About Mike Olson
Mike Olson, co-founder and former CEO of Cloudera, has been speaking publicly about the role and responsibilities of corporate boards of directors, drawing on his experience as a founder and investor. In a December 2023 talk at Monktoberfest, Olson described a board of directors as an "adjunct leadership team" whose primary responsibilities are strategic, while management handles tactics. He advised that founders should seek board members they like and trust, noting that a good board can be a major asset and a bad board a major drag. Olson also emphasized the importance of directors and officers insurance and recommended quarterly meetings as often enough, with the ability to convene the board as needed.
In earlier appearances, Olson discussed the evolution of big data, cloud computing, and data privacy. He described Cloudera as the first company focused on big data for the enterprise, adapting technologies from consumer internet companies for use by banks, hospitals, and insurance companies. Olson has argued that the General Data Protection Regulation (GDPR) in Europe will be followed by similar privacy legislation in the United States, and that organizations should secure their data, set policies, and monitor compliance regardless of where data is stored. He has also expressed concern about large companies losing sight of their consumers, stating that businesses should aim for mutually beneficial, long-term relationships rather than simply extracting value.
Source: AI-verified profile updated from Mike Olson's recent appearances.
Browse all interviews →
Transcript (43 segments)
A
August0:02
Hi, I'm August. I'm Jess, and I'm Carl. Welcome to The Periphery, a podcast about the biggest tech issues that are grappling with as a society. We're finding new tools for understanding these complex debates at a time when there is so much at stake, so we can decide what technology should and could be for us. Before we get started, make sure to subscribe to our podcast on Patreon, Apple Podcasts, and Spotify.
Thanks for joining today's conversation on cloud computing, the revolutionary way that our personal data is being processed and stored.
C
Carl0:49
I'm a bit hesitant to bring this up because Microsoft lost. Oh no, you've become a bonafide Microsoft booster since you said 'I do' to their job offer.
A
August1:01
This is a strong word.
J
Jess1:01
It is not, Carl. He just... he's not a booster, he just wears their gear every day.
A
August1:08
Today is one of those rare days when August is not wearing his Microsoft t-shirt, but then again, he is wearing a t-shirt underneath his sweater, right? I guarantee you might see the Microsoft shirt.
C
Carl1:21
Way to cut to the point. August, what is your default browser?
A
August1:25
It's Microsoft Edge.
C
Carl1:27
And what is your default search engine, actually?
A
August1:31
I changed back to Google from the other main competitor, but that's not what we're talking about today. We're talking about the fact that Microsoft is no longer getting this $10 billion cloud contract.
J
Jess1:46
As much as I would like to really call it a loss, just because I feel like August needs a little bit of humility after he's on this Microsoft pedestal, it's not really a loss.
C
Carl1:55
No, it's Microsoft and Amazon were battling for 20 months over a contract with the Department of Defense to provide cloud computing services. Like all major industries, the military needs cloud computing too. Originally, Microsoft was awarded the contract, then they re-awarded it again, but there was contention on Amazon's part over the procurement process, whether it was biased because the Trump administration doesn't like Jeff Bezos and doesn't like the Washington Post. But everyone knows, it's really because Microsoft has the most secure cloud, because that's the only reason these companies care about getting the contracts right now. If you're like me, you saw the $10 billion headline and thought that was huge, which is probably why every article put it in the headline. I don't really know much about clouds, but I know it's a lot. But when you read the articles, they're like, 'This is pennies.'
A
August3:00
Yeah, I think there's a prestige in being a patriotic company, to have a contract with the military. Then again, double-edged sword. I think it was last year or two years ago, Google employees walked out over a contract with the military. I think the prestige lies more in having the most secure cloud.
J
Jess3:23
Yes, and you know how important this is. You've done some research. This is a pretty big industry when you think about these cloud contracts. A big aspect of it is the international politics too. There's this growing trend among governments to say that if you're going to host certain cloud computing databases in our jurisdiction, then our government gets certain access to your data. There are obviously different levels of that. There's also this big movement in the EU to create a European cloud out of fear of domination in the Chinese and American markets. So these are complex issues outside of just American contracts.
A
August4:06
Exactly. From the standpoint of information sharing, it would probably be the most efficient just to have one cloud and not to have all these geopolitical clouds popping up all over the place. Are our nation states kind of accepting those inefficiencies for the sake of security and other geopolitical interests, perhaps even privacy?
