Cloud security & platform engineering topics
Follow a topic to find focused talks, incident analysis, implementation guidance, videos, slides, and repositories drawn from production cloud and security work.
Browse every topic
These topic pages connect related conference sessions and make the full archive easier to explore.
Security
5 talksConference talks and case studies spanning cloud security, Kubernetes security, software supply chains, and incident response.
Cloud Security
2 talksCloud security talks and case studies covering AWS, CNAPP, posture management, risk prioritization, detection, and runtime protection.
CloudNativeCon
2 talksCloudNativeCon sessions on building and protecting cloud-native systems with open standards and CNCF tooling.
KubeCon
2 talksKubeCon talks on Kubernetes, SLSA, artifact integrity, policy enforcement, and cloud-native supply chain security.
Hands-on guidance for SLSA, Sigstore and Cosign, build provenance, attestations, admission policy, and secure CI/CD.
Wiz
2 talksReal-world Wiz and CNAPP lessons for cloud visibility, contextual risk prioritization, shift-left security, and runtime detection.
AWS
1 talkAWS cloud security talks covering posture management, runtime protection, detection, and practical controls for production environments.
AWS Summit
1 talkSessions presented at AWS Summit, with field-tested lessons for securing cloud infrastructure from code through runtime.
Compliance
1 talkPractical approaches to cloud and software compliance that turn policy requirements into repeatable engineering controls.
Cryptocurrency
1 talkInfrastructure security lessons from protecting cloud systems and digital-asset products in a highly targeted industry.
JavaScript
1 talkJavaScript ecosystem security, including dependency risk, npm compromise patterns, and safer package delivery pipelines.
Ledger
1 talkPublic talks and case studies about cloud security, platform reliability, and developer security practices at Ledger.
npm
1 talkAnalysis of npm supply chain attacks and practical guidance for trusted publishing, lockfiles, tokens, and dependency monitoring.
OWASP
1 talkOWASP community sessions focused on current application-security incidents and controls engineering teams can apply.
Phishing
1 talkSecurity incident analysis showing how phishing can compromise maintainers, packages, CI/CD credentials, and downstream users.
Supply Chain
1 talkResearch and talks on dependency compromise, artifact trust, package ecosystems, and end-to-end software supply chain defense.