Privacy is a moving target. Here’s how engineering teams can stay on track.

Privacy is a moving target. Here’s how engineering teams can stay on track.


Ever since personal information started flowing into applications on the web, securing that information has become more and more important. General security and privacy frameworks like ISO-27001 and PCI provide guidance in securing systems. Now the law has gotten involved with the European Union’s GDPR and California’s CPRA. More laws are on the way, and these laws (and the frameworks) are changing as they meet legal challenges. With the legal landscape for privacy shifting so much, every engineer must ask: How do I keep my application in compliance?

On this sponsored episode of the podcast, we talk with Rob Picard and Matt Cooper of Vanta, who get that question every day. Their company makes security monitoring software that helps companies get into compliance quickly. We spoke about the shifting sands of privacy rules and regulations, tracking data flows through systems and across corporate borders, and how security automation can put up guardrails instead of gates.

Many security frameworks are undergoing modernization to reflect the way that distributed applications function today. And more countries and US states are passing their own privacy regulations. The privacy space is surprisingly dynamic, forcing companies to keep track of these frequent changes to stay current and compliant. Not everyone has in-house legal experts to follow the daily developments and communicate those to the engineering team.

For an engineering team just trying to understand the effort involved, it may be helpful to start figuring out where your data flows. Tracking it between internal services may be overkill; instead, track it across corporate boundaries, from one database, cloud provider, SaaS system, and dependency. Each of those should have their own data privacy agreement—plug into your procurement process to see what each piece of your stack promises on a privacy level.

Your DevOps and DevSecOps teams will probably want to automate much of the security engineering process as possible. Unfortunately, automating security is hard. The best path may not be to automate the defenses on your system; it might be better to instead automate the context that you provide to engineers. If someone wants to add a dependency, pop up a reminder that these dependencies can be fickle. Automate the boring stuff—context, reminders, to-dos—and let humans do the complex problem solving we’re so good at.

If you’re looking to add an in-house security expert as a service, check out Vanta.com. Their platform monitors connects to your systems and helps you prep for compliance with one or more security frameworks. If those frameworks change, you don’t need to do anything. Vanta changes for you.

See Privacy Policy at https://art19.com/privacy and California Privacy Notice at https://art19.com/privacy#do-not-sell-my-info.

Episoder(895)

Containers are easy—moving your legacy system off your VM is not

Containers are easy—moving your legacy system off your VM is not

Ryan sits down with Dan Ciruli, VP and General Manager of Cloud Native at Nutanix, to talk about getting your virtual machines and Kubernetes to play nice in cloud-native environments, why VMs are still relevant in enterprise applications, and how AI can help modernize legacy systems. Episode notes: Nutanix combines compute, storage, virtualization, and networking so you can run applications and manage data across on-premises datacenters, public clouds, and edge locations all on one platform. Connect with Dan on Linkedin and Bluesky.Congrats to Necromancer badge winner David Ferenczy Rogožan! They won the badge on their answer to Where does adb shell mkdir create directories.TRANSCRIPTSee Privacy Policy at https://art19.com/privacy and California Privacy Notice at https://art19.com/privacy#do-not-sell-my-info.

26 Des 31min

Settle down, nerds. AI is a normal technology

Settle down, nerds. AI is a normal technology

Ryan welcomes Anil Dash, writer and former Stack Overflow board member, back to the show to discuss how AI is not a magical technology, but rather the normal next step in computing’s evolution. They explore the importance of democratizing access to technology, the unique challenges that LLMs’ non-determinism poses, and how developers can keep Stack Overflow’s ethos of community alive in a world of AI. Episode notes: Anil is a tech entrepreneur (former CEO at our sister company Fog Creek Software) and writer. You can find him at his blog anildash.com and on Linkedin. Check out the last time Anil was on the pod in 2020 to talk all things Glitch and Glimmer. Shoutout to user pgrad for winning a Lifejacket badge on their answer to Using type hint Any in Django - NameError: name 'Any' is not defined.TRANSCRIPTSee Privacy Policy at https://art19.com/privacy and California Privacy Notice at https://art19.com/privacy#do-not-sell-my-info.

23 Des 37min

Last week in AWS re:Invent with Corey Quinn

Last week in AWS re:Invent with Corey Quinn

Ryan sits down with Corey Quinn, Chief Cloud Economist at Duckbill, at AWS re:Invent to get Corey’s patented snarky take on all the happenings from the conference. They discuss whether the AI agent hype is supported by actual buyers, how startups are faring as AWS focuses on large enterprises, and how many of the new technologies coming out this year will actually be transformative. Episode notes:This episode was recorded at AWS re:Invent 2025! Check out Ryan’s recap of events on our blog. Duckbill provides financial planning and analysis for enterprise infrastructure to help you understand, negotiate, and optimize your cloud spend.Connect with Corey on Linkedin and subscribe to his newsletter Last Week in AWS.TRANSCRIPTSee Privacy Policy at https://art19.com/privacy and California Privacy Notice at https://art19.com/privacy#do-not-sell-my-info.

