SANS 2025 Cloud Security Exchange

On Thursday, August 21st, join SANS and cloud security leaders from Amazon Web Services (AWS), Google Cloud, and Microsoft for a strategic look into the evolving cloud threat landscape—and the frameworks, tactics, and real-world lessons you need to stay ahead.

This global online eventcompletely free of charge, offers a rare chance to learn from the top experts. Don’t miss out!

What You’ll Learn:

Explore real-world strategies from AWS, Google Cloud, and Microsoft to stay ahead of today’s evolving cloud threats. Topics include:

  • Breaking the cycle of common cloud security missteps
  • Zero Trust in practice—not just in theory
  • Secure-by-design architecture across identity, workloads, and response
  • Navigating the impact of Generative AI on cloud risk
  • Actionable frameworks, architectures, and checklists you can use right away

How to Register:

Login and click the Register button below. If you don’t have a SANS account, you’ll be prompted to create one—it’s free and easy.

Registration Benefits:

  1. CPE Credits: Earn 4! Enhance your professional development and keep your certifications current.
  2. Receive the eBook: A complimentary Cloud Security eBook co-authored by AWS, Google Cloud, Microsoft, and SANS.
  3. Flexible viewing: Can’t attend live? Register anyway and get full access to the recordings.
  4. Join a powerful network: Thousands of peers, leaders, and innovators in one place.
  5. Engage in real time: Connect directly with speaker and attendees via SANS Slack space.

Explore the Full Agenda:

Scroll down (keep going) to view the detailed agenda and speaker lineup.

470x380_Cloud-Security-Exchange-2025.jpg

Thank You to Our Sponsors

AWS_logo_RGB.pngGoogle_Cloud.pngMicrosoft_-_Transparent.png

This webinar is offered free of charge through collaboration between SANS and its sponsor(s). If you prefer not to share your registration details with sponsor(s), a recorded webinar will be available approximately 30 days after its initial release through the SANS archive. To access the recording, you will need to create a SANS account, but your information will not be shared with the sponsor(s).

Cloud Security Exchange 2025 – Agenda Highlights

Join SANS and cloud security leaders from AWS, Google Cloud, and Microsoft for an action-packed day of strategy, insight, and practical guidance. Below is a snapshot of what to expect:

Timeline (EDT)

Session Description

10:30AM

Welcome Remarks

Speaker:
Frank Kim, Fellow and Curriculum Director, SANS Institute

Kick off the day with a high-level overview of today’s cloud security landscape and what’s at stake for defenders.

10:45AM

AWS Keynote

Speaker:
Dr. Paul Vixie, Deputy CISO, AWS &
Brandon Evans

Title: AI for Security, and Security for AI: Navigating Opportunities and Challenges

Artificial intelligence offers powerful opportunities for innovation—and introduces new risks. This session explores the dual challenge of securing AI systems and using AI to enhance security posture across cloud environments.

This session will:

  • Unpack the security implications of AI adoption, including risks and mitigation strategies;
  • Examine how organizations can apply automated reasoning and other AI-driven approaches to improve security across traditional and AI workloads; and
  • Provide actionable guidance for scaling cloud security capabilities with AI, while maintaining control and reducing risk. 

Drawing from real-world insights, AWS will offer a practical view into how AI is reshaping the cybersecurity landscape—and what your organization can do to prepare.

11:30AM

Microsoft Keynote

Speakers:
Wes Kuzma, Microsoft &
Simon Vernon

Title: Defending Against Modern Threats: Applying Zero Trust in Real Enterprise Environments

Discover how Zero Trust has evolved from theory to enterprise-critical strategy. Learn how Microsoft is helping organizations build dynamic, real-world Zero Trust frameworks that counter modern attacker tactics.

This session will:

• Establish a foundational understanding of the Zero Trust security model and its core principles;

• Explore how emerging technologies impact an organization’s ability to adopt, implement, and maintain a Zero Trust posture; and

• Analyze current attacker tactics, techniques, and procedures (TTPs), along with the corresponding defensive capabilities enabled by Zero Trust architectures. To bring these concepts to life, the chapter integrates real-world scenarios that demonstrate how modern Zero Trust strategies are being applied across enterprise environments to enhance security, reduce risk, and support digital transformation.

12:35PM

Google Cloud Keynote

Speakers:
Dr. Anton Chuvakin &
Dave Shackleford

Title: Cloud Security Groundhog Day: Avoiding Recurring Mistakes in a Dynamic Landscape

Why do so many teams repeat the same cloud security mistakes? This session dissects persistent pitfalls—from clinging to outdated IAM models to neglecting cloud-native tooling—and offers practical steps to break the cycle.

You’ll walk away with:

• Insight into the most common recurring mistakes in cloud security

• A framework for reviewing and evolving outdated practices

• Actionable guidance to build a more future-proof cloud security strategy

1:20PM

Expert Panel Discussion

Moderator:
Frank Kim

Panelists:
Dr. Paul Vixie,
Dr. Anton Chuvakin,
Wes Kuzma

Join our headline speakers for an in-depth conversation on cloud security trends, lessons learned, and what’s coming next in detection, resilience, and architecture strategy

2:20PM

Closing Remarks

Final thoughts and key takeaways from the day. Bonus: All registrants receive access to the session recordings + the 2025 Cloud Security Insights eBook, featuring insights and guidance from AWS, Google Cloud, Microsoft, and SANS.