EP 43 — Avalara’s Derek Samford on Building a Security Culture with Data, Collaboration, Education, and Empathy

EP 43 — Avalara’s Derek Samford on Building a Security Culture with Data, Collaboration, Education, and Empathy

In this episode of the Future of Application Security, Harshil speaks with Derek Samford, Senior Director of Product Security at Avalara, a company that builds cloud-based tax compliance solutions. They discuss Derek's approach to product security, including how his team uses data to drive visibility, how feedback loops can build maturity, and how they create application grade cards that inform remediation efforts. They also discuss how everyone is invited to contribute to product security solutions, how they create custom training for each new process, and the importance of empathy.

Topics discussed:

  • How Derek's varied background brought him from network engineering to scalability and performance testing, to field support, to building a security validation team, to today building applications at Avalara from the ground up.
  • Why empathy is the most important skill you can have in security, and why it allows you to help others do their best work.
  • How Derek's team practically approaches security, from running the same tools developers do, to having a strong security champions program, to encouraging open feedback.
  • How Alavara builds collaboration by inviting anyone who wants to contribute to security solutions to be part of the working group.
  • How Alavara uses data to help them understand what they're protecting, to gain greater visibility, and to unify their processes.
  • How standardized processes and feedback loops create maturity over time.
  • The importance of education, and why they create training specific for the organization that focus on "our tools, our processes, and our recommendations around security."

Episoder(60)

EP 60 - Appian’s Abdullah Munawar on Enhancing Product Security Amid Evolving Development Trends

EP 60 - Appian’s Abdullah Munawar on Enhancing Product Security Amid Evolving Development Trends

In this episode of the Future of Application Security podcast, Harshil speaks with Abdullah Munawar, Director of Product Security at Appian. Abdullah shares valuable insights into his journey from sec...

22 Mai 202421min

EP 59 - Nat Mokry on Advancing Application Security in the Gaming Industry

EP 59 - Nat Mokry on Advancing Application Security in the Gaming Industry

In our latest episode of the Future of Application Security podcast, Nat Mokry, VP of Application & Product Security at Xbox (formerly of Activision Blizzard at the time of recording), shares valuable...

24 Apr 202426min

EP 58 — Asana's Felix Matenaar on Building Resilient Security Practices for the Future

EP 58 — Asana's Felix Matenaar on Building Resilient Security Practices for the Future

In this episode of the Future of Application Security podcast, Harshil interviews Felix Matenaar, Head of Product Security at Asana. Felix shares insights into his journey from Germany to Silicon Vall...

10 Apr 202432min

EP 57 —  Clari's Steve Lukose on Using SLAs as Benchmarks for Businesses

EP 57 — Clari's Steve Lukose on Using SLAs as Benchmarks for Businesses

In this episode of the Future of Application Security, Harshil speaks with Steve Lukose, Vice President of Security at Clari, about how security is becoming a business enabler rather than just an orga...

27 Mar 202427min

EP 56 — Aruneesh Salhotra on Why Security is Everyone’s Job

EP 56 — Aruneesh Salhotra on Why Security is Everyone’s Job

In this episode of the Future of Application Security, Harshil speaks with Aruneesh Salhotra, CEO and Fractional CISO, SNM Consulting Inc. They discuss the unique challenges and opportunities of appli...

28 Feb 202424min

EP 55 — BlackBerry's Christine Gadsby on What's Driving Software Supplier Transparency and Accountability

EP 55 — BlackBerry's Christine Gadsby on What's Driving Software Supplier Transparency and Accountability

In this episode of the Future of Application Security, Harshil speaks with Christine Gadsby, VP, Product Security at BlackBerry, a software company specializing in cybersecurity. They discuss the new ...

14 Feb 202426min

EP 54 — LPL Financial's Chad Girouard on Improving Application Security Through Better Tools and Relationships

EP 54 — LPL Financial's Chad Girouard on Improving Application Security Through Better Tools and Relationships

In this episode of the Future of Application Security, Harshil speaks with Chad Girouard, AVP Application Security at LPL Financial, a provider of investment and business solutions. They discuss how s...

31 Jan 202423min

EP 53 — ReversingLabs's Dave Ferguson on Securing Your Software Supply Chains

EP 53 — ReversingLabs's Dave Ferguson on Securing Your Software Supply Chains

In this episode of the Future of Application Security, Harshil speaks with Dave Ferguson, Director of Technical Product Management, Software Supply Chain Security at ReversingLabs, which offers softwa...

17 Jan 202424min

Populært innen Business og økonomi

stopp-verden
lydartikler-fra-aftenposten
dine-penger-pengeradet
e24-podden
rss-penger-polser-og-politikk
rss-borsmorgen-okonominyhetene
rss-pa-konto
pengesnakk
pengepodden-2
utbytte
finansredaksjonen
morgenkaffen-med-finansavisen
liberal-halvtime
livet-pa-veien-med-jan-erik-larssen
tid-er-penger-en-podcast-med-peter-warren
stormkast-med-valebrokk-stordalen
rss-sunn-okonomi
rss-skravla-gar
rss-markedspuls-2
lederpodden