Understanding how to secure the cloud is a crucial piece of tradecraft that every CISO needs to understand. This episode provides an in depth discussion of AWS's 7 design principles for securing the cloud:
- Implement a strong identity foundation
Enable traceabilityApply security at all layersAutomate security best practicesProtect data in transit and restKeep people away from dataPrepare for security eventsPlease note the AWS Well-Architected Framework Security Design Principles can be found here: https://wa.aws.amazon.com/wat.pillar.security.en.html
02:33 Seven design principles for securing the cloud04:17 Multi Factor Authentication (MFA)05:59 How to prevent password guessing attacks on the cloud08:19 How to limit access to your applications11:05 How to enable traceability in your environment13:15 The importance of cloud infrastructure14:47 How to monitor security in the cloud17:09 How to automate monitoring, alerting, and auditing19:09 Configuring a strong identity foundation20:52 How to have an effective real time view of what your developers have produced22:48 How to automate your security best practices26:42 How to protect your data in the cloud28:36 How to limit access to your data31:36 How to scan your APIs to protect your data33:41 The importance of permissions in a data science environment36:06 The importance of identity in cloud computing41:30 Review of the 7 design principles for securing the cloud