
Sign up to save your podcasts
Or


2021 was a tough year for security - how can we do better in 2022? Richard chats with Jess Dodson about working to get better at information security in your organization. Jess talks about the log4j exploit as a great example of "what don't we know" - and the need for a software bill of materials as part of your configuration management database. Having a list of the libraries that internal applications depend on helps you respond in a time of crisis, being able to answer the question "where are we vulnerable?" This leads to a conversation about better DevSecOps - where development, security, and operations all take security seriously and help each other to help the organization succeed!
Links:
Recorded December 20, 2021
By Richard Campbell4.6
8282 ratings
2021 was a tough year for security - how can we do better in 2022? Richard chats with Jess Dodson about working to get better at information security in your organization. Jess talks about the log4j exploit as a great example of "what don't we know" - and the need for a software bill of materials as part of your configuration management database. Having a list of the libraries that internal applications depend on helps you respond in a time of crisis, being able to answer the question "where are we vulnerable?" This leads to a conversation about better DevSecOps - where development, security, and operations all take security seriously and help each other to help the organization succeed!
Links:
Recorded December 20, 2021

271 Listeners

383 Listeners

37 Listeners

290 Listeners

3,062 Listeners

2,010 Listeners

2,011 Listeners

887 Listeners

1,073 Listeners

780 Listeners

1,091 Listeners

1,393 Listeners

319 Listeners

244 Listeners

63 Listeners

98 Listeners