
cloudonaut
96 episodes — Page 1 of 2
Ep 97Less Alerts, More Impact: Stephen Kuenzli on Winning at AWS Security
Stephen Kuenzli, founder of k9 Security, joins us to talk about his journey from AWS consultant to SaaS builder — and why IAM is still the hardest part of cloud security. We dig into practical advice for achieving least privilege, how to deal with the flood of security alerts from tools like AWS Security Hub and Wiz, and why your team's attention budget matters more than fixing every finding. Plus, Stephen plays a quick-fire round rating Security Hub controls as "critical" or "distraction."
Ep 96#096 AWS European Sovereign Cloud: Sovereignty or Just Marketing?
In this episode, Andreas introduces his long-time friend Thorsten Höger, with whom he shares a history going back to school and later working together on an AWS-powered online banking platform. Thorsten has spent over 10 years helping SMB customers in regulated industries build compliant AWS infrastructures, specializing in networking, security, Serverless, and CDK. He talks about his current consulting work and his upcoming product Deploymon. A major topic is the AWS European Sovereign Cloud (EUSC), where Andreas shares a field report and the hosts debate whether EUSC is genuine sovereignty or just "sovereign washing" given concerns around the US Cloud Act. They also discuss how small businesses can benefit from AI tools. Andreas uses AI to review blog posts, find bugs, and update dependencies, while Thorsten relies on it for customer offers, software development, planning, and research.
Ep 95#095 AWS costs are like fingernails ...
Michael shares a trick to reduce AWS Config costs for volatile workloads. Andreas talks about EC2 instance families and their availability in the different AWS regions. On top of that, the Wittig brothers share insights into their work and business.
Ep 94#094 It's the small improvements that make us smile
This episode covers a month of record growth and strategic shifts, celebrating new customer wins and diving into our marketing strategies. We share project updates, including bucketAV's multi-engine scan, and highlight key AWS topics: simplified AMI deletion and generating SDKs for API Gateway. Tune in for insights, wins, and fails!
Ep 93#093 Getting ISO 27001 certified as a 2-person company
Getting ISO 27001 certified is not just boring paperwork. We discuss what we've learned and how we improved information security for our customers. Also, Michael shares how to run Amazon Linux 2023 on small machines like t3.nano.
Ep 92#092 The Cloud Control API came a long way
Learn how to work around missing resources in Terraform by using the Cloud Control API and the awscc Terraform provider. Also, Michael shares what he learned from migrating a workload from Amazon Linux 2 to Amazon Linux 2023. Last but not least, Andreas reviews the fwd:cloudsec Europe conference. ☁️ Cloud Control API + Terraform awscc ☁️ Migrating to Amazon Linux 2023 ☁️ fwd:cloudsec Europe in Review
Ep 91#091 Cloudflare R2 Same Same But Different
Look behind the curtains of releasing two new products: bucketAV for Cloudflare R2 and attachmentAV Virus and Malware Scan API. Andreas and Michael discuss what they learned about Cloudflare, S3, and API Gateway. Besides that, the brothers rant about new security controls added to Security Hub recently.
Ep 90#090 AWS Testing Awesomeness
Andreas and Michael Wittig were pretty jazzed about writing unit tests using mocks for the AWS SDK v3 in JavaScript. They broke down Amazon's new GuardDuty malware protection for S3 and how it compares to their own product bucketAV. The duo also covered testing Terraform modules and using aws-nuke to clean up leftover resources from failed tests. They gave their two cents on some recent AWS service announcements too - CloudWatch, Fargate, CloudFormation and more!
Ep 89#089 Copying 5 TB in 15 minutes
Andreas and Michael are sharing their learning while building on AWS. This episode is about cost-efficient networking on AWS. Besides that, Andreas and Michael discuss how to speed up infrastructure tests by parallelization and multiple AWS accounts. Last but not least, Andreas asks Michael about his thoughts on the latest AWS announcements.
Ep 88#088 AWS networking without burning money?
