TopPodcast.com
Menu
  • Home
  • Top Charts
  • Top Networks
  • Top Apps
  • Top Independents
  • Top Podfluencers
  • Top Picks
    • Top Business Podcasts
    • Top True Crime Podcasts
    • Top Finance Podcasts
    • Top Comedy Podcasts
    • Top Music Podcasts
    • Top Womens Podcasts
    • Top Kids Podcasts
    • Top Sports Podcasts
    • Top News Podcasts
    • Top Tech Podcasts
    • Top Crypto Podcasts
    • Top Entrepreneurial Podcasts
    • Top Fantasy Sports Podcasts
    • Top Political Podcasts
    • Top Science Podcasts
    • Top Self Help Podcasts
    • Top Sports Betting Podcasts
    • Top Stocks Podcasts
  • Podcast News
  • About Us
  • Podcast Advertising
  • Contact
Not in our directory?
Add Show Here
Podcast Equipment
Center

toppodcastlogoOur TOPPODCAST Picks

  • Comedy
  • Crypto
  • Sports
  • News
  • Politics
  • True Crime
  • Business
  • Finance

Follow Us

toppodcastlogoStay Connected

    View Top 200 Chart
    Back to Rankings Page
    Technology

    Cloud Security Podcast

    Learn Cloud Security in Public Cloud and for AI systems, the unbiased way from CyberSecurity Experts solving challenges at Cloud Scale. We are honest because we are not owned by Cloud Service Provider like AWS, Azure or Google Cloud.

    We aim to make the community learn Cloud Security through community stories from small – Large organisations solving multi-cloud challenges to diving into specific topics of Cloud Security.

    We STREAM interviews on Cloud Security Topics every week on Linkedin, YouTube and Twitter with over 150K people tuning in.

    Advertise

    Copyright: © Cloud Security Podcast Team

    • Apple Podcasts
    • Google Play
    • Spotify

    Latest Episodes:
    Software Supply Chain Controls for Terraform Sep 21, 2023
    Show notes

    Understanding Software Supply Chain security threats for Terraform which has been the default for Infrastructure as Code is important. in this episode Mike Ruth is sharing his experience of working on securing Terraform Cloud/Terraform Enterprise - no open source was harmed in the making of this episode.


    Episode YouTube: ⁠⁠⁠ ⁠⁠⁠⁠⁠Video Link⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠


    Host Twitter: Ashish Rajan (⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠@hashishrajan⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠)

    Guest Socials: Mike's Linkedin (⁠⁠Mike Ruth)

    Podcast Twitter - ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠@CloudSecPod⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠

    If you want to watch videos of this LIVE STREAMED episode and past episodes - Check out our other Cloud Security Social Channels:

    - ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Cloud Security Newsletter ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠

    - ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Cloud Security BootCamp⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠


    Spotify TimeStamp for Interview Question

    (00:00) Introduction

    (03:27) A bit about Mike Ruth

    (04:01) What is Terraform?

    (05:38) Terraform in the context of supply chain

    (07:24) Flavors of Terraform

    (09:07) Deploying Terraform

    (12:25) Terraform Architecture

    (14:48) Research findings that Mike and Oca made

    (25:52) Securing Terraform Architecture

    (28:13) Policy Enforcement

    (29:13) What is a Module?

    (30:15) Security best practices for Terraform Deployment

    (31:53) Learning about Terraform security

    (34:44) Maturity for Terraform

    (37:45) The Fun Questions


    Mike spoke about Terraform Cloud Security Model during the interview.


    See you at the next episode!


    Data Security RoadMap in 2023 Sep 18, 2023
    Show notes

    DSPM or Data Security Posture Management with Yotam Segev from Cyera: Most security teams have known about data challenges in their organization and some of them are put in the too hard to solve right now bucket. Yotam came on the show to talk about who should own and manage data security programs and what can a data security roadmap look like for leaders who are working on the data problem today.


    Episode YouTube: ⁠⁠⁠ ⁠⁠⁠⁠Video Link⁠⁠⁠⁠⁠⁠⁠⁠⁠


    Host Twitter: Ashish Rajan (⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠@hashishrajan⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠)

    Guest Socials: Yotam's Linkedin (⁠Yotam Segev⁠⁠)

    Podcast Twitter - ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠@CloudSecPod⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠

    If you want to watch videos of this LIVE STREAMED episode and past episodes - Check out our other Cloud Security Social Channels:

    - ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Cloud Security Newsletter ⁠⁠⁠⁠⁠⁠⁠⁠⁠

    - ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Cloud Security BootCamp⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠


    Spotify TimeStamp for Interview Question

    (00:00) Introduction

    (04:32) Why is data security getting attention?

