CyberSecurity Awareness Month with Troy Vinson - Episode 161

CyberSecurity Awareness Month with Troy Vinson - Episode 161

This week, Jeffrey is joined by Troy Vinson; a Principal Software Architect at Clear Measure as a CISSP (Certified Information System Security Professional.) He is an experienced leader, architect, and problem-solver in Information Systems Security and Software Development technologies and has spent the majority of his career integrating computer science, information science, and cognitive science to assist in software development and the management of information.

With October being CyberSecurity Awareness Month, Troy gives a rundown on everything that developers and development teams need to know regarding security, how to become more cyber security aware, the top ten web application security risks you need to look out for, how to keep your environment secure regardless or where you're working from, and what you can putting in place today to improve your cyber security.

Topics of Discussion:

[:39] About The Azure DevOps Podcast, Clear Measure; the new video podcast Architect Tips; and Jeffrey's offer to speak at virtual user groups.

[1:11] About today's episode with Troy Vinson!

[1:23] Jeffrey welcomes Troy to the podcast.

[1:30] What is CISSP?

[2:53] Troy shares his career highlights and the path that led him to his current role in cyber security.

[4:39] Why is October Cybersecurity Awareness Month?

[6:18] What developers should be aware of when setting up a connected environment for themselves at home.

[8:47] Troy's favorite VPN services.

[10:08] Best practice: Always work from a VPN, especially as a developer working from a public place.

[10:25] What developers should keep in mind about source code when it comes to cyber security.

[12:32] How to keep documents (that don't quite fit in a source control repository) secure.

[14:31] Troy highlights important security architecture models of practice.

[15:56] How is the STRIDE model applicable?

[17:59] A word from The Azure DevOps Podcast's sponsor: Clear Measure.

[18:30] What is repudiation in the STRIDE model referring to? What is it in code changes? When is it necessary?

[20:22] Are there test suites that developers can use to augment their functional tests that check for security measures?

[23:16] Should development teams hire third parties to do audits versus doing it in-house?

[24:36] What OWASP Top Ten is and why all of your engineers should be trained on it.

[26:15] Is there a comprehensive list of web application security risks?

[27:28] Troy highlights the importance of #6 on the OWASP Top Ten list: vulnerable and outdated components.

[29:15] Rules of thumb regarding security for development teams when it comes to deployment and configuring environments

[30:56] Free online courses for cyber security awareness that you can share with family members and friends.

[33:52] Jeffrey thanks Troy Vinson for joining the podcast!

Mentioned in this Episode:

Architect Tips — New video podcast!

Azure DevOps

Clear Measure (Sponsor)

.NET DevOps for Azure: A Developer's Guide to DevOps Architecture the Right Way, by Jeffrey Palermo — Available on Amazon!

bit.ly/dotnetdevopsebook — Click here to download the .NET DevOps for Azure ebook!

Jeffrey Palermo's YouTube

Jeffrey Palermo's Twitter Follow to stay informed about future events!

DEVintersection Conference — Dec. 7th‒9th in Las Vegas, Nevada

Cybersecurity Awareness Month | CISA

Cybersecurity Awareness Month | National Cybersecurity Alliance (NCSA)

NordVPN

ExpressVPN

STRIDE Model

GitHub

DevSecOps

SharePoint

One Drive

Azure Front Door

Azure Application Gateway

FxCop

Roslyn

Sonarqube

OWASP Top Ten

Top 25 Most Dangerous Software Errors CWE/SANS

2021 CWE Top 25 Most Dangerous Software Weaknesses

Want to Learn More?

Visit AzureDevOps.Show for show notes and additional episodes.

Avsnitt(392)

Emily Freeman on Modern DevOps - Episode 72

Emily Freeman on Modern DevOps - Episode 72

Today's guest is Emily Freeman who leads the modern operations team in cloud advocacy at Microsoft. She's also the author of the recently released book, DevOps for Dummies, which guides readers throug...

20 Jan 202039min

Christina Rudolph on DevOps from a Product Manager's Perspective - Episode 71

Christina Rudolph on DevOps from a Product Manager's Perspective - Episode 71

On today's podcast, Christina Rudolph is joining Jeffrey Palermo to discuss DevOps from a Product Manager's perspective! Christina Rudolph has been a Product Manager at Clear Measure since November ...

13 Jan 202026min

3 Essential DevOps Scenarios for Your DevOps Pipeline - Episode 70

3 Essential DevOps Scenarios for Your DevOps Pipeline - Episode 70

Happy New Year's — it's officially 2020! To kick things off for this first episode back, Jeffrey is bringing you a special solo episode that will be entirely focused on the three essential scenarios t...

6 Jan 202033min

Kathleen Dollard on Setting Up Your Machine for .NET Core - Episode 69

Kathleen Dollard on Setting Up Your Machine for .NET Core - Episode 69

Today's episode marks the end of 2019 as well as over a year of Azure DevOps Podcasts! In today's final episode of 2019, Kathleen Dollard joins the podcast to discuss setting up your machine for .NE...

30 Dec 201945min

Sudhanva Huruli on the Open Application Model - Episode 68

Sudhanva Huruli on the Open Application Model - Episode 68

This week on the podcast, Jeffrey Palermo is joined by Sudhanva Huruli, a Program Manager at Microsoft. He's currently a maintainer on the Open Application Model and has been at Microsoft now for 2 ye...

23 Dec 201936min

Elton Stoneman on Docker in a DevOps World — Episode 67

Elton Stoneman on Docker in a DevOps World — Episode 67

In today's episode, Elton Stoneman is joining the podcast! Elton is an Architect at Docker and an Azure MVP. He's currently in the process of writing his new book, Learn Docker in a Month of Lunches, ...

16 Dec 201938min

Mark Fussell on the Distributed Application Runtime or Dapr - Episode 66

Mark Fussell on the Distributed Application Runtime or Dapr - Episode 66

In this week's episode, Jeffrey Palermo welcomes Mark Fussell on to the podcast! Mark works on the Azure Compute team and is the Product Manager for the new Dapr framework (AKA the Distributed Applica...

9 Dec 201941min

Microsoft Ignite 2019 Recap with Various Guests - Episode 65

Microsoft Ignite 2019 Recap with Various Guests - Episode 65

Just a few short weeks ago, Microsoft held its Ignite conference. Over 29k people filled the Orange County Convention Center in Orlando, FL. It was a very energy-filled week! And your host, Jeffrey Pa...

2 Dec 201932min

Populärt inom Politik & nyheter

aftonbladet-krim
svenska-fall
p3-krim
rss-krimstad
fordomspodden
rss-expressen-dok
flashback-forever
rss-sanning-konsekvens
motiv
aftonbladet-daily
spar
rss-vad-fan-hande
blenda-2
olyckan-inifran
rss-krimreportrarna
rss-frandfors-horna
rss-flodet
dagens-eko
svd-ledarredaktionen
grans