TechRiot.io

Cloud Security Podcast

Learn Cloud Security in Public Cloud and for AI systems, the unbiased way from CyberSecurity Experts solving challenges at Cloud Scale. We are honest because we are not owned by Cloud Service Provider like AWS, Azure or Google Cloud. We aim to make the community learn Cloud Security through community stories from small - Large organisations solving multi-cloud challenges to diving into specific topics of Cloud Security. We STREAM interviews on Cloud Security Topics every week on Linkedin, YouTube and Twitter with over 150K people tuning in.

Author

TechRiot.io

Category

Technology

Podcast website

www.cloudsecuritypodcast.tv

Latest episode

Jul 9, 2026

Where to listen?

Podcasts in the app Replaio Radio Coming soon

Podcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts

Get it on Google Play Install for free Android 5M+ downloads · 4.8 rating iOS soon

Episodes

Data Security RoadMap in 2023 18.09.2023

DSPM or Data Security Posture Management with Yotam Segev from Cyera : Most security teams have known about data challenges in their organization and some of them are put in the too hard to solve right now bucket. Yotam came on the show to talk about who should own and manage data security programs and what can a data security roadmap look like for leaders who are working on the data problem today...

The Cloud to Code Dilemma - Let's Talk 09.09.2023

Is it code to cloud or cloud to code with Harshil Parikh from Tromzo: A lot of leaders today face the inevitable question of should i start with the code or the cloud first. Harshil Parikh from Tromzo was kind enough to share his CISO experience on the topic on what each of these are and what can CISOs priortise in their programs. Episode YouTube: ⁠⁠⁠ ⁠⁠⁠ Video Link⁠⁠⁠⁠⁠⁠⁠⁠ Host Twitter: Ashish Ra...

CISO Perspective: Josh Lemos, CISO of Gitlab 06.09.2023

Josh Lemo s former CISO of Block and the current CISO of GitLab comes from a pentester background and made his way to become a CISO. We were lucky enough to interview him during the hacker summer camp on his journey, his experience in AI, takeaway from BH CISO summit and types of CISOs & more. Episode YouTube: ⁠⁠ ⁠⁠⁠Video Link⁠⁠⁠⁠⁠⁠⁠ Host Twitter: Ashish Rajan ( ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠ @hashishrajan ⁠⁠⁠⁠⁠...

The Azure Cloud Security Pentesting Skills You NEED! 28.08.2023

Karl Fosaaen, the author of Penetration Testing "Azure for Ethical Hacker" and the VP of Research at NetSPI, came as a guest to share why the penetration Test of a Web Application hosted on Azure Cloud in 2023 is quite different to just a simple/traditional web app pentesting and the skills you need to pentest Azure environments. Cloud Penetration testing is misunderstood to be just conf...

How to detect software supply chain attacks with Honeytokens? 25.08.2023

Can Honeytokens be used in your supply chain security? Turns out we can! We spoke to Mackenzie Jackson (  @advocatemack  ) from  @GitGuardian  about the benefits of using Honeytokens, which organisations can benefit from them and whats involved in deploying them and next steps once they are triggered. Episode YouTube: ⁠ ⁠⁠Video Link⁠⁠⁠⁠⁠ Host Twitter: Ashish Rajan ( ⁠⁠⁠⁠⁠⁠⁠⁠⁠ @hashishrajan ⁠⁠⁠⁠⁠⁠⁠...

Google Cloud Security Pentesting Methodology 24.08.2023

Penetration Test of a Web Application hosted on Google Cloud in 2023 is quite different to just a simple/traditional web app pentesting. Cloud Penetration testing is misunderstood to be just config review in Google Cloud. In this video, we have  Kat Traxler  who is a cloud security researcher, SANS Course author and has worked in the Google Cloud space to even build open source tools that can be u...

Network Pentest 2.0 : The Cloud Pentest Revolution 22.08.2023

Cloud Security Pentest is not just a Cloud configuration review ! Blackhat 2023 & Defcon 31 conversations included Cloud Security Podcast asking traditional and experienced pentesters about their opinion on cloud security pentesting and the divide was between it being a config review or a product pentest. For this episode we have  Seth Art  from Bishop Fox to clarify the myth. Episode YouTube:...

