up now at @awscloud #reinforce, “Data Protection & Privacy” with @JKenBeer, @jennybrinkley, & @clean_freak

☁️ #cloud #devops
. @StephenSchmidt introduces the session, which is a “fireside chat”

@awscloud #reinforce
Jenny is co-ordinating the chat. Anne is the director of Alexa Trust. Ken is the GM of AWS KMS

@awscloud #reinforce
Anne joined @awscloud during the pandemic and has been entirely remote. never easy but the new reality

@awscloud #reinforce
Anne’s credentials in privacy & security are deep and amazing

@awscloud #reinforce
ditto for Ken…

@awscloud #reinforce
this should be a great chat…maybe…hopefully

@awscloud #reinforce
“performative chats” are always hard to do well regardless of the venue (remote/physical). on stage, it’s always a bit awkward. this is where a podcast style format really works

people get comfortable, there’s no time crunch, no visible audience, etc.

@awscloud #reinforce
audience not an issue here but that’s probably even worse, they’re on a huge stage and no one appears to be there. that type of camera work is tough

Jenny, Ken, and Anne are doing well

@awscloud #reinforce
first question goes to Anne, “What have you seen in privacy over the past few years?”

@awscloud #reinforce
summary: global there have been huge advancements in #privacy, US lags because of the fractured approach. really hard to manage, lots of overhead, need a better, more consistent approach

@awscloud #reinforce
Anne, “We’re headed in a good direction generally…”

@awscloud #reinforce #privacy
“How do you get people to care about privacy?”

@awscloud #reinforce
Anne’s first word, “empathy”

💯

@awscloud #reinforce #privacy
she then moves to talk about words and how they matter. also peeling away technical terms and talking about trust. that’s the heart of the matter

@awscloud #reinforce
Ken adds that the level of complexity in technology today makes it hard to understand what data is out there, who can access it, what the intention of storing that data is, etc.

it’s hard to wrap your head around as a defender and as someone who’s data is entrusted to an org
“Complexity is hard for customers”, Ken Beer

@awscloud #reinforce #privacy
lack of access to is general a good thing for #security, it’s a hard thing for trust << Ken

@awscloud #reinforce #privacy
“You definitely need to understand your data”, Ken. he points out that this activity also requires you to understand where that data is and what’s done with it

@awscloud #reinforce #privacy
…on to the mis-perceptions around #privacy and how some critical conversations go in the community

@awscloud #reinforce
Anne talking about the push for early @Slack prospects wanting an on-premises version. natural push back against the cloud and a desire for an “I have control” feeling

need to have empathy to work through that...

@awscloud #reinforce
Anne’s tip (beyond empathy) is to find the principle or goal of what they’re looking for. not necessarily what is specifically is being asked for

on-prem request was a desire for awareness & visibility into data

@awscloud #reinforce
Ken on to some of the specifics of encryption; keys, HSMs, etc.

@awscloud #reinforce
a good overview of encryption in the @awscloud

more at aws.amazon.com/blogs/security…

#reinforce
Ken’s always full of great little soundbites, “Click a button to encrypt like automagic” 🤣

@awscloud #reinforce
you can tell from how Jenny, Ken, and Anne are talking about encryption and #privacy, that they’ve dealt with this subject for years

lots of experience in educating, being empathetic, and helping other understand the nuances

@awscloud #reinforce
Anne, “It’s a growing challenge for technologists to help consumers get comfortable with the technology we’re building” << there is so much to unpack there

@awscloud #reinforce #privacy
“You should see some tangible benefit is companies have your data”, Anne Toth << 💯

@awscloud #reinforce #privacy
Ken does not appear excited about this one

@awscloud #reinforce
…only because Jenny asked if he was

@awscloud #reinforce
“We don’t do anything with your data until we have clarity of your intent”, Ken << excellent point. simple example: how @awscloud handles data in region

@awscloud #reinforce
. @awscloud has 1,000 #security employees EMBEDDED IN OTHER TEAMS to help build that culture that ensures the security and #privacy story is in place before going live

#reinforce
Jenny shouts out AWS Artifact too! loves of ❤️ for the “service” today