    (05:46) How was data security done before?

    (06:43) Cloud native way of managing data

    (07:31) What triggers a data security project?

    (08:35) At what stage should you start data security?

    (10:06) Challenges with starting data security projects

    (13:02) What does success look like?

    (15:02) Does the CISO own data security?

    (16:03) The right skill set for data security


    See you at the next episode!


    The Cloud to Code Dilemma - Let's Talk Sep 09, 2023
    Show notes

    Is it code to cloud or cloud to code with Harshil Parikh from Tromzo: A lot of leaders today face the inevitable question of should i start with the code or the cloud first. Harshil Parikh from Tromzo was kind enough to share his CISO experience on the topic on what each of these are and what can CISOs priortise in their programs.


    Episode YouTube: ⁠⁠⁠ ⁠⁠⁠Video Link⁠⁠⁠⁠⁠⁠⁠⁠


    Host Twitter: Ashish Rajan (⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠@hashishrajan⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠)

    Guest Socials: Harshil's Linkedin (Harshil Parikh⁠)

    Podcast Twitter - ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠@CloudSecPod⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠

    If you want to watch videos of this LIVE STREAMED episode and past episodes - Check out our other Cloud Security Social Channels:

    - ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Cloud Security Newsletter ⁠⁠⁠⁠⁠⁠⁠⁠

    - ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Cloud Security BootCamp⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠


    Spotify TimeStamp for Interview Question

    (00:00) Introduction

    (02:51) Harshil's path into cybersecurity

    (04:30) What is code to cloud?

    (05:19) What is cloud to code?

    (06:29) How was cybersecurity done traditionally?

    (08:28) What should CISOs prioritise?

    (09:43) How different sectors are impacted?

    (10:56) Where should CISOs start?

    (12:30) Application vs Cloud vs Product Security

    (14:44) Is application security becoming cloud security?

    (16:43) What does maturity look like?

    (20:18) The fun questions


    See you at the next episode!


    CISO Perspective: Josh Lemos, CISO of Gitlab Sep 06, 2023
    Show notes

    Josh Lemos former CISO of Block and the current CISO of GitLab comes from a pentester background and made his way to become a CISO. We were lucky enough to interview him during the hacker summer camp on his journey, his experience in AI, takeaway from BH CISO summit and types of CISOs & more. Episode YouTube: ⁠⁠ ⁠⁠⁠Video Link⁠⁠⁠⁠⁠⁠⁠


    Host Twitter: Ashish Rajan (⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠@hashishrajan⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠)

    Guest Socials: Josh's Linkedin (⁠⁠⁠⁠⁠Josh Lemos)

    Podcast Twitter - ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠@CloudSecPod⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠

    If you want to watch videos of this LIVE STREAMED episode and past episodes - Check out our other Cloud Security Social Channels:

    - ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Cloud Security Newsletter ⁠⁠⁠⁠⁠⁠⁠

    - ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Cloud Security BootCamp⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠


    Spotify TimeStamp for Interview Question

    (00:00) Introduction

    (01:47) A bit about Josh Lemos

    (03:48) What does cloud security mean to Josh?

    (04:53) What to look out for with AI/ML?

    (07:03) CISO perspective on AI/ML

    (08:13) What should a CISO roadmap look like in 2023?

    (10:39) Takeaways from BlackHat CISO Summit

    (12:24) CISO for B2B vs B2C

    (13:43) Hardware vs Software Security

    (14:41) Skills needed to become a CISO

    (15:48) What is cloud pentesting?

    (17:20) Fun Questions


    See you at the next episode!


    The Azure Cloud Security Pentesting Skills You NEED! Aug 28, 2023
    Show notes

    Karl Fosaaen, the author of Penetration Testing "Azure for Ethical Hacker" and the VP of Research at NetSPI, came as a guest to share why the penetration Test of a Web Application hosted on Azure Cloud in 2023 is quite different to just a simple/traditional web app pentesting and the skills you need to pentest Azure environments. Cloud Penetration testing is misunderstood to be just config review in Microsoft Azure Cloud just like in AWS and Google Cloud. In this video, we have Karl Fosaaen was kind enough to answer the following questions and methods.