19 Des 23min

Live from re:Invent…it’s Stack Overflow!

Live from re:Invent…it’s Stack Overflow!

Ryan is joined by Stack Overflow’s CEO Prashanth Chandrasekar and Director of Data Science Michael Foree on the floor at re:Invent to discuss all they’ve seen and heard at the event, from the future of AI agents to the trust issues the enterprise has around AI and the impact of AI and robotics on the job market.Episode Notes:This episode was recorded at AWS re:Invent 2025! Check out Ryan’s recap of events from the floor on our blog. Connect with Prashanth on LinkedIn.Connect with Michael on LinkedIn.TRANSCRIPTSee Privacy Policy at https://art19.com/privacy and California Privacy Notice at https://art19.com/privacy#do-not-sell-my-info.

16 Des 31min

Interface is everything, and everything is an interface

Interface is everything, and everything is an interface

Ryan talks with Wesley Yu, head of engineering at Metalab, about the evolution of interfaces in technology, the pressure that UI generated on the fly would put on your backend systems, and why AI is just the latest and fanciest in a long line of CRUD apps. Episode notes:Metalab designs interfaces for top brands around the world, helping them design, build, and ship their products.Connect with Wesley on Twitter and LinkedIn.Congrats to Populist badge winner SiddAjmera, who won the badge for their answer to Angular FormControl check if required.TRANSCRIPTSee Privacy Policy at https://art19.com/privacy and California Privacy Notice at https://art19.com/privacy#do-not-sell-my-info.

12 Des 24min

AI is a crystal ball into your codebase

AI is a crystal ball into your codebase

Ryan is joined by Kayvon Beykpour, CEO and founder of Microscope, to dive into AI-powered code review’s potential for managing large codebases, the need for humans-in-the-loop for reviewing PRs so AI tools can efficiently and effectively debug, and how AI can increase visibility through summarization at the abstract syntax tree level and high signal-to-noise ratio code reviews.Episode notes:Macroscope helps you understand your code through AI-powered code review, automated PR descriptions, and real-time status reportsConnect with Kayvon on Twitter and LinkedIn.This week’s shoutout goes to user Jesper Grann Laursen for winning a Populist badge on their answer to Exclude Table during pg_restore. See Privacy Policy at https://art19.com/privacy and California Privacy Notice at https://art19.com/privacy#do-not-sell-my-info.

9 Des 34min

Treating your agents like microservices

Treating your agents like microservices

Ryan is joined by Outshift by Cisco’s VP of Engineering Guillaume De Saint Marc to discuss the future of multi-agent architectures as microservices, the challenges and limitations of the infrastructure for these multi-agent systems, and the importance of communication protocols and interoperability in order to build decentralized and scalable architectures. Episode notes:Outshift is Cisco’s tech incubator that pursues emerging technologies like agentic AI, quantum computing, and next-gen infrastructure. Learn more about multi-agent architecture at their open-source collective AGNTCY.Connect with Guillaume on Linkedin. Today we’re shouting out a Socratic badge winner, Avraam Mavridis, who won the badge for asking well received questions on 100 separate days. See Privacy Policy at https://art19.com/privacy and California Privacy Notice at https://art19.com/privacy#do-not-sell-my-info.

5 Des 35min

Abstraction, but for robots

Abstraction, but for robots

Ryan welcomes Simone Kalmakis, VP of Engineering at Viam, to dive into how her team is bridging the gap between software and robotics, the importance of abstraction layers in making robotics more accessible, and the real-world applications of robotics from lobster traps to industrial sanding robots.Episode notes:Viam is a robotics platform that brings modern software development tools into hardware applications. Connect with Simone on Linkedin. This week’s shoutout goes to Lifejacket winner Sergey Kalinichenko for their answer to How does this K&R code for reading an int work?.See Privacy Policy at https://art19.com/privacy and California Privacy Notice at https://art19.com/privacy#do-not-sell-my-info.

2 Des 24min

Populært innen Business og økonomi

stopp-verden
dine-penger-pengeradet
lydartikler-fra-aftenposten
rss-penger-polser-og-politikk
kommentarer-fra-aftenposten
e24-podden
rss-borsmorgen-okonominyhetene
utbytte
finansredaksjonen
pengepodden-2
tid-er-penger-en-podcast-med-peter-warren
pengesnakk
stormkast-med-valebrokk-stordalen
livet-pa-veien-med-jan-erik-larssen
morgenkaffen-med-finansavisen
rss-markedspuls-2
okonomiamatorene
rss-investering-gjort-enkelt
rss-fri-kontantstrom
paretopodden