CyberSecurity Awareness Month with Troy Vinson - Episode 161

CyberSecurity Awareness Month with Troy Vinson - Episode 161

This week, Jeffrey is joined by Troy Vinson; a Principal Software Architect at Clear Measure as a CISSP (Certified Information System Security Professional.) He is an experienced leader, architect, and problem-solver in Information Systems Security and Software Development technologies and has spent the majority of his career integrating computer science, information science, and cognitive science to assist in software development and the management of information.

With October being CyberSecurity Awareness Month, Troy gives a rundown on everything that developers and development teams need to know regarding security, how to become more cyber security aware, the top ten web application security risks you need to look out for, how to keep your environment secure regardless or where you're working from, and what you can putting in place today to improve your cyber security.

Topics of Discussion:

[:39] About The Azure DevOps Podcast, Clear Measure; the new video podcast Architect Tips; and Jeffrey's offer to speak at virtual user groups.

[1:11] About today's episode with Troy Vinson!

[1:23] Jeffrey welcomes Troy to the podcast.

[1:30] What is CISSP?

[2:53] Troy shares his career highlights and the path that led him to his current role in cyber security.

[4:39] Why is October Cybersecurity Awareness Month?

[6:18] What developers should be aware of when setting up a connected environment for themselves at home.

[8:47] Troy's favorite VPN services.

[10:08] Best practice: Always work from a VPN, especially as a developer working from a public place.

[10:25] What developers should keep in mind about source code when it comes to cyber security.

[12:32] How to keep documents (that don't quite fit in a source control repository) secure.

[14:31] Troy highlights important security architecture models of practice.

[15:56] How is the STRIDE model applicable?

[17:59] A word from The Azure DevOps Podcast's sponsor: Clear Measure.

[18:30] What is repudiation in the STRIDE model referring to? What is it in code changes? When is it necessary?

[20:22] Are there test suites that developers can use to augment their functional tests that check for security measures?

[23:16] Should development teams hire third parties to do audits versus doing it in-house?

[24:36] What OWASP Top Ten is and why all of your engineers should be trained on it.

[26:15] Is there a comprehensive list of web application security risks?

[27:28] Troy highlights the importance of #6 on the OWASP Top Ten list: vulnerable and outdated components.

[29:15] Rules of thumb regarding security for development teams when it comes to deployment and configuring environments

[30:56] Free online courses for cyber security awareness that you can share with family members and friends.

[33:52] Jeffrey thanks Troy Vinson for joining the podcast!

Mentioned in this Episode:

Architect Tips — New video podcast!

Azure DevOps

Clear Measure (Sponsor)

.NET DevOps for Azure: A Developer's Guide to DevOps Architecture the Right Way, by Jeffrey Palermo — Available on Amazon!

bit.ly/dotnetdevopsebook — Click here to download the .NET DevOps for Azure ebook!

Jeffrey Palermo's YouTube

Jeffrey Palermo's Twitter Follow to stay informed about future events!

DEVintersection Conference — Dec. 7th‒9th in Las Vegas, Nevada

Cybersecurity Awareness Month | CISA

Cybersecurity Awareness Month | National Cybersecurity Alliance (NCSA)

NordVPN

ExpressVPN

STRIDE Model

GitHub

DevSecOps

SharePoint

One Drive

Azure Front Door

Azure Application Gateway

FxCop

Roslyn

Sonarqube

OWASP Top Ten

Top 25 Most Dangerous Software Errors CWE/SANS

2021 CWE Top 25 Most Dangerous Software Weaknesses

Want to Learn More?

Visit AzureDevOps.Show for show notes and additional episodes.

Jaksot(389)

Matt Mitrik on GitHub with Azure Boards - Episode 29

Matt Mitrik on GitHub with Azure Boards - Episode 29

Today's guest is Matt Mitrik, the Sr. Program Manager of the Azure DevOps Services Team. Matt has been working with ALM and DevOps tools for roughly 13 years. He joined Microsoft in 2006 and has bee...

25 Maalis 201941min

Phil Haack on DevOps at GitHub - Episode 28

Phil Haack on DevOps at GitHub - Episode 28

Phil Haack joins the podcast to discuss DevOps at GitHub! Phil has an interesting and extensive career background. He started out as a Manager of Software Engineering back in 1997. Since then, he's ...

18 Maalis 201946min

Greg Leonardo on Deploying the Azure Way - Episode 27

Greg Leonardo on Deploying the Azure Way - Episode 27

On today's episode, Jeffrey Palermo welcomes back return guest, Greg Leonardo. Greg is a Cloud Architect at Campus Management Corp. and Webonology. Greg's main focus is to help organizations with Clou...

11 Maalis 201942min

Beth Massi on All Things .NET - Episode 26

Beth Massi on All Things .NET - Episode 26

This week, Jeffrey welcomes his guest, Beth Massi! Beth is the Product Marketing Manager for the entire .NET platform. She's also on the Board of Directors for .NET Foundation. She has been with Micro...

4 Maalis 201941min

Martin Woodward on Azure DevOps With GitHub - Episode 25

Martin Woodward on Azure DevOps With GitHub - Episode 25

Today's featured guest is Martin Woodward! Martin is a Principal Group Program Manager on the Azure DevOps team at Microsoft as well as the Vice President of the .NET Foundation. Martin has been with ...

25 Helmi 201948min

Scott Hunter on DevOps Capabilities in Azure - Episode 24

Scott Hunter on DevOps Capabilities in Azure - Episode 24

On today's episode, Scott Hunter joins your host, Jeffrey Palermo, to discuss DevOps capabilities in Azure. Scott is the Director of Program Management for .NET at Microsoft. When Scott first joined M...

18 Helmi 201943min

Simon Timms on Azure Functions and Processes - Episode 23

Simon Timms on Azure Functions and Processes - Episode 23

Simon Timms is a long-time freelance Software Engineer, multi-time Microsoft MVP co-host of ASP.NET Monsters on Channel 9, and also runs the Function Junction Youtube channel. He considers himself a g...

11 Helmi 201938min

Paul Stovell on Octopus Deploy - Episode 22

Paul Stovell on Octopus Deploy - Episode 22

Paul Stovell, the founder and CEO of Octopus Deploy, joins the podcast today. Paul is an expert on all things automated deployment and Cloud operations. He started Octopus Deploy back in 2011, but pri...

4 Helmi 201940min

Suosittua kategoriassa Politiikka ja uutiset

aikalisa
ootsa-kuullut-tasta-2
tervo-halme
rss-ootsa-kuullut-tasta
politiikan-puskaradio
viisupodi
et-sa-noin-voi-sanoo-esittaa
rss-podme-livebox
otetaan-yhdet
rss-vaalirankkurit-podcast
radio-antro
linda-maria
the-ulkopolitist
rss-kaikki-uusiksi
rss-tasta-on-kyse-ivan-puopolo-verkkouutiset
rss-asiastudio
io-techin-tekniikkapodcast
rss-kiina-ilmiot
rss-mina-ukkola
rss-hyvaa-huomenta-bryssel