C
Carl4:24
Just as you're absolutely right, where you put these massive data centers, which are very expensive not only to build but to maintain, that falls under different sovereign jurisdictions. The European Union, for example, will insist that if you're processing European data subjects' information, you need to abide by certain rules and you certainly can't transfer them to different societies like the United States that has weaker privacy protection.
A
August5:01
I think the main takeaway is that the cloud is going to be a trillion-dollar industry by 2026, which far surpasses even the most optimistic projections that any analyst could have made probably even five years ago. Today, lucky for us, we are actually speaking to someone who is the founder of a company named Cloudera. His name is Mike Olson. Speaking to him, I think we'll get a better understanding of what this thing is that we call the cloud, how it originated, what is its trajectory, where is it going, what are some of the risks relating to security and privacy, but also what are some of the benefits of this revolutionary technology that is creating value for people around the world. Long story short, we want to know where can the cloud go and where should we take it.
C
Carl6:09
Thank you so much for joining, Mike. You are the founder, former CEO, and board chairman of Cloudera, a pretty well-known cloud computing company. We had some questions because we've done some research, primarily Jess, but we still have a lot of questions about what the cloud is, where it can go, how should we think about it, and what the stakes are for people who aren't necessarily technologists or don't even really know what the cloud is. So, what is it, Mike?
M
Mike Olson6:45
Let me dive in and actually let me back up a whole bunch of decades. My very first job in the computer industry was working for a company in Kansas City, Missouri, that sold time-sharing computer services. This was '77-'78, I was in high school. At the time, companies wanted computers to do some data processing or maybe payroll processing; they had specific jobs they wanted to run. Computers were super expensive and also really finicky to run. So most businesses, rather than going out buying their own computers, installing them, setting them up, running them, keeping them happy, would contract with a firm like United Computing Services to buy time on computers that those folks owned, and they'd connect over a modem or a dedicated line. Maybe for 15 or 20 minutes a day, if they were super technical, maybe for as much as an hour or two a day, they would use the computer at United Computing to run their jobs. In fact, they'd be able to share it; a lot of people could use it at the same time.
J
Jess7:54
What did they need the computers for then, because they didn't have email?
M
Mike Olson7:58
One of our customers at United Computing was an engineering firm. Someone wants to design a building, you've got to know how sturdy, how strong all of the supporting members need to be, how far apart they need to be. A whole bunch of mathematics. You could do that with a calculator and a piece of paper, but you'd probably screw it up, you'd probably fat finger it. Using computer programs was a much more predictable way to do that. So they would write their own computer programs and then run them on the UCS machines. Every business that was a customer had some specific application it needed to run but didn't want the hassle of buying and running a general purpose computer. So they would just buy time on the ones that we had.
C
Carl8:41
It sounds like that's computing in the most literal sense. You needed them to do complex calculations to figure out complex math. I'm wondering how long did that industry last? Did you see it grow and eventually, of course, it was disrupted by personal computing?
M
Mike Olson8:58
My answer is really it lasted forever. It ebbed and flowed over time. My contention is that the move to the cloud is kind of a move back to the philosophy of those time-share days. Buying and running computers is hard and finicky; securing them is difficult and the bad guys are clever. Why not find somebody who can do that for you? In the '80s and '90s, companies like Sun Microsystems, IBM, and Microsoft began to offer computers and computer programs that were way less complicated, and most companies were able to afford and operate these computers on their own. So they built their own data centers and stopped using the timeshare services and started using their own. That was decades of the industry. Through the '90s and into the early 2000s, most companies had their own data centers and ran their own computer programs. In 2006, Amazon, which had up to then been just an e-commerce company, a bookstore and then a general purpose e-commerce company, announced two novel services: the Simple Storage Service, S3, storage online, and their Elastic Compute, EC2. This was 2006. These were the very first AWS offerings. Amazon Web Services is now hundreds of different services, but S3 and EC2 remain. Those were very interesting novel services at the time. Most of us had wired telephones in our house; you could plug a cable into the wall and get dial tone. The analogy, at least in my view, from Amazon was being able to just connect to this internet service and get data tone. I could get a computer whenever I wanted it; I could get as much storage as I needed. I didn't have to plan ahead and buy disks and make room for them; I could just buy that stuff. Amazon pioneered the cloud, of course, and they were followed by a whole bunch of other very great vendors who offer their services as well. The growth of those services turned into what we now know as the cloud.
A
August11:13
This term of the cloud, I think it's used in a lot of different contexts now. But back then, my understanding is it sort of became used as a term to describe this empty space, this unseeable space between point A and point B where you've got the data center that's either hosting the running of the program or maybe hosting the data storage, and then point B being the user experience. Is that what the cloud means?
