EPISODE · Jul 23, 2024 · 51 MIN
Andrew Van Der Stock -- The New OWASP Top Ten
from The Application Security Podcast · host Chris Romeo and Robert Hurlbut
Andrew Van Der Stok, a leading web application security specialist and executive director at OWASP joins us for this episode. We discuss the latest with the OWASP Top 10 Project, the importance of data collection, and the need for developer engagement. Andrew gives us the methodology behind building the OWASP Top 10, the significance of framework security, and much more. Andrew Vanderstock is a seasoned web application security specialist and enterprise security architect. He's the executive director at OWASP, taking the foundation through organizational change and taking OWASP's mission to the next level. Andrew has worked in the IT industry for over 25 years, has researched and developed the web application security and architecture fields since 1998.The Application Security Podcast is brought to you by Security Journey.About Security JourneyOur training includes theory and immersive learning that teaches the skills and knowledge needed to create a security-first mindset across your organization.→ Learn more about Security JourneyConnect with Andrew van der Stock:→ The Crown Road by Iain Banks→ Edward TufteMentioned in this episode:→ The Crown Road by Iain Banks→ Edward Tufte→ OWASP Top Ten Project→ OWASP Developer Guide→ PCI DSS→ OWASP Top Ten for LLM Applications project homepage→ RSA ConferenceFollow the Application Security Podcast:➜ Home➜ X➜ LinkedIn➜ YouTube➜ Instagram➜ FacebookChapters:00:00 Meet Andrew van der Stock: The New OWASP Top Ten01:41 We are about to go on a journey into the topic04:10 Phone goes with you probably just for emergency purposes, but so07:27 Probably get ways to deal with it, right13:08 Help me, help me remember what, what, what is the connection15:29 On the topic of OWASP Top 10, give us an update17:16 We talk about data and the need for data, I don't20:58 Then if— so the, the request for data is really more21:56 Now I'm curious. I want to dig a little deeper on26:00 Are the downsides of, potential downsides of this data collection approach30:23 That data weighted different in the model if it comes from33:33 Wrapping all of this kind of together, we've got the data35:14 I mean, or it used to be. Yeah. Or it used36:24 I can, I mean, just to second something you said a40:38 Yeah. So you already jumped ahead to controversial opinion, but before42:23 All right. Yes, we already talked about the controversial opinions. So45:59 Great. Last question is, what's your top book recommendation and why50:12 Andrew, what's, how about a key takeaway then
Embed this episode
What this episode covers
Andrew Van Der Stok, a leading web application security specialist and executive director at OWASP joins us for this episode. We discuss the latest with the OWASP Top 10 Project, the importance of data collection, and the need for developer engagement. Andrew gives us the methodology behind building the OWASP Top 10, the significance of framework security, and much more. Andrew Vanderstock is a seasoned web application security specialist and enterprise security architect. He's the executive ...
Ready to play
Andrew Van Der Stock -- The New OWASP Top Ten
No transcript for this episode yet
Similar Episodes
No similar episodes found.
Similar Podcasts
No similar podcasts found.