Cloud Security Podcast by Google

Cloud Security Podcast by Google

Cloud Security Podcast by Google focuses on security in the cloud, delivering security from the cloud, and all things at the intersection of security and cloud. Of course, we will also cover what we are doing in Google Cloud to help keep our users' data safe and workloads secure. We’re going to do our best to avoid security theater, and cut to the heart of real security questions and issues. Expect us to question threat models and ask if something is done for the data subject’s benefit or just for organizational benefit. We hope you’ll join us if you’re interested in where technology overlaps with process and bumps up against organizational design. We’re hoping to attract listeners who are happy to hear conventional wisdom questioned, and who are curious about what lessons we can and can’t keep as the world moves from on-premises computing to cloud computing.

Episodes

October 20, 2025 32 mins

Guest:

  • Jibran Ilyas, Director for Incident Response at Google Cloud

Topics:

  • What is this tabletop thing, please tell us about running a good security incident tabletop? 
  • Why are tabletops for incident response preparedness so amazingly effective yet rarely done well?
  • .css-1t8gq41{border:none;background-image:none;background-color:transparent;box-shadow:none;color:#2F3133;cursor:pointer;font-size:inherit;padding:0;-webkit-text-decoration:inherit;text-decoration:inherit;width:-webkit-max-content;width:-moz-max-content;width:max-content;}.css-1t8gq41:hover,.css-1t8gq41:focus{-webkit-text-decoration:inherit;text-decoration:inherit;}
Mark as Played

Guest:

  •  David Gee, Board Risk Advisor, Non-Executive Director & Author, former CISO

Topics:

  • Drawing from the "Aspiring CIO and CISO" book's focus on continuous improvement, how have you seen the necessary skills, knowledge, experience, and behaviors for a CISO evolve, especially when guiding an organization through a trans...
Mark as Played

Guest:

Topics:

  • How did vulnerability management (VM) change since Qualys was founded in 1999? What is different about VM today?
  • Can we actually remediate vulnerabilities automatically at scale? Why did this work for you even though many expected it w...
Mark as Played

Guest:

Topics:

  • In what ways is the current wave of enterprise AI adoption different from previous technology shifts? If we say “but it is different this time”, then why?
  • What is your take on “consumer grade AI for business” vs enterprise AI?
Mark as Played

Guest:

Topics:

  • You invented the concept of SOAPA – Security Operations & Analytics Platform Architecture. As we look towards SOAPA 2025, how do you see the ongoing debate between consolidating security around a single platform versus a more disaggregated, best-of-breed approa...
Mark as Played

Guest:

Topics:

  • What is the state of email security in 2025?
  • Why start an email security company now?
  • Is it true that there are new and accelerating AI threats to email?
Mark as Played

Guest:

Topics:

  • What is your definition of “AI SOC”?
  • What will AI change in a SOC? What will the post-AI SOC look like? 
  • What are the primary mechan...
Mark as Played

Guest:

Topics:

  • On the 3rd anniversary of Curated Detections, you've grown from 70 rules to over 4700. Can you walk us through that journey? What were some of the key inflec...
Mark as Played

Guest:

  • Errol Weiss, Chief Security Officer (CSO) at Health-ISAC

Topics:

  • How adding digital resilience is crucial for enterprises? How to make the leaders shift from “just cybersecurity“  to “digital resilience”?
  • How to be the most resilient you can be given the resources? How to be the most...
Mark as Played

Guest:

Topics:

  • When it comes to Linux environments – spanning on-prem, cloud, and even–gasp–hybrid setups – where are you seeing the most significant blind spots for security teams today? 
  • There's sometimes a perception that Linux is inher...
Mark as Played

Guest:

Topics:

  • When introducing AI agents to security teams at Google, what was your initial strategy to build trust and overcome the natural skepticism? Can you walk us through the very first conversations and the key concerns that were raised?
  • Read more
Mark as Played

Guest:

Questions:

  • Security is part of your DNA. In your day to day at TikTok, what are some tips you’d share with users about staying safe online?
  • Many regulations were written with older technologies in mind. How do you bridge the gap between ...
Mark as Played