M
Mike Olson11:44
Fair summary. The reason that EC2 and S3, the reason that compute and storage made sense to offer was it saved me, just an ordinary guy living in my house with my kids in Berkeley, the trouble of needing to go buy a whole bunch of disks or buy computers that I would use for specific things. But it was still kind of hard to use. I had to go configure the compute instances in the Amazon cloud, be sure I got the right one, spin them up, spin them down. You didn't want to leave them running because the meter just turned over; it was sort of like leaving your oven on when you went away for vacation. There was a lot of complexity in it. As Amazon rolled out more services, there were more things I would need to configure. They built, and the other cloud providers likewise have built, a sort of ease of use and integration. The administration overhead has been taken away; they do those things now so that I don't need to worry about it. No doubt we're going to talk later on about security and privacy. Securing your data, making sure you don't have any back doors into your system is both imperative and surprisingly difficult. If I can rely on a cloud vendor who's got a lot of money to spend on those services and is going to be really expert -- probably better than me -- doing it on my own, I'm likely to get it wrong and get penetrated, whereas the cloud vendors are able to offer much more secure services.
C
Carl13:07
I see on the document when we're preparing this episode, you mentioned flexibility as the main value add that cloud computing gives these companies. It's part of that flexibility where they don't have as much flexibility to just kind of make a business choice on a whim because of the other logistical considerations that the cloud vendors kind of take out. Is the primary benefit just the flexibility?
M
Mike Olson13:30
I absolutely don't want to minimize the claims I just made about security and configuration and operations. All of that stuff is hard work and the cloud vendors are really good at it. So offloading that work to those folks makes huge sense to me. But flexibility is a really big deal. Imagine I've got an idea for my business. I think if I can build some new software, I can measure how customers interact with my online services, and I can direct much better offers at them, give them more of what they want. But that's just my idea; I don't really know if that's the case. If I got to walk down the hall and talk to the CIO or the CFO and ask for 15 computers that I can put into our data center in order to run this experiment, it's going to be a tough conversation. Even if they say yes, they're going to buy them, and then if my experiment fails, they're just going to get mothballed. Even if they agree to that, I'm going to have to call up Dell or Supermicro, order the machines, it's going to take a month or two for them to show up because of supply chain problems. When they get delivered to my loading dock, it's going to be a bunch of boxes; I'm going to have to have a whole bunch of IT staff go rack and stack and cable those things up. We're gonna have to be sure we got enough electricity flowing into the room, it's gonna generate a bunch more heat, do I have enough AC? If I can just go touch the Microsoft Azure button and get the 15 servers I need and use them for a week and a half and spin them down with no fuss and no obligation to get rid of the boxes at the end, I'm going to do those experiments a lot more. That flexibility is absolutely huge.
C
Carl15:31
And that efficiency you overcame through these services, a lot of that capital intensive requirement of setting up your own data center, running that experiment, and also contracting out security as well. They would handle all the complexities of keeping your data secure.
M
Mike Olson15:52
If I'm running computer services, I still need to think about security: how do I protect my passwords, when I hire and fire someone, do I give them and then revoke their access to my systems, and so on. But baseline security – is the very latest version of the kernel and the operating system and all of the key utilities installed, and is somebody monitoring the network looking for people that are trying to get in and noticing when that happens and shutting down those accesses – that is super complicated. It's something I'm likely to mess up because I'm not a specialist. I'd much rather staff that out to somebody who does nothing but that every single day. All of the cloud vendors offer remarkably good security services.
J
Jess16:37
But if you're a cloud vendor and you're managing the data from all the hundreds of companies that are using your service, surely doesn't the job of keeping all that secure multiply many times?
M
Mike Olson16:50
Their problem is that they are very big targets because of the volume of data that they have. I would argue that it's not multiplicative, it's not even additive. If you've got to secure your systems, you fundamentally need to secure them, but adding one or two new customers doesn't make it fundamentally harder to secure. Your first 100, your first thousand, maybe your first million customers are hard, but after that, the incremental cost of making sure you stay secure as you deploy new hardware doesn't get worse. But it becomes an attractive target, as you say. Why do you rob banks? Because that's where the money is. Why do you attack a cloud vendor? Because if you get in, that's where the data is.
