Hero guide: Security for Technical Leaders

Sessions for technical leaders focused on modernizing security, automating compliance, and scaling cloud protections with confidence.

Image Alt

Guillermo Fisher

CEO

Kuzaa LLC

This guide is for technical leaders—CTOs, architects, heads of security, etc.—who are building or scaling cloud security programs. Whether you're starting from scratch or modernizing legacy processes, these sessions will help you cut through the complexity and make scalable decisions. You'll dive into Zero Trust in practice, smarter threat detection, and how to stop drowning in spreadsheets by automating privacy and compliance workflows with AWS. The ideas here are grounded in real-world work, AWS-native tools, and lessons learned from the field. If you're looking for practical answers and a better path forward, you’ll find them here.

Modern Data Protection

Data protection is more than encryption—it’s identity, access, service-to-service trust, and automation at scale. These sessions offer real-world strategies for securing data across cloud environments, with tools and techniques rooted in Zero Trust principles.

NIS331 | Chalk talk | Enhance your cloud security infrastructure using Zero Trust techniques

Enhance your cloud security infrastructure using Zero Trust techniques - Learn how services like Verified Access, VPC Lattice, and Verified Permissions support Zero Trust and continuous authentication across AWS.

DAP332 | Chalk talk | Executive perspective: Risk management for generative AI workloads

Executive perspective: Risk management for generative AI workloads - Explore how to protect enterprise data in generative AI use cases with AWS tools like Bedrock Guardrails and Zero Trust-based design patterns.

NIS341 | Code talk | A deep dive into Amazon VPC Lattice granular security

A deep dive into Amazon VPC Lattice granular security - Understand how VPC Lattice enables fine-grained service-level controls, auditing, and Zero Trust enforcement across microservice traffic.

DAP302 | Breakout session | Fannie Mae's practical path to modern PKI and certificate management

Fannie Mae's practical path to modern PKI and certificate management - See how Fannie Mae modernized their PKI system to reduce risk, boost automation, and support enterprise-scale data protection in the cloud.

IAM331 | Chalk talk | Secure your lakehouse in AWS with fine-grained access control at scale

Secure your lakehouse in AWS with fine-grained access control at scale - Dive into securing data lakes with Lake Formation, Trusted Identity Propagation, and IAM Identity Center across decentralized architectures.

Smarter Threat Detection & Response

You can’t respond to what you can’t see. These sessions focus on detecting threats early, scaling response, and automating recovery—using AWS-native tools and proven playbooks.

TDR331 | Chalk talk | Ask AWS: Your ransomware questions answered

Ask AWS: Your ransomware questions answered - Get direct answers on ransomware detection, response, and recovery from AWS experts—with playbooks and real-world guidance to help secure your operations.

COM324 | Lightning talk | Implementing incident response with AWS Well-Architected best practices

Implementing incident response with AWS Well-Architected best practices - Discover how to build automated response playbooks with AWS services to preserve evidence, isolate workloads, and strengthen your cloud incident ops.

COM222 | Lightning talk | Serverless threat response for Amazon S3 malware detection

Serverless threat response for Amazon S3 malware detection - Learn to automate malware response for S3 using GuardDuty, Lambda, and Step Functions—quarantine threats fast and reduce manual effort at scale.

TDR303 | Breakout session | Building secure generative AI security tools, featuring Trellix

Building secure generative AI security tools, featuring Trellix - Helps leaders build secure, compliant AI tools without blowing the budget—key for orgs navigating GenAI adoption while balancing risk and cost.

Scaling Compliance & Governance

Compliance reflects the strength of your architecture, automation, and leadership. These sessions help you scale security, meet requirements, and move faster.

GRC301 | Breakout session | Best practices for managing governance, risk, and compliance globally

Best practices for managing governance, risk, and compliance globally - Learn how Meta used AWS Control Tower and AWS Organizations to build scalable, secure, and compliant multi-account cloud environments.

GRC231 | Chalk talk | Beyond checkboxes: Gaining assurance of AWS's security posture

Beyond checkboxes: Gaining assurance of AWS's security posture - Discover how to use AWS whitepapers, third-party reports, and the Trust Center to simplify audits and build confidence in your cloud posture.

GRC331 | Chalk talk | Governance best practices for modern applications

Governance best practices for modern applications - See how to apply consistent guardrails across serverless, containers, and managed services—balancing innovation and control at scale.

COM221 | Lightning talk | Modernizing privacy compliance workflows in AWS

Modernizing privacy compliance workflows in AWS - Learn how to automate privacy workflows in AWS using S3, Lambda, and event-driven design to handle DSARs and audits with less manual work.

GRC332 | Chalk talk | Scale security controls across your AWS multi-account landscape

Scale security controls across your AWS multi-account landscape - Build a fully automated compliance framework using Control Tower, SCPs, RCPs, and AWS Config to meet org-wide standards with less effort.

Closing comments

These sessions were handpicked to help you make informed decisions, reduce friction, and scale securely. Whether you’re tightening up your foundations or building something new, you’ll walk away with strategies, tools, and insights to make smart, confident security decisions.