Marisa Fagan - Measuring Security Culture
Marisa Fagan, Head of Product at Katilyst and veteran security culture expert joins us today to share practical strategies for building and scaling security…
Listen to the episodeTopic
Why developers do or do not adopt security — empathy, blamelessness and influence rather than mandates — and looking after the people doing the work, from burnout to neurodiversity.
Marisa Fagan, Head of Product at Katilyst and veteran security culture expert joins us today to share practical strategies for building and scaling security…
Listen to the episodeWe’re discussing the intersections of application security (AppSec) and sales strategy with our guest, Sean Varga.
Listen to the episodeKalyani Pawar shares critical strategies for integrating security early and effectively in AppSec for startups.
Listen to the episodeDavid Quisenberry shares about his journey into the security world, insights on building AppSec programs in small to mid-sized companies, and the importance of data-driven decision-making.
Listen to the episodeDustin Lehr, Senior Director of Platform Security/Deputy CISO at Fivetran and Chief Solutions Officer at Katilyst Security, joins Robert and Chris to discuss security champions.
Listen to the episodeJay Bobo and Darylynn Ross from CoverMyMeds join Chris to explain their assertion that 'AppSec is Dead.' They discuss the differences between product and…
Listen to the episodeEitan Worcel joins the Application Security Podcast, to talk automated code fixes and the role of artificial intelligence in application security.
Listen to the episodeFor Security Pros & Business Leaders | Strategic Insights & Leadership Lessons 🔒🌟 When Ray Espinoza joined Chris and Robert on the Application…
Listen to the episodeThe Application Security Podcast presents the OWASP Board of Directors Debate for the 2023 elections. This is a unique and engaging discussion among six candidates vying for a position on the board.
Listen to the episodeHarshil Parikh is a seasoned security leader with experience building security and compliance functions from the ground up.
Listen to the episodeJeevan Singh, the director of product security at Twilio, discusses the future of application security engineers.
Listen to the episodeAlex leads the Cyber Security Consulting Group, part of Rakuten's Cyber Security Defense Department.
Listen to the episodeJ. Wolfgang Goerlich is an Advisory CISO for Cisco Secure. He has been responsible for IT and IT security in the healthcare and financial services verticals.
Listen to the episodeBrenna Leath is currently the Head of Product Security for a data analytics company where she sets the application security strategy for R&D and leads a team of security architects.
Listen to the episodeLeif Dreizler is the manager of the Product Security team at Segment. Leif got his start in the security industry at Redspin doing security consulting work and was later an early employee at Bugcrowd.
Listen to the episodeApplication security applies to everyone, network architects included. Chris had an opportunity to join a friend's Podcast called "The Hedge." Chris talks…
Listen to the episodeVandana Verma is a passionate advocate for application security. From serving on the OWASP Board to running various groups promoting security to organizing…
Listen to the episodeGeoffrey Hill is an AppSec DevSecOps leader and Architect. Geoff joins us to discuss his experiences rolling out DevSecOps in both Agile and non-Agile practicing shops.
Listen to the episodeDavid Kosorok is a code security expert, software tester, father of 9, and a self-described major nerd.
Listen to the episodeRonnie Flathers is a security guy, a pentester, and a researcher. In this conversation, we explore his experiences in building application security programs.
Listen to the episodeRobert asks Elissa Shevinsky, why should people be nice, or why is niceness important in security?
Listen to the episodeMatt McGrath is an old school Java developer that made the transition into security. Matt has had success in rolling out a programmatic approach to security improvement called security coaching.
Listen to the episodeCaroline Wong has had a long career in security, starting with eBay and leading to her role today at Cobalt.IO as Chief Strategist.
Listen to the episodeJon McCoy is a security engineer, a developer, and a hacker; and a passionate OWASP advocate. Maybe even a hacker first.
Listen to the episodeWe listen in on the #AppSecUSA talk by Chris about Security Culture Hacking. You can find Chris on Twitter @edgeroute
Listen to the episodeDevin McMasters joins Chris to talk about bug bounties and how to make them successful. You can find Devin on Twitter @DevinMcmasters
Listen to the episodeMegan Roddie joins Robert at the SOURCE Conference in Boston. She talks about how neurodiverse people can truly help an organization.
Listen to the episodeMagen Wu works through the topic of burnout and mental health in security. She gives examples of handling this and recognizing if people around you are burning out.
Listen to the episodeSecurity champions are the hands and feet of any well-equipped product security team.
Listen to the episodeGreetings all! We have a treat for you in this episode. The crew joins Robert and me from the Down the Security Rabbit Hole Podcast.
Listen to the episodeWe bring you a recorded version of Chris’s security conference talk from 2016 for this episode.
Listen to the episodeThis is our second interview at ISC2 Security Congress. We are joined by Glenn Leifheit (@gleifhe), an InfoSec and Development Evangelist at Microsoft.
Listen to the episode