Difference between revisions of "Asw132"
(Created page with " <!-- ************************* DO NOT EDIT THIS SECTION. THIS IS AUTO-GENERATED BY PPWORKS. YOUR CHANGES WILL BE LOST! *************************** --> = Application Securit...") |
|||
Line 10: | Line 10: | ||
************************* DO NOT EDIT THIS SECTION. THIS IS AUTO-GENERATED BY PPWORKS. YOUR CHANGES WILL BE LOST! *************************** | ************************* DO NOT EDIT THIS SECTION. THIS IS AUTO-GENERATED BY PPWORKS. YOUR CHANGES WILL BE LOST! *************************** | ||
--> | --> | ||
− | = 1. | + | = 1. Security Decisions During Application Development - 12:30 PM-01:00 PM = |
<!-- | <!-- | ||
************************* MAKE CHANGES IN THE TEMPLATES BELOW! *************************** | ************************* MAKE CHANGES IN THE TEMPLATES BELOW! *************************** | ||
--> | --> | ||
+ | |||
+ | === Sponsored By === | ||
+ | <gallery mode="packed" widths=150px heights=150px> | ||
+ | Image:Synopsys_color_logo_sm-1.png | ||
+ | </gallery> | ||
+ | <center><strong>Visit https://securityweekly.com/synopsys for more information!</strong></center> | ||
=== Description === | === Description === | ||
+ | The security of any application is a function of the decisions made during development. Measuring the risk of those decisions isn't something contained within a single tool, but instead requires a set of perspectives on how a "bad decision" can manifest itself in the security of the app. This segment is sponsored by Synopsys. Visit https://securityweekly.com/synopsys to learn more about them! | ||
+ | |||
+ | |||
+ | |||
+ | |||
+ | ==Guest(s)== | ||
+ | |||
+ | |||
+ | ===Tim Mackey=== | ||
+ | <gallery mode="nolines" widths=175px heights=175px> | ||
+ | |||
+ | Image:TimMackey-1.jpg|'''[https://twitter.com/@timintech Tim Mackey]''' is Principal Security Strategist at Synopsys<br> | ||
+ | |||
+ | </gallery> | ||
+ | Tim Mackey is a principal security strategist for the Synopsys Cybersecurity Research Center. As a security strategist, he applies his skills in distributed systems engineering, mission critical engineering, performance monitoring, large-scale data center operations, and global data privacy regulations to customer problems. An O'Reilly Media published author, Tim has also been covered in publications around the globe including Fortune, NBC News, Dark Reading, InfoSecurity Magazine, and The Straits Times.<br> | ||
Line 24: | Line 45: | ||
<gallery mode="nolines" widths=175px heights=175px> | <gallery mode="nolines" widths=175px heights=175px> | ||
+ | |||
+ | Image:John_Kinsella-1.jpg|<center>[https://twitter.com/@johnlkinsella John Kinsella] - Chief Architect at Accurics</center> | ||
+ | |||
+ | Image:MattAlderman-0.png|<center>[https://twitter.com/@maldermania Matt Alderman] - CEO at Security Weekly</center> | ||
Image:mike-shema-0.jpg|<center>[https://twitter.com/@Codexatron Mike Shema] - Product Security Lead at Square</center> | Image:mike-shema-0.jpg|<center>[https://twitter.com/@Codexatron Mike Shema] - Product Security Lead at Square</center> |
Revision as of 17:15, 17 November 2020
Contents
Application Security Weekly Episode #132 - November 30, 2020
Subscribe to all of our shows and mailing list by visiting: https://securityweekly.com/subscribe
1. Security Decisions During Application Development - 12:30 PM-01:00 PM
Sponsored By
Description
The security of any application is a function of the decisions made during development. Measuring the risk of those decisions isn't something contained within a single tool, but instead requires a set of perspectives on how a "bad decision" can manifest itself in the security of the app. This segment is sponsored by Synopsys. Visit https://securityweekly.com/synopsys to learn more about them!
Guest(s)
Tim Mackey
Tim Mackey is Principal Security Strategist at Synopsys
Tim Mackey is a principal security strategist for the Synopsys Cybersecurity Research Center. As a security strategist, he applies his skills in distributed systems engineering, mission critical engineering, performance monitoring, large-scale data center operations, and global data privacy regulations to customer problems. An O'Reilly Media published author, Tim has also been covered in publications around the globe including Fortune, NBC News, Dark Reading, InfoSecurity Magazine, and The Straits Times.
Hosts
John Kinsella - Chief Architect at Accurics Matt Alderman - CEO at Security Weekly Mike Shema - Product Security Lead at Square
2. Application News - 01:00 PM
Description
Hosts
Mike Shema's Content:
Articles
- Critical MobileIron RCE Flaw Under Active Attack for a bug disclosed and patched in June.
- Xbox bug could have allowed hackers to link gamer tags with players' emails, making identity in Fortnite less fortified than expected.
- Prevention Is Better Than the Cure When Securing Cloud-Native Deployments reiterates a tenet of DevOps -- the feedback loop.
- Amazon: We're hiring software engineers who know programming language Rust gives us a chance to consider the influence of toolchains on security.
- KubeCon Coverage: Incentivizing the DevSecOps Culture gives us a chance to think about motivating teams to focus on prevention, toolchains, and feedback loops.
- The DevOps Reading List: Choosing your next DevOps book gives us some ways to learn more about DevOps.