DevelopSec: Developing Security Awareness

DevelopSec: Developing Security Awareness

By Jardine Software Inc.NewsTechnologyEducationTech News
Download on the App Store

DevelopSec: Developing Security Awareness episodes

  • Ep. 59: All About Cookie Protection

    It is the holiday season.  It is appropriate to talk about cookies.  Not the kind that you bake, but the ones in your applications.  James talks about the security mechanisms for cookies and clarifies what they are for. 

    For more info go to https://www.developsec.com or follow us on twitter (@developsec).

    Presented by Jardine Software Inc. (https://www.jardinesoftware.com)

    Jardine Software provides application security consulting and training to add value to your application security program. Contact us today to see how we can help.  Check out our 30 day advantage.

    Send us Fan Mail

    For more info go to https://www.developsec.com or follow us on X (@developsec).

    The DevelopSec podcast is brought to you by Jardine Software Inc. 

    24 min
  • Ep. 58: "Untrusted" Data

    Have you heard someone mention "untrusted" data?  Applications take data from multiple data sources and we are often confused on what should be trusted or not.  In this episode, James Jardine talks about untrusted data and some thoughts for moving past it.  

    For more info go to https://www.developsec.com or follow us on twitter (@developsec).

    Presented by Jardine Software Inc. (https://www.jardinesoftware.com)

    Jardine Software provides application security consulting and training to add value to your application security program. Contact us today to see how we can help.  Check out our 30 day advantage.

    Send us Fan Mail

    For more info go to https://www.developsec.com or follow us on X (@developsec).

    The DevelopSec podcast is brought to you by Jardine Software Inc. 

    22 min
  • Ep. 57: Source Code Review

    Are you an organization looking to do source code review?  Are you trying to hire a pen tester with source code review as a duty?  

    James talks about Secure Code Review and some common implementations.  

    For more info go to https://www.developsec.com or follow us on twitter (@developsec).

    Presented by Jardine Software Inc. (https://www.jardinesoftware.com)

    Jardine Software provides application security consulting and training to add value to your application security program. Contact us today to see how we can help.  Check out our 30 day advantage.

    Send us Fan Mail

    For more info go to https://www.developsec.com or follow us on X (@developsec).

    The DevelopSec podcast is brought to you by Jardine Software Inc. 

    22 min
  • Ep. 56: Security Contacts

    Do you have a clear path for users to contact you about potential security issues in your application or device?  Is there a potential for the communication to be lost in the mix?  James talks about how it is important for users to have a clear path to communication when it comes to reporting security issues. 

    For more info go to https://www.developsec.com or follow us on twitter (@developsec).

    Presented by Jardine Software Inc. (https://www.jardinesoftware.com)

    Jardine Software provides application security consulting and training to add value to your application security program. Contact us today to see how we can help.  Check out our 30 day advantage.

    Send us Fan Mail

    For more info go to https://www.developsec.com or follow us on X (@developsec).

    The DevelopSec podcast is brought to you by Jardine Software Inc. 

    13 min
  • Ep. 55: Scoping an application security assessment (Applications)

    Having a penetration test performed against your applications?  Do you have mobile and web applications performing the same functionality?  James talks about the reason behind doing these assessments at the same time vs. separate.  See why testing your entire offering can add benefit to your security assessment. 

    Link to DerbyCon Presentation

    For more info go to https://www.developsec.com or follow us on twitter (@developsec).

    Presented by Jardine Software Inc. (https://www.jardinesoftware.com)

    Jardine Software provides application security consulting and training to add value to your application security program. Contact us today to see how we can help.  Check out our 30 day advantage.

     

    Send us Fan Mail

    For more info go to https://www.developsec.com or follow us on X (@developsec).

    The DevelopSec podcast is brought to you by Jardine Software Inc. 

    13 min
  • Ep. 54: WAFs and Pen Testing

    Your pen tester want you to white list them in your WAF?  What should you do?  Why do they ask?  James breaks it down for you in this episode.

    For more info go to https://www.developsec.com or follow us on twitter (@developsec).

    Presented by Jardine Software Inc. (https://www.jardinesoftware.com)

    Jardine Software provides application security consulting and training to add value to your application security program. Contact us today to see how we can help.  Check out our 30 day advantage.

    Send us Fan Mail

    For more info go to https://www.developsec.com or follow us on X (@developsec).

    The DevelopSec podcast is brought to you by Jardine Software Inc. 

    17 min
  • Ep. 53: Chrome Changing Secure Notifications

    We talk HTTP/HTTPS all the time.  Google just announced that in January they are going to change how they display their secure/not secure indicators for HTTP sites that have passwords or credit cards.  James talks about how this can effect you.

    Link to the article:  https://security.googleblog.com/2016/09/moving-towards-more-secure-web.html

    For more info go to https://www.developsec.com or follow us on twitter (@developsec).

    Presented by Jardine Software Inc. (https://www.jardinesoftware.com)

    Jardine Software provides application security consulting and training to add value to your application security program. Contact us today to see how we can help.  Check out our 30 day advantage.

     

    Send us Fan Mail

    For more info go to https://www.developsec.com or follow us on X (@developsec).

    The DevelopSec podcast is brought to you by Jardine Software Inc. 

    18 min
  • Login Forms and HTTPS

    Are your login forms secure?  Are you sure?  In this episode James talks about potential risks with presenting your login forms when using HTTPS and how to avoid them.  We often are focused on HTTPS for the submission of credentials, but what about the loading of the form?  What about frames?

    For more info go to https://www.developsec.com or follow us on twitter (@developsec).

    Presented by Jardine Software Inc. (https://www.jardinesoftware.com)

    Jardine Software provides application security consulting and training to add value to your application security program. Contact us today to see how we can help.  Check out our 30 day advantage.

    Send us Fan Mail

    For more info go to https://www.developsec.com or follow us on X (@developsec).

    The DevelopSec podcast is brought to you by Jardine Software Inc. 

    11 min
  • Ep. 52: Importance of UI to Security

    The user interface plays a big part in the security of an application.  We often only look at flaws such as XSS, but here James provides an example of the lack of Input Validation messages creating a Denial of Service type situation. 

    For more info go to https://www.developsec.com or follow us on twitter (@developsec).

    Presented by Jardine Software Inc. (https://www.jardinesoftware.com)

    Jardine Software provides application security consulting and training to add value to your application security program. Contact us today to see how we can help.  Check out our 30 day advantage.

    Send us Fan Mail

    For more info go to https://www.developsec.com or follow us on X (@developsec).

    The DevelopSec podcast is brought to you by Jardine Software Inc. 

    12 min
  • Ep. 51: Everything is a target

    James discusses how all applications, big or small, are a potential target and need to have secure coding practices.  We often only look at our big applications from a security perspective, but in reality, all applications pose a risk. 

    For more info go to https://www.developsec.com or follow us on twitter (@developsec).

    Presented by Jardine Software Inc. (https://www.jardinesoftware.com)

    Jardine Software provides application security consulting and training to add value to your application security program. Contact us today to see how we can help.  Check out our 30 day advantage.

    Send us Fan Mail

    For more info go to https://www.developsec.com or follow us on X (@developsec).

    The DevelopSec podcast is brought to you by Jardine Software Inc. 

    13 min

About DevelopSec: Developing Security Awareness

From the publisher's feed

Curious about application security? Want to learn how to detect security vulnerabilities and protect your application. We discuss different topics and provide valuable insights into the world of…