02 Dec 2024
36m

EP201 Every CTO Should Be a CSTO (Or Else!) - Transformation Lessons from The Hoff

Podcast cover

Cloud Security Podcast by Google

This interview podcast features Chris Hoff, LastPass's Chief Secure Technology Officer, discussing his experience rebuilding LastPass's infrastructure and security after a significant incident. The conversation begins with a discussion of Hoff's unique title and its implications for integrating security into technology development. The main focus is on the complete rebuild of LastPass's infrastructure, moving from on-premises data centers to a cloud-native architecture, including the adoption of new security measures like MFA YubiKeys and managed endpoints. Hoff emphasizes the importance of a cultural shift alongside the technological transformation, highlighting the collaborative effort and the unexpected 40% performance increase achieved. The podcast concludes with a discussion of the complexities and simplicities of cloud adoption, suggesting a three-year timeframe for a less crisis-driven approach to such a transformation.

Outlines

Part 1: Introduction & Role

Part 2: LastPass Incident & Rebuild

Part 3: Rebuild Recommendations & Proactive Security

Part 4: Observability & Cloud Complexity

Sign in to continue reading, translating and more.

Open full episode in Podwise