTS IN MICROSOFT AZURE - NICHOLAS HUGHES

HOW TO BUILD SECURE ENVIRONMENTS IN MICROSOFT AZURE - NICHOLAS HUGHES

In this episode of the Virtual Coffee with Ashish edition, we spoke with Nicholas Hughes, CEO of EITR Technologies.

In this episode, Nicholas & Ashish spoke about

  • Your path into CyberSecurity
  • What does Cloud Security mean for you?
  • Where does one start when it comes to starting today in Azure?
  • What’s the highest level of segregation that one can have in Azure?
  • What does an Azure AD Tenant & Azure Subscription look like?
  • What is a Resource Group in Azure and how is it different to the one in AWS?
  • Hierarchical and Name space structure of Azure Resources
  • Why would you have a Resource Group per subscription instead of all Resource Group in one subscription?
  • Is Account/Subscription the blast radius?
  • What does blast radius mean?
  • How do you manage Compliance and Access to multiple Subscription/
  • What is Management Groups in Azure and do subscription live in there?
  • How would you structure Management Groups in a business hierarchy?
  • How does policies get applied to multiple subscriptions using Management Groups?
  • Do you share identity between subscriptions?
  • How does Identity work in Enterprise, where shared identity is the only way?
  • How does Account structure differentiate between a Startup, SMB vs Enterprise?
  • What kind of capability exist for cost?
  • What does Account Vending look like in Azure?
  • How does Azure Policy works?

ShowNotes and Episode Transcript on www.cloudsecuritypodcast.tv

Twitter - @kaizenteq @hashishrajan

If you want to watch videos of this and previous episodes:

- Twitch Channel: https://lnkd.in/gxhFrqw

- Youtube Channel: https://lnkd.in/gUHqSai

Avsnitt(343)

Browser Security Explained: Consent Phishing, "Click Fix" Attacks & The Limits of EDR

Browser Security Explained: Consent Phishing, "Click Fix" Attacks & The Limits of EDR

Is your security team treating your Identity Provider (IDP) like a firewall? In this episode, Adam Bateman (CEO & Co-founder of Push Security) explains why that's a dangerous mistake and how modern at...

10 Mars 46min

Is AI Hallucinations a Myth and the Real Threat from AI

Is AI Hallucinations a Myth and the Real Threat from AI

Are attackers really using AI to run end-to-end cyber campaigns? In this episode, Edward Wu (Founder and CEO, DropzoneAI) joins Ashish to separate the hype from reality when it comes to AI-driven atta...

6 Mars 40min

Why AI Infrastructure is Harder to Secure Than Cloud

Why AI Infrastructure is Harder to Secure Than Cloud

Is AI security just "Cloud Security 2.0"? Toni De La Fuente, creator of the open-source tool Prowler, joins Ashish to explain why securing AI workloads requires a fundamentally different approach than...

20 Feb 34min

How Attackers Bypass AI Guardrails with Natural Language

How Attackers Bypass AI Guardrails with Natural Language

In the world of Generative AI, natural language has become the new executable. Attackers no longer need complex code to breach your systems, sometimes, asking for a "poem" is enough to steal your pass...

10 Feb 46min

Vulnerability Management vs. Exposure Management

Vulnerability Management vs. Exposure Management

In this episode, Brad Hibbert (COO & Chief Strategy Officer at Brinqa) joins Ashish to explain why traditional risk-based vulnerability management (RBVM) is no longer enough in a cloud-first world .We...

6 Feb 39min

Is Developer Friendly AI Security Possible with MCP & Shadow AI

Is Developer Friendly AI Security Possible with MCP & Shadow AI

Is "developer-friendly" AI security actually possible? In this episode, Bryan Woolgar-O'Neil (CTO & Co-founder of Harmonic Security) joins Ashish to dismantle the traditional "block everything" approa...

5 Feb 1h 3min

Why AI Can't Replace Detection Engineers: Build vs. Buy & The Future of SOC

Why AI Can't Replace Detection Engineers: Build vs. Buy & The Future of SOC

Is the AI SOC a reality, or just vendor hype? In this episode, Antoinette Stevens (Principal Security Engineer at Ramp) joins Ashish to dissect the true state of AI in detection engineering.Antoinette...

21 Jan 52min

AI Vulnerability Management: Why You Can't Patch a Neural Network

AI Vulnerability Management: Why You Can't Patch a Neural Network

Traditional vulnerability management is simple: find the flaw, patch it, and verify the fix. But what happens when the "asset" is a neural network that has learned something ethically wrong? In this e...

13 Jan 41min

Populärt inom Teknik

uppgang-och-fall
elbilsveckan
market-makers
rss-elektrikerpodden
bilar-med-sladd
har-vi-akt-till-mars-an
rss-technokratin
natets-morka-sida
skogsforum-podcast
rss-veckans-ai
rss-laddstationen-med-elbilen-i-sverige
gubbar-som-tjotar-om-bilar
hej-bruksbil
rss-en-ai-till-kaffet
teknikveckan
rss-sakerhetspodcasten
rss-powerboat-sverige-podcast
bli-saker-podden
rss-militarsnack
rss-upplyst-entreprenordirektor