Chris Hodson of Contentful on How Modern Detection Teams Can Thrive in a Cloud-Based World
Oct 12, 2022
Chris Hodson is the CISO at Contentful, which helps digital teams assemble content and deliver experiences, faster. Prior to Contentful, Chris was at Zscaler and Tanium and also busy writing a book called Cyber Risk Management: Prioritize Threat, Identify Vulnerabilities, and Apply Controls.
Chris builds and runs cybersecurity organizations that manage technology risks and helps product teams develop security solutions that work. As comfortable in the server room as the board room, he tailors cybersecurity strategy to organizational risk appetite and business objectives.
Topics include:
Chris’s hottest security take on the role of a CISO
How Chris started developing the skills that better enabled him as a better technical CISO
How Chris works more closely with DevOps teams
How his team gets smart about what to detect
How to work with application developers to get more useful data
Prioritize the services that are most sensitive, so things that are touching customer data get the most attention
The application signals Chris typically cares about
Building out tools internally to send telemetry to a single source
The organization of cross-functional security team and the focus on security engineers
The Kubernetes 4Cs - Code, Container, Clusters, Cloud
The importance of organizational-specific context to succeed in fixing symptoms at the cause
Chris’s advice that he’d give to detection teams living in a cloud-based world
By continuing to use this website you consent to our use of cookies.
Functional
Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes.The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.