Brace yourself for a mind-blowing session with Chad Lorenc, a true guru in the field.
Discover the secrets behind effective IAM strategies. Chad will be sharing his invaluable insights, unraveling the complexities, and shedding light on best practices.
You can read the complete transcript of the epiosde here >
Learnings from the podcast
- To show value of IAM improvements to leadership, map them to outcomes like cost improvement from Audit/SOX perspective, developer productivity gains via provisioning improvements and MTTD & MTTR from incident response perspective.
- To keep cloud security complexity to minimum, bring all your data sources (like SIEM, SOAR, IDS/IPS) together and monitor your security posture.
- For your production account security, avoid providing access to humans and definitely a no access Keys. Implement IaC and pipelines for provisioning.
Learning resources recommended by Chad Lorenc
-
CISO Magazine on IAM
Identity and Access Management Archives from the CISO Magazine
-
AWS Security Reference Architecture
Guidelines for deploying AWS security services in a multi-account environment in the AWS Cloud.