HOW TO START in BUG BOUNTY IN 2020 with Casey Ellis, BugCrowd

HOW TO START in BUG BOUNTY IN 2020 with Casey Ellis, BugCrowd

In this episode of the Virtual Coffee with Ashish edition, we spoke with Casey Ellis

In this episode, Casey & Ashish spoke about

  • What was your path into CyberSecurity
  • .What does Cloud Security mean for you?
  • CrowdSource security as a service model & Bug Bounty, can you tell the audience about this space?
  • How do you make people feel comfortable with the concept of crowdsource security?
  • Is bug bounty only for big companies?
  • How do you make sure you are not painting a big bulls eye on your back through crowdsource security?
  • Basic things people can start with - security.txt, responsible disclosure?
  • How can people get into the Bug Bounty Space? Can anyone get into it?
  • How do we fix the ostrich head in the sane mentally of less mature organisations?
  • How can we foster a safer environment to talk about Bug Bounty openly?
  • When Bug Bounty goes wrong?
  • How do economics and game theory play into the crowdsourcing bug bounty scene? Do researchers look for other outlets? How do companies find the sweet spot of payments?
  • Is it better to disclose a bug to a third party or the actual company?

ShowNotes and Episode Transcript on www.cloudsecuritypodcast.tv

Twitter - @kaizenteq @hashishrajan

If you want to watch videos of this and previous episodes:

- Twitch Channel: https://lnkd.in/gxhFrqw

- Youtube Channel: https://lnkd.in/gUHqSai

Jaksot(345)

Remote Access Trojans target Public Cloud Infrastructure

Remote Access Trojans target Public Cloud Infrastructure

Cloud Security News this week 19 Jan 2022 Cisco Talos Researchers have shared in a blog last week that a trio of remote access Trojans (RATs)—Nanocore, Netwire and AsyncRAT—are being spread in a ca...

19 Tammi 20227min

Secret Management for Modern Apps Explained

Secret Management for Modern Apps Explained

In this episode of the Virtual Coffee with Ashish edition, we spoke with Dylan Ayrey (@insecurenature) is a Professional Hacker and Co-Founder of Truffle Security (@trufflesec) Episode ShowNotes, Link...

16 Tammi 202248min

CISO in a Cloud World in 2022 - Stu Hirst

CISO in a Cloud World in 2022 - Stu Hirst

In this episode of the Virtual Coffee with Ashish edition, we spoke with Stu Hirst (Linkedin-Stu Hirst) is the Chief Information Security Officer (CISO) of Trustpilot (@Trustpilot). Episode ShowNotes,...

12 Tammi 202239min

UK Financial Regulators monitoring Cloud Providers Closely

UK Financial Regulators monitoring Cloud Providers Closely

Cloud Security News this week 12 Jan 2022 UK’s financial regulators - The Prudential Regulation Authority is looking to increase it’s monitoring of Cloud providers like AWS, Azure and Google Cloud. ...

12 Tammi 20224min

Building Modern Identity (IAM) Roadmap for Cloud

Building Modern Identity (IAM) Roadmap for Cloud

In this episode of the Virtual Coffee with Ashish edition, we spoke with Fred Wilmot (@fewdisc) is an ex-Veteran and Chief Information Security Officer (CISO) of JumpCloud (@JumpCloud). Episode ShowNo...

9 Tammi 202248min

Google invests in Security + Microsoft's Log4Shell Update

Google invests in Security + Microsoft's Log4Shell Update

Cloud Security News this week 5 Jan 2022 Google has acquired security orchestration, automation and response (SOAR) provider, Siemplify. Neither company has disclosed any amounts however sources in...

5 Tammi 20225min

Building Scalable Authorization in Cloud Native Apps

Building Scalable Authorization in Cloud Native Apps

In this episode of the Virtual Coffee with Ashish edition, we spoke with Or Weis (@OrWeis) co-founder and CEO of Permit.io (@permit_io). Episode ShowNotes, Links and Transcript on Cloud Security Podca...

2 Tammi 202250min

The Latest with Log4J

The Latest with Log4J

Cloud Security News this week 22 December 2021 Most folks in cybersecurity have been consumed with all things Log4shell with a CVSS score of 10, since last week. Check out last week’s episode or our...

22 Joulu 20213min