Last day to save $150 off Offensive Operations courses during SANS Pen Test & Offensive Training 2021!


To attend this webcast, login to your SANS Account or create your Account.

This webcast has been archived. To view the webcast login into your SANS Portal Account or create an account by clicking the "Get Registered" button on the right. Once you register, you can download the presentation slides below.

How to Implement a Software-Defined Network Security Fabric in AWS

  • Wednesday, May 27, 2020 at 10:30 AM EDT (2020-05-27 14:30:00 UTC)
  • Dave Shackleford, Sagar Khasnis


  • AWS Marketplace

You can now attend the webcast using your mobile device!



With the expanding scale of modern networks, security teams often face challenges around maintaining control and visibility across multiple virtual private clouds (VPCs) and network segments. Software-defined networks (SDNs) provide centralized management of your cloud fabric, enabling higher granularity of control over north-south and east-west traffic flows between VPCs. This allows for the selective blocking of potentially malicious inbound and outbound traffic while continuing the flow of normal traffic. Leveraging SDN fabrics alongside solutions such as cloud-based firewalls and tools such as VPC Flow Logs can enhance traffic visibility and control while upholding your security posture.

In this prerecorded webcast, SANS and AWS Marketplace provide guidance on creating and implementing a policy-driven SDN architecture in the cloud. Additionally, they present real-world use cases of successful implementations that have been deployed in Amazon Web Services (AWS) environments.

Attendees will learn how to:

  • Build a control stack of cloud-native and third-party controls to ensure confidentiality, integrity, and availability of their network assets
  • Use a software-defined wide area network (SD-WAN) and cloud security-as-a-service to provide edge security in a unified network fabric
  • Leverage infrastructure-as-code for automation and management of infrastructure
  • Apply best practices to secure a software-defined data center

Register today to be among the first to receive the associated whitepaper written by SANS senior instructor and cloud security expert Dave Shackleford.

Speaker Bios

Dave Shackleford

Dave Shackleford, a SANS analyst, senior instructor, course author, GIAC technical director and member of the board of directors for the SANS Technology Institute, is the founder and principal consultant with Voodoo Security. He has consulted with hundreds of organizations in the areas of security, regulatory compliance, and network architecture and engineering. A VMware vExpert, Dave has extensive experience designing and configuring secure virtualized infrastructures. He previously worked as chief security officer for Configuresoft and CTO for the Center for Internet Security. Dave currently helps lead the Atlanta chapter of the Cloud Security Alliance.

Sagar Khasnis

Sagar Khasnis is a Partner Solutions Architect focusing on AWS Marketplace and Service Catalog. He has vast experience in helping enterprise customers in various technical roles. He is a technologist who is passionate about building innovative solutions using AWS services to help customers achieve their business objectives.

Need Help? Visit our FAQ page or email

Not able to attend a SANS webcast? All Webcasts are archived so you may view and listen at a time convenient to your schedule. View our webcast archive and access webcast recordings/PDF slides.