Cloud Security at Scale and What it Means for Your Application
Offered By: OWASP Foundation via YouTube
Course Description
Overview
Explore cloud security at scale and its implications for application development in this conference talk from AppSecUSA 2014. Dive into Netflix's innovative approaches to deploying and securing large-scale applications in the cloud, including their use of immutable server models, automated security tools, and unique availability enforcement methods. Learn about the suite of architectures, processes, and open-source tools developed by Netflix to elegantly manage security in cloud environments. Discover how "crazy monkeys," "OCD fish," and "inquisitive penguins" play crucial roles in maintaining application security and availability across global cloud deployments. Gain insights into managing hundreds of applications with frequent production deployments, assessing application risk, and ensuring firewall consistency. Presented by Ben Hagen, Engineering Manager of Security Tools and Operations at Netflix, this talk offers valuable lessons for organizations looking to enhance their cloud security strategies.
Syllabus
Introduction
Ben Hagen
Netflix
Developers
Netflix Security
Trusting Developers
Immutable Server Pattern
Time to Live
Amazon Web Services
Important Concepts
Programmatic Access
Code Example
Security Groups
IP Addresses
Heartbleed
Deployment
Installation
Asgard
Security Problems
Availability
Chaos Monkey
Summary
Logo
Cloud is chaotic
Project Monterey
Developer Empowerment
Penguin Shortbread
Traffic
Lazy Falcon
What are Security Groups
Security Grouper
Purpose of Security Grouper
Scum Blur
Screenshots
Scribble Screenshot ER
Any Questions
Multiple Accounts
Paid Tools
Problems with Developers
Immutable Servers
Amazon VPC
Elasticity
Predictive Modeling
Security Tools
Taught by
OWASP Foundation
Related Courses
Academia de auditoría en la nube: independencia en la nube (Español LATAM) | Cloud Audit Academy - Cloud Agnostic (Spanish from Latin America)Amazon Web Services via AWS Skill Builder Accelerating GKE Incident Response with Prisma Cloud and Cortex XSOAR
Google via Google Cloud Skills Boost Amazon Detective Deep Dive
A Cloud Guru AWS Certified Cloud Practitioner (CLF-C01)
A Cloud Guru AWS Certified Security - Specialty 2020
A Cloud Guru