Skip to content
AppSec PodcastThe Application Security Podcast — home

Guest

Steve Springett

Steve educates teams on the strategy and specifics of developing secure software. He practices security at every stage of the development lifecycle by leading sessions on threat modeling, secure architecture and design, static/dynamic/component analysis, offensive research, and defensive programming techniques. Steve's passionate about helping organizations identify and reduce risk from the software supply chain. He is an open source advocate and leads the OWASP Dependency-Track project, OWASP Software Component Verification Standard (SCVS), and Chairs the OWASP CycloneDX Core Working Group and Ecma International TC54. Steve serves on the Board of Directors of the OWASP Foundation where he helps drive the continued growth of the foundation and the pursuit of its mission to make secure software a reality through open collaboration, education, and innovation.

Latest conversations

Continue the journey

Across these conversations, recurring subjects include OWASP Projects, Software Supply Chain and Vulnerabilities and Exploits.

All appearances

  1. Steve Springett -- Software and System Transparency
  2. JC Herz and Steve Springett — SBOMs and software supply chain assurance
  3. Steve Springett — An insiders checklist for Software Composition Analysis
  4. Steve Springett — OWASP Dependency Track — 5 Minute AppSec
  5. Steve Springett -- Dependency Check and Dependency Track
All guests