    Episode YouTube: ⁠ ⁠⁠⁠Video Link⁠⁠⁠⁠⁠⁠


    Host Twitter: Ashish Rajan (⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠@hashishrajan⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠)

    Guest Socials: Karl's Linkedin (⁠⁠⁠⁠Karl Fosaaen)

    Podcast Twitter - ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠@CloudSecPod⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠

    If you want to watch videos of this LIVE STREAMED episode and past episodes - Check out our other Cloud Security Social Channels:

    - ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Cloud Security Newsletter ⁠⁠⁠⁠⁠⁠

    - ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Cloud Security BootCamp⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠


    Spotify TimeStamp for Interview Question

    (00:00) Introduction

    (02:32) A bit about Karl Fosaaen

    (03:26) How is pentesting in Azure different from AWS?

    (04:35) Cloud pentesting is not just config review

    (05:42) Cloud pentesting vs Network pentesting

    (06:25) Cloud Pentest - Next evolution of Network Pentest?

    (07:14) Boundaries of cloud pentesting

    (09:07) Do you need prior approval for Azure Pentest?

    (09:32) Working with Microsoft Security Research Centre

    (10:35) Process of pentesting in Azure

    (11:57) Low hanging fruits to start off with!

    (13:37) How to persist and escalate?

    (14:58) Managed Identities in Azure

    (16:23) Impact of peripheral services to Azure

    (18:33) Scale of deployments in Azure

    (21:02) Getting access to permissions for Azure Entra

    (22:36) Scaling your pentest tools

    (23:34) TTPs or Matrix you can use

    (25:30) Getting into Azure Pentesting

    (26:56) Transitioning from network to azure pentesting

    (28:37) Connect with Karl


    Resources:

    The NetSPI Blog to learn more about offensive cloud security

    Mitre - Cloud Attack Matrix

    ATRM

    Karl's Book - Penetration Testing Azure for Ethical Hackers: Develop practical skills to perform pentesting and risk assessment of Microsoft Azure environments

    See you at the next episode!


    How to detect software supply chain attacks with Honeytokens? Aug 25, 2023
    Show notes

    Can Honeytokens be used in your supply chain security? Turns out we can! We spoke to Mackenzie Jackson ( @advocatemack ) from @GitGuardian about the benefits of using Honeytokens, which organisations can benefit from them and whats involved in deploying them and next steps once they are triggered.


    Episode YouTube: ⁠ ⁠⁠Video Link⁠⁠⁠⁠⁠


    Host Twitter: Ashish Rajan (⁠⁠⁠⁠⁠⁠⁠⁠⁠@hashishrajan⁠⁠⁠⁠⁠⁠⁠⁠⁠)

    Guest Socials: Mackenzie Jackson (⁠ @advocatemack ⁠)

    Podcast Twitter - ⁠⁠⁠⁠⁠⁠⁠⁠⁠@CloudSecPod⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠

    If you want to watch videos of this LIVE STREAMED episode and past episodes - Check out our other Cloud Security Social Channels:

    - ⁠⁠⁠⁠⁠⁠⁠⁠⁠Cloud Security Newsletter ⁠⁠⁠⁠⁠

    - ⁠⁠⁠⁠⁠⁠⁠⁠⁠Cloud Security BootCamp⁠⁠⁠⁠⁠⁠⁠⁠⁠


    Spotify TimeStamp for Interview Question

    (00:00) Introduction (02:01) A bit about Mackenzie Jackson (02:37) What are Honeytokens? (03:35) Traditional threat detection (05:29) Honeytoken in action (07:02) Deployments for Honeytokens (09:46) Role of Honeytoken in Supply Chain (11:02) Deploying and managing Honeytokens (13:12) Incident response with Honeytokens (15:01) What companies should use Honeytokens? (16:05) What if the key is deleted !


    Resources:

    You can find out more about Honeytokens & GitGuardian here!

    See you at the next episode!


    Google Cloud Security Pentesting Methodology Aug 24, 2023
    Show notes

    Penetration Test of a Web Application hosted on Google Cloud in 2023 is quite different to just a simple/traditional web app pentesting.
    Cloud Penetration testing is misunderstood to be just config review in Google Cloud. In this video, we have Kat Traxler who is a cloud security researcher, SANS Course author and has worked in the Google Cloud space to even build open source tools that can be used to perform cloud security testing.