C
Carl17:33
Let's talk about privacy and security then, because that's what got us into this whole tech conversation in the first place here at The Periphery. With all the innovation that we have studied recently and are talking about with all of our guests, there are trade-offs that a lot of our great and novel innovations give us. I just know personally, maybe a lot of us have a lot of our data given to different cloud vendors, and the ownership of that data is very unclear. On what August said, how exactly secure is it? I'm curious how they are able to give this promise of endless cloud computing and maintain the talent and people in-house to keep it as secure as possible. What are the privacy and security risks, or for the flexibility? I'm just kind of curious, how bad is it that all of my data is ostensibly accessible from two or three vendors?
M
Mike Olson18:33
I'm gonna answer the question in a couple of different ways. First, there is just some gritty technical work you need to do if you're going to be sure that your systems are secured. A lot of liability you take on too. Hackers are trying to break into systems all the time; it's a very clever constituency. As vendors release new code and that gets deployed in the cloud, that opens opportunities for basically new vulnerabilities. There's a big attack surface if you're running a lot of software at massive scale. The cloud vendors are able to spend a lot of money to solve that problem: hire the very best people, send them to the conferences that they're going to learn the most at, educate them continually, and work very closely with the software vendors to secure that stuff. It's not a small problem, it's not a solved problem; there are vulnerabilities in all the software. But my point of view is that Amazon, Microsoft, and Google do a much better job of that than the local credit union is going to be able to do. But then there's this other philosophical question. You and I, all of us, we've got an enormous amount of personal data that we just sort of glibly store in the cloud, and most of us don't even know what that means: which cloud? I drove down here from Berkeley to Palo Alto, and I have a Fast Track transponder in my car. The reason I like that transponder, it lets me blow right through the toll booths on the bridges. But it turns out there are transponder readers buried in the road. When you see the signs on the side of the highway that tell you how long the driving time is from Burlingame to Oakland, the reason they know that is they're watching the cars go by with the transponders in them all the time. Nobody -- the convenience of blowing through the bridges and the convenience of knowing how long the drive is going to be has totally inured us. We didn't even ask the question: should that data be collected? Should it be kept? Where and how well? Who has it? Is it the government? I don't know the answer to that question. I don't know what the storage philosophy is there. And the government would contract out to a cloud provider perhaps to store that data anyway. Even if they're the ones who are collecting it, almost certainly the state of California is not running that infrastructure; it's working with some third-party vendor that provides that service. Then you've got to ask: are their security, where's their data stored?
J
Jess21:20
When I worked in city hall in San Diego, it was a really big story when the police department started contracting with a data company, a cloud computing company, for some of the data that was being collected from the traffic lights. I don't know what the data was and where it's going, but they were collecting it. It's certainly valuable.
M
Mike Olson21:44
Almost certainly that was traffic cameras photographing people that were running red lights. Those cameras are now pretty widely deployed. In Berkeley, all of the traffic and all of the parking enforcement little cars have cameras on them and are able to roll along reading every single license plate they go by. That data gets uploaded to a third party who actually keeps it for a year. Look, it's useful for the police because if you're a scofflaw with a whole bunch of tickets and you're parked somewhere, they'd like to boot your car. That's a perfectly legitimate enforcement job. But if I'm legally parked, why should my license plate be saved? 'You have nothing to hide,' as they like to say. But if you had all that data, you could start to notice who frequented what areas by what license plates were where. You could notice perhaps I am commonly near the same coffee shop regularly. Perhaps you could start to know who I'm associating with. If you were a stalker, that'd be great data to break into because you'd be able to target whoever you were stalking. There are a lot of ethical questions around that data. We need to ask those questions as a society. I don't think we do a good enough job at it yet. I do think that for the big three cloud providers -- Amazon, Microsoft, and Google, actually I'll add Apple -- at least their policies on data retention and access are pretty well spelled out. I think this topic is worth exploring a little more for those four in particular. But let me pause because I've kind of rambled on for a while. Any questions on this stuff?
A
August23:31
No, I'm just eating it up. I'm learning a lot right now.
Mike certainly gave us nothing but questions to ask, and that's kind of the good news because that means there's a ton of opportunity for people who haven't really had a say to have a say. I remember when I started coming into tech, I was thinking a lot about first movers and how when you set a precedent, it's much harder to reform it than it is to just be the first mover. So I'm kind of encouraged to hear Mike not have a lot of answers to some of the bigger problems that we find with cloud computing, because it means that there's this opportunity for people like me and people like you all to figure out what we want and then demand it before anyone else realizes what there is to demand.
