
Sign up to save your podcasts
Or


2021 was a tough year for security - how can we do better in 2022? Richard chats with Jess Dodson about working to get better at information security in your organization. Jess talks about the log4j exploit as a great example of "what don't we know" - and the need for a software bill of materials as part of your configuration management database. Having a list of the libraries that internal applications depend on helps you respond in a time of crisis, being able to answer the question "where are we vulnerable?" This leads to a conversation about better DevSecOps - where development, security, and operations all take security seriously and help each other to help the organization succeed!
Links:
Recorded December 20, 2021
By Richard Campbell4.6
8282 ratings
2021 was a tough year for security - how can we do better in 2022? Richard chats with Jess Dodson about working to get better at information security in your organization. Jess talks about the log4j exploit as a great example of "what don't we know" - and the need for a software bill of materials as part of your configuration management database. Having a list of the libraries that internal applications depend on helps you respond in a time of crisis, being able to answer the question "where are we vulnerable?" This leads to a conversation about better DevSecOps - where development, security, and operations all take security seriously and help each other to help the organization succeed!
Links:
Recorded December 20, 2021

380 Listeners

38 Listeners

3,057 Listeners

2,003 Listeners

2,015 Listeners

879 Listeners

1,076 Listeners

777 Listeners

266 Listeners

155 Listeners

638 Listeners

322 Listeners

8,001 Listeners

245 Listeners

62 Listeners

99 Listeners