EPISODE · Sep 13, 2016 · 31 MIN
Chris and Robert -- Introductions and why #AppSec?
from The Application Security Podcast · host Chris Romeo and Robert Hurlbut
In the inaugural episode of the Application Security Podcast, Chris Romeo and Robert Hurlbut introduce themselves, trace the experiences that brought them into security, and establish the question the show will keep answering: what is application security, and why should builders care? They walk through security requirements, threat modeling, secure development, testing, and release as connected parts of the software lifecycle. The conversation distinguishes application security from information security and the broader cybersecurity label, then makes the business case for treating AppSec as foundational work—a customer expectation and a worthwhile investment rather than optional overhead, driven by people and supported by tools.Connect with Chris and Robert:→ Chris Romeo on LinkedIn→ Robert Hurlbut on LinkedInMentioned in this episode:→ Software Security: Building Security In→ OWASP Top 10→ Gary McGraw→ Robert HurlbutFollow the Application Security Podcast:➜ Home➜ X➜ LinkedIn➜ YouTube➜ Instagram➜ FacebookChapters:00:00 Welcome to the Application Security Podcast02:21 Chris and Robert’s security origin stories06:31 Defining application security09:05 Security requirements in the development lifecycle10:25 Design and threat modeling11:17 Secure development and testing13:35 Release and operational feedback15:53 Building security in16:56 Application security vs. information security20:31 What does cybersecurity mean?22:59 Why organizations need application security24:53 Applications as the path to valuable data27:24 The OWASP Top 10 as a starting point28:23 Final thoughts and the future of the field
Embed this episode
What this episode covers
In the inaugural episode of the Application Security Podcast, Chris Romeo and Robert Hurlbut introduce themselves, trace the experiences that brought them into security, and establish the question the show will keep answering: what is application security, and why should builders care? They walk through security requirements, threat modeling, secure development, testing, and release as connected parts of the software lifecycle. The conversation distinguishes application security from informat...
Ready to play
Chris and Robert -- Introductions and why #AppSec?
No transcript for this episode yet
Similar Episodes
No similar episodes found.
Similar Podcasts
No similar podcasts found.