J
Jess24:33
On that point, Offie, I was really struck by his philosophical point about how we're not thinking that much about all the data of our lives that we're just handing over to these large, concentrated service providers. It's a question that we need to talk about more, and as a society, we're not very good at that. In many ways, I feel like that's this podcast: we're figuring out how to converse about that, how to make that conversation broad. So a lot of the questions that he left us with, I feel like we're answering right now. So I have a question for The Periphery: what aren't we comfortable with? What is the line and what is the balance? At least in you all's, very rudimentary perspectives, what are you all comfortable with? Are you in control with four defenders having our data? Is that what we should be working towards?
C
Carl25:29
I think in some ways it's inevitable that these vendors are going to have our data as more things move onto the cloud. So it's a question of course we can have the conversation about what data should be on the cloud, but the conversation probably more realistically will be about how secure is that data, so cybersecurity, and who has access to that data and how much control do we actually have over that data. I think control is huge. When you get large swaths of data, it can be really helpful in a lot of ways. In the healthcare industry specifically with COVID, it was a big help to have information about people's health status, and that data was anonymized. At least in certain spheres, that was done in the right way, and even then there was controversy over who owned that data, was it the states or the federal government, and that had implications for people who were in safe haven cities for immigrants versus places that are less friendly to immigrants without proper documentation.
A
August26:38
When Mike talked about the right to forget and how it isn't really a right to forget because they can't forget that you chose to be forgotten, I'd prefer that over not having that choice, over not having the ability to say I want you to forget about me and I want you to stop sharing my information with third-party vendors. And I think back to the way that the early precursors to AWS that he mentioned helped him and his business, how he was able to run experiments that he never would have had the capital for, and how it must have helped thousands, millions of people to start businesses, to come up with new ideas, to become productive, and to make their visions into reality. I have to consider that very closely when I think about all the risks as well. He mentioned the scale, the attack surface, the fact that when it comes to security in these large cloud providers, it's not multiplicative, it's not even additive, but it's the fact that there's this huge incentive for threat actors to target these giant gold mines he compared to banks. That's the new concern: how do we keep, what are the cyber equivalents of security guards? My main takeaway for us on The Periphery now is that our data is going to be on the cloud, and I actually think that we can reap a lot of benefits in productivity and other spheres from our data being on the cloud. But if we are aware that we are transferring that data to the cloud, I think that is a huge step. Then we can actually participate in the conversation to shape the terms on which our data will be on the cloud, and I think that is the crucial thing. That is the conversation that we need to have.
J
Jess28:31
If I may make somewhat of a stretch of an analogy, I've recently thought about gymnastics, which has been in the conversation a lot in the Olympics particularly because of Simone Biles. It honestly made me push my thoughts on this balance that we're talking about: balance of innovation and efficiency and flexibility for some pretty incredible things. At the same time, we have acquiesced a lot of our privacy and a lot of access to our personal selves to four or five people who benevolently choose what happens with our data. In gymnastics, they have banned a lot of different moves that some people are skilled enough to do that make it difficult to really assess who's the greatest of all time. A lot of moves have been banned because they possess such a risk to these athletes that it's not worth figuring out what the best is, because it's not worth the championship to die. It's kind of this value that gymnastics has made, and it was pretty interesting to me because they really cut back on what could be for what their values were for their athletes. It really made me think about the balance and values that we have in our tech conversation. Maybe we do need to talk about the fact that maybe it's not killing us, but it's having such bad social implications that it's worth having the conversation of where we actually draw the line and stop. I thought it was very interesting that gymnastics was able to find the line of, given how dangerous all the things they do, what was too much to handle for all the good that the sport presents.
C
Carl30:19
I think that's an apt analogy. Also, the aspect about international politics was interesting. When you talk about government contracts with cloud computing, it makes you think about what's prioritized from a company's perspective when they're building out cloud computing and when they're determining consumer rights. Maybe it's the United States' place on the global stage, and without the conversation happening here at home, that's really all they can take into account at this point. So maybe with more conversations like this, our policy will get a bit more nuanced. The way that we decide how information will be stored here is going to affect our place in the world at large.
A
August31:05
I think we've at the very least started to get a handle on the cloud. At least we started the conversation. Most importantly, we hope we have provoked you to run the conversation. We hope you do that by subscribing, liking, telling your friends, most principally talking to someone who you haven't had this type of conversation with and asking them what they think. Come back and let us know in the comments or if you run into us on campus; we'd love to hear your thoughts. Because what are we without the Periphery? Thanks for tuning in.