AWS for Software Companies Podcast

Ep150: Security Considerations for Generative AI with CyberArk, Fortra and Sysdig


Listen Later

Security leaders from CyberArk, Fortra, and Sysdig share actionable strategies for securely implementing generative AI and reveal real-world insights on data protection and agent management.

Topics Include:

  • Panel explores practical security approaches for GenAI from prototype to production
  • Three-phase framework discussed: planning, pre-production, and production security considerations
  • Security must be built-in from start - data foundation is critical
  • Understanding data location, usage, transformation, and regulatory requirements is essential
  • Fortra's security conglomerate approach integrates with AWS native tools and partners
  • Machine data initially easier for compliance - no PII or HIPAA concerns
  • Identity paradigm shift: agents can dynamically take human and non-human roles
  • 97% of organizations using AI tools lack identity and access policies
  • Security responsibility increases as you move up the customization stack
  • OWASP Top 10 for GenAI addresses prompt injection and data poisoning
  • Rigorous model testing including adversarial attacks before deployment is crucial
  • Sysdig spent 6-9 months stress testing their agent before production release
  • Tension exists between moving fast and implementing proper security controls
  • Different security approaches needed based on data sensitivity and model usage
  • Zero-standing privilege and intent-based policies critical for agent management
  • Multi-agent systems create "Internet of Agents" with exponentially multiplying risks
  • Discovery challenge: finding where GenAI is running across enterprise environments
  • API security and gateway protection becoming critical with acceptable latency
  • Top customer need: translating written AI policies into actionable controls
  • Threat modeling should focus on impact rather than just vulnerability severity


Participants:

  • Prashant Tyagi - Go-To-Market Identity Security Technology Strategy Lead, CyberArk
  • Mike Reed – Field CISO, Cloud Security & AI, Fortra
  • Zaher Hulays – Vice President Strategic Partnerships, Sysdig
  • Matthew Girdharry - WW Leader for Observability & Security Partnerships, Amazon Web Services


Further Links:

  • CyberArk: WebsiteLinkedInAWS Marketplace
  • Fortra: WebsiteLinkedInAWS Marketplace
  • Sysdig: WebsiteLinkedInAWS Marketplace


See how Amazon Web Services gives you the freedom to migrate, innovate, and scale your software company at https://aws.amazon.com/isv/

...more
View all episodesView all episodes
Download on the App Store

AWS for Software Companies PodcastBy AWS - Amazon Web Services

  • 5
  • 5
  • 5
  • 5
  • 5

5

9 ratings


More shows like AWS for Software Companies Podcast

View all
Planet Money by NPR

Planet Money

30,782 Listeners

Hidden Brain by Hidden Brain, Shankar Vedantam

Hidden Brain

43,673 Listeners

Economist Podcasts by The Economist

Economist Podcasts

4,158 Listeners

The Twenty Minute VC (20VC): Venture Capital | Startup Funding | The Pitch by Harry Stebbings

The Twenty Minute VC (20VC): Venture Capital | Startup Funding | The Pitch

535 Listeners

Security Now (Audio) by TWiT

Security Now (Audio)

2,004 Listeners

The a16z Show by Andreessen Horowitz

The a16z Show

1,096 Listeners

CyberWire Daily by N2K Networks

CyberWire Daily

1,021 Listeners

Super Data Science: ML & AI Podcast with Jon Krohn by Jon Krohn

Super Data Science: ML & AI Podcast with Jon Krohn

302 Listeners

Cybersecurity Today by Jim Love

Cybersecurity Today

178 Listeners

Practical AI by Practical AI LLC

Practical AI

205 Listeners

AWS Podcast by Amazon Web Services

AWS Podcast

204 Listeners

Dwarkesh Podcast by Dwarkesh Patel

Dwarkesh Podcast

518 Listeners

Cybersecurity Headlines by CISO Series

Cybersecurity Headlines

139 Listeners

Hard Fork by The New York Times

Hard Fork

5,522 Listeners

AI + a16z by a16z

AI + a16z

35 Listeners