CyberSecurity Awareness Month with Troy Vinson - Episode 161

CyberSecurity Awareness Month with Troy Vinson - Episode 161

This week, Jeffrey is joined by Troy Vinson; a Principal Software Architect at Clear Measure as a CISSP (Certified Information System Security Professional.) He is an experienced leader, architect, and problem-solver in Information Systems Security and Software Development technologies and has spent the majority of his career integrating computer science, information science, and cognitive science to assist in software development and the management of information.

With October being CyberSecurity Awareness Month, Troy gives a rundown on everything that developers and development teams need to know regarding security, how to become more cyber security aware, the top ten web application security risks you need to look out for, how to keep your environment secure regardless or where you're working from, and what you can putting in place today to improve your cyber security.

Topics of Discussion:

[:39] About The Azure DevOps Podcast, Clear Measure; the new video podcast Architect Tips; and Jeffrey's offer to speak at virtual user groups.

[1:11] About today's episode with Troy Vinson!

[1:23] Jeffrey welcomes Troy to the podcast.

[1:30] What is CISSP?

[2:53] Troy shares his career highlights and the path that led him to his current role in cyber security.

[4:39] Why is October Cybersecurity Awareness Month?

[6:18] What developers should be aware of when setting up a connected environment for themselves at home.

[8:47] Troy's favorite VPN services.

[10:08] Best practice: Always work from a VPN, especially as a developer working from a public place.

[10:25] What developers should keep in mind about source code when it comes to cyber security.

[12:32] How to keep documents (that don't quite fit in a source control repository) secure.

[14:31] Troy highlights important security architecture models of practice.

[15:56] How is the STRIDE model applicable?

[17:59] A word from The Azure DevOps Podcast's sponsor: Clear Measure.

[18:30] What is repudiation in the STRIDE model referring to? What is it in code changes? When is it necessary?

[20:22] Are there test suites that developers can use to augment their functional tests that check for security measures?

[23:16] Should development teams hire third parties to do audits versus doing it in-house?

[24:36] What OWASP Top Ten is and why all of your engineers should be trained on it.

[26:15] Is there a comprehensive list of web application security risks?

[27:28] Troy highlights the importance of #6 on the OWASP Top Ten list: vulnerable and outdated components.

[29:15] Rules of thumb regarding security for development teams when it comes to deployment and configuring environments

[30:56] Free online courses for cyber security awareness that you can share with family members and friends.

[33:52] Jeffrey thanks Troy Vinson for joining the podcast!

Mentioned in this Episode:

Architect Tips — New video podcast!

Azure DevOps

Clear Measure (Sponsor)

.NET DevOps for Azure: A Developer's Guide to DevOps Architecture the Right Way, by Jeffrey Palermo — Available on Amazon!

bit.ly/dotnetdevopsebook — Click here to download the .NET DevOps for Azure ebook!

Jeffrey Palermo's YouTube

Jeffrey Palermo's Twitter Follow to stay informed about future events!

DEVintersection Conference — Dec. 7th‒9th in Las Vegas, Nevada

Cybersecurity Awareness Month | CISA

Cybersecurity Awareness Month | National Cybersecurity Alliance (NCSA)

NordVPN

ExpressVPN

STRIDE Model

GitHub

DevSecOps

SharePoint

One Drive

Azure Front Door

Azure Application Gateway

FxCop

Roslyn

Sonarqube

OWASP Top Ten

Top 25 Most Dangerous Software Errors CWE/SANS

2021 CWE Top 25 Most Dangerous Software Weaknesses

Want to Learn More?

Visit AzureDevOps.Show for show notes and additional episodes.

Jaksot(396)

Paul Hacker on DevOps Processes and Migrations - Episode 20

Paul Hacker on DevOps Processes and Migrations - Episode 20

In this episode, Paul Hacker is joining the Azure DevOps Podcast to discuss DevOps processes and migrations. Paul is a DevOps Architect at Microsoft and has over 15 years of application, architectur...

21 Tammi 201937min

Greg Leonardo on Architecting, Developing, and Deploying the Azure Way - Episode 019

Greg Leonardo on Architecting, Developing, and Deploying the Azure Way - Episode 019

Today's guest is Greg Leonardo, a Cloud Architect at Campus Management Corp. and Webonology. Greg's main focus is to help organizations with Cloud adoption and innovation. He's been working in the IT ...

14 Tammi 201938min

Aaron Palermo on Cybersecurity and SDP - Episode 018

Aaron Palermo on Cybersecurity and SDP - Episode 018

Today's episode is a bit of a special one — your host, Jeffrey Palermo, interviews his own older brother, Aaron Palermo. Aaron is a DevOps engineer, solution architect, and all-around cybersecurity ex...

7 Tammi 201952min

Gopinath Chigakkagari on Key Optimizations for Azure Pipelines - Episode 017

Gopinath Chigakkagari on Key Optimizations for Azure Pipelines - Episode 017

In today's episode, your host, Jeffrey Palermo, is joined by his guest, Gopinath Chigakkagari. Gopinath is Principal Group Program Manager on the Azure Pipelines product and is an expert on continuous...

31 Joulu 201830min

Roopesh Nair on the Release Capabilities of Azure Pipelines - Episode 016

Roopesh Nair on the Release Capabilities of Azure Pipelines - Episode 016

Today's episode of the Azure DevOps Podcast is featuring Roopesh Nair, a Principal Lead Program Manager at Microsoft. He has over 20 years of experience in custom software. And at Microsoft, he works ...

24 Joulu 201835min

Chris Patterson on the Future of Azure Pipelines - Episode 015

Chris Patterson on the Future of Azure Pipelines - Episode 015

Today's episode is all about the future of Azure Pipelines. To discuss this topic is Chris Patterson, Principal Program Manager at Microsoft. Chris has been working at Microsoft for over 13 years — st...

17 Joulu 201839min

Jeremy Epling on Azure Pipelines - Episode 014

Jeremy Epling on Azure Pipelines - Episode 014

In today's episode Jeffrey is joined by Jeremy Epling, Head of Product for Azure Pipelines and a Principal Group Program Manager at Microsoft. He has been a leader at Microsoft for over 15 years in va...

10 Joulu 201845min

Jamie Cool on What's Going On in Azure DevOps - Episode 013

Jamie Cool on What's Going On in Azure DevOps - Episode 013

In this episode, Jeffrey Palermo is joined by Jamie Cool to discuss what's going on in Azure DevOps! Jamie is the Director of Program Management for Microsoft. In his role he manages dozens of Program...

3 Joulu 201836min

Suosittua kategoriassa Politiikka ja uutiset

uutiscast
aikalisa
politiikan-puskaradio
ootsa-kuullut-tasta-2
rss-ootsa-kuullut-tasta
tervo-halme
rss-pinnalla
rss-vaalirankkurit-podcast
the-ulkopolitist
otetaan-yhdet
rss-podme-livebox
rss-tasta-on-kyse-ivan-puopolo-verkkouutiset
rss-asiastudio
et-sa-noin-voi-sanoo-esittaa
aihe
rss-polikulaari-pitka-kiekko-ja-muut-ts-podcastit
rss-kaikki-uusiksi
rss-50100-podcast
rss-ulkopoditiikkaa
rss-hyvaa-huomenta-bryssel