Maximizing the Potential of AWS-WAF @FIRSTdotorg
Maximizing the Potential of AWS-WAF  @FIRSTdotorg
Uploaded August 2025 | Updated September 2026, 31 minutes ago
Maximizing the Potential of AWS-WAF: Fully Automating threat detection with Custom Managed Rules and Proprietary Threat Intelligence

Shota Sugawara (NTT-ME CORPERATION, JP), Hirofumi Kawauchi (NTT-ME CORPERATION, JP)

Shota Sugawara leads the development and operation of Managed Security Services (MSS) for enterprises and municipalities, focusing on cloud security operations using AWS. His experience includes conducting vulnerability testing and ensuring the security of hundreds of IT systems owned by NTT East, Japan's largest telecom carrier. He is also actively involved in CTF competitions, specializing in Pwnable challenges.

Dr. Hirofumi Kawauchi, SOC Manager at NTT-ME, has over 10 years of experience in cybersecurity. He previously led incident response and vulnerability management at NTT East, Japan's largest telecom carrier. He also worked as a SOC analyst and threat intelligence developer at NTT Security US. Upon returning to Japan, he launched NTT East's Managed Security Service as a tech lead, developing SOC infrastructure. He actively contributes to Japan's telecom industry and cybersecurity education through ICT-ISAC JAPAN, university lectures, and industry events. He has also presented at BSides Las Vegas. He holds CISSP, GCFA, GPEN, and AWS-SAP/SCS certifications. NTT Group Certified Security Principal, PhD in Engineering.
--
In our SOC, we leverage AWS-WAF to protect numerous client web servers, but we have taken it a step further. By integrating it with our proprietary threat intelligence, we have fully automated the process -- from detecting attacks to investigating and blocking them. In this presentation, we will share how we achieved this through: 1) Setting up custom rules to make AWS-WAF operations more effective and efficient, 2) Implementing an automated detection and blocking system, and 3) Presenting examples of these functions successfully countering actual cyber threats. This presentation will provide practical and actionable insights to enhance your day-to-day security operations.
Maximizing the Potential of AWS-WAFHack Your Boards Mindset: Closing the Strategy-Operations Gap via Board Game SimulationsPanel: CVE Record Disputes Discussion: Policy, Process, and Opportunities for Improvement
FIRST |

Maximizing the Potential of AWS-WAF

SHARE TO X SHARE TO REDDIT SHARE TO FACEBOOK WALLPAPER