CyberSecurity Awareness Month with Troy Vinson - Episode 161

CyberSecurity Awareness Month with Troy Vinson - Episode 161

This week, Jeffrey is joined by Troy Vinson; a Principal Software Architect at Clear Measure as a CISSP (Certified Information System Security Professional.) He is an experienced leader, architect, and problem-solver in Information Systems Security and Software Development technologies and has spent the majority of his career integrating computer science, information science, and cognitive science to assist in software development and the management of information.

With October being CyberSecurity Awareness Month, Troy gives a rundown on everything that developers and development teams need to know regarding security, how to become more cyber security aware, the top ten web application security risks you need to look out for, how to keep your environment secure regardless or where you're working from, and what you can putting in place today to improve your cyber security.

Topics of Discussion:

[:39] About The Azure DevOps Podcast, Clear Measure; the new video podcast Architect Tips; and Jeffrey's offer to speak at virtual user groups.

[1:11] About today's episode with Troy Vinson!

[1:23] Jeffrey welcomes Troy to the podcast.

[1:30] What is CISSP?

[2:53] Troy shares his career highlights and the path that led him to his current role in cyber security.

[4:39] Why is October Cybersecurity Awareness Month?

[6:18] What developers should be aware of when setting up a connected environment for themselves at home.

[8:47] Troy's favorite VPN services.

[10:08] Best practice: Always work from a VPN, especially as a developer working from a public place.

[10:25] What developers should keep in mind about source code when it comes to cyber security.

[12:32] How to keep documents (that don't quite fit in a source control repository) secure.

[14:31] Troy highlights important security architecture models of practice.

[15:56] How is the STRIDE model applicable?

[17:59] A word from The Azure DevOps Podcast's sponsor: Clear Measure.

[18:30] What is repudiation in the STRIDE model referring to? What is it in code changes? When is it necessary?

[20:22] Are there test suites that developers can use to augment their functional tests that check for security measures?

[23:16] Should development teams hire third parties to do audits versus doing it in-house?

[24:36] What OWASP Top Ten is and why all of your engineers should be trained on it.

[26:15] Is there a comprehensive list of web application security risks?

[27:28] Troy highlights the importance of #6 on the OWASP Top Ten list: vulnerable and outdated components.

[29:15] Rules of thumb regarding security for development teams when it comes to deployment and configuring environments

[30:56] Free online courses for cyber security awareness that you can share with family members and friends.

[33:52] Jeffrey thanks Troy Vinson for joining the podcast!

Mentioned in this Episode:

Architect Tips — New video podcast!

Azure DevOps

Clear Measure (Sponsor)

.NET DevOps for Azure: A Developer's Guide to DevOps Architecture the Right Way, by Jeffrey Palermo — Available on Amazon!

bit.ly/dotnetdevopsebook — Click here to download the .NET DevOps for Azure ebook!

Jeffrey Palermo's YouTube

Jeffrey Palermo's Twitter Follow to stay informed about future events!

DEVintersection Conference — Dec. 7th‒9th in Las Vegas, Nevada

Cybersecurity Awareness Month | CISA

Cybersecurity Awareness Month | National Cybersecurity Alliance (NCSA)

NordVPN

ExpressVPN

STRIDE Model

GitHub

DevSecOps

SharePoint

One Drive

Azure Front Door

Azure Application Gateway

FxCop

Roslyn

Sonarqube

OWASP Top Ten

Top 25 Most Dangerous Software Errors CWE/SANS

2021 CWE Top 25 Most Dangerous Software Weaknesses

Want to Learn More?

Visit AzureDevOps.Show for show notes and additional episodes.

Avsnitt(393)

Colin Pear on How to Be a .NET Architect - Episode 113

Colin Pear on How to Be a .NET Architect - Episode 113

Today's guest is none other than, Colin Pear — the Director of Engineering at Skimmer! Colin is an NServiceBus Champion, an open-source contributor, and a recent Clear Measure alumnus (where he pre...

2 Nov 202037min

Tony Champion on Career Development - Episode 112

Tony Champion on Career Development - Episode 112

Joining Jeffrey in this episode is a longtime friend of his, Tony Champion! Tony is a software architect with over 20 years of experience, developing with Microsoft technologies. As the president and ...

26 Okt 202035min

Rod Paddock on the New Normal - Episode 111

Rod Paddock on the New Normal - Episode 111

Joining the podcast today is Rod Paddock, the CTO of Dash Point Software, Inc. and the Editor in Chief of CODE Magazine! In 2001, Rod founded Dash Point Software, Inc. to develop high-quality custom...

19 Okt 202044min

Stefan Schackow on What's New in Azure App Service - Episode 110

Stefan Schackow on What's New in Azure App Service - Episode 110

This week, Jeffrey is excited to be joined by a longtime friend of his, Stefan Schackow! Stefan is a program manager on the Azure App Services team who has worked on the web app cloud offering since i...

12 Okt 202042min

News from Microsoft Ignite 2020 - Episode 109

News from Microsoft Ignite 2020 - Episode 109

In today's 'solocast,' Jeffrey is taking a look at the virtual Microsoft Ignite 2020 conference that was held on September 22nd-24th. At last year's conference, Jeffrey was fortunate enough to be a ...

5 Okt 202014min

Chrissy LeMaire on DevOps with dbatools - Episode 108

Chrissy LeMaire on DevOps with dbatools - Episode 108

This podcast episode is sponsored by Cloudify.co — a platform that radically simplifies end-to-end network automation through open-source, intent-based orchestration. Automate Ansible, Terraform, and ...

28 Sep 202035min

Daniel Markham on Teaching Programmers - Episode 107

Daniel Markham on Teaching Programmers - Episode 107

In this episode, Jeffrey Palermo is joined by Daniel Markham! Daniel is a semioticist logician (otherwise known as a programmer). He likes to help people learn to make better tech. He believes that on...

21 Sep 202037min

Steve Sanderson on Blazor - Episode 106

Steve Sanderson on Blazor - Episode 106

In today's episode, Jeffrey Palermo is joined by Steve Sanderson! Steve is a developer at Microsoft on the ASP.NET team and the inventor of the first version of Blazor. He has worked on web technologi...

14 Sep 202039min

Populärt inom Politik & nyheter

aftonbladet-krim
svenska-fall
rss-krimstad
p3-krim
fordomspodden
spar
flashback-forever
rss-sanning-konsekvens
rss-expressen-dok
rss-vad-fan-hande
aftonbladet-daily
motiv
grans
rss-frandfors-horna
rss-krimreportrarna
rss-flodet
krimmagasinet
blenda-2
rss-aftonbladet-krim
olyckan-inifran