Cloud Security Podcast
5.0(57)

Cloud Security Podcast

by TechRiot.io

360 episodesLatest 6 days agoEN
Learn Cloud Security in Public Cloud and for AI systems, the unbiased way from CyberSecurity Experts solving challenges at Cloud Scale. We are honest because we are not owned by Cloud Service Provider like AWS, Azure or Google Cloud. We aim to make the community learn Cloud Security through community stories from small - Large organisations solving multi-cloud challenges to diving into specific topics of Cloud Security. We STREAM interviews on Cloud Security Topics every week on Linkedin, YouTube and Twitter with over 150K people tuning in.

TechRiot.io

Recent reviews on Apple Podcasts (5)
  • Awesome podcast

    Always bringing experts and covering insights and risky topics for protecting the cloud. Keep it up!

    Maocol99 ·

  • Great show!

    Cloud Security Podcast has quickly become a favorite in my feed! I’m consistently impressed by the engaging conversations, insightful content, and actionable ideas. I truly learn something every time I listen!

    mvelasco07 ·

  • Insightful questions I’m curious to know the answer to

    If you’re looking to hear from professionals in the field from a spectrum of experience, I would highly recommend this podcast. Some interview guests on other podcasts are difficult to relate to because they’re outliers. In this podcast, you’ll hear from guests that you can tangibly aspire to.

    gblind8 ·

  • Best in class Cloud Security Updates

    Over the last few years, podcasts have grown from a fringe media to one of the most popular ways to get news and information. For those in the know, or those who need to know, cloud security podcast hosted by Ashish is far best what I came across. Ashish is thought leader in cloud industry. With this in mind, he is one of best editor that have compiled a list of over hundreds of cloud security podcasts, To keep up with the latest news, trends, best practices, and to hear from the top minds in the industry, I highly recommend giving these a listen.

    Kapil CSP ·

  • Amazing weekly cloud security podcast!

    When I started trying to get an understanding of “What is Cloud Security?”, “What do all these crazy acronyms mean?”, and “How do I keep up to date with one of the fastest changing landscapes?” I downloaded the “The Cloud Security Podcast” and I couldn’t stop listening. And even better than all the topical information is the cloud security community that engages listener and promotes community. -David Matousek

    UsulMuadDib ·

View all reviews on Apple Podcasts

Episodes (360)

  1. Securing Millions of AI-built Apps: How Lovable Defends Against Insider Threats

    Sep 11, 20261h 10m#25

    Empowering non-technical users to build production-grade applications requires a proactive, secure-by-design architecture. In this episode, Ashish sits down with Marcus Hallberg and Samuel Kelemen, security engineers at

  2. Why AI Won't Replace Your SOC: Federated Data & APEX Framework

    Sep 1, 202637m#24

    Hash values, IP addresses, and domains are virtually useless as primary detection mechanisms in the era of AI-driven polymorphic malware and short-lived phishing kits. If your detection strategy is still stuck at the bot

  3. The "Hunt First" AI Security Strategy

    Aug 25, 202646m#23

    Did you know that 82% of all intrusions don't involve any sort of malware, and AI-augmented attacks are up 89% year over year? If your security operations team is solely focused on reacting to known-bad SIEM alerts, you

  4. Shadow AI & Sandbox Escapes: Why You Need an Agentic Control Plane?

    Aug 18, 202632m#22

    When Claude Cowork hits a roadblock, it doesn't give up, it writes a custom Python script and downloads an untrusted NPM package just to bypass its restrictions and finish its goal. Are your security tools close enough t

  5. How Adobe Uses AI Agents for building a WAF Pipeline?

    Aug 4, 202647m#21

    When vulnerability disclosures shrink the wild exploit window down to less than 24 hours (or even minutes), traditional manual patching and WAF rule creation simply cannot keep up. In this episode, Ashish sits down with

  6. Why Runtime Agents Are Replacing Static Posture Checks

    Jul 28, 202644m#20

    The attack window from the discovery of a vulnerability to its exploitation has shrunk to less than 24 hours and sometimes down to just 25 minutes. Is your security team prepared for the speed of AI-driven attacks? In th

  7. The Hidden Cost of BlackBox AI: Bridging Cloud and Code Security

    Jul 9, 202642m#19

    Traditional SCA and SAST tools are notorious for drowning security teams in false positives, historically flagging nine out of ten alerts incorrectly. But while generative AI seems like a magic bullet, simply wrapping an

  8. Who Governs Your AI Agents? Identity, Offboarding & Open Standards

    Jul 2, 202634m#18

    Are overprivileged AI agents the biggest emerging threat in cybersecurity? In a recent high-profile attack, a vibe-coding company had its entire source code stolen because an attacker exploited a long-lived, overprivileg

  9. AI-Powered Forensics: How Attackers Automate Breaches

    Jun 23, 202639m#17

    AI isn't necessarily creating impossible new attacks, but it is drastically lowering the technical barrier to entry for cybercriminals. In this episode, Ashish Rajan speaks with Simon Biggs, Cyber Incident Response Speci

  10. The 4 Pillars of AI SOC:From Threat Hunting to Vibe Hunting

    Jun 16, 202646m#20

    Threat hunting has officially evolved into "vibe hunting". However, if your AI security tools lack the right semantic context, they might be doing more harm than good. In this episode, Ashish sits down with Aqsa Taylor ,

  11. Native Cloud Firewalls Falling Short in a Multicloud World

    Jun 11, 202636m#15

    As enterprises expand across multiple cloud environments, on-premise data centers, and dynamic AI workloads, traditional perimeter defenses and siloed cloud-native tools are no longer enough to secure the modern network.

