Artwork

Content provided by Francesco Cipollone. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Francesco Cipollone or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.
Player FM - Podcast App
Go offline with the Player FM app!

CSCP S03EP14 - Brook Schoenfield - Appsec and History what have we learned so far

47:33
 
Share
 

Manage episode 342849932 series 2861915
Content provided by Francesco Cipollone. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Francesco Cipollone or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.

Brook Schoenfield is an Elder AppSec Diplomat, the author of seven books about software security and AppSec, a researcher, the builder and leader of four AppSec programs at major tech companies, and a Master Security Architect for consultancies. Brook talks about his long career path, concerns and hopes for the industry, and the importance of threat modelling. There are 27-28 million programmers on Earth, but Brook fears that only a million work in security.

The episode is brought to you by AppSec Phoenix Ltd with the Phoenix Security Cloud Platform, you can make vulnerability management for software and cloud SMART. Follow the tag #appsecsmart

https://www.appsecphoenix.com Get access today: https://appsecphoenix.com/demo

0:00 Introductions

4:00 27-28 mil programmers need for security

6:30 No silver bullet in software security

8:55 Brook’s career path into security

13:10 Bugs aren’t going anywhere

15:00 Next generation of InfoSec

21:06 Threat modelling, dynamic risk assessment

26:05 Story of threat modelling

28:06 Threat modelling tools

29:40 Beyond functionality, malicious attackers

32:30 Communicating with management

37:50 Tipping point, integrity

41:56 Final positive message

47:33 Outro

Brook Schoenfield

Linkedin: https://linkedin.com/in/brookschoenfield

https://brookschoenfield.com

Twitter @BrkSchoenfield

Mentioned

https://www.microsoft.com/en-us/securityengineering/sdl/threatmodeling

Cyber Security and Cloud Podcast hosted by Francesco Cipollone

Linkedin: https://linkedin.com/in/fracipo

Twitter @FrankSEC42

#CSCP #cybermentoringmonday cybercloudpodcast.com

Social Media Links
Follow us on social media to get the latest episodes:
Website: http://www.cybercloudpodcast.com/
You can listen to this podcast on your favourite player:
Itunes: https://podcasts.apple.com/gb/podcast/the-cyber-security-cloud-podcast-cscp/id1516316463 Spotify: https://open.spotify.com/show/3fg8AqP4vEi5Im8YKxazUQ
Linkedin: https://www.linkedin.com/company/35703565/admin/

Twitter: https://twitter.com/podcast_cyber

Youtube https://www.youtube.com/channel/UCVgsq-vMzq4sxObVonDsIAg/

  continue reading

112 episodes

Artwork
iconShare
 
Manage episode 342849932 series 2861915
Content provided by Francesco Cipollone. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Francesco Cipollone or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.

Brook Schoenfield is an Elder AppSec Diplomat, the author of seven books about software security and AppSec, a researcher, the builder and leader of four AppSec programs at major tech companies, and a Master Security Architect for consultancies. Brook talks about his long career path, concerns and hopes for the industry, and the importance of threat modelling. There are 27-28 million programmers on Earth, but Brook fears that only a million work in security.

The episode is brought to you by AppSec Phoenix Ltd with the Phoenix Security Cloud Platform, you can make vulnerability management for software and cloud SMART. Follow the tag #appsecsmart

https://www.appsecphoenix.com Get access today: https://appsecphoenix.com/demo

0:00 Introductions

4:00 27-28 mil programmers need for security

6:30 No silver bullet in software security

8:55 Brook’s career path into security

13:10 Bugs aren’t going anywhere

15:00 Next generation of InfoSec

21:06 Threat modelling, dynamic risk assessment

26:05 Story of threat modelling

28:06 Threat modelling tools

29:40 Beyond functionality, malicious attackers

32:30 Communicating with management

37:50 Tipping point, integrity

41:56 Final positive message

47:33 Outro

Brook Schoenfield

Linkedin: https://linkedin.com/in/brookschoenfield

https://brookschoenfield.com

Twitter @BrkSchoenfield

Mentioned

https://www.microsoft.com/en-us/securityengineering/sdl/threatmodeling

Cyber Security and Cloud Podcast hosted by Francesco Cipollone

Linkedin: https://linkedin.com/in/fracipo

Twitter @FrankSEC42

#CSCP #cybermentoringmonday cybercloudpodcast.com

Social Media Links
Follow us on social media to get the latest episodes:
Website: http://www.cybercloudpodcast.com/
You can listen to this podcast on your favourite player:
Itunes: https://podcasts.apple.com/gb/podcast/the-cyber-security-cloud-podcast-cscp/id1516316463 Spotify: https://open.spotify.com/show/3fg8AqP4vEi5Im8YKxazUQ
Linkedin: https://www.linkedin.com/company/35703565/admin/

Twitter: https://twitter.com/podcast_cyber

Youtube https://www.youtube.com/channel/UCVgsq-vMzq4sxObVonDsIAg/

  continue reading

112 episodes

All episodes

×
 
Loading …

Welcome to Player FM!

Player FM is scanning the web for high-quality podcasts for you to enjoy right now. It's the best podcast app and works on Android, iPhone, and the web. Signup to sync subscriptions across devices.

 

Quick Reference Guide