
Radio and PodcastLive Radio & Podcasts
Josh Grossman - building Appsec programs, bridging security and developer gaps
Youtube VOD: , , , , , , , , , , , Questions and topics: 1. The background to the topic, why is it something that interests you? How do you convince developers to take your course? 2. What do you think the root cause of...
About This Episode
Josh Grossman - building Appsec programs, bridging security and developer gaps is an episode from Brakeing Down Security Podcast by Bryan Brake. Youtube VOD: , , , , , , , , , , , Questions and topics: 1. The background to the topic, why is...
This episode belongs to Brakeing Down Security Podcast.
Use the player on this page to stream the episode online.
Published Apr 15, 2024, 01:16:22 long, audio available.
Questions About This Episode
What is Josh Grossman - building Appsec programs, bridging security and developer gaps about?
Youtube VOD: , , , , , , , , , , , Questions and topics: 1. The background to the topic, why is it something that interests you? How do you convince developers to take your course? 2. What do you think the root cause of the gap is? 3. Who is causing the gaps? ('go fast' culture, overzealous security, GRC requirements, basically everyone?) 4. Where do gaps begin? Is it the 'need' to 'move fast'? 5. What can devs do to involve security in their process? Sprint planning? SCA tools? 6. How have you seen this go wrong at organizations? 7. How important is it to have security early in the product development process? 8. What sort of challenges do you think mainstream security people face in AppSec scenarios? 9. How does Product Security differ from Application Security? (what if the product is an application?) 10. What are the key development concepts that security people need to be familiar with to effectively get involved in AppSec/ProdSec? 11.. How do you suggest a security team approach AppSec/ProdSec? Leadership buy-in Effective/valuable processes Tools should achieve a goal 12. SBOM - NTIA is asking for it, How to get dev teams to care. 13. Key takeaways? Additional information / pertinent LInks (Would you like to know more?): BlackHat Training: SCA Tools PyCon talk about custom security testing: Michal's Black Hat course - Accurate and Scalable: Web Application Bug Hunting: ASVS website: Lightning talk I did recently about OWASP: Show points of Contact: Amanda Berlin: @infosystir @hackershealth Brian Boettcher: @boettcherpwned Bryan Brake: Brakesec Website: Youtube channel: Twitch Channel:
Where can I listen to Josh Grossman - building Appsec programs, bridging security and developer gaps?
You can listen to Josh Grossman - building Appsec programs, bridging security and developer gaps online on Radio and Podcast. Open the player on this page to stream the available audio.
Which podcast is Josh Grossman - building Appsec programs, bridging security and developer gaps from?
Josh Grossman - building Appsec programs, bridging security and developer gaps is an episode from Brakeing Down Security Podcast by Bryan Brake.
How long is this episode?
This episode is 01:16:22 long.
When was this episode published?
This episode was published on Apr 15, 2024.
Can I save Josh Grossman - building Appsec programs, bridging security and developer gaps for later?
Yes. Use the heart button on the episode page to add it to your favorite episodes list.
Are there related episodes from Brakeing Down Security Podcast?
Yes. This page shows related episodes from Brakeing Down Security Podcast when more episodes are available from the podcast feed.
Quick Answers About This Episode
Where can I listen to Josh Grossman - building Appsec programs, bridging security and developer gaps?
You can listen to Josh Grossman - building Appsec programs, bridging security and developer gaps on this page when the episode audio is available from the podcast feed.
Which podcast is this episode from?
Josh Grossman - building Appsec programs, bridging security and developer gaps is from Brakeing Down Security Podcast by Bryan Brake.
What are the episode details?
Published Apr 15, 2024 and 01:16:22 long






