CyberSecurity Awareness Month with Troy Vinson - Episode 161

CyberSecurity Awareness Month with Troy Vinson - Episode 161

This week, Jeffrey is joined by Troy Vinson; a Principal Software Architect at Clear Measure as a CISSP (Certified Information System Security Professional.) He is an experienced leader, architect, and problem-solver in Information Systems Security and Software Development technologies and has spent the majority of his career integrating computer science, information science, and cognitive science to assist in software development and the management of information.

With October being CyberSecurity Awareness Month, Troy gives a rundown on everything that developers and development teams need to know regarding security, how to become more cyber security aware, the top ten web application security risks you need to look out for, how to keep your environment secure regardless or where you're working from, and what you can putting in place today to improve your cyber security.

Topics of Discussion:

[:39] About The Azure DevOps Podcast, Clear Measure; the new video podcast Architect Tips; and Jeffrey's offer to speak at virtual user groups.

[1:11] About today's episode with Troy Vinson!

[1:23] Jeffrey welcomes Troy to the podcast.

[1:30] What is CISSP?

[2:53] Troy shares his career highlights and the path that led him to his current role in cyber security.

[4:39] Why is October Cybersecurity Awareness Month?

[6:18] What developers should be aware of when setting up a connected environment for themselves at home.

[8:47] Troy's favorite VPN services.

[10:08] Best practice: Always work from a VPN, especially as a developer working from a public place.

[10:25] What developers should keep in mind about source code when it comes to cyber security.

[12:32] How to keep documents (that don't quite fit in a source control repository) secure.

[14:31] Troy highlights important security architecture models of practice.

[15:56] How is the STRIDE model applicable?

[17:59] A word from The Azure DevOps Podcast's sponsor: Clear Measure.

[18:30] What is repudiation in the STRIDE model referring to? What is it in code changes? When is it necessary?

[20:22] Are there test suites that developers can use to augment their functional tests that check for security measures?

[23:16] Should development teams hire third parties to do audits versus doing it in-house?

[24:36] What OWASP Top Ten is and why all of your engineers should be trained on it.

[26:15] Is there a comprehensive list of web application security risks?

[27:28] Troy highlights the importance of #6 on the OWASP Top Ten list: vulnerable and outdated components.

[29:15] Rules of thumb regarding security for development teams when it comes to deployment and configuring environments

[30:56] Free online courses for cyber security awareness that you can share with family members and friends.

[33:52] Jeffrey thanks Troy Vinson for joining the podcast!

Mentioned in this Episode:

Architect Tips — New video podcast!

Azure DevOps

Clear Measure (Sponsor)

.NET DevOps for Azure: A Developer's Guide to DevOps Architecture the Right Way, by Jeffrey Palermo — Available on Amazon!

bit.ly/dotnetdevopsebook — Click here to download the .NET DevOps for Azure ebook!

Jeffrey Palermo's YouTube

Jeffrey Palermo's Twitter Follow to stay informed about future events!

DEVintersection Conference — Dec. 7th‒9th in Las Vegas, Nevada

Cybersecurity Awareness Month | CISA

Cybersecurity Awareness Month | National Cybersecurity Alliance (NCSA)

NordVPN

ExpressVPN

STRIDE Model

GitHub

DevSecOps

SharePoint

One Drive

Azure Front Door

Azure Application Gateway

FxCop

Roslyn

Sonarqube

OWASP Top Ten

Top 25 Most Dangerous Software Errors CWE/SANS

2021 CWE Top 25 Most Dangerous Software Weaknesses

Want to Learn More?

Visit AzureDevOps.Show for show notes and additional episodes.

Episoder(393)

Danny Vandergriff on Empowering Developers - Episode 97

Danny Vandergriff on Empowering Developers - Episode 97

This week on the podcast, Jeffrey is joined by Danny Vandergriff! Danny is a Principal DevOps Architect at Clear Measure, designing DevOps solutions for clients in a variety of industries. He's also d...

13 Jul 202029min

Simon Brown on Architecture for Developers - Episode 96

Simon Brown on Architecture for Developers - Episode 96

In today's episode, Jeffrey Palermo is speaking with Simon Brown! Simon is the author of Software Architecture for Developers; a developer-friendly guide to software architecture, technical leadership...

6 Jul 202035min

Chris Patterson on GitHub Actions - Episode 95

Chris Patterson on GitHub Actions - Episode 95

Joining the podcast today is Chris Patterson! Chris is the Staff Product Manager for GitHub Actions at GitHub. He has been in the software industry for more than 20 years. In that time, he has worked ...

29 Jun 202038min

Elton Stoneman on the State of Containers - Episode 94

Elton Stoneman on the State of Containers - Episode 94

Joining Jeffrey once again is return guest, Elton Stoneman! Elton has spent most of his career as a consultant, designing and building large enterprise applications. When he discovered the container r...

22 Jun 202036min

Steve Hickman on DevOps in K-12 - Episode 93

Steve Hickman on DevOps in K-12 - Episode 93

In today's episode, Steve Hickman is joining the podcast! Steve is a 25-year veteran of the software industry who has built many software systems in a variety of environments. He first started out as ...

15 Jun 202027min

Frans Bouma on .NET Data Access - Episode 92

Frans Bouma on .NET Data Access - Episode 92

Today on the show, Jeffrey Palermo is joined by a long-time colleague of his, Frans Bouma! Frans is the Lead Developer of LLBLGen Pro, a market-leading entity modeling/object-relational mapper for .NE...

8 Jun 202041min

Greg Leonardo Takes an Azure Deep Dive - Episode 91

Greg Leonardo Takes an Azure Deep Dive - Episode 91

This week, return guest Greg Leonardo joins the podcast! Greg is a Cloud Architect that assists organizations with cloud adoption and innovation. He has been working in the IT industry since his time ...

1 Jun 202033min

Heather Downing on .NET 5 and Other Things - Episode 90

Heather Downing on .NET 5 and Other Things - Episode 90

Joining Jeffrey Palermo this week is the curious through-and-through international speaker and software engineer, Heather Downing! Heather is a passionate coder and entrepreneur. She has experience ...

25 Mai 202038min

Populært innen Politikk og nyheter

giver-og-gjengen-vg
aftenpodden
forklart
aftenpodden-usa
popradet
i-retten
lydartikler-fra-aftenposten
stopp-verden
rss-gukild-johaug
det-store-bildet
fotballpodden-2
dine-penger-pengeradet
rss-ness
nokon-ma-ga
hanna-de-heldige
aftenbla-bla
bt-dokumentar-2
e24-podden
frokostshowet-pa-p5
rss-penger-polser-og-politikk