EKS Security Safari Hunting Threats in the Wild Wild Cloud

EKS Security Safari Hunting Threats in the Wild Wild Cloud

Source: YouTube · SANS Cloud Security · published Oct 25, 2024 · 29:32

Cloud Security
No ratings yet Log in to rate
Transcript Available
Description

[BLUF] The speakers address the critical question of whether organizations can truly be confident that no threat actors exist within their Kubernetes cloud environments, highlighting the need for proactive security measures 0:10.

Key Takeaways:
• Stav, a DevOps STAL at Mitiga, introduces the core inquiry regarding confidence in Kubernetes security and the actions required to mitigate potential threats 0:28.
• Ariel, a security researcher at Mitiga, joins the discussion to provide expert insights on identifying and addressing security vulnerabilities in cloud infrastructure 0:53.
• The presentation emphasizes that maintaining security in Kubernetes requires continuous monitoring and a deep understanding of potential attack vectors 1:01.

Ensuring the integrity of cloud environments demands rigorous attention to detail and expert analysis.

Sources:

  • 0:10 Introduction of the primary security question regarding threat actors in Kubernetes.
  • 0:28 Speaker Stav introduces himself and the topic's focus on Kubernetes security.
  • 0:53 Speaker Ariel introduces himself as a security researcher specializing in the field.
  • 1:01 Transition into the detailed discussion of security methodologies and research.

Generate CPE Credits

Generate a professional CPE document from this video's transcript.

Estimated credit: 0.5 CPE hours

Estimate uses the video runtime (1 hour ≈ 1 CPE, rounded to the nearest 0.5, minimum 0.5, maximum 2.0). The final amount can be lower after review, never higher.

Topic: Cloud Security. Commonly maps to: Security Architecture and Engineering, Communication and Network Security. Exact CISSP domains are assigned during generation.

CISSP Domain Mapping
Learning Objectives
Self-Assessment Questions
PDF Export Ready

Free account. One generation at a time, with a daily limit.

CPEBuddy is independent and not affiliated with or endorsed by ISC2, ISACA, or any certification body. Exports are formatted for common CPE submissions; acceptance is at your certification body's discretion.

Watch on YouTube

Transcript Preview

First 800 characters of the transcript

hi everyone thank you for joining us we're super excited to be here and we're going to get started with a question so I want you to think about the answer and keep it in mind are you confident there are no threat actors in your kubernetes Cloud environment if yes what gives you this confidence if no what actions can you take to address this my name is name is stav I'm the devop STL at mitiga and when I'm not doing kubernetes or cicd or monitoring I'm probably sailing that's like my favorite thing a funny story is that I actually just got back from a sailing trip in Italy and my flight back got cancelled and I almost didn't make it here today but luckily I did hi my name is Ariel and I'm a security researcher at mitiga in my free time I'm a student in Humanities and my field of research is …