TechRiot.io

Cloud Security Podcast

Learn Cloud Security in Public Cloud and for AI systems, the unbiased way from CyberSecurity Experts solving challenges at Cloud Scale. We are honest because we are not owned by Cloud Service Provider like AWS, Azure or Google Cloud. We aim to make the community learn Cloud Security through community stories from small - Large organisations solving multi-cloud challenges to diving into specific topics of Cloud Security. We STREAM interviews on Cloud Security Topics every week on Linkedin, YouTube and Twitter with over 150K people tuning in.

Author

TechRiot.io

Category

Technology

Podcast website

www.cloudsecuritypodcast.tv

Latest episode

Jul 9, 2026

Where to listen?

Podcasts in the app Replaio Radio Coming soon

Podcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts

Get it on Google Play Install for free Android 5M+ downloads · 4.8 rating iOS soon

Episodes

AI is already breaking the Silos Between AppSec & CloudSec 04.11.2025

The silos between Application Security and Cloud Security are officially breaking down, and AI is the primary catalyst. In this episode, Tejas Dakve, Senior Manager, Application Security, Bloomberg Industry Group and Aditya Patel, VP of Cybersecurity Architecture discuss how the AI-driven landscape is forcing a fundamental change in how we secure our applications and infrastructure. The conversati...

AI Agents for SOC: Hype Curve vs. Measurable ROI 28.10.2025

Is the AI SOC analyst just hype, or is there measurable ROI? We spoke to Edward Wu , founder of Dropzone AI about this and he shared insights from a recent Cloud Security Alliance (CSA) benchmark report that quantified the impact of AI augmentation on SOC teams. The study revealed significant improvements in speed (45-60% faster investigations) and completeness, even for analysts using the tech fo...

Can You Build an AI SOC with Claude Code? The Reality vs. Hype 21.10.2025

Can you just use Claude Code or another LLM to "vibe code" your way into building an AI SOC? In this episode, Ariful Huq , Co-Founder and Head of Product at Exaforce spoke about the reality being far more complex than the hype suggests. He explains why a simple "bolt-on" approach to AI in the SOC is insufficient if you're looking for real security outcomes. We speak about f...

Incident Response of Kubernetes and how to Automate Containment 10.10.2025

How do you perform incident response on a Kubernetes cluster when you're not even on the same network? In this episode, Damien Burks, Senior Security engineer breaks down the immense challenges of container security and why most commercial tools are failing at automated response. While many CNAPPs provide runtime detection, they lack a "sophisticated approach to automating incident respon...

The Truth About AI in the SOC: From Alert Fatigue to Detection Engineering 03.10.2025

"The next five years are gonna be wild." That's the verdict from Forrester Principal Analyst Allie Mellen on the state of Security Operations. This episode dives into the "massive reset" that is transforming the SOC, driven by the rise of generative AI and a revolution in data management. Allie explains why the traditional L1, L2, L3 SOC model, long considered a "rite...

The Security Gaps in AWS Bedrock & Azure AI You Need to Know 23.09.2025

The race to deploy AI is on, but are the cloud platforms we rely on secure by default? This episode features a practical, in-the-weeds discussion with Kyler Middleton , Principal Developer, Internal AI Solutions, Veradigm and Sai Gunaranjan , Lead Architect, Veradigm as they compare the security realities of building AI applications on the two largest cloud providers. The conversation uncovers cri...

The Evolution of Email Security: From Pre-Breach to Post-Breach Protection 16.09.2025

For the last 30 years, email security has been stuck in the past, focusing almost entirely on stopping bad things from getting into the inbox. In this episode, Rajan Kapoor , Field CISO at Material Security and former Director of Security at Dropbox, argues that this pre-breach mindset is dangerously outdated. The real challenge today is post-breach: protecting the sensitive data that already live...

Using AI to Fix Your Cloud Security Backlog beyond Visibility 09.09.2025

You have the visibility, you see the alerts, but your security backlog is still growing faster than your team can fix it. So, are you actually getting more secure? In this episode, Snir Ben Shimol, CEO of Zest Security , argues that "knowing about an open door or an open window don't make you more secure... just make you more aware" . We spoke about the traditional "whack-a-mole...

Your SecOps Team Can't Save Your Cloud: A New Blueprint for Security. 27.08.2025

The conversation around cloud security is maturing beyond simple threat detection. As the industry grapples with alert fatigue, we explore the necessary shift from a reactive to a proactive security posture, questioning if a traditional SecOps model is sufficient for modern cloud environments. We spoke with Gil Geron , CEO of Orca Security , to examine the limitations of a SecOps-centric defense....

New Identity Blueprint for a Future with Cloud & AI 22.08.2025

Identity is the root cause of over 70% of all security incidents, yet many organizations still rely on fundamentally flawed authentication methods. In this episode, Jasson Casey , CEO and co-founder of Beyond Identity , explains why even common forms of MFA are insufficient and why any system that relies on a "secret moving" is vulnerable to attack. The conversation dives deep into the a...

AI for SOC Automation: A Blueprint for the New world of Incident Response 08.08.2025

The nature of Security Operations is changing. As cloud environments grow in complexity and data volumes explode, traditional approaches to detection and response are proving insufficient. This episode features an in-depth conversation with Kyle Polley, who leads the AI security team at Perplexity, about a modern blueprint for the Security Operations Center (SOC). The discussion centers on a neces...

The Truth About Agentic AI in the SOC: Reality vs. Hype 07.08.2025

What does the integration of AI into a Security Operations Center (SOC) practically look like? This episode explores the concept of the "Agentic SOC," moving beyond marketing terms to discuss its real-world applications and limitations. Ashish Rajan is joined by Edward Wu, CEO of Dropzone AI, for an in-depth discussion on the current state of artificial intelligence in cybersecurity. Edward, who h...

