• Cyber Sentries: AI Insight to Cloud Security

  • By: TruStory FM
  • Podcast
Cyber Sentries: AI Insight to Cloud Security  By  cover art

Cyber Sentries: AI Insight to Cloud Security

By: TruStory FM
  • Summary

  • Dive deep into AI's accelerating role in securing cloud environments to protect applications and data. In each episode, we showcase its potential to transform our approach to security in the face of an increasingly complex threat landscape. Tune in as we illuminate the complexities at the intersection of AI and security, a space where innovation meets continuous vigilance.
    © TruStory FM
    Show more Show less
Episodes
  • AI Revolution in DevSecOps: Insights from John Bush
    May 8 2024

    Unlocking the Power of AI in DevSecOps

    In this episode of Cyber Sentries, host John Richards sits down with John Bush, solutions architect at GitLab, to explore how artificial intelligence is transforming the day-to-day lives of developers. Bush, who has been coding since childhood, shares his insights on how AI is becoming embedded into every aspect of the DevSecOps pipeline, from writing code to identifying and remediating security vulnerabilities.

    John and Bush dive deep into GitLab's AI-powered features, collectively known as Duo, which are sprinkled throughout the software development process. They discuss how these features enhance productivity, automate monotonous tasks, and provide valuable insights to both developers and business users alike. Bush also sheds light on the importance of human oversight in the AI-assisted development process, emphasizing the need for thorough code reviews and security scans.

    Questions we answer in this episode:

    • How is AI changing the daily work of developers?
    • What are some real-world use cases for AI in the DevSecOps pipeline?
    • How can organizations ensure the security and reliability of AI-generated code?

    Key Takeaways:

    • AI is becoming an integral part of the entire software development lifecycle
    • Developers must still carefully review and vet AI-generated code before deployment
    • GitLab's AI gateway allows routing requests to the most appropriate AI models

    Bush provides a fascinating look at the evolution of DevSecOps, stressing the importance of considering security throughout the development process rather than as an afterthought. He explains how GitLab's AI-powered features, such as vulnerability scanning and automated remediation, help developers efficiently identify and fix security issues early on, saving time and resources in the long run.

    This episode is a must-listen for anyone interested in the cutting-edge intersection of AI and DevSecOps. Whether you're a seasoned developer, a security professional, or simply curious about the future of software development, you'll come away with valuable insights and a clearer understanding of how AI is revolutionizing the industry.Episode Notes

    Links & Notes

    • Find John Bush on LinkedIn
    • Find John Bush on X
    • Try GitLab Duo
    • Learn more about Paladin Cloud
    • Got a question? Ask us here!
    • (00:00) - Welcome to Cyber Sentries
    • (00:58) - About John Bush
    • (03:58) - Moving to GitLab
    • (05:30) - Solution Architects
    • (06:40) - Duos AI Solutions
    • (10:26) - Context
    • (12:17) - Switching Models
    • (13:58) - Best Practices
    • (17:51) - Policy Capability
    • (22:37) - Remediate the Vulnerabilities
    • (23:59) - Dev Sec Ops in This Ecosystem
    • (26:21) - Organization Approaches
    • (28:55) - Level of Knowledge Required
    • (31:09) - Finding John
    • (32:14) - Wrap Up
    Show more Show less
    34 mins
  • Top Cybersecurity Trends leveraging AI with Industry Insider Mike Crowe
    Apr 10 2024

    On this episode, Paladin Cloud’s CEO and co-founder Dan Deeney steps into John Richards’ shoes to play host! He welcomes cybersecurity veteran Mike Crowe to the show. With over 30 years of experience as CIO of Colgate-Palmolive, Mike provides unique insight into the evolution of threats, strategies for defense, and trends that keep CISO’s up at night.

    Dan and Mike explore the increasingly complex threat landscape companies face today. From expanding digital footprints and geopolitical instability empowering nation-state attacks, the challenge grows for security teams. However, new tools also emerge to help lighten the load, such as automation that prioritizes risks and enables efficient remediation across global organizations.

