AWS INCIDENT RESPONSE – Automate Containment

View Show Notes and Transcript

Episode Description

What We Discuss with Damien Burks:

  • 00:00 Introduction
  • 00:13 A word from our sponsors –
  • 01:16 A bit about Damien Burks
  • 02:24 Incident Response in the cloud context
  • 03:50 Is incident response different in the cloud?
  • 05:22 Average time for an incident response
  • 07:33 AWS services for incident response automation
  • 08:55 AWS Eventbridge
  • 11:56 The phases of incident response
  • 13:42 Containment Phase: Starting point and challenges
  • 17:54 Organisation with Multiple Accounts
  • 20:09 How to structure the process
  • 21:04 Containment for EC2 instance
  • 23:54 Enjoying this cloud security topic so far?
  • 25:17 Containment for S3 Bucket
  • 27:57 Where to start with incident response
  • 30:18 Preparing for Incidents
  • 32:08 Fun Questions

THANKS, Damien Burks

If you enjoyed this session with Damien Burks, let them know by clicking on the link below and sending him a quick shout out at his website:

Click here to let Ashish know about your number one takeaway from this episode!

And if you want us to answer your questions on one of our upcoming weekly Feedback Friday episodes, drop us a line at

Resources from This Episode