Powered by RND
PodcastsTechnologiesTalking Security: Insights from Microsoft Security Experts

Talking Security: Insights from Microsoft Security Experts

Frans Oudendorp
Talking Security: Insights from Microsoft Security Experts
Dernier épisode

Épisodes disponibles

5 sur 49
  • From Vision to Sentinel: How Microsoft Built the World's Most Beloved Cloud-Native SIEM
    In this special Talking Security episode, recorded live from Microsoft HQ during the MVP Summit, hosts Frans Oudendorp and Pouyan Khabazi sit down with Ofer Shezaf, the mastermind behind Microsoft Sentinel—the first truly cloud-native SIEM.With over 30 years in cybersecurity, Ofer takes us on a journey through the evolution of InfoSec, shares the origin story of Sentinel, and unpacks what it takes to grow a billion-dollar product. From the early days of SIEM to the role of AI in modern detection and response, this episode is packed with insights, strategy, and a few fun stories along the way.Whether you're a seasoned SOC analyst, a cloud architect, or just curious about how Sentinel became a cornerstone of modern cyber defense—this one’s for you.👉 Topics covered:- Why existing SIEMs weren’t enough—and how Sentinel changed the game- Lessons from building and scaling a $1B+ cybersecurity product- Real vs. perceived risk in product strategy- The role of community and open-source in shaping the future of cyber defense- Ofer’s advice for the next generation of cybersecurity leadersGrab your Favorito drink, and let’s talk security! 🔐
    --------  
    35:48
  • Mastering Security in the Cloud Era: Insights from a Microsoft Security MVP
    In the first episode of Season 2 of our MVP Security Insights series on the Talking Security podcast, we explore the ever-evolving landscape of cloud security and delve into practical strategies with our distinguished guest, Microsoft Security MVP Truls Dahlsveen. Truls brings deep expertise in security monitoring, SIEM, and Endpoint Detection and Response (EDR), providing valuable insights gained from real-world experiences. Throughout the episode, we address significant cybersecurity trends, discuss innovative solutions, and highlight the essential role of community engagement in bolstering security practices.Episode Outline:0:26 - Intro0:55 - Introduction of this episode2:10 - Background and Expertise: Truls shares his journey to becoming an MVP and highlights his expertise in cloud security monitoring, SIEM, and EDR solutions.5:35 - What are your primary areas of expertise within the realm of Microsoft technology and cybersecurity?7:25 - Tools that are be used in the day job.9:32 - Blogpost - https://www.infernux.no/5YearsOfSentinel - JOIN CCP - aka.ms/joinccp12:36 - Current Projects and Focus: Discussing ongoing initiatives and how Microsoft technologies enhance security.17:18 - How are you leveraging Microsoft technologies to enhance security in your current work?23:15 - Global and Local Challenges: Examining major cybersecurity challenges globally and locally, including regulatory impacts.30:30 - Future Trends and Advice: Insights into emerging cybersecurity trends and practical advice for professionals.36:11 - Community and Collaboration: Importance of community collaboration featuring experiences from HackTheBox and TryHackMe.42:30 - Question of AI: Creative reflections on cybersecurity roles and ultimate 'power-ups'.45:18- Personal Insights and Goals: Truls shares his motivations and future objectives.48:40 - What are your personal or professional goals for the coming period?50:48 - Closing this episode52:00 - OutroJoin us to gain actionable advice and inspiration from one of the community's leading cybersecurity experts.
    --------  
    52:30
  • From CASB to SaaS Security: Tackling OAuth Threats with Microsoft Defender for Cloud Apps
    In this episode of the Talking Security Podcast, we sit down with Itai Cohen from the Microsoft Defender for Cloud Apps team to explore the evolution of SaaS Security — from the traditional CASB (Cloud Access Security Broker) model to a broader, more proactive security strategy.We cover:Why CASB isn’t enough anymore and what the future of SaaS Security looks likeThe growing threat of OAuth abuse — and why it’s such a hot target for attackersNew innovations from Microsoft like Attack Path Analysis and Advanced Hunting for OAuth threatsHow Exposure Management is helping organizations proactively reduce SaaS risk🎧 Whether you're a security architect, IT decision-maker, or Microsoft 365 enthusiast, this episode will help you rethink how you protect your SaaS environments.👇 Don’t forget to like, subscribe, and share with your network.📬 Got feedback or topics you'd like us to cover? Let us know in the comments or reach out via TalkingSecurity.nl!Outline of the recording0:00 - Intro0:22 - Introduction of this episode2:05 - Introduction of Itai Cohen - Microsoft2:29 - What was the original goal of Microsoft Defender for Cloud Apps as a CASB solution?4:10 - Why is Microsoft adding more capabilities on top of the traditional CASB model towards a broader SaaS Security approach?6:08 - How do you see today’s SaaS threat landscape compared to when CASB solutions first appeared?10:11 - Why is OAuth has become such an attractive attack vector? 13:53 - What are typical OAuth attack paths, and how do attackers exploit them? 14:50 - Microsoft blog - https://techcommunity.microsoft.com/blog/microsoftthreatprotectionblog/protect-saas-apps-from-oauth-threats-with-attack-path-advanced-hunting-and-more/4395997-, you announced new capabilities to detect OAuth threats. Can you give us an overview of what’s new? 16:16 - How does Attack Path Analysis help customers better understand and mitigate OAuth risks? 19:10 - Advanced Hunting is now available for OAuth threats — how can security teams leverage this capability? 22:36 - What are some common mistakes you see organizations make when it comes to OAuth permissions and consent management? 26:40 - Exposure Management - How does Microsoft Defender for Cloud Apps contribute to a broader exposure management approach, and how can customers use it 31:47 - How do you see the role of SaaS Security evolving within the wider Exposure Management strategy that Microsoft is building?33:09 - How does SaaS Security fit into Microsoft’s broader security strategy, alongside Defender XDR and Entra ID?35:33 - SaaS Security is overlooked? Why?40:42 - If you weren’t working in security, what would you be doing instead?42:20 - Closing the episode43:23 - Outro#SaaSSecurity #MicrosoftDefender #OAuth #CASB #CloudSecurity #TalkingSecurityPodcast
    --------  
    43:46
  • Let's Talk March Update: Zero Days, OAuth Attacks, and the Latest in Microsoft Security
    Join your hosts Frans Oudendorp and Pouyan Khabazi in this month's episode of "Let's Talk" on the Talking Security podcast. We dive into critical cybersecurity developments from March, including Microsoft's latest Patch Tuesday addressing seven zero-day vulnerabilities (https://www.bleepingcomputer.com/news/microsoft/microsoft-march-2025-patch-tuesday-fixes-7-zero-days-57-flaws/), and emerging OAuth app attack campaigns targeting Microsoft 365 accounts (https://www.bleepingcomputer.com/news/security/fake-security-alert-issues-on-github-use-oauth-app-to-hijack-accounts/, https://www.bleepingcomputer.com/news/security/malicious-adobe-docusign-oauth-apps-target-microsoft-365-accounts/).We highlight important updates across Microsoft security solutions, such as Microsoft Defender for Office's improved reporting tools, Defender for Identity's Enhanced Identity Inventory (preview) (https://learn.microsoft.com/en-us/defender-for-identity/identity-inventory), and Defender for Cloud Apps' new RBAC scoping for behaviors (https://learn.microsoft.com/en-us/defender-cloud-apps/manage-admins, https://learn.microsoft.com/en-us/defender-cloud-apps/behaviors). We also discuss the new GA release of on-demand malware scanning in Defender for Storage, capable of scanning blobs up to 50 GB, and introduce the preview of the Defender for Cloud Cost Calculator.Stay informed with our community spotlight featuring Rod Trent's Security Copilot prompts (https://github.com/rod-trent/Security-Copilot/tree/main/Prompts/Workshop), and get your calendars ready for upcoming industry events, including the Swiss Microsoft Security Summit, ExpertsLive 2025, Microsoft Secure, and RSAC.Plus, tune in for a fun geeky trivia about the first-ever internet domain!Stay vigilant, stay informed, and let's talk security!
    --------  
    32:04
  • 🔒Let's Talk Security - Feb 2025 Update | Safer Internet Day, Defender XDR, DeepSeek Data Leak & More
    Welcome to another episode of "Talking Security - Let's Talk!" 🚀 This month, we bring you the latest cybersecurity updates, breaking news, and expert insights to keep you informed and ahead of threats.đŸ”č Topics in this episode:✅ Safer Internet Day 2025 – Promoting a safer online world for everyone✅ DeepSeek Database Leak – Exposing sensitive chat history & backend data✅ Defender for Endpoint & Office – New reporting and security enhancements✅ Defender for Identity – Improved attack path visibility & security updates✅ Microsoft Sentinel Updates – New features & integrations for threat intelligence✅ Community Spotlight – A new detection engine to protect the Netherlands - https://Threathunters.nl✅ Event Roundup – The must-attend cybersecurity events of 2025 - https://www.microsoft.com/en-us/security/blog/2025/02/03/hear-from-microsoft-security-experts-at-these-top-cybersecurity-events-in-2025/✅ Geeky Fun Fact – The first computer virus & its creators📱 Join the discussion! Want to be part of our monthly recordings? Fill out the form on - https://forms.office.com/e/DhYZzQ8t6z👍 Like, share, and subscribe for more cybersecurity insights!🔔 Turn on notifications so you never miss an update!💬 What are your thoughts on this month's cybersecurity updates? Drop a comment below! âŹ‡ïž#CyberSecurity #MicrosoftDefender #LetsTalkSecurity #ThreatHunting #MicrosoftSentinel #DataLeak #SIEM #SecurityUpdates
    --------  
    40:34

