#CSCP ?? Unlocking Insights into Application Security with Adam Shostack! ??

#CSCP ?? Unlocking Insights into Application Security with Adam Shostack! ??

In the latest episode of the Cyber Security & Cloud Podcast (CSCP) I had the honour to host my friend ?? Adam Shostack to delve deep into the world of Application Security Posture Management (ASPM) Vulnerability Management and threat modeling. This episode is packed with expert insights, covering everything from the White House's recent report on memory-safe programming languages to the systemic challenges of self-regulation in cybersecurity.

Key Takeaways:

  1. Importance of Threat Modeling: Adam simplifies and organizes threat modeling, making it more accessible for organizations to integrate into their security practices.
  2. Regulatory Influences: Discussion on how government regulations, especially post-SolarWinds, are shaping the future of application security.
  3. CISA's Proactive Strategies: Insights into CISA's approaches to tackling vulnerabilities at their origin, emphasizing the need for proactive and systemic solutions.
  4. Balancing Profit and Security: Exploring the conflict between maintaining profit margins and investing in robust security measures.
  5. Historical Context and Evolution: Reflection on the evolution of software security practices, with references to initiatives like Microsoft’s Trustworthy Computing.

Why You Should Listen:

This episode is essential for anyone involved in application security, from CISOs to developers. Adam's vast experience and practical advice provide valuable perspectives on the current state and future of application security.

Resources Mentioned:

Don't miss out on this enlightening discussion. Tune in to the Cybersecurity and Cloud Podcast and equip yourself with the knowledge to enhance your application security practices.

#ApplicationSecurity #ThreatModeling #ASPM #Cybersecurity #SoftwareSecurity #PhoenixSecurity #GovernmentRegulations #CISAStrategies #MemorySafeProgramming #WhiteHouseReport

Christopher Hodson

4 x CISO | GTM and R&D Advisor for Cybersecurity Startups From Pre-Seed to Growth Stage | Cybersecurity Product Specialist | Helped Raise $400M+ in Venture Funding | Author | Investor ??

5 个月

Nice work, ?? Adam Shostack and ?? Francesco ?? Cipollone ??

?? Francesco ?? Cipollone

Reduce risk - focus on vulnerabilities that matter - Contextual ASPM - CEO & Founder - Phoenix security - ??♂? Runner - ?? Application Security Cloud Security | 40 under 40 | CSA UK Board | CSCP Podcast Host

5 个月

we are doing a book signing with Timo Pagel and ?? Adam Shostack at OWASP? Foundation global Appsec, if you are there don't miss it out! https://phoenix.security/event/owasp-global-lisbon-book-sign/

Mauricio Ortiz, CISA

Great dad | Inspired Risk Management and Security Profesional | Cybersecurity | Leveraging Data Science & Analytics My posts and comments are my personal views and perspectives but not those of my employer

5 个月

?? Francesco ?? Cipollone the conversation was very insightful. Adam’s perspectives are very valuable and demonstrate his knowledge of the challenges in the Appsec space. I enjoyed how you managed the discussion in a very fluid and natural way for the co-host. Great job!

?? Francesco ?? Cipollone

Reduce risk - focus on vulnerabilities that matter - Contextual ASPM - CEO & Founder - Phoenix security - ??♂? Runner - ?? Application Security Cloud Security | 40 under 40 | CSA UK Board | CSCP Podcast Host

5 个月

Link to the episode: https://phoenix.security/podcast/cscp-s4ep17-adam-shostack-threat-modelling-in-past-and-future-with-adam-shostack-from-vulnerability-to-aspm-and-modern-application-security/

回复

要查看或添加评论,请登录

社区洞察

其他会员也浏览了