What youâre about to hear is a long form interview with Zane Lackey, a former pentester turned director of security engineering for Etsy turned co-founder and CSO of Signal Sciences.
Signal Sciences can be broadly, kinda described as ânext generation WAFâ. If you do have a requirement for a waffy, raspy thing, then you absolutely need to check out Signal Sciences.
They give you visibility in to attacks against your applications, and even auto-blocking a bunch of them without that turning into a cascading horror-show.
Signal Sciencesâ product has a really strong emphasis on assisting organisations who are running DevOps shops. And it makes sense, Zaneâs key achievement at Etsy was managing the security of that companyâs Devops transition.
Heâs actually just written an OâReilly book, Building a Modern Security Program. So, he joined me to talk about his book, whatâs in it, about DevSecOps more generally, and about some new stuff Signal Sciences has been working on.