Breaking Silos, not Systems: Dissecting the Cloud Beast
2026-04-25 , Training

Serverless abstracts bare metal, not the burden. In fast, event-driven clouds, threats often outpace traditional controls. Misconfigurations, fuzzy trust boundaries, and brittle integrations open new attack surfaces: vulnerable libraries, leaky secrets, wildcard IAM, and misconfigured triggers. In this immersive 3-hour workshop, you will build a hands-on cloud lab with serverless components to design and secure an end-to-end AI pipeline using LynxLab. Through gamified, branch-by-branch challenges, teams will identify vulnerabilities, trace real-world attack paths, and map findings to STRIDE and OWASP Serverless categories. We will examine how ephemeral execution, event chains, and implicit trust can be abused, and how to close those gaps without slowing delivery. You will leave with practical patterns, and defensive strategies for identity, secrets, triggers, and observability, plus a focused playbook to reduce blast radius and ship resilient, modern serverless applications.


While serverless abstracts the underlying infrastructure, it doesn’t reduce responsibility. In highly dynamic, event-driven cloud environments, security teams face fast-moving threats that traditional models weren’t designed to handle. Misconfigurations, fuzzy trust boundaries, and insecure integrations create new attack surfaces, including vulnerable libraries, leaky secrets, wildcard IAM roles, and misconfigured triggers.

In this immersive 3-hour workshop, participants will build a cloud lab using serverless components to design and secure an end-to-end AI pipeline with LynxLab. Teams will tackle gamified, challenge-based scenarios, identifying vulnerabilities in each Git branch, mapping them to STRIDE and OWASP serverless categories, and exploring real-world attack paths.

This session emphasizes practical skills over theory. Attendees will learn how ephemeral execution, event-driven chains, and implicit trust boundaries can be exploited, and leave with actionable patterns, checklists, and defensive strategies to secure modern serverless applications without slowing delivery.

Results - driven Cybersecurity Engineer with diverse experience across Healthcare, Banking, Public, and Telecom sectors, cross-functional project guidance and stakeholder support, security architecture strategy, application security, predictive analytics, and enterprise risk management. Adept at designing and implementing scalable solutions, driving automation, and delivering quantifiable value and innovation.

This speaker also appears in:

With nearly a decade of experience across sectors such as e-commerce, healthcare, gaming, open-source, and cybersecurity, within both large enterprises and agile startups, Shivam brings a creative, solutions-driven approach to complex challenges. Committed to community engagement, he actively mentors early-career cybersecurity professionals, judges prestigious tech awards, peer-reviews academic research, speaks at cybersecurity conferences, and contributes to tech-for-good initiatives with nonprofit organizations. He currently leads cloud security efforts at JPMorganChase, driving robust solutions to support the firm’s ongoing growth.

This speaker also appears in:

Niveadita Razdan is a STEM professional and fiction author with a background in global data systems, regulatory intelligence and large-scale technical problem-solving. She brings a unique narrative lens to break down the hidden risks inside serverless and event-driven cloud architectures.