  12. How AI Agents Will Negotiate Your Vendor Contracts

    May 27, 202637m#14

    Third-Party Risk Management (TPRM) has historically been a tedious, 200-page paper exercise that felt like being catapulted back to 1979. But AI is changing that. In this episode, Ashish sits down with Igor Andriushchenk

  13. How Claude Mythos Changes Vulnerability Management: From CVSS to Exploitability

    May 5, 202644m#13

    Is your vulnerability management program ready for something like Claude Mythos? The old days of treating vulnerabilities as temporal events (like Heartbleed or Log4J) and patching them on a leisurely 30, 60, or 90-day c

  14. AISPM Isn't Enough: How to Apply Zero Trust to AI Agents

    Apr 29, 202654m#12

    We are officially entering the "Multi-AI Era." Much like the multi-cloud times, organizations are no longer just using a single AI tool like Microsoft Copilot, they are building custom, agentic workflows using diverse th

  15. The Rise of Agentic Cloud Security: Code-to-Cloud Shrinks to 3 Days

    Apr 21, 202626m#11

    Is your cloud security strategy ready for the "messy middle" of AI adoption? With developers pushing code from inception to production in under three days using "vibe coding," and adversaries capable of exfiltrating data

  16. Why EDR Fails at AI Security & The Rise of Endpoint Behavior Modeling

    Apr 14, 202631m#10

    Is your EDR blinding you to insider threats? In this episode, Ashish is joined by Brandon Dixon (Co-Founder & CTO of Ent AI , and former Microsoft Security Copilot leader) to discuss why traditional endpoint security too

  17. Solving Prompt Injection & Shadow AI for AI Malware

    Apr 7, 202636m#9

    Are AI agents functioning like adversarial malware inside your network? In this episode of the Cloud Security Podcast, Ashish sits down with Jasson Casey , Co-founder and CEO of Beyond Identity , to speak about the secur

  18. Browser Security Explained: Consent Phishing, "Click Fix" Attacks & The Limits of EDR

    Mar 10, 202646m#8

    Is your security team treating your Identity Provider (IDP) like a firewall? In this episode, Adam Bateman (CEO & Co-founder of Push Security ) explains why that's a dangerous mistake and how modern attackers are bypassi

  19. Is AI Hallucinations a Myth and the Real Threat from AI

    Mar 6, 202640m#7

    Are attackers really using AI to run end-to-end cyber campaigns? In this episode, Edward Wu (Founder and CEO, DropzoneAI ) joins Ashish to separate the hype from reality when it comes to AI-driven attacks .Edward explain

  20. Why AI Infrastructure is Harder to Secure Than Cloud

    Feb 20, 202634m#11

    Is AI security just "Cloud Security 2.0"? Toni De La Fuente , creator of the open-source tool Prowler , joins Ashish to explain why securing AI workloads requires a fundamentally different approach than traditional cloud

  21. How Attackers Bypass AI Guardrails with Natural Language

    Feb 10, 202646m

    In the world of Generative AI, natural language has become the new executable. Attackers no longer need complex code to breach your systems, sometimes, asking for a "poem" is enough to steal your passwords . In this epis

  22. Vulnerability Management vs. Exposure Management

    Feb 6, 202639m#4

    In this episode, Brad Hibbert (COO & Chief Strategy Officer at Brinqa ) joins Ashish to explain why traditional risk-based vulnerability management (RBVM) is no longer enough in a cloud-first world . We explore the evolu

  23. Is Developer Friendly AI Security Possible with MCP & Shadow AI

    Feb 5, 20261h 3m#3

    Is "developer-friendly" AI security actually possible? In this episode, Bryan Woolgar-O'Neil (CTO & Co-founder of Harmonic Security ) joins Ashish to dismantle the traditional "block everything" approach to security. Bry

  24. Why AI Can't Replace Detection Engineers: Build vs. Buy & The Future of SOC

    Jan 21, 202652m#2

    Is the AI SOC a reality, or just vendor hype? In this episode, Antoinette Stevens (Principal Security Engineer at Ramp) joins Ashish to dissect the true state of AI in detection engineering. Antoinette shares her experie

  25. AI Vulnerability Management: Why You Can't Patch a Neural Network

    Jan 13, 202641m#1

    Traditional vulnerability management is simple: find the flaw, patch it, and verify the fix. But what happens when the "asset" is a neural network that has learned something ethically wrong? In this episode, Sapna Paul (