EPISODE · Dec 5, 2017 · 31 MIN
Conclusion: OWASP is for everyone
from The Application Security Podcast · host Chris Romeo and Robert Hurlbut
Why does OWASP matter beyond its famous Top 10 list? The Season 2 finale revisits guests who demonstrate the breadth of the foundation’s work. John Melton explains AppSensor, Andrew van der Stock and Brian Glas discuss Top 10 governance and data, Mike Goodwin walks through Threat Dragon, Jim Manico and Katy Anton explain Proactive Controls, Tanya Janca and Nicole Becher introduce DevSlop, and Tin Zaw describes ModSecurity. The clips connect guidance, tools, standards, training applications, and community participation. Chris and Robert frame the episode as an invitation: OWASP is not reserved for established security experts. Developers, testers, project leaders, documenters, and newcomers can all learn from the projects and contribute to making them more useful.The Application Security Podcast is brought to you by Security Journey.About Security JourneySecurity Journey provides application security education for developers and everyone in the software development lifecycle.→ Learn more about Security JourneyConnect with Chris Romeo and Robert Hurlbut:→ Chris Romeo on LinkedIn→ Robert Hurlbut on LinkedInMentioned in this episode:→ OWASP Top 10→ OWASP AppSensor→ OWASP Threat Dragon→ OWASP Top 10 Proactive Controls→ OWASP DevSlop→ Pixi (DevSlop)→ OWASP ModSecurity Core Rule Set→ Microsoft Threat Modeling ToolFollow the Application Security Podcast:➜ Home➜ X➜ LinkedIn➜ YouTube➜ Instagram➜ FacebookChapters:00:00 Season 2 and the breadth of OWASP00:50 John Melton on OWASP AppSensor04:55 Andrew van der Stock and Brian Glas on Top 10 governance09:54 Balancing data for the OWASP Top 1012:55 Mike Goodwin on OWASP Threat Dragon14:24 The Threat Dragon workflow17:14 Jim Manico and Katy Anton on Proactive Controls23:12 Tanya Janca and Nicole Becher on DevSlop27:25 Tin Zaw on ModSecurity30:19 OWASP is for everyone
Embed this episode
What this episode covers
Why does OWASP matter beyond its famous Top 10 list? The Season 2 finale revisits guests who demonstrate the breadth of the foundation’s work. John Melton explains AppSensor, Andrew van der Stock and Brian Glas discuss Top 10 governance and data, Mike Goodwin walks through Threat Dragon, Jim Manico and Katy Anton explain Proactive Controls, Tanya Janca and Nicole Becher introduce DevSlop, and Tin Zaw describes ModSecurity. The clips connect guidance, tools, standards, training applications, a...
Ready to play
Conclusion: OWASP is for everyone
No transcript for this episode yet
Similar Episodes
No similar episodes found.
Similar Podcasts
No similar podcasts found.