DevelopSec: Developing Security Awareness

DevelopSec: Developing Security Awareness

By Jardine Software Inc.NewsTechnologyEducationTech News
Download on the App Store

DevelopSec: Developing Security Awareness episodes

  • Ep. 109: 2018 Reflection

    I talk about some of what happened in 2018 and what I am looking to do in 2019. I also ask you to think about your previous year and goals. I also talk about some new training I am providing.

     For more info go to https://www.developsec.com or follow us on twitter (@developsec).

     Join the conversations.. join our slack channel. Email [email protected] for an invitation.

      

     DevelopSec provides application security consulting and training to add value to your application security program. Contact us today to see how we can help.

    Send us Fan Mail

    For more info go to https://www.developsec.com or follow us on X (@developsec).

    The DevelopSec podcast is brought to you by Jardine Software Inc. 

    28 min
  • Ep. 108: Dunkin Donuts Breach, Maybe??

    In this episode James talk about the Dunkin Donuts Perks breach. This is an interesting situation as the accounts were access using the victim's username and password found from another data breach. The issue: Password Reuse.  Could D&D have prevented this? Listen in to hear my thoughts.  Please feel free to share your thoughts as well.

    Article from Today: https://www.today.com/food/dunkin-reveals-security-breach-here-s-what-it-may-mean-t144139

    Dunkin Donuts Release: https://www.dunkindonuts.com/content/dam/dd/pdf/Security_Update.pdf

    For more info go to https://www.developsec.com or follow us on twitter (@developsec).

    Join the conversations.. join our slack channel. Email [email protected] for an invitation.

     DevelopSec provides application security consulting and training to add value to your application security program. Contact us today to see how we can help.

    Send us Fan Mail

    For more info go to https://www.developsec.com or follow us on X (@developsec).

    The DevelopSec podcast is brought to you by Jardine Software Inc. 

    19 min
  • Ep. 107: Credential Stuffing

    In this episode James talks about what credential stuffing is, how if affects your apps, and how you can look to defend against it. 

     For more info go to https://www.developsec.com or follow us on twitter (@developsec).

     Join the conversations.. join our slack channel. Email [email protected] for an invitation.

      

     DevelopSec provides application security consulting and training to add value to your application security program. Contact us today to see how we can help.

    Send us Fan Mail

    For more info go to https://www.developsec.com or follow us on X (@developsec).

    The DevelopSec podcast is brought to you by Jardine Software Inc. 

    19 min
  • Ep. 106: Facebook Breach Take-aways and Insights

    James talks about the Facebook breach and shares some insights into how you can take steps to prevent this type of incident in your applications. 

     For more info go to https://www.developsec.com or follow us on twitter (@developsec).

     Join the conversations.. join our slack channel. Email [email protected] for an invitation.

      

     DevelopSec provides application security consulting and training to add value to your application security program. Contact us today to see how we can help.

    Send us Fan Mail

    For more info go to https://www.developsec.com or follow us on X (@developsec).

    The DevelopSec podcast is brought to you by Jardine Software Inc. 

    32 min
  • Ep. 105: Interview with Eric Johnson

    I sit down with Eric Johnson to talk about security in the IDE and other fun topics. A bit longer than usual, but full of great information. 

    You can reach out to Eric on twitter @emjohn20  or check out his site at https://www.pumascan.com.

     For more info go to https://www.developsec.com or follow us on twitter (@developsec).

     Join the conversations.. join our slack channel. Email [email protected] for an invitation.

      

     DevelopSec provides application security consulting and training to add value to your application security program. Contact us today to see how we can help.

    Send us Fan Mail

    For more info go to https://www.developsec.com or follow us on X (@developsec).

    The DevelopSec podcast is brought to you by Jardine Software Inc. 

    58 min
  • Ep. 104: Securing Devops with Julien Vehent

    James sits down with Julien Vehent to discuss his new book "Securing DevOps" and talk about security in a devOps world. 

    Julien (@jvehent) is a security architect and engineering manager with over 15 years of experience in large organizations and web companies. He is currently responsible for the operational security of Firefox's backend infrastructure at Mozilla, and is the author of Securing DevOps.

