Cloud Security Podcast by Google  By  cover art

Cloud Security Podcast by Google

By: Anton Chuvakin
  • Summary

  • Cloud Security Podcast by Google focuses on security in the cloud, delivering security from the cloud, and all things at the intersection of security and cloud. Of course, we will also cover what we are doing in Google Cloud to help keep our users' data safe and workloads secure. We’re going to do our best to avoid security theater, and cut to the heart of real security questions and issues. Expect us to question threat models and ask if something is done for the data subject’s benefit or just for organizational benefit. We hope you’ll join us if you’re interested in where technology overlaps with process and bumps up against organizational design. We’re hoping to attract listeners who are happy to hear conventional wisdom questioned, and who are curious about what lessons we can and can’t keep as the world moves from on-premises computing to cloud computing.
    Copyright Google Cloud
    Show more Show less
activate_primeday_promo_in_buybox_DT
Episodes
  • EP182 ITDR: The Missing Piece in Your Security Puzzle or Yet Another Tool to Buy?
    Jul 22 2024

    Guest:

    • Adam Bateman, Co-founder and CEO, Push Security

    Topics:

    • What is Identity Threat Detection and Response (ITDR)? How do you define it?

    • What gets better at a client organization once ITDR is deployed?

    • Do we also need “ISPM” (parallel to CDR/CSPM), and what about CIEM?

    • Workload identity ITDR vs human identity ITDR? Do we need both? Are these the same?

    • What are the alternatives to using ITDR? Can’t SIEM/UEBA help - perhaps with browser logs?

    • What are some of the common types of identity-based threats that ITDR can help detect?

    • What advice would you give to organizations that are considering implementing ITDR?

    Resources:

    • ITDR Definition

    • ITDR blog by Push / solve problem

    Show more Show less
    28 mins
  • EP181 Detection Engineering Deep Dive: From Career Paths to Scaling SOC Teams
    Jul 15 2024

    Guest:

    • Zack Allen, Senior Director of Detection & Research @ Datadog, creator of Detection Engineering Weekly

    Topics:

    • What are the biggest challenges facing detection engineers today?

    • What do you tell people who want to consume detections and not engineer them?

    • What advice would you give to someone who is interested in becoming a detection engineer at her organization?

    • So, what IS a detection engineer? Do you need software skills to be one? How much breadth and depth do you need?

    • What should a SOC leader whose team totally lacks such skills do?

    • You created Detection Engineering Weekly. What motivated you to start this publication, and what are your goals for it? What are the learnings so far?

    • You work for a vendor, so how should customers think of vendor-made vs customer-made detections and their balance?

    • What goes into a backlog for detections and how do you inform it?

    Resources:

    • Video (LinkedIn, YouTube)

    • Zacks’s newsletter: https://detectionengineering.net

    • EP75 How We Scale Detection and Response at Google: Automation, Metrics, Toil

    • EP117 Can a Small Team Adopt an Engineering-Centric Approach to Cybersecurity?

    • The SRE book

    • “Detection Spectrum” blog

    • “Delivering Security at Scale: From Artisanal to Industrial” blog (and this too)

    • “Detection Engineering is Painful — and It Shouldn’t Be (Part 1)” blog series

    • “Detection as Code? No, Detection as COOKING!” blog

    • “Practical Threat Detection Engineering: A hands-on guide to planning, developing, and validating detection capabilities” book

    • SpecterOps blog

    Show more Show less
    31 mins
  • EP180 SOC Crossroads: Optimization vs Transformation - Two Paths for Security Operations Center
    Jul 8 2024

    Guests:

    • Mitchell Rudoll, Specialist Master, Deloitte

    • Alex Glowacki, Senior Consultant, Deloitte

    Topics:

    • The paper outlines two paths for SOCs: optimization or transformation. Can you elaborate on the key differences between these two approaches and the factors that should influence an organization's decision on which path to pursue?

    • The paper also mentions that alert overload is still a major challenge for SOCs. What are some of the practices that work in 2024 for reducing alert fatigue and improving the signal-to-noise ratio in security signals?

    • You also discuss the importance of automation for SOCs. What are some of the key areas where automation can be most beneficial, and what are some of the challenges of implementing automation in SOCs? Automation is often easier said than done…

    • What specific skills and knowledge will be most important for SOC analysts in the future that people didn’t think of 5-10 years ago?

    • Looking ahead, what are your predictions for the future of SOCs? What emerging technologies do you see having the biggest impact on how SOCs operate?

    Resources:

    • “Future of the SOC: Evolution or Optimization —Choose Your Path” paper and highlights blog

    • “Meet the Ghost of SecOps Future” video based on the paper

    • EP58 SOC is Not Dead: How to Grow and Develop Your SOC for Cloud and Beyond

    • The original Autonomic Security Operations (ASO) paper (2021)

    • “New Paper: “Future of the SOC: Forces shaping modern security operations” (Paper 1 of 4)”

    • “New Paper: “Future of the SOC: SOC People — Skills, Not Tiers” (Paper 2 of 4)”

    • “New Paper: “Future Of The SOC: Process Consistency and Creativity: a Delicate Balance” (Paper 3 of 4)”

    Show more Show less
    28 mins

What listeners say about Cloud Security Podcast by Google

Average customer ratings

Reviews - Please select the tabs below to change the source of reviews.