Screaming in the Cloud

Transparency in Cloud Security with Gafnit Amiga


Listen Later

Full Description / Show Notes

  • Gafnit explains how she found a vulnerability in RDS, an Amazon database service (1:40)
  • Gafnit and Corey discuss the concept of not being able to win in cloud security (7:20)
  • Gafnit talks about transparency around security breaches (11:02)
  • Corey and Gafnit discuss effectively communicating with customers about security (13:00)
  • Gafnit answers the question “Did you come at the RDS vulnerability exploration from a perspective of being deeper on the Postgres side or deeper on the AWS side? (18:10)
  • Corey and Gafnit talk about the risk of taking a pre-existing open source solution and offering it as a managed service (19:07)
  • Security measures in cloud-native approaches versus cloud-hosted (22:41)
  • Gafnit and Corey discuss the security community (25:04)


About Gafnit

Gafnit Amiga is the Director of Security Research at Lightspin. Gafnit has 7 years of experience in Application Security and Cloud Security Research. Gafnit leads the Security Research Group at Lightspin, focused on developing new methods to conduct research for new cloud native services and Kubernetes. Previously, Gafnit was a lead product security engineer at Salesforce focused on their core platform and a security researcher at GE Digital. Gafnit holds a Bs.c in Computer Science from IDC Herzliya and a student for Ms.c in Data Science.



Links Referenced:

  • Lightspin: https://www.lightspin.io/
  • Twitter: https://twitter.com/gafnitav
  • LinkedIn: https://www.linkedin.com/in/gafnit-amiga-b1357b125/



...more
View all episodesView all episodes
Download on the App Store

Screaming in the CloudBy Corey Quinn

  • 4.7
  • 4.7
  • 4.7
  • 4.7
  • 4.7

4.7

92 ratings


More shows like Screaming in the Cloud

View all
Software Engineering Radio by se-radio@computer.org

Software Engineering Radio

271 Listeners

Hanselminutes with Scott Hanselman by Scott Hanselman

Hanselminutes with Scott Hanselman

383 Listeners

The Changelog: Software Development, Open Source by Changelog Media

The Changelog: Software Development, Open Source

289 Listeners

The a16z Show by Andreessen Horowitz

The a16z Show

1,089 Listeners

Software Engineering Daily by Software Engineering Daily

Software Engineering Daily

625 Listeners

The Cloudcast by Massive Studios

The Cloudcast

152 Listeners

Thoughtworks Technology Podcast by Thoughtworks

Thoughtworks Technology Podcast

43 Listeners

Y Combinator Startup Podcast by Y Combinator

Y Combinator Startup Podcast

226 Listeners

Syntax - Tasty Web Development Treats by Wes Bos & Scott Tolinski - Full Stack JavaScript Web Developers

Syntax - Tasty Web Development Treats

988 Listeners

AWS Podcast by Amazon Web Services

AWS Podcast

203 Listeners

AWS Morning Brief by Corey Quinn

AWS Morning Brief

79 Listeners

The Stack Overflow Podcast by The Stack Overflow Podcast

The Stack Overflow Podcast

63 Listeners

Dwarkesh Podcast by Dwarkesh Patel

Dwarkesh Podcast

511 Listeners

Oxide and Friends by Oxide Computer Company

Oxide and Friends

62 Listeners

The AI Daily Brief: Artificial Intelligence News and Analysis by Nathaniel Whittemore

The AI Daily Brief: Artificial Intelligence News and Analysis

610 Listeners