    The conversation dives into specific trends like AI and how guardrails must develop alongside new capabilities. Open source models offer both risks and opportunities when thoughtfully incorporated into private LLMs. Throughout, Mike stresses finding what you don't know through proactive testing as the best way to stay ahead of attackers.

    Questions we answer in this episode:

    • What are the top threats keeping CISOs up at night?
    • How can security and DevOps teams better collaborate to reduce risks?

    Key Takeaways:

    • Continually evolve defenses as the threat landscape grows ever more complex
    • Automation and integration are critical to managing overwhelming workloads
    • Challenge your security assumptions through ethical offensive testing

    With Mike's wealth of practical experience, this episode provides valuable strategic perspective on cybersecurity that both new and seasoned professionals can apply to strengthening their own organizations' posture. Listeners will gain insights on current realities and where the industry is heading to stay ahead of evolving dangers.


    Links & Notes

    • Learn more about Paladin Cloud
    • Got a question? Ask us here!
    • (00:00) - Welcome to Cyber Sentries
    • (00:23) - Paladin Cloud CEO Dan Deeney Talks With Mike Crowe
    • (00:51) - Meet Mike Crowe
    • (02:01) - Overall Threat Landscape’s Evolution
    • (03:55) - Example Threat
    • (05:44) - AI
    • (08:47) - Open Source
    • (10:18) - Trends and Strategies in Defense
    • (12:04) - Risk-Based Prioritization
    • (13:40) - Remediation
    • (16:55) - Ticketing Systems
    • (18:38) - IntegratingTeams
    • (21:57) - Emergence of a Hybrid Team
    • (23:51) - Final Thoughts
    • (27:20) - Wrap Up
    Show more Show less
    29 mins
  • Supercharge Workflows, Secure Data: Build Better Apps with AI
    Mar 13 2024

    Exploring the AI-Powered Future of Cloud Security with Thomas Johnson
    On this episode of Cyber Sentries, host John Richards interviews Thomas Johnson, CTO and co-founder of Multiplayer, about how AI is transforming cloud security. As AI capabilities rapidly advance, Thomas provides insights into how engineering teams can leverage AI to enhance workflows, generate code, and convert basic sketches into functional systems.

    John and Thomas dive into key questions surrounding AI ethics, choosing open source vs proprietary models, and best practices for handling sensitive data. Listen in to hear Thomas' advice for developers looking to integrate AI into their tech stacks.

    Questions we answer in this episode:

    • How are dev teams currently using AI like Copilot?
    • What are the main differences between neural networks and other AI?
    • What security risks exist with generative AI models?

    Key Takeaways

    • Focus on choosing the right problem and having clean, quality data.
    • Open source models offer more control compared to proprietary models.
    • Do not put sensitive data into generative models.

    This fascinating discussion explores how AI is transforming cloud security and development workflows. Thomas provides practical insights into leveraging AI's immense potential while avoiding pitfalls. Whether you're an engineering leader or a developer new to AI, this episode offers an enlightening look at the AI-powered future of tech.
    Links & Notes

    • Multiplayer
    • Learn more about Paladin Cloud
    • Got a question? Ask us here!
    • (00:00) - Welcome to Cyber Sentries
    • (00:22) - Meet Thomas Johnson
    • (01:02) - AI Background
    • (01:58) - Neural Networks
    • (02:47) - Current Buzz
    • (04:43) - Integrating AI
    • (07:41) - Improving AI
    • (10:57) - Think About the Problem and Data
    • (12:25) - If Data Is the Problem
    • (14:00) - Securities and Access
    • (15:50) - RAG Model
    • (17:52) - Open Source v. Proprietary
    • (19:20) - Training and Inference Side
    • (20:35) - Multiplayer
    • (21:43) - Wrap Up
    Show more Show less
    23 mins

What listeners say about Cyber Sentries: AI Insight to Cloud Security

Average customer ratings

Reviews - Please select the tabs below to change the source of reviews.