Plus de podcasts Technologies

À propos de Talking Security: Insights from Microsoft Security Experts

Talking Security is your go-to podcast for everything related to Microsoft Security and DevSecOps. Hosted by Frans Oudendorp and Pouyan Khabazi, we dive deep into topics like Microsoft Defender, Entra, Intune, Zero Trust, identity protection, security automation, and secure development practices.In each episode, we engage with Microsoft MVPs, product team members, and security experts to explore real-world challenges, practical solutions, and the latest innovations across the Microsoft Security ecosystem. We also focus on integrating security into DevOps workflows, ensuring you stay ahead in the ever-evolving world of cybersecurity.🎙 Hosted by Frans Oudendorp & Pouyan Khabazi 🔐 Focused on Microsoft Security, Identity & DevSecOps 🧠 Made for IT professionals, architects, developers, and decision-makersSubscribe and stay ahead in the ever-evolving world of Microsoft Security and secure cloud-native development.
Site web du podcast

Écoutez Talking Security: Insights from Microsoft Security Experts, Tech&Co, la quotidienne ou d'autres podcasts du monde entier - avec l'app de radio.fr

Obtenez l’app radio.fr‹ gratuite

  • Ajout de radios et podcasts en favoris
  • Diffusion via Wi-Fi ou Bluetooth
  • Carplay & Android Auto compatibles
  • Et encore plus de fonctionnalitĂ©s
Applications
Réseaux sociaux
v7.20.1 | © 2007-2025 radio.de GmbH
Generated: 7/3/2025 - 9:30:10 PM