Get a GIAC Certification Attempt Included or $350 Off with SANS Online Training!


To attend this webcast, login to your SANS Account or create your Account.

Making Sense of the Critical Security Controls in the Cloud

  • Tuesday, August 15th, 2017 at 3:30 PM EDT (19:30:00 UTC)
  • Eric Johnson
This webcast has been archived. You can view the webcast presentation and download the slides by logging into your SANS Portal Account or creating an Account. Click the Register Now button after you have logged in to view the Webcast.

You can now attend the webcast using your mobile device!


Is cloud security feeling a bit nebulous? A solid framework can help get you on stable footing. The CIS Critical Security Controls are publicly available (and free), and offer just such a framework. This talk will offer an in-depth examination of three of the Critical Security Controls and how they can be applied using Amazon Web Service (AWS) services and tools.

Speaker Bio

Eric Johnson

Eric Johnson, the Application Security Curriculum product manager at SANS, is the lead author and instructor for DEV544 Secure Coding in .NET, as well as an instructor for DEV541 Secure Coding in Java/JEE. A senior security consultant at Cypress Data Defense, Eric's experience includes web and mobile application penetration testing, secure code review, risk assessment, static source code analysis, security research and developing security tools. He currently holds the CISSP, GWAPT, GSSP-.NET and GSSP-Java certifications.

Need Help? Visit our FAQ page or email

Not able to attend a SANS webcast? All Webcasts are archived so you may view and listen at a time convenient to your schedule. View our webcast archive and access webcast recordings/PDF slides.