Uploaded November 2018 | Updated September 2026, 1 week ago
I had the chance to work with the team from Orion Health while they were building out this talk. It's a great story and Marnie and Gavin are excellent storytellers.
If you're working on your security processes and practices in the AWS Cloud, this is a session well worth checking out
* Yes, this is a sponsored session from my employer Trend Micro but the talk isn't a sales pitch. We're using this session as a learning opportunity so you can skip the "hard fought lessons" stage of this type of cultural change.
Below is the official abstract...
---
The race is on. Development teams are moving fast while security teams play catch-up to protect the business. Security is often the department of ‘No’, slowing DevOps, but imagine what transpires when security says ‘Yes’ and collaborates.
In this session, Marnie Wilking, CISO and Gavin Martin, VP, Operational Engineering at Orion Health, share their global AWS deployment and steps taken to facilitate cross-team collaboration. The team alignment around security and automation enabled them to a deliver a faster, more secure solution, achieve automation benefits, and meet HIPAA, HITrust, and GDPR compliance.
Learn how this was achieved without slowing development and operations teams.
I had the chance to work with the team from Orion Health while they were building out this talk. It's a great story and Marnie and Gavin are excellent storytellers.
If you're working on your security processes and practices in the AWS Cloud, this is a session well worth checking out
* Yes, this is a sponsored session from my employer Trend Micro but the talk isn't a sales pitch. We're using this session as a learning opportunity so you can skip the "hard fought lessons" stage of this type of cultural change.
Below is the official abstract...
---
The race is on. Development teams are moving fast while security teams play catch-up to protect the business. Security is often the department of ‘No’, slowing DevOps, but imagine what transpires when security says ‘Yes’ and collaborates.
In this session, Marnie Wilking, CISO and Gavin Martin, VP, Operational Engineering at Orion Health, share their global AWS deployment and steps taken to facilitate cross-team collaboration. The team alignment around security and automation enabled them to a deliver a faster, more secure solution, achieve automation benefits, and meet HIPAA, HITrust, and GDPR compliance.
Learn how this was achieved without slowing development and operations teams.

![New Ransomware Resources For Defenders #shorts
Two new resources launched to help people understand the challenges associated with ransomware.
StopRansomware.gov collects resources for individuals and business trying to prevent ransomware and those impacted by an attack.
RansomWhe.re tracks payments made to ransomware cryptocurrency wallets.
Learn more in this short...
References:
- https://StopRansomware.gov from the US federal government
- https://RansomWhe.re from the Krebs Stamos Group
- Coverage of the US government site launch, $10 million rewards bolster White House anti-ransomware bid, https://apnews.com/article/technology-joe-biden-europe-business-government-and-politics-cd21d84b5fd070421f871610b40e91d0
- Ransomwhere project tracks payment demands, https://finance.yahoo.com/finance/news/ransomwhere-project-tracks-payment-demands-132133459.html
Index:
- [0:00] 2 New Resources
- [0:06] StopRansomware.gov
- [0:24] RansomWhe.re
#shorts New Ransomware Resources For Defenders #shorts](https://i.ytimg.com/vi/JebWBUO0prc/mqdefault.jpg)

![Is the Software Supply Chain Corrupted? #shorts
Software supply chain is a relatively new term but not a new idea. Most software is built using a lot of other components. These components should be checked to make sure they are what you think they are BEFORE being packaged up and sent out to users.
Not shockingly, thats usually not the case and new research shows yet again why this practice hurts your cybersecurity by letting hackers easily compromise your software.
Learn more in this short...
...and you can read the original report by Ax Sharma for Bleeping Computer at https://www.bleepingcomputer.com/news/security/researcher-hacks-over-35-tech-firms-in-novel-supply-chain-attack/
Index:
- The question [0:00]
- A new technique [0:07]
- How software is built [0:12]
- What should happen [0:28]
- Security is fundamental [0:44]
#shorts Is the Software Supply Chain Corrupted? #shorts](https://i.ytimg.com/vi/KA1byyMP0WI/mqdefault.jpg)






