Application Security PodCast
By Chris Romeo and Robert Hurlbut
To listen to an audio podcast, mouse over the title and click Play. Open iTunes to download and subscribe to podcasts.
The Application Security PodCast exists to reach people that build or test things (developers, testers, managers, product people, sales, marketing). We explain the details of application security in a way that someone new to the discipline can understand. We strive to break out of the security echo chamber and talk to real people that design, build, and test stuff. When we aren't speaking of foundational application security topics, we interview successful people in the application security world and decompose what makes them successful. If we hear an interesting conference presentation on a topic, we invite the speaker as a guest and have them break down the topic in 30 minutes. We cut through any boundaries that exist in #AppSec or #InfoSec, and are not afraid to talk about any type of technology and the role of security in making things tick.
||CleanSelling #AppSec Up The Chain (S03E09) - Application Security PodCast||Jim Routh joins the podcast to discuss selling #AppSec up the chain. Jim has built 5 successful software security programs in his career and serves as a CISO now. Jim shares his real-world experience with how to successfully sell #AppSec to senior mana.||3/15/2018||Free||View in iTunes|
||Clean#AppSec Recommendations (S03E08) - Application Security PodCast||Chris and Robert go over a plethora of recommendations they have accumulated over their years of experience in the industry. Chris’s recommendations 1. Book: Agile Application Security: Enabling Security in a Continuous Delivery Pipeline by Laura Bell||3/9/2018||Free||View in iTunes|
||CleanHustle and Flow: Dealing With Burnout in Security (S03E07) - Application Security PodCast||Magen Wu works through the topic of burnouts and mental health in the world of security. She gives some examples on how to handle this and how to recognize if people around you are burning out. You can find her on Twitter @infosec_tottie Additional inf.||3/2/2018||Free||View in iTunes|
||CleanOWASP Top 10 #4 XXE (S03E06) - Application Security PodCast||Katy Anton joins this week to discuss number four on the OWASP Top 10. She dives into what XXE is, how to deal with it, and some of the other new items on the OWASP Top 10 2017. You can find Katy on Twitter @KatyAnton||2/23/2018||Free||View in iTunes|
||CleanSAST, DAST, and IAST. Oh My! (S03E05) - Application Security PodCast||Pete Chestna is an advocate for SAST, DAST, and IAST tools and a passionate #AppSec enthusiast. A moving quote that Pete shared during this episode is “an #AppSec program is the byproduct of building secure developers.||2/15/2018||Free||View in iTunes|
||CleanWe Are Not Making It Worse (S03E04) - Application Security PodCast||Irene Michlin operates at the intersection of security and agility. She teaches about incremental threat modeling and how to do threat modeling when living in an Agile or DevOps world. Irene ends the discussion by saying that her goal when working wit||2/9/2018||Free||View in iTunes|
||CleanInsecure Deserialization (S03E03) - Application Security PodCast||Bill Sempf joins to talk insecure deserialization. We do a deep dive and contextual review of the generalities of deserialization, and the specifics of how it applies to “.NET”. Bill gets into his journey to understand these types of vulnerabilities||2/2/2018||Free||View in iTunes|
||CleanSecurity Champions (S03E02) - Application Security PodCast||Security champions are the hands and feet of any well-equipped product security team. Robert and Chris introduce security champions, where to find them, why you need them, and how to set up a beginning champion program from scratch.||1/26/2018||Free||View in iTunes|
||CleanShifting left (S03E01) - Application Security PodCast||Welcome to season 3 of the podcast. In this episode, Robert and Chris interview Kevin Greene from Mitre. We discuss an article Kevin wrote about shifting left and explore codifying intuitions and new projects at Mitre that will bolster the knowledge of.||1/19/2018||Free||View in iTunes|
||CleanOWASP for everyone (S02E21) - Application Security PodCast||This is the conclusion of Season 02 for the AppSec PodCast. In this episode, we focus in on all the OWASP goodness we’ve experienced this year. You’ll hear our favorite clips and explanations from a season full of OWASP.||12/5/2017||Free||View in iTunes|
awesome and very informative!
Proud to give you a 5-star review! Well worth it!