    Episode YouTube: ⁠ ⁠⁠⁠Video Link⁠⁠⁠⁠⁠⁠


    Host Twitter: Ashish Rajan (⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠@hashishrajan⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠)

    Guest Socials: Kat Traxler (⁠⁠ Kat Traxler's Linkedin ⁠⁠)

    Podcast Twitter - ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠@CloudSecPod⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠

    If you want to watch videos of this LIVE STREAMED episode and past episodes - Check out our other Cloud Security Social Channels:

    - ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Cloud Security Newsletter ⁠⁠⁠⁠⁠⁠

    - ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Cloud Security BootCamp⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠


    Spotify TimeStamp for Interview Question

    (00:00) Introduction

    (04:17) A bit about Kat Traxler

    (05:56) Pentesting in GCP vs AWS

    (08:07) Config review vs cloud pentesting

    (09:24) Cloud pentest vs Traditional Pentest

    (10:28) Starting to do GCP pentesting

    (12:35) Common services used in GCP

    (14:10) Low hanging fruits in GCP

    (15:25) What are default service accounts?

    (17:52) You may already have google cloud

    (20:00) How to persist access in Google Cloud?

    (21:56) Shared responsibility in GCP

    (24:01) Common TTPs in GCP

    (28:05) Is there SSRF in GCP?

    (30:19) Open source tools for cloud pentest

    (33:59) Fun questions


    Resources that Kat shared during the episode

    • The Google Cloud Adoption Framework
    • Google Cloud Org Policy Bot
    • GCAT Threat Horizons Report
    • Pacu
    • Microburst
    • DeRF
    • Stratus

    See you at the next episode!


    Network Pentest 2.0 : The Cloud Pentest Revolution Aug 22, 2023
    Show notes

    Cloud Security Pentest is not just a Cloud configuration review ! Blackhat 2023 & Defcon 31 conversations included Cloud Security Podcast asking traditional and experienced pentesters about their opinion on cloud security pentesting and the divide was between it being a config review or a product pentest. For this episode we have Seth Art from Bishop Fox to clarify the myth.


    Episode YouTube: ⁠ ⁠Video Link⁠⁠⁠⁠


    Host Twitter: Ashish Rajan (⁠⁠⁠⁠⁠⁠⁠⁠@hashishrajan⁠⁠⁠⁠⁠⁠⁠⁠)

    Guest Socials: Seth Art's Linkedin ⁠⁠⁠⁠⁠⁠(⁠⁠Seth Art Linkedin)

    Podcast Twitter - ⁠⁠⁠⁠⁠⁠⁠⁠@CloudSecPod⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠

    If you want to watch videos of this LIVE STREAMED episode and past episodes - Check out our other Cloud Security Social Channels:

    - ⁠⁠⁠⁠⁠⁠⁠⁠Cloud Security Newsletter ⁠⁠⁠⁠

    - ⁠⁠⁠⁠⁠⁠⁠⁠Cloud Security BootCamp⁠⁠⁠⁠⁠⁠⁠⁠


    Spotify TimeStamp for Interview Question


    (00:00) Introduction

    (05:17) A bit about Seth Art

    (06:44) Network vs Infrastructure Security Pentest

    (08:00) Internal vs External Network Security Pentest

    (10:26) Assumed vs Objective Based Pentest

    (12:51) Is network pentest dead?

    (14:04) How to approach network and cloud pentests?

    (20:12) Cloud pentest is more than config review

    (24:04) Examples of cloud pentest findings

    (30:07) Scaling pentests in cloud

    (32:25) Traditional skillsets to cloud pentest

    (36:58) A bit about cloudfoxable

    (39:31) Cloud pentest and Zero Trust

    (40:54) Staying ahead of CSP releases

    (44:31) Third party shared responsibility

    (47:35) 1 fun question

    (48:36) Boundary for cloud pentest

    (52:21) Last 2 fun questions


    These are some of the resources that Seth shared during the episode along with the tools he has created

    • ⁠CloudFox
    • CloudFoxable
    • flAWS
    • flAWS 2
    • iamvulnerable
    • Cloud Goat

    See you at the next episode!


    Google Cloud Hacking Red Team Perspective! Aug 02, 2023
    Show notes

    Google cloud hacking or pentesting is very different to other popular cloud service providers like aws or azure. In this episode we had Shannon McHale (Mandiant now Google Cloud) to talk about how she approaches pentesting a google cloud environment and how you can too.


