Episode 7: Creating Trust in Cloud

Episode 7 September 02, 2019 00:36:26
Episode 7: Creating Trust in Cloud
SilverLining IL
Episode 7: Creating Trust in Cloud

Sep 02 2019 | 00:36:26

/

Hosted By

Moshe Ferber Ariel Munafo

Show Notes

Attendees

Guest: Damir Savanović

Guest title: Senior researcher

Company: Cloud Security Alliance

Abstract

Creating trust is one of the major challenges for cloud providers and consumers, without trust customers will not be able to move workloads into cloud environments, but trust is a very elusive term that is hard to achieve. In  this episode we talk with Damir Savanović from the Cloud Security Alliance on how cloud providers and consumers can use certifications for increasing trust and how is CSA preparing to the new requirements of continuous monitoring that are arriving with the new EU cyber laws.

Timing

0:00

Intro and introducing our guest and overview of Damir activities in the area of cloud security

5:40

Introducing Cloud Security Alliance activities and major projects (STAR and CCSK)

9.17 

The true meaning of trust in cloud computing. Using attestation and certification for establishing trust

14:50  

The difference between certification and attestation and the effect of the new EU cybersecurity law on compliance

17.50

Understanding CSA STAR methodology from self assessment to certification or attestation and continuous monitoring

24.20

Behind the scenes of continuous monitoring - the CSA STAR methodology 

32.00

Summary and conclusions

Other Episodes

Episode 20

August 03, 2020 00:52:42
Episode Cover

Episode 20: The Dark Side Of Privacy

Attendees Guest: Menny Barzilay Guest title: Partner @ Herzog Strategic, CTO, ICRC, Tel Aviv University Abstract For our 20’ish episode we spoke with a...

Listen

Episode 25

September 01, 2020 00:35:08
Episode Cover

Episode 25: From Excessive Permissions To Least Privileges - Automating Your IAM Roles

Attendees Guest: Shira Shamban Guest title: CEO & Co-Founder Company: Solvo Abstract In modern cloud environments, Identity and Access Management controls are crucial controls....

Listen

Episode 5

July 25, 2019 00:53:07
Episode Cover

Episode 5: Guard Rails And Not Gates – How R&D And Security Should Co-Exist Audio Player

Attendees Guest: Guy Flechter Guest title: CISO Company: AppFlayer Abstract One of the biggest challenges facing software companies is how to make sure security...

Listen