S2E8: John D'Abruzzo - Offensive Security & Purple Teaming


Given your wide range of experience with AWS and cloud security - what would you say are some of the most common types of attacks for cloud platforms?
What would you say are the top three skills someone should work on if they're interested in a career on a Red Team or as a penetration tester?

Are there some really good resources or open-source tools you recommend for anyone learning about offensive security?

Shifting to Purple Teaming, how does Purple Team differ from traditional PenTest/Red Team activities?

For organizations looking to build out a purple team, where do you recommend they begin?

What does the term Cyber Resilience mean to you?

