JSJ 418: Security Scary Stories and How to Avoid Them with Kevin A McGrail

JSJ 418: Security Scary Stories and How to Avoid Them with Kevin A McGrail

In this episode of JavaScript Jabber the panel interviews security expert, Kevin A. McGrail. He starts by explaining what security frameworks and what they do. The panel wonders how to know if your developers are capable of self-auditing your security or if you need help. Kevin shares recommendations for companies to look at to answer that question. Aimee Knight explains the hell she has been in making changes to be compliant with CCPA. The panel considers how policies like this complicate security, are nearly impossible to be compliant with and how they can be weaponized. They discuss the need for technical people to be involved in writing these laws. Kevin explains how you can know how secure your systems actually are. He shares the culture of security first he tries to instill in the companies he trains. He also trains them on how to think like a bad guy and explains how this helps developers become security first developers. The panel discusses how scams have evolved and how the same scams are still being run. They consider the importance of automated training and teaching developers to do it right the first time.Finally, they consider the different ways of authentication, passwords, passphrases, sim card, biometrics. Kevin warns against oversharing or announcing vacations. The panel discusses real-world tactics bad guys use. Kevin explains what he trains people to do and look out for to increase security with both social engineering and technical expertise. Panelists
  • Aimee Knight
  • AJ O’Neal
  • Charles Max Wood
  • Dan Shappir
  • Steve Edwards
Guest
  • Kevin A McGrail
Sponsors____________________________________________________________ "The MaxCoders Guide to Finding Your Dream Developer Job" by Charles Max Wood is now available on Amazon. Get Your Copy Today! ____________________________________________________________Links Follow DevChatTV on Facebook and Twitter PicksAimee Knight:AJ O’Neal:Dan Shappir:Kevin A McGrail:Steve Edwards:Special Guest: Kevin A. McGrail.

Support this podcast at — https://redcircle.com/javascript-jabber/donations

Privacy & Opt-Out: https://redcircle.com/privacy

Become a supporter of this podcast: https://www.spreaker.com/podcast/javascript-jabber--6102064/support.

Avsnitt(737)

To TypeScript or Not to TypeScript - JSJ 538

To TypeScript or Not to TypeScript - JSJ 538

Today we talk with Matt Pocock, who comes from Oxfordshire, England.  As a big fan of TypeScript and maintainer of the Xstate library, we discuss the benefits and downsides of TypeScript.  As the disc...

28 Juni 20221h 11min

Core Web Vitals and Whatnot - JSJ 537

Core Web Vitals and Whatnot - JSJ 537

Today’s guest Annie Sullivan, a software engineer on the Chrome Platform team, focussing on core web vitals metrics which is all about performance and user experience metrics for websites.  We discuss...

21 Juni 20221h 21min

Gal Schlezinger and Edge Functions - JSJ 536

Gal Schlezinger and Edge Functions - JSJ 536

Today we talk with Gal working on developer tooling for the last decade.  Previously working at WIX, and now working at Vercel, he has created an open source FNM fast node version manager within that ...

14 Juni 20221h 15min

A Deep Dive Into Some Nooks and Crannies of JavaScript - JSJ 535

A Deep Dive Into Some Nooks and Crannies of JavaScript - JSJ 535

In today’s all-panelist episode, we take a deep dive into some of the nooks and crannies of JavaScript.  We discuss and debate the benefits and problems of various methods such as getter and setter, C...

7 Juni 20221h 10min

Preventing Fraud on Your Payment Website - JSJ 534

Preventing Fraud on Your Payment Website - JSJ 534

Today we talk with Paul Asjes, a developer advocate at Stripe.  We get some insight into creating a more secure site for credit card transactions.  We also discuss card testing, or account stealing, t...

31 Maj 202254min

TC39 and Upcoming Proposals for ECMAScript (PART 2) - JSJ 533

TC39 and Upcoming Proposals for ECMAScript (PART 2) - JSJ 533

Today we chat with Thomas Randolph from GitLab, to discuss his Top 10 list of the upcoming TC39 proposals. The list…Temporal ProposalImport AssertionsJSON ModulesBuilt-In ModulesObservable ProposalPar...

24 Maj 20221h 1min

TC39 and Upcoming Proposals for ECMAScript (PART 1) - JSJ 532

TC39 and Upcoming Proposals for ECMAScript (PART 1) - JSJ 532

Today we chat with Thomas Randolph from GitLab, to discuss his Top 10 list of the upcoming TC39 proposals. The list…Temporal ProposalImport AssertionsJSON ModulesBuilt-In ModulesObservable ProposalPar...

17 Maj 20221h 6min

Using Storybook and Nuxt To Quickly Build Websites - JSJ 531

Using Storybook and Nuxt To Quickly Build Websites - JSJ 531

Steve, AJ, and Dan talk to Drew Baker, co-founder of Los Angeles based digital agency Funkhaus about Storybook and Nuxt. After a discussion of various server side rendering methods, Drew talks about h...

10 Maj 202216min

Populärt inom Business & ekonomi

badfluence
framgangspodden
varvet
rss-jossan-nina
rss-borsens-finest
uppgang-och-fall
rss-svart-marknad
avanzapodden
fill-or-kill
svd-tech-brief
rss-inga-dumma-fragor-om-pengar
bathina-en-podcast
dynastin
lastbilspodden
rss-kort-lang-analyspodden-fran-di
borsmorgon
rss-dagen-med-di
24fragor
kapitalet-en-podd-om-ekonomi
tabberaset