Application Security AppSec 101 - Tanya Janca

Application Security AppSec 101 - Tanya Janca

In this episode of the Virtual Coffee with Ashish edition, we spoke with Tanya Janca, Founder, SheHacksPurple & WeHackPurple.

Tanya & Ashish spoke about

  • Who is Tanya Janca? :)
  • What was your path into CyberSecurity or your current role?
  • What has professional life been after leaving Microsoft?
  • What does Cloud Security mean for you?
  • What is Application Security or AppSec?
  • Tanya Janca’s Book - “Alice and Bob learn Application Security”
  • How can someone start in Application Security, specially if they are trying to move laterally?
  • What is Static Code Analysis?
  • What is DevSecOps
  • What is CI/CD Pipeline?
  • Loss of AppSec knowledge when people move on? How do you find the motivation to continue?
  • What is an AppSec Program and how can one make it successful?
  • What does a Mature AppSec Program look like?
  • Are there any tools used for Threat Modelling or is it conducted separately?
  • What’s the most difficult piece of AppSec discipline to explain to others again and again?
  • How do I get buy in from management?
  • How do you do Threat Modelling in CI/CD Pipeline or automate it?
  • What soft skills do you need to be an Application Security person?
  • How do you merge AppSec risk in the infrastructure risk to get a wholistic view?

ShowNotes and Episode Transcript on www.cloudsecuritypodcast.tv

Twitter - @kaizenteq @hashishrajan

If you want to watch videos of this and previous episodes:

- Twitch Channel: https://lnkd.in/gxhFrqw

- Youtube Channel: https://lnkd.in/gUHqSai

Avsnitt(345)

Is your Microsoft Azure Cosmos Database Keys Secure? - Cloud Security News

Is your Microsoft Azure Cosmos Database Keys Secure? - Cloud Security News

Cloud Security News this week - 1 Sep, 2021 Last Thursday, on the 26th of August 2021 - Microsoft warned thousands of its cloud computing customers, including some of the world's largest companies. ...

1 Sep 20212min

Cloud Hacking eSports | Ultimate Hacking Championship

Cloud Hacking eSports | Ultimate Hacking Championship

In this episode of the Virtual Coffee with Ashish edition, we spoke with Igor Rincon (@igor.rincon) creator of Ultimate Hacking Championship (@HackingEsports) & one of the host of UHC - Magno Logan (@...

29 Aug 20215min

Network Security in a Cloud Native World

Network Security in a Cloud Native World

In this episode of the Virtual Coffee with Ashish edition, we spoke with Karthik Prabhakar (@worldhopper) is an Advisor to AccuKnox (@AccuKnox). Episode ShowNotes, Links and Transcript on Cloud Securi...

26 Aug 202151min

AWS Re:inforce goes Virtual - Cloud Security News

AWS Re:inforce goes Virtual - Cloud Security News

Cloud Security News this week - 25 Aug, 2021 AWS is launching a new partner competency for managed security service providers (MSSPs) which will make their cloud software solutions and services avai...

25 Aug 20211min

THINKING OF MOVING A MONOLITH TO CLOUD NATIVE?

THINKING OF MOVING A MONOLITH TO CLOUD NATIVE?

In this episode of the Virtual Coffee with Ashish edition, we spoke with John Kinsella (@johnlkinsella) is a Cloud Native Contributor, co-host of Security Weekly and CTO of CySense. Episode ShowNotes,...

22 Aug 202152min

DO WE NEED LOGGING? - Building Observability Platform for Scale - Atlassian

DO WE NEED LOGGING? - Building Observability Platform for Scale - Atlassian

In this episode of the Virtual Coffee with Ashish edition, we spoke with Colby Funnel (Linkedin - @Colby) is a Development Manager at Atlassian(@Atlassian). Episode ShowNotes, Links and Transcript on ...

15 Aug 202140min

What is a SECURITY DATA LAKE?

What is a SECURITY DATA LAKE?

In this episode of the Virtual Coffee with Ashish edition, we spoke with Omer Singer (Linkedin-Omer Singer) is the Head of Cyber Security Strategy at Snowflake - The Data Cloud (@SnowflakeDB). Episode...

8 Aug 202149min

Security Logging is Changing | Observability & Tracing Explained

Security Logging is Changing | Observability & Tracing Explained

In this episode of the Virtual Coffee with Ashish edition, we spoke with Ted Young (@tedsuo) is a contributor along with AWS, Google Cloud, Microsoft Azure in the Observability eco-system. He is also ...

1 Aug 202148min

Populärt inom Teknik

uppgang-och-fall
elbilsveckan
rss-elektrikerpodden
bilar-med-sladd
skogsforum-podcast
rss-uppgang-och-fall
rss-technokratin
market-makers
natets-morka-sida
rss-veckans-ai
rss-laddstationen-med-elbilen-i-sverige
bli-saker-podden
rss-powerboat-sverige-podcast
developers-mer-an-bara-kod
rss-en-ai-till-kaffet
har-vi-akt-till-mars-an
rss-fabriken-2
rss-snacka-om-ai
hej-bruksbil
effekten-digitalisering-kunskap