Group Purchasing
Group Purchasing

Eric Johnson

FellowPrincipal Security Engineer at Puma Security

Specialities

Cloud Security

Eric Johnson

About Eric Johnson

Eric Johnson brings a background in software development, cloud automation, and applied security into the classroom. He is a Fellow and Principal Security Engineer at Puma Security, and the lead author and instructor for SEC540: Cloud Native Security and DevSecOps Automation at the SANS Institute, where he focuses on securing cloud-native and DevSecOps environments in practice. He also co-authors and teaches SEC549: Cloud Security Architecture and SEC510: Cloud Security Engineering and Controls, offering a full spectrum of cloud security education from design to controls to continuous automation.

Eric’s journey into cybersecurity stems from his early fascination with automating a manual mainframe data-entry process in high school that increased throughput by 500% set him on the path of building tools to remove pain and risk. From those beginnings he moved into enterprise web and application development, then spent a decade as an information-security engineer performing source-code audits at Wells Fargo followed by five years as a principal security consultant helping companies secure product delivery. These experiences shaped his belief that vulnerabilities are often systemic and must be addressed earlier in the development lifecycle. At Puma Security he now leads professional service projects focused on Kubernetes, cloud-native, DevSecOps, and public cloud infrastructure, bridging gaps between development, operations, and security.

Press & Media