Back to blog

Follow and Subscribe

Kelly Shortridge

Kelly Shortridge

Chief Product Officer, Fastly

Kelly Shortridge is Fastly’s Chief Product Officer after leading Fastly’s Security business and serving in the Office of the CTO. Her experience spans B2B product leadership, entrepreneurship (as a startup founder with an exit to CrowdStrike), and investment banking (M&A covering the cybersecurity and AI sectors). Kelly is lead author of Security Chaos Engineering: Sustaining Resilience in Software and Systems (O'Reilly Media) and is best known as a leading-edge expert on software resilience, modernizing cybersecurity to align with platform engineering and DevOps approaches, and the application of behavioral economics to cyber defense. Kelly frequently advises Fortune 500s, investors, startups, and federal agencies and has spoken at major technology conferences internationally, including Black Hat, RSA Conference, and KubeCon. Her research has been featured in prestigious computer science journals like ACM, IEEE, and USENIX, spanning behavioral science in cybersecurity, deception strategies, and the ROI of software resilience. Kelly also serves on the editorial board of ACM Queue. Kelly holds a Bachelor’s of Arts in Economics from Vassar College.
An illustration of a shield with arrows and a server behind it
How React2Shell is evolving: Industries and regions targetedKelly Shortridge
Fastly is seeing sustained React2Shell attacks across all industries and regions. Learn what’s happening and the critical steps enterprises should take to patch vulnerable apps.
SecurityIndustry insights
Fastly’s Proactive Protection for React2Shell, Critical React RCE CVE-2025-55182 and CVE-2025-66478Kelly Shortridge
Protect your apps from the critical React RCE bugs (CVE-2025-55182/66478). Fastly's NGWAF Virtual Patch provides proactive defense.
Security
Chaotic Good: Resilience Stress Tests at the EdgeKelly Shortridge
Getting started with chaos experimentation? In this post, we’ll walk through a small starter example experiment – verifying basic security assumptions on a website.
ComputeSecurity+3
Regex in retrogradeKelly Shortridge
If we want to outmaneuver attackers, then we must progress beyond regex into a more modern era of detection.
Industry insightsSecurity
Deadlock bugs: circular waits of torment | FastlyKelly Shortridge
This post will illuminate how deadlock bugs emerge, some facets of their fascinating and frustrating strangeness, and guidance on how to handle them in your own systems.
Security