Google Cloud Hacking Red Team Perspective! 02.08.2023

Google cloud hacking or pentesting is very different to other popular cloud service providers like aws or azure. In this episode we had Shannon McHale (Mandiant now Google Cloud) to talk about how she approaches pentesting a google cloud environment and how you can too. Episode YouTube: ⁠ Video Link⁠⁠⁠ Host Twitter: Ashish Rajan ( ⁠⁠⁠⁠⁠⁠⁠ @hashishrajan ⁠⁠⁠⁠⁠⁠⁠ ) Guest Socials: Shannon McHale's...

Cloud Security in the BoardRoom - CISO Perspective with Phil Venables 30.07.2023

CISOs in organizations that are going through digital transformation have a responsibility of educating the board on how Cloud Security is measured and improved on to manage the risk posture of the organization. We had Phil Venables, CISO of Google Cloud share from his experience of serving as a CISO for so many years on how to best share cybersecurity and cloud security metrics with the c-suite a...

Google Cloud IAP - A Pentester Viewpoint 26.07.2023

Google Cloud Security Assessment from a pentester's lens. Anjali  from NotSoSecure will be sharing her research into Google Cloud IAP & finding ways to assess the use of Google Cloud IAP in your environment and what are some of the low hanging fruits that you can remove today to reduce any potential risk from the service to your Google Cloud environment. Episode YouTube Video Link Host Twi...

Doing Google Cloud Security RIGHT! 25.07.2023

AWS Landing zones are well known but not as much in the Google Cloud space. In this episode we have Jimmy Barber shares how controls can be automated in GCP to create landing zone to manage security across a large google environment. Episode YouTube Video Link Host Twitter: Ashish Rajan ( ⁠⁠⁠⁠⁠ @hashishrajan ⁠⁠⁠⁠⁠ ) Guest Socials: Jimmy Barber's Linkedin  Jimmy Barber Podcast Twitter  -  ⁠⁠⁠⁠⁠...

An AWS Centric View of Google Cloud Identity 22.07.2023

Cloud Security Podcast - Yes - AWS Cloud folks are starting to look after Google Cloud security now in a lot of organisations. Caleb Tennis from Sequoia Capital joins us to share his personal experience on how from being an AWS professional he started looking after Google Cloud Identity and how to secure their Google Cloud Environment. Episode YouTube Video -  https://youtu.be/k1FrVEe1tGc Host Twi...

So You WANT TO DO Google Cloud Threat Detection - Start here! 10.07.2023

Cloud Security Podcast - Cybersecurity Threat hunting explained for Google Cloud. Day Johnson  is a threat detection engineer and in this episode of Cloud security for Google Cloud security we spoke about how to start doing threat detection in Google Cloud, the common threats and attack vectors in GCP Episode YouTube Video -  https://youtu.be/FCVG7-lFu0Q Host Twitter: Ashish Rajan ( ⁠⁠⁠⁠ @hashishr...

Using Data Perimeters in AWS To Scale Guardrails 06.07.2023

Cloud Security Podcast -  AWS Network Security, IAM Security or even Organization security for what can happen in your AWS Environments can be achieved using Data perimeter. John Burgress ( ⁠ John - Linkedin ⁠ ⁠⁠⁠ ) from Stripe spoke about this topic at  @fwdcloudsec  and shared additional insights on the thinking he had when building data perimeters are guardrails. There were lot more gems droppe...

AWS INCIDENT RESPONSE - Automate Containment 05.07.2023

Cloud Security Podcast -  NIST Incident response framework has 4 steps including one for Containment. AWS Incident Response being API enabled allows for automating a lot of incident response activity especially containment. In this episode with Damien Burks ( ⁠Damien - Linkedin⁠ ) spoke about his  @fwdcloudsec  talk where he shared how he automated Incident Response in AWS environments of Citi. Th...

Cloud Security Baseline For Scale 01.07.2023

Cloud Security Podcast -  Automating a Security Baseline in Cloud with Olivia Siow ( ⁠Olivia's Linkedin⁠ ) and David Levitsky ( ⁠David's Linkedin⁠ ). In this episode Olivia and David shared their experience of how they were able to empower developers to always do the right thing through positive reinforcements like making default libraries as part of the AWS Account build to scale security...

