Mike Landeck -- Security Must Meet the Needs of the Business episode artwork

EPISODE · Oct 25, 2016 · 36 MIN

Mike Landeck -- Security Must Meet the Needs of the Business

from The Application Security Podcast · host Chris Romeo and Robert Hurlbut

Security advice only helps when it connects to the needs of the people building and running the business. Mike Landeck joins Chris and Robert to discuss teaching developers, working with testers, and using breach stories without overwhelming an audience that already hears about incidents every day. He explains how practical examples can lead people toward resources such as the OWASP cheat sheets and how to choose stories that make risk understandable. The conversation then moves to business decisions, trust, and the limits of simply telling an organization what it should do. Mike argues for partnership and concrete assistance that helps teams improve over time. The episode offers ways to turn security knowledge into useful action for developers, QA staff, and business leaders.The Application Security Podcast is brought to you by Security Journey.About Security JourneySecurity Journey provides application security education for developers and everyone in the software development lifecycle.→ Learn more about Security JourneyConnect with Mike Landeck:→ Mike Landeck on LinkedInMentioned in this episode:→ OWASP SQL Injection Prevention Cheat Sheet→ Damn Vulnerable Web App (DVWA)→ I Am The Cavalry→ Krebs on Security→ OWASP Cheat Sheet SeriesFollow the Application Security Podcast:➜ Home➜ X➜ LinkedIn➜ YouTube➜ Instagram➜ FacebookChapters:00:00 Connecting security to business needs with Mike Landeck01:32 Mike’s path into application security07:10 Teaching developers to use practical security resources09:01 Breach fatigue and keeping the message relevant13:28 Reaching people outside the security echo chamber16:01 Choosing useful breach stories19:24 Sources for understanding security incidents20:06 Explaining security to a developer23:10 Helping QA teams test for security25:55 Understanding the business decision30:15 Moving the organization toward better outcomes34:23 Practical next steps for security practitioners

Episode metadata supplied by the publisher feed · Published Oct 25, 2016

Embed this episode

Security advice only helps when it connects to the needs of the people building and running the business. Mike Landeck joins Chris and Robert to discuss teaching developers, working with testers, and using breach stories without overwhelming an audience that already hears about incidents every day. He explains how practical examples can lead people toward resources such as the OWASP cheat sheets and how to choose stories that make risk understandable. The conversation then moves to business d...

Distinct summary based on available episode metadata or transcript content.

Ready to play

Mike Landeck -- Security Must Meet the Needs of the Business

0:00 36:57

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

No similar episodes found.

No similar podcasts found.

Frequently Asked Questions

How long is this episode of The Application Security Podcast?

This episode is 36 minutes long.

When was this The Application Security Podcast episode published?

This episode was published on October 25, 2016.

Can I download this The Application Security Podcast episode?

Yes. Use the download control on the episode player to save the publisher-provided media file.
URL copied to clipboard!