Liran Tal — The state of open source software security
Liran Tal is a Developer Advocate @snyksec and is the author of Essential Node.js Security. He takes #opensource and protecting the #web very seriously.
Listen to the episode304 episodes, going back to 2016. Showing 193–216.
Liran Tal is a Developer Advocate @snyksec and is the author of Essential Node.js Security. He takes #opensource and protecting the #web very seriously.
Listen to the episodeWhy should someone care about open source security? FOLLOW OUR SOCIAL MEDIA: ➜Twitter: @AppSecPodcast ➜LinkedIn: The Application Security Podcast ➜YouTube:…
Listen to the episodeSteve Springett is a technologist, husband, father, entrepreneur, and tequila aficionado. He is the creator of the OWASP @DependencyTrack and @CycloneDX_Spec.
Listen to the episodeThe question is for Steve Springett, in regards to Software Composition Analysis / Software Supply Chain and OWASP Dependency Track.
Listen to the episodeElissa Shevinsky is CEO at Faster Than Light. She's had a storied career as an entrepreneur with Brave, Everyday Health, and Geekcorps.
Listen to the episodeRobert asks Elissa Shevinsky, why should people be nice, or why is niceness important in security?
Listen to the episodeMatt McGrath is an old school Java developer that made the transition into security. Matt has had success in rolling out a programmatic approach to security improvement called security coaching.
Listen to the episodeErez Yalon and Liora Herman are both passionate security professionals. They joined forces to create the AppSec Village, an event at DefCon in Las Vegas.
Listen to the episodeIt's BlackHat and DefCon season, so we asked a question of Erez Yalon; why did you start the AppSec Village?
Listen to the episodeTommy Ross serves as Senior Director, Policy with BSA | The Software Alliance. In this role, he works with BSA members to develop and advance global policy…
Listen to the episodeAdam Shostack is a leading expert on threat modeling, and a consultant, entrepreneur, technologist, author and game designer.
Listen to the episodeIf you've done anything with threat modeling, you've heard of Adam Shostack. We asked him the question, "why would anyone threat model?".
Listen to the episodeZoe Braiterman is an Innovation Intelligence Strategist focused on both the Machine and Human and also the OWASP WIA Chair.
Listen to the episodeCaroline Wong has had a long career in security, starting with eBay and leading to her role today at Cobalt.IO as Chief Strategist.
Listen to the episodeBjörn Kimminich is the project leader for OWASP JuiceShop. This is his second visit to the podcast, and we discuss new features in JuiceShop, including XSS…
Listen to the episodeBjörn Kimminich is the project leader for OWASP JuiceShop. He created JuiceShop out of necessity, after reviewing all the available vulnerable web apps years ago, and not finding what he needed.
Listen to the episodeNancy Gariché and Tanya Janca are two of the project leaders for the OWASP DevSlop Project. As we learn more about DevSlop, we realize that it is much more than a project: it's a movement.
Listen to the episodeTanya Janca is excited about mentoring. She's started a hashtag on Twitter for mentors to find mentee's, and for mentee's to search for mentors.
Listen to the episodeMatt Clapham is a product security person, as a developer, security engineer, advisor, and manager.
Listen to the episodeJon McCoy is a security engineer, a developer, and a hacker; and a passionate OWASP advocate. Maybe even a hacker first.
Listen to the episodeOmer Levi Hevroni has written extensively on the topic of Kubernetes and secrets, and he's a super dev. He's the author of a tool for secrets management called Kamus.
Listen to the episodeIzar Tarandach is a threat modeling pioneer, seen as one of the movers and shakers in the threat modeling world.
Listen to the episodeSimon Bennetts is the project leader for OWASP ZAP. Simon joined Robert at CodeMash to talk about the origin of ZAP, the new heads up display, and ZAP API.
Listen to the episodeRobert meets up with Bill Sempf at the CodeMash conference and discusses how to grow AppSec people. Developers can transform into application security people.
Listen to the episode