Serge Borso
Certified InstructorCEO at SpyderSec
Specialities
Cloud Security, Offensive Operations
Experience SANS training through course previews.
Learn MoreLet us help.
Contact usConnect, learn, and share with other cybersecurity professionals
Engage, challenge, and network with fellow CISOs in this exclusive community of security leaders
Become a member for instant access to our free resources.
Sign UpMission-focused cybersecurity training for government, defense, and education
Explore industry-specific programming and customized training solutions
Sponsor a SANS event or research paper
We're here to help.
Contact UsCloud Security, Offensive Operations
When it comes to cyber security, Serge is among the best possible instructors to learn from due to his experience, accomplishments, and, quite frankly, his personality. Duplicate badges to walk right through security and access a "secure" facility – did that. Dumpster diving for sensitive information outside of a financial institution – to him, that was “lots of fun.” Create an enterprise-wide, measurably successful security program for a billion-dollar company – one of his many accomplishments. All of them, in scope of the engagements. He’s an instructor for SEC488: Cloud Security Essentials, author of SEC480: AWS Secure Builder, a published author, President of the Denver Open Web Application Security Project (OWASP) chapter, founder and CEO of the cyber security consulting firm, SpyderSec, he’s discovered multiple 0-days, written OSINT tools for the community, and is a polished presenter who speaks regularly at national conferences. Truly, an expert in the field.
Serge is the best instructor I've ever had! He's so knowledgeable and has a great teaching style. Very relatable and helps when people have questions.
Serge is excellent, keeps the class moving, and ties content to current real-world examples.
Top notch! Serge makes the course work very interesting and engaging.
Here are upcoming opportunities to train with this expert instructor.
Explore content featuring this instructor’s insights and expertise.
Application security is quickly becoming a growing concern for many organizations. But relatively fewer resources are spent preventing the application-specific security bugs that create dangerous vulnerabilities. Effectively reducing human risk across the organization requires dedicated training paths to teach the entire team involved in your development cycles.
Securing a cloud environment can be challenging and time consuming, especially if you don't know where to start. This Workshop will scrutinize a common cloud service: Virtual Machines, and focus on the secure implementation of that service. We'll discuss Operating Systems (and why it matters from a cloud perspective), as well as security groups, remote access, system and network hardening as well as how mature organizations handle deployments. While discussing these topics will be enlightening and entertaining, deploying our own infrastructure will be a blast! Join this 2-hour workshop to learn how experts solve for the security concerns surrounding virtual machines in a cloud environment.
Whether you are just getting started in cloud security, or overseeing a team of technical cloud practitioners, you likely have questions about the process, journey, technology, and career path of cloud security professionals.
As organizations move to the cloud, understanding the division of security responsibilities between cloud service providers (CSPs) and customers is critical. In this talk, we will dive deep into the Shared Responsibility Model, exploring how cloud security is a collaborative effort.
Review relevant educational resources made with contribution from this instructor.