Building an Engineering Security Culture - Failure stories included - Edwin Kwan, Tyro Payments

Building an Engineering Security Culture - Failure stories included - Edwin Kwan, Tyro Payments

In this episode of the Virtual Coffee with Ashish edition, we spoke with Edwin Kwan, Head of Application and Software Security at Tyro payments.

Edwin & Ashish spoke about

  • What was Edwin’s path into CyberSecurity?
  • What is AppSec for people who don't know?
  • What is the difference between Application Security and Software Security?
  • Is being a developer an advantage going into Application Security?
  • Is AppSec any different between cloud compared so an application deployed on-premise?
  • Enabling an engineering security culture - What does this mean for those who don't know?
  • Engineering Security Culture - How has it evolved to now most of the code developed is using open source libraries
  • Enabling an engineering security culture - Where can one start and what should be avoided?
  • What is DevSecOps for you?
  • Edwin’s book - Failure of DevSecOps

ShowNotes and Episode Transcript on www.cloudsecuritypodcast.tv

Twitter - @kaizenteq @hashishrajan

If you want to watch the previous episodes:

- Twitch Channel: https://lnkd.in/gxhFrqw

- Youtube Channel: https://lnkd.in/gUHqSai

Episoder(345)

RSA Conference 2025 Recap: Top Themes, Actionable Insights & Future Trends

RSA Conference 2025 Recap: Top Themes, Actionable Insights & Future Trends

Dive deep into the key takeaways from RSA Conference 2025 with our expert panel! Join Ashish Rajan, James Berthoty, Chris Hughes, Tanya Janca, and Francis Odum as they dissect the biggest trends, surp...

9 Mai 202553min

Mindset: Modern SOC Strategies for Cloud & Kubernetes (Ft Sergej Epp. Ex-Deutsche Bank)

Mindset: Modern SOC Strategies for Cloud & Kubernetes (Ft Sergej Epp. Ex-Deutsche Bank)

Join Ashish Rajan in this episodeas he dives deep into the evolving world of cloud security with Sergej Epp, formerly of Deutsche Bank and Palo Alto Networks, now with Sysdig.Discover why traditional ...

24 Apr 202535min

Scaling Container Security Without Slowing Developers

Scaling Container Security Without Slowing Developers

Are you struggling to implement robust container security at scale without creating friction with your development teams? In this episode, host Ashish Rajan sits down with Cailyn Edwards, Co-Chair of ...

17 Apr 202528min

How Attackers Stay Hidden Inside Your Azure Cloud

How Attackers Stay Hidden Inside Your Azure Cloud

In this episode, Ashish sits down with Christian Philipov, Principal Security Consultant at WithSecure, to explore the stealth tactics threat actors are using in Azure and why many of these go undetec...

10 Apr 202535min

How Confluent Migrated Kubernetes Networking Across AWS, Azure & GCP

How Confluent Migrated Kubernetes Networking Across AWS, Azure & GCP

Ever tried solving DNS security across a multi-cloud, multi-cluster Kubernetes setup? In this episode recorded live at KubeCon, Ashish chats with Nimisha Mehta and Alvaro Aleman from Confluent's Kuber...

2 Apr 202515min

The New Future of Cloud Security: Vendor Lock-In, Runtime, and SOC Readiness

The New Future of Cloud Security: Vendor Lock-In, Runtime, and SOC Readiness

The cloud security landscape may have just shifted — and we're here to break it down.In this special panel episode, host Ashish Rajan is joined by an all-star group of cloud and cybersecurity experts ...

26 Mar 202551min

Detection Engineering with Google Cloud

Detection Engineering with Google Cloud

Detection rules aren’t just for fun—they’re critical for securing cloud environments. But are you using them the right way? In this episode, Ashish Rajan sits down with David French, Staff Adoption En...

20 Mar 202542min

CNAPPs & CSPMs don’t tell the full cloud security story

CNAPPs & CSPMs don’t tell the full cloud security story

In this episode we speak to Nick Jones, an expert in offensive cloud security and Head of Research at WithSecure to expose the biggest security gaps in cloud environments and why CNAPPs and CSPMs alon...

13 Mar 202549min

Populært innen Teknologi

lydartikler-fra-aftenposten
romkapsel
teknisk-sett
tomprat-med-gunnar-tjomlid
energi-og-klima
rss-impressions-2
shifter
nasjonal-sikkerhetsmyndighet-nsm
fornybaren
elektropodden
pedagogisk-intelligens
teknologi-og-mennesker
rss-ki-praten
smart-forklart
rss-for-alarmen-gar
rss-ai-forklart
rss-digitaliseringspadden
rss-ki-til-kaffen
rss-heis
kortslutning