CyberSecurity Awareness Month with Troy Vinson - Episode 161

CyberSecurity Awareness Month with Troy Vinson - Episode 161

This week, Jeffrey is joined by Troy Vinson; a Principal Software Architect at Clear Measure as a CISSP (Certified Information System Security Professional.) He is an experienced leader, architect, and problem-solver in Information Systems Security and Software Development technologies and has spent the majority of his career integrating computer science, information science, and cognitive science to assist in software development and the management of information.

With October being CyberSecurity Awareness Month, Troy gives a rundown on everything that developers and development teams need to know regarding security, how to become more cyber security aware, the top ten web application security risks you need to look out for, how to keep your environment secure regardless or where you're working from, and what you can putting in place today to improve your cyber security.

Topics of Discussion:

[:39] About The Azure DevOps Podcast, Clear Measure; the new video podcast Architect Tips; and Jeffrey's offer to speak at virtual user groups.

[1:11] About today's episode with Troy Vinson!

[1:23] Jeffrey welcomes Troy to the podcast.

[1:30] What is CISSP?

[2:53] Troy shares his career highlights and the path that led him to his current role in cyber security.

[4:39] Why is October Cybersecurity Awareness Month?

[6:18] What developers should be aware of when setting up a connected environment for themselves at home.

[8:47] Troy's favorite VPN services.

[10:08] Best practice: Always work from a VPN, especially as a developer working from a public place.

[10:25] What developers should keep in mind about source code when it comes to cyber security.

[12:32] How to keep documents (that don't quite fit in a source control repository) secure.

[14:31] Troy highlights important security architecture models of practice.

[15:56] How is the STRIDE model applicable?

[17:59] A word from The Azure DevOps Podcast's sponsor: Clear Measure.

[18:30] What is repudiation in the STRIDE model referring to? What is it in code changes? When is it necessary?

[20:22] Are there test suites that developers can use to augment their functional tests that check for security measures?

[23:16] Should development teams hire third parties to do audits versus doing it in-house?

[24:36] What OWASP Top Ten is and why all of your engineers should be trained on it.

[26:15] Is there a comprehensive list of web application security risks?

[27:28] Troy highlights the importance of #6 on the OWASP Top Ten list: vulnerable and outdated components.

[29:15] Rules of thumb regarding security for development teams when it comes to deployment and configuring environments

[30:56] Free online courses for cyber security awareness that you can share with family members and friends.

[33:52] Jeffrey thanks Troy Vinson for joining the podcast!

Mentioned in this Episode:

Architect Tips — New video podcast!

Azure DevOps

Clear Measure (Sponsor)

.NET DevOps for Azure: A Developer's Guide to DevOps Architecture the Right Way, by Jeffrey Palermo — Available on Amazon!

bit.ly/dotnetdevopsebook — Click here to download the .NET DevOps for Azure ebook!

Jeffrey Palermo's YouTube

Jeffrey Palermo's Twitter Follow to stay informed about future events!

DEVintersection Conference — Dec. 7th‒9th in Las Vegas, Nevada

Cybersecurity Awareness Month | CISA

Cybersecurity Awareness Month | National Cybersecurity Alliance (NCSA)

NordVPN

ExpressVPN

STRIDE Model

GitHub

DevSecOps

SharePoint

One Drive

Azure Front Door

Azure Application Gateway

FxCop

Roslyn

Sonarqube

OWASP Top Ten

Top 25 Most Dangerous Software Errors CWE/SANS

2021 CWE Top 25 Most Dangerous Software Weaknesses

Want to Learn More?

Visit AzureDevOps.Show for show notes and additional episodes.

Episoder(393)

Harini Kannan on React Native - Episode 129

Harini Kannan on React Native - Episode 129

Joining Jeffrey today is Harini Kannan! Harini is a Program Manager in the Windows Developer Experiences and Platform team — a fast-moving and exciting team at Microsoft! Her team's charter influences...

22 Feb 202136min

Simon Timms on Microservices Architecture — Episode 128

Simon Timms on Microservices Architecture — Episode 128

This week, Jeffrey is joined by return guest, Simon Timms, to discuss microservices architecture. Simon Timms is a long-time freelance Software Engineer, multi-time Microsoft MVP co-host of ASP.NET ...

15 Feb 202140min

Jeff Fritz on Blazor Webassembly Architecture - Episode 127

Jeff Fritz on Blazor Webassembly Architecture - Episode 127

Jeff Fritz is joining the podcast today! This is his second guest appearance. He is an experienced developer, technical educator and PM on the .NET team at Microsoft. He founded The Live Coders team ...

8 Feb 202142min

James Avery on Optimizing the Engineering Team Structure - Episode 126

James Avery on Optimizing the Engineering Team Structure - Episode 126

Joining the podcast once again is return guest, James Avery! James is the Founder and CEO of Kevel, previously known as Adzerk. Kevel is the next generation of publisher ad serving; offering the infra...

1 Feb 202136min

Architectures for 2021 and Beyond - Episode 125

Architectures for 2021 and Beyond - Episode 125

In this episode, your host Jeffrey Palermo is sharing his top list of the architectures you should be paying attention to in 2021 and beyond. The software development world is changing at a faster r...

25 Jan 202139min

Charles Flatt on Learning as a Developer - Episode 124

Charles Flatt on Learning as a Developer - Episode 124

Charles Flatt is joining the podcast today! He has been a software developer since 1994 and has helped over a dozen organizations succeed on over fifty projects, both small and large. Charles has an u...

18 Jan 202135min

Jérôme Laban on Multi-Platform DevOps - Episode 123

Jérôme Laban on Multi-Platform DevOps - Episode 123

This week, Jeffrey is joined by Jérôme Laban, CTO of the open-source Uno Platform, and a 4x recipient of the Microsoft MVP award. The Uno Platform is a framework that aims to improve the development...

11 Jan 202137min

Sam Nasr on SQL Server for Developers - Episode 122

Sam Nasr on SQL Server for Developers - Episode 122

In this episode, Jeffrey is excited to be joined by his guest, Sam Nasr! Sam is an IT Consultant and a Sr. Software Engineer with a deep focus on the Microsoft stack of technologies (.Net, SQL Server,...

4 Jan 202134min

Populært innen Politikk og nyheter

giver-og-gjengen-vg
aftenpodden
aftenpodden-usa
forklart
i-retten
stopp-verden
popradet
lydartikler-fra-aftenposten
rss-gukild-johaug
fotballpodden-2
det-store-bildet
dine-penger-pengeradet
nokon-ma-ga
rss-ness
hanna-de-heldige
aftenbla-bla
frokostshowet-pa-p5
rss-dannet-uten-piano
rss-penger-polser-og-politikk
e24-podden