Podcast Episodes
Back to Search
Building Successful Security Champions Programs - Marisa Fagan - ASW #294
Even though Security Champions programs look very different across organizations and maturity levels, they share core principles for becoming success…
1 year, 7 months ago
A CISO's Perspective on AI, Appsec, and Changing Behaviors - ASW #293
Modern appsec isn't modern because security tools got shifted in one direction or another, or because teams are finding and fixing more vulns. It's m…
1 year, 7 months ago
Where Generative AI Can Actually Help Security (And Where It Doesn't) - Farshad Abasi, Allie Mellen - ASW #292
Generative AI has produced impressive chatbots and content generation, but however fun or impressive those might be, they don't always translate to v…
1 year, 7 months ago
Producing Secure Code by Leveraging AI - Stuart McClure - ASW #291
How can LLMs be valuable to developers as an assistant in finding and fixing insecure code? There are a lot of implications in trusting AI or LLMs to…
1 year, 8 months ago
State Of Application Security 2024 - Sandy Carielli, Janet Worthington - ASW #290
Sandy Carielli and Janet Worthington, authors of the State Of Application Security 2024 report, join us to discuss their findings on trends this year…
1 year, 8 months ago
OAuth 2.0 from Protecting APIs to Supporting Authorization & Authentication - Aaron Parecki - ASW #289
OAuth 2.0 is more than just a single spec and it's used to protect more than just APIs. We talk about challenges in maintaining a spec over a decade …
1 year, 8 months ago
Learning EBPF - Liz Rice - ASW Vault
Check out this interview from the ASW Vault, hand picked by main host Mike Shema! This segment was originally published on April 4, 2023.
Following o…
1 year, 8 months ago
Microsoft Recall's Security & Privacy, Hacking Web APIs, Secure Design Pledge - ASW #288
Looking at use cases and abuse cases of Microsoft's Recall feature, examples of hacking web APIs, CISA's secure design pledge, what we look for in CV…
1 year, 9 months ago
Open Source Software Supply Chain Security & The Real Crisis Behind XZ Utils - Idan Plotnik, Luis Villa, Erez Hasson - ASW #287
Open source has been a part of the software supply chain for decades, yet many projects and their maintainers remain undersupported by the companies …
1 year, 9 months ago
Securing Shadow Apps & Protecting Data - Guy Guzner, Pranava Adduri - ASW Vault
With hundreds or thousands of SaaS apps to secure with no traditional perimeter, Identity becomes the focal point for SaaS Security in the modern ent…
1 year, 9 months ago