    Episode YouTube: ⁠ Video Link⁠⁠⁠


    Host Twitter: Ashish Rajan (⁠⁠⁠⁠⁠⁠⁠@hashishrajan⁠⁠⁠⁠⁠⁠⁠)

    Guest Socials: Shannon McHale's Linkedin ⁠⁠⁠⁠(⁠Shannon's Linkedin⁠)

    Podcast Twitter - ⁠⁠⁠⁠⁠⁠⁠@CloudSecPod⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠

    If you want to watch videos of this LIVE STREAMED episode and past episodes - Check out our other Cloud Security Social Channels:

    - ⁠⁠⁠⁠⁠⁠⁠Cloud Security Newsletter ⁠⁠⁠

    - ⁠⁠⁠⁠⁠⁠⁠Cloud Security BootCamp⁠⁠⁠⁠⁠⁠⁠


    Spotify TimeStamp for Interview Questions

    A word from our sponsors - you can visit them on ⁠⁠⁠⁠⁠⁠⁠snyk.io/csp⁠⁠⁠⁠⁠⁠⁠


    (00:00) Introduction

    (03:38) A bit about Shannon McHale

    (05:31) What is Red Teaming?

    (06:42) Red Teaming in the Cloud

    (07:50) Methodology behind Red Teaming

    (09:32) Pentesting in Goole Cloud

    (10:28) Low hanging fruits in Google Cloud

    (14:36) GCP storage

    (16:09) Red Team Assessment in Google Cloud

    (17:08) The importance of Metadata

    (18:17) Recommendations for Blue Teamers

    (22:03) How to get started in Red Teaming?

    (26:06) Tools or Research that stood out for Shannon

    (27:42) GCP Resources that can be exposed

    (29:15) Resources to learn about Cloud Red Teaming

    (30:37) The Fun Questions


    These are some of the resources Shannon found helpful to learn about Pentesting in Cloud along with her own GitHub link

    • HackTricks for GCP
    • Littlehack3r

    See you at the next episode!


    Cloud Security in the BoardRoom - CISO Perspective with Phil Venables Jul 30, 2023
    Show notes

    CISOs in organizations that are going through digital transformation have a responsibility of educating the board on how Cloud Security is measured and improved on to manage the risk posture of the organization. We had Phil Venables, CISO of Google Cloud share from his experience of serving as a CISO for so many years on how to best share cybersecurity and cloud security metrics with the c-suite and the board.


    ⁠⁠Episode YouTube Video Link⁠⁠


    Host Twitter: Ashish Rajan (⁠⁠⁠⁠⁠⁠@hashishrajan⁠⁠⁠⁠⁠⁠)

    Guest Socials: Phil Venable's Linkedin ⁠⁠(Phil's Linkedin)

    Podcast Twitter - ⁠⁠⁠⁠⁠⁠@CloudSecPod⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠

    If you want to watch videos of this LIVE STREAMED episode and past episodes - Check out our other Cloud Security Social Channels:

    - ⁠⁠⁠⁠⁠⁠Cloud Security Newsletter ⁠⁠

    - ⁠⁠⁠⁠⁠⁠Cloud Security BootCamp⁠⁠⁠⁠⁠⁠


    Spotify TimeStamp for Interview Questions

    A word from our sponsors - you can visit them on ⁠⁠⁠⁠⁠⁠snyk.io/csp⁠⁠⁠⁠⁠⁠


    (00:00) Introduction

    (03:02) A bit about Phil Venables

    (04:17) Are boards talking about Cloud Security?

    (05:47) Security Metrics to show to the board

    (07:48) Are Security Metrics seasonal?

    (10:23) Aligning security metrics to business goals

    (13:59) Educating the board about Cloud Security

    (15:50) CISOs should be braver

    (18:42) 3 Security Metrics to start with

    (25:25) Setting the risk appetite as a organisation

    (27:11) Essential attributes for a CISO

    (29:14) What makes a successful security program?

    (32:18) Skillsets required to become a CISO

    (36:49) The fun questions


    See you at the next episode!



    Previous 1 12 13 14 15 16 36 Next

    Related Podcasts

    Reply All

    1

    Reply All Games & Hobbies
    Inside VR & AR

    2

    Inside VR & AR Gadgets
    Note to Self

    3

    Note to Self News
    BrainStuff

    4

    BrainStuff Natural Sciences
    This Week in Tech (Audio)

    5

    This Week in Tech (Audio) News
    Hands-On Tech (Audio)

    6

    Hands-On Tech (Audio) Technology
    footer-logo

    Contact Us

    Toll Free: 844-670-7747

    Links

    • Home
    • Top Charts
    • Networks
    • Apps
    • Independents Podcasts
    • Podcast Advertising
    • Podcast News
    • Contact Us
    • About Us
    • Analytics & Insights

    Stay Connected

      Privacy, Terms of Use & Our Code of Ethics Protecting Content Creators Copyrights