Name
Cloud Security: Lacework FortiCNAPP [Part 3 of 6]
Location Name
Acadia B
Date
Wednesday, September 10, 2025
Time
8:30 AM - 12:30 PM (ADT)
Description

The Cloud Security track covers comprehensive cloud security solutions including cloud-native application protection, network firewalls, and web application firewalls. Participants engage in hands-on labs and capture-the-flag challenges.

Key Components
1. FortiCNAPP (Cloud Native Application Protection Platform)

  • Format: Capture The Flag challenges
  • Scenario: Role-play as new employees at "Unhackable Inc"
  • Focus Areas:
    • Prevention: Avoiding mistakes during software build/deployment
    • Protection: Finding vulnerabilities before attackers do
    • Detection & Response: Threat detection and incident response
  • Interactive Element: CTF platform with challenges and scenarios

2. FortiGate CNF (Cloud Native Firewall)

  • Focus: AWS workload protection using FortiGate CNF SaaS
  • Learning Objectives:
    • AWS networking concepts and architecture patterns
    • FortiGate CNF subscription and deployment
    • Security policy configuration and management
    • Traffic flow testing and control
  • Hands-on: Real AWS environment with practical exercises

3. FortiWeb Cloud

  • Focus: Web application firewall configuration
  • Target Application: Juice Shop (vulnerable e-commerce website)
  • Skills Covered:
    • Bot protection
    • Machine learning API protection
    • Web shell detection
    • CSRF protection
    • SQL injection prevention

 

Raffi Newman Louis Boro Sam Vuillaume Moro Arakaki