The Security Table

The Security Table

The Security Table is four cybersecurity industry veterans from diverse backgrounds discussing how to build secure software and all the issues that arise!

Tämä podcast on lisätty Podme-palveluun avoimen RSS-syötteen kautta eikä se ole Podmen omaa tuotantoa. Siksi podcastin jaksot saattavat sisältää mainontaa.

Jaksot(111)

Debating the CISA Secure by Design Pledge

Debating the CISA Secure by Design Pledge

In this episode of 'The Security Table,' hosts Chris Romeo, Matt Coles, and Izar Tarandach discuss the CISA Secure by Design Pledge, a recent initiative where various companies commit to improving sof...

31 Touko 202439min

Why Developers Will Take Charge of Security, Tests in Prod

Why Developers Will Take Charge of Security, Tests in Prod

The script delves into a multifaceted discussion encompassing critiques and praises of book-to-movie adaptations like 'Hitchhiker's Guide to the Galaxy', 'Good Omens', and 'The Chronicles of Narnia'. ...

21 Touko 202448min

12 Factors of Threat Modeling

12 Factors of Threat Modeling

Chris, Matt and Izar share their thoughts on an article published by Carnegie Mellon University’s Software Engineering Institute. The list from the article covers various threat modeling methodologies...

14 Touko 202445min

XZ and the Trouble with Covert Identities in Open Source

XZ and the Trouble with Covert Identities in Open Source

Matt, Izar, and Chris delve into the complexities of open source security. They explore the topics of trust, vulnerabilities, and the potential infiltration by malicious actors. They emphasize the imp...

2 Touko 202443min

Nobody's Going To Mess with Our STRIDE

Nobody's Going To Mess with Our STRIDE

Matt, Izar, and Chris take issue with a controversial blog post that criticizes STRIDE as being outdated, time-consuming, and does not help the right people do threat modeling. The post goes on to rec...

9 Huhti 202439min

SQLi All Over Again?

SQLi All Over Again?

Chris, Matt, and Izar discuss a recent Secure by Design Alert from CISA on eliminating SQL injection (SQLi) vulnerabilities. The trio critiques the alert's lack of actionable guidance for software man...

2 Huhti 202437min

How I Learned to Stop Worrying and Love the AI

How I Learned to Stop Worrying and Love the AI

Dive into the contentious world of AI in software development, where artificial intelligence reshapes coding and application security. We spotlight the surge of AI-generated code and the incorporation...

26 Maalis 202442min

Secure by Default in the Developer Toolset and DevEx

Secure by Default in the Developer Toolset and DevEx

Matt, Chris, and Izar talk about ensuring security within the developer toolset and the developer experience (DevEx). Prompted by a recent LinkedIn post by Matt Johansen, they explore the concept of "...

19 Maalis 202443min