Jim Manico and Katy Anton -- The Future of the OWASP Proactive Controls episode artwork

EPISODE · Oct 3, 2017 · 19 MIN

Jim Manico and Katy Anton -- The Future of the OWASP Proactive Controls

from The Application Security Podcast · host Chris Romeo and Robert Hurlbut

Where should the OWASP Proactive Controls go after giving developers a concise defensive counterpart to the Top 10? Project leaders Jim Manico and Katy Anton discuss the document’s origins, intended audience, and plans for its next version. They explore how much implementation guidance belongs in a short list, whether data should shape future priorities, and how the controls relate to ASVS, cheat sheets, and other OWASP resources. The guests consider language-specific guidance and a future in which developers can move from a high-level control to concrete examples for their platform. Chris also asks how the community can review and contribute. The conversation captures an open-source project deciding how to remain approachable while becoming more useful to practicing software engineers.The Application Security Podcast is brought to you by Security Journey.About Security JourneySecurity Journey provides application security education for developers and everyone in the software development lifecycle.→ Learn more about Security JourneyConnect with Jim Manico and Katy Anton:→ Jim Manico on LinkedIn→ Katy Anton on LinkedIn→ OWASP Proactive ControlsMentioned in this episode:→ OWASP Proactive Controls→ OWASP ASVS→ OWASP Cheat Sheet Series→ NIST Digital Identity GuidelinesFollow the Application Security Podcast:➜ Home➜ X➜ LinkedIn➜ YouTube➜ Instagram➜ FacebookChapters:00:00 The future of OWASP Proactive Controls02:43 A defensive counterpart to the Top 1004:46 The project’s origin story06:10 Priorities for the next version09:11 Whether data should shape the controls12:39 Mapping to ASVS and other projects14:25 A five-year vision for the project16:24 Language-specific developer guidance17:24 How the community can contribute18:50 Final thanks and next steps

Episode metadata supplied by the publisher feed · Published Oct 3, 2017

Embed this episode

Where should the OWASP Proactive Controls go after giving developers a concise defensive counterpart to the Top 10? Project leaders Jim Manico and Katy Anton discuss the document’s origins, intended audience, and plans for its next version. They explore how much implementation guidance belongs in a short list, whether data should shape future priorities, and how the controls relate to ASVS, cheat sheets, and other OWASP resources. The guests consider language-specific guidance and a future in...

Distinct summary based on available episode metadata or transcript content.

Ready to play

Jim Manico and Katy Anton -- The Future of the OWASP Proactive Controls

0:00 19:37

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

No similar episodes found.

No similar podcasts found.

Frequently Asked Questions

How long is this episode of The Application Security Podcast?

This episode is 19 minutes long.

When was this The Application Security Podcast episode published?

This episode was published on October 3, 2017.

Can I download this The Application Security Podcast episode?

Yes. Use the download control on the episode player to save the publisher-provided media file.
URL copied to clipboard!