Bruber CloudSecOps 

114 Followers
59 Following
565 Posts

20 years of slinging code. Moved to Application Security. Now leading a kick-ass Cloud Security team. The animal I channel is the octopus since it will occasionally punch passing fish for no reason. Proud member of the Jewish Space Laser Corps, Mishuggah Division. Proudly owned by my wife, two sons, and two cats.

Supports LGBTQ+, environment, BIPoC, women's rights, actually, all human rights.

Verificationhttps://tinfoilhat.brubernator.com/mastodon
Pronounshe/him
Githubhttps://github.com/bp4151
LinkedInhttps://www.linkedin.com/in/bruceparr-6ja33w9v
@jerry a few days ago I saw it was renamed again, this time to the Gulf of SpaceX Debris
If you ever filed with the US Dept of Ed

nextdoor.com
the CDC now recommends getting an aquarium and growing your own leeches

It's been a minute since I've posted anything relevant.

Back in August, we made a recommendation to our leadership to realign our teams so we could better support our internal customers. As a result, on Jan 1st I picked up two more engineers on my team and took over our Cloud Security operations. We're still doing a lot of traditional AppSec work from an advisory and/or training perspective, but now we get to play in the Cloud space.

Its been a wild ride, gutting and building out a whole new program. Hopefully by end of the fiscal year, we'll have a solid new program built to scale with all processes at least partially automated.

#appsec #cloudsec

@tinker we've had food rescue for years, but we do have an ICE Watch now. City announced that local PD will not be assisting ICE. Not really newsworthy, as helping ICE would constitute work, which they haven't been doing for several years. That's a different story for a different day.
@stux laundering money so Donold doesn't shitcan the government AWS contracts, which are far more valuable.
@georgetakei we have a beer fridge named Bev, and a dishwasher named Roxanne because it leaves the red light on while it's running. Our Roomba is named Roombot as it's not nearly as smart.

@btanderson

Data classification to understand what data a company actually has, and why

Maximising data minimization so there's less data to secure

Purging unneeded data so there's less data to get hacked

Understanding present and future data handling responsibilities to avoid massive fines

@xek mea culpa. I posted in ignorance, not malice. You're right. Body image issues are things I've never had to deal with personally. I should have known better.
There's a good reason why I don't do #offsec. I don't have enough self control to keep myself from hacking the self-checkout machines to yell "it puts the lotion in the basket!" when a customer scans skin lotion.