EP248 Cloud IR Tabletop Wins: How to Stop Playing Security Theater and Start Practicing cover art

EP248 Cloud IR Tabletop Wins: How to Stop Playing Security Theater and Start Practicing

EP248 Cloud IR Tabletop Wins: How to Stop Playing Security Theater and Start Practicing

Listen for free

View show details

About this listen

Guest:

  • Jibran Ilyas, Director for Incident Response at Google Cloud

Topics:

  • What is this tabletop thing, please tell us about running a good security incident tabletop?
  • Why are tabletops for incident response preparedness so amazingly effective yet rarely done well?
  • This is cheap/easy/useful so why do so many fail to do it? Why are tabletops seen as kind of like elite pursuit?
  • What's your favorite Cloud-centric scenario for tabletop exercises? Ransomware? But there is little ransomware in the cloud, no?
  • What are other good cloud tabletop scenarios?

Resources:

  • EP60 Impersonating Service Accounts in GCP and Beyond: Cloud Security Is About IAM?
  • EP179 Teamwork Under Stress: Expedition Behavior in Cybersecurity Incident Response
  • EP222 From Post-IR Lessons to Proactive Security: Deconstructing Mandiant M-Trends
  • EP177 Cloud Incident Confessions: Top 5 Mistakes Leading to Breaches from Mandiant
  • EP158 Ghostbusters for the Cloud: Who You Gonna Call for Cloud Forensics
  • EP98 How to Cloud IR or Why Attackers Become Cloud Native Faster?

No reviews yet
In the spirit of reconciliation, Audible acknowledges the Traditional Custodians of country throughout Australia and their connections to land, sea and community. We pay our respect to their elders past and present and extend that respect to all Aboriginal and Torres Strait Islander peoples today.