@awscloud #reinforce
quote of the day, “Glib to say, hard to execute”, Ken << this applies to pretty much everything in #security and #privacy

@awscloud #reinforce
honestly, you should watch the reply later on. my comments didn’t do the talk justice. lots of great nuggets in there

@awscloud #reinforce
taking another break. back ~10m with “Governance, Risk, and Compliance” with Anil Markose

@awscloud #reinforce

• • •

Missing some Tweet in this thread? You can try to force a refresh
 

Keep Current with Mark Nunnikhoven

Mark Nunnikhoven Profile picture

Stay in touch and get notified when new unrolls are available from this author!

Read all threads

This Thread may be Removed Anytime!

PDF

Twitter may remove this content at anytime! Save it as PDF for later use!

Try unrolling a thread yourself!

how to unroll video
  1. Follow @ThreadReaderApp to mention us!

  2. From a Twitter thread mention us with a keyword "unroll"
@threadreaderapp unroll

Practice here first or read more on our help page!

More from @marknca

2 Sep
containers on @awscloud: a rant 🧵

problem: I want to run a single container every so often

☁️ #cloud #devops
I start with a search. the first result is straight forward and promising

I click on "Containers on AWS"

☁️🧵 #cloud #devops
I land here. it's not bad though a bit of a pitch, "AWS is the #1 place for you to run containers and 80% of all containers in the cloud run on @awscloud" << but will MINE?!?

☁️🧵 #cloud #devops
Read 45 tweets
24 Aug
next up is IAM with Karen Haberkorn

@awscloud #reinforce
…and the challenge of virtual events rears it ugly head. other more pressing matters popped up and I’ve missed what seems like a great talk and discussion on IAM 😔

@awscloud #reinforce
…but the upside of the virtual event is that I should be able to watch this on replay soon enough!

@awscloud #reinforce
Read 17 tweets
24 Aug
Eric Brandwine up now at @awscloud #reinforce

he’s talking about building a culture of #security
scale quickly became a problem in building the #security organization at AWS

@awscloud #reinforce
Eric realized they couldn’t scale up the team to the size of AWS, it just wasn’t possible

they had to figure out a way to help the organization build the #security culture itself

@awscloud #reinforce
Read 34 tweets
24 Aug
new thread to cover, “Governance, Risk, & Compliance”

@awscloud #reinforce
Anil starts things off with compliance landscape…

@awscloud #reinforce
lots of different legislation out there around data protection and #privacy. combined with a push to the cloud, lots of change in a traditionally slow area of GRC

@awscloud #reinforce
Read 15 tweets
24 Aug
. @awscloud #reinforce // here we go…

🎙🧵

☁️ #cloud #security #devops
Adam Selipsky (CEO, AWS) up first with an opening message for @awscloud #reinforce
“Security is job ZERO at @awscloud”, Adam Selipsky. he’s referring to the fact that it is required as a baseline before building or doing anything

he goes on to say that #security is critical to AWS’ success and customer success

#cloud #devops
Read 121 tweets
13 Aug
yesterday I spun up 36x @awscloud EC2 instances to build out a weird sample data set

today, trying to get an exact cost for that work, it hits home (again) why @quinnypig has a very successful business

a story...



🧵 ☁️ #cloud #devops
ok, so I spun up the instances via python/boto3 (all old-school like) because I had a unique user-data script to each to execute and then shutdown

super simple 👇

🧵 ☁️ #cloud #devops
of course, the execution of this script took a while. about 6 hours. so I ran a couple quick, smaller scale tests and when I had things locked. I ran the script 👆

🧵 ☁️ #cloud #devops
Read 25 tweets

Did Thread Reader help you today?

Support us! We are indie developers!


This site is made by just two indie developers on a laptop doing marketing, support and development! Read more about the story.

Become a Premium Member ($3/month or $30/year) and get exclusive features!

Become Premium

Too expensive? Make a small donation by buying us coffee ($5) or help with server cost ($10)

Donate via Paypal Become our Patreon

Thank you for your support!

Follow Us on Twitter!

:(