    Check out the book (Securing DevOps) at https://www.manning.com/books/securing-devops

    Special 40% discount code for Developsec listeners: poddevelopsec18

     For more info go to https://www.developsec.com or follow us on twitter (@developsec).

     Join the conversations.. join our slack channel. Email [email protected] for an invitation.

      

     DevelopSec provides application security consulting and training to add value to your application security program. Contact us today to see how we can help.

    Send us Fan Mail

    For more info go to https://www.developsec.com or follow us on X (@developsec).

    The DevelopSec podcast is brought to you by Jardine Software Inc. 

    46 min
  • Ep. 103: Is 3rd Party Authentication Right For Your Application?

     The headlines are filled with credential breaches. One way to avoid being those headlines is to not store credentials. Instead, use a 3rd party to authenticate your users. While this cuts a lot of work out of your development time, it is important to understand the pros and cons to each method. James talks through some of these risks to help better understand which method might be right for you.

      

     Links from show:

    • Ep. 92: 2-Factor Authentication -  http://podcast.developsec.com/ep-92-2-factor-authentication
    • Ep. 61: Multi-factor Authentication -  http://podcast.developsec.com/ep-61-multi-factor-authentication
    • Ep. 39: Authentication - http://podcast.developsec.com/ep-39-authentication
    • Ep. 2: All About Passwords -  http://podcast.developsec.com/ep-1-all-about-passwords
    • Ep. 73: Identity with Vittorio Bertocci - http://podcast.developsec.com/ep-73-identity-with-vittorio-bertocci

      

     For more info go to https://www.developsec.com or follow us on twitter (@developsec).

     Join the conversations.. join our slack channel. Email [email protected] for an invitation.

      

     DevelopSec provides application security consulting and training to add value to your application security program. Contact us today to see how we can help.

    Send us Fan Mail

    For more info go to https://www.developsec.com or follow us on X (@developsec).

    The DevelopSec podcast is brought to you by Jardine Software Inc. 

    19 min
  • Ep. 102: Intro to Web Security Policies

    In this episode James introduces us to the idea of web security policies stored in a security.txt file. We have talked about vulnerability disclosure before and this ties directly into that conversation.

    Link to Draft: https://tools.ietf.org/html/draft-foudil-securitytxt-03

    Link to form to create the file: https://securitytxt.org/

    Link to our blog post: https://www.developsec.com/2018/06/26/overview-of-web-security-policies/

    For more info go to https://www.developsec.com or follow us on twitter (@developsec).

      

     Join the conversations.. join our slack channel.  Email [email protected] for an invitation.

      

    DevelopSec provides application security consulting and training to add value to your application security program. Contact us today to see how we can help.

    Send us Fan Mail

    For more info go to https://www.developsec.com or follow us on X (@developsec).

    The DevelopSec podcast is brought to you by Jardine Software Inc. 

    17 min
  • Ep. 101: You're not always right and that is ok

    In this episode, James shares a story of learning from a mistake and how we can't be right every time. Hear what he learned and how you can learn too.

     For more info go to https://www.developsec.com or follow us on twitter (@developsec).

     Join the conversations.. join our slack channel. Email [email protected] for an invitation.

      

     DevelopSec provides application security consulting and training to add value to your application security program. Contact us today to see how we can help.

    Send us Fan Mail

    For more info go to https://www.developsec.com or follow us on X (@developsec).

    The DevelopSec podcast is brought to you by Jardine Software Inc. 

    21 min
  • Ep. 100: Choosing Security Tools

    In this episode we talk about choosing the right security tools for your environment. There are lots of vendors offering solutions to help identify security issues within our applications. The trick is to learn to identify which ones make the most sense for your environment.

      

     For more info go to https://www.developsec.com or follow us on twitter (@developsec).

     Join the conversations.. join our slack channel. Email [email protected] for an invitation.

      

     DevelopSec provides application security consulting and training to add value to your application security program. Contact us today to see how we can help.

    Send us Fan Mail

    For more info go to https://www.developsec.com or follow us on X (@developsec).

    The DevelopSec podcast is brought to you by Jardine Software Inc. 

    27 min

About DevelopSec: Developing Security Awareness

From the publisher's feed

Curious about application security? Want to learn how to detect security vulnerabilities and protect your application. We discuss different topics and provide valuable insights into the world of…