AWS ReInforce 2023 Recap & Highlights 23.06.2023

Cloud Security Podcast - AWS ReInforce 2023 or AWS Re:inforce 2023 highlights in a recap from the 2 Day affair for all things AWS Cloud Security! We were lucky enough to be there. This is a recap of the major announcements and highlights from major themes around the event. Episode YouTube Video - https://www.youtube.com/watch?v=UhVBvnmmfnQ Cloud Security Podcast Website - ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠www.cloudsecu...

Will Application Security Eat Cloud Security for Lunch! 02.06.2023

Cloud Security Podcast -  Tanya Janca and Caroline Wong were on a panel with @AshishRajan at @RSAConference 2023. The Topic for the panel discussed what's the space of application security with cloud security or is it more they need to be separate camps. Episode YouTube Video - https://www.youtube.com/watch?v=WSIykXAy6Z4 Cloud Security Podcast Website - ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠www.cloudsecuritypodcast.tv⁠⁠...

AI Security - Can LLM be Attacked? 30.05.2023

AI Security Podcast -  ChatGPT and other Generative AI use Large Language Model (LLM) but can these AI systems be attacked? ☠ 🤔 . In this 3 part AI Security series from Cloud Security Podcast Original episode, we're going to talk about the importance of AI security and how to protect your Language Model aka llm program from attack. How can LLMs be attacked by malicious threat actors - beyond...

What is DevSecOps? DevSecOps with Cloud & AI explained for 2023 23.05.2023

Cloud Security Podcast -  What is DevSecOps in 2023 especially in a world of Cloud and AI which is top of mind for both application security, developers, cybersecurity professionals. In this episode we will share how the updated definition of DevSecOps in 2023 has been redefined with Cloud and AI, also how does one measure success for DevSecOps. Episode ShowNotes, Links and Transcript on Cloud Sec...

Evolution of Kubernetes Security | KubeCon EU 2023 14.05.2023

Cloud Security Podcast -  we are continuing with our "Kubernetes Security & KubeCon EU 2023" and for the final episode in this series Kubernetes Security Panel from KubeCon EU 2023 . Kubernetes Security has evolved since it's inception with many defaults being more secure and some still insecure or has it not evolved at all. Andrew Martin (Control Plane), Matt Jarvis (Snyk), Keri...

A DEV FRIENDLY CLOUD NATIVE SECURITY PIPELINE! 11.05.2023

Cloud Security Podcast -  we are continuing with our "Kubernetes Security & KubeCon EU 2023" and for the fiveth episode in this series Eve Ben Ezra from The New York Times . GitOps, OPA Conftest, ArgoCD are some of the components to add security to a Cloud Native Security Pipeline! - Eve Ben Ezra from The New York Times shared how we can use these tools to create a Dev Friendly Secur...

THEY SCANNED ENTIRE GITHUB FOR SECRETS AND FOUND THIS! 09.05.2023

Cloud Security Podcast -  we are continuing with our "Kubernetes Security & KubeCon EU 2023" and for the fourth episode in this series Mackenzie Jackson from GitGuardian . Mackenzie Jackson from GitGuardian was part of a report that found 10 Million secrets stored across the entire Github space on the internet. In this interview we go into how secrets have evolved from just being use...

Kubernetes Cluster Security Audit Explained 03.05.2023

Cloud Security Podcast -  we are continuing with our "Kubernetes Security & KubeCon EU 2023" and for the fourth episode in this series Shane Lawrence and Daniele Santos from Shopify explained how kube-audit an open source tool from Shopify. They spoke about how they have used the audit tool to improve security with a developer security lens. Episode ShowNotes, Links and Transcript on...

Network Security for Kubernetes 16.04.2023

Cloud Security Podcast -  This month we are talking about "Kubernetes Security & KubeCon EU 2023" and for the third episode in this series, we spoke to Liz Rice ( Liz's Linkedin ⁠ ) . Liz Rice from Isovalent speaks about how Network Security can be done in Kubernetes. Kubernetes network security with eBPF, Cilium can be raised to be better than selinux seccomp tcpdump - yes the l...

Listen to the Cloud Security Podcast podcast in Replaio

Radio and podcasts in one app - free, with no sign-up. Install today and do not miss the launch

Get it on Google Play

Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.