Andreas and Michael are sharing their learning while building on AWS. This episode is about cost-efficient networking on AWS. Besides that, Andreas and Michael discuss how to speed up infrastructure tests by parallelization and multiple AWS accounts. Last but not least, Andreas asks Michael about his thoughts on the latest AWS announcements.
Ep 87#087 Automate all the release processes!
Andreas and Michael are sharing their learning while building on AWS. This episode is about automating the release process of bucketAV, a software product sold on the AWS Marketplace. Besides that, Andreas and Michael discuss how to reduce costs for GitHub Actions. Last but not least, Andreas asks Michael about his thoughts on the latest AWS announcements.
Ep 86#086 Overwhelmed by Security Hub
Andreas and Michael are sharing their learning while building on AWS. This episode is about AWS Security Hub and how to get any value out of the predefined security controls. Besides that, Andreas and Michael celebrate their 9th company anniversary by giving insights into their story. Last but not least, Andreas asks Michael about his thoughts on the latest AWS announcements.
Ep 85#085 Losing trust in KMS
Ep 84#084 Aurora Serverless is dead, long live Aurora Serverless!
Ep 83#083 One region to rule them all
Which EC2 instance families are available in which region? How protect agents connected through Amazon Connect from malware uploaded by customers? What is S3 Object Lock all about?
Ep 82#082 Generating boring CloudFormation templates with the CDK
Should you upgrade to Terraform 1.6 already? How to avoid blind spots when monitoring Lambda functions? An unusual way to utilize the CDK.
Ep 81#081 AWS JavaScript SDK v3 + CloudWatch Dashboard Custom Widgets
Andreas and Michael Wittig are building on AWS since 2009. Follow their journey of developing products like bucketAV, marbot, and HyperEnv and learn from practice.
Ep 80#080 Self-hosted GitHub Runners on AWS + S3 Object Lambda + AWS Community Day Germany
Ep 79#079 Delayed scaling due to inactive SQS queue
Two brothers discussing all things AWS every week. Hosted by Andreas and Michael Wittig presented by cloudonaut.
Ep 78Does AWS Support provide more value than ChatGPT?
Two brothers discussing all things AWS every week. Hosted by Andreas and Michael Wittig presented by cloudonaut.
Ep 77Monitoring AWS Inspector + Terraform AWS Provider + Spot Pricing
Two brothers discussing all things AWS every week. Hosted by Andreas and Michael Wittig presented by cloudonaut.
Ep 76How we built bucketAV powered by Sophos
Two brothers discussing all things AWS every week. Hosted by Andreas and Michael Wittig presented by cloudonaut.
Ep 75Downloading 5 TB from S3 is not that easy!
Two brothers discussing all things AWS every week. Hosted by Andreas and Michael Wittig presented by cloudonaut.
Ep 74EC2 instance, ID card please!
Two brothers discussing all things AWS every week. Hosted by Andreas and Michael Wittig presented by cloudonaut.
Ep 73Advanced Monitoring with EventBridge + Amazon Linux 2 Container
Two brothers discussing all things AWS every week. Hosted by Andreas and Michael Wittig presented by cloudonaut.
Ep 72Serverless and DevOps a match made in heaven | Builder's Diary Vol. 006
Ep 71Scaling On-Demand and Spot Instances + On-Premises VPC Endpoints
Two brothers discussing all things AWS every week. Hosted by Andreas and Michael Wittig presented by cloudonaut.
Ep 70ElastiCache vs. MemoryDB + SLA 99.99% + Terraform ignore_tags
Two brothers discussing all things AWS every week. Hosted by Andreas and Michael Wittig presented by cloudonaut.
Ep 69S3 Permission Debugging + AWS Region Drift + Self-hosted GitHub Runner + SQS Scale-In Workaround
Two brothers discussing all things AWS every week. Hosted by Andreas and Michael Wittig presented by cloudonaut.
Ep 68#68 AWS Snowcone + SSM Agent + Terraform
Two brothers discussing all things AWS every week. Hosted by Andreas and Michael Wittig presented by cloudonaut.
