با برنامه Player FM !
CSCP S03EP26 - Nathan - From music to cybersecurity - the appsec symphony
بایگانی مجموعه ها ("فیدهای غیر فعال" status)
When? This feed was archived on October 30, 2024 11:44 (). Last successful fetch was on January 16, 2025 19:36 ()
Why? فیدهای غیر فعال status. سرورهای ما، برای یک دوره پایدار، قادر به بازیابی یک فید پادکست معتبر نبوده اند.
What now? You might be able to find a more up-to-date version using the search function. This series will no longer be checked for updates. If you believe this to be in error, please check if the publisher's feed link below is valid and contact support to request the feed be restored or if you have any other concerns about this.
Manage episode 360355903 series 2861915
Nathan is the manager of the application security team at Intuit Mailchimp. He has over 7 years of experience in application security working at both startups and Fortune 500 companies. In that time, Nathan has been both an engineer and a leader. His primary focus has been on building out application security programs by implementing scalable processes and efficient methodologies. Nathan holds a Master’s in Digital Forensics and CyberSecurity from John Jay College of Criminal Justice and a Bachelor’s in Music Composition from University of the Arts.
In this show, Nathan and Francesco discuss the start in application security, how to mentor new interns and bridge the skillgap and how to measure application security progress when deploying shift left methodologies in devsecops
The episode is brought to you by Phoenix Security; get in control of your vulnerabilities from code to cloud with the power of Phoenix. ACT Now on the most important vulnerabilities and reduce your exposure to modern attacks. See it for yourself. Go to https://www.phoenix.security for a free 14-day licence.
2:00 - Nathan's Intro
7:30 – from music to cybersecurity and new generation
11:00 – State of application security
14:00 – Vulnerability – What is a vulnerability in software
18:00 – How do you bring in the business in appsec – Product security
12:00 - Cybersecurity technicalities - Pen-tests and regulation
16:00 - Cybersecurity and regulation in USA
19:00 - SBOM, Digital Software supply chain
20:00 – Risk for application security and business perspective
22:00 – Business categories of risk for application security
24:00 – Business criticality vs low criticality – how to talk about risk
26:00 – Prioritize work based on risk in application security
27:00 – Avoiding burnout and preventing risk – Mailchimp program of work – SPIDER
31:00 – Doing more with less in application security
33:00 – Measuring shift left effectiveness – Dentist story
37:00 – Positive message and conclusion
Nathan
Blog: https://nathancooke.com/
Linkedin: https://www.linkedin.com/in/nathancooke7/
Cyber Security and Cloud Podcast hosted by Francesco Cipollone
Twitter @FrankSEC42
Linkedin: linkedin.com/in/fracipo
#CSCP #cybermentoringmonday cybercloudpodcast.com
Social Media Links
Follow us on social media to get the latest episodes:
Website: http://www.cybercloudpodcast.com/
You can listen to this podcast on your favourite player:
Itunes: https://podcasts.apple.com/gb/podcast/the-cyber-security-cloud-podcast-cscp/id1516316463 Spotify: https://open.spotify.com/show/3fg8AqP4vEi5Im8YKxazUQ
Linkedin: https://www.linkedin.com/company/35703565/admin/
Twitter: https://twitter.com/podcast_cyber
Youtube https://www.youtube.com/channel/UCVgsq-vMzq4sxObVonDsIAg/
113 قسمت
بایگانی مجموعه ها ("فیدهای غیر فعال" status)
When? This feed was archived on October 30, 2024 11:44 (). Last successful fetch was on January 16, 2025 19:36 ()
Why? فیدهای غیر فعال status. سرورهای ما، برای یک دوره پایدار، قادر به بازیابی یک فید پادکست معتبر نبوده اند.
What now? You might be able to find a more up-to-date version using the search function. This series will no longer be checked for updates. If you believe this to be in error, please check if the publisher's feed link below is valid and contact support to request the feed be restored or if you have any other concerns about this.
Manage episode 360355903 series 2861915
Nathan is the manager of the application security team at Intuit Mailchimp. He has over 7 years of experience in application security working at both startups and Fortune 500 companies. In that time, Nathan has been both an engineer and a leader. His primary focus has been on building out application security programs by implementing scalable processes and efficient methodologies. Nathan holds a Master’s in Digital Forensics and CyberSecurity from John Jay College of Criminal Justice and a Bachelor’s in Music Composition from University of the Arts.
In this show, Nathan and Francesco discuss the start in application security, how to mentor new interns and bridge the skillgap and how to measure application security progress when deploying shift left methodologies in devsecops
The episode is brought to you by Phoenix Security; get in control of your vulnerabilities from code to cloud with the power of Phoenix. ACT Now on the most important vulnerabilities and reduce your exposure to modern attacks. See it for yourself. Go to https://www.phoenix.security for a free 14-day licence.
2:00 - Nathan's Intro
7:30 – from music to cybersecurity and new generation
11:00 – State of application security
14:00 – Vulnerability – What is a vulnerability in software
18:00 – How do you bring in the business in appsec – Product security
12:00 - Cybersecurity technicalities - Pen-tests and regulation
16:00 - Cybersecurity and regulation in USA
19:00 - SBOM, Digital Software supply chain
20:00 – Risk for application security and business perspective
22:00 – Business categories of risk for application security
24:00 – Business criticality vs low criticality – how to talk about risk
26:00 – Prioritize work based on risk in application security
27:00 – Avoiding burnout and preventing risk – Mailchimp program of work – SPIDER
31:00 – Doing more with less in application security
33:00 – Measuring shift left effectiveness – Dentist story
37:00 – Positive message and conclusion
Nathan
Blog: https://nathancooke.com/
Linkedin: https://www.linkedin.com/in/nathancooke7/
Cyber Security and Cloud Podcast hosted by Francesco Cipollone
Twitter @FrankSEC42
Linkedin: linkedin.com/in/fracipo
#CSCP #cybermentoringmonday cybercloudpodcast.com
Social Media Links
Follow us on social media to get the latest episodes:
Website: http://www.cybercloudpodcast.com/
You can listen to this podcast on your favourite player:
Itunes: https://podcasts.apple.com/gb/podcast/the-cyber-security-cloud-podcast-cscp/id1516316463 Spotify: https://open.spotify.com/show/3fg8AqP4vEi5Im8YKxazUQ
Linkedin: https://www.linkedin.com/company/35703565/admin/
Twitter: https://twitter.com/podcast_cyber
Youtube https://www.youtube.com/channel/UCVgsq-vMzq4sxObVonDsIAg/
113 قسمت
همه قسمت ها
×به Player FM خوش آمدید!
Player FM در سراسر وب را برای یافتن پادکست های با کیفیت اسکن می کند تا همین الان لذت ببرید. این بهترین برنامه ی پادکست است که در اندروید، آیفون و وب کار می کند. ثبت نام کنید تا اشتراک های شما در بین دستگاه های مختلف همگام سازی شود.