Understanding a $10B Fraud Vector in Cloud-Native Workflows 22.07.2025

A $10 billion fraud vector is currently exploiting a common feature in many cloud-native applications: the SMS verification flow. This isn't a traditional breach. Instead of stealing data, adversaries use bots to trigger costs that are quietly absorbed into your company's operational budget, often showing up as an inflated cell phone or marketing bill. We spoke to Frank Teruel, COO at Arko...

How BT Tackled 180 Years of Legacy to Build a Passwordless Future 17.07.2025

How do you modernize security in a 180-year-old company that operates critical national infrastructure? What does it look like when you discover tens or even hundreds of thousands of credentials hidden across your estate? In this episode, we sit down with Christian Schwarz, Security Director for Network Services at BT Group , recorded at HashiDays London. Christian shares the immense challenge and...

Why Security Can Be Stricter: A Zero Trust Approach to AppSec with AI 15.07.2025

Is AI making application security easier or harder? We spoke to Amit Chita, Field CTO at Mend.io , the rise of AI agents in the Software Development Lifecycle (SDLC) presents a unique opportunity for security teams to be stricter than ever before. As developers increasingly use AI agents and integrate LLMs into applications, the attack surface is evolving in ways traditional security can't han...

Guide to Hybrid Cloud & Bare Metal Secret Management 09.07.2025

Is your organization struggling with secret management across bare metal, hybrid, and multi-cloud environments? Standard cloud-native tools often fall short when you need a single, standardized solution that bridges all your infrastructure. Dan Popescu, Senior Site Reliability Engineer at Booking.com joins us to share how they built a cloud-agnostic secret management strategy using HashiCorp Vault...

"Escape-Proof" Cloud: How Block built an Automated Approach to Egress Control 01.07.2025

Many organizations focus on keeping attackers out, but what happens when one gets in? We spoke to Ramesh Ramani, Staff Security Engineer at Block about the real challenge, which is preventing them from leaving with your data. In this episode, Ramesh details the innovative system his team built to automate egress access control at scale, moving beyond traditional, inefficient methods. Ramesh explai...

Prioritizing Cloud Security: How to Decide What to Protect First 23.06.2025

When you can't protect everything at once, how do you decide what matters most? This episode tackles the core challenge of security prioritization. Geet Pradhan, Senior Security Engineer at Lime joins the podcast to share his framework for building a SecOps plan when you're a small team. Learn why his team made AWS logs their number one priority , how to leverage compliance requirements to...

Migrating from “Tick Box" Compliance to Automating GRC in a Multi-Cloud World 17.06.2025

In many organizations, security exception management is a manual process, often treated as a simple compliance checkbox. While necessary, this approach can lead to unmonitored configurations that drift from their approved state, creating inconsistencies in an organization's security posture over time. How can teams evolve this process to support modern development without compromising on secur...

Using AI Agents to Solve Cloud Vulnerability Overload 17.06.2025

In this episode, Ashish Rajan talks with Harry Wetherald , Co-Founder & CEO of Maze , about the reality of modern vulnerability management. They explore why current tools like CNAPPs can generate up to 90% false positives and how AI agents can provide a real solution by thinking like a security engineer to identify genuine, exploitable threats. Learn about the challenges of building your own A...

Adapting to New Threats, Copilot Risks & The Future of Data (Feat. Matthew Radolec, Varonis) 03.06.2025

AI is reshaping cybersecurity as we know it. From sophisticated AI-driven phishing attacks to the amplified risk of insider threats using tools like Copilot, the landscape is shifting at an unprecedented pace. How can security leaders and practitioners adapt? Join Ashish Rajan and Matthew Radolec (Varonis) as they explore the critical challenges and opportunities AI presents. Learn why 86% of atta...

Securing AI: Threat Modeling & Detection 27.05.2025

Is Artificial Intelligence the ultimate security dragon, we need to slay, or a powerful ally we must train? Recorded LIVE at BSidesSF, this special episode dives headfirst into the most pressing debates around AI security. Join host Ashish Rajan as he navigates the complex landscape of AI threats and opportunities with two leading experts: Jackie Bow (Anthropic): Championing the "How to Train...

CYBERSECURITY for AI: The New Threat Landscape & How Do We Secure It? 20.05.2025

As Artificial Intelligence reshapes our world, understanding the new threat landscape and how to secure AI-driven systems is more crucial than ever. We spoke to Ankur Shah , Co-Founder and CEO of Straiker about navigating this rapidly evolving frontier. In this episode, we unpack the complexities of securing AI, from the fundamental shifts in application architecture to the emerging attack vectors...

Cloud Security Evolved: From CNAPP to AI Threats 15.05.2025

The world of cloud security is evolving at breakneck speed. Are traditional tools and strategies enough to combat the sophisticated threats of tomorrow? In this episode, we're joined by Elad Koren, Vice President of Product Management from Palo Alto Networks, to explore the dynamic journey of cloud security. Elad shares his insights on how the landscape has shifted, moving beyond the era of CS...

RSA Conference 2025 Recap: Top Themes, Actionable Insights & Future Trends 09.05.2025

Dive deep into the key takeaways from RSA Conference 2025 with our expert panel! Join Ashish Rajan, James Berthoty, Chris Hughes, Tanya Janca, and Francis Odum as they dissect the biggest trends, surprises, and "hot takes" from one of the world's largest cybersecurity events. In this episode, we cover: Initial reactions and the sheer scale of RSA Conference 2025. Major themes: AI&#39...

Listen to the Cloud Security Podcast podcast in Replaio

Radio and podcasts in one app - free, with no sign-up. Install today and do not miss the launch

Get it on Google Play

Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.