1. EachPod

DevelopSec: Developing Security Awareness - Podcast

DevelopSec: Developing Security Awareness

Curious about application security? Want to learn how to detect security vulnerabilities and protect your application. We discuss different topics and provide valuable insights into the world of application security.

Technology Education Training
Update frequency
every 13 days
Average duration
19 minutes
Episodes
128
Years Active
2014 - 2025
Share to:
Ep. 104: Securing Devops with Julien Vehent

Ep. 104: Securing Devops with Julien Vehent

James sits down with Julien Vehent to discuss his new book "Securing DevOps" and talk about security in a devOps world. 

Julien (@jvehent) is a security architect and engineering manager with over 15 …

00:45:07  |   Thu 30 Aug 2018
Ep. 103: Is 3rd Party Authentication Right For Your Application?

Ep. 103: Is 3rd Party Authentication Right For Your Application?

 The headlines are filled with credential breaches. One way to avoid being those headlines is to not store credentials. Instead, use a 3rd party to authenticate your users. While this cuts a lot of w…

00:18:16  |   Thu 16 Aug 2018
Ep. 102: Intro to Web Security Policies

Ep. 102: Intro to Web Security Policies

In this episode James introduces us to the idea of web security policies stored in a security.txt file. We have talked about vulnerability disclosure before and this ties directly into that conversat…

00:16:41  |   Tue 26 Jun 2018
Ep. 101: You're not always right and that is ok

Ep. 101: You're not always right and that is ok

In this episode, James shares a story of learning from a mistake and how we can't be right every time. Hear what he learned and how you can learn too.

 For more info go to https://www.developsec.com o…

00:20:58  |   Mon 18 Jun 2018
Ep. 100: Choosing Security Tools

Ep. 100: Choosing Security Tools

In this episode we talk about choosing the right security tools for your environment. There are lots of vendors offering solutions to help identify security issues within our applications. The trick …

00:26:36  |   Thu 07 Jun 2018
Ep. 99: Shifting Left in the SDLC

Ep. 99: Shifting Left in the SDLC

In this episode, James talks about what it means to shift left in the SDLC. 

 For more info go to https://www.developsec.com or follow us on twitter (@developsec).

 Join the conversations.. join our sl…

00:19:56  |   Wed 30 May 2018
Ep. 98: Efail and News Hype

Ep. 98: Efail and News Hype

In this episode we talk about efail and the HYPE around security news. 

  

 For more info go to https://www.developsec.com or follow us on twitter (@developsec).

  

 Join the conversations.. join our sla…

00:18:07  |   Tue 15 May 2018
EP. 97: Gmail / Netflix Potential Scam

EP. 97: Gmail / Netflix Potential Scam

** Check out our new Live Fundamentals of Application Security training starting on May 1, 2018. Don't wait to sign up. For schedules and information check out https://www.jardinesoftware.com/fundame…

00:18:27  |   Mon 23 Apr 2018
Ep. 96: Security Flaws as Defects

Ep. 96: Security Flaws as Defects

In this episode we talk about treating security flaws as defects and embedded vs. built-in security. Do you treat security flaws differently? What barriers does that create?

  

 For more info go to htt…

00:27:35  |   Mon 16 Apr 2018
Ep. 95: MyFitnessPal Breach Take-Aways

Ep. 95: MyFitnessPal Breach Take-Aways

In this episode we talk about the MyFitnessPal breach and some of the key points that we as developers, security, and users can take away from it.

  

 Tweet with Graph of Largest Breaches mentioned: ht…

00:18:24  |   Mon 09 Apr 2018
Ep. 94: Penetration Testing

Ep. 94: Penetration Testing

In this episode we talk about penetration testing and what you need to know to get the most out of the activity. Tune in to hear some of our thoughts on the topic.

  

To take the training course survey…

00:26:09  |   Mon 02 Apr 2018
Ep. 93: Code Review

Ep. 93: Code Review

In this episode we talk about secure code review with a mention of static analysis. Do you know the difference? What is the issue of doing one over the other, or just outright replacing actual code r…

00:25:53  |   Fri 09 Mar 2018
Ep. 92: 2-Factor Authentication

Ep. 92: 2-Factor Authentication

In this episode James talks about 2-factor authentication, why we use it, and maybe why we don't. Is your 2-factor implementation getting in your way?

 The DevelopSec YouTube Channel - https://www.you…

00:21:41  |   Tue 06 Mar 2018
DevelopSec Podcast #91 - OWASP Top 10 2017 Thoughts

DevelopSec Podcast #91 - OWASP Top 10 2017 Thoughts

The new OWASP Top 10 2017 is out. We look at some of the changes and how you can effectively use the list to better your security program.

 

We are also launching a new DevelopSec Live broadcast. To ch…

00:28:45  |   Fri 09 Feb 2018
Ep. 90: 5 Steps to Help Secure Your Database

Ep. 90: 5 Steps to Help Secure Your Database

 James sits down with Perry Krug, from Couchbase to discuss some important steps to take to secure your database.

  

 Perry Krug - https://twitter.com/perrykrug

 Couchbase - https://twitter.com/couchbas…

00:44:12  |   Tue 16 Jan 2018
Ep. 89: New Year's Resolutions

Ep. 89: New Year's Resolutions

 Welcome to 2018! Another year down and time for many of us to start making promises to ourselves of things we will start doing in this new year. In this episode James talks about some lessons we sho…

00:18:34  |   Thu 04 Jan 2018
Ep. 88: Meteor Security with Tim Medin

Ep. 88: Meteor Security with Tim Medin

In this episode, James talks with Tim Medin regarding Meteor and security. If you develop with Meteor or have to test it, there is a lot of information packed in.

More about Tim Medin (@timmedin):

Red …

00:42:33  |   Mon 11 Dec 2017
Ep. 87: Apple Sign-in Bug Take-Aways

Ep. 87: Apple Sign-in Bug Take-Aways

You have heard about the Apple Sign-in Bug on High Sierra. Now lets talk about how we can use this example to better our current development processes to protect ourselves.

Link to mentioned article:

00:24:20  |   Fri 01 Dec 2017
Ep. 86: Vulnerable 3rd Party Components

Ep. 86: Vulnerable 3rd Party Components

In this episode, James talks the use of 3rd party components and how to handle determining if they are vulnerable or not.

Links:
 OWASP Dependancy Check - https://www.owasp.org/index.php/OWASP_Dependen…

00:18:34  |   Thu 23 Nov 2017
Ep. 85: Open Redirect Revisited

Ep. 85: Open Redirect Revisited

In this episode, James talks about open redirect and why it matters from a security perspective. He also shows how this information can be used in your personal technology use, not just in developmen…

00:25:01  |   Fri 17 Nov 2017
Disclaimer: The podcast and artwork embedded on this page are the property of Jardine Software Inc.. This content is not affiliated with or endorsed by eachpod.com.