Difference between revisions of "ESWEpisode164"

From Paul's Security Weekly
Jump to: navigation, search
(Hosts)
(Interview: Ferruh Mavituna, Netsparker)
Line 28: Line 28:
  
 
= Interview: Ferruh Mavituna, [https://securityweekly.com/netsparker Netsparker] =
 
= Interview: Ferruh Mavituna, [https://securityweekly.com/netsparker Netsparker] =
[[File:FerruhMavituna.jpg|thumb|<center>[https://twitter.com/fmavituna Ferruh Mavituna] is the CEO at [https://securityweekly.com/netsparker Netsparker]</center>]]Founder of Netsparker Ltd, Product Manager of Netsparker, Web Application Security Scanner. Developed the first and only proof based web security scanner with state of the art accurate vulnerability detection and exploitation features, today used by thousands companies around the world. Changed the automated web application security space. Frequent speaker at several conferences about Web Application Security, released several research papers and tools. Coming from a developer background (C++, ASP, ASP.NET and PHP), working in the web application security area since 2002. Deep understanding of web application security in both sides, attacking and defending. Between 2002-2006 worked for Turkish Army and Police as well as several big clients as freelance contractor, in Turkey, USA, Canada and UK. I mostly focus in these technical areas: Web Application Security Research, Automated Vulnerability Detection & Exploitation.<br><br>'''Segment Topic:'''<br>How to start building a web security programme and a realistic approach to starting a web security security programme in enterprises
+
[[File:FerruhMavituna.jpg|thumb|<center>[https://twitter.com/fmavituna Ferruh Mavituna] is the CEO at [https://securityweekly.com/netsparker Netsparker]</center>]]Founder of Netsparker Ltd, Product Manager of Netsparker, Web Application Security Scanner. Developed the first and only proof based web security scanner with state of the art accurate vulnerability detection and exploitation features, today used by thousands companies around the world. Changed the automated web application security space. Frequent speaker at several conferences about Web Application Security, released several research papers and tools. Coming from a developer background (C++, ASP, ASP.NET and PHP), working in the web application security area since 2002. Deep understanding of web application security in both sides, attacking and defending. Between 2002-2006 worked for Turkish Army and Police as well as several big clients as freelance contractor, in Turkey, USA, Canada and UK. I mostly focus in these technical areas: Web Application Security Research, Automated Vulnerability Detection & Exploitation.<br><br>'''Segment Topic:'''<br>How to start building a web security program and a realistic approach to starting a web security security program in enterprises
 
<br>
 
<br>
  

Revision as of 19:29, 4 December 2019

Recorded December 4, 2019 at G-Unit Studios in Rhode Island!

Episode Audio

Hosts

  • Paul Asadoorian
    Embedded device security researcher, security podcaster, and CEO of Active Countermeasures .
  • John Strand
    Security analyst, Founder of Black Hills Information Security, and CTO of Offensive Countermeasures.
  • Matt Alderman
    CEO at Security Weekly, Strategic Advisor, and Wizard of Entrepreneurship
  • Annoucements:

    • Join us at InfoSecWorld 2020 - March 30 - April 1, 2020 at the Disney Contemporary Resort! Security Weekly listeners save 15% off the InfoSec World Main Conference or World Pass! Visit securityweekly.com/ISW2020 and click the register button to register with our discount code!
    • We're currently running our annual Listener Feedback Survey! Please visit securityweekly.com -> click the survey tab & select "2019 Listener Survey" to submit your responses!
    • Attend RSA Conference 2020, February 24-28 and join thousands of security professionals, forward-thinking innovators and solution providers for five days of actionable learning, inspiring conversation and breakthrough ideas. Register before January 24 and save $900 on a Full Conference Pass. Save an extra $150 by going to securityweekly.com/rsac2020 and use our code to register!
    • Mark your calendars for our Security Weekly Holiday Extravaganza! On December 19th, Security Weekly will be live-streaming 5 one hour panel discussions with some of the most knowledgable professionals in the industry! To round out the evening, Ed Skoudis will be joining the Security Weekly hosts to give his annual announcement about the CounterHack Holiday Hack Challenge! You can view the live stream on our Youtube channel or by visiting securityweekly.com/live. We hope to see you there!


    Enterprise News

    1. NSS Labs Dismisses Antitrust Complaint Against Anti-Malware Testing Standards Organization and Endpoint Security Vendors
    2. Lastline Simplifies Securing Amazon Web Services with Industry-Leading Network Detection and Response
    3. Morphisec Achieves AWS Security Competency Status for Cloud Server Workload Protection
    4. CloudKnox Security Announces Integration with AWS IAM Access Analyzer
    5. December 2019 Product Updates: Automatic WI-Fi, WireGuard and More
    6. Kratikal Raises $1 Mn To Enhance Tech Infrastructure
    7. Mimecast Challenges Shadow IT for Cloud App Usage on Mobile and Desktop Devices
    8. Acceptto Extends Offering with Central Authentication Service Single Sign On Integration
    9. BrickStor Version 21 Includes New Security and Compliance Enhancements


    Interview: Ferruh Mavituna, Netsparker

    Founder of Netsparker Ltd, Product Manager of Netsparker, Web Application Security Scanner. Developed the first and only proof based web security scanner with state of the art accurate vulnerability detection and exploitation features, today used by thousands companies around the world. Changed the automated web application security space. Frequent speaker at several conferences about Web Application Security, released several research papers and tools. Coming from a developer background (C++, ASP, ASP.NET and PHP), working in the web application security area since 2002. Deep understanding of web application security in both sides, attacking and defending. Between 2002-2006 worked for Turkish Army and Police as well as several big clients as freelance contractor, in Turkey, USA, Canada and UK. I mostly focus in these technical areas: Web Application Security Research, Automated Vulnerability Detection & Exploitation.

    Segment Topic:
    How to start building a web security program and a realistic approach to starting a web security security program in enterprises


    Interview: Heather Paunet, Untangle

    Heather Paunet is the VP of Product at Untangle
    Heather Paunet is the Vice President of Product Management at Untangle, responsible for building the right products for customers, taking into account customer needs and market trends. She has over 15 years’ experience driving the development and go-to-market of software solutions. Prior to joining Untangle, she held product leadership roles at Cisco Systems, and was Vice President of Product at various high-tech security and networking companies in the Silicon Valley. She has a Bachelor of Science in Computer Engineering and spent the first few years of her career as a software engineer.

    Segment Topic:
    Untangle's upcoming SD-WAN Router release

    Segment Description:
    Untangle is releasing an SD-WAN Router, which has advanced routing capabilities and provides the ability for a business to build a comprehensive, secure Software Defined Network at a fraction of the cost. Our SD-WAN Router provides interoffice connectivity across multiple sites, optimizes the internet over existing infrastructure and prioritizes business critical application to maximize employee productivity.

    Segment Resources: