2016 State of the Software Supply Chain Report with Derek Weeks

2016 State of the Software Supply Chain Report with Derek Weeks

The "State of the Software Supply Chain Report" featured in today's show is an industry report produced by Sonatype. In the spirit of full disclosure, Mark Miller is the Senior Storyteller and DevOps Advocate for Sonatype. That said, no products are mentioned, nothing is being sold. Sonatype is the steward of the Central Repository and has access to an incredible set of data. The information in the report relates directly to A9 within the OWASP Top 10: Using components with known vulnerabilities. The full report is available as a free download. To describe the findings of the report and the discoveries made from analyzing the open source download patterns of 3000 companies, I spoke with Derek Weeks, VP and Rugged DevOps Advocate from Sonatype.

Det här avsnittet är hämtat från ett öppet RSS-flöde och publiceras inte av Podme. Det kan innehålla reklam.

Avsnitt(191)

ep2024-12 Tanya Janca: Happy Holidays are Secure Code

ep2024-12 Tanya Janca: Happy Holidays are Secure Code

Some production issues caused this one to slip to December so the intro is a bit off but this is still a great episode. So, learn some lessons on creating secure code from one of my favorite guests: T...

23 Dec 20241h

ep2024-10 Don't be Scared, It's just a Pen Test with Brad Causey

ep2024-10 Don't be Scared, It's just a Pen Test with Brad Causey

There's no reason to be scared about a pen test - especially when it's run by a professional like Brad Causey. I catch up with Brad in this episode to discuss what's recently changed in pen testing in...

31 Okt 202437min

ep2024-09 Threat Modeling with Takaharu

ep2024-09 Threat Modeling with Takaharu

What happens when you get interested in Threat Modeling and you want to share. For some, that means you do one work shop, then another, then another. What happens when you start down this path. Takaha...

25 Sep 202436min

ep2024-08 OWASP Projects Roundup

ep2024-08 OWASP Projects Roundup

The August episode is a review of projects from a recent OWASP project showcase. We talk to the leaders of the OWASP pytm, OWASP Developer Guide, OWASP State of AppSec Survey Project. Get up on the la...

30 Aug 202436min

ep2024-07 Safety belts for AppSec with Lisa Plaggemier

ep2024-07 Safety belts for AppSec with Lisa Plaggemier

After a long and unplanned pause, the OWASP podast is back with a home run of an episode. We have Lisa Plaggemier as our guest who reprises her eloquent keynote topic from AppSec DC. All hope isn't lo...

12 Juli 202432min

ep2023-09  Vulnerable Data Gathering for AI with Arturo Buanzo Busleiman

ep2023-09 Vulnerable Data Gathering for AI with Arturo Buanzo Busleiman

After getting a ping from an old friend about a potential new OWASP project, I had to bring him on as a guest. He's got an interesting idea around potential vulnerabilities in web crawlers which just ...

2 Okt 202332min

ep2023-08 Finding Next Gen Cybersecurity Professionals with Brad Causey

ep2023-08 Finding Next Gen Cybersecurity Professionals with Brad Causey

For years we've heard talk about a shortage of cybersecurity professionals so what can be done about that? In this episode, I speak to Brad Causey who has taken one approach he's found successful. We ...

31 Aug 202332min

ep2023-07 What's Audit got to do with IT

ep2023-07 What's Audit got to do with IT

In this episode we talk with Zain Haq and take a leap and bound over the first and second line to discover more about the third line - internal audit. We discover answers to a number of questions: Wha...

31 Juli 202333min

Populärt inom Teknik

uppgang-och-fall
market-makers
skogsforum-podcast
rss-elektrikerpodden
rss-en-ai-till-kaffet
rss-uppgang-och-fall
rss-laddstationen-med-elbilen-i-sverige
 och-bilen-gar-bra
gubbar-som-tjotar-om-bilar
hej-bruksbil
bli-saker-podden
bosse-bildoktorn-och-hasse-p
under-femton
garagehang
natets-morka-sida
bilar-med-sladd
elbilsveckan
rss-veckans-ai
klocksnack-tillsammans-med-nymans-ur-1851
rss-milpodden