Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

Cloud Security in 2025 What CISOs Need to Prepare For with João Pedro Gonçalves and Michael Tremante

In this episode of The Connectivity Cloud Podcast with Cloudflare, host Mark Dembo is joined by João Pedro Gonçalves, CISO and Managing Director at EQT Group, and Michael Tremante, Senior Director of Product at Cloudflare. Together, they explore critical security trends for 2025, from AI-powered threats to regulatory changes to practical strategies for balancing protection with usability. What You’ll Learn.

Cloudflare Bot Management Demo

Cloudflare applies a layered detection approach to Bot Management with several detection engines that cumulatively impact the bot score. Bot scores can be used in WAF rules to create granular security policies. This demo highlights how Cloudflare can help with several use cases including web scraping, account takeover, and AI bot protection. Additionally, Cloudflare's AI Assistant, Cloudy, is used to review additional bot analytics and create a WAF rule based on bot score and additional criteria.

One of the biggest cybersecurity myths out there?

One of the biggest cybersecurity myths out there? VPNs equal complete privacy. Here's what you need to know: A VPN hides your IP address, but it doesn't make you anonymous. Your VPN provider still has your data and logs and can hand them over if requested. Websites still track you through cookies, fingerprints, and browser activity. On the latest episode of The Connectivity Cloud Podcast, João Pedro Gonçalves and Michael Tremante break down why VPNs aren't the silver bullet they're marketed to be.

API Security with Cloudflare API Shield Demo

Cloudflare API Shield provides many capabilities across API discovery & management, posture management, and runtime protection. This demo highlights some of these capabilities including machine learning discovery, sequence analysis and mitigation, schema learning, schema validation, volumetric abuse protection, organizational / user-created labels, risk labels, sensitive data detection, and posture management.

Cloudflare DDoS Web Protection Demo

Cloudflare DDoS Web Protection provides automatic, intelligent DDoS mitigation from the edge of Cloudflare's global network — mitigating most attacks in three seconds. Advanced Adaptive DDoS Protection learns your unique traffic patterns and adapts to them to provide better protection against sophisticated DDoS attacks. Learn more.

Open-sourcing OpenPubkey SSH (OPKSSH): integrating single sign-on with SSH

OPKSSH makes it easy to SSH with single sign-on technologies like OpenID Connect, thereby removing the need to manually manage and configure SSH keys. It does this without adding a trusted party other than your identity provider (IdP). We are excited to announce OPKSSH (OpenPubkey SSH) has been open-sourced under the umbrella of the OpenPubkey project.

Security Week 2025: in review

Thank you for following along with another Security Week at Cloudflare. We’re extremely proud of the work our team does to make the Internet safer and to help meet the challenge of emerging threats. As our CISO Grant Bourzikas outlined in his kickoff post this week, security teams are facing a landscape of rapidly increasing complexity introduced by vendor sprawl, an “AI Boom”, and an ever-growing surface area to protect.