Cloud Security Podcast by Google

EP140 System Hardening at Google Scale: New Challenges, New Solutions


Listen Later

Guest:

  • Andrew Hoying, Senior Security Engineering Manager @ Google

Topics:

  • What is different about system hardening today vs 20 years ago?

  • Also, what is special about hardening systems at Google massive scale?

  • Can I just apply CIS templates and be done with it?

  • Part of hardening has to be following up with developers after they have un-hardened things – how do we operationalize that at scale without getting too much in the way of productivity?

  • A part of hardening has got to be responding to new regulation and compliance regimes, how do you incorporate new controls and stay responsive to the changing world around us?

  • Are there cases where we have taken lessons from hardening at scale and converted those into product improvements?

  • What metrics do you track to keep your teams moving, and what metrics do your leads look at to understand how you're doing? [Spoiler: the answer here is VERY fun!]

Resources:

  • "Why Shared Fate is a Better Way to Manage Cloud Risk" article (and this too)

  • CIS for GCP

  • GCP IAM Deny

  • CloudSecList by Marco Lancini

...more
View all episodesView all episodes
Download on the App Store

Cloud Security Podcast by GoogleBy Anton Chuvakin

  • 4.8
  • 4.8
  • 4.8
  • 4.8
  • 4.8

4.8

39 ratings


More shows like Cloud Security Podcast by Google

View all
WSJ Your Money Briefing by The Wall Street Journal

WSJ Your Money Briefing

1,722 Listeners

WSJ What’s News by The Wall Street Journal

WSJ What’s News

4,424 Listeners

Security Now (Audio) by TWiT

Security Now (Audio)

2,010 Listeners

Risky Business by Risky Business Media

Risky Business

373 Listeners

CyberWire Daily by N2K Networks

CyberWire Daily

1,025 Listeners

NVIDIA AI Podcast by NVIDIA

NVIDIA AI Podcast

347 Listeners

Darknet Diaries by Jack Rhysider

Darknet Diaries

8,079 Listeners

Cybersecurity Today by Jim Love

Cybersecurity Today

177 Listeners

Practical AI by Practical AI LLC

Practical AI

211 Listeners

Cloud Security Podcast by TechRiot.io

Cloud Security Podcast

58 Listeners

Cybersecurity Headlines by CISO Series

Cybersecurity Headlines

140 Listeners

Huberman Lab by Scicomm Media

Huberman Lab

29,300 Listeners

The AI Daily Brief: Artificial Intelligence News and Analysis by Nathaniel Whittemore

The AI Daily Brief: Artificial Intelligence News and Analysis

681 Listeners

HBR On Leadership by Harvard Business Review

HBR On Leadership

168 Listeners

AI Security Podcast by TechRiot.io

AI Security Podcast

9 Listeners