A presentation of top 10 security facts that will disrupt established application and infrastructure security practices. A discussion centered around questions everyone is or should be asking in 2020:What is the attack surface of the public cloud?Why are NIDs, HIDs, and flow collectors not adapted for cloud based infrastructure and applications?How to protect APIs and cloud native applications running in dynamic, end-to-end encrypted service meshes?What is Next Gen WAF and when should I consider it?What are automated threats and how to protect against the 4th generation bots?Is deep learning an inexorable technology as attackers get automated and attacks more sophisticated?What will be the impact of 5G on application security and availability?Presentation outlineA top 10 is subjective in nature, but it wasn’t just pulled out of thin air. The 10 facts are based on trends in recent threats, my own security research, and discussions with CISOs and security leaders.