An AWS Centric View of Google Cloud Identity

An AWS Centric View of Google Cloud Identity

Cloud Security Podcast - Yes - AWS Cloud folks are starting to look after Google Cloud security now in a lot of organisations. Caleb Tennis from Sequoia Capital joins us to share his personal experience on how from being an AWS professional he started looking after Google Cloud Identity and how to secure their Google Cloud Environment.




Episode YouTube Video - https://youtu.be/k1FrVEe1tGc


Host Twitter: Ashish Rajan (⁠⁠⁠⁠⁠@hashishrajan⁠⁠⁠⁠⁠)

Guest Socials: Caleb Tennis's Linkedin Caleb Tennis⁠

Podcast Twitter - ⁠⁠⁠⁠⁠@CloudSecPod⁠⁠⁠⁠⁠ ⁠⁠⁠⁠⁠@CloudSecureNews⁠⁠⁠⁠⁠

If you want to watch videos of this LIVE STREAMED episode and past episodes - Check out our other Cloud Security Social Channels:

- ⁠⁠⁠⁠⁠Cloud Security Newsletter ⁠

- ⁠⁠⁠⁠⁠Cloud Security BootCamp⁠⁠⁠⁠⁠


Spotify TimeStamp for Interview Questions

A word from our sponsors - you can visit them on ⁠⁠⁠⁠⁠snyk.io/csp⁠⁠⁠⁠⁠

  • (00:00) Introduction
  • (04:51) A bit about Caleb Tennis
  • (07:27) Caleb's first impressions of GCP
  • (08:53) Google Cloud Blind Spots
  • (12:35) Where to start security GCP?
  • (15:23) Managing identities in GCP
  • (20:17) Temporary Credential in Google Cloud
  • (24:54) Managing identity with scale
  • (29:59) Is there enough Google Cloud Usage
  • (31:14) Google Cloud logging and monitoring
  • (35:48) What does Scale look like in Google Cloud?
  • (37:53) Hardest things to learn in GCP
  • (41:08) Learning GCP Security
  • (42:58) The Fun Section

  • See you at the next episode!


    Det här avsnittet är hämtat från ett öppet RSS-flöde och publiceras inte av Podme. Det kan innehålla reklam.

    Avsnitt(360)

    Securing Millions of AI-built Apps: How Lovable Defends Against Insider Threats

    Securing Millions of AI-built Apps: How Lovable Defends Against Insider Threats

    Empowering non-technical users to build production-grade applications requires a proactive, secure-by-design architecture. In this episode, Ashish sits down with Marcus Hallberg and Samuel Kelemen, se...

    11 Sep 1h 10min

    Why AI Won't Replace Your SOC: Federated Data & APEX Framework

    Why AI Won't Replace Your SOC: Federated Data & APEX Framework

    Hash values, IP addresses, and domains are virtually useless as primary detection mechanisms in the era of AI-driven polymorphic malware and short-lived phishing kits. If your detection strategy is st...

    1 Sep 37min

    The "Hunt First" AI Security Strategy

    The "Hunt First" AI Security Strategy

    Did you know that 82% of all intrusions don't involve any sort of malware, and AI-augmented attacks are up 89% year over year? If your security operations team is solely focused on reacting to known-b...

    25 Aug 46min

    Shadow AI & Sandbox Escapes: Why You Need an Agentic Control Plane?

    Shadow AI & Sandbox Escapes: Why You Need an Agentic Control Plane?

    When Claude Cowork hits a roadblock, it doesn't give up, it writes a custom Python script and downloads an untrusted NPM package just to bypass its restrictions and finish its goal. Are your security ...

    18 Aug 32min

    How Adobe Uses AI Agents for building a WAF Pipeline?

    How Adobe Uses AI Agents for building a WAF Pipeline?

    When vulnerability disclosures shrink the wild exploit window down to less than 24 hours (or even minutes), traditional manual patching and WAF rule creation simply cannot keep up.In this episode, Ash...

    4 Aug 47min

    Why Runtime Agents Are Replacing Static Posture Checks

    Why Runtime Agents Are Replacing Static Posture Checks

    The attack window from the discovery of a vulnerability to its exploitation has shrunk to less than 24 hours and sometimes down to just 25 minutes. Is your security team prepared for the speed of AI-d...

    28 Juli 44min

    The Hidden Cost of BlackBox AI: Bridging Cloud and Code Security

    The Hidden Cost of BlackBox AI: Bridging Cloud and Code Security

    Traditional SCA and SAST tools are notorious for drowning security teams in false positives, historically flagging nine out of ten alerts incorrectly. But while generative AI seems like a magic bullet...

    9 Juli 42min

    Who Governs Your AI Agents? Identity, Offboarding & Open Standards

    Who Governs Your AI Agents? Identity, Offboarding & Open Standards

    Are overprivileged AI agents the biggest emerging threat in cybersecurity? In a recent high-profile attack, a vibe-coding company had its entire source code stolen because an attacker exploited a long...

    2 Juli 34min

    Populärt inom Teknik

    natets-morka-sida
    uppgang-och-fall
    elbilsveckan
    bilar-med-sladd
    market-makers
    rss-laddstationen-med-elbilen-i-sverige
    skogsforum-podcast
    rss-en-ai-till-kaffet
    rss-elektrikerpodden
    rss-technokratin
    rss-ai-med-jonas-benjamin
    rss-uppgang-och-fall
    rss-sakerhetspodcasten
    rss-veckans-ai
    rss-snacka-om-ai
    bli-saker-podden
    developers-mer-an-bara-kod
    rss-powerboat-sverige-podcast
    rss-it-sakerhetspodden
    rss-fabriken-2