Guest:

  • Manija Poulatova, Director of Security Engineering and Operations at Lloyd's Banking Group

Topics:

  • SIEM migration is hard, and it can take ages. Yours was - given the scale and the industry - on a relatively short side of 9 months. What’s been your experience so far with that and what could have gone faster? 
Mark as Played

Guest: 

Episode co-host:

Questions:

  • Agentic AI and AI agents, with its promise of autonomous decision-making and learning capabilities, presents a unique set of risks across various domains. What...
Mark as Played

Guest:

Topics:

  • Why do so many organizations still collect logs yet don’t detect threats? In other words, why is our industry spending more money than ever on SIEM tooling and still not “winning” against Tier 1 ... or even Tier 5 adversaries? 
  • What ar...
Mark as Played

Guest:

Topic:

  • Could you share insights into how Product Security Engineering approaches at Google have evolved, particularly in response to emerging threats (like Log4j in 2021)?
  • You mentioned applying SRE best practices i...
Mark as Played

Guest:

Topic:

  • You have had a fascinating career since we [Tim] graduated from college together – you mentioned before we met that you’ve consulted with a literal world leader on his personal digital security footprint. Maybe tell us how you got into this field of helping organizations tr...
Mark as Played

Guest:

Topic:

  • Detection as code is one of those meme phrases I hear a lot, but I’m not sure everyone means the same thing when they say it. Could you tell us what you mean by it, and what upside it has for organizations in your model of it?
  • Read more
Mark as Played

Guest:

Topic:

  • Your RSA talk highlights lessons learned from two years of AI red teaming at Google. Could you share one or two of the most surprising or counterintuitive findings you encountered during this process?
  • What are some of the key d...
Mark as Played

Guest:

  • Alex Pinto,  Associate Director of Threat Intelligence, Verizon Business, Lead the Verizon Data Breach Report

Topics:

  • How would you define “a cloud breach”? Is that a real (and different) thing? 
  • Are cloud breaches just a result of leaked keys and creds?
  • If customers are responsible ...
Mark as Played

Popular Podcasts

    If you've ever wanted to know about champagne, satanism, the Stonewall Uprising, chaos theory, LSD, El Nino, true crime and Rosa Parks, then look no further. Josh and Chuck have you covered.

    Dateline NBC

    Current and classic episodes, featuring compelling true-crime mysteries, powerful documentaries and in-depth investigations. Follow now to get the latest episodes of Dateline NBC completely free, or subscribe to Dateline Premium for ad-free listening and exclusive bonus content: DatelinePremium.com

    CrimeLess: Hillbilly Heist

    It’s 1996 in rural North Carolina, and an oddball crew makes history when they pull off America’s third largest cash heist. But it’s all downhill from there. Join host Johnny Knoxville as he unspools a wild and woolly tale about a group of regular ‘ol folks who risked it all for a chance at a better life. CrimeLess: Hillbilly Heist answers the question: what would you do with 17.3 million dollars? The answer includes diamond rings, mansions, velvet Elvis paintings, plus a run for the border, murder-for-hire-plots, and FBI busts.

    The Breakfast Club

    The World's Most Dangerous Morning Show, The Breakfast Club, With DJ Envy, Jess Hilarious, And Charlamagne Tha God!

    Crime Junkie

    Does hearing about a true crime case always leave you scouring the internet for the truth behind the story? Dive into your next mystery with Crime Junkie. Every Monday, join your host Ashley Flowers as she unravels all the details of infamous and underreported true crime cases with her best friend Brit Prawat. From cold cases to missing persons and heroes in our community who seek justice, Crime Junkie is your destination for theories and stories you won’t hear anywhere else. Whether you're a seasoned true crime enthusiast or new to the genre, you'll find yourself on the edge of your seat awaiting a new episode every Monday. If you can never get enough true crime... Congratulations, you’ve found your people. Follow to join a community of Crime Junkies! Crime Junkie is presented by audiochuck Media Company.

Advertise With Us
Music, radio and podcasts, all free. Listen online or download the iHeart App.

Connect

© 2025 iHeartMedia, Inc.