Ep 67#67 EventBridge Scheduler + Packer AMI + AWS Debug Games
Two brothers discussing all things AWS every week. Hosted by Andreas and Michael Wittig presented by cloudonaut.
Ep 66#66 ECS Anywhere Hybrid Cloud Containers | Builder's Diary Vol. 5
Ep 65#65 [Hot off the Cloud] Year in Review + CloudWatch Metrics Insights + SaaS Free Trail
Two brothers discussing all things AWS every week. Hosted by Andreas and Michael Wittig presented by cloudonaut.
Ep 64#64 [Hot off the Cloud] ECS Service Connect + Auto Scaling Target Tracking
Two brothers discussing all things AWS every week. Hosted by Andreas and Michael Wittig presented by cloudonaut.
Ep 63#63 Serverless Software Engineering | Builder's Diary Vol. 4
Ep 62#62 [Hot off the Cloud] re:Invent + CodeCatalyst + EventBrige Pipes + Step Functions Distributed Map
Two brothers discussing all things AWS every week. Hosted by Andreas and Michael Wittig presented by cloudonaut.
Ep 61#61 [Hot off the Cloud] re:Invent + Cross-Account CloudWatch + AuthZ Verified Permissions + ELB Resilience
Two brothers discussing all things AWS every week. Hosted by Andreas and Michael Wittig presented by cloudonaut.
Ep 60#60 [Hot off the Cloud] AppSync JavaScript Resolvers + IAM MFA + CloudFront CD
Two brothers discussing all things AWS every week. Hosted by Andreas and Michael Wittig presented by cloudonaut.
Ep 59#59 [Hot off the Cloud] EventBridge Scheduler + Resource Explorer + ECS scale-in protection
Two brothers discussing all things AWS every week. Hosted by Andreas and Michael Wittig presented by cloudonaut.
Ep 58#58 [Hot off the Cloud] Neptune Serverless + WAF Bot Control + Private App Runner + Fault Injection Simulator
Two brothers discussing all things AWS every week. Hosted by Andreas and Michael Wittig presented by cloudonaut.
Ep 57#57 Infrastructure Pipeline with GitLab and Terraform Cloud | Builder's Diary Vol. 3
Ep 56#56 [Hot off the Cloud] Lambda Parameters + Dark Mode + SQS FIFO + Nitro Enclaves + Interactive Video Service
Two brothers discussing all things AWS every week. Hosted by Andreas and Michael Wittig presented by cloudonaut.
Ep 55#55 Serverless ETL with Athena and Airflow | Builder's Diary Vol. 2
Ep 54#54 [Hot off the Cloud] Lambda event filtering Kafka + Athena query engine v3 + more
Two brothers discussing all things AWS every week. Hosted by Andreas and Michael Wittig presented by cloudonaut.
Ep 53#53 [Hot off the Cloud] Monitor VPC Network Address Usage + Aurora Serverless v2 + AWS IQ
Two brothers discussing all things AWS every week. Hosted by Andreas and Michael Wittig presented by cloudonaut.
Ep 52#52 [Hot off the Cloud] Amazon File Cache + EBS Snapshots Archive + EC2 Auto Recovery
Ep 51#51 AWS-to-go Vol. 4: Programming your infrastructure
Get started with AWS or broaden your knowledge while walking, biking, running, driving, or whenever you enjoy listening to podcasts.
Ep 50#50 AWS-to-go Vol. 3: Using Virtual Machines EC2
Get started with AWS or broaden your knowledge while walking, biking, running, driving, or whenever you enjoy listening to podcasts.
Ep 49#49 AWS-to-go Vol. 2: WordPress in Fifteen Minutes - an Example
Get started with AWS or broaden your knowledge while walking, biking, running, driving, or whenever you enjoy listening to podcasts.
Ep 48#48 AWS-to-go Vol. 1: What's Amazon Web Services?
Get started with AWS or broaden your knowledge while walking, biking, running, driving, or whenever you enjoy listening to podcasts.